StackRadar

rocketmq-cluster Helm chart

rocketmq

Scored 14 Sept 2026

RocketMQ Helm chart

Latest 12.6.0 7 months agoapp version 5.4.0 2Artifact Hub

rocketmq-cluster 12.6.0 deploys 2 container images: apacherocketmq/rocketmq-dashboard and apache/rocketmq. Across them, 544 findings3 critical, 5 high. The highest contribution is RHSA-2026:1473 in openssl 1:3.2.2-6.el9_5.1, fixed in 1:3.5.1-7.el9_7.

Radar Score

6,3283588448

544 findings over 2 of 2 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
apacherocketmq/rocketmq-dashboard2.1.034431893,155
apache/rocketmq×45.4.001452593,173

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

457 distinct across the version’s images
SeverityAdvisoryPackageFixed in
CriticalRHSA-2026:1473openssl@1:3.2.2-6.el9_5.11:3.5.1-7.el9_7
CriticalRHSA-2026:1503openssl@1:3.2.2-6.el9_5.11:3.2.2-7.el9_6.2
CriticalRHSA-2025:20936sqlite@3.34.1-8.el9_60:3.34.1-9.el9_7
HighGHSA-wmwf-9ccg-fff5tomcat-embed-core@10.1.4010.1.45
HighGHSA-h3gc-qfqq-6h8ftomcat-embed-core@10.1.4010.1.42
HighGHSA-crf3-v9rr-v7hjfastjson@1.2.83no fix listed
HighGHSA-vfww-5hm6-hx2jtomcat-embed-core@10.1.4010.1.45
MediumGHSA-mw3r-pfmg-xp92xmlbeans@2.6.03.0.0
MediumRHSA-2026:25239openssl@1:3.2.2-6.el9_5.11:3.5.5-4.el9_8
MediumUBUNTU-CVE-2026-45447openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.11
MediumGHSA-gqp3-2cvr-x8m3tomcat-embed-core@10.1.4010.1.44
MediumGHSA-r29c-68gh-xp6xtomcat-embed-core@10.1.4010.1.55
MediumGHSA-wxr5-93ph-8wr9commons-beanutils@1.9.41.11.0
MediumGHSA-735f-pc8j-v9w8protobuf-java@3.20.13.25.5
MediumGHSA-h6fc-48rj-7qqhtomcat-embed-core@10.1.4010.1.55
MediumUBUNTU-CVE-2026-19931curl@8.5.0-2ubuntu10.6no fix listed
MediumGHSA-jq43-27x9-3v86netty-codec-smtp@4.1.114.Final4.1.128.Final
MediumUBUNTU-CVE-2016-20013glibc@2.39-0ubuntu8.7no fix listed
MediumGHSA-4g8c-wm8x-jfhwnetty-handler@4.1.114.Final4.1.118.Final
MediumGHSA-wc4r-xq3c-5cf3tomcat-embed-core@10.1.4010.1.42
MediumGHSA-wr62-c79q-cv37tomcat-embed-core@10.1.4010.1.43
MediumGHSA-5m62-pw8w-7w9ftomcat-embed-core@10.1.4010.1.55
MediumGHSA-25xr-qj8w-c4vftomcat-embed-core@10.1.4010.1.43
MediumUBUNTU-CVE-2026-10536curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.11
MediumGHSA-w9fj-cfpg-grvvnetty-codec-http2@4.1.114.Final4.1.132.Final
MediumRHSA-2026:20612gnutls@3.8.3-6.el90:3.8.10-4.el9_8
MediumRHSA-2026:30004gnutls@3.8.3-6.el90:3.8.3-6.el9_6.4
MediumGHSA-h2fw-rfh5-95r3tomcat-embed-core@10.1.4010.1.41
MediumGHSA-9xv2-5v5q-p794tomcat-embed-core@10.1.4010.1.58
MediumUBUNTU-CVE-2026-18924curl@8.5.0-2ubuntu10.6no fix listed
MediumUBUNTU-CVE-2026-11856curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.12
MediumGHSA-c459-2m73-67hjhessian@3.3.63.5.5
MediumUBUNTU-CVE-2026-8925curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.10
MediumGHSA-j288-q9x7-2f5vcommons-lang@2.6no fix listed
MediumGHSA-j288-q9x7-2f5vcommons-lang3@3.12.03.18.0
MediumUBUNTU-CVE-2026-42009gnutls28@3.8.3-1.1ubuntu3.43.8.3-1.1ubuntu3.6
MediumUBUNTU-CVE-2026-63076openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.15
MediumUBUNTU-CVE-2025-59375expat@2.6.1-2ubuntu0.4no fix listed
MediumGHSA-3qp7-7mw8-wx86netty-handler@4.1.114.Final4.1.135.Final
MediumUBUNTU-CVE-2026-33846gnutls28@3.8.3-1.1ubuntu3.43.8.3-1.1ubuntu3.6
MediumRHSA-2026:8510libarchive@3.5.3-6.el9_60:3.5.3-9.el9_7
MediumRHSA-2026:8866libarchive@3.5.3-6.el9_60:3.5.3-7.el9_6.1
MediumGHSA-h3x4-894j-xpx5tomcat-embed-core@10.1.4010.1.58
MediumGHSA-rmj7-2vxq-3g9fjackson-databind@2.18.32.18.8
MediumUBUNTU-CVE-2026-5450glibc@2.39-0ubuntu8.72.39-0ubuntu8.8
MediumGHSA-9pp5-9c7g-4r83spring-security-core@6.4.56.4.6
MediumGHSA-j3rv-43j4-c7qmjackson-databind@2.18.32.18.8
MediumRHSA-2026:28255libpng@2:1.6.37-12.el92:1.6.37-15.el9_8.2
MediumUBUNTU-CVE-2026-34182openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.11
MediumGHSA-gcx9-497g-6cp6tomcat-embed-core@10.1.4010.1.58

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
12.6.0latest7 months ago5.4.035884486,328

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/rocketmq/rocketmq-cluster.svg)](https://charts.stackradar.io/charts/rocketmq/rocketmq-cluster)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.