StackRadar

Scored 14 Sept 2026

The Cloud-Native Ingress and API-management

Latest 0.2.2 2 years agodeploys tag 1.1.2 0Artifact Hub

openapi 0.2.2 deploys 6 container images: assistiot/open_api_backend, assistiot/open_api_kong, kong/kubernetes-ingress-controller, assistiot/open_api_frontend and 2 more. Across the 5 measured, 1,335 findings8 critical, 43 high 6 on CISA KEV. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1g-r0, fixed in 1.1.1l-r0.

Radar Score

18,277843328954

1,335 findings over 5 of 6 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
assistiot/open_api_backend1.1.23101125327,527
assistiot/open_api_kong×91.0.04728161,459
kong/kubernetes-ingress-controller2.302131311,434
assistiot/open_api_frontend1.0.106461422,648
pantsel/kongalatest1181291335,209
bitnami/postgresql13.6.0-debian-10-r52unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,142 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowDLA-4105-1tzdata@2021a-1+deb11u32025b-0+deb11u1
LowDLA-4403-1tzdata@2021a-1+deb11u32025b-0+deb11u2
LowUSN-5495-2curl@7.81.0-1ubuntu1.157.81.0-1ubuntu1.21
LowUSN-6541-2glibc@2.35-0ubuntu3.52.35-0ubuntu3.6
LowUSN-6663-1openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.15
LowUSN-7034-1ca-certificates@20230311ubuntu0.22.04.120240203~22.04.1
LowUSN-7412-2gnupg2@2.2.27-3ubuntu2.12.2.27-3ubuntu2.4
LowUSN-8091-1util-linux@2.37.2-4ubuntu32.37.2-4ubuntu3.5
LowUSN-8436-1ca-certificates@20230311ubuntu0.22.04.120260601~22.04.1
LowUSN-8625-1openssl@3.0.2-0ubuntu1.123.0.2-0ubuntu1.26
LowUSN-8688-1pam@1.4.0-11ubuntu2.31.4.0-11ubuntu2.8
LowGHSA-pxg6-pf52-xh8xcookie@0.5.00.7.0
LowUBUNTU-CVE-2025-13462python3.10@3.10.12-1~22.04.33.10.12-1~22.04.16
LowUBUNTU-CVE-2026-0965libssh@0.9.6-2ubuntu0.22.04.10.9.6-2ubuntu0.22.04.6
LowGHSA-52f5-9888-hmc6tmp@0.0.330.2.4
LowGHSA-c6rq-rjc2-86v2chownr@1.0.11.1.0
LowGHSA-442j-39wm-28r2handlebars@4.0.104.7.9
LowUBUNTU-CVE-2025-66382expat@2.4.7-1ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-24515expat@2.4.7-1ubuntu0.22.4.7-1ubuntu0.7
LowUBUNTU-CVE-2026-40228systemd@249.11-0ubuntu3.11no fix listed
LowUBUNTU-CVE-2026-32778expat@2.4.7-1ubuntu0.2no fix listed
LowGHSA-4x5r-pxfx-6jf8@babel/core@7.20.127.29.6
LowGHSA-vpq2-c234-7xj6@tootallnate/once@1.1.22.0.1
LowUBUNTU-CVE-2025-30258gnupg2@2.2.27-3ubuntu2.12.2.27-3ubuntu2.3
LowUBUNTU-CVE-2025-9165tiff@4.3.0-6ubuntu0.74.3.0-6ubuntu0.12
LowGHSA-6vgw-5pg2-w6jppip@23.3.126.0
LowUBUNTU-CVE-2026-1703python-pip@22.0.2+dfsg-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-15310python3.10@3.10.12-1~22.04.3no fix listed
LowUBUNTU-CVE-2026-53910diffutils@1:3.8-0ubuntu21:3.8-0ubuntu2.1
LowUBUNTU-CVE-2026-6879python3.10@3.10.12-1~22.04.3no fix listed
LowUBUNTU-CVE-2025-8534tiff@4.3.0-6ubuntu0.74.3.0-6ubuntu0.11
LowGHSA-vxr8-fq34-vvx9dompurify@2.3.103.4.9
LowUBUNTU-CVE-2026-0967libssh@0.9.6-2ubuntu0.22.04.10.9.6-2ubuntu0.22.04.6
LowUBUNTU-CVE-2025-66861binutils@2.38-4ubuntu2.4no fix listed
LowGHSA-c2j3-45gr-mqc4dompurify@2.3.103.4.12
LowUBUNTU-CVE-2026-18503python3.10@3.10.12-1~22.04.3no fix listed
LowGHSA-x4vx-rjvf-j5p4dompurify@2.3.10no fix listed
LowUBUNTU-CVE-2026-5958sed@4.8-1ubuntu24.8-1ubuntu2.1
LowUBUNTU-CVE-2026-6368glibc@2.35-0ubuntu3.52.35-0ubuntu3.15
LowGHSA-wxhq-pm8v-cw75clean-css@3.4.284.1.11
NoneGHSA-f96h-pmfr-66vwstarlette@0.27.00.40.0
NoneUBUNTU-CVE-2026-19582binutils@2.38-4ubuntu2.4no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.2latest2 years ago1.1.284332895418,277

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/assist-iot-open-api-management/openapi.svg)](https://charts.stackradar.io/charts/assist-iot-open-api-management/openapi)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.