关键信息 漏洞标题 Helm Charts with Specific JSON Schema Values Can Cause Memory Exhaustion 严重性 Moderate CVSS v3 base metrics: 6.5 / 10 影响版本 Affected versions: <= 3.18.4 修复版本 Patched versions: 3.18.5 描述 A Helm contributor discovered that it was possible to craft a JSON Schema file in a manner which could cause Helm to use all available memory and have an out of memory (OOM) termination. 影响 A malicious chart can point in to a device (e.g. ) or other problem file which could cause Helm to use all available memory and have an out of memory (OOM) termination. 修复措施 This issue has been resolved in Helm v3.18.5. 解决方案 Make sure that all Helm charts that are being loaded into Helm doesn't have any reference of pointing to . 参考资料 Helm's security policy is spelled out in detail in our SECURITY document. 致谢 Disclosed by Jakub Ciolek at AlphaSense. CVE ID CVE-2025-55199