kafka 0.1.27 Helm chart
kubelauncherVerified publisherScored 29 Sept 2026
Apache Kafka distributed streaming platform
Version 0.1.27 yesterdayapp version 3.9.0 (not verified against the render) 6Artifact Hub
kafka 0.1.27 deploys 1 container image: ghcr.io/kubelauncher/kafka. Across them, 146 findings — 0 critical, 1 high. The highest contribution is GHSA-vgq5-3255-v292 in kafka-clients 3.9.0, fixed in 3.9.1.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| ghcr.io/ | digest-pinned | 0117128 | 1,418 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| High | GHSA-vgq5-3255-v292 | kafka-clients | 3.9.1 |
| Medium | GHSA-wxr5-93ph-8wr9 | commons-beanutils | 1.11.0 |
| Medium | GHSA-4g8c-wm8x-jfhw | netty-handler | 4.1.118.Final |
| Medium | GHSA-crhr-qqj8-rpxc | zookeeper | 3.8.6 |
| Medium | GHSA-76qp-h5mr-frr4 | kafka_2.13 | 3.9.1 |
| Medium | GHSA-3qp7-7mw8-wx86 | netty-handler | 4.1.135.Final |
| Medium | GHSA-x4gw-5cx5-pgmh | netty-handler | 4.1.135.Final |
| Medium | GHSA-rmj7-2vxq-3g9f | jackson-databind | 2.18.8 |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang3 | 3.18.0 |
| Medium | GHSA-j3rv-43j4-c7qm | jackson-databind | 2.18.8 |
| Medium | GHSA-355h-qmc2-wpwf | jetty-http | 9.4.60 |
| Medium | UBUNTU-CVE-2026-57433 | perl | 5.40.1-7ubuntu0.3 |
| Medium | UBUNTU-CVE-2018-10126 | libjpeg-turbo | no fix listed |
| Medium | GHSA-5qcv-4rpc-jp93 | kafka-clients | 3.9.2 |
| Medium | GHSA-2fvj-hgj9-j2gr | jetty-security | 9.4.63 |
| Medium | GHSA-2r2c-cx56-8933 | jline-remote-telnet | 3.30.14 |
| Medium | GHSA-47qp-hqvx-6r3f | jline-remote-telnet | 3.30.14 |
| Medium | GHSA-c4c3-7fpv-j4q5 | netty-handler | 4.1.137.Final |
| Low | UBUNTU-CVE-2026-13221 | perl | 5.40.1-7ubuntu0.3 |
| Low | GHSA-c653-97m9-rcg9 | netty-handler | 4.1.135.Final |
| Low | GHSA-558v-64gr-wgg4 | netty-codec | 4.1.136.Final |
| Low | UBUNTU-CVE-2026-12087 | perl | 5.40.1-7ubuntu0.3 |
| Low | GHSA-6fmv-xxpf-w3cw | plexus-utils | 3.6.1 |
| Low | UBUNTU-CVE-2026-82560 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-48959 | perl | no fix listed |
| Low | GHSA-7xrh-hqfc-g7qr | zookeeper | 3.8.6 |
| Low | GHSA-q4xh-88c3-wmh7 | jackson-databind | 2.18.10 |
| Low | UBUNTU-CVE-2026-6791 | glibc | 2.43-2ubuntu2.4 |
| Low | UBUNTU-CVE-2026-83357 | openjdk-17 | no fix listed |
| Low | UBUNTU-CVE-2026-85091 | zlib | no fix listed |
| Low | UBUNTU-CVE-2026-9538 | perl | no fix listed |
| Low | UBUNTU-CVE-2024-2236 | libgcrypt20 | 1.12.0-2ubuntu1.1 |
| Low | GHSA-fccg-mwvh-qqg4 | netty-handler | 4.1.137.Final |
| Low | UBUNTU-CVE-2026-83408 | openjdk-17 | no fix listed |
| Low | UBUNTU-CVE-2026-86145 | pcre2 | no fix listed |
| Low | GHSA-r2xf-8xr9-62gw | jline-builtins | 3.30.15 |
| Low | GHSA-mj4r-2hfc-f8p6 | netty-codec | 4.1.133.Final |
| Low | UBUNTU-CVE-2026-42497 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-47057 | openjdk-17 | no fix listed |
| Low | GHSA-3p8m-j85q-pgmj | netty-codec | 4.1.125.Final |
| Low | GHSA-q4rv-gq96-w7c5 | jetty-server | 9.4.57.v20241219 |
| Low | UBUNTU-CVE-2026-48962 | perl | no fix listed |
| Low | GHSA-72hv-8253-57qq | jackson-core | 2.18.6 |
| Low | UBUNTU-CVE-2026-48961 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-47058 | openjdk-17 | no fix listed |
| Low | UBUNTU-CVE-2026-7017 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-19499 | glibc | 2.43-2ubuntu2.4 |
| Low | GHSA-wf66-mphr-4c4r | kafka-clients | 3.9.2 |
| Low | GHSA-gx83-3vf8-gh7j | jackson-databind | 2.18.10 |
| Low | GHSA-ph9c-7hw9-vhhw | jline-builtins | 3.30.15 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.1.27latest | yesterday | 3.9.0 | 0117128 | 1,418 |
| 0.1.26 | 27 days ago | 3.9.0 | 0123137 | 1,618 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.