StackRadar

opencloud Helm chart

jacobcolvinVerified publisher

Scored 14 Sept 2026

OpenCloud Helm community chart

Latest 0.2.3 11 months agoapp version latest 0Artifact Hub

opencloud 0.2.3 deploys 13 container images: library/busybox, opencloudeu/opencloud-rolling, quay.io/keycloak/keycloak, minio/minio and 4 more. Across the 12 measured, 4,110 findings19 critical, 11 high 12 on CISA KEV. The highest contribution is GHSA-f58c-gq56-vjjf in tika-core 2.9.2, fixed in 3.2.2.

Radar Score

45,23919116843,396

4,110 findings over 12 of 13 images measured

KEV ×12 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

13 images
ImageTagVulnerabilitiesRadar Score
library/busybox×61.3600000
opencloudeu/opencloud-rolling×22.1.001201781,842
quay.io/keycloak/keycloak26.1.410181601,885
minio/miniolatest0091091,069
onlyoffice/documentserver8.2.2not yet scanned
opencloudeu/web-extensionsdraw-io-1.0.021803364,755
opencloudeu/web-extensionsexternal-sites-1.0.021803364,755
opencloudeu/web-extensionsimporter-1.0.021803364,755
opencloudeu/web-extensionsjson-viewer-1.0.021803364,755
opencloudeu/web-extensionsprogress-bars-1.0.021803364,755
opencloudeu/web-extensionsunzip-1.0.021803364,755
library/postgresalpine00861634
apache/tika2.9.2.1-full6414987211,279

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

1,326 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-c653-97m9-rcg9netty-handler@4.1.118.Final4.1.135.Final
LowUBUNTU-CVE-2024-12243gnutls28@3.8.3-1.1ubuntu3.13.8.3-1.1ubuntu3.3
LowGHSA-vc5p-v9hr-52mjlog4j-core@2.23.12.25.3
LowUBUNTU-CVE-2025-32989gnutls28@3.8.3-1.1ubuntu3.13.8.3-1.1ubuntu3.4
LowGHSA-r6ph-v2qm-q3c2cryptography@41.0.746.0.5
LowRHSA-2025:8655glibc@2.34-125.el9_5.30:2.34-168.el9_6.19
LowUBUNTU-CVE-2026-6464postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowUBUNTU-CVE-2026-9538perl@5.38.2-3.2build25.38.2-3.2ubuntu0.4
LowDEBIAN-CVE-2026-58050libssh2@1.10.0-3+b11.10.0-3+deb12u1
LowGHSA-93wv-jw9v-4972netty-codec-http2@4.1.118.Final4.1.136.Final
LowDEBIAN-CVE-2020-15719openldap@2.5.13+dfsg-5no fix listed
LowUBUNTU-CVE-2025-6395gnutls28@3.8.3-1.1ubuntu3.13.8.3-1.1ubuntu3.4
LowGHSA-6jqx-86gh-f27wnetty-codec-http@4.1.118.Final4.1.136.Final
LowUBUNTU-CVE-2026-56208aom@3.8.2-2build1no fix listed
LowUBUNTU-CVE-2026-0990libxml2@2.9.14+dfsg-1.3ubuntu32.9.14+dfsg-1.3ubuntu3.7
LowUBUNTU-CVE-2026-21932openjdk-17@17.0.11+9-117.0.18+8-1~24.04.1
LowUBUNTU-CVE-2025-24528krb5@1.20.1-6ubuntu21.20.1-6ubuntu2.5
LowGHSA-f2hx-5fx3-hmcvkeycloak-services@26.1.426.5.7
LowDEBIAN-CVE-2026-66034libssh2@1.10.0-3+b11.10.0-3+deb12u1
LowUBUNTU-CVE-2024-6923python3.12@3.12.3-13.12.3-1ubuntu0.2
LowUBUNTU-CVE-2025-24928libxml2@2.9.14+dfsg-1.3ubuntu32.9.14+dfsg-1.3ubuntu3.2
LowALPINE-CVE-2026-82208curl@8.21.0-r08.22.0-r0
LowGHSA-j5g9-f88f-gfj3httplib2@0.20.40.32.0
LowGHSA-mvh2-crg5-v77cnetty-codec-http@4.1.118.Final4.1.136.Final
LowUBUNTU-CVE-2026-59939python-httplib2@0.20.4-30.20.4-3ubuntu0.1
LowDEBIAN-CVE-2025-15661libssh2@1.10.0-3+b11.10.0-3+deb12u1
LowUBUNTU-CVE-2026-14668postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowGHSA-m297-3jv9-m927keycloak-services@26.1.426.5.5
LowDEBIAN-CVE-2026-54411pam@1.5.2-6+deb12u1no fix listed
LowUBUNTU-CVE-2026-2219dpkg@1.22.6ubuntu61.22.6ubuntu6.6
LowUBUNTU-CVE-2026-42497perl@5.38.2-3.2build25.38.2-3.2ubuntu0.3
LowUBUNTU-CVE-2026-41992gzip@1.12-1ubuntu31.12-1ubuntu3.2
LowUBUNTU-CVE-2026-61094mysql-8.0@8.0.36-2ubuntu38.0.46-0ubuntu0.24.04.4
LowUBUNTU-CVE-2016-2568policykit-1@124-2ubuntu1no fix listed
LowGHSA-h749-fxx7-pwpggithub.com/minio/minio@v0.0.0-20250907161309-07c3a429bfed+dirtyno fix listed
LowGHSA-558v-64gr-wgg4netty-codec@4.1.118.Final4.1.136.Final
LowGHSA-c3fc-8qff-9hwxbcprov-jdk18on@1.78.11.84
LowRHSA-2026:18599p11-kit@0.25.3-3.el9_50:0.26.2-1.el9
LowUBUNTU-CVE-2026-56211aom@3.8.2-2build1no fix listed
LowGHSA-hj93-h7pg-fh6vkeycloak-services@26.1.426.5.7
LowUBUNTU-CVE-2025-14933netcdf@1:4.9.2-5ubuntu4no fix listed
LowGHSA-cjm2-j6cm-6p6mkeycloak-services@26.1.426.5.7
LowGHSA-h9q6-hc68-35rpgithub.com/shamaton/msgpack/v2@v2.2.3no fix listed
LowUBUNTU-CVE-2019-20633patch@2.7.6-7build3no fix listed
LowUBUNTU-CVE-2025-7425libxml2@2.9.14+dfsg-1.3ubuntu32.9.14+dfsg-1.3ubuntu3.6
LowUBUNTU-CVE-2025-14932netcdf@1:4.9.2-5ubuntu4no fix listed
LowUBUNTU-CVE-2025-14934netcdf@1:4.9.2-5ubuntu4no fix listed
LowUBUNTU-CVE-2025-14935netcdf@1:4.9.2-5ubuntu4no fix listed
LowUBUNTU-CVE-2025-14936netcdf@1:4.9.2-5ubuntu4no fix listed
LowUBUNTU-CVE-2026-26200hdf5@1.10.10+repack-3.1ubuntu4no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.3latest11 months agolatest19116843,39645,239

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/jacobcolvin/opencloud.svg)](https://charts.stackradar.io/charts/jacobcolvin/opencloud)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.