StackRadar

authf Helm chart

cryptexlabsVerified publisher

Scored 14 Sept 2026

Forward authentication service

Latest 0.12.13 11 months agoapp version 0.12.11 0Artifact Hub

authf 0.12.13 deploys 4 container images: cryptexlabs/authf, docker.elastic.co/elasticsearch/elasticsearch and bitnami/kubectl. Across the 3 measured, 285 findings0 critical, 5 high. The highest contribution is ALPINE-CVE-2024-6119 in openssl 3.1.4-r5, fixed in 3.1.7-r0.

Radar Score

3,7690573207

285 findings over 3 of 4 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
cryptexlabs/authf0.12.1105732053,756
docker.elastic.co/elasticsearch/elasticsearch×27.14.0unmeasured
bitnami/kubectllatest000213
bitnami/kubectl×2latest000213

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

285 distinct across the version’s images
SeverityAdvisoryPackageFixed in
HighALPINE-CVE-2024-6119openssl@3.1.4-r53.1.7-r0
HighGHSA-r5fr-rjxr-66jclodash@4.17.214.18.0
HighALPINE-CVE-2024-2511openssl@3.1.4-r53.1.4-r6
HighGHSA-35jh-r3h4-6jhmlodash@3.10.14.17.21
HighGHSA-wphj-fx3q-84chsysteminformation@5.22.95.27.14
MediumGHSA-hrpp-h998-j3ppqs@6.7.06.7.3
MediumGHSA-2p57-rm9w-gvfpip@2.0.0no fix listed
MediumALPINE-CVE-2024-5535openssl@3.1.4-r53.1.6-r0
MediumGHSA-jf85-cpcp-j695lodash@3.10.14.17.12
MediumGHSA-cph5-m8f7-6c5xaxios@0.21.10.21.2
MediumGHSA-x3cc-x39p-42qxfast-xml-parser@3.21.14.1.2
MediumGHSA-fpw7-j2hg-69v5mysql2@2.3.33.9.4
MediumGHSA-p6mc-m468-83gwlodash@3.10.14.17.19
MediumGHSA-fj58-h2fr-3pp2class-validator@0.11.10.14.0
MediumGHSA-ph3v-2hq5-5qfqRazorEngine@3.4.1.0no fix listed
MediumGHSA-pmh2-wpjm-fj45mysql2@2.3.33.9.8
MediumGHSA-fjxv-7rqg-78g4form-data@4.0.04.0.4
MediumGHSA-5xpp-75jx-m839systeminformation@5.22.95.31.7
MediumGHSA-5j98-mcp5-4vw2glob@11.0.011.1.0
MediumGHSA-74fj-2j2h-c42qfollow-redirects@1.5.101.14.7
MediumALPINE-CVE-2024-4741openssl@3.1.4-r53.1.6-r0
MediumGHSA-c2qf-rxjj-qqgwsemver@7.0.07.5.2
MediumGHSA-273r-mgr4-v34fengine.io@5.1.15.2.1
MediumGHSA-43fc-jf86-j433axios@1.7.71.13.5
MediumGHSA-4rch-2fh8-94vwmysql2@2.3.33.9.7
MediumGHSA-5vv4-hvf7-2h46systeminformation@5.22.95.31.0
MediumGHSA-9c88-49p5-5ggfsysteminformation@5.22.95.30.8
MediumGHSA-xq3m-2v4x-88ggprotobufjs@7.4.07.5.5
MediumGHSA-35jp-ww65-95whaxios@1.7.71.16.0
MediumALPINE-CVE-2025-9230openssl@3.1.4-r53.1.8-r1
MediumGHSA-4xc9-xhrj-v574lodash@3.10.14.17.11
MediumGHSA-fvqr-27wr-82fmlodash@3.10.14.17.5
MediumGHSA-44c6-4v22-4mhxsemver-regex@2.0.03.1.3
MediumALPINE-CVE-2025-48385git@2.43.5-r02.43.7-r0
MediumGHSA-3h5v-q93c-6h6qws@7.5.37.5.10
MediumGHSA-7wpw-2hjm-89gpmerge@1.2.12.1.1
MediumALPINE-CVE-2025-59375expat@2.6.3-r02.7.2-r0
MediumGHSA-r6ch-mqf9-qc9wundici@5.0.05.19.1
MediumGHSA-pjwm-pj3p-43mvaxios@0.21.10.32.0
MediumALPINE-CVE-2024-8176expat@2.6.3-r02.7.0-r0
MediumGHSA-r7qp-cfhv-p84wengine.io@5.1.16.2.1
MediumALPINE-CVE-2024-9681curl@8.9.1-r18.11.0-r0
MediumGHSA-jr5f-v2jv-69x6axios@1.7.71.8.2
MediumALPINE-CVE-2025-0725curl@8.9.1-r18.12.0-r0
MediumGHSA-vrm6-8vpv-qv8qundici@6.19.86.24.0
MediumGHSA-4w2v-q235-vp99axios@0.19.00.21.1
MediumGHSA-4hjh-wcwx-xvwjaxios@1.7.71.12.0
MediumGHSA-5gfm-wpxj-wjgqnode-forge@1.3.11.3.2
MediumGHSA-5528-5vmv-3xc2multer@1.4.4-lts.12.1.1
MediumALPINE-CVE-2024-9143openssl@3.1.4-r53.1.7-r1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.12.13latest11 months ago0.12.1105732073,769

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/cryptexlabs/authf.svg)](https://charts.stackradar.io/charts/cryptexlabs/authf)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.