StackRadar

authf 0.12.13 Helm chart

cryptexlabsVerified publisher

Scored 14 Sept 2026

Forward authentication service

Version 0.12.13 11 months agoapp version 0.12.11 0Artifact Hub

authf 0.12.13 deploys 4 container images: cryptexlabs/authf, docker.elastic.co/elasticsearch/elasticsearch and bitnami/kubectl. Across the 3 measured, 285 findings0 critical, 5 high. The highest contribution is ALPINE-CVE-2024-6119 in openssl 3.1.4-r5, fixed in 3.1.7-r0.

Radar Score

3,7690573207

285 findings over 3 of 4 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
cryptexlabs/authf0.12.1105732053,756
docker.elastic.co/elasticsearch/elasticsearch×27.14.0unmeasured
bitnami/kubectllatest000213
bitnami/kubectl×2latest000213

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

285 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumGHSA-f23m-r3pf-42rhlodash@3.10.14.18.0
MediumGHSA-xxjr-mmjv-4gpglodash@4.17.214.17.23
MediumALPINE-CVE-2024-52006git@2.43.5-r02.43.6-r0
MediumALPINE-CVE-2025-0665curl@8.9.1-r18.12.0-r0
MediumGHSA-4jv9-3563-23j3knex@0.95.152.4.0
MediumGHSA-v52c-386h-88mcmulter@1.4.4-lts.12.1.0
MediumGHSA-xf7r-hgr6-v32pmulter@1.4.4-lts.12.1.0
MediumGHSA-cqmj-92xf-r6r9socket.io-parser@4.0.54.2.3
MediumALPINE-CVE-2025-9232openssl@3.1.4-r53.1.8-r1
MediumGHSA-37ch-88jc-xwx2path-to-regexp@0.1.100.1.13
MediumGHSA-9wv6-86v2-598jpath-to-regexp@3.2.03.3.0
MediumGHSA-99f4-grh7-6pcq@grpc/grpc-js@1.11.21.11.4
MediumGHSA-m7jm-9gc2-mpf2fast-xml-parser@4.4.14.5.4
MediumGHSA-hvx9-hwr7-wjj9systeminformation@5.22.95.31.6
MediumGHSA-v9p9-hfj2-hcw8undici@6.19.86.24.0
MediumGHSA-r4wm-x892-vjmx@nestjs/platform-fastify@8.0.611.1.14
MediumGHSA-3xgq-45jj-v275cross-spawn@7.0.37.0.5
MediumGHSA-p92q-9vqr-4j8vaxios@1.7.71.16.0
MediumGHSA-q9mw-68c2-j6m5engine.io@5.1.16.4.2
MediumGHSA-pfrx-2q88-qq97got@9.6.011.8.5
MediumGHSA-jmr7-xgp7-cmfjfast-xml-parser@4.4.14.5.4
MediumGHSA-qwcr-r2fm-qrc7body-parser@1.20.01.20.3
MediumGHSA-96hv-2xvq-fx4pws@7.5.37.5.11
MediumGHSA-3ppc-4f35-3m26minimatch@10.0.110.2.1
MediumGHSA-pf86-5x62-jrwfaxios@1.7.71.15.1
MediumGHSA-677m-j7p3-52f9socket.io-parser@4.0.54.2.6
MediumGHSA-4pg4-qvpc-4q3hmulter@1.4.4-lts.12.0.0
MediumGHSA-jx2c-rxcm-jvmqfastify@3.20.15.7.2
LowGHSA-cvv5-9h9w-qp2msysteminformation@5.22.95.23.7
LowGHSA-vxpw-j846-p89qundici@6.19.86.27.0
LowGHSA-rhx6-c78j-4q9wpath-to-regexp@0.1.100.1.12
LowGHSA-44fp-w29j-9vj5multer@1.4.4-lts.12.0.0
LowGHSA-45rx-2jwx-cxfr@opentelemetry/propagator-jaeger@1.26.02.9.0
LowALPINE-CVE-2025-46835git@2.43.5-r02.43.7-r0
LowGHSA-6v32-fjc9-9qf6@nestjs/platform-fastify@8.0.611.1.24
LowGHSA-62hf-57xw-28j9axios@1.7.71.15.1
LowGHSA-34x7-hfp2-rc4vtar@6.2.07.5.7
LowGHSA-8wpr-639p-ccrj@nestjs/platform-fastify@8.0.611.1.11
LowGHSA-q8qp-cvcw-x6jjaxios@1.7.71.15.2
LowGHSA-fjgf-rc76-4x9pmulter@1.4.4-lts.12.0.2
LowGHSA-g5hg-p3ph-g8qgmulter@1.4.4-lts.12.0.1
LowGHSA-3g43-6gmg-66jwaxios@1.7.71.15.2
LowGHSA-cxjh-pqwp-8mfpfollow-redirects@1.5.101.15.6
LowGHSA-554w-wpv2-vw27node-forge@1.3.11.3.2
LowGHSA-777c-7fjr-54vfaxios@1.7.71.16.0
LowGHSA-hfxv-24rg-xrqfaxios@1.7.71.16.0
LowGHSA-j5f8-grm9-p9fcaxios@1.7.71.16.0
LowGHSA-25hc-qcg6-38wjsocket.io@4.1.34.6.2
LowGHSA-r635-g3xr-vw7xengine.io@5.1.16.6.7
LowGHSA-q3j6-qgpj-74h6fast-uri@3.0.33.1.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.12.13latest11 months ago0.12.1105732073,769

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/cryptexlabs/authf.svg)](https://charts.stackradar.io/charts/cryptexlabs/authf)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.