guacamole 1.5.3 Helm chart
helmforgeVerified publisherScored 29 Sept 2026
Apache Guacamole clientless remote desktop gateway with guacd, PostgreSQL or MySQL, OIDC/SAML SSO, and S3 backup
Version 1.5.3 todayapp version 1.6.0 1Artifact Hub
guacamole 1.5.3 deploys 5 container images: library/busybox, guacamole/guacamole, guacamole/guacd and library/postgres. Across them, 886 findings — 2 critical, 2 high. The highest contribution is DEBIAN-CVE-2025-15467 in openssl 3.0.17-1~deb12u2, fixed in 3.0.18-1~deb12u2. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | 1.37 | 0000 | 0 |
| guacamole/ | 1.6.0 | 1158333 | 3,978 |
| guacamole/ | 1.6.0 | 0010 | 23 |
| library/ | 18.6-trixie | 0014134 | 1,320 |
| library/ | 17.5-bookworm | 1154287 | 3,677 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | DEBIAN-CVE-2026-5260 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | DEBIAN-CVE-2026-28387 | openssl | 3.0.19-1~deb12u2 |
| Medium | UBUNTU-CVE-2026-8924 | curl | 8.5.0-2ubuntu10.10 |
| Medium | DEBIAN-CVE-2025-13151 | libtasn1-6 | no fix listed |
| Medium | DEBIAN-CVE-2026-42009 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | DEBIAN-CVE-2024-26461 | krb5 | no fix listed |
| Medium | DEBIAN-CVE-2019-1010024 | glibc | no fix listed |
| Medium | GHSA-v3pr-hxpr-mfm8 | mina-core | 2.2.8 |
| Medium | DEBIAN-CVE-2026-33846 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | DEBIAN-CVE-2026-8376 | perl | no fix listed |
| Medium | UBUNTU-CVE-2026-18924 | curl | 8.5.0-2ubuntu10.15 |
| Medium | DEBIAN-CVE-2026-31790 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-63072 | openssl | 3.0.22-1~deb12u1 |
| Medium | UBUNTU-CVE-2025-69720 | ncurses | 6.4+20240113-1ubuntu2.1 |
| Medium | DEBIAN-CVE-2025-9232 | openssl | 3.0.17-1~deb12u3 |
| Medium | DEBIAN-CVE-2026-9076 | openssl | 3.0.20-1~deb12u2 |
| Medium | DEBIAN-CVE-2025-69421 | openssl | 3.0.18-1~deb12u2 |
| Medium | GHSA-m494-w24q-6f7w | mssql-jdbc | 10.2.4.jre11 |
| Medium | DEBIAN-CVE-2026-42496 | perl | no fix listed |
| Medium | DEBIAN-CVE-2025-69420 | openssl | 3.0.18-1~deb12u2 |
| Medium | UBUNTU-CVE-2026-8927 | curl | 8.5.0-2ubuntu10.10 |
| Medium | UBUNTU-CVE-2026-27135 | nghttp2 | 1.59.0-1ubuntu0.3 |
| Medium | DEBIAN-CVE-2026-7383 | openssl | 3.0.20-1~deb12u2 |
| Medium | GO-2022-1144 | stdlib | 1.18.9 |
| Medium | DEBIAN-CVE-2023-40403 | libxslt | 1.1.35-1+deb12u2 |
| Medium | DEBIAN-CVE-2026-3833 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | DEBIAN-CVE-2015-9019 | libxslt | no fix listed |
| Medium | UBUNTU-CVE-2025-32988 | gnutls28 | 3.8.3-1.1ubuntu3.4 |
| Medium | GHSA-9pwp-9qqc-pr26 | bcprov-jdk15to18 | 1.85 |
| Medium | GHSA-9pwp-9qqc-pr26 | bc-fips | 2.1.3 |
| Medium | DEBIAN-CVE-2026-28390 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-85091 | zlib | no fix listed |
| Medium | DEBIAN-CVE-2019-1010025 | glibc | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.5.3latest | today | 1.6.0 | 22127754 | 8,998 |
| 1.5.2 | 2 days ago | 1.6.0 | 22127754 | 8,998 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.