drupal 1.2.12 Helm chart
helmforgeVerified publisherScored 15 Sept 2026
Production-ready Drupal CMS with seeded sites persistence, S3 backups, and safe horizontal scaling controls
Version 1.2.12 5 days agoapp version 11.4.5 0Artifact Hub
drupal 1.2.12 deploys 2 container images: library/drupal and library/mysql. Across them, 2,145 findings — 1 critical, 1 high — 1 on CISA KEV. The highest contribution is GHSA-ghwc-95x2-682j in drupal/core 9.8.0, fixed in 10.4.10. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | 11.4.5-php8.5-apache-bookworm | 111521,928 | 17,391 |
| library/ | 9.7.2 | 00260 | 463 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2008-1688 | m4 | no fix listed |
| Low | DEBIAN-CVE-2025-21634 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38261 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-45993 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38132 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38029 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38041 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38042 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38140 | linux | no fix listed |
| Low | DEBIAN-CVE-2024-39508 | linux | no fix listed |
| Low | DEBIAN-CVE-2024-36949 | linux | no fix listed |
| Low | GHSA-m959-cc7f-wv43 | cryptography | 46.0.6 |
| Low | DEBIAN-CVE-2024-46787 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-53231 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-53460 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-53538 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38064 | linux | no fix listed |
| Low | DEBIAN-CVE-2019-19070 | linux | no fix listed |
| Low | GO-2025-4013 | stdlib | 1.24.8 |
| Low | GO-2026-4946 | stdlib | 1.25.9 |
| Low | DEBIAN-CVE-2025-5278 | coreutils | no fix listed |
| Low | DEBIAN-CVE-2026-64139 | linux | 6.1.187-1 |
| Low | DRUPAL-CORE-2026-005 | drupal/ | 10.5.12 |
| Low | DRUPAL-CORE-2026-006 | drupal/ | 10.5.12 |
| Low | DEBIAN-CVE-2023-53394 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-53429 | linux | no fix listed |
| Low | DEBIAN-CVE-2024-58241 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-38207 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-39789 | linux | no fix listed |
| Low | DEBIAN-CVE-2019-1010023 | glibc | no fix listed |
| Low | DEBIAN-CVE-2019-1010022 | glibc | no fix listed |
| Low | DRUPAL-CORE-2026-007 | drupal/ | 10.5.12 |
| Low | DEBIAN-CVE-2026-43288 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-45963 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-56131 | expat | 2.5.0-1+deb12u3 |
| Low | DEBIAN-CVE-2026-23276 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-46158 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2026-46170 | linux | 6.1.187-1 |
| Low | DEBIAN-CVE-2023-53261 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-53523 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-53529 | linux | no fix listed |
| Low | DEBIAN-CVE-2023-53574 | linux | no fix listed |
| Low | DEBIAN-CVE-2025-15649 | perl | no fix listed |
| Low | DEBIAN-CVE-2025-71272 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-23088 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-23346 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-43137 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-46200 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-52990 | linux | no fix listed |
| Low | DEBIAN-CVE-2026-64144 | linux | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.2.13latest | today | 11.4.6 | 1037350 | 3,660 |
| 1.2.12 | 5 days ago | 11.4.5 | 111541,988 | 17,854 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.