StackRadar

thelounge 3.4.2 Helm chart

geek-cookbookVerified publisher

Scored 14 Sept 2026

The Lounge, modern web IRC client designed for self-hosting

Version 3.4.2 4 years agoapp version 4.2.0 0Artifact Hub

thelounge 3.4.2 deploys 1 container image: thelounge/thelounge. Across them, 141 findings1 critical, 9 high. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1g-r0, fixed in 1.1.1l-r0. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

2,689196467

141 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
thelounge/thelounge4.2.0-alpine1964672,689

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

67 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-vcc3-ghjq-m6frdecode-uri-component@0.2.00.5.0
LowGHSA-rhx6-c78j-4q9wpath-to-regexp@0.1.70.1.12
LowGHSA-hj48-42vr-x3v9path-parse@1.0.61.0.7
LowGHSA-cfm4-qjh2-4765node-forge@0.9.11.3.0
LowGHSA-34x7-hfp2-rc4vtar@4.4.137.5.7
LowGHSA-554w-wpv2-vw27node-forge@0.9.11.3.2
LowGHSA-25hc-qcg6-38wjsocket.io@2.3.02.5.1
LowGHSA-rgw5-rvv9-x895brace-expansion@1.1.111.1.18
LowGHSA-f5x3-32g6-xq36tar@4.4.136.2.1
LowGHSA-5m6q-g25r-mvwxnode-forge@0.9.11.4.0
LowGHSA-qffp-2rhf-9h96tar@4.4.137.5.10
LowGHSA-22p9-wv53-3rq4linkify-it@3.0.25.0.1
LowGHSA-23hp-3jrh-7fpwtar@4.4.137.5.19
LowGHSA-q67f-28xg-22rwnode-forge@0.9.11.4.0
LowGHSA-hmw2-7cc7-3qxxform-data@2.3.32.5.6
LowGHSA-7r86-cg39-jmmjminimatch@3.0.43.1.3
LowGHSA-2m8v-j782-fhvrsocket.io-parser@3.3.03.3.6
LowGHSA-8qq5-rm4j-mr97tar@4.4.137.5.3
LowGHSA-23c5-xmqv-rm74minimatch@3.0.43.1.4
LowGHSA-ppp5-5v6c-4jwpnode-forge@0.9.11.4.0
LowGHSA-mh99-v99m-4gvgbrace-expansion@1.1.111.1.17
LowGHSA-8fr3-hfg3-gpgpnode-forge@0.9.11.0.0
LowGHSA-8x88-c5mf-7j5wtar@4.4.137.5.18
LowGHSA-v245-v573-v5vmlinkify-it@3.0.25.0.2
LowGHSA-rv95-896h-c2vcexpress@4.17.14.19.2
LowGHSA-6fx8-h7jm-663jparseuri@0.0.5no fix listed
LowGHSA-mhxj-85r3-2x55file-type@14.7.116.5.4
LowGHSA-2g4f-4pwh-qvx6ajv@6.12.46.14.0
LowGHSA-p8p7-x288-28g6request@2.88.2no fix listed
LowGHSA-r6q2-hw4h-h46wtar@4.4.137.5.4
LowGHSA-r292-9mhp-454mtar@4.4.137.5.21
LowALPINE-CVE-2021-23839openssl@1.1.1g-r01.1.1j-r0
LowGHSA-w5hq-g745-h8pquuid@3.3.311.1.1
LowGHSA-gxpj-cx7g-858cdebug@3.2.63.2.7
LowGHSA-2328-f5f3-gj25node-forge@0.9.11.4.0
LowGHSA-9ppj-qmqm-q256tar@4.4.137.5.11
LowGHSA-mpwj-fcr6-x34cyarn@1.22.41.22.13
LowGHSA-2r2c-g63r-vccrnode-forge@0.9.11.3.0
LowGHSA-f886-m6hf-6m8vbrace-expansion@1.1.111.1.13
LowALPINE-CVE-2020-28928musl@1.1.24-r21.1.24-r3
LowGHSA-83g3-92jg-28cxtar@4.4.137.5.8
LowGHSA-w8wr-v893-vjvptar@4.4.137.5.18
LowALPINE-CVE-2021-42374busybox@1.31.1-r91.31.1-r11
LowGHSA-869p-cjfg-cm3xjws@4.0.04.0.1
LowMAL-2022-4933npm-cli-docs@0.1.0no fix listed
LowGHSA-65ch-62r8-g69gnode-forge@0.9.11.3.2
LowGHSA-cm22-4g7w-348pserve-static@1.14.11.16.0
LowGHSA-p9pc-299p-vxgpyargs-parser@9.0.213.1.2
LowGHSA-gvwx-54wh-qm9jtar@4.4.137.5.17
LowGHSA-378v-28hj-76wfbn.js@4.11.94.12.3

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
3.4.2latest4 years ago4.2.01964672,689

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/thelounge.svg)](https://charts.stackradar.io/charts/geek-cookbook/thelounge)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.