cf-operator Helm chart
quarksScored 14 Sept 2026
A Helm chart for cf-operator, the k8s operator for deploying BOSH releases
Latest 2.3.0+0.g27a91cdf 6 years agodeploys tag v0.0.0-0.g70ae34b 0Artifact Hub
cf-operator 2.3.0+0.g27a91cdf deploys 2 container images: cfcontainerization/quarks-job and cfcontainerization/cf-operator. Across them, 964 findings — 0 critical, 18 high — 12 on CISA KEV. The highest contribution is GHSA-45x7-px36-x8w8 in golang.org/x/crypto v0.0.0-20190820162420-60c769a6c586, fixed in 0.0.0-20231218163308-9d2ee975ef9f.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| cfcontainerization/ | v0.0.0-0.g70ae34b | 0991382 | 5,971 |
| cfcontainerization/ | v2.3.0-0.g27a91cdf | 0991382 | 5,971 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | openSUSE-SU-2025:15411-1 | gnutls | 3.8.10-1.1 |
| Low | openSUSE-SU-2025:14835-1 | gnutls | 3.8.9-1.1 |
| Low | openSUSE-SU-2024:13062-1 | nghttp2 | 1.55.1-1.1 |
| Low | openSUSE-SU-2024:13444-1 | gnutls | 3.8.2-1.1 |
| Low | openSUSE-SU-2020:0908-1 | curl | 7.60.0-lp151.5.12.1 |
| Low | GO-2023-2375 | stdlib | 1.20.0 |
| Low | GHSA-vvgc-356p-c3xw | golang.org/ | 0.38.0 |
| Low | GO-2023-1569 | stdlib | 1.19.6 |
| Low | openSUSE-SU-2024:14241-1 | libxml2 | 2.12.9-1.1 |
| Low | openSUSE-SU-2024:13991-1 | glibc | 2.39-7.1 |
| Low | GO-2023-2382 | stdlib | 1.20.12 |
| Low | GO-2022-1143 | stdlib | 1.18.9 |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
| Low | openSUSE-SU-2025:14830-1 | libxml2 | 2.13.6-1.1 |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | GO-2024-2599 | stdlib | 1.21.8 |
| Low | openSUSE-SU-2026:11696-1 | curl | 8.22.0-1.1 |
| Low | openSUSE-SU-2026:10169-1 | p11-kit | 0.26.2-1.1 |
| Low | openSUSE-SU-2026:10033-1 | libtasn1 | 4.21.0-1.1 |
| Low | GO-2022-1038 | stdlib | 1.18.7 |
| Low | openSUSE-SU-2024:13921-1 | krb5 | 1.21.2-3.1 |
| Low | GO-2024-3106 | stdlib | 1.22.7 |
| Low | openSUSE-SU-2025:15239-1 | libgcrypt | 1.11.1-2.1 |
| Low | GO-2023-1570 | stdlib | 1.19.6 |
| Low | openSUSE-SU-2025:14756-1 | libtasn1 | 4.20.0-1.1 |
| Low | openSUSE-SU-2024:13637-1 | curl | 8.6.0-1.1 |
| Low | openSUSE-SU-2024:12877-1 | libxml2 | 2.10.4-1.1 |
| Low | GO-2022-0531 | stdlib | 1.17.11 |
| Low | GO-2024-2600 | stdlib | 1.21.8 |
| Low | openSUSE-SU-2026:11230-1 | curl | 8.21.0-1.1 |
| Low | GO-2024-2609 | stdlib | 1.21.8 |
| Low | GO-2024-3107 | stdlib | 1.22.7 |
| Low | GO-2023-1751 | stdlib | 1.19.9 |
| Low | GO-2023-1753 | stdlib | 1.19.9 |
| Low | openSUSE-SU-2020:0166-1 | e2fsprogs | 1.43.8-lp151.5.12.1 |
| Low | openSUSE-SU-2024:14239-1 | patch | 2.7.6-8.1 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | GO-2023-2041 | stdlib | 1.20.8 |
| Low | GO-2023-2043 | stdlib | 1.20.8 |
| Low | openSUSE-SU-2024:13653-1 | cpio | 2.15-1.1 |
| Low | GO-2022-0515 | stdlib | 1.17.12 |
| Low | GO-2023-2186 | stdlib | 1.20.11 |
| Low | openSUSE-SU-2026:10213-1 | libxml2 | 2.14.5-4.1 |
| Low | GO-2024-3333 | golang.org/ | 0.33.0 |
| Low | openSUSE-SU-2024:12576-1 | systemd | 252.3-2.1 |
| Low | openSUSE-SU-2024:13665-1 | systemd | 254.8-4.1 |
| Low | openSUSE-SU-2024:13241-1 | openssl-1_1 | 1.1.1w-1.1 |
| Low | GHSA-8cfg-vx93-jvxw | k8s.io/ | 0.17.16 |
| Low | GO-2024-3105 | stdlib | 1.22.7 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.3.0+0.g27a91cdflatest | 6 years ago | v0.0.0-0.g70ae34b | 018182764 | 11,942 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.