oes Helm chart
opsmxVerified publisherScored 15 Sept 2026
ISD and Spinnaker with cve v1.33.3 SAML2 Configuration
Latest 4.0.32 2 months agodeploys tag RELEASE.2020-12-03T05-49-24Z 2Artifact Hub
oes 4.0.32 deploys 25 container images: minio/minio, quay.io/opsmxpublic/busybox, osixia/openldap, quay.io/opsmxpublic/pgchecker and 19 more. Across the 24 measured, 6,212 findings — 57 critical, 404 high — 23 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 10.1.16, fixed in 10.1.35.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-293q-567p-wmwq | spring-security-web | no fix listed |
| Low | GHSA-q3v6-hm2v-pw99 | spring-security-core | 6.0.14 |
| Low | UBUNTU-CVE-2026-22013 | openjdk-8 | 8u492-ga~us2-0ubuntu1~16.04.1 |
| Low | UBUNTU-CVE-2026-70907 | openjdk-8 | no fix listed |
| Low | ALPINE-CVE-2026-45446 | openssl | 3.5.7-r0 |
| Low | UBUNTU-CVE-2026-45446 | openssl | 3.0.13-0ubuntu3.11 |
| Low | UBUNTU-CVE-2026-4360 | python3.12 | 3.12.3-1ubuntu0.17 |
| Low | UBUNTU-CVE-2024-21210 | openjdk-8 | 8u432-ga~us1-0ubuntu2~16.04.4 |
| Low | GO-2024-2961 | golang.org/ | 0.0.0-20220525230936-793ad666bf5e |
| Low | UBUNTU-CVE-2025-8177 | tiff | 4.0.6-1ubuntu0.8+esm18 |
| Low | UBUNTU-CVE-2026-3446 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2020-21047 | elfutils | 0.165-3ubuntu1.2+esm1 |
| Low | ALPINE-CVE-2023-45803 | py3-urllib3 | 1.26.18-r0 |
| Low | GHSA-g4mx-q9vg-27p4 | urllib3 | 1.26.18 |
| Low | GO-2025-4116 | golang.org/ | 0.43.0 |
| Low | GHSA-25qh-j22f-pwp8 | logback-core | 1.5.19 |
| Low | RHSA-2026:55804 | nghttp2 | 0:1.33.0-6.el8_10.3 |
| Low | GO-2026-4870 | stdlib | 1.25.9 |
| Low | GO-2022-0532 | stdlib | 1.17.11 |
| Low | UBUNTU-CVE-2026-39956 | jq | 1.5+dfsg-1ubuntu0.1+esm4 |
| Low | GO-2025-4009 | stdlib | 1.24.8 |
| Low | UBUNTU-CVE-2026-86138 | libxml2 | no fix listed |
| Low | GO-2026-4947 | stdlib | 1.25.9 |
| Low | UBUNTU-CVE-2026-2297 | python3.12 | 3.12.3-1ubuntu0.15 |
| Low | UBUNTU-CVE-2021-20193 | tar | 1.28-2.1ubuntu0.2+esm1 |
| Low | GHSA-fq3f-m5qm-99f5 | opentelemetry-javaagent | 2.27.0 |
| Low | UBUNTU-CVE-2026-86143 | libxml2 | no fix listed |
| Low | ALPINE-CVE-2026-33947 | jq | 1.8.2-r0 |
| Low | GO-2025-4006 | stdlib | 1.24.8 |
| Low | ALPINE-CVE-2026-33948 | jq | 1.8.2-r0 |
| Low | UBUNTU-CVE-2026-33948 | jq | 1.5+dfsg-1ubuntu0.1+esm4 |
| Low | UBUNTU-CVE-2025-29088 | sqlite3 | 3.11.0-1ubuntu1.5+esm3 |
| Low | UBUNTU-CVE-2024-21094 | openjdk-8 | 8u432-ga~us1-0ubuntu2~16.04.4 |
| Low | UBUNTU-CVE-2026-18090 | gdk-pixbuf | no fix listed |
| Low | GO-2026-5037 | stdlib | 1.25.11 |
| Low | UBUNTU-CVE-2018-16866 | systemd | 229-4ubuntu21.15 |
| Low | UBUNTU-CVE-2026-40225 | systemd | 255.4-1ubuntu8.14 |
| Low | UBUNTU-CVE-2026-43894 | jq | no fix listed |
| Low | GO-2026-4971 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-3832 | gnutls28 | 3.8.3-1.1ubuntu3.6 |
| Low | UBUNTU-CVE-2025-13837 | python3.12 | 3.12.3-1ubuntu0.11 |
| Low | RHSA-2026:11349 | libxml2 | 0:2.9.7-21.el8_10.4 |
| Low | UBUNTU-CVE-2025-9714 | libxml2 | 2.9.3+dfsg1-1ubuntu0.7+esm10 |
| Low | GO-2025-3495 | github.com/ | no fix listed |
| Low | UBUNTU-CVE-2026-56409 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-43896 | jq | no fix listed |
| Low | RHSA-2026:56133 | attr | 0:2.6.0-1.el8_10 |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 4.0.32latest | 2 months ago | RELEASE.2020-12-03T05-49-24Z | 574042,0693,678 | 107,899 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.