StackRadar

drupal 0.0.17 Helm chart

quench-drupalVerified publisher

Scored 26 Sept 2026

Hardened Drupal CMS (PHP-FPM + nginx) on a 0-CVE nonroot image, with a bundled MySQL backend.

Version 0.0.17app version 11.4.7 (not verified against the render) 0Artifact Hub

drupal 0.0.17 deploys 2 container images: ghcr.io/quenchworks/images/drupal and ghcr.io/quenchworks/images/mysql. Across them, 25 findings — 0 critical, 0 high. The highest contribution is CGA-8g64-9242-qg4m in curl 8.21.0-r2, fixed in 8.22.0-r0. Chart.yaml declares kubeVersion >=1.23.0-0; rendered for Kubernetes 1.23.0.

Radar Score

20500322

25 findings over 2 of 2 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/quenchworks/images/drupaldigest-pinned0001062
ghcr.io/quenchworks/images/mysqldigest-pinned00312143

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

3 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumCGA-8g64-9242-qg4mcurl@8.21.0-r28.22.0-r0
MediumCGA-7v23-69r9-9qwjcurl@8.21.0-r28.22.0-r0
MediumCGA-6ph6-75jp-484pzlib@1.3.2-r41.3.2.1_rc20260601-r0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.18latest—11.4.700017102
0.0.17—11.4.700322205
0.0.15—11.4.500533352

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/quench-drupal/drupal.svg)](https://charts.stackradar.io/charts/quench-drupal/drupal)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 21 Sept 2026 · scanned 26 Sept 2026 · advisories as of 26 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.