StackRadar

ilum-core Helm chart

ilumOfficialVerified publisher

Scored 14 Sept 2026

Modular Data Lakehouse for a Cloud Native World. Ilum Core helm chart

Latest 6.7.3 2 months agoapp version 6.7.3 1Artifact Hub

ilum-core 6.7.3 deploys 5 container images: ilum/mongodb, curlimages/curl, ilum/core, ilum/spark-launcher and 1 more. Across the 3 measured, 329 findings1 critical, 6 high 2 on CISA KEV. The highest contribution is BIT-mongodb-2025-14847 in mongodb 6.0.12, fixed in 4.4.30.

Radar Score

3,5561640282

329 findings over 3 of 5 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

5 images
ImageTagVulnerabilitiesRadar Score
ilum/mongodb6.0.513161752,075
curlimages/curl×28.5.002611329
ilum/core6.7.3not yet scanned
ilum/spark-launcherspark-4.1.2not yet scanned
alpine/kubectl1.34.10118961,152

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

268 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-jppx-rxg9-jmrxgolang.org/x/crypto@v0.14.00.52.0
LowALPINE-CVE-2026-14456openssl@3.5.4-r03.5.8-r0
LowALPINE-CVE-2026-9076openssl@3.5.4-r03.5.7-r0
LowBIT-mongodb-2024-10921mongodb@6.0.125.0.30
LowGO-2023-1571stdlib@go1.19.41.19.6
LowALPINE-CVE-2026-63072openssl@3.5.4-r03.5.8-r0
LowALPINE-CVE-2026-45445openssl@3.5.4-r03.5.7-r0
LowBIT-mongodb-2026-11933mongodb@6.0.124.4.31
LowBIT-mongodb-2025-3085mongodb@6.0.125.0.31
LowDLA-3907-1sqlite3@3.34.1-33.34.1-3+deb11u1
LowGO-2023-2102stdlib@go1.20.31.20.10
LowBIT-mongodb-2024-3372mongodb@6.0.125.0.25
LowALPINE-CVE-2026-31789openssl@3.5.4-r03.5.6-r0
LowALPINE-CVE-2025-69419openssl@3.5.4-r03.5.5-r0
LowALPINE-CVE-2026-54874openssl@3.5.4-r03.5.8-r0
LowALPINE-CVE-2026-42766openssl@3.5.4-r03.5.7-r0
LowBIT-mongodb-2025-6709mongodb@6.0.126.0.21
LowALPINE-CVE-2026-63075openssl@3.5.4-r03.5.8-r0
LowALPINE-CVE-2026-22184zlib@1.3.1-r21.3.2-r0
LowGHSA-q4h4-gmj2-qvw2golang.org/x/crypto@v0.14.00.52.0
LowGHSA-w879-237q-wc7rgolang.org/x/crypto@v0.14.00.52.0
LowGHSA-2wrh-6pvc-2jm9golang.org/x/net@v0.8.00.13.0
LowALPINE-CVE-2026-33630c-ares@1.34.5-r01.34.8-r0
LowBIT-mongodb-2025-3083mongodb@6.0.125.0.31
LowGO-2023-2185stdlib@go1.20.31.20.11
LowALPINE-CVE-2024-4603openssl@3.1.4-r43.1.5-r0
LowALPINE-CVE-2026-75803openssl@3.5.4-r03.5.8-r0
LowBIT-mongodb-2024-8305mongodb@6.0.126.0.17
LowBIT-mongodb-2025-6713mongodb@6.0.126.0.22
LowALPINE-CVE-2025-15468openssl@3.5.4-r03.5.5-r0
LowBIT-mongodb-2025-10060mongodb@6.0.126.0.25
LowBIT-mongodb-2025-6706mongodb@6.0.126.0.21
LowGO-2023-1703stdlib@go1.19.41.19.8
LowDSA-5650-1util-linux@2.36.1-8+deb11u12.36.1-8+deb11u2
LowGO-2026-4341stdlib@go1.24.61.24.12
LowBIT-mongodb-2025-6710mongodb@6.0.126.0.21
LowBIT-mongodb-2025-6714mongodb@6.0.126.0.23
LowGO-2024-2887stdlib@go1.20.121.21.11
LowGO-2023-1704stdlib@go1.19.41.19.8
LowALPINE-CVE-2025-26519musl@1.2.4_git20230717-r41.2.4_git20230717-r5
LowALPINE-CVE-2026-2673openssl@3.5.4-r03.5.6-r0
LowDSA-5726-1krb5@1.18.3-6+deb11u41.18.3-6+deb11u5
LowALPINE-CVE-2026-42767openssl@3.5.4-r03.5.7-r0
LowALPINE-CVE-2026-5545curl@8.14.1-r28.14.1-r3
LowBIT-mongodb-2026-9753mongodb@6.0.127.0.35
LowBIT-mongodb-2025-3084mongodb@6.0.125.0.31
LowGO-2023-1568stdlib@go1.19.41.19.6
LowGO-2023-1987stdlib@go1.20.31.19.12
LowBIT-mongodb-2024-7553mongodb@6.0.125.0.27
LowALPINE-CVE-2026-63074openssl@3.5.4-r03.5.8-r0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
6.7.3latest2 months ago6.7.316402823,556

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/ilum/ilum-core.svg)](https://charts.stackradar.io/charts/ilum/ilum-core)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.