StackRadar

elasticsearch2 Helm chart

ncsaVerified publisher

Scored 14 Sept 2026

An Elasticsearch2 Helm chart for Kubernetes

Latest 0.2.2 5 years agoapp version 2.4.6 0Artifact Hub

elasticsearch2 0.2.2 deploys 2 container images: elastichq/elasticsearch-hq and library/elasticsearch. Across them, 278 findings6 critical, 7 high 1 on CISA KEV. The highest contribution is GHSA-2qrg-x229-3v8q in log4j 1.2.17, with no fix listed.

Radar Score

4,91167113152

278 findings over 2 of 2 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
elastichq/elasticsearch-hqlatest1241521,554
library/elasticsearch2.4.655721003,357

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

278 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumGHSA-3ww4-gg4f-jr7fcryptography@2.842.0.0
MediumGHSA-r64q-w8jr-g9qpurllib3@1.221.24.3
MediumALPINE-CVE-2019-5094e2fsprogs@1.43.7-r01.43.7-r1
MediumDSA-4326-1openjdk-8@8u181-b13-1~deb9u18u181-b13-2~deb9u1
MediumDSA-4472-1expat@2.2.0-2+deb9u12.2.0-2+deb9u2
MediumPYSEC-2023-221werkzeug@0.16.02.3.8
MediumDLA-2492-1openssl@1.1.0f-3+deb9u21.1.0l-1~deb9u2
MediumDLA-2493-1openssl1.0@1.0.2l-2+deb9u31.0.2u-1~deb9u3
MediumGHSA-h46c-h94j-95f3jackson-core@2.8.12.15.0
MediumDSA-4530-1expat@2.2.0-2+deb9u12.2.0-2+deb9u3
MediumGHSA-w37g-rhq8-7m4jsnakeyaml@1.151.32
MediumGHSA-5mcr-gq6c-3hq2netty@3.10.6.Finalno fix listed
MediumGHSA-3393-hvrj-w7v3elasticsearch@2.4.66.8.17
MediumDLA-2734-1curl@7.52.1-5+deb9u67.52.1-5+deb9u15
MediumGHSA-2h4p-vjrc-8xpqmako@1.1.01.3.12
MediumDSA-4668-1openjdk-8@8u181-b13-1~deb9u18u252-b09-1~deb9u1
MediumDLA-2972-1libxml2@2.9.4+dfsg1-2.2+deb9u22.9.4+dfsg1-2.2+deb9u6
MediumGHSA-3rq5-2g8h-59hceventlet@0.25.00.35.2
MediumGHSA-3rq5-2g8h-59hcdnspython@1.16.02.6.1
MediumDSA-4425-1wget@1.18-5+deb9u21.18-5+deb9u3
MediumDSA-4331-1curl@7.52.1-5+deb9u67.52.1-5+deb9u8
MediumDSA-4475-1openssl@1.1.0f-3+deb9u21.1.0k-1~deb9u1
MediumGHSA-w7pp-m8wf-vj6rcryptography@2.839.0.1
MediumPYSEC-2024-225cryptography@2.842.0.4
MediumDLA-2664-1curl@7.52.1-5+deb9u67.52.1-5+deb9u14
MediumGHSA-5xp3-jfq3-5q8xpip@18.121.1
LowPYSEC-2026-2132click@7.08.3.3
LowGHSA-c77j-p484-h84melasticsearch@2.4.66.8.12
LowGHSA-hc5x-x2vx-497ggunicorn@19.7.122.0.0
LowDLA-2976-1gzip@1.6-5+b11.6-5+deb9u1
LowDLA-2977-1xz-utils@5.2.2-1.2+b15.2.2-1.2+deb9u1
LowDSA-4621-1openjdk-8@8u181-b13-1~deb9u18u242-b08-1~deb9u1
LowDLA-2904-1expat@2.2.0-2+deb9u12.2.0-2+deb9u4
LowDLA-2378-1openssl1.0@1.0.2l-2+deb9u31.0.2u-1~deb9u2
LowDLA-2828-1libvorbis@1.3.5-4+deb9u21.3.5-4+deb9u3
LowDLA-2773-1curl@7.52.1-5+deb9u67.52.1-5+deb9u16
LowDSA-4666-1openldap@2.4.44+dfsg-5+deb9u22.4.44+dfsg-5+deb9u4
LowDLA-2437-1krb5@1.15-1+deb9u11.15-1+deb9u2
LowDLA-2372-1libproxy@0.4.14-20.4.14-2+deb9u1
LowDSA-4485-1openjdk-8@8u181-b13-1~deb9u18u222-b10-1~deb9u1
LowDLA-2325-1openjdk-8@8u181-b13-1~deb9u18u265-b01-0+deb9u1
LowGHSA-9q2p-fj49-vpxjmarshmallow@3.0.0b53.0.0b9
LowDLA-2737-1openjdk-8@8u181-b13-1~deb9u18u302-b08-1~deb9u1
LowGHSA-9p9m-jm8w-94p2eventlet@0.25.00.31.0
LowDLA-2514-1flac@1.3.2-11.3.2-2+deb9u1
LowDLA-2931-1cyrus-sasl2@2.1.27~101-g0780600+dfsg-32.1.27~101-g0780600+dfsg-3+deb9u2
LowDLA-3044-1glib2.0@2.50.3-22.50.3-2+deb9u3
LowDLA-3006-1openjdk-8@8u181-b13-1~deb9u18u332-ga-1~deb9u1
LowDLA-3058-1libsndfile@1.0.27-31.0.27-3+deb9u3
LowGHSA-q2x7-8rv6-6q7hjinja2@2.10.33.1.5

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.2latest5 years ago2.4.6671131524,911

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/ncsa/elasticsearch2.svg)](https://charts.stackradar.io/charts/ncsa/elasticsearch2)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.