devpod-pro 0.0.0-ci.4-do-not-use Helm chart
loftVerified publisherScored 14 Sept 2026
DevPod.Pro - Developer Environments as Code
Version 0.0.0-ci.4-do-not-use 2 years agoApp version not verified against the render 0Artifact Hub
devpod-pro 0.0.0-ci.4-do-not-use deploys 1 container image: ghcr.io/loft-sh/devpod-pro. Across them, 275 findings — 0 critical, 9 high — 1 on CISA KEV. The highest contribution is ALPINE-CVE-2024-6119 in openssl 3.1.4-r5, fixed in 3.1.7-r0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| ghcr.io/ | 0.0.0-ci.4-do-not-use | 0944222 | 3,225 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-9h84-qmv7-982p | helm.sh/ | 3.18.5 |
| Low | GHSA-f9f8-9pmf-xv68 | helm.sh/ | 3.18.5 |
| Low | GHSA-fw7p-63qq-7hpr | filippo.io/ | 1.1.1 |
| Low | GO-2024-2963 | stdlib | 1.21.12 |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
| Low | GHSA-jgfp-53c3-624w | k8s.io/ | 1.29.14 |
| Low | GHSA-jpcc-p29g-p8mq | github.com/ | 1.7.33 |
| Low | GHSA-xw73-rw38-6vjc | github.com/ | 24.0.9 |
| Low | GHSA-j5w8-q4qc-rx2x | golang.org/ | 0.45.0 |
| Low | GHSA-vvgc-356p-c3xw | golang.org/ | 0.38.0 |
| Low | GHSA-rq77-p4h8-4crw | github.com/ | 1.7.3 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | GHSA-v6v8-xj6m-xwqh | github.com/ | 0.7.7 |
| Low | GO-2023-2382 | stdlib | 1.20.12 |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
| Low | GHSA-r6j8-c6r2-37rr | k8s.io/ | 1.32.10 |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | GO-2024-2599 | stdlib | 1.21.8 |
| Low | GHSA-6pjf-3r9x-m592 | github.com/ | 3.1.1 |
| Low | GO-2024-3106 | stdlib | 1.22.7 |
| Low | ALPINE-CVE-2024-2004 | curl | 8.7.1-r0 |
| Low | ALPINE-CVE-2023-42364 | busybox | 1.36.1-r7 |
| Low | ALPINE-CVE-2023-42363 | busybox | 1.36.1-r7 |
| Low | GHSA-82m2-cv7p-4m75 | k8s.io/ | 1.29.7 |
| Low | GO-2024-2600 | stdlib | 1.21.8 |
| Low | ALPINE-CVE-2023-42366 | busybox | 1.36.1-r6 |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | GO-2024-2609 | stdlib | 1.21.8 |
| Low | GO-2024-3107 | stdlib | 1.22.7 |
| Low | ALPINE-CVE-2023-42365 | busybox | 1.36.1-r7 |
| Low | GO-2024-2824 | stdlib | 1.22.3 |
| Low | GHSA-cp6g-7hqx-qxhp | go.mongodb.org/ | 1.17.7 |
| Low | GHSA-xmrv-pmrh-hhx2 | github.com/ | 1.65.0 |
| Low | ALPINE-CVE-2024-6874 | curl | 8.9.0-r0 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | GHSA-jc7w-c686-c4v9 | github.com/ | 0.5.15 |
| Low | GHSA-pwhc-rpq9-4c8w | github.com/ | 1.7.29 |
| Low | GHSA-x86f-5xw2-fm2r | github.com/ | no fix listed |
| Low | GO-2023-2041 | stdlib | 1.20.8 |
| Low | GO-2023-2043 | stdlib | 1.20.8 |
| Low | GO-2023-2186 | stdlib | 1.20.11 |
| Low | GHSA-82ff-hg59-8x73 | github.com/ | no fix listed |
| Low | GO-2024-3333 | golang.org/ | 0.33.0 |
| Low | GHSA-9h8m-3fm2-qjrq | go.opentelemetry.io/ | 1.40.0 |
| Low | ALPINE-CVE-2024-11053 | curl | 8.11.1-r0 |
| Low | GO-2024-3105 | stdlib | 1.22.7 |
| Low | GHSA-7236-3392-c5c6 | github.com/ | 0.31.1 |
| Low | GHSA-m6hq-p25p-ffr2 | github.com/ | 1.7.29 |
| Low | GO-2026-4981 | stdlib | 1.25.10 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.0.0-ci.4-do-not-uselatest | 2 years ago | — | 0944222 | 3,225 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.