StackRadar

Scored 14 Sept 2026

The Cloud-Native Ingress and API-management

Latest 0.2.2 2 years agodeploys tag 1.1.2 0Artifact Hub

openapi 0.2.2 deploys 6 container images: assistiot/open_api_backend, assistiot/open_api_kong, kong/kubernetes-ingress-controller, assistiot/open_api_frontend and 2 more. Across the 5 measured, 1,335 findings8 critical, 43 high 6 on CISA KEV. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1g-r0, fixed in 1.1.1l-r0.

Radar Score

18,277843328954

1,335 findings over 5 of 6 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
assistiot/open_api_backend1.1.23101125327,527
assistiot/open_api_kong×91.0.04728161,459
kong/kubernetes-ingress-controller2.302131311,434
assistiot/open_api_frontend1.0.106461422,648
pantsel/kongalatest1181291335,209
bitnami/postgresql13.6.0-debian-10-r52unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

298 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumGHSA-hrpp-h998-j3ppqs@6.5.26.5.3
MediumGHSA-3w5v-p54c-f74xejs@0.8.82.5.5
MediumGO-2024-2687stdlib@go1.18.61.21.9
MediumGHSA-2p57-rm9w-gvfpip@1.1.5no fix listed
MediumGHSA-h4j5-c7cj-74xgxmlhttprequest-ssl@1.5.31.6.2
MediumUBUNTU-CVE-2024-7264curl@7.81.0-1ubuntu1.157.81.0-1ubuntu1.17
MediumGHSA-xvch-5gv4-984hminimist@1.2.51.2.6
MediumGHSA-r628-mhmh-qjhwtar@4.4.134.4.15
MediumGHSA-765h-qjxv-5f44handlebars@4.0.104.7.7
MediumUBUNTU-CVE-2024-5535openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.17
MediumALPINE-CVE-2022-32221curl@7.83.1-r37.83.1-r4
MediumGHSA-cf4h-3jhx-xvhqunderscore@1.6.01.12.1
MediumGHSA-957j-59c2-j692getobject@0.1.01.0.0
MediumGHSA-jf85-cpcp-j695lodash@2.4.14.17.12
MediumGHSA-9v3m-8fp8-mj99bootstrap@3.3.73.4.1
MediumGHSA-896r-f27r-55mwjson-schema@0.2.30.4.0
MediumUBUNTU-CVE-2018-6952patch@2.7.6-7build2no fix listed
MediumALPINE-CVE-2022-4304openssl@1.1.1n-r01.1.1t-r0
MediumGHSA-gwg9-rgvj-4h5jmorgan@1.6.11.9.1
MediumUBUNTU-CVE-2020-10735python3.10@3.10.12-1~22.04.3no fix listed
MediumALPINE-CVE-2023-29007git@2.36.2-r02.36.6-r0
MediumGHSA-jp4x-w63m-7wgmhoek@2.16.34.2.1
MediumGHSA-x6fg-f45m-jf5qsemver@2.3.24.3.2
MediumGHSA-pch5-whg9-qr2rnetmask@1.0.62.0.1
MediumUBUNTU-CVE-2026-45447openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.25
MediumGHSA-8hfj-j24r-96c4moment@2.25.12.29.2
MediumALPINE-CVE-2022-39260git@2.36.2-r02.36.3-r0
MediumGHSA-wc69-rhjr-hc9gmoment@2.25.12.29.4
MediumGHSA-v8w9-2789-6hhrbson@1.0.41.1.4
MediumGHSA-48ww-j4fc-435pnodemailer@4.7.06.4.16
MediumGHSA-p6mc-m468-83gwlodash@3.10.14.17.19
MediumGHSA-hr2v-3952-633qdeep-extend@0.4.20.5.1
MediumGHSA-h68q-55jf-x68wchart.js@2.9.32.9.4
MediumGHSA-vx3p-948g-6vhqssri@6.0.16.0.2
MediumALPINE-CVE-2021-36159apk-tools@2.10.5-r02.10.7-r0
MediumGHSA-vvpx-j8f3-3w6hgolang.org/x/net@v0.0.0-20220722155237-a158d28d115b0.7.0
MediumALPINE-CVE-2023-0215openssl@1.1.1n-r01.1.1t-r0
MediumGHSA-9r2w-394v-53qctar@4.4.134.4.16
MediumGHSA-8v3j-jfg3-v3fvsails@0.12.14no fix listed
MediumGHSA-72mh-269x-7mh5xmlhttprequest-ssl@1.5.31.6.1
MediumGHSA-3cqr-58rm-57f8handlebars@4.0.104.5.3
MediumGHSA-hp87-p4gw-j4gqgopkg.in/yaml.v3@v3.0.0-20210107192922-496545a6307b3.0.1
MediumALPINE-CVE-2022-42915curl@7.83.1-r37.83.1-r4
MediumGHSA-g78m-2chm-r7qvwebsocket-extensions@0.1.30.1.4
MediumGHSA-w3h3-4rj7-4ph4gunicorn@21.2.022.0.0
MediumUBUNTU-CVE-2021-46848libtasn1-6@4.18.0-4build14.18.0-4ubuntu0.2
MediumGHSA-prc3-vjfx-vhm9angular@1.7.9no fix listed
MediumGHSA-2w6w-674q-4c4qhandlebars@4.0.104.7.9
MediumGHSA-4374-p667-p6c8golang.org/x/net@v0.0.0-20220722155237-a158d28d115b0.17.0
MediumGHSA-62gr-4qp9-h98fhandlebars@4.0.104.4.5

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.2latest2 years ago1.1.284332895418,277

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/assist-iot-open-api-management/openapi.svg)](https://charts.stackradar.io/charts/assist-iot-open-api-management/openapi)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.