StackRadar

gitea 23.12.5 Helm chart

myaVerified publisher

Scored 14 Sept 2026

Git with a cup of tea. A painless, self-hosted Git Service.

Version 23.12.5 2 years agoapp version 1.21.6 0Artifact Hub

gitea 23.12.5 deploys 1 container image: gitea/gitea. Across them, 300 findings2 critical, 7 high 1 on CISA KEV. The highest contribution is ALPINE-CVE-2024-6387 in openssh 9.3_p2-r1, fixed in 9.3_p2-r2.

Radar Score

3,4302743248

300 findings over 1 of 1 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
gitea/gitea1.21.627432483,430

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

248 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-89gr-r52h-f8rxgolang.org/x/crypto@v0.18.00.52.0
LowGHSA-9phm-fm57-rhg8golang.org/x/image@v0.13.00.18.0
LowGHSA-jppx-rxg9-jmrxgolang.org/x/crypto@v0.18.00.52.0
LowGHSA-mh63-6h87-95cpgithub.com/golang-jwt/jwt/v5@v5.0.05.2.2
LowGHSA-mh63-6h87-95cpgithub.com/golang-jwt/jwt/v4@v4.5.04.5.2
LowGHSA-r9px-m959-cxf4github.com/go-git/go-git/v5@v5.11.05.13.0
LowGHSA-9r5x-wg6m-x2rccode.gitea.io/gitea@v1.21.61.26.2
LowGHSA-683j-3ff6-hh2xcode.gitea.io/gitea@v1.21.61.27.0
LowGHSA-vp52-pcj8-j9qcgoogle.golang.org/grpc@v1.58.31.83.1
LowGHSA-g9g6-qhrc-p3qccode.gitea.io/gitea@v1.21.61.26.4
LowGHSA-h9c5-x7g8-4q7fcode.gitea.io/gitea@v1.21.61.25.5
LowGHSA-7vpp-9cxj-q8gvgithub.com/mholt/archiver/v3@v3.5.1no fix listed
LowGHSA-777r-4v59-6486code.gitea.io/gitea@v1.21.61.26.3
LowGHSA-rgv6-xp99-6mgjcode.gitea.io/gitea@v1.21.61.27.0
LowGHSA-v8f2-2ghq-9whvcode.gitea.io/gitea@v1.21.61.25.5
LowGHSA-v96j-25gv-g2w9code.gitea.io/gitea@v1.21.61.26.4
LowGHSA-cc8w-r4qh-3v65code.gitea.io/gitea@v1.21.61.26.2
LowGHSA-fhx7-m96w-mv29code.gitea.io/gitea@v1.21.61.26.0
LowGHSA-fw57-jgch-pgf3code.gitea.io/gitea@v1.21.61.27.0
LowGHSA-mm7c-rhg6-qr4rcode.gitea.io/gitea@v1.21.61.26.2
LowGHSA-44qc-pgvp-wx7vcode.gitea.io/gitea@v1.21.61.26.4
LowALPINE-CVE-2024-50602expat@2.6.0-r02.6.4-r0
LowGHSA-rhh4-rh7c-7r5vgithub.com/mholt/archiver/v3@v3.5.1no fix listed
LowGHSA-37w2-86g3-h4qhcode.gitea.io/gitea@v1.21.61.25.5
LowGHSA-v73x-hx65-6pf4code.gitea.io/gitea@v1.21.61.26.3
LowGHSA-wrf9-r3h7-7x5vcode.gitea.io/gitea@v1.21.61.26.3
LowALPINE-CVE-2024-8096curl@8.5.0-r08.10.0-r0
LowGHSA-q4h4-gmj2-qvw2golang.org/x/crypto@v0.18.00.52.0
LowGHSA-w879-237q-wc7rgolang.org/x/crypto@v0.18.00.52.0
LowGHSA-47rq-xp99-92mxcode.gitea.io/gitea@v1.21.61.25.5
LowGHSA-4c8f-3m6h-m56rcode.gitea.io/gitea@v1.21.61.25.5
LowGHSA-x92v-f5gc-r34vcode.gitea.io/gitea@v1.21.61.25.5
LowGHSA-263q-5cv3-xq9gcode.gitea.io/gitea@v1.21.6no fix listed
LowGHSA-gx3v-q759-g323code.gitea.io/gitea@v1.21.61.26.3
LowALPINE-CVE-2024-4603openssl@3.1.4-r53.1.5-r0
LowALPINE-CVE-2024-12133libtasn1@4.19.0-r14.20.0-r0
LowGHSA-qw64-3x98-g7q2github.com/go-git/go-billy/v5@v5.5.05.9.0
LowALPINE-CVE-2024-0853curl@8.5.0-r08.6.0-r0
LowGHSA-82f7-87hm-852xcode.gitea.io/gitea@v1.21.61.27.0
LowGHSA-vrhc-jjfc-m3m3code.gitea.io/gitea@v1.21.61.27.0
LowGHSA-pjcq-xvwq-hhpjgithub.com/Azure/go-ntlmssp@v0.0.0-20221128193559-754e693213580.1.1
LowGHSA-w5pg-649r-p6ggcode.gitea.io/gitea@v1.21.61.27.0
LowGHSA-q675-qj96-32m9golang.org/x/image@v0.13.00.41.0
LowGO-2026-4341stdlib@go1.21.71.24.12
LowGHSA-2fcr-jfvc-vgg2code.gitea.io/gitea@v1.21.61.27.0
LowGHSA-hc8v-wwc9-vgxmgithub.com/go-git/go-git/v5@v5.11.05.19.2
LowGO-2024-2887stdlib@go1.21.71.21.11
LowGHSA-94v3-77j7-vm48code.gitea.io/gitea@v1.21.61.27.0
LowALPINE-CVE-2025-26519musl@1.2.4-r21.2.4-r3
LowGHSA-rqhx-647v-wx32code.gitea.io/gitea@v1.21.61.26.4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
23.12.5latest2 years ago1.21.627432483,430

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/mya/gitea.svg)](https://charts.stackradar.io/charts/mya/gitea)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.