kubeflow Helm chart
kromanow94-kubeflowScored 16 Sept 2026
A Helm chart for Kubeflow
Latest 0.5.1 1 year agodeploys tag v1.9.2 0Artifact Hub
kubeflow 0.5.1 deploys 30 container images: kubeflownotebookswg/poddefaults-webhook, kubeflownotebookswg/centraldashboard, bitnami/kubectl, kubeflowkatib/katib-controller and 25 more. Across the 26 measured, 6,191 findings — 19 critical, 80 high — 10 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.23, fixed in 1.1.1f-1ubuntu2.fips.16.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2025-1795 | python3.11 | 3.11.2-6+deb12u6 |
| Low | DEBIAN-CVE-2026-46559 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u10 |
| Low | DEBIAN-CVE-2025-1151 | binutils | no fix listed |
| Low | GO-2026-5024 | golang.org/ | 0.44.0 |
| Low | DEBIAN-CVE-2025-1182 | binutils | no fix listed |
| Low | DEBIAN-CVE-2025-6199 | gdk-pixbuf | 2.42.10+dfsg-1+deb12u2 |
| Low | DEBIAN-CVE-2026-18477 | tar | no fix listed |
| Low | DEBIAN-CVE-2026-73281 | openssh | no fix listed |
| Low | DEBIAN-CVE-2025-12817 | postgresql-15 | 15.15-0+deb12u1 |
| Low | DEBIAN-CVE-2025-8713 | postgresql-15 | 15.14-0+deb12u1 |
| Low | DEBIAN-CVE-2026-36849 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-84450 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-84451 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-85218 | bluez | no fix listed |
| Low | DLA-3134-1 | tzdata | 2021a-0+deb10u7 |
| Low | DLA-3161-1 | tzdata | 2021a-0+deb10u8 |
| Low | DLA-3366-1 | tzdata | 2021a-0+deb10u10 |
| Low | DLA-3412-1 | tzdata | 2021a-0+deb10u11 |
| Low | DLA-3684-1 | tzdata | 2021a-0+deb10u12 |
| Low | DLA-3788-1 | tzdata | 2024a-0+deb10u1 |
| Low | DSA-5682-2 | glib2.0 | 2.74.6-2+deb12u2 |
| Low | DSA-5812-2 | postgresql-15 | 15.10-0+deb12u1 |
| Low | DSA-5979-2 | libxslt | 1.1.35-1+deb12u3 |
| Low | GO-2022-0965 | k8s.io/ | 0.0.0-20190927203648-9ce6eca90e73 |
| Low | GO-2023-2153 | google.golang.org/ | 1.56.3 |
| Low | GO-2026-5841 | github.com/ | 1.18.7 |
| Low | GO-2026-5932 | golang.org/ | no fix listed |
| Low | GO-2026-6061 | google.golang.org/ | 1.82.1 |
| Low | GO-2026-6225 | github.com/ | no fix listed |
| Low | GO-2026-6278 | github.com/ | 1.5.3 |
| Low | USN-6663-1 | openssl | 1.1.1f-1ubuntu2.22 |
| Low | USN-7034-1 | ca-certificates | 20240203~20.04.1 |
| Low | USN-8091-1 | util-linux | 2.34-0.1ubuntu9.6+esm1 |
| Low | USN-8688-1 | pam | 1.3.1-5ubuntu4.7+esm1 |
| Low | DEBIAN-CVE-2026-46692 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u10 |
| Low | ALPINE-CVE-2025-46394 | busybox | 1.36.1-r31 |
| Low | DEBIAN-CVE-2026-40228 | systemd | no fix listed |
| Low | GHSA-pxg6-pf52-xh8x | cookie | 0.7.0 |
| Low | DEBIAN-CVE-2025-13462 | python3.11 | 3.11.2-6+deb12u8 |
| Low | DEBIAN-CVE-2025-61985 | openssh | 1:9.2p1-2+deb12u8 |
| Low | GHSA-4vq8-7jfc-9cvp | github.com/ | 25.0.13 |
| Low | DEBIAN-CVE-2026-46693 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u10 |
| Low | GHSA-52f5-9888-hmc6 | tmp | 0.2.4 |
| Low | DEBIAN-CVE-2025-50422 | cairo | no fix listed |
| Low | DEBIAN-CVE-2026-61081 | mariadb | no fix listed |
| Low | DEBIAN-CVE-2025-6170 | libxml2 | 2.9.14+dfsg-1.3~deb12u3 |
| Low | RHSA-2026:36734 | libxml2 | 0:2.9.7-21.el8_10.6 |
| Low | GHSA-vpq2-c234-7xj6 | @tootallnate/ | 2.0.1 |
| Low | DEBIAN-CVE-2026-57062 | gnupg2 | no fix listed |
| Low | DEBIAN-CVE-2026-66011 | imagemagick | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.5.1latest | 1 year ago | v1.9.2 | 19801,1034,981 | 70,968 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.