StackRadar

kusion Helm chart

kusionstackVerified publisher

Scored 14 Sept 2026

Kusion - An Intent-Driven Platform Orchestrator

Latest 0.14.1 1 year agoapp version 0.14.0 0Artifact Hub

kusion 0.14.1 deploys 3 container images: kusionstack/kusion, library/mysql and curlimages/curl. Across them, 679 findings3 critical, 4 high 2 on CISA KEV. The highest contribution is UBUNTU-CVE-2025-27363 in freetype 2.11.1+dfsg-1ubuntu0.2, fixed in 2.11.1+dfsg-1ubuntu0.3.

Radar Score

6,8243485586

679 findings over 3 of 3 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
kusionstack/kusionv0.14.034835266,361
library/mysql8.000260463
curlimages/curllatest00000

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

628 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2025-61985openssh@1:8.9p1-3ubuntu0.101:8.9p1-3ubuntu0.14
LowUBUNTU-CVE-2026-0965libssh@0.9.6-2ubuntu0.22.04.30.9.6-2ubuntu0.22.04.6
LowGHSA-4vq8-7jfc-9cvpgithub.com/docker/docker@v27.3.1+incompatible28.0.0
LowUBUNTU-CVE-2025-66382expat@2.4.7-1ubuntu0.5no fix listed
LowGHSA-r374-rxx8-8654paramiko@4.0.0no fix listed
LowGHSA-m7cr-m3pv-hgrpgithub.com/go-git/go-git/v5@v5.12.05.19.1
LowUBUNTU-CVE-2026-24515expat@2.4.7-1ubuntu0.52.4.7-1ubuntu0.7
LowUBUNTU-CVE-2026-40228systemd@249.11-0ubuntu3.12no fix listed
LowUBUNTU-CVE-2026-32778expat@2.4.7-1ubuntu0.5no fix listed
LowUBUNTU-CVE-2025-30258gnupg2@2.2.27-3ubuntu2.12.2.27-3ubuntu2.3
LowUBUNTU-CVE-2025-9165tiff@4.3.0-6ubuntu0.104.3.0-6ubuntu0.12
LowGHSA-gm2x-2g9h-ccm8github.com/go-git/go-git/v5@v5.12.05.17.1
LowGHSA-6vgw-5pg2-w6jppip@22.0.226.0
LowUBUNTU-CVE-2026-1703python-pip@22.0.2+dfsg-1ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-15310python3.10@3.10.12-1~22.04.8no fix listed
LowUBUNTU-CVE-2026-53910diffutils@1:3.8-0ubuntu21:3.8-0ubuntu2.1
LowUBUNTU-CVE-2026-6879python3.10@3.10.12-1~22.04.8no fix listed
LowUBUNTU-CVE-2025-8534tiff@4.3.0-6ubuntu0.104.3.0-6ubuntu0.11
LowGHSA-xf85-363p-868woras.land/oras-go@v1.2.5no fix listed
LowGHSA-xf85-363p-868woras.land/oras-go/v2@v2.5.02.6.1
LowUBUNTU-CVE-2026-0967libssh@0.9.6-2ubuntu0.22.04.30.9.6-2ubuntu0.22.04.6
LowUBUNTU-CVE-2025-66861binutils@2.38-4ubuntu2.6no fix listed
LowUBUNTU-CVE-2026-35388openssh@1:8.9p1-3ubuntu0.101:8.9p1-3ubuntu0.15
LowUBUNTU-CVE-2026-18503python3.10@3.10.12-1~22.04.8no fix listed
LowUBUNTU-CVE-2026-73283openssh@1:8.9p1-3ubuntu0.101:8.9p1-3ubuntu0.17
LowUBUNTU-CVE-2026-5958sed@4.8-1ubuntu24.8-1ubuntu2.1
LowUBUNTU-CVE-2026-6368glibc@2.35-0ubuntu3.82.35-0ubuntu3.15
NoneUBUNTU-CVE-2026-19582binutils@2.38-4ubuntu2.6no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.14.1latest1 year ago0.14.034855866,824

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/kusionstack/kusion.svg)](https://charts.stackradar.io/charts/kusionstack/kusion)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.