opennebula Helm chart
kvapsScored 15 Sept 2026
OpenNebula cloud computing platform
Latest 2.1.1 1 year agoapp version 5.12.0.4-1 1Artifact Hub
opennebula 2.1.1 deploys 9 container images: library/alpine, ghcr.io/kvaps/opennebula-exporter, ghcr.io/kvaps/opennebula-flow, ghcr.io/kvaps/opennebula-gate and 4 more. Across the 8 measured, 8,747 findings — 60 critical, 171 high — 20 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.4, fixed in 1.1.1f-1ubuntu2.15.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | 3.12 | 0100 | 55 |
| ghcr.io/ | v5.12.0.4 | 12343451,312 | 22,457 |
| ghcr.io/ | v5.12.0.4-1 | 12333351,281 | 21,803 |
| ghcr.io/ | v5.12.0.4-1 | 12353551,427 | 23,505 |
| ghcr.io/ | v5.12.0.4-1 | 12323331,276 | 21,668 |
| library/ | 1.5.6-alpine | 0111 | 98 |
| ghcr.io/ | v5.12.0.4-1 | — | not yet scanned |
| ghcr.io/ | v5.12.0.4-1 | 12353551,427 | 23,505 |
| library/ | 8.0.19 | 001939 | 934 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2025-50100 | mysql-8.0 | 8.0.43-0ubuntu0.20.04.1+esm1 |
| Low | UBUNTU-CVE-2025-30258 | gnupg2 | 2.2.19-3ubuntu2.4 |
| Low | UBUNTU-CVE-2026-86422 | imagemagick | no fix listed |
| Low | GHSA-8678-w3jw-xfc2 | nokogiri | 1.19.4 |
| Low | UBUNTU-CVE-2025-9165 | tiff | 4.1.0+git191117-2ubuntu0.20.04.14+esm2 |
| Low | UBUNTU-CVE-2026-61867 | imagemagick | no fix listed |
| Low | GHSA-vvfq-8hwr-qm4m | nokogiri | 1.18.3 |
| Low | UBUNTU-CVE-2026-66011 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-60190 | mysql-8.0 | no fix listed |
| Low | UBUNTU-CVE-2026-1485 | glib2.0 | no fix listed |
| Low | UBUNTU-CVE-2026-53910 | diffutils | 1:3.7-3ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2025-8534 | tiff | 4.1.0+git191117-2ubuntu0.20.04.14+esm1 |
| Low | UBUNTU-CVE-2026-86137 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2026-86141 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2026-61862 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-89162 | pcre2 | no fix listed |
| Low | UBUNTU-CVE-2026-61864 | imagemagick | 8:6.9.10.23+dfsg-2.1ubuntu11.11+esm14 |
| Low | UBUNTU-CVE-2026-61865 | imagemagick | 8:6.9.10.23+dfsg-2.1ubuntu11.11+esm14 |
| Low | UBUNTU-CVE-2026-61869 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-89156 | pcre2 | no fix listed |
| Low | UBUNTU-CVE-2026-0967 | libssh | 0.9.3-2ubuntu2.5+esm3 |
| Low | GHSA-6wx8-w4f5-wwcr | concurrent-ruby | 1.3.7 |
| Low | UBUNTU-CVE-2026-47241 | ruby2.7 | no fix listed |
| Low | UBUNTU-CVE-2026-18743 | popt | no fix listed |
| Low | UBUNTU-CVE-2026-35388 | openssh | no fix listed |
| Low | UBUNTU-CVE-2026-86424 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-18739 | popt | no fix listed |
| Low | UBUNTU-CVE-2026-61872 | imagemagick | no fix listed |
| Low | GHSA-5w6v-399v-w3cc | nokogiri | 1.18.8 |
| Low | UBUNTU-CVE-2026-73283 | openssh | no fix listed |
| Low | UBUNTU-CVE-2026-5958 | sed | 4.7-1ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2026-56364 | imagemagick | no fix listed |
| Low | GHSA-wfpw-mmfh-qq69 | nokogiri | 1.19.4 |
| Low | UBUNTU-CVE-2026-6368 | glibc | no fix listed |
| Low | GHSA-r95h-9x8f-r3f7 | nokogiri | 1.16.5 |
| Low | UBUNTU-CVE-2026-18839 | popt | no fix listed |
| Low | GHSA-28hh-pr2h-2w89 | sqlite3 | 2.9.5 |
| Low | UBUNTU-CVE-2023-24593 | glib2.0 | 2.64.6-1~ubuntu20.04.6 |
| Low | UBUNTU-CVE-2023-25180 | glib2.0 | 2.64.6-1~ubuntu20.04.6 |
| Low | UBUNTU-CVE-2026-61464 | imagemagick | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.1.1latest | 1 year ago | 5.12.0.4-1 | 601711,7436,763 | 114,025 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.