dex 2.14.2 Helm chart
mesosphere-stableScored 24 Sept 2026
Dex
Version 2.14.2 todayapp version 2.37.0 0Artifact Hub
dex 2.14.2 deploys 5 container images: quay.io/brancz/kube-rbac-proxy, mesosphere/dex-controller, mesosphere/dex, gcr.io/google_containers/kubernetes-dashboard-init-amd64 and 1 more. Across them, 1,340 findings — 12 critical, 50 high — 2 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.0.2g-1ubuntu4.8, fixed in 1.0.2g-1ubuntu4.20+esm5.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| quay.io/ | v0.21.1 | 00661 | 580 |
| mesosphere/ | v0.16.1 | 00998 | 927 |
| mesosphere/ | v2.37.0-d2iq.1 | 0525161 | 2,118 |
| gcr.io/ | v1.0.0 | 837249230 | 10,845 |
| bitnamilegacy/ | 1.29.2 | 4884355 | 5,507 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | UBUNTU-CVE-2019-13057 | openldap | 2.4.42+dfsg-2ubuntu3.6 |
| Medium | UBUNTU-CVE-2017-12132 | glibc | 2.23-0ubuntu11.3+esm3 |
| Medium | DEBIAN-CVE-2026-66046 | expat | no fix listed |
| Medium | DEBIAN-CVE-2026-5260 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | GHSA-hcg3-q754-cr77 | golang.org/ | 0.35.0 |
| Medium | GHSA-rm3j-f69w-wqmq | golang.org/ | 0.52.0 |
| Medium | UBUNTU-CVE-2023-4813 | glibc | 2.23-0ubuntu11.3+esm5 |
| Medium | UBUNTU-CVE-2020-16156 | perl | 5.22.1-9ubuntu0.9+esm1 |
| Medium | DEBIAN-CVE-2025-69421 | openssl | 3.0.18-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-8927 | curl | no fix listed |
| Medium | UBUNTU-CVE-2022-3116 | heimdal | 1.7~git20150920+dfsg-4ubuntu1.16.04.1+esm1 |
| Medium | UBUNTU-CVE-2016-6185 | perl | 5.22.1-9ubuntu0.3 |
| Medium | DEBIAN-CVE-2026-28388 | openssl | 3.0.19-1~deb12u2 |
| Medium | UBUNTU-CVE-2023-28321 | curl | 7.47.0-1ubuntu2.19+esm9 |
| Medium | UBUNTU-CVE-2016-1238 | perl | no fix listed |
| Medium | GHSA-6v2p-p543-phr9 | golang.org/ | 0.27.0 |
| Medium | DEBIAN-CVE-2024-32021 | git | 1:2.39.5-0+deb12u1 |
| Medium | UBUNTU-CVE-2018-15687 | systemd | 229-4ubuntu21.8 |
| Medium | DEBIAN-CVE-2026-28387 | openssl | 3.0.19-1~deb12u2 |
| Medium | UBUNTU-CVE-2018-5407 | openssl | 1.0.2g-1ubuntu4.14 |
| Medium | UBUNTU-CVE-2021-3999 | glibc | 2.23-0ubuntu11.3+esm1 |
| Medium | UBUNTU-CVE-2020-13630 | sqlite3 | 3.11.0-1ubuntu1.5 |
| Medium | DEBIAN-CVE-2024-52005 | git | no fix listed |
| Medium | DEBIAN-CVE-2025-69420 | openssl | 3.0.18-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-28389 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-28390 | openssl | 3.0.19-1~deb12u2 |
| Medium | UBUNTU-CVE-2019-6454 | systemd | 229-4ubuntu21.16 |
| Medium | UBUNTU-CVE-2020-29362 | p11-kit | 0.23.2-5~ubuntu16.04.2 |
| Medium | DEBIAN-CVE-2019-1010025 | glibc | no fix listed |
| Low | UBUNTU-CVE-2018-16864 | systemd | 229-4ubuntu21.15 |
| Low | DEBIAN-CVE-2026-57433 | perl | no fix listed |
| Low | UBUNTU-CVE-2018-1000654 | libtasn1-6 | 4.7-3ubuntu0.16.04.3+esm2 |
| Low | GHSA-mh2q-q3fh-2475 | go.opentelemetry.io/ | 1.41.0 |
| Low | UBUNTU-CVE-2019-5094 | e2fsprogs | 1.42.13-1ubuntu1.1 |
| Low | UBUNTU-CVE-2017-7244 | pcre3 | 2:8.38-3.1ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2023-27535 | curl | 7.47.0-1ubuntu2.19+esm8 |
| Low | UBUNTU-CVE-2023-4806 | glibc | 2.23-0ubuntu11.3+esm5 |
| Low | DEBIAN-CVE-2025-46835 | git | 1:2.39.5-0+deb12u3 |
| Low | DEBIAN-CVE-2026-27135 | nghttp2 | 1.52.0-1+deb12u3 |
| Low | UBUNTU-CVE-2022-27774 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-13221 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-42496 | perl | no fix listed |
| Low | UBUNTU-CVE-2019-17595 | ncurses | 6.0+20160213-1ubuntu1+esm2 |
| Low | UBUNTU-CVE-2023-27536 | curl | 7.47.0-1ubuntu2.19+esm8 |
| Low | UBUNTU-CVE-2018-19217 | ncurses | 6.0+20160213-1ubuntu1+esm1 |
| Low | DEBIAN-CVE-2024-56406 | perl | 5.36.0-7+deb12u2 |
| Low | UBUNTU-CVE-2021-22924 | curl | no fix listed |
| Low | UBUNTU-CVE-2020-13529 | systemd | 229-4ubuntu21.31+esm1 |
| Low | GHSA-89gr-r52h-f8rx | golang.org/ | 0.52.0 |
| Low | DEBIAN-CVE-2024-37370 | krb5 | 1.20.1-2+deb12u2 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.14.2latest | today | 2.37.0 | 1250373905 | 19,977 |
| 2.14.1 | 1 year ago | 2.37.0 | 1250367844 | 19,397 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.