percona-xtradb-cluster Helm chart
kfirferScored 14 Sept 2026
free, fully compatible, enhanced, open source drop-in replacement for MySQL with Galera Replication (xtradb)
Latest 1.5.10 3 years agoapp version 8.0.32-24.2 3Artifact Hub
percona-xtradb-cluster 1.5.10 deploys 3 container images: percona/percona-xtradb-cluster, library/busybox and kfirfer/percona-xtradb-healthcheck. Across them, 279 findings — 7 critical, 15 high — 4 on CISA KEV. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1g-r0, fixed in 1.1.1l-r0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| percona/ | 8.0.32-24.2 | 6846159 | 3,351 |
| library/ | 1.33.1 | 0000 | 0 |
| kfirfer/ | 0.0.1 | 173715 | 1,606 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | ALPINE-CVE-2021-3711 | openssl | 1.1.1l-r0 |
| Critical | RHSA-2024:2722 | glibc | 0:2.28-236.el8_9.13 |
| Critical | RHSA-2024:2799 | glibc | 0:2.28-189.10.el8_6 |
| Critical | RHSA-2023:5455KEV | glibc | 0:2.28-225.el8_8.6 |
| Critical | RHSA-2023:5476KEV | glibc | 0:2.28-189.6.el8_6 |
| Critical | RHSA-2023:5769KEV | nghttp2 | 0:1.33.0-4.el8_6.1 |
| Critical | RHSA-2025:12010 | sqlite | 0:3.26.0-20.el8_10 |
| High | ALPINE-CVE-2022-25236 | expat | 2.2.10-r2 |
| High | ALPINE-CVE-2022-0778 | openssl | 1.1.1n-r0 |
| High | RHSA-2025:1301KEV | gcc | 0:8.5.0-23.el8_10 |
| High | ALPINE-CVE-2018-25032 | zlib | 1.2.12-r0 |
| High | ALPINE-CVE-2021-23840 | openssl | 1.1.1j-r0 |
| High | ALPINE-CVE-2021-3712 | openssl | 1.1.1l-r0 |
| High | RHSA-2024:0538 | libssh | 0:0.9.6-4.el8_6 |
| High | RHSA-2024:0628 | libssh | 0:0.9.6-13.el8_9 |
| High | ALPINE-CVE-2022-37434 | zlib | 1.2.12-r2 |
| High | RHSA-2024:5654 | curl | 0:7.61.1-34.el8_10.2 |
| High | ALPINE-CVE-2021-3449 | openssl | 1.1.1k-r0 |
| High | RHSA-2024:3763 | nghttp2 | 0:1.33.0-4.el8_6.2 |
| High | RHSA-2024:8860 | krb5 | 0:1.18.2-30.el8_10 |
| High | RHSA-2023:0173 | libxml2 | 0:2.9.7-15.el8_7.1 |
| High | RHSA-2024:0413 | libxml2 | 0:2.9.7-13.el8_6.4 |
| Medium | GO-2024-2687 | stdlib | 1.21.9 |
| Medium | RHSA-2024:0425 | sqlite | 0:3.26.0-16.el8_6.1 |
| Medium | RHSA-2025:11035 | lz4 | 0:1.8.3-5.el8_10 |
| Medium | ALPINE-CVE-2022-25235 | expat | 2.2.10-r2 |
| Medium | RHSA-2022:7704 | glib2 | 0:2.56.4-159.el8 |
| Medium | ALPINE-CVE-2022-22822 | expat | 2.2.10-r0 |
| Medium | ALPINE-CVE-2022-25315 | expat | 2.2.10-r2 |
| Medium | RHSA-2024:0409 | oniguruma | 0:6.8.2-2.1.el8_6 |
| Medium | RHSA-2024:0889 | oniguruma | 0:6.8.2-2.1.el8_9 |
| Medium | RHSA-2023:0110 | sqlite | 0:3.26.0-17.el8_7 |
| Medium | RHEA-2023:3850 | krb5 | 0:1.18.2-25.el8_8 |
| Medium | ALPINE-CVE-2021-36222 | krb5 | 1.18.4-r0 |
| Medium | ALPINE-CVE-2022-23852 | expat | 2.2.10-r1 |
| Medium | ALPINE-CVE-2022-1271 | xz | 5.2.5-r1 |
| Medium | ALPINE-CVE-2022-22823 | expat | 2.2.10-r0 |
| Medium | ALPINE-CVE-2022-22824 | expat | 2.2.10-r0 |
| Medium | ALPINE-CVE-2021-45960 | expat | 2.2.10-r0 |
| Medium | ALPINE-CVE-2022-28391 | busybox | 1.31.1-r22 |
| Medium | ALPINE-CVE-2021-39537 | ncurses | 6.2_p20200523-r1 |
| Medium | ALPINE-CVE-2021-36159 | apk-tools | 2.10.7-r0 |
| Medium | ALPINE-CVE-2022-25314 | expat | 2.2.10-r2 |
| Medium | ALPINE-CVE-2022-22826 | expat | 2.2.10-r0 |
| Medium | ALPINE-CVE-2022-22827 | expat | 2.2.10-r0 |
| Medium | RHSA-2026:26275 | openssl | 1:1.1.1k-16.el8_6 |
| Medium | ALPINE-CVE-2021-46143 | expat | 2.2.10-r0 |
| Medium | ALPINE-CVE-2022-22825 | expat | 2.2.10-r0 |
| Medium | ALPINE-CVE-2022-23990 | expat | 2.2.10-r1 |
| Medium | ALPINE-CVE-2021-23841 | openssl | 1.1.1j-r0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.5.10latest | 3 years ago | 8.0.32-24.2 | 71583174 | 4,957 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.