StackRadar

ghost Helm chart

mt190502

Scored 14 Sept 2026

A simple, powerful publishing platform that allows you to share your stories with the world.

Latest 8.25.1 5 months agoapp version 6.25.1 0Artifact Hub

ghost 8.25.1 deploys 3 container images: library/busybox, library/ghost and library/mysql. Across them, 477 findings0 critical, 5 high. The highest contribution is GHSA-r5fr-rjxr-66jc in lodash-es 4.17.21, fixed in 4.18.0.

Radar Score

4,9600563409

477 findings over 3 of 3 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
library/busybox×2latest00000
library/ghost6.25.105613494,497
library/mysql800260463

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

431 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumGHSA-v52c-386h-88mcmulter@2.0.22.1.0
MediumGHSA-xf7r-hgr6-v32pmulter@2.0.22.1.0
MediumDEBIAN-CVE-2026-8376perl@5.36.0-7+deb12u3no fix listed
MediumDEBIAN-CVE-2026-5260gnutls28@3.7.9-2+deb12u63.7.9-2+deb12u7
MediumGHSA-37ch-88jc-xwx2path-to-regexp@0.1.120.1.13
MediumGHSA-9wv6-86v2-598jpath-to-regexp@1.8.01.9.0
MediumGHSA-3mfm-83xf-c92rhandlebars@4.7.84.7.9
MediumGHSA-xhpv-hc6g-r9c6handlebars@4.7.84.7.9
MediumGHSA-m7jm-9gc2-mpf2fast-xml-parser@5.2.55.3.5
MediumGHSA-hvx9-hwr7-wjj9systeminformation@5.31.55.31.6
MediumGHSA-v9p9-hfj2-hcw8undici@5.22.16.24.0
MediumGHSA-p92q-9vqr-4j8vaxios@1.13.21.16.0
MediumGHSA-pfrx-2q88-qq97got@9.6.011.8.5
MediumGHSA-jmr7-xgp7-cmfjfast-xml-parser@5.2.55.3.6
MediumGHSA-96hv-2xvq-fx4pws@8.18.38.21.0
MediumGHSA-3ppc-4f35-3m26minimatch@5.1.65.1.7
MediumGHSA-pf86-5x62-jrwfaxios@1.13.21.15.1
MediumDEBIAN-CVE-2019-1010025glibc@2.36-9+deb12u13no fix listed
LowDEBIAN-CVE-2026-57433perl@5.36.0-7+deb12u3no fix listed
LowGHSA-vcc3-ghjq-m6frdecode-uri-component@0.2.20.5.0
LowGHSA-j3q9-mxjg-w52fpath-to-regexp@8.3.08.4.0
LowGHSA-vxpw-j846-p89qundici@5.22.16.27.0
LowDEBIAN-CVE-2026-13221perl@5.36.0-7+deb12u3no fix listed
LowDEBIAN-CVE-2026-42496perl@5.36.0-7+deb12u3no fix listed
LowGHSA-62hf-57xw-28j9axios@1.13.21.15.1
LowGHSA-34x7-hfp2-rc4vtar@6.1.147.5.7
LowGHSA-q8qp-cvcw-x6jjaxios@1.13.21.15.2
LowGHSA-mf9v-mfxr-j63jurllib3@2.6.32.7.0
LowGHSA-3g43-6gmg-66jwaxios@1.13.21.15.2
LowGHSA-554w-wpv2-vw27node-forge@1.3.11.3.2
LowGHSA-777c-7fjr-54vfaxios@1.13.21.16.0
LowGHSA-hfxv-24rg-xrqfaxios@1.13.21.16.0
LowDEBIAN-CVE-2026-12087perl@5.36.0-7+deb12u3no fix listed
LowGHSA-j5f8-grm9-p9fcaxios@1.13.21.16.0
LowGHSA-qgmg-gppg-76g5validator@7.2.013.7.0
LowDEBIAN-CVE-2026-0915glibc@2.36-9+deb12u132.36-9+deb12u14
LowDEBIAN-CVE-2023-50495ncurses@6.4-4no fix listed
LowGHSA-rgw5-rvv9-x895brace-expansion@2.0.12.1.4
LowGHSA-9cx6-37pm-9jffhandlebars@4.7.84.7.9
LowGHSA-f5x3-32g6-xq36tar@6.1.146.2.1
LowGHSA-8cf7-32gw-wr33jsonwebtoken@8.5.19.0.0
LowDEBIAN-CVE-2026-85091zlib@1:1.2.13.dfsg-1no fix listed
LowGHSA-5m6q-g25r-mvwxnode-forge@1.3.11.4.0
LowGHSA-6g55-p6wh-862qpostcss@8.5.68.5.12
LowGHSA-pmwg-cvhr-8vh7axios@1.13.21.15.1
LowGHSA-8gc5-j5rx-235rfast-xml-parser@5.2.55.5.6
LowGHSA-qffp-2rhf-9h96tar@6.1.147.5.10
LowGHSA-22p9-wv53-3rq4linkify-it@5.0.05.0.1
LowGHSA-c76h-2ccp-4975undici@5.22.15.28.5
LowGHSA-37qj-frw5-hhjhfast-xml-parser@5.2.55.3.4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
8.25.1latest5 months ago6.25.105634094,960

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/mt190502/ghost.svg)](https://charts.stackradar.io/charts/mt190502/ghost)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.