ilum-jupyterhub 4.3.1 Helm chart
ilumVerified publisherScored 14 Sept 2026
Modular Data Lakehouse for a Cloud Native World. Ilum JupyterHub helm chart
Version 4.3.1 9 months agodeploys tag jupyterhub-4.3.1 0Artifact Hub
ilum-jupyterhub 4.3.1 deploys 6 container images: bitnami/git, docker.ilum.cloud/ilum-jupyterhub, quay.io/jupyterhub/configurable-http-proxy, registry.k8s.io/kube-scheduler and 1 more. Across the 3 measured, 165 findings — 0 critical, 2 high. The highest contribution is ALPINE-CVE-2025-15467 in openssl 3.3.4-r0, fixed in 3.3.6-r0. Chart.yaml declares kubeVersion >=1.28.0-0; rendered for Kubernetes 1.28.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnami/ | latest | 0004 | 22 |
| docker.ilum.cloud/ | jupyterhub-4.3.1 | — | unmeasured |
| docker.ilum.cloud/ | gitea-operator-4.3.1 | — | unmeasured |
| quay.io/ | 5.1.0 | 01922 | 419 |
| registry.k8s.io/ | v1.30.14 | 0123105 | 1,394 |
| registry.k8s.io/ | 3.10.1 | — | not yet scanned |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-4x4m-3c2p-qppc | k8s.io/ | 1.31.12 |
| Low | GHSA-r4q5-vmmm-2653 | follow-redirects | 1.16.0 |
| Low | ALPINE-CVE-2025-15468 | openssl | 3.3.6-r0 |
| Low | GHSA-3wgm-2gw2-vh5m | k8s.io/ | no fix listed |
| Low | GHSA-74j8-88mm-7496 | k8s.io/ | no fix listed |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | GHSA-hfvc-g4fc-pqhx | go.opentelemetry.io/ | 1.43.0 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
| Low | GHSA-jgfp-53c3-624w | k8s.io/ | 1.29.14 |
| Low | ALPINE-CVE-2026-40200 | musl | 1.2.5-r11 |
| Low | ALPINE-CVE-2025-62408 | c-ares | 1.34.6-r0 |
| Low | ALPINE-CVE-2025-66199 | openssl | 3.3.6-r0 |
| Low | GHSA-j5w8-q4qc-rx2x | golang.org/ | 0.45.0 |
| Low | GHSA-vvgc-356p-c3xw | golang.org/ | 0.38.0 |
| Low | ALPINE-CVE-2025-4947 | curl | 8.14.0-r0 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | ALPINE-CVE-2026-22796 | openssl | 3.3.6-r0 |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
| Low | GHSA-r6j8-c6r2-37rr | k8s.io/ | 1.32.10 |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | ALPINE-CVE-2025-10148 | curl | 8.14.1-r2 |
| Low | GHSA-82m2-cv7p-4m75 | k8s.io/ | 1.27.16 |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | GHSA-vw47-mr44-3jf9 | k8s.io/ | no fix listed |
| Low | GO-2024-3333 | golang.org/ | 0.33.0 |
| Low | GHSA-8cfg-vx93-jvxw | k8s.io/ | 1.20.0-alpha.2 |
| Low | GO-2026-4981 | stdlib | 1.25.10 |
| Low | GO-2026-4977 | stdlib | 1.25.10 |
| Low | GO-2026-4986 | stdlib | 1.25.10 |
| Low | GO-2026-4918 | stdlib | 1.25.10 |
| Low | GO-2026-4918 | golang.org/ | 0.53.0 |
| Low | GO-2026-4337 | stdlib | 1.24.13 |
| Low | GHSA-8mjg-8c8g-6h85 | k8s.io/ | 1.20.0-alpha.1 |
| Low | GO-2026-4601 | stdlib | 1.25.8 |
| Low | GO-2026-5026 | stdlib | 1.25.13 |
| Low | GO-2026-5026 | golang.org/ | 0.55.0 |
| Low | GHSA-pxhw-596r-rwq5 | k8s.io/ | 1.27.13 |
| Low | GO-2026-4342 | stdlib | 1.24.12 |
| Low | GHSA-2v4p-qf9q-27wj | google.golang.org/ | 1.82.2 |
| Low | GO-2025-4116 | golang.org/ | 0.43.0 |
| Low | GO-2026-4870 | stdlib | 1.25.9 |
| Low | GO-2025-4009 | stdlib | 1.24.8 |
| Low | GO-2026-4947 | stdlib | 1.25.9 |
| Low | GO-2025-4006 | stdlib | 1.24.8 |
| Low | GO-2026-5037 | stdlib | 1.25.11 |
| Low | GO-2026-4971 | stdlib | 1.25.10 |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 4.3.1latest | 9 months ago | jupyterhub-4.3.1 | 0232131 | 1,835 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.