StackRadar

chart-app-vid Helm chart

app-vid-chartVerified publisher

Scored 14 Sept 2026

Helm Chart for movie information manager and movie advice application

Latest 0.0.7 4 years agoApp version not verified against the render 0Artifact Hub

chart-app-vid 0.0.7 deploys 2 container images: library/mongo and fimperato/sparkvid-api. Across them, 448 findings14 critical, 34 high 6 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 5.2.9.RELEASE, fixed in 5.2.20.RELEASE.

Radar Score

8,8661434154245

448 findings over 2 of 2 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
library/mongolatest00101421,254
fimperato/sparkvid-api1.0.5-RELEASE14341441037,612

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

448 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumGHSA-wx54-3278-m5g4spring-security-core@5.4.15.5.7
MediumUBUNTU-CVE-2026-33845gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowUBUNTU-CVE-2026-57433perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4
LowGHSA-g3pr-3p32-fp23micrometer-core@1.5.5no fix listed
LowALPINE-CVE-2018-1000654libtasn1@4.13-r04.14-r0
LowUBUNTU-CVE-2026-13221perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4
LowGHSA-vmq6-5m68-f53mlogback-core@1.2.31.2.13
LowGHSA-vmq6-5m68-f53mlogback-classic@1.2.31.2.13
LowGHSA-g8pj-r55q-5c2vtomcat-embed-core@9.0.389.0.81
LowGHSA-973x-65j7-xcf4aircompressor@0.100.27
LowGHSA-2fvj-hgj9-j2grjetty-security@9.4.40.v202104139.4.63
LowGHSA-v6w3-2prq-h95fjakarta.el@3.0.33.0.4
LowGHSA-c9ph-gxww-7744thymeleaf@3.0.11.RELEASE3.1.5.RELEASE
LowGHSA-c9ph-gxww-7744thymeleaf-spring5@3.0.11.RELEASE3.1.5.RELEASE
LowALPINE-CVE-2019-5188e2fsprogs@1.44.5-r01.44.5-r2
LowGHSA-fjpj-2g6w-x25rsnappy-java@1.1.8.21.1.10.1
LowUBUNTU-CVE-2026-82209curl@8.5.0-2ubuntu10.11no fix listed
LowGHSA-7v6m-28jr-rg84hibernate-validator@6.1.5.Final6.2.0.CR1
LowGHSA-vx9q-rhv9-3jvgaircompressor@0.102.0.3
LowUBUNTU-CVE-2026-12087perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4
LowGHSA-6fmv-xxpf-w3cwplexus-utils@3.2.13.6.1
LowGHSA-68mj-5wr7-6fggamqp-client@5.9.05.33.1
LowALPINE-CVE-2020-14363libx11@1.6.7-r01.6.12-r0
LowGHSA-564r-hj7v-mcr5spring-expression@5.2.9.RELEASE5.2.23.RELEASE
LowGHSA-93j5-89vc-pph4amqp-client@5.9.05.33.1
LowUBUNTU-CVE-2026-13608curl@8.5.0-2ubuntu10.11no fix listed
LowGHSA-3wrr-7qpf-2prhjackson-databind@2.11.22.14.0
LowUBUNTU-CVE-2026-63072openssl@3.0.13-0ubuntu3.123.0.13-0ubuntu3.15
LowGHSA-43xg-8wmj-cw8hspark-core_2.11@2.4.8no fix listed
LowUBUNTU-CVE-2026-80230curl@8.5.0-2ubuntu10.11no fix listed
LowGHSA-fv25-8xcx-gqjctomcat-embed-core@9.0.389.0.118
LowUBUNTU-CVE-2026-42013gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowGHSA-52cp-r559-cp3mjs-yaml@3.13.13.15.0
LowUBUNTU-CVE-2024-2236libgcrypt20@1.10.3-2ubuntu0.11.10.3-2ubuntu0.2
LowGHSA-23hv-mwm6-g8jftomcat-embed-core@9.0.389.0.106
LowUBUNTU-CVE-2026-54874openssl@3.0.13-0ubuntu3.123.0.13-0ubuntu3.15
LowGHSA-563x-q5rq-57qptomcat-embed-core@9.0.389.0.116
LowGHSA-c43q-5hpj-4crvjersey-common@2.30.12.34
LowGHSA-g8m5-722r-8whqjetty-server@9.4.40.v202104139.4.56
LowGHSA-h4h5-3hr4-j3g2protobuf-java@2.5.03.16.3
LowGHSA-hhhw-99gj-p3c3snakeyaml@1.261.31
LowUBUNTU-CVE-2026-86145pcre2@10.42-4ubuntu2.1no fix listed
LowGHSA-qv9r-c865-cp47log4j-api@2.13.32.25.5
LowGHSA-mgvc-8q2h-5pgcspring-boot-starter-actuator@2.3.4.RELEASEno fix listed
LowGHSA-5mp6-jrq3-r938tomcat-embed-core@9.0.389.0.118
LowGHSA-q4rv-gq96-w7c5jetty-server@9.4.40.v202104139.4.57.v20241219
LowALPINE-CVE-2019-1563openssl@1.1.1b-r11.1.1d-r0
LowGHSA-ghvc-7hp8-2g2vcxf-core@3.4.03.6.12
LowUBUNTU-CVE-2026-42011gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowUBUNTU-CVE-2026-9538perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.7latest4 years ago14341542458,866

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/app-vid-chart/chart-app-vid.svg)](https://charts.stackradar.io/charts/app-vid-chart/chart-app-vid)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.