StackRadar

openkm Helm chart

geek-cookbookVerified publisher

Scored 15 Sept 2026

OpenKM integrates all essential documents management, collaboration and an advanced search functionality into one easy to use solution.

Latest 4.2.0 3 years agodeploys tag 6.3.11 0Artifact Hub

openkm 4.2.0 deploys 1 container image: openkm/openkm-ce. Across them, 1,994 findings18 critical, 59 high 8 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 3.2.18.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

28,03918594801,435

1,994 findings over 1 of 1 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
openkm/openkm-ce6.3.1118594801,43528,039

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,994 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2025-66293libpng1.6@1.6.37-21.6.37-2ubuntu0.1~esm2
LowUBUNTU-CVE-2026-42012gnutls28@3.6.13-2ubuntu1.73.6.13-2ubuntu1.12+esm3
LowUBUNTU-CVE-2025-21503mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.41-0ubuntu0.20.04.1
LowUBUNTU-CVE-2025-21505mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.41-0ubuntu0.20.04.1
LowUBUNTU-CVE-2022-1355tiff@4.1.0+git191117-2ubuntu0.20.04.34.1.0+git191117-2ubuntu0.20.04.5
LowUBUNTU-CVE-2025-21529mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.41-0ubuntu0.20.04.1
LowUBUNTU-CVE-2024-21163mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.39-0ubuntu0.20.04.1
LowUBUNTU-CVE-2026-34001xorg-server@2:1.20.13-1ubuntu1~20.04.3no fix listed
LowUBUNTU-CVE-2026-57432perl@5.30.0-9ubuntu0.25.30.0-9ubuntu0.5+esm3
LowUBUNTU-CVE-2023-22007mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.33-0ubuntu0.20.04.1
LowUBUNTU-CVE-2025-30761openjdk-8@8u342-b07-0ubuntu1~20.048u462-ga~us1-0ubuntu2~20.04.2
LowUBUNTU-CVE-2025-49179xorg-server@2:1.20.13-1ubuntu1~20.04.32:1.20.13-1ubuntu1~20.04.20+esm1
LowUBUNTU-CVE-2026-23952imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.48:6.9.10.23+dfsg-2.1ubuntu11.11+esm9
LowUBUNTU-CVE-2025-32910libsoup2.4@2.70.0-12.70.0-1ubuntu0.3
LowUBUNTU-CVE-2025-32912libsoup2.4@2.70.0-12.70.0-1ubuntu0.4
LowUBUNTU-CVE-2025-21555mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.41-0ubuntu0.20.04.1
LowUBUNTU-CVE-2025-21559mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.41-0ubuntu0.20.04.1
LowUBUNTU-CVE-2024-20971mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.36-0ubuntu0.20.04.1
LowUBUNTU-CVE-2024-20981mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.36-0ubuntu0.20.04.1
LowUBUNTU-CVE-2026-3276python3.8@3.8.10-0ubuntu1~20.04.5no fix listed
LowUBUNTU-CVE-2026-88049tesseract@4.1.1-2build2no fix listed
LowUBUNTU-CVE-2023-51257netpbm-free@2:10.0-15.3build1no fix listed
LowUBUNTU-CVE-2024-26458krb5@1.17-6ubuntu4.11.17-6ubuntu4.9
LowUBUNTU-CVE-2024-20978mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.36-0ubuntu0.20.04.1
LowUBUNTU-CVE-2025-21525mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.40-0ubuntu0.20.04.1
LowUBUNTU-CVE-2024-21236mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.40-0ubuntu0.20.04.1
LowUBUNTU-CVE-2026-10118poppler@0.86.1-0ubuntu1no fix listed
LowUBUNTU-CVE-2024-21239mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.40-0ubuntu0.20.04.1
LowUBUNTU-CVE-2025-21491mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.41-0ubuntu0.20.04.1
LowUBUNTU-CVE-2025-12084python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.18+esm5
LowUBUNTU-CVE-2023-40217python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.9
LowUBUNTU-CVE-2026-34003xorg-server@2:1.20.13-1ubuntu1~20.04.3no fix listed
LowGHSA-q62h-jw38-24vhzip4j@1.3.22.10.0
LowUBUNTU-CVE-2016-2781coreutils@8.30-3ubuntu2no fix listed
LowUBUNTU-CVE-2026-1299python3.8@3.8.10-0ubuntu1~20.04.5no fix listed
LowUBUNTU-CVE-2020-21710ghostscript@9.50~dfsg-5ubuntu4.59.50~dfsg-5ubuntu4.10
LowUBUNTU-CVE-2025-30695mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.42-0ubuntu0.20.04.1
LowUBUNTU-CVE-2024-21051mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.35-0ubuntu0.20.04.1
LowGHSA-fjqm-246c-mwqgbcprov-jdk15on@1.521.56
LowUBUNTU-CVE-2024-21049mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.35-0ubuntu0.20.04.1
LowUBUNTU-CVE-2024-21050mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.35-0ubuntu0.20.04.1
LowUBUNTU-CVE-2023-22103mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.35-0ubuntu0.20.04.1
LowUBUNTU-CVE-2023-22114mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.35-0ubuntu0.20.04.1
LowUBUNTU-CVE-2023-21947mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.33-0ubuntu0.20.04.1
LowUBUNTU-CVE-2026-2369libsoup2.4@2.70.0-12.70.0-1ubuntu0.5+esm2
LowGHSA-hw42-3568-wj87google-oauth-client@1.20.01.33.3
LowGHSA-36wv-v2qp-v4g4cxf-core@3.2.63.5.11
LowGHSA-hr8g-6v94-x4m9bcprov-jdk15on@1.52no fix listed
LowUBUNTU-CVE-2026-61109mysql-8.0@8.0.30-0ubuntu0.20.04.2no fix listed
LowUBUNTU-CVE-2025-21534mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.40-0ubuntu0.20.04.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
4.2.0latest3 years ago6.3.1118594801,43528,039

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/openkm.svg)](https://charts.stackradar.io/charts/geek-cookbook/openkm)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.