StackRadar

smartorchestrator 4.0.0 Helm chart

assist-iot-smart-orchestrator

Scored 18 Sept 2026

Smart Orchestrator Enabler

Version 4.0.0 2 years agodeploys tag latest 0Artifact Hub

smartorchestrator 4.0.0 deploys 14 container images: prom/prometheus, devopsfaith/krakend, library/alpine, assistiot/smart-orchestrator_cluster and 10 more. Across the 13 measured, 3,580 findings28 critical, 75 high 10 on CISA KEV. The highest contribution is DEBIAN-CVE-2026-24061 in inetutils 2:2.4-2+deb12u1, fixed in 2:2.4-2+deb12u2.

Radar Score

45,97228757262,743

3,580 findings over 13 of 14 images measured

KEV ×10 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

14 images
ImageTagVulnerabilitiesRadar Score
prom/prometheuslatest00115112
devopsfaith/krakendlatest01221321,518
library/alpine×4latest0046149
assistiot/smart-orchestrator_clusterlatest0840932,190
assistiot/smart-orchestrator_enablerlatest0840932,190
assistiot/smart-orchestrator_helmlatest03111431,657
assistiot/smart-orchestrator_mcslatest46813975,856
assistiot/smart-orchestrator_repositorylatest0840932,190
assistiot/smart-orchestrator_schedulerlatest46813725,588
markhobson/vsftpdlatest00000
library/mongo4.4.67191483518,060
library/mysql5.703111371,518
assistiot/smart-orchestrator_scheduler_mclatest131324791114,944
assistiot/smart-orchestrator_scheduler_tmlatestnot yet scanned

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,844 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-56377imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u12
LowDEBIAN-CVE-2026-73282openssh@1:9.2p1-2no fix listed
LowDEBIAN-CVE-2026-89092glibc@2.36-9+deb12u1no fix listed
LowDEBIAN-CVE-2026-90831binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-48734imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u11
LowDEBIAN-CVE-2026-18374glibc@2.36-9+deb12u1no fix listed
LowDEBIAN-CVE-2026-30936imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u8
LowDEBIAN-CVE-2026-90830binutils@2.40-2no fix listed
LowUBUNTU-CVE-2021-36084libsepol@2.7-12.7-1ubuntu0.1
LowDEBIAN-CVE-2026-6844binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-47166imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u10
LowDEBIAN-CVE-2025-1149binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-16742systemd@252.12-1~deb12u1no fix listed
LowUBUNTU-CVE-2026-54679jq@1.5+dfsg-2no fix listed
LowDEBIAN-CVE-2023-5752python-pip@23.0.1+dfsg-1no fix listed
LowGHSA-v6h2-p8h4-qcjwbrace-expansion@1.1.111.1.12
LowDEBIAN-CVE-2008-3134imagemagick@8:6.9.11.60+dfsg-1.6no fix listed
LowDEBIAN-CVE-2026-6474postgresql-15@15.3-0+deb12u115.18-0+deb12u1
LowDEBIAN-CVE-2026-86469glib2.0@2.74.6-2no fix listed
LowALPINE-CVE-2025-68160openssl@3.0.8-r33.0.19-r0
LowDEBIAN-CVE-2025-68160openssl@3.0.9-13.0.18-1~deb12u2
LowDEBIAN-CVE-2026-90828binutils@2.40-2no fix listed
LowGHSA-mrfv-m5wm-5w6wpynacl@1.4.01.6.2
LowUBUNTU-CVE-2026-53613util-linux@2.31.1-0.4ubuntu3.7no fix listed
LowUBUNTU-CVE-2026-53615util-linux@2.31.1-0.4ubuntu3.7no fix listed
LowDEBIAN-CVE-2026-34757libpng1.6@1.6.39-21.6.39-2+deb12u5
LowDEBIAN-CVE-2026-56363imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u12
LowUBUNTU-CVE-2021-36085libsepol@2.7-12.7-1ubuntu0.1
LowUBUNTU-CVE-2021-36087libsepol@2.7-12.7-1ubuntu0.1
LowDEBIAN-CVE-2025-61145tiff@4.5.0-6no fix listed
LowGHSA-4x4j-2g7c-83w6pillow@9.5.012.3.0
LowDEBIAN-CVE-2026-55628imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u12
LowDEBIAN-CVE-2026-42326imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u10
LowDEBIAN-CVE-2026-45624imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u10
LowDEBIAN-CVE-2025-69644binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-14678postgresql-15@15.3-0+deb12u115.19-0+deb12u1
LowDEBIAN-CVE-2026-18024postgresql-15@15.3-0+deb12u115.19-0+deb12u1
LowDEBIAN-CVE-2026-6470postgresql-15@15.3-0+deb12u115.19-0+deb12u1
LowGO-2026-4403stdlib@go1.22.11.23.9
LowDEBIAN-CVE-2026-31853imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u8
LowDEBIAN-CVE-2023-29383shadow@1:4.13+dfsg1-1+b11:4.13+dfsg1-1+deb12u1
LowGO-2026-5025golang.org/x/net@v0.36.00.55.0
LowDEBIAN-CVE-2026-8674glibc@2.36-9+deb12u1no fix listed
LowDEBIAN-CVE-2026-53463imagemagick@8:6.9.11.60+dfsg-1.68:6.9.11.60+dfsg-1.6+deb12u11
LowGO-2026-4970stdlib@go1.22.11.25.12
LowGHSA-jfvp-7x6p-h2pvgithub.com/opencontainers/runc@v1.1.01.1.14
LowGO-2022-0635github.com/aws/aws-sdk-go@v1.55.5no fix listed
LowDEBIAN-CVE-2025-15224curl@7.88.1-10+deb12u1no fix listed
LowDEBIAN-CVE-2026-91781binutils@2.40-2no fix listed
LowDEBIAN-CVE-2023-6228tiff@4.5.0-6no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
4.0.0latest2 years agolatest28757262,74345,972

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/assist-iot-smart-orchestrator/smartorchestrator.svg)](https://charts.stackradar.io/charts/assist-iot-smart-orchestrator/smartorchestrator)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 18 Sept 2026 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.