kommander 0.39.2 Helm chart
mesosphere-stableScored 14 Sept 2026
Kommander
Version 0.39.2 3 years agodeploys tag 1.3.0 0Artifact Hub
kommander 0.39.2 deploys 29 container images: kiwigrid/k8s-sidecar, mesosphere/grafana-plugins, grafana/grafana, quay.io/kubernetes-multicluster/kubefed and 22 more. Across the 24 measured, 5,212 findings — 22 critical, 148 high — 21 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2, fixed in 1.1.1f-1ubuntu2.15.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-0966 | libssh | 0.9.3-2ubuntu2.5+esm3 |
| Low | GHSA-r4q5-vmmm-2653 | follow-redirects | 1.16.0 |
| Low | ALPINE-CVE-2021-22890 | curl | 7.76.0-r0 |
| Low | UBUNTU-CVE-2021-22890 | curl | 7.68.0-1ubuntu2.5 |
| Low | GO-2022-0537 | stdlib | 1.17.13 |
| Low | GHSA-3vp4-m3rf-835h | github.com/ | 1.9.0 |
| Low | GO-2021-0234 | stdlib | 1.15.9 |
| Low | UBUNTU-CVE-2026-48959 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-59843 | libssh | no fix listed |
| Low | UBUNTU-CVE-2026-5928 | glibc | no fix listed |
| Low | GHSA-c5q2-7r4c-mv6g | gopkg.in/ | no fix listed |
| Low | GHSA-267v-3v32-g6q5 | github.com/ | 0.4.14 |
| Low | UBUNTU-CVE-2026-3833 | gnutls28 | 3.6.13-2ubuntu1.12+esm2 |
| Low | GHSA-rc4r-wh2q-q6c4 | github.com/ | 20.10.18 |
| Low | GHSA-mq39-4gv4-mvpx | github.com/ | 23.0.11 |
| Low | GHSA-4rq4-32rv-6wp6 | shelljs | 0.8.5 |
| Low | GHSA-wf5p-g6vw-rhxx | axios | 0.28.0 |
| Low | GHSA-3wgm-2gw2-vh5m | k8s.io/ | no fix listed |
| Low | UBUNTU-CVE-2026-6791 | glibc | no fix listed |
| Low | ALPINE-CVE-2021-23839 | openssl | 1.1.1j-r0 |
| Low | UBUNTU-CVE-2026-8458 | curl | 7.68.0-1ubuntu2.25+esm4 |
| Low | UBUNTU-CVE-2026-76641 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-6253 | curl | no fix listed |
| Low | GHSA-w5hq-g745-h8pq | uuid | 11.1.1 |
| Low | UBUNTU-CVE-2020-27618 | glibc | 2.31-0ubuntu9.7 |
| Low | GHSA-mfv7-gq43-w965 | k8s.io/ | 1.19.11 |
| Low | GHSA-m4p7-r5rc-7g4j | pyasn1 | 0.6.4 |
| Low | GO-2023-1703 | stdlib | 1.19.8 |
| Low | GHSA-9hjg-9r4m-mvj7 | requests | 2.32.4 |
| Low | GO-2021-0241 | stdlib | 1.15.13 |
| Low | GO-2022-0521 | stdlib | 1.17.12 |
| Low | GHSA-74j8-88mm-7496 | k8s.io/ | no fix listed |
| Low | UBUNTU-CVE-2022-4415 | systemd | 245.4-4ubuntu3.20 |
| Low | GHSA-6gc3-crp7-25w5 | github.com/ | 0.9.0 |
| Low | DLA-3782-1 | util-linux | 2.33.1-0.1+deb10u1 |
| Low | DLA-3586-1 | ncurses | 6.1+20181013-2+deb10u4 |
| Low | GHSA-8ppf-4f7h-5ppj | pyasn1 | 0.6.4 |
| Low | GHSA-hm4w-wwcw-mr6r | pyasn1 | 0.6.4 |
| Low | GO-2022-0477 | stdlib | 1.17.11 |
| Low | GHSA-9ppj-qmqm-q256 | tar | 7.5.11 |
| Low | UBUNTU-CVE-2020-13776 | systemd | no fix listed |
| Low | UBUNTU-CVE-2026-60002 | openssh | no fix listed |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | GO-2022-0533 | stdlib | 1.17.11 |
| Low | ALPINE-CVE-2021-22898 | curl | 7.77.0-r0 |
| Low | UBUNTU-CVE-2021-22898 | curl | 7.68.0-1ubuntu2.6 |
| Low | UBUNTU-CVE-2018-1000021 | git | no fix listed |
| Low | GHSA-q547-gmf8-8jr7 | github.com/ | 1.1.0 |
| Low | GHSA-3p68-rc4w-qgx5 | axios | 0.31.0 |
| Low | GHSA-hc8v-wwc9-vgxm | github.com/ | 5.19.2 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.39.2latest | 3 years ago | 1.3.0 | 221481,0703,962 | 68,284 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.