StackRadar

openapi 0.2.2 Helm chart

assist-iot-open-api-management

Scored 14 Sept 2026

The Cloud-Native Ingress and API-management

Version 0.2.2 2 years agodeploys tag 1.1.2 0Artifact Hub

openapi 0.2.2 deploys 6 container images: assistiot/open_api_backend, assistiot/open_api_kong, kong/kubernetes-ingress-controller, assistiot/open_api_frontend and 2 more. Across the 5 measured, 1,335 findings8 critical, 43 high 6 on CISA KEV. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1g-r0, fixed in 1.1.1l-r0.

Radar Score

18,277843328954

1,335 findings over 5 of 6 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
assistiot/open_api_backend1.1.23101125327,527
assistiot/open_api_kong×91.0.04728161,459
kong/kubernetes-ingress-controller2.302131311,434
assistiot/open_api_frontend1.0.106461422,648
pantsel/kongalatest1181291335,209
bitnami/postgresql13.6.0-debian-10-r52unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,142 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumUBUNTU-CVE-2025-13836python3.10@3.10.12-1~22.04.33.10.12-1~22.04.13
MediumUBUNTU-CVE-2024-0553gnutls28@3.7.3-4ubuntu1.33.7.3-4ubuntu1.4
MediumGHSA-rc47-6667-2j5jhttp-cache-semantics@3.8.14.1.1
MediumUBUNTU-CVE-2026-18924curl@7.81.0-1ubuntu1.15no fix listed
MediumUBUNTU-CVE-2023-32681python-pip@22.0.2+dfsg-1ubuntu0.422.0.2+dfsg-1ubuntu0.7
MediumUBUNTU-CVE-2022-4899libzstd@1.4.8+dfsg-3build1no fix listed
MediumGHSA-9qj9-36jm-prpvfresh@0.3.00.5.2
MediumALPINE-CVE-2023-5678openssl@1.1.1n-r01.1.1w-r1
MediumUBUNTU-CVE-2023-5678openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.14
MediumUBUNTU-CVE-2025-9230openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.20
MediumGHSA-4xc9-xhrj-v574lodash@2.4.14.17.11
MediumGHSA-fvqr-27wr-82fmlodash@2.4.14.17.5
MediumGHSA-69ch-w2m2-3vjpgolang.org/x/text@v0.3.70.3.8
MediumGHSA-rf6f-7fwh-wjghflatted@3.2.73.4.2
MediumUBUNTU-CVE-2026-11856curl@7.81.0-1ubuntu1.157.81.0-1ubuntu1.26
MediumALPINE-CVE-2023-23914curl@7.83.1-r47.83.1-r6
MediumUBUNTU-CVE-2024-7006tiff@4.3.0-6ubuntu0.74.3.0-6ubuntu0.10
MediumUBUNTU-CVE-2023-6129openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.14
MediumGHSA-2jv5-9r88-3w3ppython-multipart@0.0.60.0.7
MediumPYSEC-2024-38fastapi@0.105.00.109.1
MediumGO-2022-0433stdlib@go1.181.17.9
MediumGHSA-q75g-2496-mxppparsejson@0.0.3no fix listed
MediumUBUNTU-CVE-2026-8925curl@7.81.0-1ubuntu1.157.81.0-1ubuntu1.25
MediumGHSA-grv7-fg5c-xmjgbraces@3.0.23.0.3
MediumGHSA-mf6x-7mm4-x2g7stringstream@0.0.50.0.6
MediumGHSA-pp7h-53gx-mx7rbl@1.0.31.2.3
MediumUBUNTU-CVE-2024-0567gnutls28@3.7.3-4ubuntu1.33.7.3-4ubuntu1.4
MediumGHSA-7mc5-chhp-fmc3negotiator@0.5.30.6.1
MediumPYSEC-2024-60idna@3.63.7
MediumGHSA-3h5v-q93c-6h6qws@7.5.97.5.10
MediumUBUNTU-CVE-2026-42009gnutls28@3.7.3-4ubuntu1.33.7.3-4ubuntu1.9
MediumUBUNTU-CVE-2026-63076openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.29
MediumUBUNTU-CVE-2025-59375expat@2.4.7-1ubuntu0.22.4.7-1ubuntu0.7
MediumGHSA-pjwm-pj3p-43mvaxios@0.26.10.32.0
MediumUBUNTU-CVE-2024-8176expat@2.4.7-1ubuntu0.22.4.7-1ubuntu0.6
MediumGHSA-c429-5p7v-vgjphoek@2.16.3no fix listed
MediumGHSA-r7qp-cfhv-p84wengine.io@1.8.33.6.1
MediumALPINE-CVE-2023-28320curl@7.83.1-r48.1.0-r0
MediumUBUNTU-CVE-2024-9681curl@7.81.0-1ubuntu1.157.81.0-1ubuntu1.19
MediumALPINE-CVE-2023-35945nghttp2@1.47.0-r01.47.0-r1
MediumUBUNTU-CVE-2024-45492expat@2.4.7-1ubuntu0.22.4.7-1ubuntu0.4
MediumUBUNTU-CVE-2025-9900tiff@4.3.0-6ubuntu0.74.3.0-6ubuntu0.12
MediumGHSA-7xfp-9c55-5vqjrequest@2.67.02.68.0
MediumGHSA-43f8-2h32-f4cjhosted-git-info@2.5.02.8.9
MediumUBUNTU-CVE-2023-37920python-pip@22.0.2+dfsg-1ubuntu0.4no fix listed
MediumUBUNTU-CVE-2026-33846gnutls28@3.7.3-4ubuntu1.33.7.3-4ubuntu1.9
MediumGHSA-8r3f-844c-mc37google.golang.org/protobuf@v1.27.11.33.0
MediumUBUNTU-CVE-2024-0727openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.14
MediumALPINE-CVE-2022-43552curl@7.83.1-r47.83.1-r5
MediumGHSA-x55w-vjjp-222ri@0.3.50.3.7

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.2latest2 years ago1.1.284332895418,277

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/assist-iot-open-api-management/openapi.svg)](https://charts.stackradar.io/charts/assist-iot-open-api-management/openapi)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.