kommander 0.39.2 Helm chart
mesosphere-stableScored 14 Sept 2026
Kommander
Version 0.39.2 3 years agodeploys tag 1.3.0 0Artifact Hub
kommander 0.39.2 deploys 29 container images: kiwigrid/k8s-sidecar, mesosphere/grafana-plugins, grafana/grafana, quay.io/kubernetes-multicluster/kubefed and 22 more. Across the 24 measured, 5,212 findings — 22 critical, 148 high — 21 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2, fixed in 1.1.1f-1ubuntu2.15.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-hwqm-qvj9-4jr2 | github.com/ | 0.11.0 |
| Low | UBUNTU-CVE-2026-54411 | pam | no fix listed |
| Low | GHSA-pq67-6m6q-mj2v | urllib3 | 2.5.0 |
| Low | UBUNTU-CVE-2026-25210 | expat | 2.2.9-1ubuntu0.8+esm1 |
| Low | GHSA-cp6g-7hqx-qxhp | go.mongodb.org/ | 1.17.7 |
| Low | GHSA-5ffw-gxpp-mxpf | github.com/ | 1.5.13 |
| Low | UBUNTU-CVE-2026-19487 | perl | 5.30.0-9ubuntu0.5+esm4 |
| Low | GHSA-m45g-f45x-vv22 | github.com/ | 1.8.1 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | GHSA-pwhc-rpq9-4c8w | github.com/ | 1.7.29 |
| Low | GHSA-f5pg-7wfw-84q9 | github.com/ | 1.34.0 |
| Low | GHSA-qw6h-vgh9-j6wx | express | 4.20.0 |
| Low | GHSA-65pc-fj4g-8rjx | idna | 3.15 |
| Low | GHSA-mh29-5h37-fv8m | js-yaml | 3.14.2 |
| Low | UBUNTU-CVE-2024-32021 | git | 1:2.25.1-1ubuntu3.12 |
| Low | GHSA-259w-8hf6-59c2 | github.com/ | 1.5.18 |
| Low | GHSA-x86f-5xw2-fm2r | github.com/ | no fix listed |
| Low | GHSA-x86f-5xw2-fm2r | github.com/ | no fix listed |
| Low | GO-2023-2041 | stdlib | 1.20.8 |
| Low | GHSA-9wx4-h78v-vm56 | requests | 2.32.0 |
| Low | GHSA-7q8q-rj6j-mhjq | axios | 0.33.0 |
| Low | GO-2023-2043 | stdlib | 1.20.8 |
| Low | GHSA-vw47-mr44-3jf9 | k8s.io/ | no fix listed |
| Low | GO-2022-0515 | stdlib | 1.17.12 |
| Low | GO-2023-2186 | stdlib | 1.20.11 |
| Low | GHSA-h67p-54hq-rp68 | js-yaml | 3.15.0 |
| Low | GO-2024-3333 | golang.org/ | 0.33.0 |
| Low | UBUNTU-CVE-2026-78408 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2026-54369 | acl | no fix listed |
| Low | UBUNTU-CVE-2026-41989 | libgcrypt20 | no fix listed |
| Low | GHSA-389r-gv7p-r3rp | github.com/ | 5.19.0 |
| Low | GHSA-3jxr-9vmj-r5cp | brace-expansion | 1.1.16 |
| Low | UBUNTU-CVE-2024-11053 | curl | 7.68.0-1ubuntu2.25 |
| Low | UBUNTU-CVE-2025-5372 | libssh | no fix listed |
| Low | GHSA-8cfg-vx93-jvxw | k8s.io/ | 0.19.6 |
| Low | GHSA-8cfg-vx93-jvxw | k8s.io/ | 1.20.0-alpha.2 |
| Low | GO-2024-3105 | stdlib | 1.22.7 |
| Low | GO-2022-1095 | stdlib | 1.18.8 |
| Low | UBUNTU-CVE-2026-13595 | util-linux | no fix listed |
| Low | GHSA-m6hq-p25p-ffr2 | github.com/ | 1.7.29 |
| Low | GO-2023-1621 | stdlib | 1.19.7 |
| Low | UBUNTU-CVE-2026-54371 | attr | 1:2.4.48-5ubuntu0.1~esm1 |
| Low | GO-2026-4981 | stdlib | 1.25.10 |
| Low | GO-2025-3563 | stdlib | 1.23.8 |
| Low | GHSA-vmf3-w455-68vh | tar | 7.5.16 |
| Low | GO-2026-4977 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-0964 | libssh | 0.9.3-2ubuntu2.5+esm3 |
| Low | GO-2024-2610 | stdlib | 1.21.8 |
| Low | UBUNTU-CVE-2026-59848 | libssh | no fix listed |
| Low | GO-2026-4986 | stdlib | 1.25.10 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.39.2latest | 3 years ago | 1.3.0 | 221481,0703,962 | 68,284 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.