comac-platform Helm chart
opencordScored 14 Sept 2026
A Helm chart to install the COMAC profile on top of the CORD-Platform
Latest 0.0.17 6 years agodeploys tag comac-1.0.0 0Artifact Hub
comac-platform 0.0.17 deploys 11 container images: omecproject/kubernetes-synchronizer, xosproject/att-workflow-driver-synchronizer, xosproject/fabric-crossconnect-synchronizer, xosproject/fabric-synchronizer and 7 more. Across the 3 measured, 1,472 findings — 18 critical, 63 high. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.0.2g-1ubuntu4.14, fixed in 1.0.2g-1ubuntu4.20+esm5.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| omecproject/ | comac-1.0.0 | 175641 | 2,175 |
| xosproject/ | 1.2.3 | — | unmeasured |
| xosproject/ | 1.2.2 | — | unmeasured |
| xosproject/ | 2.2.2 | — | unmeasured |
| xosproject/ | 2.1.2 | — | unmeasured |
| xosproject/ | 1.3.2 | — | unmeasured |
| opencord/ | 1.1.0 | 0254 | 283 |
| xosproject/ | 2.2.4 | — | unmeasured |
| xosproject/ | 2.1.0 | — | unmeasured |
| xosproject/ | 1.3.1 | — | unmeasured |
| omecproject/ | comac-1.0.0 | 1754540744 | 23,753 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Critical findings
Critical: findings whose contribution to the Radar Score is 70–100. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | UBUNTU-CVE-2022-2068 | openssl | 1.0.2g-1ubuntu4.20+esm5 |
| Critical | UBUNTU-CVE-2022-1292 | openssl | 1.0.2g-1ubuntu4.20+esm3 |
| Critical | UBUNTU-CVE-2023-38408 | openssh | 1:7.2p2-4ubuntu2.10+esm3 |
| Critical | GHSA-hmr4-m2h5-33qx | django | 1.11.28 |
| Critical | UBUNTU-CVE-2022-29155 | openldap | 2.4.42+dfsg-2ubuntu3.13+esm1 |
| Critical | GHSA-vfq6-hq5r-27r6 | django | 1.11.27 |
| Critical | UBUNTU-CVE-2025-1094 | postgresql-9.5 | no fix listed |
| Critical | GHSA-6r97-cj55-9hrq | django | 1.11.23 |
| Critical | UBUNTU-CVE-2021-25216 | bind9 | 1:9.10.3.dfsg.P4-8ubuntu1.19 |
| Critical | ALPINE-CVE-2019-8457 | sqlite | 3.28.0-r0 |
| Critical | UBUNTU-CVE-2019-8457 | sqlite3 | 3.11.0-1ubuntu1.2 |
| Critical | UBUNTU-CVE-2019-8457 | db5.3 | 5.3.28-11ubuntu0.2 |
| Critical | UBUNTU-CVE-2023-50387 | bind9 | 1:9.10.3.dfsg.P4-8ubuntu1.19+esm8 |
| Critical | UBUNTU-CVE-2020-36221 | openldap | 2.4.42+dfsg-2ubuntu3.12 |
| Critical | UBUNTU-CVE-2020-36228 | openldap | 2.4.42+dfsg-2ubuntu3.12 |
| Critical | UBUNTU-CVE-2025-6965 | sqlite3 | 3.11.0-1ubuntu1.5+esm3 |
| Critical | UBUNTU-CVE-2023-50868 | bind9 | 1:9.10.3.dfsg.P4-8ubuntu1.19+esm8 |
| Critical | UBUNTU-CVE-2024-2961 | glibc | 2.23-0ubuntu11.3+esm6 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.0.17latest | 6 years ago | comac-1.0.0 | 1863601789 | 26,211 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.