StackRadar

cf-operator Helm chart

quarks

Scored 14 Sept 2026

A Helm chart for cf-operator, the k8s operator for deploying BOSH releases

Latest 2.3.0+0.g27a91cdf 6 years agodeploys tag v0.0.0-0.g70ae34b 0Artifact Hub

cf-operator 2.3.0+0.g27a91cdf deploys 2 container images: cfcontainerization/quarks-job and cfcontainerization/cf-operator. Across them, 964 findings0 critical, 18 high 12 on CISA KEV. The highest contribution is GHSA-45x7-px36-x8w8 in golang.org/x/crypto v0.0.0-20190820162420-60c769a6c586, fixed in 0.0.0-20231218163308-9d2ee975ef9f.

Radar Score

11,942018182764

964 findings over 2 of 2 images measured

KEV ×12 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
cfcontainerization/quarks-jobv0.0.0-0.g70ae34b09913825,971
cfcontainerization/cf-operatorv2.3.0-0.g27a91cdf09913825,971

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

482 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowopenSUSE-SU-2024:10126-1libksba@1.3.5-lp151.3.31.3.5-1.3
LowopenSUSE-SU-2024:12271-1xz@5.2.3-lp151.4.3.15.2.6-1.1
LowGHSA-89gr-r52h-f8rxgolang.org/x/crypto@v0.0.0-20190820162420-60c769a6c5860.52.0
LowGHSA-jppx-rxg9-jmrxgolang.org/x/crypto@v0.0.0-20190820162420-60c769a6c5860.52.0
LowopenSUSE-SU-2024:13647-1glibc@2.26-lp151.18.72.39-1.2
LowGO-2021-0142stdlib@go1.13.31.13.15
LowopenSUSE-SU-2024:11850-1glibc@2.26-lp151.18.72.35-1.1
LowGO-2021-0263stdlib@go1.13.31.16.10
LowopenSUSE-SU-2024:12179-1openssl-1_1@1.1.0i-lp151.8.3.11.1.1q-1.1
LowGO-2023-1571stdlib@go1.13.31.19.6
LowopenSUSE-SU-2024:13437-1openssl-1_1@1.1.0i-lp151.8.3.11.1.1w-4.1
LowopenSUSE-SU-2020:0647-1openldap2@2.4.46-lp151.10.3.12.4.46-lp151.10.9.1
LowopenSUSE-SU-2020:2037-1krb5@1.16.3-lp151.2.6.11.16.3-lp151.2.15.1
LowopenSUSE-SU-2024:11549-1krb5@1.16.3-lp151.2.6.11.19.2-3.1
LowopenSUSE-SU-2020:1676-1libproxy@0.4.15-lp151.3.30.4.15-lp151.4.3.1
LowopenSUSE-SU-2024:10973-1libproxy@0.4.15-lp151.3.30.4.17-2.2
LowopenSUSE-SU-2024:12447-1curl@7.60.0-lp151.5.6.17.86.0-1.1
LowopenSUSE-SU-2024:14225-1curl@7.60.0-lp151.5.6.18.9.0-1.1
LowopenSUSE-SU-2024:10697-1cpio@2.12-lp151.2.682.13-3.3
LowopenSUSE-SU-2024:10405-1pam@1.3.0-lp151.7.381.3.0-3.4
LowopenSUSE-SU-2024:10731-1e2fsprogs@1.43.8-lp151.5.6.11.46.4-1.1
LowGO-2022-0435stdlib@go1.13.31.17.9
LowGO-2022-0288stdlib@go1.13.31.16.12
LowGO-2022-0288golang.org/x/net@v0.0.0-20190813141303-74dc4d7220e70.0.0-20211209124913-491a49abca63
LowopenSUSE-SU-2024:12347-1sqlite3@3.28.0-lp151.2.3.13.39.3-2.1
LowopenSUSE-SU-2024:10941-1libgcrypt@1.8.2-lp151.9.4.11.9.4-1.2
LowopenSUSE-SU-2024:12062-1curl@7.60.0-lp151.5.6.17.83.1-1.1
LowGO-2023-2102stdlib@go1.13.31.20.10
LowopenSUSE-SU-2024:12028-1curl@7.60.0-lp151.5.6.17.83.0-1.1
LowopenSUSE-SU-2020:1430-1libxml2@2.9.7-lp151.5.3.12.9.7-lp151.5.15.1
LowopenSUSE-SU-2020:1345-1curl@7.60.0-lp151.5.6.17.60.0-lp151.5.15.1
LowopenSUSE-SU-2024:12043-1libxml2@2.9.7-lp151.5.3.12.9.14-1.1
LowopenSUSE-SU-2020:1724-1gnutls@3.6.7-lp151.2.3.13.6.7-lp151.2.21.1
LowopenSUSE-SU-2024:11636-1gmp@6.1.2-lp151.3.706.2.1-4.1
LowopenSUSE-SU-2019:2611-1libidn2@2.0.4-lp151.2.32.2.0-lp151.3.3.1
LowGO-2022-0236stdlib@go1.13.31.15.12
LowopenSUSE-SU-2024:12825-1openssl-1_1@1.1.0i-lp151.8.3.11.1.1t-2.1
LowopenSUSE-SU-2024:10694-1coreutils@8.29-lp151.3.38.32-8.5
LowGO-2021-0226stdlib@go1.13.31.14.8
LowGO-2021-0240stdlib@go1.13.31.15.13
LowGO-2021-0242stdlib@go1.13.31.15.13
LowopenSUSE-SU-2020:0501-1libnettle@3.4.1-lp151.1.13.4.1-lp151.2.3.2
LowopenSUSE-SU-2020:0501-1gnutls@3.6.7-lp151.2.3.13.6.7-lp151.2.6.1
LowopenSUSE-SU-2020:0501-1gmp@6.1.2-lp151.3.706.1.2-lp151.4.3.1
LowopenSUSE-SU-2024:10132-1bzip2@1.0.6-lp151.5.9.11.0.6-37.82
LowGO-2021-0264stdlib@go1.13.31.16.10
LowGO-2022-0969stdlib@go1.13.31.18.6
LowGO-2021-0239stdlib@go1.13.31.15.13
LowopenSUSE-SU-2024:11562-1lz4@1.8.0-lp151.3.3.11.9.3-2.1
LowopenSUSE-SU-2024:13662-1openssl-1_1@1.1.0i-lp151.8.3.11.1.1w-7.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
2.3.0+0.g27a91cdflatest6 years agov0.0.0-0.g70ae34b01818276411,942

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/quarks/cf-operator.svg)](https://charts.stackradar.io/charts/quarks/cf-operator)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.