StackRadar

codimd 0.1.12 Helm chart

phntom

Scored 14 Sept 2026

A CodiMD Helm chart for Kubernetes (scram-sha-256 compatible)

Version 0.1.12 3 years agoapp version 2.4.3 0Artifact Hub

codimd 0.1.12 deploys 3 container images: phntom/codimd, bitnami/bitnami-shell and bitnami/postgresql. Across the 1 measured, 495 findings0 critical, 10 high 1 on CISA KEV. The highest contribution is GHSA-phwq-j96m-2c2q in ejs 2.6.2, fixed in 3.1.7. Chart.yaml declares kubeVersion >=1.14.0-0; rendered for Kubernetes 1.14.0.

Radar Score

6,524010115370

495 findings over 1 of 3 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
phntom/codimd2.4.30101153706,524
bitnami/bitnami-shell11-debian-11-r46unmeasured
bitnami/postgresql15.0.0-debian-11-r1unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

495 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumGHSA-r683-j2x4-v87gnode-fetch@1.7.32.6.7
MediumGHSA-qq89-hq3f-393ptar@4.4.134.4.18
MediumGHSA-4rch-2fh8-94vwmysql2@2.0.13.9.7
MediumGHSA-3wqf-4x89-9g79bootstrap@3.1.13.4.0
MediumGHSA-hhq3-ff78-jv3gloader-utils@1.2.31.4.2
MediumGHSA-4p24-vmcr-4gqjbootstrap@3.1.13.4.0
MediumGHSA-3rfm-jhwj-7488loader-utils@1.2.31.4.2
MediumGHSA-rp65-9cf3-cjxrnth-check@1.0.22.0.1
MediumGHSA-7mvr-5x2g-wfc8bootstrap@3.1.13.4.0
MediumGHSA-ph58-4vrj-w6hrbootstrap@3.1.13.4.0
MediumGHSA-3mgp-fx93-9xv5bootstrap@3.1.13.4.0
MediumGHSA-hhqj-cfjx-vj25reveal.js@3.9.24.3.0
MediumGHSA-rrc9-gqf8-8rwg@aws-sdk/shared-ini-file-loader@0.1.0-preview.31.0.0-rc.9
MediumGHSA-f598-mfpv-gmfxsequelize@5.21.136.29.0
MediumGHSA-vqfx-gj96-3w95sequelize@5.21.136.28.1
MediumGHSA-f8q6-p94x-37v3minimatch@3.0.43.0.5
MediumDLA-3559-1libssh2@1.8.0-2.11.8.0-2.1+deb10u1
MediumGHSA-72xf-g2v4-qvf3tough-cookie@2.4.34.1.3
MediumGHSA-5955-9wpr-37jhtar@4.4.134.4.18
MediumGHSA-rc47-6667-2j5jhttp-cache-semantics@3.8.14.1.1
MediumGHSA-rf6f-7fwh-wjghflatted@2.0.13.4.2
MediumGO-2022-0433stdlib@go1.161.17.9
MediumGHSA-grv7-fg5c-xmjgbraces@3.0.23.0.3
MediumGHSA-3h5v-q93c-6h6qws@6.1.46.2.3
MediumDSA-4942-1systemd@241-7~deb10u7241-7~deb10u8
MediumGHSA-pjwm-pj3p-43mvaxios@0.21.40.32.0
MediumGHSA-r7qp-cfhv-p84wengine.io@3.3.23.6.1
MediumGHSA-43f8-2h32-f4cjhosted-git-info@2.8.82.8.9
MediumGHSA-jr5f-v2jv-69x6axios@0.21.40.30.0
MediumGHSA-95m3-7q98-8xr5sha.js@2.4.112.4.12
MediumGHSA-pfq8-rq6v-vf5mhtml-minifier@4.0.0no fix listed
MediumGHSA-5gfm-wpxj-wjgqnode-forge@0.7.61.3.2
MediumGHSA-x4jg-mjrx-434gnode-forge@0.7.61.3.0
MediumGHSA-4gxf-g5gf-22h4dottie@2.0.22.0.4
MediumGHSA-f23m-r3pf-42rhlodash-es@4.17.214.18.0
MediumGHSA-f23m-r3pf-42rhlodash@4.17.214.18.0
MediumGHSA-xxjr-mmjv-4gpglodash@4.17.214.17.23
MediumGHSA-xxjr-mmjv-4gpglodash-es@4.17.214.17.23
MediumGO-2021-0243stdlib@go1.161.15.14
MediumGO-2022-0273stdlib@go1.161.16.8
MediumGHSA-2v35-w6hq-6mfwxmldom@0.1.27no fix listed
MediumGHSA-8gh8-hqwg-xf34fast-json-patch@3.0.0-13.1.1
MediumGHSA-6fc8-4gx4-v693ws@6.1.46.2.2
MediumGHSA-67hx-6x53-jw92@babel/traverse@7.5.57.23.2
MediumGHSA-67hx-6x53-jw92babel-traverse@6.26.0no fix listed
MediumDLA-3530-1openssl@1.1.1n-0+deb10u31.1.1n-0+deb10u6
MediumGHSA-cqmj-92xf-r6r9socket.io-parser@3.3.33.3.4
MediumDLA-3213-1krb5@1.17-3+deb10u31.17-3+deb10u5
MediumGHSA-rf66-hmqf-q3fcselect2@3.5.2-browserify4.0.6
MediumDLA-3613-1curl@7.64.0-4+deb10u27.64.0-4+deb10u7

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.12latest3 years ago2.4.30101153706,524

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/phntom/codimd.svg)](https://charts.stackradar.io/charts/phntom/codimd)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.