StackRadar

nas-apps Helm chart

awesomeVerified publisher

Scored 14 Sept 2026

nas-apps

Latest 2.0.0deploys tag latest 0Artifact Hub

nas-apps 2.0.0 deploys 8 container images: adolfintel/speedtest, linuxserver/jackett, jxxghp/nas-tools, library/nginx and 4 more. Across the 7 measured, 549 findings1 critical, 9 high 4 on CISA KEV. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1k-r0, fixed in 1.1.1l-r0.

Radar Score

7,15219124415

549 findings over 7 of 8 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

8 images
ImageTagVulnerabilitiesRadar Score
adolfintel/speedtestlatest0420691,404
linuxserver/jackettlatest00420255
jxxghp/nas-toolslatestunmeasured
library/nginxlatest00301451,827
library/busybox×2stable00000
linuxserver/qbittorrentlatest00523303
ltdstudio/terraforming-marslatest1548662,109
wettyoss/wettylatest0017921,254

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

488 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-86144libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3no fix listed
LowALPINE-CVE-2026-59997openssh@10.3_p1-r010.3_p1-r1
LowDLA-4130-1shadow@1:4.8.1-11:4.8.1-1+deb11u1
LowDLA-4217-1icu@67.1-767.1-7+deb11u1
LowALPINE-CVE-2026-40612jq@1.8.1-r01.8.2-r0
LowALPINE-CVE-2026-44777jq@1.8.1-r01.8.2-r0
LowGHSA-5j4c-8p2g-v4jxvue@2.6.103.0.0-alpha.0
LowDLA-4396-1libpng1.6@1.6.37-31.6.37-3+deb11u1
LowDEBIAN-CVE-2026-50812sqlite3@3.46.1-7+deb13u1no fix listed
LowDEBIAN-CVE-2026-18495tiff@4.7.0-3+deb13u3no fix listed
LowDLA-4491-1glib2.0@2.66.8-12.66.8-1+deb11u8
LowALPINE-CVE-2026-41256jq@1.8.1-r01.8.2-r0
LowALPINE-CVE-2026-43894jq@1.8.1-r01.8.2-r0
LowGHSA-w9m9-85wc-3x92postcss-selector-parser@7.1.17.1.3
LowALPINE-CVE-2026-43896jq@1.8.1-r01.8.2-r0
LowDEBIAN-CVE-2026-18938p11-kit@0.25.5-3no fix listed
LowDEBIAN-CVE-2025-5278coreutils@9.7-3no fix listed
LowALPINE-CVE-2026-47770jq@1.8.1-r01.8.2-r0
LowALPINE-CVE-2026-41257jq@1.8.1-r01.8.2-r0
LowGHSA-6rw7-vpxm-498pqs@6.5.26.14.1
LowDLA-4143-1glibc@2.31-13+deb11u22.31-13+deb11u12
LowDLA-4195-1krb5@1.18.3-6+deb11u11.18.3-6+deb11u7
LowDEBIAN-CVE-2025-15649perl@5.40.1-65.40.1-6+deb13u1
LowALPINE-CVE-2026-0864python3@3.14.5-r03.14.7-r0
LowDEBIAN-CVE-2010-4756glibc@2.41-12+deb13u3no fix listed
LowGHSA-v422-hmwv-36x6body-parser@2.2.22.3.0
LowDEBIAN-CVE-2025-6141ncurses@6.5+20250216-2no fix listed
LowDEBIAN-CVE-2026-15059systemd@257.13-1~deb13u1no fix listed
LowDEBIAN-CVE-2024-56433shadow@1:4.17.4-2no fix listed
LowDEBIAN-CVE-2026-41991gzip@1.13-11.13-1+deb13u1
LowDEBIAN-CVE-2026-89157pcre2@10.46-1~deb13u110.46-1~deb13u2
LowDEBIAN-CVE-2025-61143tiff@4.7.0-3+deb13u3no fix listed
LowALPINE-CVE-2026-73282openssh@10.3_p1-r010.3_p1-r1
LowDEBIAN-CVE-2026-89092glibc@2.41-12+deb13u3no fix listed
LowDEBIAN-CVE-2026-18374glibc@2.41-12+deb13u3no fix listed
LowDEBIAN-CVE-2013-0337nginx@1.31.5-1~trixieno fix listed
LowDEBIAN-CVE-2026-16742systemd@257.13-1~deb13u1no fix listed
LowALPINE-CVE-2026-54679jq@1.8.1-r01.8.2-r0
LowGHSA-v6h2-p8h4-qcjwbrace-expansion@1.1.111.1.12
LowDEBIAN-CVE-2025-61145tiff@4.7.0-3+deb13u3no fix listed
LowGHSA-x5fp-wj9c-mxmxqs@6.15.26.16.0
LowDEBIAN-CVE-2025-15224curl@8.14.1-2+deb13u4no fix listed
LowDEBIAN-CVE-2026-22185openldap@2.6.10+dfsg-1no fix listed
LowDEBIAN-CVE-2026-3713libpng1.6@1.6.48-1+deb13u5no fix listed
LowDEBIAN-CVE-2026-42250bzip2@1.0.8-6no fix listed
LowDEBIAN-CVE-2026-39113sqlite3@3.46.1-7+deb13u1no fix listed
LowALPINE-CVE-2026-43895jq@1.8.1-r01.8.2-r0
LowDEBIAN-CVE-2026-3949libheif@1.19.8-1+deb13u1no fix listed
LowGHSA-78xj-cgh5-2h22ip@1.1.51.1.9
LowDEBIAN-CVE-2026-18508tar@1.35+dfsg-3.1no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
2.0.0latestlatest191244157,152

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/awesome/nas-apps.svg)](https://charts.stackradar.io/charts/awesome/nas-apps)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.