ilum-jupyterhub 4.3.1 Helm chart
ilumVerified publisherScored 14 Sept 2026
Modular Data Lakehouse for a Cloud Native World. Ilum JupyterHub helm chart
Version 4.3.1 9 months agodeploys tag jupyterhub-4.3.1 0Artifact Hub
ilum-jupyterhub 4.3.1 deploys 6 container images: bitnami/git, docker.ilum.cloud/ilum-jupyterhub, quay.io/jupyterhub/configurable-http-proxy, registry.k8s.io/kube-scheduler and 1 more. Across the 3 measured, 165 findings — 0 critical, 2 high. The highest contribution is ALPINE-CVE-2025-15467 in openssl 3.3.4-r0, fixed in 3.3.6-r0. Chart.yaml declares kubeVersion >=1.28.0-0; rendered for Kubernetes 1.28.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnami/ | latest | 0004 | 22 |
| docker.ilum.cloud/ | jupyterhub-4.3.1 | — | unmeasured |
| docker.ilum.cloud/ | gitea-operator-4.3.1 | — | unmeasured |
| quay.io/ | 5.1.0 | 01922 | 419 |
| registry.k8s.io/ | v1.30.14 | 0123105 | 1,394 |
| registry.k8s.io/ | 3.10.1 | — | not yet scanned |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | ALPINE-CVE-2026-27171 | zlib | 1.3.2-r0 |
| Low | GO-2026-5038 | stdlib | 1.25.11 |
| Low | GO-2026-5942 | golang.org/ | 0.56.0 |
| Low | GHSA-2h9c-34v6-3qmr | k8s.io/ | 1.2.0-alpha.6 |
| Low | GHSA-qxp5-gwg8-xv66 | golang.org/ | 0.36.0 |
| Low | GO-2025-4012 | stdlib | 1.24.8 |
| Low | GO-2024-2754 | k8s.io/ | 1.17.13 |
| Low | GO-2025-3956 | stdlib | 1.23.12 |
| Low | GO-2026-4440 | golang.org/ | 0.45.0 |
| Low | GO-2025-4011 | stdlib | 1.24.8 |
| Low | GO-2025-4015 | stdlib | 1.24.8 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GO-2024-2755 | k8s.io/ | 1.19.3 |
| Low | ALPINE-CVE-2025-5025 | curl | 8.14.0-r0 |
| Low | GHSA-qh36-44jv-c8xj | k8s.io/ | no fix listed |
| Low | GO-2026-4441 | golang.org/ | 0.45.0 |
| Low | GO-2026-5970 | golang.org/ | 0.39.0 |
| Low | GO-2025-4155 | stdlib | 1.24.11 |
| Low | GO-2025-4008 | stdlib | 1.24.8 |
| Low | GO-2025-4010 | stdlib | 1.24.8 |
| Low | GO-2025-4014 | stdlib | 1.24.8 |
| Low | ALPINE-CVE-2026-6042 | musl | 1.2.5-r10 |
| Low | GO-2026-6107 | go.etcd.io/ | 3.5.33 |
| Low | GO-2026-4976 | stdlib | 1.25.10 |
| Low | GO-2026-5856 | stdlib | 1.25.12 |
| Low | ALPINE-CVE-2026-22795 | openssl | 3.3.6-r0 |
| Low | GO-2025-4007 | stdlib | 1.24.9 |
| Low | GO-2026-6355 | golang.org/ | 0.56.0 |
| Low | GO-2026-4980 | stdlib | 1.25.10 |
| Low | GO-2026-5039 | stdlib | 1.25.11 |
| Low | GO-2025-4013 | stdlib | 1.24.8 |
| Low | GO-2025-3849 | stdlib | 1.23.12 |
| Low | GO-2026-4946 | stdlib | 1.25.9 |
| Low | GHSA-xc8m-28vv-4pjc | k8s.io/ | 1.24.14 |
| Low | GHSA-f9jg-8p32-2f55 | k8s.io/ | 1.26.0-alpha.3 |
| Low | GO-2026-4603 | stdlib | 1.25.8 |
| Low | GO-2026-6303 | golang.org/ | 0.55.0 |
| Low | GO-2026-6354 | golang.org/ | 0.56.0 |
| Low | GO-2026-4982 | stdlib | 1.25.10 |
| Low | GO-2026-6091 | stdlib | 1.25.13 |
| Low | GO-2026-4864 | stdlib | 1.25.9 |
| Low | GO-2026-4865 | stdlib | 1.25.9 |
| Low | GO-2026-4869 | stdlib | 1.25.9 |
| Low | GO-2026-4340 | stdlib | 1.24.12 |
| Low | GO-2025-4175 | stdlib | 1.24.11 |
| Low | ALPINE-CVE-2025-68160 | openssl | 3.3.6-r0 |
| Low | GO-2026-5025 | golang.org/ | 0.55.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 4.3.1latest | 9 months ago | jupyterhub-4.3.1 | 0232131 | 1,835 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.