librephotos 1.1.7 Helm chart
k8sonlabVerified publisherScored 6 Oct 2026
Helmchart used to install Librephotos in a microservice manner
Version 1.1.7 2 days agoapp version 1.2.1 0Artifact Hub
librephotos 1.1.7 deploys 7 container images: library/postgres, reallibrephotos/librephotos, reallibrephotos/librephotos-frontend, reallibrephotos/librephotos-proxy and 3 more. Across them, 1,291 findings — 11 critical, 20 high — 3 on CISA KEV. The highest contribution is DSA-4110-1 in exim4 4.84.2-2+deb8u4, fixed in 4.84.2-2+deb8u5. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | 9.6.5 | 243227 | 1,446 |
| reallibrephotos/ | 1.2.1 | 001499 | 1,082 |
| reallibrephotos/ | 1.2.1 | 00326 | 340 |
| reallibrephotos/ | 1.2.1 | 0027153 | 1,855 |
| bitnamilegacy/ | latest | 1159228 | 3,385 |
| bitnamilegacy/ | latest | 2052194 | 3,009 |
| alpine/ | 1.22.6 | 615148198 | 6,353 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | DEBIAN-CVE-2019-9192 | glibc | no fix listed |
| Medium | ALPINE-CVE-2022-29824 | libxml2 | 2.9.14-r0 |
| Medium | DEBIAN-CVE-2026-28389 | openssl | 3.0.19-1~deb12u2 |
| Medium | ALPINE-CVE-2022-2309 | libxml2 | 2.9.14-r1 |
| Medium | GO-2022-0521 | stdlib | 1.17.12 |
| Medium | DLA-1833-1 | bzip2 | 1.0.6-7+deb8u1 |
| Medium | GO-2026-4341 | stdlib | 1.24.12 |
| Medium | ALPINE-CVE-2023-3446 | openssl | 1.1.1u-r2 |
| Medium | GO-2022-0533 | stdlib | 1.17.11 |
| Medium | GO-2022-0477 | stdlib | 1.17.11 |
| Medium | UBUNTU-CVE-2016-20013 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2023-31486 | perl | no fix listed |
| Medium | BIT-postgresql-2026-2005 | postgresql | 14.21.0 |
| Medium | DEBIAN-CVE-2026-42010 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | GO-2022-0523 | stdlib | 1.17.12 |
| Medium | DLA-1969-1 | file | 1:5.22+15-2+deb8u6 |
| Medium | GO-2022-0522 | stdlib | 1.17.12 |
| Medium | GO-2022-0527 | stdlib | 1.17.12 |
| Medium | GO-2022-0524 | stdlib | 1.17.12 |
| Medium | DEBIAN-CVE-2018-5709 | krb5 | no fix listed |
| Medium | GHSA-xrjj-mj9h-534m | golang.org/ | 0.4.0 |
| Medium | GO-2022-1144 | stdlib | 1.18.9 |
| Medium | BIT-postgresql-2026-2004 | postgresql | 14.21.0 |
| Medium | DEBIAN-CVE-2023-31484 | perl | 5.36.0-7+deb12u3 |
| Medium | DEBIAN-CVE-2023-2953 | openldap | no fix listed |
| Medium | DEBIAN-CVE-2017-9937 | jbigkit | no fix listed |
| Medium | DEBIAN-CVE-2026-34182 | openssl | 3.0.20-1~deb12u2 |
| Medium | GO-2023-1704 | stdlib | 1.19.8 |
| Medium | BIT-postgresql-2026-2006 | postgresql | 14.21.0 |
| Medium | ALPINE-CVE-2022-42916 | curl | 7.80.0-r4 |
| Medium | GO-2022-0526 | stdlib | 1.17.12 |
| Medium | GHSA-h86h-8ppg-mxmh | golang.org/ | 0.0.0-20210428140749-89ef3d95e781 |
| Medium | DEBIAN-CVE-2018-6829 | libgcrypt20 | no fix listed |
| Medium | ALPINE-CVE-2022-2097 | openssl | 1.1.1q-r0 |
| Medium | PYSEC-2023-192 | urllib3 | 2.0.6 |
| Medium | GO-2024-2500 | github.com/ | 20.10.9+incompatible |
| Medium | GO-2023-1568 | stdlib | 1.19.6 |
| Medium | GO-2022-1037 | stdlib | 1.18.7 |
| Medium | DEBIAN-CVE-2026-19931 | curl | no fix listed |
| Medium | GO-2024-2912 | github.com/ | 20.10.9+incompatible |
| Medium | GO-2026-4337 | stdlib | 1.24.13 |
| Medium | BIT-redis-2026-23479 | redis | 7.2.14 |
| Medium | BIT-postgresql-2026-6473 | postgresql | 14.23.0 |
| Medium | DEBIAN-CVE-2026-63076 | openssl | 3.0.22-1~deb12u1 |
| Medium | DEBIAN-CVE-2026-5450 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2026-33845 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | ALPINE-CVE-2023-5678 | openssl | 1.1.1w-r1 |
| Medium | DLA-1613-1 | sqlite3 | 3.8.7.1-1+deb8u3 |
| Medium | DEBIAN-CVE-2025-9230 | openssl | 3.0.17-1~deb12u3 |
| Medium | DEBIAN-CVE-2026-11856 | curl | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.1.7latest | 2 days ago | 1.2.1 | 1120335925 | 17,470 |
| 1.1.6 | 1 month ago | 1.0.3 | 1120335938 | 17,731 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.