StackRadar

setup-job Helm chart

cloud-native-toolkit

Scored 14 Sept 2026

A Helm chart for Kubernetes

Latest 0.3.0 5 years agodeploys tag latest 0Artifact Hub

setup-job 0.3.0 deploys 2 container images: quay.io/ibmgaragecloud/alpine-curl and quay.io/ibmgaragecloud/nodejs. Across them, 154 findings0 critical, 8 high 2 on CISA KEV. The highest contribution is GHSA-c4w7-xm78-47vh in y18n 4.0.0, fixed in 4.0.1.

Radar Score

2,792086086

154 findings over 2 of 2 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
quay.io/ibmgaragecloud/alpine-curllatest03103465
quay.io/ibmgaragecloud/nodejslatest0550832,327

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

154 distinct across the version’s images
SeverityAdvisoryPackageFixed in
HighGHSA-c4w7-xm78-47vhy18n@4.0.04.0.1
HighALPINE-CVE-2020-1967openssl@1.1.1d-r01.1.1g-r0
HighALPINE-CVE-2021-23840openssl@1.1.1d-r01.1.1j-r0
HighALPINE-CVE-2021-3449openssl@1.1.1d-r01.1.1k-r0
HighGHSA-w573-4hg7-7wgqdecode-uri-component@0.2.00.2.1
HighGHSA-3jfq-g458-7qm9tar@4.4.134.4.14
HighDLA-2415-1KEVfreetype@2.6.3-3.2+deb9u12.6.3-3.2+deb9u2
HighDLA-2534-1KEVsudo@1.8.19p1-2.1+deb9u21.8.19p1-2.1+deb9u3
MediumGHSA-hrpp-h998-j3ppqs@6.5.26.5.3
MediumDLA-2544-1openldap@2.4.44+dfsg-5+deb9u42.4.44+dfsg-5+deb9u7
MediumDLA-3008-1openssl@1.1.0l-1~deb9u11.1.0l-1~deb9u6
MediumDLA-2952-1openssl@1.1.0l-1~deb9u11.1.0l-1~deb9u5
MediumDLA-2953-1openssl1.0@1.0.2u-1~deb9u11.0.2u-1~deb9u7
MediumGHSA-2p57-rm9w-gvfpip@1.1.5no fix listed
MediumGHSA-xvch-5gv4-984hminimist@1.2.51.2.6
MediumGHSA-r628-mhmh-qjhwtar@4.4.134.4.15
MediumDLA-3017-1openldap@2.4.44+dfsg-5+deb9u42.4.44+dfsg-5+deb9u9
MediumALPINE-CVE-2020-8285curl@7.66.0-r07.66.0-r3
MediumDLA-2574-1openldap@2.4.44+dfsg-5+deb9u42.4.44+dfsg-5+deb9u8
MediumGHSA-896r-f27r-55mwjson-schema@0.2.30.4.0
MediumDLA-2968-1zlib@1:1.2.8.dfsg-51:1.2.8.dfsg-5+deb9u1
MediumDLA-2563-1openssl@1.1.0l-1~deb9u11.1.0l-1~deb9u3
MediumDLA-2565-1openssl1.0@1.0.2u-1~deb9u11.0.2u-1~deb9u4
MediumDLA-2766-1openssl@1.1.0l-1~deb9u11.1.0l-1~deb9u4
MediumDLA-2774-1openssl1.0@1.0.2u-1~deb9u11.0.2u-1~deb9u6
MediumDLA-2388-1nss@2:3.26.2-1.1+deb9u12:3.26.2-1.1+deb9u2
MediumDLA-2935-1expat@2.2.0-2+deb9u32.2.0-2+deb9u5
MediumALPINE-CVE-2020-11080nghttp2@1.39.2-r01.39.2-r1
MediumALPINE-CVE-2019-1551openssl@1.1.1d-r01.1.1d-r2
MediumGHSA-vx3p-948g-6vhqssri@6.0.16.0.2
MediumALPINE-CVE-2021-36159apk-tools@2.10.4-r22.10.7-r0
MediumALPINE-CVE-2020-8286curl@7.66.0-r07.66.0-r3
MediumGHSA-9r2w-394v-53qctar@4.4.134.4.16
MediumALPINE-CVE-2020-8231curl@7.66.0-r07.66.0-r2
MediumALPINE-CVE-2021-23841openssl@1.1.1d-r01.1.1j-r0
MediumGHSA-93q8-gq69-wqmwansi-regex@3.0.03.0.1
MediumGHSA-fjxv-7rqg-78g4form-data@2.3.22.5.4
MediumGHSA-pw54-mh39-w3hcnpm-user-validate@1.0.01.0.1
MediumALPINE-CVE-2020-8169curl@7.66.0-r07.66.0-r1
MediumALPINE-CVE-2020-1971openssl@1.1.1d-r01.1.1i-r0
MediumGHSA-qqgx-2p2h-9c37ini@1.3.51.3.6
MediumGHSA-ff7x-qrg7-qggmdot-prop@4.2.04.2.1
MediumGHSA-c2qf-rxjj-qqgwsemver@5.7.15.7.2
MediumDLA-2836-1nss@2:3.26.2-1.1+deb9u12:3.26.2-1.1+deb9u3
MediumGHSA-qq89-hq3f-393ptar@4.4.134.4.18
MediumGHSA-f8q6-p94x-37v3minimatch@3.0.43.0.5
MediumDLA-2848-1libssh2@1.7.0-1+deb9u11.7.0-1+deb9u2
MediumGHSA-72xf-g2v4-qvf3tough-cookie@2.4.34.1.3
MediumGHSA-5955-9wpr-37jhtar@4.4.134.4.18
MediumDLA-2786-1nghttp2@1.18.1-1+deb9u11.18.1-1+deb9u2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.3.0latest5 years agolatest0860862,792

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/cloud-native-toolkit/setup-job.svg)](https://charts.stackradar.io/charts/cloud-native-toolkit/setup-job)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.