opentelemetry-demo 0.33.8 Helm chart
gpg-devScored 14 Sept 2026
opentelemetry demo helm chart
Version 0.33.8 1 month agoapp version 1.12.0 0Artifact Hub
opentelemetry-demo 0.33.8 deploys 27 container images: grafana/grafana, jaegertracing/all-in-one, otel/opentelemetry-collector-contrib, quay.io/prometheus/prometheus and 5 more. Across them, 4,398 findings — 13 critical, 39 high — 4 on CISA KEV. The highest contribution is GHSA-f82v-jwr5-mffw in next 14.2.5, fixed in 14.2.25.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-49346 | libde265 | no fix listed |
| Low | DEBIAN-CVE-2025-11082 | binutils | no fix listed |
| Low | GHSA-7m27-7ghc-44w9 | next | 14.2.21 |
| Low | DEBIAN-CVE-2024-7531 | nss | no fix listed |
| Low | GHSA-xwg4-73v4-xw9w | nanoid | 3.3.12 |
| Low | ALPINE-CVE-2025-26519 | musl | 1.2.5-r1 |
| Low | DSA-5726-1 | krb5 | 1.20.1-2+deb12u2 |
| Low | DEBIAN-CVE-2025-68431 | libheif | no fix listed |
| Low | GHSA-4xqq-m2hx-25v8 | rexml | 3.3.2 |
| Low | DEBIAN-CVE-2026-34003 | xorg-server | 2:21.1.7-3+deb12u12 |
| Low | GHSA-p7c9-8xx8-h74f | kafka_2.13 | 3.7.2 |
| Low | GHSA-f886-m6hf-6m8v | brace-expansion | 2.0.3 |
| Low | DEBIAN-CVE-2016-2781 | coreutils | no fix listed |
| Low | DEBIAN-CVE-2021-45261 | patch | no fix listed |
| Low | GHSA-75xq-5h9v-w6px | net-imap | 0.4.24 |
| Low | DLA-3893-1 | expat | 2.2.10-2+deb11u6 |
| Low | GHSA-8rrh-rw8j-w5fx | wheel | 0.46.2 |
| Low | DEBIAN-CVE-2026-32882 | libheif | no fix listed |
| Low | DEBIAN-CVE-2025-8176 | tiff | no fix listed |
| Low | GHSA-fccg-mwvh-qqg4 | netty-handler | 4.1.137.Final |
| Low | GHSA-4cx2-fc23-5wg6 | bcpkix-jdk18on | 1.79 |
| Low | GHSA-4cx2-fc23-5wg6 | bcpkix-jdk15to18 | 1.79 |
| Low | DEBIAN-CVE-2026-42767 | openssl | no fix listed |
| Low | GHSA-6wxm-mpqj-6jpf | github.com/ | 1.2.4 |
| Low | UBUNTU-CVE-2026-5545 | curl | 8.5.0-2ubuntu10.9 |
| Low | DEBIAN-CVE-2026-48962 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-6772 | nss | 2:3.87.1-1+deb12u3 |
| Low | GHSA-752w-5fwx-jx9f | pyjwt | 2.12.0 |
| Low | DEBIAN-CVE-2025-7709 | sqlite3 | no fix listed |
| Low | UBUNTU-CVE-2026-3784 | curl | 8.5.0-2ubuntu10.8 |
| Low | DEBIAN-CVE-2025-68471 | avahi | no fix listed |
| Low | GHSA-6xff-cpcq-vpw2 | github.com/ | 1.5.1-0.20260303204923-b13f74291d48 |
| Low | GHSA-fxqj-rqcc-2cmp | postcss | 8.5.23 |
| Low | GHSA-2vqw-3mp8-cgmx | puma | 7.2.1 |
| Low | DEBIAN-CVE-2026-34978 | cups | no fix listed |
| Low | DEBIAN-CVE-2026-56210 | aom | 3.6.0-1+deb12u3 |
| Low | GHSA-q4f6-jm68-57ww | netty-codec-http | 4.1.136.Final |
| Low | UBUNTU-CVE-2025-14819 | curl | 8.5.0-2ubuntu10.7 |
| Low | DEBIAN-CVE-2026-48029 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-6766 | nss | 2:3.87.1-1+deb12u3 |
| Low | GHSA-3677-xxcr-wjqv | jose4j | 0.9.6 |
| Low | DEBIAN-CVE-2026-42015 | gnutls28 | 3.7.9-2+deb12u7 |
| Low | ALPINE-CVE-2026-76642 | util-linux | 2.42.3-r0 |
| Low | DEBIAN-CVE-2026-76642 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2025-69649 | binutils | no fix listed |
| Low | DSA-5770-1 | expat | 2.5.0-1+deb12u1 |
| Low | DEBIAN-CVE-2024-28834 | gnutls28 | 3.7.9-2+deb12u3 |
| Low | DEBIAN-CVE-2025-62231 | xorg-server | 2:21.1.7-3+deb12u11 |
| Low | DEBIAN-CVE-2026-11822 | sqlite3 | no fix listed |
| Low | DEBIAN-CVE-2026-11824 | sqlite3 | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.33.8latest | 1 month ago | 1.12.0 | 13397603,583 | 49,025 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.