12 Total advisories
12 Vulnerabilities
0 Malware
Dependency scanning
Check whether helm.sh/helm is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
LOW 3.7
CVE-2020-15184
Aliases are never checked in helm
LOW 3.4
CVE-2020-15186
Improper Sanitizing of plugin names in helm
LOW 2.2
CVE-2020-15185
Repository index file allows for duplicates of the same chart entry in helm
LOW 3.0
CVE-2020-15187
plugin.yaml file allows for duplicate entries in helm
UNKNOWN
CVE-2019-1010275
Helm Improper Certificate Validation in helm.sh/helm
UNKNOWN
CVE-2019-1000008
Helm Path Traversal in helm.sh/helm
UNKNOWN
CVE-2019-18658
Helm Unsafe Link Following in helm.sh/helm
UNKNOWN
CVE-2025-55199
Helm Charts with Specific JSON Schema Values Can Cause Memory Exhaustion in helm.sh/helm
UNKNOWN
CVE-2025-55198
Helm May Panic Due To Incorrect YAML Content in helm.sh/helm
CRITICAL 9.8
CVE-2019-1010275
Helm Improper Certificate Validation
CRITICAL 9.8
CVE-2019-18658
Helm Unsafe Link Following
MEDIUM 6.5
CVE-2019-1000008
Helm Path Traversal
Browse more Go advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes