StackRadar

vulcan Helm chart

vulcan

Scored 14 Sept 2026

Vulcan Helm chart for Kubernetes. Vulcan is web application to streamline the development of STIGs from SRGs.

Latest 0.2.2 2 years agodeploys tag 13.3-alpine 0Artifact Hub

vulcan 0.2.2 deploys 2 container images: library/postgres and mitre/vulcan. Across them, 83 findings1 critical, 9 high. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1k-r0, fixed in 1.1.1l-r0.

Radar Score

1,516192251

83 findings over 2 of 2 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
library/postgres×313.3-alpine192171,183
mitre/vulcan×2latest00144333

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

83 distinct across the version’s images
SeverityAdvisoryPackageFixed in
CriticalALPINE-CVE-2021-3711openssl@1.1.1k-r01.1.1l-r0
HighALPINE-CVE-2022-0778openssl@1.1.1k-r01.1.1n-r0
HighALPINE-CVE-2022-0778libretls@3.3.3p1-r23.3.3p1-r3
HighALPINE-CVE-2023-0286openssl@1.1.1k-r01.1.1t-r0
HighALPINE-CVE-2018-25032zlib@1.2.11-r31.2.12-r0
HighALPINE-CVE-2021-3712openssl@1.1.1k-r01.1.1l-r0
HighALPINE-CVE-2022-37434zlib@1.2.11-r31.2.12-r2
HighALPINE-CVE-2021-30560libxslt@1.1.34-r11.1.35-r0
HighALPINE-CVE-2022-40303libxml2@2.9.12-r12.9.14-r2
HighALPINE-CVE-2022-4450openssl@1.1.1k-r01.1.1t-r0
MediumALPINE-CVE-2022-1271xz@5.2.5-r05.2.5-r1
MediumALPINE-CVE-2022-4304openssl@1.1.1k-r01.1.1t-r0
MediumALPINE-CVE-2022-40304libxml2@2.9.12-r12.9.14-r2
MediumALPINE-CVE-2022-23308libxml2@2.9.12-r12.9.13-r0
MediumALPINE-CVE-2022-28391busybox@1.33.1-r31.33.1-r7
MediumALPINE-CVE-2023-0215openssl@1.1.1k-r01.1.1t-r0
MediumALPINE-CVE-2023-0464openssl@1.1.1k-r01.1.1t-r1
MediumALPINE-CVE-2021-42380busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2022-2309libxml2@2.9.12-r12.9.14-r1
MediumALPINE-CVE-2021-42379busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2021-42381busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2021-42385busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2022-29824libxml2@2.9.12-r12.9.14-r0
MediumALPINE-CVE-2021-42378busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2021-42382busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2021-42384busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2021-42386busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2021-33560libgcrypt@1.9.3-r01.9.4-r0
MediumALPINE-CVE-2021-42383busybox@1.33.1-r31.33.1-r6
MediumALPINE-CVE-2022-2097openssl@1.1.1k-r01.1.1q-r0
MediumGO-2026-4887github.com/docker/docker@v28.5.2+incompatibleno fix listed
MediumALPINE-CVE-2022-29458ncurses@6.2_p20210612-r06.2_p20210612-r1
LowGHSA-mh2q-q3fh-2475go.opentelemetry.io/otel@v1.38.01.41.0
LowALPINE-CVE-2023-0465openssl@1.1.1k-r01.1.1t-r2
LowGO-2026-4341stdlib@go1.25.51.24.12
LowGHSA-pxq6-2prw-chj9github.com/docker/docker@v28.5.2+incompatibleno fix listed
LowALPINE-CVE-2021-37600util-linux@2.37-r02.37.2-r0
LowALPINE-CVE-2021-3996util-linux@2.37-r02.37.3-r0
LowALPINE-CVE-2021-3995util-linux@2.37-r02.37.3-r0
LowALPINE-CVE-2021-42374busybox@1.33.1-r31.33.1-r4
LowRHSA-2026:64800glib2@2.68.4-19.el9_8.90:2.68.4-19.el9_8.10
LowRHSA-2026:61247libxml2@2.9.13-14.el9_8.20:2.9.13-14.el9_8.4
LowALPINE-CVE-2022-0563util-linux@2.37-r02.37.4-r0
LowALPINE-CVE-2021-42375busybox@1.33.1-r31.33.1-r5
LowGHSA-x86f-5xw2-fm2rgithub.com/docker/docker@v28.5.2+incompatibleno fix listed
LowGO-2026-4981stdlib@go1.25.51.25.10
LowGO-2026-4977stdlib@go1.25.51.25.10
LowGO-2026-4986stdlib@go1.25.51.25.10
LowGO-2026-4918stdlib@go1.25.51.25.10
LowGO-2026-4337stdlib@go1.25.51.24.13

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.2latest2 years ago13.3-alpine1922511,516

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/vulcan/vulcan.svg)](https://charts.stackradar.io/charts/vulcan/vulcan)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.