stk-fluent-bit-loki-s3 0.2.1 Helm chart
paxtecnologiaScored 16 Sept 2026
A Helm chart for Kubernetes
Version 0.2.1 yesterdaydeploys tag 5.1.2 0Artifact Hub
stk-fluent-bit-loki-s3 0.2.1 deploys 6 container images: cr.fluentbit.io/fluent/fluent-bit, nginxinc/nginx-unprivileged, grafana/loki, kiwigrid/k8s-sidecar and 2 more. Across the 5 measured, 337 findings — 0 critical, 2 high. The highest contribution is ALPINE-CVE-2025-15467 in openssl 3.5.4-r0, fixed in 3.5.5-r0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| cr.fluentbit.io/ | 5.1.2 | — | unmeasured |
| nginxinc/ | 1.29-alpine | 002168 | 1,086 |
| grafana/ | 3.6.11 | 00656 | 547 |
| kiwigrid/ | 2.5.0 | 012050 | 879 |
| library/ | 1.6.39-alpine | 011829 | 676 |
| prom/ | v0.15.4 | 00562 | 561 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GO-2026-4971 | stdlib | 1.25.10 |
| Low | ALPINE-CVE-2026-50219 | expat | 2.8.2-r0 |
| Low | ALPINE-CVE-2026-56409 | expat | 2.8.2-r0 |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | ALPINE-CVE-2026-27171 | zlib | 1.3.2-r0 |
| Low | GO-2026-5038 | stdlib | 1.25.11 |
| Low | GO-2026-5942 | golang.org/ | 0.56.0 |
| Low | GO-2026-5942 | stdlib | 1.26.6 |
| Low | ALPINE-CVE-2026-56132 | expat | 2.8.2-r0 |
| Low | GO-2026-4440 | golang.org/ | 0.45.0 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GO-2026-4441 | golang.org/ | 0.45.0 |
| Low | ALPINE-CVE-2026-40930 | libpng | 1.6.58-r1 |
| Low | ALPINE-CVE-2025-15469 | openssl | 3.5.5-r0 |
| Low | GO-2026-5970 | golang.org/ | 0.39.0 |
| Low | PYSEC-2026-2275 | requests | 2.33.0 |
| Low | ALPINE-CVE-2026-42768 | openssl | 3.5.7-r0 |
| Low | GO-2025-4155 | stdlib | 1.24.11 |
| Low | ALPINE-CVE-2025-14017 | curl | 8.18.0-r0 |
| Low | ALPINE-CVE-2026-6042 | musl | 1.2.5-r22 |
| Low | GO-2026-6107 | go.etcd.io/ | 3.5.33 |
| Low | GO-2026-4976 | stdlib | 1.25.10 |
| Low | ALPINE-CVE-2026-22795 | openssl | 3.5.5-r0 |
| Low | GO-2026-5856 | stdlib | 1.25.12 |
| Low | GO-2026-6355 | golang.org/ | 0.56.0 |
| Low | GO-2026-4980 | stdlib | 1.25.10 |
| Low | ALPINE-CVE-2026-42770 | openssl | 3.5.7-r0 |
| Low | GO-2026-5039 | stdlib | 1.25.11 |
| Low | GO-2026-4946 | stdlib | 1.25.9 |
| Low | GO-2022-0646 | github.com/ | no fix listed |
| Low | GO-2026-5158 | go.opentelemetry.io/ | 1.42.0 |
| Low | ALPINE-CVE-2026-56131 | expat | 2.8.2-r0 |
| Low | GO-2026-4603 | stdlib | 1.25.8 |
| Low | GO-2026-6303 | golang.org/ | 0.55.0 |
| Low | GHSA-jp4c-xjxw-mgf9 | pip | 26.1 |
| Low | GO-2026-6354 | golang.org/ | 0.56.0 |
| Low | GO-2026-4982 | stdlib | 1.25.10 |
| Low | GO-2026-6091 | stdlib | 1.25.13 |
| Low | GO-2026-4864 | stdlib | 1.25.9 |
| Low | GO-2026-4865 | stdlib | 1.25.9 |
| Low | GO-2026-4869 | stdlib | 1.25.9 |
| Low | GO-2026-4340 | stdlib | 1.24.12 |
| Low | GO-2025-4175 | stdlib | 1.24.11 |
| Low | ALPINE-CVE-2025-68160 | openssl | 3.5.5-r0 |
| Low | GO-2026-5025 | golang.org/ | 0.55.0 |
| Low | GO-2026-4970 | stdlib | 1.25.12 |
| Low | GO-2022-0635 | github.com/ | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.2.1latest | yesterday | 5.1.2 | 0270265 | 3,749 |
| 0.2.0 | 18 days ago | 5.1.1 | 0270265 | 3,749 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.