drupal 1.2.12 Helm chart
helmforgeVerified publisherScored 14 Sept 2026
Production-ready Drupal CMS with seeded sites persistence, S3 backups, and safe horizontal scaling controls
Version 1.2.12 5 days agoapp version 11.4.5 0Artifact Hub
drupal 1.2.12 deploys 2 container images: library/drupal and library/mysql. Across them, 2,145 findings — 1 critical, 1 high — 1 on CISA KEV. The highest contribution is GHSA-ghwc-95x2-682j in drupal/core 9.8.0, fixed in 10.4.10. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | 11.4.5-php8.5-apache-bookworm | 111521,928 | 17,391 |
| library/ | 9.7.2 | 00260 | 463 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2025-38272 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38438 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38195 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-45897 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38692 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38705 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39746 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39747 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-69646 | binutils | no fix listed |
| Low | DEBIAN-CVE-2025-38333 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38597 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39762 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-18938 | p11-kit | no fix listed |
| Low | DEBIAN-CVE-2025-38080 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39732 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-23000 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-8225 | binutils | no fix listed |
| Low | DEBIAN-CVE-2025-39779 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-13595 | util-linux | no fix listed |
| Low | GO-2026-4976 | stdlib | 1.25.10 |
| Low | DEBIAN-CVE-2025-39886 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-43491 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2019-16089 | linux | no fix listed |
| Low | DEBIAN-CVE-2003-1581 | apache2 | no fix listed |
| Low | DEBIAN-CVE-2025-38237 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2025-38544 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-22053 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39925 | linux | 6.1.187-1 |
| Low | GO-2026-5856 | stdlib | 1.25.12 |
| Low | DEBIAN-CVE-2025-39726 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38507 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38709 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39947 | linux | no fix listed |
| Low | GO-2025-4007 | stdlib | 1.24.9 |
| Low | DEBIAN-CVE-2025-38716 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39833 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2010-4563 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-28162 | libpng1.6 | no fix listed |
| Low | DEBIAN-CVE-2025-28164 | libpng1.6 | no fix listed |
| Low | DEBIAN-CVE-2025-39677 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39829 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39850 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39940 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-52961 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39705 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39707 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-45961 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-64190 | linux | no fix listed |
| Low | GO-2026-4980 | stdlib | 1.25.10 |
| Low | GO-2026-5039 | stdlib | 1.25.11 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.2.13latest | today | 11.4.6 | 1044340 | 3,802 |
| 1.2.12 | 5 days ago | 11.4.5 | 111541,988 | 17,854 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.