tbmq-cluster 2.3.0 Helm chart
tbmq-helm-chartOfficialVerified publisherScored 9 Oct 2026
Helm chart for TBMQ cluster (Community and Professional Editions).
Version 2.3.0 15 days agoapp version 2.4.0 5Artifact Hub
tbmq-cluster 2.3.0 deploys 3 container images: thingsboard/tbmq-integration-executor, thingsboard/toolbox and thingsboard/tbmq-node. Across them, 358 findings — 0 critical, 0 high. The highest contribution is DEBIAN-CVE-2019-1010022 in glibc 2.41-12+deb13u3, with no fix listed.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| thingsboard/ | 2.4.0 | 0033141 | 1,931 |
| thingsboard/ | 1.29.0 | 0019 | 99 |
| thingsboard/ | 2.4.0 | 0033141 | 1,931 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | DEBIAN-CVE-2019-1010022 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2017-17740 | openldap | no fix listed |
| Medium | DEBIAN-CVE-2018-20796 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2015-3276 | openldap | no fix listed |
| Medium | DEBIAN-CVE-2019-1010023 | glibc | no fix listed |
| Medium | PYSEC-2025-49 | setuptools | 78.1.1 |
| Medium | DEBIAN-CVE-2019-9192 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2018-5709 | krb5 | no fix listed |
| Medium | DEBIAN-CVE-2026-19931 | curl | no fix listed |
| Medium | DEBIAN-CVE-2026-5450 | glibc | 2.41-12+deb13u4 |
| Medium | DEBIAN-CVE-2026-11856 | curl | no fix listed |
| Medium | DEBIAN-CVE-2011-3389 | gnutls28 | no fix listed |
| Medium | GHSA-pc63-qcmh-9cmg | spring-webmvc | no fix listed |
| Medium | DEBIAN-CVE-2026-10536 | curl | no fix listed |
| Medium | DEBIAN-CVE-2026-9079 | curl | no fix listed |
| Medium | GHSA-j9f9-w8pj-32f8 | spring-webflux | no fix listed |
| Medium | GHSA-j9f9-w8pj-32f8 | spring-webmvc | no fix listed |
| Medium | GHSA-9xv2-5v5q-p794 | tomcat-embed-core | 10.1.58 |
| Medium | DEBIAN-CVE-2026-8924 | curl | no fix listed |
| Medium | GHSA-9qf2-26p9-2q2q | spring-webflux | no fix listed |
| Medium | DEBIAN-CVE-2024-26461 | krb5 | no fix listed |
| Medium | DEBIAN-CVE-2019-1010024 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2026-66033 | libssh2 | 1.11.1-1+deb13u2 |
| Medium | DEBIAN-CVE-2026-8376 | perl | 5.40.1-6+deb13u1 |
| Medium | DEBIAN-CVE-2026-18924 | curl | no fix listed |
| Medium | GHSA-gcx9-497g-6cp6 | tomcat-embed-core | 10.1.58 |
| Medium | DEBIAN-CVE-2025-29070 | lcms2 | no fix listed |
| Medium | DEBIAN-CVE-2026-8927 | curl | no fix listed |
| Medium | GHSA-h3x4-894j-xpx5 | tomcat-embed-core | 10.1.58 |
| Medium | DEBIAN-CVE-2017-11695 | nss | no fix listed |
| Medium | DEBIAN-CVE-2017-11696 | nss | no fix listed |
| Medium | DEBIAN-CVE-2017-11698 | nss | no fix listed |
| Medium | DEBIAN-CVE-2026-85091 | zlib | no fix listed |
| Medium | DEBIAN-CVE-2019-1010025 | glibc | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.3.1latest | today | 2.4.1 | 0053245 | 3,075 |
| 2.3.0 | 15 days ago | 2.4.0 | 0067291 | 3,961 |
| 2.2.0 | 16 days ago | 2.4.0 | 0067291 | 3,961 |
| 2.1.0 | 1 month ago | 2.4.0 | 1174299 | 4,307 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.