openvscode-server 2.7.40 Helm chart
openvscode-server-helmVerified publisherScored 27 Sept 2026
A Helm chart for Kubernetes
Version 2.7.40 yesterdayapp version 1.139.1 0Artifact Hub
openvscode-server 2.7.40 deploys 2 container images: antiantiops/vscode-browser-docker and library/docker. Across them, 340 findings — 3 critical, 9 high — 1 on CISA KEV. The highest contribution is ALPINE-CVE-2023-38408 in openssh 9.1_p1-r2, fixed in 9.1_p1-r4.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| antiantiops/ | 1.139.1 | 001185 | 871 |
| library/ | 23.0.1-dind | 3949183 | 3,240 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2019-20633 | patch | no fix listed |
| Low | ALPINE-CVE-2024-4603 | openssl | 3.0.13-r0 |
| Low | GHSA-3p65-76g6-3w7r | github.com/ | 3.1.0 |
| Low | GHSA-p436-gjf2-799p | github.com/ | 29.2.0 |
| Low | GHSA-pxq6-2prw-chj9 | github.com/ | no fix listed |
| Low | UBUNTU-CVE-2026-17084 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-93990 | expat | no fix listed |
| Low | GHSA-mq39-4gv4-mvpx | github.com/ | 23.0.11 |
| Low | GHSA-vpvm-3wq2-2wvm | github.com/ | 1.1.5 |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | GO-2023-1703 | stdlib | 1.19.8 |
| Low | GHSA-9p26-698r-w4hx | github.com/ | 0.12.5 |
| Low | UBUNTU-CVE-2026-42015 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
| Low | UBUNTU-CVE-2018-1000021 | git | no fix listed |
| Low | UBUNTU-CVE-2026-19672 | python3.12 | no fix listed |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
| Low | GO-2024-2887 | stdlib | 1.21.11 |
| Low | GO-2023-1704 | stdlib | 1.19.8 |
| Low | ALPINE-CVE-2025-26519 | musl | 1.2.3-r6 |
| Low | UBUNTU-CVE-2016-2781 | coreutils | no fix listed |
| Low | UBUNTU-CVE-2021-45261 | patch | no fix listed |
| Low | GHSA-pg57-6jwg-q645 | github.com/ | 1.7.36 |
| Low | UBUNTU-CVE-2026-82049 | python3.12 | no fix listed |
| Low | GO-2023-1568 | stdlib | 1.19.6 |
| Low | UBUNTU-CVE-2026-51400 | vim | no fix listed |
| Low | UBUNTU-CVE-2026-84366 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-76642 | util-linux | no fix listed |
| Low | GO-2023-1987 | stdlib | 1.19.12 |
| Low | GO-2023-1752 | stdlib | 1.19.9 |
| Low | UBUNTU-CVE-2026-87910 | python3.12 | no fix listed |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | UBUNTU-CVE-2026-15806 | python3.12 | no fix listed |
| Low | GO-2023-1705 | stdlib | 1.19.8 |
| Low | GO-2023-1878 | stdlib | 1.19.11 |
| Low | ALPINE-CVE-2023-2975 | openssl | 3.0.9-r2 |
| Low | UBUNTU-CVE-2026-51401 | vim | no fix listed |
| Low | UBUNTU-CVE-2026-78408 | util-linux | no fix listed |
| Low | GO-2024-2963 | stdlib | 1.21.12 |
| Low | GO-2023-1702 | stdlib | 1.19.8 |
| Low | GHSA-6pjf-3r9x-m592 | github.com/ | 3.1.1 |
| Low | UBUNTU-CVE-2025-15366 | python3.12 | no fix listed |
| Low | ALPINE-CVE-2026-22796 | openssl | 3.0.19-r0 |
| Low | GHSA-xw73-rw38-6vjc | github.com/ | 24.0.9 |
| Low | UBUNTU-CVE-2025-12781 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-88806 | libx11 | no fix listed |
| Low | GHSA-j5w8-q4qc-rx2x | golang.org/ | 0.45.0 |
| Low | GHSA-hmfx-3pcx-653p | github.com/ | 1.6.18 |
| Low | GO-2023-2375 | stdlib | 1.20.0 |
| Low | GHSA-vvgc-356p-c3xw | golang.org/ | 0.38.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.7.40latest | yesterday | 1.139.1 | 3960268 | 4,111 |
| 2.7.39 | 3 days ago | 1.139.0 | 3961282 | 4,260 |
| 2.7.38 | 10 days ago | 1.138.0 | 3961289 | 4,285 |
| 2.7.37 | 17 days ago | 1.137.0 | 3961295 | 4,329 |
| 2.7.36 | 18 days ago | 1.136.2 | 3959310 | 4,309 |
| 2.7.35 | 23 days ago | 1.136.1 | 3959310 | 4,309 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.