immich 1.2.10 Helm chart
helmforgeVerified publisherScored 7 Oct 2026
Immich photo and video management with HelmForge PostgreSQL, Redis-compatible cache, and machine learning
Version 1.2.10 todayapp version 3.1.0 0Artifact Hub
immich 1.2.10 deploys 5 container images: library/busybox, ghcr.io/immich-app/immich-server, ghcr.io/immich-app/immich-machine-learning, ghcr.io/immich-app/postgres and 1 more. Across them, 1,157 findings — 2 critical, 2 high — 1 on CISA KEV. The highest contribution is GO-2024-2687 in stdlib go1.18.2, fixed in 1.21.9. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | 1.37.0 | 0000 | 0 |
| ghcr.io/ | v3.1.0 | 0070400 | 5,021 |
| ghcr.io/ | v3.1.0 | 0137233 | 2,804 |
| ghcr.io/ | 14-vectorchord0.4.3-pgvectors0.2.0 | 2189254 | 4,360 |
| library/ | 8.10.2 | 00762 | 647 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-82560 | perl | no fix listed |
| Low | GHSA-2m8v-j782-fhvr | socket.io-parser | 4.2.7 |
| Low | GHSA-68fv-2mgg-jv7q | source-map-js | 1.2.2 |
| Low | DEBIAN-CVE-2026-93990 | expat | 2.5.0-1+deb12u4 |
| Low | DEBIAN-CVE-2026-0915 | glibc | 2.36-9+deb12u14 |
| Low | DEBIAN-CVE-2023-50495 | ncurses | no fix listed |
| Low | DEBIAN-CVE-2026-54874 | openssl | 3.0.22-1~deb12u1 |
| Low | GO-2026-4870 | stdlib | 1.25.9 |
| Low | GO-2026-4971 | stdlib | 1.25.10 |
| Low | GO-2026-4947 | stdlib | 1.25.9 |
| Low | DEBIAN-CVE-2026-48959 | perl | 5.36.0-7+deb12u4 |
| Low | GHSA-vc2v-76pw-4v95 | compression | 1.8.2 |
| Low | GHSA-vjc4-5qp5-m44j | pillow | 12.3.0 |
| Low | DEBIAN-CVE-2026-66035 | libssh2 | 1.11.1-1+deb13u2 |
| Low | GHSA-7r86-cg39-jmmj | minimatch | 10.2.3 |
| Low | GHSA-jqcg-44mw-7w3h | proxy-addr | 2.0.8 |
| Low | DEBIAN-CVE-2025-69419 | openssl | 3.0.18-1~deb12u2 |
| Low | GO-2026-5037 | stdlib | 1.25.11 |
| Low | GHSA-xj96-63gp-2gmr | pillow | 12.3.0 |
| Low | DEBIAN-CVE-2026-18408 | postgresql-17 | 17.11-0+deb13u1 |
| Low | DEBIAN-CVE-2026-6791 | glibc | no fix listed |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | GHSA-wf93-45jw-7689 | pip | 26.1.2 |
| Low | GO-2023-1987 | stdlib | 1.19.12 |
| Low | DEBIAN-CVE-2026-41992 | gzip | no fix listed |
| Low | DEBIAN-CVE-2026-80229 | curl | no fix listed |
| Low | GO-2026-5038 | stdlib | 1.25.11 |
| Low | PYSEC-2026-103 | onnx | 1.21.0rc1 |
| Low | GHSA-82r6-8w77-94w6 | anyio | 4.14.2 |
| Low | DEBIAN-CVE-2026-0861 | glibc | 2.36-9+deb12u14 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | DEBIAN-CVE-2026-42011 | gnutls28 | 3.7.9-2+deb12u7 |
| Low | DEBIAN-CVE-2026-56209 | aom | 3.12.1-1+deb13u1 |
| Low | DEBIAN-CVE-2024-2236 | libgcrypt20 | no fix listed |
| Low | GHSA-2883-xcg3-v3hh | js-yaml | 4.3.2 |
| Low | DEBIAN-CVE-2026-42766 | openssl | 3.0.20-1~deb12u2 |
| Low | DEBIAN-CVE-2025-6297 | dpkg | 1.21.23 |
| Low | GHSA-ch52-4w7c-c8xp | http-cache-semantics | no fix listed |
| Low | GHSA-r292-9mhp-454m | tar | 7.5.21 |
| Low | GHSA-qffp-2rhf-9h96 | tar | 7.5.10 |
| Low | GO-2024-2610 | stdlib | 1.21.8 |
| Low | DEBIAN-CVE-2025-6020 | pam | 1.5.2-6+deb12u2 |
| Low | DEBIAN-CVE-2026-34543 | openexr | no fix listed |
| Low | DEBIAN-CVE-2026-86145 | pcre2 | 10.42-1+deb12u1 |
| Low | GHSA-27vj-qcqg-25rc | fsspec | 2026.6.0 |
| Low | DEBIAN-CVE-2026-84782 | openssl | no fix listed |
| Low | GHSA-23c5-xmqv-rm74 | minimatch | 10.2.3 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.2.10latest | today | 3.1.0 | 22203949 | 12,832 |
| 1.2.9 | 5 days ago | 3.1.0 | 22203963 | 12,949 |
| 1.2.8 | 11 days ago | 3.1.0 | 22203963 | 12,949 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.