StackRadar

wazuh Helm chart

wazuh-helm-eksVerified publisher

Scored 14 Sept 2026

Production-ready Wazuh SIEM deployment for Kubernetes with Vault/ESO integration (optimized for EKS Auto Mode)

Latest 1.2.10 5 months agoapp version 4.14.4 0Artifact Hub

wazuh 1.2.10 deploys 6 container images: public.ecr.aws/docker/library/busybox, wazuh/wazuh-agent, wazuh/wazuh-dashboard, wazuh/wazuh-indexer and 2 more. Across the 5 measured, 487 findings0 critical, 7 high 2 on CISA KEV. The highest contribution is GHSA-86qp-5c8j-p5mr in starlette 0.49.1, fixed in 1.0.1.

Radar Score

5,4840769411

487 findings over 5 of 6 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
public.ecr.aws/docker/library/busybox×61.3600000
wazuh/wazuh-agent4.14.400000
wazuh/wazuh-dashboard4.14.402211311,776
wazuh/wazuh-indexer×24.14.4001248718
wazuh/wazuh-manager4.14.405362322,990
public.ecr.aws/bitnami/kubectl×41.32.3-debian-12-r5unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

487 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-993g-76c3-p5m4pyjwt@2.10.12.13.0
LowGO-2026-4403stdlib@go1.14.121.23.9
LowGO-2026-5025golang.org/x/net@v0.0.0-20200202094626-16171245cfb20.55.0
LowGO-2026-4970stdlib@go1.14.121.25.12
LowGHSA-vffw-93wf-4j4qpython-multipart@0.0.220.0.30
LowGO-2026-5027golang.org/x/net@v0.0.0-20200202094626-16171245cfb20.55.0
LowGO-2026-5029golang.org/x/net@v0.0.0-20200202094626-16171245cfb20.55.0
LowGO-2026-5030golang.org/x/net@v0.0.0-20200202094626-16171245cfb20.55.0
LowGHSA-58qw-9mgm-455vpip@23.3.226.1
LowGHSA-6jv3-5f52-599mpython-multipart@0.0.220.0.30
LowGO-2026-4602stdlib@go1.14.121.25.8
LowGO-2026-5622github.com/containerd/containerd@v1.3.3no fix listed
LowGHSA-7rx3-28cr-v5whhandlebars@4.7.74.7.9
LowGHSA-xhjh-pmcv-23jwaxios@1.12.21.15.1
LowGO-2026-5024golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae0.44.0
LowGHSA-qqc5-rgcc-cjqhgo.elastic.co/apm@v1.8.1-0.20200909061013-2aef45b9cf4b1.11.0
LowGO-2022-0360github.com/containerd/containerd@v1.3.31.4.12
LowGO-2022-0379github.com/docker/distribution@v2.7.1+incompatible2.8.0+incompatible
LowGO-2023-2153google.golang.org/grpc@v1.29.11.56.3
LowGO-2023-2412github.com/containerd/containerd@v1.3.31.6.26
LowGO-2024-2846github.com/containerd/containerd@v1.3.31.5.11
LowGO-2026-5932golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37no fix listed
LowGO-2026-6061google.golang.org/grpc@v1.29.11.82.1
LowGO-2026-6278github.com/gorilla/websocket@v1.4.11.5.3
LowGHSA-pxg6-pf52-xh8xcookie@0.5.00.7.0
LowGHSA-52f5-9888-hmc6tmp@0.2.30.2.4
LowGHSA-442j-39wm-28r2handlebars@4.7.74.7.9
LowGHSA-j965-2qgj-vjmqaws-sdk@2.1271.0no fix listed
LowGHSA-vpq2-c234-7xj6@tootallnate/once@1.1.22.0.1
LowGHSA-6vgw-5pg2-w6jppip@23.3.226.0
LowGHSA-5j5w-g665-5m35github.com/containerd/containerd@v1.3.31.4.12
LowGHSA-77vh-xpmg-72qhgithub.com/opencontainers/image-spec@v1.0.2-0.20190823105129-775207bd45b61.0.2
LowGHSA-qq97-vm5h-rrhggithub.com/docker/distribution@v2.7.1+incompatible2.8.0
LowGHSA-vxr8-fq34-vvx9dompurify@3.2.43.4.9
LowGHSA-c2j3-45gr-mqc4dompurify@3.2.43.4.12
LowGHSA-x4vx-rjvf-j5p4dompurify@3.2.4no fix listed
LowGHSA-c9cp-9c75-9v8cgithub.com/containerd/containerd@v1.3.31.5.11

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.2.10latest5 months ago4.14.407694115,484

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/wazuh-helm-eks/wazuh.svg)](https://charts.stackradar.io/charts/wazuh-helm-eks/wazuh)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.