StackRadar

nublado2 Helm chart

lsst-sqre

Scored 15 Sept 2026

Nublado2 JupyterHub installation

Latest 0.8.5 4 years agodeploys tag 2.0.1 0Artifact Hub

nublado2 0.8.5 deploys 2 container images: lsstsqre/nublado2 and jupyterhub/configurable-http-proxy. Across them, 1,126 findings14 critical, 50 high 4 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.10, fixed in 1.1.1f-1ubuntu2.15. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

17,8361450329732

1,126 findings over 2 of 2 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
lsstsqre/nublado22.0.1124030071916,312
jupyterhub/configurable-http-proxy4.5.121029131,524

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,122 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-58055nghttp2@1.40.0-1build1no fix listed
LowUBUNTU-CVE-2025-66864binutils@2.34-6ubuntu1.3no fix listed
LowUBUNTU-CVE-2026-58045nodejs@10.19.0~dfsg-3ubuntu1no fix listed
LowUBUNTU-CVE-2026-2297python3.8@3.8.10-0ubuntu1~20.04.2no fix listed
LowUBUNTU-CVE-2021-20193tar@1.30+dfsg-7ubuntu0.20.04.11.30+dfsg-7ubuntu0.20.04.2
LowGHSA-4mjr-xmp4-gh2gqs@6.9.16.16.0
LowUBUNTU-CVE-2026-82417node-qs@6.9.1+ds-1no fix listed
LowUBUNTU-CVE-2026-4647binutils@2.34-6ubuntu1.3no fix listed
LowUBUNTU-CVE-2025-29088sqlite3@3.31.1-4ubuntu0.23.31.1-4ubuntu0.7
LowUBUNTU-CVE-2025-11083binutils@2.34-6ubuntu1.32.34-6ubuntu1.11+esm2
LowUBUNTU-CVE-2025-11082binutils@2.34-6ubuntu1.32.34-6ubuntu1.11+esm2
LowUBUNTU-CVE-2026-40225systemd@245.4-4ubuntu3.15245.4-4ubuntu3.24+esm3
LowUBUNTU-CVE-2026-58041nodejs@10.19.0~dfsg-3ubuntu1no fix listed
LowUBUNTU-CVE-2025-13837python2.7@2.7.18-1~20.04.1no fix listed
LowUBUNTU-CVE-2025-13837python3.8@3.8.10-0ubuntu1~20.04.23.8.10-0ubuntu1~20.04.18+esm5
LowUBUNTU-CVE-2026-56409expat@2.2.9-1ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-50813sqlite3@3.31.1-4ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-13757p11-kit@0.23.20-1ubuntu0.10.23.20-1ubuntu0.1+esm1
LowUBUNTU-CVE-2023-23920nodejs@10.19.0~dfsg-3ubuntu110.19.0~dfsg-3ubuntu1.5
LowGHSA-93f3-23rq-pjfpnpm@6.14.46.14.6
LowUBUNTU-CVE-2020-15095npm@6.14.4+ds-1ubuntu2no fix listed
LowUBUNTU-CVE-2026-48928nodejs@10.19.0~dfsg-3ubuntu1no fix listed
LowUBUNTU-CVE-2026-11850krb5@1.17-6ubuntu4.1no fix listed
LowUBUNTU-CVE-2026-56132expat@2.2.9-1ubuntu0.2no fix listed
LowUBUNTU-CVE-2025-8058glibc@2.31-0ubuntu9.22.31-0ubuntu9.18+esm1
LowUBUNTU-CVE-2024-11168python2.7@2.7.18-1~20.04.12.7.18-1~20.04.7+esm6
LowUBUNTU-CVE-2024-11168python3.8@3.8.10-0ubuntu1~20.04.23.8.10-0ubuntu1~20.04.14
LowGHSA-8423-8fgw-73vqtornado@6.16.5.8
LowUBUNTU-CVE-2013-4235shadow@1:4.8.1-1ubuntu5.20.04.11:4.8.1-1ubuntu5.20.04.4
LowUBUNTU-CVE-2022-41862postgresql-12@12.9-0ubuntu0.20.04.112.14-0ubuntu0.20.04.1
LowUBUNTU-CVE-2025-45582tar@1.30+dfsg-7ubuntu0.20.04.1no fix listed
LowUBUNTU-CVE-2026-15534perl@5.30.0-9ubuntu0.25.30.0-9ubuntu0.5+esm4
LowUBUNTU-CVE-2024-32020git@1:2.25.1-1ubuntu3.21:2.25.1-1ubuntu3.12
LowPYSEC-2026-2275requests@2.27.12.33.0
LowUBUNTU-CVE-2025-8291python2.7@2.7.18-1~20.04.1no fix listed
LowUBUNTU-CVE-2025-8291python3.8@3.8.10-0ubuntu1~20.04.23.8.10-0ubuntu1~20.04.18+esm3
LowUBUNTU-CVE-2025-14017curl@7.68.0-1ubuntu2.77.68.0-1ubuntu2.25+esm2
LowUBUNTU-CVE-2025-64118node-tar@4.4.10+ds1-2ubuntu1no fix listed
LowUBUNTU-CVE-2026-56288patch@2.7.6-6no fix listed
LowUBUNTU-CVE-2026-56289patch@2.7.6-6no fix listed
LowUBUNTU-CVE-2025-69645binutils@2.34-6ubuntu1.3no fix listed
LowUBUNTU-CVE-2024-10041pam@1.3.1-5ubuntu4.3no fix listed
LowUBUNTU-CVE-2026-59850libssh@0.9.3-2ubuntu2.2no fix listed
LowGHSA-w235-7p84-xx57tornado@6.16.4.1
LowUBUNTU-CVE-2023-5870postgresql-12@12.9-0ubuntu0.20.04.112.17-0ubuntu0.20.04.1
LowUBUNTU-CVE-2026-50812sqlite3@3.31.1-4ubuntu0.2no fix listed
LowUBUNTU-CVE-2023-4641shadow@1:4.8.1-1ubuntu5.20.04.11:4.8.1-1ubuntu5.20.04.5
LowUBUNTU-CVE-2026-14663postgresql-12@12.9-0ubuntu0.20.04.1no fix listed
LowUBUNTU-CVE-2026-21711nodejs@10.19.0~dfsg-3ubuntu1no fix listed
LowUBUNTU-CVE-2026-53655node-tar@4.4.10+ds1-2ubuntu1no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.8.5latest4 years ago2.0.1145032973217,836

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/lsst-sqre/nublado2.svg)](https://charts.stackradar.io/charts/lsst-sqre/nublado2)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.