StackRadar

opencloud Helm chart

unxwaresVerified publisher

Scored 14 Sept 2026

OpenCloud Helm community chart

Latest 0.2.3 11 months agoapp version latest 0Artifact Hub

opencloud 0.2.3 deploys 13 container images: library/busybox, opencloudeu/opencloud-rolling, quay.io/keycloak/keycloak, minio/minio and 4 more. Across the 12 measured, 4,110 findings19 critical, 11 high 12 on CISA KEV. The highest contribution is GHSA-f58c-gq56-vjjf in tika-core 2.9.2, fixed in 3.2.2.

Radar Score

45,23919116843,396

4,110 findings over 12 of 13 images measured

KEV ×12 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

13 images
ImageTagVulnerabilitiesRadar Score
library/busybox×61.3600000
opencloudeu/opencloud-rolling×22.1.001201781,842
quay.io/keycloak/keycloak26.1.410181601,885
minio/miniolatest0091091,069
onlyoffice/documentserver8.2.2not yet scanned
opencloudeu/web-extensionsdraw-io-1.0.021803364,755
opencloudeu/web-extensionsexternal-sites-1.0.021803364,755
opencloudeu/web-extensionsimporter-1.0.021803364,755
opencloudeu/web-extensionsjson-viewer-1.0.021803364,755
opencloudeu/web-extensionsprogress-bars-1.0.021803364,755
opencloudeu/web-extensionsunzip-1.0.021803364,755
library/postgresalpine00861634
apache/tika2.9.2.1-full6414987211,279

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

1,326 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2025-21518mysql-8.0@8.0.36-2ubuntu38.0.41-0ubuntu0.24.04.1
LowUBUNTU-CVE-2026-14664postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowUBUNTU-CVE-2026-14670postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowUBUNTU-CVE-2026-15742postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowDEBIAN-CVE-2026-62292libheif@1.15.1-1+deb12u1no fix listed
LowUBUNTU-CVE-2026-22016openjdk-17@17.0.11+9-117.0.19+10-1~24.04.2
LowDEBIAN-CVE-2026-66032libssh2@1.10.0-3+b11.10.0-3+deb12u1
LowUBUNTU-CVE-2024-10524wget@1.21.4-1ubuntu4no fix listed
LowUBUNTU-CVE-2026-4111libarchive@3.7.2-23.7.2-2ubuntu0.6
LowUBUNTU-CVE-2018-15671hdf5@1.10.10+repack-3.1ubuntu4no fix listed
LowUBUNTU-CVE-2026-4224python3.12@3.12.3-13.12.3-1ubuntu0.15
LowUBUNTU-CVE-2026-19385postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowUBUNTU-CVE-2024-25269libheif@1.17.6-1ubuntu41.17.6-1ubuntu4.2
LowUBUNTU-CVE-2025-21574mysql-8.0@8.0.36-2ubuntu38.0.42-0ubuntu0.24.04.1
LowALPINE-CVE-2026-80255curl@8.21.0-r08.22.0-r0
LowUBUNTU-CVE-2026-14671postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowUBUNTU-CVE-2026-14677postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowUBUNTU-CVE-2026-14680postgresql-16@16.2-1ubuntu416.15-0ubuntu0.24.04.1
LowUBUNTU-CVE-2025-21522mysql-8.0@8.0.36-2ubuntu38.0.41-0ubuntu0.24.04.1
LowUBUNTU-CVE-2026-7210python3.12@3.12.3-1no fix listed
LowUBUNTU-CVE-2026-12087perl@5.38.2-3.2build25.38.2-3.2ubuntu0.4
LowGHSA-qcxp-gm7m-4j5vquarkus-vertx-http@3.15.3.13.20.6.2
LowUBUNTU-CVE-2025-8715postgresql-16@16.2-1ubuntu416.10-0ubuntu0.24.04.1
LowUBUNTU-CVE-2025-21500mysql-8.0@8.0.36-2ubuntu38.0.41-0ubuntu0.24.04.1
LowUBUNTU-CVE-2025-21501mysql-8.0@8.0.36-2ubuntu38.0.41-0ubuntu0.24.04.1
LowGHSA-52jh-2xxh-pwh6github.com/nats-io/nats-server/v2@v2.11.02.11.14
LowGHSA-78h2-9frx-2jm8github.com/go-jose/go-jose/v3@v3.0.43.0.5
LowGHSA-78h2-9frx-2jm8github.com/go-jose/go-jose/v4@v4.0.54.1.4
LowGHSA-jjjj-jwhf-8rgrgithub.com/minio/minio@v0.0.0-20250907161309-07c3a429bfed+dirty0.0.0-20251015170045-c1a49490c78e
LowGHSA-vp52-pcj8-j9qcgoogle.golang.org/grpc@v1.71.11.83.1
LowUBUNTU-CVE-2025-53066openjdk-17@17.0.11+9-117.0.17+10-1~24.04
LowDEBIAN-CVE-2025-48174libavif@0.11.1-10.11.1-1+deb12u1
LowUBUNTU-CVE-2025-8194python3.12@3.12.3-13.12.3-1ubuntu0.8
LowUBUNTU-CVE-2024-34403uriparser@0.9.7+dfsg-2build10.9.7+dfsg-2ubuntu0.1~esm1
LowGHSA-pwqr-wmgm-9rr8netty-codec-http@4.1.118.Final4.1.132.Final
LowUBUNTU-CVE-2026-15308python3.12@3.12.3-13.12.3-1ubuntu0.17
LowGHSA-hq9p-pm7w-8p54postgresql@42.7.442.7.7
LowUBUNTU-CVE-2026-34282openjdk-17@17.0.11+9-117.0.19+10-1~24.04.2
LowGHSA-rc95-pcm8-65v9quarkus-vertx-http@3.15.3.13.20.6.1
LowGHSA-45q3-82m4-75jrnetty-handler-proxy@4.1.118.Final4.1.133.Final
LowGHSA-h2qv-fj59-j46jnetty-codec-haproxy@4.1.118.Final4.1.135.Final
LowGHSA-rp95-xpg9-c2cqkeycloak-services@26.1.426.6.2
LowDEBIAN-CVE-2025-32415libxml2@2.9.14+dfsg-1.3~deb12u12.9.14+dfsg-1.3~deb12u2
LowUBUNTU-CVE-2026-0915glibc@2.39-0ubuntu8.12.39-0ubuntu8.7
LowDEBIAN-CVE-2025-4802glibc@2.36-9+deb12u92.36-9+deb12u11
LowDEBIAN-CVE-2023-50495ncurses@6.4-4no fix listed
LowUBUNTU-CVE-2021-46244hdf5@1.10.10+repack-3.1ubuntu4no fix listed
LowUBUNTU-CVE-2026-4775tiff@4.5.1+git230720-4ubuntu2no fix listed
LowUBUNTU-CVE-2021-46243hdf5@1.10.10+repack-3.1ubuntu4no fix listed
LowUBUNTU-CVE-2024-48958libarchive@3.7.2-23.7.2-2ubuntu0.2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.3latest11 months agolatest19116843,39645,239

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/unxwares/opencloud.svg)](https://charts.stackradar.io/charts/unxwares/opencloud)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.