cf-operator Helm chart
quarksScored 14 Sept 2026
A Helm chart for cf-operator, the k8s operator for deploying BOSH releases
Latest 2.3.0+0.g27a91cdf 6 years agodeploys tag v0.0.0-0.g70ae34b 0Artifact Hub
cf-operator 2.3.0+0.g27a91cdf deploys 2 container images: cfcontainerization/quarks-job and cfcontainerization/cf-operator. Across them, 964 findings — 0 critical, 18 high — 12 on CISA KEV. The highest contribution is GHSA-45x7-px36-x8w8 in golang.org/x/crypto v0.0.0-20190820162420-60c769a6c586, fixed in 0.0.0-20231218163308-9d2ee975ef9f.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| cfcontainerization/ | v0.0.0-0.g70ae34b | 0991382 | 5,971 |
| cfcontainerization/ | v2.3.0-0.g27a91cdf | 0991382 | 5,971 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | openSUSE-SU-2026:10826-1 | libzypp | 17.38.9-1.1 |
| Low | openSUSE-SU-2026:10617-1 | zlib | 1.3.1-2.1 |
| Low | openSUSE-SU-2026:11660-1 | glibc | 2.44-1.1 |
| Low | openSUSE-SU-2025:15765-1 | gnutls | 3.8.11-1.1 |
| Low | openSUSE-SU-2026:10536-1 | libcap | 2.78-1.1 |
| Low | openSUSE-SU-2026:10167-1 | libxml2 | 2.14.5-3.1 |
| Low | GO-2026-4602 | stdlib | 1.25.8 |
| Low | openSUSE-SU-2026:10072-1 | util-linux | 2.41.3-1.1 |
| Low | openSUSE-SU-2025:15076-1 | gpg2 | 2.5.6-1.1 |
| Low | openSUSE-SU-2026:11059-1 | sqlite3 | 3.53.2-2.1 |
| Low | openSUSE-SU-2026:11260-1 | patch | 2.8-3.1 |
| Low | openSUSE-SU-2026:11408-1 | util-linux | 2.42.2-1.1 |
| Low | openSUSE-SU-2025:15459-1 | glibc | 2.42-1.1 |
| Low | openSUSE-SU-2026:11618-1 | cpio | 2.15-8.1 |
| Low | openSUSE-SU-2026:11312-1 | acl | 2.4.0-1.1 |
| Low | openSUSE-SU-2026:10001-1 | gpg2 | 2.5.16-1.1 |
| Low | openSUSE-SU-2026:11258-1 | libxml2 | 2.15.3-2.1 |
| Low | openSUSE-SU-2026:11764-1 | coreutils | 9.11-5.1 |
| Low | openSUSE-SU-2026:10624-1 | systemd | 259.5-1.3 |
| Low | openSUSE-SU-2026:10649-1 | sed | 4.10-1.1 |
| Low | openSUSE-SU-2026:11213-1 | gpg2 | 2.5.21-1.1 |
| Low | openSUSE-SU-2026:10736-1 | util-linux | 2.42-1.1 |
| Low | GO-2026-5024 | golang.org/ | 0.44.0 |
| Low | GO-2022-0965 | k8s.io/ | 0.0.0-20190927203648-9ce6eca90e73 |
| Low | GO-2026-5932 | golang.org/ | no fix listed |
| Low | openSUSE-SU-2019:2612-1 | libxml2 | 2.9.7-lp151.5.6.1 |
| Low | openSUSE-SU-2020:0511-1 | permissions | 20181116-lp151.4.18.1 |
| Low | openSUSE-SU-2020:0957-1 | permissions | 20181116-lp151.4.24.1 |
| Low | openSUSE-SU-2020:1658-1 | permissions | 20181116-lp151.4.27.1 |
| Low | openSUSE-SU-2024:13069-1 | curl | 8.2.0-1.1 |
| Low | openSUSE-SU-2025:15803-1 | krb5 | 1.22.1-1.1 |
| Low | openSUSE-SU-2026:10840-1 | systemd | 260.1-2.1 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.3.0+0.g27a91cdflatest | 6 years ago | v0.0.0-0.g70ae34b | 018182764 | 11,942 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.