openaev 2.0.11 Helm chart
helm-openbasVerified publisherScored 8 Oct 2026
A Helm chart to deploy Open Breach and Attack Simulation platform
Version 2.0.11 yesterdayapp version 3.261005.0 0Artifact Hub
openaev 2.0.11 deploys 7 container images: library/busybox, rustfs/rustfs, openbas/caldera-server, openaev/platform and 3 more. Across the 6 measured, 1,780 findings — 9 critical, 10 high — 4 on CISA KEV. The highest contribution is DSA-5880-1 in freetype 2.12.1+dfsg-5+deb12u3, fixed in 2.12.1+dfsg-5+deb12u4.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | stable | 0000 | 0 |
| rustfs/ | 1.0.1 | 0010 | 15 |
| openbas/ | 5.1.0 | 79222844 | 13,455 |
| openaev/ | 3.261005.0 | 0011113 | 1,113 |
| opensearchproject/ | 3.9.0 | — | not yet scanned |
| bitnamilegacy/ | 17.6.0-debian-12-r4 | 1157226 | 3,332 |
| bitnamilegacy/ | 4.1.2-debian-12-r1 | 1052233 | 3,205 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-60001 | openssh | no fix listed |
| Low | GHSA-cpwx-vrp4-4pq7 | jinja2 | 3.1.6 |
| Low | DEBIAN-CVE-2026-58055 | nghttp2 | no fix listed |
| Low | GHSA-7q8q-rj6j-mhjq | axios | 0.33.0 |
| Low | GHSA-mq26-g339-26xf | pip | 23.3 |
| Low | DEBIAN-CVE-2026-27142 | golang-1.19 | no fix listed |
| Low | GO-2026-4603 | stdlib | 1.25.8 |
| Low | DEBIAN-CVE-2025-61727 | golang-1.19 | no fix listed |
| Low | GO-2025-4175 | stdlib | 1.24.11 |
| Low | DEBIAN-CVE-2026-22695 | libpng1.6 | 1.6.39-2+deb12u2 |
| Low | DEBIAN-CVE-2026-8643 | python-pip | no fix listed |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | GHSA-hpj7-wq8m-9hgp | aiohttp | 3.14.1 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | DEBIAN-CVE-2026-32282 | golang-1.19 | no fix listed |
| Low | GO-2026-4864 | stdlib | 1.25.9 |
| Low | DEBIAN-CVE-2026-56865 | golang-1.19 | no fix listed |
| Low | DEBIAN-CVE-2024-22365 | pam | 1.5.2-6+deb12u2 |
| Low | DEBIAN-CVE-2026-6429 | curl | no fix listed |
| Low | GHSA-v2v4-37r5-5v8g | ip-address | 10.1.1 |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
| Low | DEBIAN-CVE-2025-15367 | python3.11 | no fix listed |
| Low | DEBIAN-CVE-2026-32289 | golang-1.19 | no fix listed |
| Low | DEBIAN-CVE-2026-39823 | golang-1.19 | no fix listed |
| Low | GO-2026-4865 | stdlib | 1.25.9 |
| Low | GO-2026-4982 | stdlib | 1.25.10 |
| Low | GO-2026-5025 | golang.org/ | 0.55.0 |
| Low | GHSA-3v7f-55p6-f55p | picomatch | 2.3.2 |
| Low | GHSA-gvwx-54wh-qm9j | tar | 7.5.17 |
| Low | DEBIAN-CVE-2026-86143 | libxml2 | no fix listed |
| Low | GHSA-h3mg-xc3c-68pw | ip-address | 10.7.1 |
| Low | DEBIAN-CVE-2026-3783 | curl | 7.88.1-10+deb12u15 |
| Low | DEBIAN-CVE-2026-86140 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2026-86142 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2025-10148 | curl | 7.88.1-10+deb12u15 |
| Low | DEBIAN-CVE-2024-24789 | golang-1.19 | no fix listed |
| Low | UBUNTU-CVE-2026-78410 | util-linux | no fix listed |
| Low | BIT-rabbitmq-2026-66071 | rabbitmq | 3.13.15 |
| Low | DEBIAN-CVE-2026-4873 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-89160 | pcre2 | 10.42-1+deb12u1 |
| Low | DEBIAN-CVE-2024-26462 | krb5 | 1.20.1-2+deb12u3 |
| Low | GHSA-83g3-92jg-28cx | tar | 7.5.8 |
| Low | BIT-rabbitmq-2026-66073 | rabbitmq | 3.13.15 |
| Low | UBUNTU-CVE-2026-102633 | expat | no fix listed |
| Low | GHSA-5c9x-8gcm-mpgx | axios | 0.31.1 |
| Low | GHSA-vf2m-468p-8v99 | axios | 0.31.1 |
| Low | BIT-rabbitmq-2026-66072 | rabbitmq | 3.13.15 |
| Low | BIT-rabbitmq-2026-66074 | rabbitmq | 3.13.15 |
| Low | DEBIAN-CVE-2026-1965 | curl | no fix listed |
| Low | DEBIAN-CVE-2022-0563 | util-linux | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.0.11latest | yesterday | 3.261005.0 | 9103431,416 | 21,120 |
| 2.0.10 | 3 days ago | 3.261001.0 | 21118571 | 7,600 |
| 2.0.9 | 6 days ago | 3.261001.0 | 21117572 | 7,594 |
| 2.0.8 | 12 days ago | 3.260923.0 | 21127614 | 8,178 |
| 2.0.7 | 16 days ago | 3.260921.0 | 21128605 | 8,185 |
| 2.0.6 | 19 days ago | 3.260917.1 | 21128596 | 8,083 |
| 2.0.5 | 1 month ago | 3.260904.0 | 21129634 | 8,415 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.