StackRadar

graylog 3.0.36 Helm chart

kong-zVerified publisher

Scored 7 Oct 2026

Graylog is the centralized log management solution built to open standards for capturing, storing, and enabling real-time analysis of terabytes of machine data.

Version 3.0.36 yesterdayapp version 7.2.0-rc.2-1 29Artifact Hub

graylog 3.0.36 deploys 5 container images: quay.io/mongodb/mongodb-kubernetes-operator, library/busybox, opensearchproject/opensearch, library/alpine and 1 more. Across them, 262 findings — 0 critical, 1 high. The highest contribution is RHSA-2025:12010 in sqlite 3.26.0-19.el8_9, fixed in 0:3.26.0-20.el8_10.

Radar Score

3,0060140220

262 findings over 5 of 5 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

5 images
ImageTagVulnerabilitiesRadar Score
quay.io/mongodb/mongodb-kubernetes-operator0.13.001171031,474
library/busyboxlatest00000
opensearchproject/opensearch×22.19.6001256845
library/alpinelatest001015
graylog/graylog7.2.0-rc.2-1001061672

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

219 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGO-2026-5039stdlib@go1.24.21.25.11
LowGHSA-hvcg-qmg6-jm4cnetty-codec-http@4.1.130.Final4.1.135.Final
LowRHSA-2025:3828glibc@2.28-251.el8_10.130:2.28-251.el8_10.16
LowUBUNTU-CVE-2026-41989libgcrypt20@1.10.3-2ubuntu0.21.12.0-2ubuntu0.1~Fips1~rc11
LowUBUNTU-CVE-2026-42014gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowGO-2026-5856stdlib@go1.24.21.25.12
LowGHSA-hgj6-7826-r7m5jackson-databind@2.14.12.18.8
LowRHSA-2026:43420acl@2.2.53-3.el80:2.4.0-1.el8_10
LowUBUNTU-CVE-2026-54369acl@2.3.2-1build1.1no fix listed
LowUBUNTU-CVE-2026-94283libx11@2:1.8.7-1build1no fix listed
LowUBUNTU-CVE-2026-78409util-linux@2.39.3-9ubuntu6.6no fix listed
LowGO-2025-3750stdlib@go1.24.21.23.10
LowUBUNTU-CVE-2026-89157pcre2@10.42-4ubuntu2.1no fix listed
LowUBUNTU-CVE-2026-89161pcre2@10.42-4ubuntu2.1no fix listed
LowUBUNTU-CVE-2026-8674glibc@2.39-0ubuntu8.9no fix listed
LowGO-2026-5027golang.org/x/net@v0.39.00.55.0
LowGO-2026-5029golang.org/x/net@v0.39.00.55.0
LowGO-2026-5030golang.org/x/net@v0.39.00.55.0
LowRHSA-2026:55804nghttp2@1.33.0-6.el8_10.10:1.33.0-6.el8_10.3
LowGHSA-v8h7-rr48-vmmvnetty-codec-http@4.1.130.Final4.1.133.Final
LowUBUNTU-CVE-2026-16599wget@1.21.4-1ubuntu4.5no fix listed
LowGO-2026-4340stdlib@go1.24.21.24.12
LowGHSA-vvgp-rfg2-7rr6jackson-databind@2.18.82.18.9
LowRHSA-2026:56133attr@2.4.48-3.el80:2.6.0-1.el8_10
LowRHSA-2026:1852util-linux@2.32.1-46.el80:2.32.1-48.el8_10
LowUBUNTU-CVE-2026-3832gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowRHSA-2026:13285libcap@2.48-6.el8_90:2.48-6.el8_10.1
LowGHSA-5m9f-rphj-c435amqp-client@5.32.05.33.0
LowRHSA-2026:11349libxml2@2.9.7-19.el8_100:2.9.7-21.el8_10.4
LowUBUNTU-CVE-2026-5419gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowUBUNTU-CVE-2026-86805glibc@2.39-0ubuntu8.9no fix listed
LowGHSA-pmhh-3w7g-xqp8jsoup@1.15.31.23.1
LowGO-2026-4869stdlib@go1.24.21.25.9
LowUSN-8881-1freetype@2.13.2+dfsg-1ubuntu0.12.13.2+dfsg-1ubuntu0.2
LowUBUNTU-CVE-2026-54370acl@2.3.2-1build1.1no fix listed
LowUBUNTU-CVE-2024-10041pam@1.5.3-5ubuntu5.7no fix listed
LowGHSA-mhm7-754m-9p8wjackson-databind@2.18.82.18.9
LowRHSA-2026:69964coreutils@8.30-15.el80:8.30-21.el8_10
LowUBUNTU-CVE-2026-102473dash@0.5.12-6ubuntu5no fix listed
LowUBUNTU-CVE-2026-86469glib2.0@2.80.0-6ubuntu3.9no fix listed
LowGHSA-5q95-hrpc-m3w3jline-reader@3.27.13.30.15
LowUBUNTU-CVE-2024-56433shadow@1:4.13+dfsg1-4ubuntu3.2no fix listed
LowUBUNTU-CVE-2026-89092glibc@2.39-0ubuntu8.9no fix listed
LowRHSA-2026:73511gawk@4.2.1-4.el80:4.2.1-5.el8_10
LowUBUNTU-CVE-2026-94284libx11@2:1.8.7-1build1no fix listed
LowUBUNTU-CVE-2026-18374glibc@2.39-0ubuntu8.9no fix listed
LowUBUNTU-CVE-2026-46675libpng1.6@1.6.43-5ubuntu0.6no fix listed
LowUBUNTU-CVE-2026-77214expat@2.6.1-2ubuntu0.6no fix listed
LowRHSA-2026:61248libxml2@2.9.7-19.el8_100:2.9.7-21.el8_10.7
LowRHBA-2026:47115coreutils@8.30-15.el80:8.30-20.el8_10

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
3.0.36latestyesterday7.2.0-rc.2-101402203,006
3.0.358 days ago7.2.0-rc.1-101402283,095
3.0.3414 days ago7.2.0-beta.4-101422293,177
3.0.3322 days ago7.2.0-beta.3-101462493,402
3.0.3227 days ago7.2.0-beta.2-101442313,097
3.0.3128 days ago7.2.0-beta.1-101312082,542
3.0.301 month ago7.2.0-beta.1-101312082,542

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/kong-z/graylog.svg)](https://charts.stackradar.io/charts/kong-z/graylog)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Oct 2026 · scanned 7 Oct 2026 · advisories as of 7 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.