StackRadar

graylog 3.0.35 Helm chart

kong-zVerified publisher

Scored 30 Sept 2026

Graylog is the centralized log management solution built to open standards for capturing, storing, and enabling real-time analysis of terabytes of machine data.

Version 3.0.35 yesterdayapp version 7.2.0-rc.1-1 29Artifact Hub

graylog 3.0.35 deploys 5 container images: quay.io/mongodb/mongodb-kubernetes-operator, library/busybox, opensearchproject/opensearch, library/alpine and 1 more. Across them, 253 findings — 0 critical, 1 high. The highest contribution is RHSA-2025:12010 in sqlite 3.26.0-19.el8_9, fixed in 0:3.26.0-20.el8_10.

Radar Score

2,5990134217

253 findings over 5 of 5 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

5 images
ImageTagVulnerabilitiesRadar Score
quay.io/mongodb/mongodb-kubernetes-operator0.13.001111081,180
library/busyboxlatest00000
opensearchproject/opensearch×22.19.6001350786
library/alpinelatest00000
graylog/graylog7.2.0-rc.1-1001059633

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

217 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-93990expat@2.6.1-2ubuntu0.6no fix listed
LowGHSA-98j2-6v39-78w8bc-fips@2.1.22.1.3
LowRHSA-2025:4049libtasn1@4.13-4.el8_70:4.13-5.el8_10
LowRHSA-2026:16799krb5@1.18.2-31.el8_100:1.18.2-34.el8_10
LowGO-2026-4341stdlib@go1.24.21.24.12
LowRHSA-2026:0991glib2@2.56.4-165.el8_100:2.56.4-168.el8_10
LowRHSA-2026:58938sqlite@3.26.0-19.el8_90:3.26.0-21.el8_10
LowUBUNTU-CVE-2026-42015gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowRHSA-2026:42733glibc@2.28-251.el8_10.130:2.28-251.el8_10.40
LowGHSA-574f-3g2m-x479bcprov-jdk15to18@1.79no fix listed
LowGHSA-xxqh-mfjm-7mv9netty-codec-http@4.1.130.Final4.1.133.Final
LowGHSA-c2gf-v879-257jnetty-codec-http2@4.1.130.Final4.1.135.Final
LowGHSA-c69g-56f8-xwqjnetty-codec-http2@4.1.135.Final4.1.136.Final
LowRHSA-2026:4772glibc@2.28-251.el8_10.130:2.28-251.el8_10.31
LowGHSA-xx22-p4ch-683rlz4-java@1.10.11.11.1
LowGHSA-5cv4-jp36-h3mwgolang.org/x/net@v0.39.00.55.0
LowGHSA-gx83-3vf8-gh7jjackson-databind@2.18.82.18.10
LowRHSA-2026:36730libsolv@0.7.20-6.el80:0.7.20-7.el8_10
LowGHSA-ph9c-7hw9-vhhwjline-builtins@3.27.13.30.15
LowUBUNTU-CVE-2016-2781coreutils@9.4-3ubuntu6.3no fix listed
LowGHSA-3pjw-73gf-8qr5jackson-databind@2.17.12.18.8
LowGHSA-6cqp-g7gg-8hr5netty-codec-http@4.1.135.Final4.1.136.Final
LowGHSA-4mp9-239f-g9hgnetty-codec-http@4.1.135.Final4.1.136.Final
LowGHSA-5gvw-p9qm-jgwhjackson-databind@2.18.82.18.9
LowUBUNTU-CVE-2026-76642util-linux@2.39.3-9ubuntu6.6no fix listed
LowGHSA-m4cv-j2px-7723netty-codec-http@4.1.130.Final4.1.133.Final
LowRHSA-2026:66451glib2@2.56.4-165.el8_100:2.56.4-178.el8_10
LowRHSA-2026:20587glibc@2.28-251.el8_10.130:2.28-251.el8_10.37
LowRHSA-2026:5585gnutls@3.6.16-8.el8_9.30:3.6.16-8.el8_10.5
LowUBUNTU-CVE-2026-78408util-linux@2.39.3-9ubuntu6.6no fix listed
LowRHSA-2026:33126glibc@2.28-251.el8_10.130:2.28-251.el8_10.38
LowGHSA-gcjf-9mgh-3p7gnetty-codec-http@4.1.135.Final4.1.136.Final
LowUBUNTU-CVE-2026-88806libx11@2:1.8.7-1build1no fix listed
LowRHSA-2026:47117libgcrypt@1.8.5-7.el8_60:1.8.5-8.el8_10
LowGHSA-38f8-5428-x5cvnetty-codec-http@4.1.130.Final4.1.133.Final
LowGHSA-wjgm-6hv5-3cvfjackson-databind@2.18.82.18.10
LowGHSA-563q-j3cm-6jxmnetty-codec-http2@4.1.130.Final4.1.135.Final
LowGHSA-5x3r-wrvg-rp6qnetty-codec-http2@4.1.130.Final4.1.135.Final
LowUBUNTU-CVE-2026-78410util-linux@2.39.3-9ubuntu6.6no fix listed
LowRHSA-2026:69655libxml2@2.9.7-19.el8_100:2.9.7-21.el8_10.8
LowRHSA-2026:0728gnupg2@2.2.20-3.el8_60:2.2.20-4.el8_10
LowRHSA-2025:8411krb5@1.18.2-31.el8_100:1.18.2-32.el8_10
LowGHSA-hjcp-jmpx-g3qmhttpclient5@5.4.35.6.3
LowUBUNTU-CVE-2026-89158pcre2@10.42-4ubuntu2.1no fix listed
LowGHSA-8c42-7qj2-3j46netty-codec-http@4.1.135.Final4.1.137.Final
LowRHSA-2026:43420acl@2.2.53-3.el80:2.4.0-1.el8_10
LowUBUNTU-CVE-2026-54369acl@2.3.2-1build1.1no fix listed
LowGHSA-5jmj-h7xm-6q6vjackson-databind@2.18.82.18.9
LowRHSA-2025:8958libxml2@2.9.7-19.el8_100:2.9.7-20.el8_10
LowGHSA-hvcg-qmg6-jm4cnetty-codec-http@4.1.130.Final4.1.135.Final

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
3.0.35latestyesterday7.2.0-rc.1-101342172,599
3.0.347 days ago7.2.0-beta.4-101362282,809
3.0.3315 days ago7.2.0-beta.3-101412483,049
3.0.3220 days ago7.2.0-beta.2-101382362,803
3.0.3121 days ago7.2.0-beta.1-101252132,248
3.0.3028 days ago7.2.0-beta.1-101252132,248

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/kong-z/graylog.svg)](https://charts.stackradar.io/charts/kong-z/graylog)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 30 Sept 2026 · scanned 30 Sept 2026 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.