StackRadar

chart-app-vid 0.0.7 Helm chart

app-vid-chartVerified publisher

Scored 14 Sept 2026

Helm Chart for movie information manager and movie advice application

Version 0.0.7 4 years agoApp version not verified against the render 0Artifact Hub

chart-app-vid 0.0.7 deploys 2 container images: library/mongo and fimperato/sparkvid-api. Across them, 448 findings14 critical, 34 high 6 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 5.2.9.RELEASE, fixed in 5.2.20.RELEASE.

Radar Score

8,8661434154245

448 findings over 2 of 2 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
library/mongolatest00101421,254
fimperato/sparkvid-api1.0.5-RELEASE14341441037,612

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

245 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-jjfh-589g-3hjxspring-boot-actuator@2.3.4.RELEASE2.7.18
LowUBUNTU-CVE-2026-85091zlib@1:1.3.dfsg-3.1ubuntu2.1no fix listed
LowGHSA-fpj8-gq4v-p354tomcat-embed-core@9.0.389.0.113
LowGHSA-5whc-4q84-fj73spring-data-mongodb@3.1.0no fix listed
LowGHSA-hgrr-935x-pq79tomcat-embed-core@9.0.389.0.110
LowGHSA-x23c-287f-qqv5spring-webmvc@5.2.9.RELEASEno fix listed
LowUBUNTU-CVE-2026-8932curl@8.5.0-2ubuntu10.118.5.0-2ubuntu10.13
LowUBUNTU-CVE-2026-75803openssl@3.0.13-0ubuntu3.123.0.13-0ubuntu3.15
LowGHSA-2883-xcg3-v3hhjs-yaml@3.13.13.15.2
LowGHSA-rc42-6c7j-7h5rspring-boot@2.3.4.RELEASEno fix listed
LowGHSA-hmr7-m48g-48f6jetty-http@9.4.40.v202104139.4.52
LowGHSA-42wg-hm62-jcwgtomcat-embed-core@9.0.389.0.106
LowUBUNTU-CVE-2026-48959perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4
LowUBUNTU-CVE-2026-59843libssh@0.10.6-2ubuntu0.40.10.6-2ubuntu0.5
LowUBUNTU-CVE-2026-3833gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowGHSA-9fw2-h3hf-293rspring-data-commons@2.3.4.RELEASEno fix listed
LowGHSA-r5w3-xv2f-j59qspring-expression@5.2.9.RELEASEno fix listed
LowUBUNTU-CVE-2026-6791glibc@2.39-0ubuntu8.82.39-0ubuntu8.9
LowALPINE-CVE-2021-23839openssl@1.1.1b-r11.1.1j-r0
LowGHSA-j26w-f9rq-mr2qjetty-servlets@9.4.40.v202104139.4.54
LowALPINE-CVE-2020-14344libx11@1.6.7-r01.6.10-r0
LowGO-2026-4341stdlib@go1.24.61.24.12
LowGHSA-6g32-pxv4-2wfjamqp-client@5.9.05.33.0
LowGHSA-2rmj-mq67-h97gspring-web@5.2.9.RELEASE5.3.38
LowUBUNTU-CVE-2026-42012gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowUBUNTU-CVE-2026-57432perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4
LowGHSA-mm8h-8587-p46hamqp-client@5.9.05.18.0
LowALPINE-CVE-2019-1547openssl@1.1.1b-r11.1.1d-r0
LowGHSA-9m3c-qcxr-9x87tomcat-embed-core@9.0.389.0.116
LowUBUNTU-CVE-2016-2781coreutils@9.4-3ubuntu6.2no fix listed
LowGHSA-36wv-v2qp-v4g4cxf-core@3.4.03.5.11
LowUBUNTU-CVE-2026-48962perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4
LowGHSA-775g-4xr8-78h8spring-expression@5.2.9.RELEASEno fix listed
LowGHSA-rfmp-97jj-h8m6spring-core@5.2.9.RELEASE5.2.18
LowUBUNTU-CVE-2026-42015gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowGHSA-x83m-pf6f-pf9ghibernate-validator@6.1.5.Final6.2.0.Final
LowUBUNTU-CVE-2026-63074openssl@3.0.13-0ubuntu3.123.0.13-0ubuntu3.15
LowGHSA-pr98-23f8-jwxvlogback-core@1.2.31.3.15
LowGHSA-qx7j-jv8m-fppramqp-client@5.9.05.31.0
LowGHSA-jhq6-gfmj-v8fxlogback-core@1.2.31.5.34
LowGHSA-4gc7-5j7h-4qphspring-context@5.2.9.RELEASEno fix listed
LowGHSA-4gc7-5j7h-4qphspring-web@5.2.9.RELEASEno fix listed
LowGHSA-4g9r-vxhx-9pgxcommons-compress@1.4.11.26.0
LowUBUNTU-CVE-2026-7017perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4
LowUBUNTU-CVE-2026-76642util-linux@2.39.3-9ubuntu6.5no fix listed
LowGHSA-72pg-x5f8-j25jspring-webmvc@5.2.9.RELEASEno fix listed
LowGHSA-mq64-j8f9-9gcjspring-webmvc@5.2.9.RELEASEno fix listed
LowUBUNTU-CVE-2026-59847libssh@0.10.6-2ubuntu0.40.10.6-2ubuntu0.5
LowGHSA-5m4m-73w9-8433spring-data-commons@2.3.4.RELEASEno fix listed
LowGHSA-6gf2-pvqw-37phspring-core@5.2.9.RELEASE5.2.19

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.7latest4 years ago14341542458,866

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/app-vid-chart/chart-app-vid.svg)](https://charts.stackradar.io/charts/app-vid-chart/chart-app-vid)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.