StackRadar

comac Helm chart

opencord

Scored 15 Sept 2026

An umbrella Helm chart for deploying COMAC on CORD platform

Latest 1.0.0 6 years agoApp version not verified against the render 0Artifact Hub

comac 1.0.0 deploys 9 container images: omecproject/kubernetes-synchronizer, xosproject/fabric-synchronizer, xosproject/onos-synchronizer, omecproject/progran-synchronizer and 5 more. Across the 4 measured, 4,802 findings61 critical, 249 high 3 on CISA KEV. The highest contribution is UBUNTU-CVE-2018-17456 in git 1:2.7.4-0ubuntu1.3, fixed in 1:2.7.4-0ubuntu1.5.

Radar Score

88,616612492,0112,478

4,802 findings over 4 of 9 images measured

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

9 images
ImageTagVulnerabilitiesRadar Score
omecproject/kubernetes-synchronizercomac-1.0.01756412,175
xosproject/fabric-synchronizer2.2.2unmeasured
xosproject/onos-synchronizer2.1.2unmeasured
omecproject/progran-synchronizercomac-1.0.0165554074723,776
xosproject/vrouter-synchronizer2.1.0unmeasured
omecproject/onos-progran1.0.02813287594338,889
docker.elastic.co/beats/filebeat-oss6.4.2unmeasured
xosproject/tosca-loader×21.3.1unmeasured
omecproject/mcord-synchronizercomac-1.0.0165554074723,776

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

2,283 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-r292-9mhp-454mtar@2.2.17.5.21
LowUBUNTU-CVE-2025-15468nodejs@8.9.4-1nodesource1no fix listed
LowUBUNTU-CVE-2026-41035rsync@3.1.1-3ubuntu1.23.1.1-3ubuntu1.3+esm5
LowUBUNTU-CVE-2026-53793rsync@3.1.1-3ubuntu1.2no fix listed
LowUBUNTU-CVE-2025-14512glib2.0@2.48.2-0ubuntu4.1no fix listed
LowUBUNTU-CVE-2026-48959perl@5.22.1-9ubuntu0.6no fix listed
LowUBUNTU-CVE-2020-35512dbus@1.10.6-1ubuntu3.31.10.6-1ubuntu3.6+esm1
LowUBUNTU-CVE-2026-5928glibc@2.23-0ubuntu10no fix listed
LowUBUNTU-CVE-2025-66863binutils@2.26.1-1ubuntu1~16.04.8no fix listed
LowUBUNTU-CVE-2025-66865binutils@2.26.1-1ubuntu1~16.04.8no fix listed
LowUBUNTU-CVE-2026-3833gnutls28@3.4.10-4ubuntu1.43.4.10-4ubuntu1.9+esm3
LowUBUNTU-CVE-2021-44534nodejs@8.9.4-1nodesource1no fix listed
LowGHSA-h75v-3vvj-5mfjjinja2@2.103.1.4
LowUBUNTU-CVE-2026-6478postgresql-9.5@9.5.14-0ubuntu0.16.04no fix listed
LowUBUNTU-CVE-2025-66862binutils@2.26.1-1ubuntu1~16.04.8no fix listed
LowGHSA-ph34-pc88-72gcnpm@5.6.05.7.1
LowUBUNTU-CVE-2026-6791glibc@2.23-0ubuntu10no fix listed
LowALPINE-CVE-2021-23839openssl@1.1.1a-r11.1.1j-r0
LowUBUNTU-CVE-2025-4207postgresql-9.5@9.5.14-0ubuntu0.16.04no fix listed
LowUBUNTU-CVE-2026-76641expat@2.1.0-7ubuntu0.16.04.3no fix listed
LowUBUNTU-CVE-2023-6597python3.5@3.5.2-2ubuntu0~16.04.53.5.2-2ubuntu0~16.04.13+esm13
LowUBUNTU-CVE-2026-6253curl@7.47.0-1ubuntu2.12no fix listed
LowGHSA-w5hq-g745-h8pquuid@3.1.011.1.1
LowUBUNTU-CVE-2020-27618glibc@2.23-0ubuntu102.23-0ubuntu11.3+esm3
LowGHSA-m4p7-r5rc-7g4jpyasn1@0.4.40.6.4
LowUBUNTU-CVE-2025-13601glib2.0@2.48.2-0ubuntu4.12.48.2-0ubuntu4.8+esm5
LowUBUNTU-CVE-2026-33412vim@2:7.4.1689-3ubuntu1.22:7.4.1689-3ubuntu1.5+esm30
LowGHSA-9hjg-9r4m-mvj7requests@2.18.42.32.4
LowUBUNTU-CVE-2024-47081requests@2.9.1-32.9.1-3ubuntu0.1+esm2
LowUBUNTU-CVE-2025-5222icu@55.1-7ubuntu0.4no fix listed
LowUBUNTU-CVE-2025-14087glib2.0@2.48.2-0ubuntu4.12.48.2-0ubuntu4.8+esm5
LowUBUNTU-CVE-2022-4415systemd@229-4ubuntu21.15229-4ubuntu21.31+esm3
LowUBUNTU-CVE-2026-41411vim@2:7.4.1689-3ubuntu1.22:7.4.1689-3ubuntu1.5+esm33
LowGHSA-8qvm-5x2c-j2w7protobuf@3.5.24.25.8
LowUBUNTU-CVE-2024-27281ruby2.3@2.3.1-2~16.04.52.3.1-2~ubuntu16.04.16+esm9
LowUBUNTU-CVE-2018-19211ncurses@6.0+20160213-1ubuntu16.0+20160213-1ubuntu1+esm2
LowUBUNTU-CVE-2026-13321bind9@1:9.10.3.dfsg.P4-8ubuntu1.11no fix listed
LowGHSA-8ppf-4f7h-5ppjpyasn1@0.4.40.6.4
LowGHSA-hm4w-wwcw-mr6rpyasn1@0.4.40.6.4
LowUBUNTU-CVE-2025-1178binutils@2.26.1-1ubuntu1~16.04.8no fix listed
LowGHSA-h5c8-rqwp-cp95jinja2@2.103.1.3
LowUBUNTU-CVE-2022-49043libxml2@2.9.3+dfsg1-1ubuntu0.62.9.3+dfsg1-1ubuntu0.7+esm7
LowUBUNTU-CVE-2020-14344libx11@2:1.6.3-1ubuntu2.12:1.6.3-1ubuntu2.2
LowGHSA-9ppj-qmqm-q256tar@2.2.17.5.11
LowGHSA-29vq-49wr-vm6xwerkzeug@0.14.13.1.6
LowUBUNTU-CVE-2023-1170vim@2:7.4.1689-3ubuntu1.22:7.4.1689-3ubuntu1.5+esm17
LowUBUNTU-CVE-2020-13776systemd@229-4ubuntu21.15no fix listed
LowUBUNTU-CVE-2026-58013glib2.0@2.48.2-0ubuntu4.1no fix listed
LowUBUNTU-CVE-2026-60002openssh@1:7.2p2-4ubuntu2.7no fix listed
LowUBUNTU-CVE-2023-26555ntp@1:4.2.8p4+dfsg-3ubuntu5.7no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.0latest6 years ago612492,0112,47888,616

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/opencord/comac.svg)](https://charts.stackradar.io/charts/opencord/comac)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.