StackRadar

ceph-csi-rbd 0.1.13 Helm chart

wikimedia

Scored 14 Sept 2026

Container Storage Interface (CSI) driver, provisioner, snapshotter, resizer and attacher for Ceph RBD

Version 0.1.13 1 month agoapp version 3.7.2 0Artifact Hub

ceph-csi-rbd 0.1.13 deploys 6 container images: registry.k8s.io/sig-storage/csi-node-driver-registrar, quay.io/cephcsi/cephcsi, gcr.io/k8s-staging-sig-storage/csi-provisioner, registry.k8s.io/sig-storage/csi-resizer and 2 more. Across them, 1,101 findings0 critical, 17 high 6 on CISA KEV. The highest contribution is GHSA-x4qr-2fvf-3mr5 in cryptography 3.2.1, fixed in 39.0.1.

Radar Score

11,784017145939

1,101 findings over 6 of 6 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
registry.k8s.io/sig-storage/csi-node-driver-registrarv2.5.102121431,550
quay.io/cephcsi/cephcsi×5v3.7.207792444,188
gcr.io/k8s-staging-sig-storage/csi-provisionerv3.2.102131381,499
registry.k8s.io/sig-storage/csi-resizerv1.5.002141381,524
registry.k8s.io/sig-storage/csi-snapshotterv6.0.102141381,524
registry.k8s.io/sig-storage/csi-attacherv3.5.002131381,499

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

361 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumGHSA-j8r2-6x86-q33qrequests@2.20.02.31.0
MediumGHSA-69ch-w2m2-3vjpgolang.org/x/text@v0.3.70.3.8
MediumPYSEC-2023-192urllib3@1.24.22.0.6
MediumGO-2022-0433stdlib@go1.181.17.9
MediumGHSA-wqvq-5m8c-6g24urllib3@1.24.21.25.9
MediumGHSA-xg9f-g7g7-2323werkzeug@0.12.22.2.3
MediumGHSA-cgcv-5272-97prk8s.io/kubernetes@v1.24.41.24.15
MediumPYSEC-2024-60idna@2.53.7
MediumGHSA-3f84-rpwh-47g6waitress@1.2.13.0.1
MediumGHSA-38j9-7pp9-2hjwgithub.com/hashicorp/vault@v1.4.21.5.9
MediumGHSA-xp26-p53h-6h2plxml@4.2.34.2.5
MediumGHSA-ffqj-6fqr-9h24pyjwt@1.6.12.4.0
MediumGHSA-8r3f-844c-mc37google.golang.org/protobuf@v1.27.11.33.0
MediumGHSA-m2qf-hxjv-5gpqflask@0.12.22.2.5
MediumGHSA-9v9h-cgj8-h64pcryptography@3.2.142.0.2
MediumGHSA-g3rq-g295-4j3mjinja2@2.10.12.11.3
MediumPYSEC-2022-203werkzeug@0.12.22.1.1
MediumGHSA-x527-x647-q7gggolang.org/x/crypto@v0.0.0-20220214200702-86341886e2920.52.0
MediumGHSA-5545-2q6w-2gh6numpy@1.14.31.19
MediumGHSA-2xpw-w6gg-jr37urllib3@1.24.22.6.0
MediumGHSA-gm62-xv2j-4w53urllib3@1.24.22.6.0
MediumGHSA-3ww4-gg4f-jr7fcryptography@3.2.142.0.0
MediumGHSA-r64q-w8jr-g9qpurllib3@1.24.21.24.3
MediumGHSA-vgwf-h737-ff37golang.org/x/crypto@v0.0.0-20220214200702-86341886e2920.52.0
MediumGHSA-c35q-ffpf-5qpmasyncssh@2.7.02.14.1
MediumPYSEC-2023-221werkzeug@0.12.22.3.8
MediumGHSA-f5wc-c3c7-36mcgolang.org/x/crypto@v0.0.0-20220214200702-86341886e2920.52.0
MediumPYSEC-2024-230certifi@2018.10.152024.7.4
MediumGHSA-p782-xgp4-8hr8golang.org/x/sys@v0.0.0-20220209214540-3681064d51580.0.0-20220412211240-33da011f77ad
MediumPYSEC-2023-254cryptography@3.2.141.0.6
MediumGHSA-2h4p-vjrc-8xpqmako@1.0.6.dev01.3.12
MediumGHSA-rm3j-f69w-wqmqgolang.org/x/crypto@v0.0.0-20220214200702-86341886e2920.52.0
MediumGHSA-wrxv-2j5q-m38wlxml@4.2.34.9.1
MediumGHSA-hcg3-q754-cr77golang.org/x/crypto@v0.0.0-20220214200702-86341886e2920.35.0
MediumGHSA-h4m5-qpfp-3mpvbabel@2.5.12.9.1
MediumGO-2022-1144stdlib@go1.181.18.9
MediumGHSA-6v2p-p543-phr9golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c80.27.0
MediumGHSA-w7pp-m8wf-vj6rcryptography@3.2.139.0.1
MediumGHSA-jr27-m4p2-rc6rpyasn1@0.3.70.6.3
MediumGHSA-5xp3-jfq3-5q8xpip@9.0.321.1
LowPYSEC-2026-2132click@6.78.3.3
LowGHSA-wmg5-g953-qqfwgithub.com/hashicorp/vault@v1.4.21.10.11
LowGHSA-89gr-r52h-f8rxgolang.org/x/crypto@v0.0.0-20220214200702-86341886e2920.52.0
LowGHSA-qc2g-gmh6-95p4k8s.io/kubernetes@v1.24.41.24.15
LowGHSA-jppx-rxg9-jmrxgolang.org/x/crypto@v0.0.0-20220214200702-86341886e2920.52.0
LowGHSA-4qhc-v8r6-8vwmgithub.com/hashicorp/vault@v1.4.21.13.10
LowGHSA-88v5-9hxc-f85rgithub.com/hashicorp/vault@v1.4.2no fix listed
LowGHSA-8f82-53h8-2p34github.com/hashicorp/vault@v1.4.21.20.3
LowGO-2023-1571stdlib@go1.181.19.6
LowGHSA-vv39-3w5q-974qk8s.io/kubernetes@v1.24.41.29.13

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.13latest1 month ago3.7.201714593911,784

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/wikimedia/ceph-csi-rbd.svg)](https://charts.stackradar.io/charts/wikimedia/ceph-csi-rbd)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.