kommander Helm chart
mesosphere-stableScored 15 Sept 2026
Kommander
Latest 0.39.2 3 years agodeploys tag 1.3.0 0Artifact Hub
kommander 0.39.2 deploys 29 container images: kiwigrid/k8s-sidecar, mesosphere/grafana-plugins, grafana/grafana, quay.io/kubernetes-multicluster/kubefed and 22 more. Across the 24 measured, 5,219 findings — 21 critical, 149 high — 21 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2, fixed in 1.1.1f-1ubuntu2.15.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2021-20193 | tar | 1.30+dfsg-7ubuntu0.20.04.2 |
| Low | GHSA-4mjr-xmp4-gh2g | qs | 6.16.0 |
| Low | GHSA-rg2x-37c3-w2rh | github.com/ | no fix listed |
| Low | GHSA-rg2x-37c3-w2rh | github.com/ | no fix listed |
| Low | GO-2025-4006 | stdlib | 1.24.8 |
| Low | GHSA-2c4m-59x9-fr2g | github.com/ | 1.9.1 |
| Low | GO-2024-2780 | k8s.io/ | 1.13.7 |
| Low | GHSA-6jvc-q2x7-pchv | github.com/ | 1.34.0 |
| Low | UBUNTU-CVE-2025-29088 | sqlite3 | 3.31.1-4ubuntu0.7 |
| Low | GO-2026-5037 | stdlib | 1.25.11 |
| Low | UBUNTU-CVE-2026-40225 | systemd | 245.4-4ubuntu3.24+esm3 |
| Low | GO-2026-4971 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-56409 | expat | no fix listed |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | UBUNTU-CVE-2026-50813 | sqlite3 | no fix listed |
| Low | UBUNTU-CVE-2021-24032 | libzstd | 1.4.4+dfsg-3ubuntu0.1 |
| Low | GHSA-xx6v-rp6x-q39c | axios | 0.31.1 |
| Low | GO-2026-5038 | stdlib | 1.25.11 |
| Low | UBUNTU-CVE-2026-13757 | p11-kit | 0.23.20-1ubuntu0.1+esm1 |
| Low | GO-2026-5942 | golang.org/ | 0.56.0 |
| Low | GHSA-898c-q2cr-xwhg | axios | 0.32.0 |
| Low | GHSA-qxp5-gwg8-xv66 | golang.org/ | 0.36.0 |
| Low | UBUNTU-CVE-2026-11850 | krb5 | no fix listed |
| Low | UBUNTU-CVE-2026-56132 | expat | no fix listed |
| Low | GO-2025-4012 | stdlib | 1.24.8 |
| Low | GO-2024-2754 | k8s.io/ | 1.17.13 |
| Low | GO-2025-3956 | stdlib | 1.23.12 |
| Low | UBUNTU-CVE-2025-8058 | glibc | 2.31-0ubuntu9.18+esm1 |
| Low | GO-2026-4440 | golang.org/ | 0.45.0 |
| Low | GO-2025-4011 | stdlib | 1.24.8 |
| Low | GO-2025-4015 | stdlib | 1.24.8 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GHSA-w67g-5rqw-f597 | github.com/ | 1.5.3 |
| Low | GO-2024-2755 | k8s.io/ | 1.19.3 |
| Low | UBUNTU-CVE-2026-59999 | openssh | no fix listed |
| Low | GHSA-qh36-44jv-c8xj | k8s.io/ | no fix listed |
| Low | GO-2024-2753 | k8s.io/ | 1.16.13 |
| Low | GO-2026-4441 | golang.org/ | 0.45.0 |
| Low | UBUNTU-CVE-2013-4235 | shadow | 1:4.8.1-1ubuntu5.20.04.4 |
| Low | GHSA-7jxh-36q5-gcqv | github.com/ | 1.7.35 |
| Low | UBUNTU-CVE-2025-45582 | tar | no fix listed |
| Low | UBUNTU-CVE-2026-15534 | perl | 5.30.0-9ubuntu0.5+esm4 |
| Low | UBUNTU-CVE-2024-32020 | git | 1:2.25.1-1ubuntu3.12 |
| Low | GO-2025-3373 | stdlib | 1.22.11 |
| Low | GO-2026-5970 | golang.org/ | 0.39.0 |
| Low | PYSEC-2026-2275 | requests | 2.33.0 |
| Low | GHSA-w7rc-rwvf-8q5r | node-fetch | 2.6.1 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.39.2latest | 3 years ago | 1.3.0 | 211491,0703,969 | 68,330 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.