kyoo Helm chart
rubxkubeVerified publisherScored 14 Sept 2026
Kyoo is a media manager and transcoder for your media files.
Latest 0.1.10 4 months agodeploys tag 4.7.1 1Artifact Hub
kyoo 0.1.10 deploys 9 container images: ghcr.io/zoriya/kyoo_autosync, ghcr.io/zoriya/kyoo_migrations, ghcr.io/zoriya/kyoo_back, ghcr.io/zoriya/kyoo_front and 5 more. Across the 7 measured, 2,708 findings — 10 critical, 12 high — 4 on CISA KEV. The highest contribution is GHSA-f82v-jwr5-mffw in next 14.2.5, fixed in 14.2.25. Chart.yaml declares kubeVersion >= 1.18; rendered for Kubernetes 1.18.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| ghcr.io/ | 4.7.1 | 43170805 | 10,920 |
| ghcr.io/ | 4.7.1 | 0136151 | 2,089 |
| ghcr.io/ | 4.7.1 | 1162203 | 3,230 |
| ghcr.io/ | 4.7.1 | 131991 | 1,462 |
| ghcr.io/ | 4.7.1 | 43170834 | 11,249 |
| ghcr.io/ | 4.7.1 | 00695 | 804 |
| getmeili/ | v1.11.0 | 011421 | 480 |
| bitnami/ | 17.2.0-debian-12-r2 | — | unmeasured |
| bitnami/ | 4.1.3-debian-12-r1 | — | unmeasured |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | GHSA-f82v-jwr5-mffw | next | 14.2.25 |
| Critical | GHSA-5rrx-jjjq-q2r5 | Microsoft.AspNetCore.App.Runtime.linux-x64 | 8.0.21 |
| Critical | DEBIAN-CVE-2025-27363KEV | freetype | 2.12.1+dfsg-5+deb12u4 |
| Critical | DEBIAN-CVE-2025-48384KEV | git | 1:2.39.5-0+deb12u3 |
| Critical | DEBIAN-CVE-2025-1094 | postgresql-15 | 15.11-0+deb12u1 |
| Critical | DEBIAN-CVE-2025-6965 | sqlite3 | 3.40.1-2+deb12u2 |
| High | ALPINE-CVE-2025-15467 | openssl | 3.3.6-r0 |
| High | DEBIAN-CVE-2025-15467 | openssl | 3.0.18-1~deb12u2 |
| High | GHSA-gp8f-8m3g-qvj9 | next | 14.2.10 |
| High | GHSA-c4j6-fc7j-m34r | next | 15.5.16 |
| High | DEBIAN-CVE-2023-34152 | imagemagick | no fix listed |
| High | DEBIAN-CVE-2019-6110 | openssh | no fix listed |
| Medium | GHSA-5cgq-3rg8-m6cv | golang.org/ | 0.52.0 |
| Medium | DEBIAN-CVE-2020-15778 | openssh | no fix listed |
| Medium | DEBIAN-CVE-2018-6951 | patch | no fix listed |
| Medium | DEBIAN-CVE-2018-6952 | patch | no fix listed |
| Medium | DSA-6113-1 | openssl | 3.0.18-1~deb12u2 |
| Medium | DEBIAN-CVE-2019-1010022 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2023-45853 | zlib | no fix listed |
| Medium | DEBIAN-CVE-2025-55298 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u4 |
| Medium | DEBIAN-CVE-2017-17740 | openldap | no fix listed |
| Medium | DEBIAN-CVE-2026-45447 | openssl | 3.0.20-1~deb12u2 |
| Medium | DEBIAN-CVE-2018-20796 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2025-26465 | openssh | 1:9.2p1-2+deb12u5 |
| Medium | DEBIAN-CVE-2017-16232 | tiff | no fix listed |
| Medium | DEBIAN-CVE-2015-3276 | openldap | no fix listed |
| Medium | DEBIAN-CVE-2019-1010023 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2018-16376 | openjpeg2 | no fix listed |
| Medium | GHSA-p293-qw3h-jr36 | next | 15.5.24 |
| Medium | DEBIAN-CVE-2009-3546 | libwmf | no fix listed |
| Medium | GHSA-7gfc-8cq8-jh5f | next | 14.2.15 |
| Medium | GHSA-gjf6-3w4p-7xfh | Microsoft.NETCore.App.Runtime.linux-x64 | 8.0.12 |
| Medium | DEBIAN-CVE-2016-9917 | bluez | no fix listed |
| Medium | DEBIAN-CVE-2026-49261 | mariadb | 1:10.11.18-0+deb12u1 |
| Medium | DEBIAN-CVE-2016-9918 | bluez | no fix listed |
| Medium | DEBIAN-CVE-2018-15607 | imagemagick | no fix listed |
| Medium | DEBIAN-CVE-2016-9580 | openjpeg2 | no fix listed |
| Medium | DEBIAN-CVE-2016-9581 | openjpeg2 | no fix listed |
| Medium | GHSA-5j98-mcp5-4vw2 | glob | 10.5.0 |
| Medium | DEBIAN-CVE-2016-9114 | openjpeg2 | no fix listed |
| Medium | DEBIAN-CVE-2016-9113 | openjpeg2 | no fix listed |
| Medium | GHSA-38jv-5279-wg99 | urllib3 | 2.6.3 |
| Medium | GHSA-4vgm-c2wm-63mw | Microsoft.AspNetCore.App.Runtime.linux-x64 | 8.0.25 |
| Medium | DEBIAN-CVE-2024-52533 | glib2.0 | 2.74.6-2+deb12u5 |
| Medium | DEBIAN-CVE-2025-49796 | libxml2 | 2.9.14+dfsg-1.3~deb12u3 |
| Medium | DEBIAN-CVE-2022-24975 | git | no fix listed |
| Medium | DEBIAN-CVE-2024-56171 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Medium | DEBIAN-CVE-2023-6879 | aom | no fix listed |
| Medium | DEBIAN-CVE-2026-19931 | curl | no fix listed |
| Medium | GHSA-f8h2-vmm9-qhj6 | Microsoft.AspNetCore.App.Runtime.linux-x64 | 8.0.28 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.1.10latest | 4 months ago | 4.7.1 | 10124772,200 | 30,234 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.