StackRadar

jenkins 0.10.38 Helm chart

jenkins-x

Scored 14 Sept 2026

Open source continuous integration server. It supports multiple SCM tools including CVS, Subversion and Git. It can execute Apache Ant and Apache Maven-based projects as well as arbitrary scripts.

Version 0.10.38 7 years agoapp version 2.67 0Artifact Hub

jenkins 0.10.38 deploys 2 container images: jenkinsci/jenkins and gcr.io/jenkinsxio/jx. Across the 1 measured, 554 findings13 critical, 22 high 6 on CISA KEV. The highest contribution is GHSA-xvxq-hq48-xphm in script-security 1.18.1, fixed in 1.54.

Radar Score

10,6821322244275

554 findings over 1 of 2 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
jenkinsci/jenkins×22.67132224427510,682
gcr.io/jenkinsxio/jx2.0.645unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

275 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-hxjg-2jvf-h3rxjenkins-core@2.672.528.3
LowGHSA-4wp7-92pw-q264spring-context@2.5.6.SEC03no fix listed
LowGHSA-584m-7r4m-8j6vjenkins-core@2.672.375.4
LowGHSA-p53j-g8pw-4w5feddsa@0.2.0no fix listed
LowGHSA-h3qp-gqrc-q736spring-webmvc@2.5.6.SEC03no fix listed
LowGHSA-6837-qgrc-x5p6jenkins-core@2.672.528.3
LowGHSA-wjpw-4j6x-6rwhjetty-http@9.4.5.v20170502no fix listed
LowGHSA-wg35-8jpf-2xv3spring-webmvc@2.5.6.SEC03no fix listed
LowDLA-2412-2openjdk-8@8u141-b15-1~deb9u18u275-b01-1~deb9u1
LowDLA-2424-1tzdata@2017b-12020d-0+deb9u1
LowDLA-2509-1tzdata@2017b-12020e-0+deb9u1
LowDLA-2542-1tzdata@2017b-12021a-0+deb9u1
LowDLA-2593-1ca-certificates@20161130+nmu120200601~deb9u2
LowDLA-2759-1gnutls28@3.5.8-5+deb9u23.5.8-5+deb9u6
LowDLA-2761-1openssl1.0@1.0.2l-21.0.2u-1~deb9u5
LowDLA-2797-1tzdata@2017b-12021a-0+deb9u2
LowDLA-2836-2nss@2:3.26.2-1.12:3.26.2-1.1+deb9u4
LowDLA-2948-1debian-archive-keyring@2017.52017.5+deb9u2
LowDLA-2963-1tzdata@2017b-12021a-0+deb9u3
LowDLA-3051-1tzdata@2017b-12021a-0+deb9u4
LowDSA-4121-1gcc-6@6.3.0-186.3.0-18+deb9u1
LowDSA-4367-2systemd@232-25+deb9u1232-25+deb9u8
LowDSA-4509-2subversion@1.9.5-1+deb9u11.9.5-1+deb9u5
LowGHSA-58qw-p7qm-5rvhjetty-xml@9.4.5.v201705029.4.52.v20230823
LowGHSA-h8c5-c92g-jq6xjenkins-core@2.672.73.2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.10.38latest7 years ago2.67132224427510,682

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/jenkins-x/jenkins.svg)](https://charts.stackradar.io/charts/jenkins-x/jenkins)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.