StackRadar

repman 3.52.17 Helm chart

szpadel-chartsVerified publisher

Scored 15 Sept 2026

Repman - PHP Repository Manager: packagist proxy and host for private packages

Version 3.52.17 1 year agoapp version 1.4.0 2Artifact Hub

repman 3.52.17 deploys 3 container images: bitnami/minio, buddy/repman and library/nginx. Across the 2 measured, 556 findings3 critical, 7 high 2 on CISA KEV. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1g-r0, fixed in 1.1.1l-r0.

Radar Score

7,06437130416

556 findings over 2 of 3 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
bitnami/minio2023.2.27-debian-11-r1unmeasured
buddy/repman×71.4.01648732,183
library/nginx1.27.321823434,881

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

556 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-16742systemd@252.31-1~deb12u1no fix listed
LowDEBIAN-CVE-2026-34757libpng1.6@1.6.39-21.6.39-2+deb12u5
LowGHSA-mrqx-rp3w-jpjpsymfony/http-foundation@v5.4.25.4.46
LowDEBIAN-CVE-2025-68160openssl@3.0.15-1~deb12u13.0.18-1~deb12u2
LowDEBIAN-CVE-2025-61145tiff@4.5.0-6+deb12u1no fix listed
LowDEBIAN-CVE-2023-29383shadow@1:4.13+dfsg1-1+b11:4.13+dfsg1-1+deb12u1
LowGHSA-g6xq-892h-64w3composer/composer@1.10.242.2.29
LowDEBIAN-CVE-2025-15224curl@7.88.1-10+deb12u8no fix listed
LowDEBIAN-CVE-2023-6228tiff@4.5.0-6+deb12u1no fix listed
LowDEBIAN-CVE-2026-22185openldap@2.5.13+dfsg-5no fix listed
LowGHSA-9c3x-r3wp-mgxmsymfony/http-client@v5.4.25.4.47
LowDEBIAN-CVE-2026-3713libpng1.6@1.6.39-2no fix listed
LowDEBIAN-CVE-2026-42250bzip2@1.0.8-5+b1no fix listed
LowGHSA-g3rh-rrhp-jhh9symfony/validator@v5.4.25.4.43
LowDEBIAN-CVE-2025-9820gnutls28@3.7.9-2+deb12u33.7.9-2+deb12u6
LowDEBIAN-CVE-2026-3949libheif@1.15.1-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-27456util-linux@2.38.1-5+deb12u2no fix listed
LowDEBIAN-CVE-2026-18508tar@1.34+dfsg-1.2+deb12u1no fix listed
LowDEBIAN-CVE-2025-68972gnupg2@2.2.40-1.1no fix listed
LowDEBIAN-CVE-2026-0992libxml2@2.9.14+dfsg-1.3~deb12u12.9.14+dfsg-1.3~deb12u6
LowDEBIAN-CVE-2026-89160pcre2@10.42-110.42-1+deb12u1
LowDEBIAN-CVE-2022-3219gnupg2@2.2.40-1.1no fix listed
LowDEBIAN-CVE-2026-41080expat@2.5.0-1+deb12u1no fix listed
LowDEBIAN-CVE-2025-11731libxslt@1.1.35-1no fix listed
LowDEBIAN-CVE-2023-51792libde265@1.0.11-1+deb12u2no fix listed
LowDEBIAN-CVE-2025-69418openssl@3.0.15-1~deb12u13.0.18-1~deb12u2
LowDEBIAN-CVE-2007-5686shadow@1:4.13+dfsg1-1+b1no fix listed
LowDEBIAN-CVE-2026-18477tar@1.34+dfsg-1.2+deb12u1no fix listed
LowALPINE-CVE-2020-26159oniguruma@6.9.4-r06.9.4-r1
LowDEBIAN-CVE-2026-36849tiff@4.5.0-6+deb12u1no fix listed
LowDEBIAN-CVE-2026-53613util-linux@2.38.1-5+deb12u2no fix listed
LowDEBIAN-CVE-2026-53615util-linux@2.38.1-5+deb12u2no fix listed
LowDEBIAN-CVE-2026-77117glibc@2.36-9+deb12u9no fix listed
LowDEBIAN-CVE-2026-80489glibc@2.36-9+deb12u9no fix listed
LowDEBIAN-CVE-2026-84450libheif@1.15.1-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-84451libheif@1.15.1-1+deb12u1no fix listed
LowDSA-5979-2libxslt@1.1.35-11.1.35-1+deb12u3
LowDEBIAN-CVE-2026-40228systemd@252.31-1~deb12u1no fix listed
LowDEBIAN-CVE-2025-6170libxml2@2.9.14+dfsg-1.3~deb12u12.9.14+dfsg-1.3~deb12u3
LowGHSA-6377-hfv9-hqf6twig/twig@v3.3.73.11.2
LowGHSA-jjxq-ff2g-95vhtwig/twig@v3.3.73.11.2
LowGHSA-p42q-9prx-q5wqtwig/twig@v3.3.73.27.0
LowDEBIAN-CVE-2026-57062gnupg2@2.2.40-1.1no fix listed
LowDEBIAN-CVE-2026-53910diffutils@1:3.8-4no fix listed
LowGHSA-vcc8-phrv-43wjtwig/twig@v3.3.73.26.0
LowDEBIAN-CVE-2026-86137libxml2@2.9.14+dfsg-1.3~deb12u1no fix listed
LowDEBIAN-CVE-2026-86141libxml2@2.9.14+dfsg-1.3~deb12u1no fix listed
LowDEBIAN-CVE-2026-24515expat@2.5.0-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-89156pcre2@10.42-110.42-1+deb12u1
LowGHSA-2g2g-8p8h-fgwmtwig/twig@v3.3.73.26.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
3.52.17latest1 year ago1.4.0371304167,064

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/szpadel-charts/repman.svg)](https://charts.stackradar.io/charts/szpadel-charts/repman)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.