StackRadar

ckan 1.3.10 Helm chart

helmforgeVerified publisher

Scored 7 Oct 2026

CKAN open data portal with DataPusher, Solr, PostgreSQL, and Redis

Version 1.3.10 todayapp version 2.12.0 0Artifact Hub

ckan 1.3.10 deploys 6 container images: ckan/ckan-base-datapusher, library/postgres, library/busybox, ckan/ckan-base and 2 more. Across them, 932 findings — 5 critical, 3 high. The highest contribution is GHSA-f58c-gq56-vjjf in tika-parsers 1.28.5, fixed in 2.0.0. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.

Radar Score

11,17253197727

932 findings over 6 of 6 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
ckan/ckan-base-datapusher0.0.21001428542
library/postgres×218.6-trixie00191331,572
library/busybox×21.3700000
ckan/ckan-base2.12.000291652,073
library/redis8.10.200762647
ckan/ckan-solr2.11-solr9531283396,338

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

623 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-5773curl@7.81.0-1ubuntu1.237.81.0-1ubuntu1.24
LowGHSA-cfxw-4h78-h7fwdnsjava@3.4.03.6.0
LowDEBIAN-CVE-2026-54411pam@1.7.0-5no fix listed
LowGO-2025-4006stdlib@go1.24.61.24.8
LowDEBIAN-CVE-2026-7598libssh2@1.10.0-3+b11.10.0-3+deb12u1
LowDEBIAN-CVE-2026-74860libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3no fix listed
LowDEBIAN-CVE-2026-82560perl@5.40.1-6+deb13u1no fix listed
LowUBUNTU-CVE-2023-50495ncurses@6.3-2ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-54874openssl@3.0.2-0ubuntu1.233.0.2-0ubuntu1.29
LowGO-2026-4870stdlib@go1.24.61.25.9
LowGHSA-vc2w-4v3p-2mqwsolr-core@9.9.09.10.1
LowGO-2026-4971stdlib@go1.24.61.25.10
LowGHSA-7xrh-hqfc-g7qrzookeeper@3.9.33.9.5
LowGHSA-3wrr-7qpf-2prhjackson-databind@2.12.7.12.14.0
LowGO-2026-4947stdlib@go1.24.61.25.9
LowUBUNTU-CVE-2026-48959perl@5.34.0-3ubuntu1.5no fix listed
LowUBUNTU-CVE-2021-31879wget@1.21.2-2ubuntu1.1no fix listed
LowUBUNTU-CVE-2025-69419openssl@3.0.2-0ubuntu1.23no fix listed
LowGO-2026-5037stdlib@go1.24.61.25.11
LowGHSA-q4xh-88c3-wmh7jackson-databind@2.18.02.18.10
LowUBUNTU-CVE-2026-3833gnutls28@3.7.3-4ubuntu1.83.7.3-4ubuntu1.9
LowDEBIAN-CVE-2026-6791glibc@2.41-12+deb13u4no fix listed
LowGHSA-xqr8-7jwr-rhp7certifi@2020.12.52023.7.22
LowGO-2026-5972stdlib@go1.24.61.25.13
LowGO-2026-6088stdlib@go1.24.61.25.13
LowGO-2026-6089stdlib@go1.24.61.25.13
LowGO-2026-6090stdlib@go1.24.61.25.13
LowGHSA-wf93-45jw-7689pip@20.3.426.1.2
LowGO-2023-1987stdlib@go1.18.11.19.12
LowUBUNTU-CVE-2026-41992gzip@1.10-4ubuntu4.11.10-4ubuntu4.2
LowGO-2026-5038stdlib@go1.24.61.25.11
LowGHSA-7p63-w6x9-6gr7jersey-client@3.1.93.1.10
LowGO-2026-6218stdlib@go1.24.61.25.13
LowUBUNTU-CVE-2026-42011gnutls28@3.7.3-4ubuntu1.83.7.3-4ubuntu1.9
LowGHSA-p6pp-m3f8-5c89jackson-core@2.18.02.18.11
LowUBUNTU-CVE-2025-32990gnutls28@3.7.3-4ubuntu1.8no fix listed
LowDEBIAN-CVE-2024-2236libgcrypt20@1.11.0-7+deb13u1no fix listed
LowUBUNTU-CVE-2026-42766openssl@3.0.2-0ubuntu1.233.0.2-0ubuntu1.25
LowGO-2024-2610stdlib@go1.18.11.21.8
LowUBUNTU-CVE-2026-86145pcre2@10.39-3ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-84782openssl@3.0.2-0ubuntu1.233.0.2-0ubuntu1.30
LowGHSA-w35j-pv5h-q9q9log4j-layout-template-json@2.21.02.25.4
LowGHSA-g8m5-722r-8whqjetty-server@10.0.2210.0.24
LowGO-2023-2041stdlib@go1.18.11.20.8
LowDEBIAN-CVE-2026-24882gnupg2@2.4.7-21+deb13u1+b5no fix listed
LowGHSA-h84g-69h7-mw6vmchange-commons-java@0.2.190.6.0
LowGO-2025-3751stdlib@go1.18.11.23.10
LowGHSA-r2xf-8xr9-62gwjline-builtins@3.9.03.30.15
LowGO-2022-1095stdlib@go1.18.11.18.8
LowGHSA-c4c3-7fpv-j4q5netty-handler@4.1.114.Final4.1.137.Final

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.3.10latesttoday2.12.05319772711,172
1.3.95 days ago2.12.05319775511,406
1.3.811 days ago2.12.05319775511,406

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/helmforge/ckan.svg)](https://charts.stackradar.io/charts/helmforge/ckan)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Oct 2026 · scanned 7 Oct 2026 · advisories as of 7 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.