helm-ai-kernel 0.9.0 Helm chart
mindburn-labsOfficialVerified publisherScored 27 Sept 2026
HELM — Fail-closed AI execution firewall with cryptographic governance proofs
Version 0.9.0app version v0.9.0 2Artifact Hub
helm-ai-kernel 0.9.0 deploys 2 container images: alpine/helm and ghcr.io/mindburn-labs/helm-ai-kernel. Across them, 202 findings — 2 critical, 1 high — 1 on CISA KEV. The highest contribution is ALPINE-CVE-2025-48384 in git 2.45.2-r0, fixed in 2.45.4-r0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| alpine/ | digest-pinned | 2138158 | 2,157 |
| ghcr.io/ | v0.9.0 | 0003 | 17 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2025-46835 | git | 2.45.4-r0 |
| Low | ALPINE-CVE-2026-31789 | openssl | 3.3.7-r0 |
| Low | GHSA-7hfp-qfw3-5jxh | helm.sh/ | 3.9.4 |
| Low | GHSA-w879-237q-wc7r | golang.org/ | 0.52.0 |
| Low | GHSA-q4h4-gmj2-qvw2 | golang.org/ | 0.52.0 |
| Low | ALPINE-CVE-2025-69419 | openssl | 3.3.6-r0 |
| Low | ALPINE-CVE-2025-27614 | git | 2.45.4-r0 |
| Low | ALPINE-CVE-2026-45186 | expat | 2.8.1-r0 |
| Low | GHSA-557j-xg8c-q2mm | helm.sh/ | 3.17.4 |
| Low | GHSA-56hp-xqp3-w2jf | helm.sh/ | 3.6.1 |
| Low | ALPINE-CVE-2024-50602 | expat | 2.6.4-r0 |
| Low | ALPINE-CVE-2025-46334 | git | 2.45.4-r0 |
| Low | ALPINE-CVE-2024-8096 | curl | 8.10.0-r0 |
| Low | ALPINE-CVE-2026-22184 | zlib | 1.3.2-r0 |
| Low | ALPINE-CVE-2025-15468 | openssl | 3.3.6-r0 |
| Low | GHSA-p436-gjf2-799p | github.com/ | 29.2.0 |
| Low | GHSA-pxq6-2prw-chj9 | github.com/ | no fix listed |
| Low | GHSA-v53g-5gjp-272r | helm.sh/ | 3.14.1 |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
| Low | GHSA-5xqw-8hwv-wg92 | helm.sh/ | 3.17.3 |
| Low | GHSA-53c4-hhmh-vw5q | helm.sh/ | 3.10.3 |
| Low | GHSA-67fx-wx78-jx33 | helm.sh/ | 3.10.3 |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
| Low | GHSA-4hfp-h4cw-hj8p | helm.sh/ | 3.17.3 |
| Low | ALPINE-CVE-2025-26519 | musl | 1.2.5-r1 |
| Low | GHSA-pg57-6jwg-q645 | github.com/ | 1.7.36 |
| Low | GHSA-6rx9-889q-vv2r | helm.sh/ | 3.10.3 |
| Low | GHSA-xhf5-7wjv-pqxp | github.com/ | 1.7.33 |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | ALPINE-CVE-2025-48386 | git | 2.45.4-r0 |
| Low | ALPINE-CVE-2026-25210 | expat | 2.7.4-r0 |
| Low | ALPINE-CVE-2025-66199 | openssl | 3.3.6-r0 |
| Low | GHSA-9h84-qmv7-982p | helm.sh/ | 3.18.5 |
| Low | GHSA-f9f8-9pmf-xv68 | helm.sh/ | 3.18.5 |
| Low | ALPINE-CVE-2026-40200 | musl | 1.2.5-r3 |
| Low | ALPINE-CVE-2026-22796 | openssl | 3.3.6-r0 |
| Low | GHSA-jpcc-p29g-p8mq | github.com/ | 1.7.33 |
| Low | GHSA-j5w8-q4qc-rx2x | golang.org/ | 0.45.0 |
| Low | GHSA-vvgc-356p-c3xw | golang.org/ | 0.38.0 |
| Low | ALPINE-CVE-2025-4947 | curl | 8.14.0-r0 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
| Low | GO-2024-3106 | stdlib | 1.22.7 |
| Low | ALPINE-CVE-2024-50349 | git | 2.45.3-r0 |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | GO-2024-3107 | stdlib | 1.22.7 |
| Low | GHSA-x86f-5xw2-fm2r | github.com/ | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.9.0latest | — | v0.9.0 | 2138161 | 2,174 |
| 0.8.5 | — | v0.8.5 | 2139165 | 2,205 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.