StackRadar

kobotoolbox 0.7.4 Helm chart

one-acre-fundVerified publisher

Scored 14 Sept 2026

KoboToolbox field data collection solution

Version 0.7.4 3 years agoApp version not verified against the render 2Artifact Hub

kobotoolbox 0.7.4 deploys 9 container images: bitnami/mongodb, library/busybox, enketo/enketo-express, jwilder/dockerize and 5 more. Across the 6 measured, 1,357 findings7 critical, 29 high 19 on CISA KEV. The highest contribution is GHSA-j7hp-h8jx-5ppr in pillow 9.1.0, fixed in 10.0.1.

Radar Score

18,517729349972

1,357 findings over 6 of 9 images measured

KEV ×19 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

9 images
ImageTagVulnerabilitiesRadar Score
bitnami/mongodb5.0.10-debian-11-r3unmeasured
library/busyboxlatest00000
enketo/enketo-express3.0.435962785,324
jwilder/dockerizelatest00554502
library/nginx1.210414631,126
kobotoolbox/kobocat2.022.24a27922234,510
kobotoolbox/kpi2.022.24d2131423547,055
bitnami/postgresql14.5.0-debian-11-r35unmeasured
bitnami/redis×26.2.7-debian-11-r3unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

234 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumDLA-4097-1vim@2:8.2.2434-3+deb11u12:8.2.2434-3+deb11u2
MediumGHSA-hj9c-8jmm-8c52npm@8.5.58.11.0
MediumGHSA-2w6w-674q-4c4qhandlebars@4.7.74.7.9
MediumGHSA-fwr7-v2mv-hh25async@2.6.32.6.4
MediumGHSA-p575-cf9h-wv42mercurial@4.04.7.2
MediumGHSA-93q8-gq69-wqmwansi-regex@4.1.04.1.1
MediumDLA-2919-1python2.7@2.7.13-2+deb9u52.7.13-2+deb9u6
MediumGHSA-fjxv-7rqg-78g4form-data@2.3.22.5.4
MediumDSA-5271-1libxml2@2.9.10+dfsg-6.7+deb11u22.9.10+dfsg-6.7+deb11u3
MediumGHSA-wm7h-9275-46v2dicer@0.3.0no fix listed
MediumGHSA-5xpp-75jx-m839systeminformation@5.9.95.31.7
MediumGHSA-2g68-c3qc-8985werkzeug@2.0.33.0.3
MediumDSA-5216-1libxslt@1.1.34-41.1.34-4+deb11u1
MediumGHSA-2m57-hf25-phggsqlparse@0.4.20.5.0
MediumGHSA-4wf5-vphf-c2xcterser@5.13.05.14.2
MediumGHSA-4w2j-2rg4-5mjwvm2@3.9.53.9.10
MediumGHSA-hc6q-2mpp-qw7jwebpack@5.72.05.76.0
MediumGHSA-cx63-2mw6-8hw5setuptools@63.2.070.0.0
MediumDLA-3980-1python3.9@3.9.2-13.9.2-1+deb11u2
MediumGHSA-38jv-5279-wg99urllib3@1.26.92.6.3
MediumGHSA-74fj-2j2h-c42qfollow-redirects@1.14.51.14.7
MediumGHSA-7p7h-4mm5-852vtrim-newlines@2.0.03.0.1
MediumGHSA-crh6-fp67-6883@xmldom/xmldom@0.7.50.7.7
MediumGHSA-crh6-fp67-6883xmldom@0.5.0no fix listed
MediumGHSA-99p7-6v5w-7xg8vm2@3.9.53.10.2
MediumGHSA-c2qf-rxjj-qqgwsemver@6.3.06.3.1
MediumGHSA-43fc-jf86-j433axios@0.21.40.30.3
MediumDSA-5218-1zlib@1:1.2.11.dfsg-2+deb11u11:1.2.11.dfsg-2+deb11u2
MediumGHSA-qwmp-2cf2-g9g6wheel@0.37.10.38.1
MediumGHSA-r683-j2x4-v87gnode-fetch@2.6.12.6.7
MediumGHSA-v37h-5mfm-c47cvm2@3.9.53.11.0
MediumGHSA-r9hx-vwmv-q579setuptools@63.2.065.5.1
MediumDEBIAN-CVE-2022-27387mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumPYSEC-2025-49setuptools@63.2.078.1.1
MediumDEBIAN-CVE-2022-27378mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumDEBIAN-CVE-2021-46669mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumGHSA-9xv4-r2hf-26ghmercurial@4.04.6.1
MediumDEBIAN-CVE-2022-27377mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumDEBIAN-CVE-2022-2625postgresql-13@13.7-0+deb11u113.8-0+deb11u1
MediumGHSA-47x8-96vw-5wg6vm2@3.9.53.11.0
MediumGHSA-gp2j-mg4w-2rh5chrome-launcher@0.11.20.13.2
MediumDEBIAN-CVE-2022-27379mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumDEBIAN-CVE-2022-27380mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumDEBIAN-CVE-2022-27386mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumDEBIAN-CVE-2022-27447mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumDEBIAN-CVE-2022-32091mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumGHSA-hhq3-ff78-jv3gloader-utils@2.0.02.0.4
MediumGHSA-pq67-2wwv-3xjxtar-fs@2.0.02.1.2
MediumDEBIAN-CVE-2022-27449mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1
MediumDEBIAN-CVE-2022-27376mariadb-10.5@1:10.5.15-0+deb11u11:10.5.18-0+deb11u1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.7.4latest3 years ago72934997218,517

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/one-acre-fund/kobotoolbox.svg)](https://charts.stackradar.io/charts/one-acre-fund/kobotoolbox)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.