openaev 2.0.12 Helm chart
helm-openbasVerified publisherScored 11 Oct 2026
A Helm chart to deploy Open Breach and Attack Simulation platform
Version 2.0.12 yesterdayapp version 3.261009.0 0Artifact Hub
openaev 2.0.12 deploys 7 container images: library/busybox, rustfs/rustfs, openbas/caldera-server, openaev/platform and 3 more. Across the 6 measured, 1,837 findings — 9 critical, 10 high — 4 on CISA KEV. The highest contribution is DSA-5880-1 in freetype 2.12.1+dfsg-5+deb12u3, fixed in 2.12.1+dfsg-5+deb12u4.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | stable | 0000 | 0 |
| rustfs/ | 1.0.1 | 0001 | 13 |
| openbas/ | 5.1.0 | 79223884 | 13,865 |
| openaev/ | 3.261009.0 | 007117 | 1,065 |
| opensearchproject/ | 3.9.0 | — | not yet scanned |
| bitnamilegacy/ | 17.6.0-debian-12-r4 | 1155235 | 3,379 |
| bitnamilegacy/ | 4.1.2-debian-12-r1 | 1050244 | 3,272 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-0865 | python3.11 | 3.11.2-6+deb12u7 |
| Low | DEBIAN-CVE-2024-38949 | libde265 | 1.0.11-1+deb12u3 |
| Low | GHSA-mfx4-hv73-q22v | aiohttp | 3.14.2 |
| Low | GO-2026-4970 | stdlib | 1.25.12 |
| Low | DEBIAN-CVE-2026-11824 | sqlite3 | no fix listed |
| Low | DEBIAN-CVE-2024-45341 | golang-1.19 | no fix listed |
| Low | GO-2025-3373 | stdlib | 1.22.11 |
| Low | DEBIAN-CVE-2024-28834 | gnutls28 | 3.7.9-2+deb12u3 |
| Low | BIT-postgresql-2026-6476 | postgresql | 17.10.0 |
| Low | DEBIAN-CVE-2026-32814 | libheif | no fix listed |
| Low | GHSA-rw4j-r22c-9gc3 | asyncssh | 2.24.0 |
| Low | DEBIAN-CVE-2026-32739 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-41069 | libheif | no fix listed |
| Low | GHSA-8988-9cw3-xx77 | urllib3 | 2.8.0 |
| Low | GHSA-mmx7-hfxf-jppx | axios | 0.33.0 |
| Low | UBUNTU-CVE-2026-50258 | xorg-server | no fix listed |
| Low | UBUNTU-CVE-2026-50259 | xorg-server | no fix listed |
| Low | GHSA-9ppj-qmqm-q256 | tar | 7.5.11 |
| Low | DEBIAN-CVE-2026-1502 | python3.11 | 3.11.2-6+deb12u9 |
| Low | DEBIAN-CVE-2025-40909 | perl | 5.36.0-7+deb12u3 |
| Low | GHSA-7822-rcf6-97fx | amqp-client | 5.36.0 |
| Low | DEBIAN-CVE-2026-32738 | libheif | no fix listed |
| Low | DEBIAN-CVE-2025-66864 | binutils | no fix listed |
| Low | DEBIAN-CVE-2025-61144 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-8458 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-25210 | expat | 2.5.0-1+deb12u4 |
| Low | DEBIAN-CVE-2026-0672 | python3.11 | 3.11.2-6+deb12u7 |
| Low | DEBIAN-CVE-2025-14524 | curl | 7.88.1-10+deb12u15 |
| Low | DEBIAN-CVE-2025-1147 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-93543 | libxi | no fix listed |
| Low | UBUNTU-CVE-2026-50256 | xorg-server | no fix listed |
| Low | GHSA-fv7c-fp4j-7gwp | @babel/ | 7.29.4 |
| Low | DSA-6140-1 | gnutls28 | 3.7.9-2+deb12u6 |
| Low | UBUNTU-CVE-2024-52616 | avahi | no fix listed |
| Low | DEBIAN-CVE-2026-7010 | perl | 5.36.0-7+deb12u4 |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | GHSA-c427-h43c-vf67 | aiohttp | 3.13.4 |
| Low | DEBIAN-CVE-2026-49271 | libheif | no fix listed |
| Low | GHSA-rpw4-54j3-4h4q | ip-address | 10.5.1 |
| Low | DEBIAN-CVE-2025-8869 | python-pip | no fix listed |
| Low | GHSA-4xh5-x5gv-qwph | pip | 25.3 |
| Low | GHSA-w8wr-v893-vjvp | tar | 7.5.18 |
| Low | UBUNTU-CVE-2026-50264 | xorg-server | no fix listed |
| Low | UBUNTU-CVE-2026-50257 | xorg-server | no fix listed |
| Low | BIT-rabbitmq-2026-67412 | rabbitmq | 3.13.18 |
| Low | DEBIAN-CVE-2026-95184 | gnutls28 | no fix listed |
| Low | GO-2025-4012 | stdlib | 1.24.8 |
| Low | UBUNTU-CVE-2026-103111 | pcre2 | no fix listed |
| Low | DEBIAN-CVE-2026-8328 | python3.11 | 3.11.2-6+deb12u9 |
| Low | UBUNTU-CVE-2026-50260 | xorg-server | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.0.12latest | yesterday | 3.261009.0 | 9103351,481 | 21,594 |
| 2.0.11 | 3 days ago | 3.261005.0 | 9103391,487 | 21,707 |
| 2.0.10 | 6 days ago | 3.261001.0 | 21113592 | 7,712 |
| 2.0.9 | 9 days ago | 3.261001.0 | 21113592 | 7,708 |
| 2.0.8 | 14 days ago | 3.260923.0 | 21122635 | 8,289 |
| 2.0.7 | 19 days ago | 3.260921.0 | 21123626 | 8,296 |
| 2.0.6 | 21 days ago | 3.260917.1 | 21123617 | 8,194 |
| 2.0.5 | 1 month ago | 3.260904.0 | 21124655 | 8,526 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.