nginx-s3 Helm chart
olopostVerified publisherScored 14 Sept 2026
Nginx S3 gateway
Latest 0.2.1 1 year agodeploys tag unprivileged-oss 1Artifact Hub
nginx-s3 0.2.1 deploys 1 container image: ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway. Across them, 436 findings — 2 critical, 2 high — 2 on CISA KEV. The highest contribution is DEBIAN-CVE-2025-27363 in freetype 2.12.1+dfsg-5+deb12u3, fixed in 2.12.1+dfsg-5+deb12u4.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| ghcr.io/ | unprivileged-oss | 2286346 | 5,039 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2020-15719 | openldap | no fix listed |
| Low | DEBIAN-CVE-2025-6395 | gnutls28 | 3.7.9-2+deb12u5 |
| Low | DEBIAN-CVE-2026-56208 | aom | 3.6.0-1+deb12u3 |
| Low | DEBIAN-CVE-2026-0990 | libxml2 | 2.9.14+dfsg-1.3~deb12u6 |
| Low | DEBIAN-CVE-2025-24528 | krb5 | 1.20.1-2+deb12u3 |
| Low | DEBIAN-CVE-2026-66034 | libssh2 | 1.10.0-3+deb12u1 |
| Low | DEBIAN-CVE-2025-15661 | libssh2 | 1.10.0-3+deb12u1 |
| Low | DEBIAN-CVE-2026-54411 | pam | no fix listed |
| Low | DEBIAN-CVE-2026-2219 | dpkg | 1.21.23 |
| Low | DEBIAN-CVE-2026-42497 | perl | no fix listed |
| Low | DEBIAN-CVE-2025-24928 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | DEBIAN-CVE-2026-41992 | gzip | no fix listed |
| Low | DEBIAN-CVE-2026-56211 | aom | 3.6.0-1+deb12u3 |
| Low | DEBIAN-CVE-2026-12912 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-12064 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-8932 | curl | no fix listed |
| Low | DEBIAN-CVE-2024-55549 | libxslt | 1.1.35-1+deb12u1 |
| Low | DEBIAN-CVE-2025-24855 | libxslt | 1.1.35-1+deb12u1 |
| Low | DEBIAN-CVE-2024-12133 | libtasn1-6 | 4.19.0-2+deb12u1 |
| Low | DEBIAN-CVE-2026-8286 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-75803 | openssl | no fix listed |
| Low | DEBIAN-CVE-2026-4046 | glibc | 2.36-9+deb12u14 |
| Low | DEBIAN-CVE-2026-41071 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-58051 | libssh2 | 1.10.0-3+deb12u1 |
| Low | DEBIAN-CVE-2026-48959 | perl | no fix listed |
| Low | DEBIAN-CVE-2025-32414 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | DEBIAN-CVE-2026-5928 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-7598 | libssh2 | 1.10.0-3+deb12u1 |
| Low | DEBIAN-CVE-2023-32570 | dav1d | no fix listed |
| Low | DEBIAN-CVE-2026-6791 | glibc | no fix listed |
| Low | DEBIAN-CVE-2022-27943 | gcc-12 | no fix listed |
| Low | DEBIAN-CVE-2025-64720 | libpng1.6 | 1.6.39-2+deb12u1 |
| Low | DEBIAN-CVE-2026-8458 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-6253 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-33164 | libde265 | no fix listed |
| Low | DSA-5949-1 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | DEBIAN-CVE-2025-5222 | icu | 72.1-3+deb12u1 |
| Low | DEBIAN-CVE-2026-45382 | libde265 | no fix listed |
| Low | DEBIAN-CVE-2026-45383 | libde265 | no fix listed |
| Low | DEBIAN-CVE-2026-4437 | glibc | 2.36-9+deb12u14 |
| Low | DEBIAN-CVE-2026-9547 | curl | no fix listed |
| Low | DEBIAN-CVE-2025-8177 | tiff | no fix listed |
| Low | DEBIAN-CVE-2025-8941 | pam | no fix listed |
| Low | DSA-6015-1 | openssl | 3.0.17-1~deb12u3 |
| Low | DEBIAN-CVE-2025-66293 | libpng1.6 | 1.6.39-2+deb12u1 |
| Low | DEBIAN-CVE-2026-42012 | gnutls28 | 3.7.9-2+deb12u7 |
| Low | DEBIAN-CVE-2022-49043 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | DEBIAN-CVE-2026-56209 | aom | 3.6.0-1+deb12u3 |
| Low | DEBIAN-CVE-2026-57432 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-6276 | curl | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.2.1latest | 1 year ago | unprivileged-oss | 2286346 | 5,039 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.