openebs 4.6.1 Helm chart
openebsOfficialVerified publisherScored 14 Sept 2026
Containerized Attached Storage for Kubernetes
Version 4.6.1 3 days agodeploys tag v1.8.1 41Artifact Hub
openebs 4.6.1 deploys 35 container images: grafana/alloy, quay.io/prometheus-operator/prometheus-config-reloader, registry.k8s.io/sig-storage/csi-node-driver-registrar, openebs/lvm-driver and 29 more. Across them, 2,651 findings — 1 critical, 20 high — 2 on CISA KEV. The highest contribution is ALPINE-CVE-2025-6965 in sqlite 3.48.0-r0, fixed in 3.48.0-r3.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | ALPINE-CVE-2025-6965 | sqlite | 3.48.0-r3 |
| High | ALPINE-CVE-2025-15467 | openssl | 3.5.5-r0 |
| High | UBUNTU-CVE-2025-15467 | openssl | 3.0.13-0ubuntu3.7 |
| High | ALPINE-CVE-2024-6119 | openssl | 3.0.15-r0 |
| High | ALPINE-CVE-2023-0286 | openssl | 3.0.8-r0 |
| High | RHSA-2025:1346KEV | gcc | 0:11.5.0-5.el9_5 |
| High | ALPINE-CVE-2023-2650 | openssl | 3.0.9-r0 |
| High | GHSA-45x7-px36-x8w8 | golang.org/ | 0.17.0 |
| High | ALPINE-CVE-2024-2511 | openssl | 3.0.12-r5 |
| High | ALPINE-CVE-2022-4450 | openssl | 3.0.8-r0 |
| Medium | GO-2024-2687 | stdlib | 1.21.9 |
| Medium | GHSA-5cgq-3rg8-m6cv | golang.org/ | 0.52.0 |
| Medium | ALPINE-CVE-2024-5535 | openssl | 3.0.14-r0 |
| Medium | ALPINE-CVE-2022-4304 | openssl | 3.0.8-r0 |
| Medium | DEBIAN-CVE-2019-1010022 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2023-45853 | zlib | no fix listed |
| Medium | ALPINE-CVE-2022-48174 | busybox | 1.36.1-r1 |
| Medium | ALPINE-CVE-2026-45447 | openssl | 3.5.7-r0 |
| Medium | UBUNTU-CVE-2026-45447 | openssl | 3.0.13-0ubuntu3.11 |
| Medium | DEBIAN-CVE-2018-20796 | glibc | no fix listed |
| Medium | GHSA-v778-237x-gjrc | golang.org/ | 0.31.0 |
| Medium | DEBIAN-CVE-2019-1010023 | glibc | no fix listed |
| Medium | ALPINE-CVE-2023-0215 | openssl | 3.0.8-r0 |
| Medium | GHSA-wg47-6jq2-q2hh | github.com/ | 0.0.0-20250403145552-8c70975283f9 |
| Medium | GHSA-m4jx-6526-vvhm | github.com/ | 2.2.0 |
| Medium | ALPINE-CVE-2023-0464 | openssl | 3.0.8-r1 |
| Medium | ALPINE-CVE-2023-5363 | openssl | 3.0.12-r0 |
| Medium | GHSA-38jv-5279-wg99 | urllib3 | 2.6.3 |
| Medium | ALPINE-CVE-2024-4741 | openssl | 3.0.14-r0 |
| Medium | GHSA-p77j-4mvh-x3m3 | google.golang.org/ | 1.79.3 |
| Medium | ALPINE-CVE-2026-19931 | curl | 8.22.0-r0 |
| Medium | ALPINE-CVE-2025-11187 | openssl | 3.5.5-r0 |
| Medium | PYSEC-2025-49 | setuptools | 78.1.1 |
| Medium | DEBIAN-CVE-2019-9192 | glibc | no fix listed |
| Medium | ALPINE-CVE-2026-9079 | curl | 8.22.0-r0 |
| Medium | DEBIAN-CVE-2026-42010 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | ALPINE-CVE-2023-3446 | openssl | 3.0.9-r3 |
| Medium | UBUNTU-CVE-2016-20013 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2023-31486 | perl | no fix listed |
| Medium | GHSA-hmm9-r2m2-qg9w | github.com/ | 2.1.9 |
| Medium | GHSA-2c64-vj8g-vwrq | github.com/ | 2.1.9 |
| Medium | ALPINE-CVE-2026-63073 | openssl | 3.5.8-r0 |
| Medium | ALPINE-CVE-2026-10536 | curl | 8.22.0-r0 |
| Medium | DEBIAN-CVE-2023-31484 | perl | 5.36.0-7+deb12u3 |
| Medium | ALPINE-CVE-2025-3277 | sqlite | 3.48.0-r1 |
| Medium | ALPINE-CVE-2023-0216 | openssl | 3.0.8-r0 |
| Medium | ALPINE-CVE-2023-0217 | openssl | 3.0.8-r0 |
| Medium | ALPINE-CVE-2023-0401 | openssl | 3.0.8-r0 |
| Medium | GHSA-jp4j-47f9-2vc3 | github.com/ | 2.2.0 |
| Medium | DEBIAN-CVE-2018-6829 | libgcrypt20 | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 4.6.1latest | 3 days ago | v1.8.1 | 1202432,387 | 23,894 |
| 4.6.0 | 18 days ago | 4.6.0 | 1202482,406 | 24,181 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.