StackRadar

nocodb 0.4.6 Helm chart

one-acre-fundVerified publisher

Scored 14 Sept 2026

A Helm chart for Kubernetes

Version 0.4.6 6 months agoapp version 0.258.0 0Artifact Hub

nocodb 0.4.6 deploys 3 container images: library/postgres, library/busybox and nocodb/nocodb. Across them, 420 findings0 critical, 2 high. The highest contribution is GHSA-4v7x-pqxf-cx7m in golang.org/x/net v0.19.0, fixed in 0.23.0.

Radar Score

4,2190253365

420 findings over 3 of 3 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
library/postgresalpine00861634
library/busybox×2latest00000
nocodb/nocodb0.258.002453043,585

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

374 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-vghf-hv5q-vc2gvalidator@13.12.013.15.22
LowGHSA-2m8v-j782-fhvrsocket.io-parser@4.2.44.2.7
LowGHSA-8qq5-rm4j-mr97tar@6.2.17.5.3
LowGHSA-776f-qx25-q3ccxml2js@0.1.140.5.0
LowGHSA-fvcv-3m26-pcqxaxios@1.7.71.15.0
LowGHSA-45rp-9p97-h852nocodb@0.258.00.301.3
LowALPINE-CVE-2026-63075openssl@3.5.7-r03.5.8-r0
LowGHSA-rcmh-qjqh-p98vnodemailer@6.9.167.0.11
LowGHSA-v39h-62p7-jpjcfast-uri@3.0.33.1.2
LowGHSA-q4h4-gmj2-qvw2golang.org/x/crypto@v0.17.00.52.0
LowGHSA-23c5-xmqv-rm74minimatch@3.1.23.1.4
LowGHSA-wh4c-j3r5-mjhp@xmldom/xmldom@0.8.100.8.12
LowGHSA-x4fp-j954-r2f4@xmldom/xmldom@0.8.100.8.15
LowGHSA-387m-j3p9-3phpnocodb@0.258.00.301.3
LowGHSA-w879-237q-wc7rgolang.org/x/crypto@v0.17.00.52.0
LowGHSA-mh99-v99m-4gvgbrace-expansion@1.1.111.1.17
LowGHSA-v2hh-gcrm-f6hxfast-uri@3.0.33.1.4
LowGHSA-8x88-c5mf-7j5wtar@6.2.17.5.18
LowALPINE-CVE-2026-82208curl@8.21.0-r08.22.0-r0
LowGHSA-mm7p-fcc7-pg87nodemailer@6.9.167.0.7
LowGHSA-c2c7-rcm5-vvqjpicomatch@2.3.12.3.2
LowGHSA-mwp4-54f8-5fhrip-address@9.0.510.3.1
LowGHSA-2g4f-4pwh-qvx6ajv@8.17.18.18.0
LowALPINE-CVE-2026-75803openssl@3.5.7-r03.5.8-r0
LowGHSA-6chq-wfr3-2hj9axios@1.7.71.15.1
LowGHSA-p8p7-x288-28g6request@2.88.0no fix listed
LowGHSA-r6q2-hw4h-h46wtar@6.2.17.5.4
LowGHSA-4c8g-83qw-93j6fast-uri@3.0.33.1.3
LowGHSA-3w6x-2g7m-8v23axios@1.7.71.15.2
LowGHSA-jf3g-4gwg-4h66nocodb@0.258.02026.05.1
LowGHSA-xjpj-3mr7-gcpfhandlebars@4.7.84.7.9
LowGHSA-r292-9mhp-454mtar@6.2.17.5.21
LowGHSA-r4q5-vmmm-2653follow-redirects@1.15.91.16.0
LowGHSA-fj3w-jwp8-x2g3fast-xml-parser@4.5.04.5.4
LowGHSA-pw25-c82r-75mmrequest-filtering-agent@1.1.22.0.0
LowGHSA-w5hq-g745-h8pquuid@3.4.011.1.1
LowALPINE-CVE-2025-5222icu@74.1-r074.1-r1
LowGHSA-96fh-m4r8-6v9vnocodb@0.258.02026.05.1
LowGHSA-qhxg-623c-cfjmnocodb@0.258.02026.05.1
LowGHSA-9ppj-qmqm-q256tar@6.2.17.5.11
LowGHSA-m5vv-6r4h-3vj9@azure/identity@3.4.24.2.1
LowGO-2026-4341stdlib@go1.21.101.24.12
LowGHSA-4w6r-5c2j-qf5fnocodb@0.258.02026.04.1
LowGHSA-9wgh-m22w-9xj8nocodb@0.258.02026.05.1
LowGHSA-hmcr-rmjq-47qrnocodb@0.258.0no fix listed
LowGHSA-3p68-rc4w-qgx5axios@1.7.71.15.0
LowGHSA-jqh4-m9w3-8hp9axios@1.7.71.18.0
LowGO-2024-2887stdlib@go1.21.101.21.11
LowGHSA-wc9g-mqfw-jrwmmulter@1.4.4-lts.12.3.0
LowGHSA-xwg4-73v4-xw9wnanoid@3.3.73.3.12

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.4.6latest6 months ago0.258.002533654,219

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/one-acre-fund/nocodb.svg)](https://charts.stackradar.io/charts/one-acre-fund/nocodb)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.