drupal 1.2.12 Helm chart
helmforgeVerified publisherScored 14 Sept 2026
Production-ready Drupal CMS with seeded sites persistence, S3 backups, and safe horizontal scaling controls
Version 1.2.12 4 days agoapp version 11.4.5 0Artifact Hub
drupal 1.2.12 deploys 2 container images: library/drupal and library/mysql. Across them, 2,145 findings — 1 critical, 1 high — 1 on CISA KEV. The highest contribution is GHSA-ghwc-95x2-682j in drupal/core 9.8.0, fixed in 10.4.10. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | 11.4.5-php8.5-apache-bookworm | 111521,928 | 17,391 |
| library/ | 9.7.2 | 00260 | 463 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2025-40354 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-11979 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2025-21985 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-54107 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-40170 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-40307 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2017-13694 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-86140 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2025-39859 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-74519 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-53361 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2011-4916 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-68340 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2025-21673 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-53781 | linux | no fix listed |
| Low | GHSA-39g6-x4x8-5jcm | drupal/ | 10.3.13 |
| Low | DEBIAN-CVE-2026-68253 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-4873 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-80550 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2025-40206 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-63845 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-63846 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-63848 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-72416 | linux | no fix listed |
| Low | DEBIAN-CVE-2016-10723 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39990 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-68379 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-53090 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-63847 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-64026 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39981 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-40064 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-74510 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-3441 | binutils | no fix listed |
| Low | DEBIAN-CVE-2025-40303 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-43153 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-43258 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-46274 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-64463 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-64481 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-68121 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-68143 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-68222 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-68370 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-72470 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-74739 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-74748 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-3184 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2026-72116 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2025-38429 | linux | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.2.13latest | 2 days ago | 11.4.6 | 1044340 | 3,802 |
| 1.2.12 | 4 days ago | 11.4.5 | 111541,988 | 17,854 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.