n8n 2.1.3 Helm chart
helmforgeVerified publisherScored 7 Oct 2026
n8n workflow automation platform with SQLite or PostgreSQL and optional Redis queue mode
Version 2.1.3 todayapp version 2.41.3 5Artifact Hub
n8n 2.1.3 deploys 2 container images: n8nio/n8n and n8nio/runners. Across them, 165 findings — 0 critical, 0 high. The highest contribution is ALPINE-CVE-2026-63073 in openssl 3.5.7-r1, fixed in 3.5.8-r0. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-6h8r-xr42-gp59 | @xmldom/ | 0.8.15 |
| Low | GHSA-x97p-jq2g-jp4f | axios | 1.20.0 |
| Low | ALPINE-CVE-2026-80255 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-13608 | curl | 8.22.0-r0 |
| Low | GHSA-858h-whjf-mvg5 | simple-git | 4.0.0 |
| Low | GHSA-c8x8-7fp4-3x9w | prosemirror-view | 1.42.3 |
| Low | GHSA-3pq3-5fj3-cg6v | axios | 1.20.0 |
| Low | GHSA-4hqw-qxg8-jxx2 | axios | 1.20.0 |
| Low | ALPINE-CVE-2026-75803 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-82208 | curl | 8.22.0-r0 |
| Low | GHSA-rfgv-xxqx-mfg5 | undici | 6.28.1 |
| Low | GHSA-58mr-gqgx-xq4g | fast-uri | 3.1.7 |
| Low | ALPINE-CVE-2026-80230 | curl | 8.22.0-r0 |
| Low | GHSA-5m5x-9j46-h678 | element-plus | no fix listed |
| Low | GHSA-6j4f-fj2g-mc7p | brace-expansion | 5.0.10 |
| Low | GHSA-qhr7-859c-m2p7 | brace-expansion | 5.0.11 |
| Low | GHSA-6gmq-8vp8-gcm6 | @xmldom/ | 0.8.15 |
| Low | GHSA-r4gj-5m52-g5wh | axios | 1.20.0 |
| Low | GHSA-j8rh-479h-cp32 | axios | 1.20.0 |
| Low | GHSA-9fr6-4gfg-395g | axios | 1.20.0 |
| Low | GHSA-vh66-26gq-q6x8 | axios | 1.20.0 |
| Low | GHSA-m8m8-qj5v-23w3 | axios | 1.20.0 |
| Low | GHSA-2vr4-cq9g-pvrc | ip-address | 10.5.1 |
| Low | GHSA-p6gq-j5cr-w38f | nodemailer | 9.0.1 |
| Low | ALPINE-CVE-2026-76956 | expat | 2.8.4-r0 |
| Low | ALPINE-CVE-2026-63074 | openssl | 3.5.8-r0 |
| Low | GHSA-gqvv-2mrq-wpjv | hono | 4.13.5 |
| Low | GHSA-rmmh-p597-ppvv | showdown | no fix listed |
| Low | GHSA-v53p-9fqp-m79j | nodemailer | 10.0.6 |
| Low | ALPINE-CVE-2026-89157 | pcre2 | 10.48-r0 |
| Low | GO-2026-4970 | stdlib | 1.25.12 |
| Low | GHSA-wmmp-3585-3rmp | nodemailer | 9.1.0 |
| Low | GHSA-8988-9cw3-xx77 | urllib3 | 2.8.0 |
| Low | GHSA-cc9r-2j5m-2m83 | nodemailer | 9.1.0 |
| Low | GHSA-38c4-r59v-3vqw | markdown-it | 14.1.1 |
| Low | GHSA-qw65-cvwx-89v3 | fast-uri | 3.1.7 |
| Low | GHSA-rpw4-54j3-4h4q | ip-address | 10.5.1 |
| Low | GHSA-gh4c-6fx4-qh6g | urllib3 | 2.8.0 |
| Low | ALPINE-CVE-2026-103111 | pcre2 | 10.49-r0 |
| Low | GHSA-j6r3-76f7-8jcv | ip-address | 10.7.1 |
| Low | GHSA-crvj-82cr-hjcx | hono | 4.13.5 |
| Low | GHSA-3wwx-pv8p-q78v | undici | 6.28.1 |
| Low | GHSA-m9gg-hp2v-232j | @grpc/ | 1.14.5 |
| Low | GHSA-rj75-hqrm-r3gf | postcss-selector-parser | 7.1.6 |
| Low | ALPINE-CVE-2026-60001 | openssh | 10.3_p1-r1 |
| Low | GHSA-3pph-fpjx-jg34 | multer | 2.4.0 |
| Low | GHSA-g6gw-c38x-mqfc | hono | 4.13.5 |
| Low | GHSA-22g5-r2x5-97cx | showdown | no fix listed |
| Low | GHSA-h3mg-xc3c-68pw | ip-address | 10.7.1 |
| Low | GHSA-cr32-g25g-vxjj | showdown | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.1.3latest | today | 2.41.3 | 0020145 | 1,797 |
| 2.1.2 | 5 days ago | 2.41.3 | 0020145 | 1,797 |
| 2.1.1 | 10 days ago | 2.40.7 | 002059 | 890 |
| 2.1.0 | 11 days ago | 2.39.5 | 002258 | 909 |
| 2.0.1 | 21 days ago | 2.39.5 | 002258 | 909 |
| 2.0.0 | 22 days ago | 2.38.4 | 00977 | 882 |
| 1.6.17 | 27 days ago | 2.35.3 | 0011120 | 1,222 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.