backend 26.9.3 Helm chart
zymtraceOfficialVerified publisherScored 26 Sept 2026
Deploy zymtrace's self-hosted services
Version 26.9.3 todaydeploys tag 25.3.14.14 1Artifact Hub
backend 26.9.3 deploys 6 container images: clickhouse/clickhouse-server, pgsty/silo, library/postgres, ghcr.io/zystem-io/zymtrace-pub-gateway and 2 more. Across them, 838 findings — 4 critical, 5 high. The highest contribution is ALPINE-CVE-2025-15467 in openssl 3.5.0-r0, fixed in 3.5.5-r0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| clickhouse/ | 25.3.14.14 | 1243128 | 2,148 |
| pgsty/ | RELEASE.2026-09-03T13-18-01Z | 00614 | 207 |
| library/ | 17.4 | 1161304 | 3,986 |
| ghcr.io/ | 26.9.3 | 1243120 | 2,070 |
| ghcr.io/ | 26.9.3 | 0000 | 0 |
| ghcr.io/ | 26.9.3 | 103575 | 1,355 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2025-29088 | sqlite3 | no fix listed |
| Low | ALPINE-CVE-2026-42769 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2026-56132 | expat | 2.8.2-r0 |
| Low | GO-2025-3956 | stdlib | 1.23.12 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GO-2026-4803 | github.com/ | no fix listed |
| Low | UBUNTU-CVE-2025-45582 | tar | 1.34+dfsg-1ubuntu0.1.22.04.4 |
| Low | UBUNTU-CVE-2026-11850 | krb5 | 1.19.2-2ubuntu0.8 |
| Low | GO-2025-4012 | stdlib | 1.24.8 |
| Low | UBUNTU-CVE-2026-15146 | wget | 1.21.2-2ubuntu1.4 |
| Low | ALPINE-CVE-2025-15469 | openssl | 3.5.5-r0 |
| Low | GO-2025-4011 | stdlib | 1.24.8 |
| Low | GO-2025-4015 | stdlib | 1.24.8 |
| Low | DEBIAN-CVE-2005-2541 | tar | no fix listed |
| Low | ALPINE-CVE-2025-64506 | libpng | 1.6.51-r0 |
| Low | ALPINE-CVE-2026-27171 | zlib | 1.3.2-r0 |
| Low | DEBIAN-CVE-2026-27171 | zlib | no fix listed |
| Low | UBUNTU-CVE-2026-86805 | glibc | no fix listed |
| Low | GO-2025-3373 | stdlib | 1.22.11 |
| Low | GO-2026-5757 | github.com/ | no fix listed |
| Low | DEBIAN-CVE-2026-5419 | gnutls28 | 3.7.9-2+deb12u7 |
| Low | GO-2025-4155 | stdlib | 1.24.11 |
| Low | ALPINE-CVE-2026-32777 | expat | 2.7.5-r0 |
| Low | DEBIAN-CVE-2025-10911 | libxslt | no fix listed |
| Low | GO-2024-2888 | stdlib | 1.21.11 |
| Low | ALPINE-CVE-2026-22795 | openssl | 3.5.5-r0 |
| Low | UBUNTU-CVE-2026-22795 | openssl | 3.0.2-0ubuntu1.21 |
| Low | GO-2025-4008 | stdlib | 1.24.8 |
| Low | GO-2025-4010 | stdlib | 1.24.8 |
| Low | DEBIAN-CVE-2026-76781 | libxml2 | no fix listed |
| Low | ALPINE-CVE-2026-50219 | expat | 2.8.2-r0 |
| Low | ALPINE-CVE-2026-56412 | expat | 2.8.2-r0 |
| Low | UBUNTU-CVE-2026-29111 | systemd | 249.11-0ubuntu3.19 |
| Low | UBUNTU-CVE-2024-10041 | pam | no fix listed |
| Low | GO-2023-1840 | stdlib | 1.19.10 |
| Low | DEBIAN-CVE-2026-0989 | libxml2 | 2.9.14+dfsg-1.3~deb12u6 |
| Low | DSA-5990-1 | libxml2 | 2.9.14+dfsg-1.3~deb12u4 |
| Low | DEBIAN-CVE-2026-50812 | sqlite3 | no fix listed |
| Low | ALPINE-CVE-2026-32776 | expat | 2.7.5-r0 |
| Low | UBUNTU-CVE-2026-15059 | systemd | 249.11-0ubuntu3.22 |
| Low | GO-2025-4014 | stdlib | 1.24.8 |
| Low | GO-2026-4976 | stdlib | 1.25.10 |
| Low | GO-2026-5856 | stdlib | 1.25.12 |
| Low | GO-2026-5039 | stdlib | 1.25.11 |
| Low | ALPINE-CVE-2026-32778 | expat | 2.7.5-r0 |
| Low | ALPINE-CVE-2026-45446 | openssl | 3.5.7-r0 |
| Low | UBUNTU-CVE-2026-45446 | openssl | 3.0.2-0ubuntu1.25 |
| Low | DEBIAN-CVE-2025-9714 | libxml2 | 2.9.14+dfsg-1.3~deb12u5 |
| Low | GO-2025-3503 | stdlib | 1.23.7 |
| Low | ALPINE-CVE-2026-4367 | libxpm | 3.5.19-r0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 26.9.3latest | today | 25.3.14.14 | 45188641 | 9,766 |
| 26.9.2 | 10 days ago | 25.3.14.14 | 45183646 | 9,733 |
| 26.9.1 | 10 days ago | 25.3.14.14 | 28199756 | 10,901 |
| 26.9.0 | 21 days ago | 25.3.2.39 | 29196770 | 11,077 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.