StackRadar

event-store-service Helm chart

choerodon

Scored 14 Sept 2026

A Helm chart for Kubernetes

Latest 0.8.0 4 years agodeploys tag 0.8.0 0Artifact Hub

event-store-service 0.8.0 deploys 2 container images: choerodon/event-store-service and registry.cn-hangzhou.aliyuncs.com/choerodon-tools/dbtool. Across the 1 measured, 346 findings17 critical, 62 high 8 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-webmvc 4.3.8.RELEASE, fixed in 5.2.20.RELEASE.

Radar Score

9,808176216998

346 findings over 1 of 2 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
choerodon/event-store-service×30.8.01762169989,808
registry.cn-hangzhou.aliyuncs.com/choerodon-tools/dbtool×20.5.2unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

169 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumALPINE-CVE-2018-0500curl@7.60.0-r17.61.0-r0
MediumGHSA-f9xh-2qgp-cq57jackson-databind@2.8.82.9.10.8
MediumGHSA-4jrv-ppp4-jm57gson@2.8.02.8.9
MediumGHSA-m6x4-97wx-4q27jackson-databind@2.8.82.9.10.8
MediumGHSA-fqwf-pjwf-7vqvjackson-databind@2.8.82.9.10.4
MediumALPINE-CVE-2018-16839curl@7.60.0-r17.61.1-r1
MediumGHSA-qr7j-h6gg-jmgcjackson-databind@2.8.82.8.11.2
MediumGHSA-mx7p-6679-8g3qjackson-databind@2.8.82.8.11.5
MediumGHSA-r3gr-cxrf-hg25jackson-databind@2.8.82.9.10.8
MediumGHSA-gjmw-vf9h-g25vjackson-databind@2.8.82.8.11.5
MediumGHSA-h3cw-g4mq-c5x2jackson-databind@2.8.82.9.10.6
MediumGHSA-j563-grx4-pjpvxstream@1.4.91.4.20
MediumGHSA-rv63-gqm8-9w8qnetty-handler@4.0.27.Final4.0.37.Final
MediumGHSA-2rvv-w9r2-rg7mtomcat-embed-core@8.5.148.5.60
MediumGHSA-mw3r-pfmg-xp92xmlbeans@2.6.03.0.0
MediumGHSA-85cw-hj65-qqv9jackson-databind@2.8.82.8.11.5
MediumGHSA-fmmc-742q-jg75jackson-databind@2.8.82.8.11.5
MediumGHSA-gwp4-hfv6-p7hwjackson-databind@2.8.82.8.11.4
MediumALPINE-CVE-2018-14599libx11@1.6.4-r01.6.6-r0
MediumGHSA-9xcj-c8cr-8c3ctomcat-embed-core@8.5.148.5.50
MediumGHSA-f3j5-rmmp-3fc5jackson-databind@2.8.82.8.11.5
MediumGHSA-523c-xh4g-mh5mpoi@3.143.17
MediumGHSA-77rv-6vfw-x4gcspring-security-oauth2@2.0.13.RELEASE2.0.17.RELEASE
MediumGHSA-86qr-9vqc-pgc6spring-integration-core@4.3.9.RELEASE4.3.23
MediumGHSA-wh8g-3j2c-rqj5jackson-databind@2.8.82.9.10.8
MediumALPINE-CVE-2017-8105freetype@2.7-r12.7.1-r1
MediumGHSA-5949-rw7g-wx7wjackson-databind@2.8.82.9.10.7
MediumGHSA-jx6h-3fjx-cgv5tomcat-embed-core@8.5.148.5.28
MediumGHSA-qjw2-hr98-qgfhjackson-databind@2.8.82.9.10.6
MediumGHSA-ffvq-7w96-97p7spring-core@4.3.8.RELEASE4.3.20.RELEASE
MediumGHSA-wm47-8v5p-wjpjnetty@3.7.0.Finalno fix listed
MediumGHSA-6wqp-v4v6-c87cjackson-databind@2.8.82.8.11.2
MediumGHSA-w3f4-3q6j-rh82jackson-databind@2.8.82.8.11.1
MediumGHSA-p979-4mfw-53vgnetty@3.7.0.Finalno fix listed
MediumGHSA-6rxj-58jh-436rtomcat-embed-core@8.5.148.5.28
MediumALPINE-CVE-2017-8287freetype@2.7-r12.7.1-r1
MediumGHSA-rmr5-cpv2-vgjfxstream@1.4.91.4.19
MediumGHSA-jgwr-3qm3-26f3tomcat-embed-core@8.5.148.5.61
MediumGHSA-qpfq-ph7r-qv6fxstream@1.4.91.4.16
MediumALPINE-CVE-2018-16840curl@7.60.0-r17.61.1-r1
MediumGHSA-cjjf-94ff-43w7jackson-databind@2.8.82.8.11.2
MediumGHSA-3ccq-5vw3-2p6xxstream@1.4.91.4.18
MediumGHSA-6w62-hx7r-mw68xstream@1.4.91.4.18
MediumGHSA-h7v4-7xg3-hxccxstream@1.4.91.4.18
MediumGHSA-hph2-m3g5-xxv4xstream@1.4.91.4.18
MediumGHSA-qrx8-8545-4wg2xstream@1.4.91.4.18
MediumGHSA-9vjp-v76f-g363netty@3.7.0.Finalno fix listed
MediumGHSA-9vjp-v76f-g363netty-codec@4.0.27.Final4.1.68.Final
MediumGHSA-64xx-cq4q-mf44xstream@1.4.91.4.18
MediumGHSA-8w26-6f25-cm9xjackson-databind@2.8.82.9.10.8

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.8.0latest4 years ago0.8.01762169989,808

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/choerodon/event-store-service.svg)](https://charts.stackradar.io/charts/choerodon/event-store-service)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.