StackRadar

flomesh-console Helm chart

openshift

Scored 14 Sept 2026

A Helm chart to install flomesh-console on Kubernetes

Latest 0.70.0-30-ubi8deploys tag 0.70.0-30 0Artifact Hub

flomesh-console 0.70.0-30-ubi8 deploys 2 container images: quay.io/flomesh/flomesh-console-ubi8 and quay.io/flomesh/pipy-repo-ubi8. Across them, 604 findings8 critical, 27 high 6 on CISA KEV. The highest contribution is RHSA-2024:2722 in glibc 2.28-211.el8, fixed in 0:2.28-236.el8_9.13. Chart.yaml declares kubeVersion >= 1.19; rendered for Kubernetes 1.19.0.

Radar Score

9,968827200369

604 findings over 2 of 2 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
quay.io/flomesh/flomesh-console-ubi80.70.0-304181462787,099
quay.io/flomesh/pipy-repo-ubi80.70.0-464954912,869

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

448 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-5p4m-2wfm-xmqjjs-yaml@4.1.04.3.1
LowRHSA-2026:55804nghttp2@1.33.0-3.el8_2.10:1.33.0-6.el8_10.3
LowGHSA-ghr5-ch3p-vcr6ejs@3.1.63.1.10
LowGHSA-4mjr-xmp4-gh2gqs@6.7.06.16.0
LowRHSA-2026:11349libxml2@2.9.7-15.el80:2.9.7-21.el8_10.4
LowRHSA-2026:56133attr@2.4.48-3.el80:2.6.0-1.el8_10
LowGHSA-xx6v-rp6x-q39caxios@0.26.10.31.1
LowRHSA-2026:56131pam@1.3.1-22.el80:1.3.1-40.el8_10
LowGHSA-f88m-g3jw-g9cjsharp@0.28.10.35.0
LowGHSA-898c-q2cr-xwhgaxios@0.26.10.32.0
LowGHSA-r7g4-qg5f-qqm2nodemailer@6.5.08.0.8
LowGHSA-848j-6mx2-7j84elliptic@6.5.4no fix listed
LowGHSA-x2rg-q646-7m2vkoa@2.13.32.16.1
LowGHSA-268h-hp4c-crq3nodemailer@6.5.08.0.9
LowGHSA-wqvq-jvpq-h66fnodemailer@6.5.08.0.9
LowGHSA-g8qq-57p8-ggw5sanitize-html@2.3.32.17.7
LowGHSA-vccv-cmxp-4j9hsanitize-html@2.3.32.17.5
LowGHSA-wmmp-3585-3rmpnodemailer@6.5.09.1.0
LowRHSA-2023:7112shadow-utils@2:4.6-17.el82:4.6-19.el8
LowGHSA-w7fw-mjwx-w883qs@6.7.06.14.2
LowGHSA-9q82-xgwf-vj6hapollo-server-core@2.25.2no fix listed
LowGHSA-mx8g-39q3-5c79webpack-dev-server@3.11.25.2.5
LowGHSA-6rw7-vpxm-498pqs@6.7.06.14.1
LowGHSA-v422-hmwv-36x6body-parser@1.19.01.20.6
LowGHSA-jp4c-xjxw-mgf9pip@9.0.326.1
LowGHSA-8m3c-c648-2xjjnodemailer@6.5.09.1.1
LowGHSA-9ggv-8w38-r7pmtypeorm@0.2.390.3.29
LowGHSA-v6h2-p8h4-qcjwbrace-expansion@1.1.111.1.12
LowGHSA-64g7-mvw6-v9qjshelljs@0.8.40.8.5
LowGHSA-v78c-4p63-2j6cmoment-timezone@0.5.330.5.35
LowRHSA-2026:61248libxml2@2.9.7-15.el80:2.9.7-21.el8_10.7
LowGHSA-58qw-9mgm-455vpip@9.0.326.1
LowGHSA-c7w3-x93f-qmm8nodemailer@6.5.08.0.4
LowGHSA-78xj-cgh5-2h22ip@1.1.51.1.9
LowRHBA-2026:47115coreutils@8.30-13.el80:8.30-20.el8_10
LowRHSA-2025:12980glibc@2.28-211.el80:2.28-251.el8_10.25
LowGHSA-xhjh-pmcv-23jwaxios@0.26.10.31.1
LowGHSA-jgmv-j7ww-jx2xkoa@2.13.32.16.2
LowGHSA-76c9-3jph-rj3qon-headers@1.0.21.1.0
LowGHSA-pxg6-pf52-xh8xcookie@0.4.00.7.0
LowGHSA-52f5-9888-hmc6tmp@0.2.10.2.4
LowRHSA-2026:36734libxml2@2.9.7-15.el80:2.9.7-21.el8_10.6
LowGHSA-4x5r-pxfx-6jf8@babel/core@7.15.57.29.6
LowGHSA-6vgw-5pg2-w6jppip@9.0.326.0
LowGHSA-56x4-j7p9-fcf9moment-timezone@0.5.330.5.35
LowGHSA-5rrq-pxf6-6jx5node-forge@0.10.01.0.0
LowGHSA-gf8q-jrpm-jvxqnode-forge@0.10.01.0.0
LowGHSA-j5g3-5c8r-7qfxapollo-server-core@2.25.22.26.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.70.0-30-ubi8latest0.70.0-308272003699,968

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/openshift/flomesh-console.svg)](https://charts.stackradar.io/charts/openshift/flomesh-console)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.