StackRadar

data-fair 1.1.2 Helm chart

data354-helmVerified publisher

Scored 15 Sept 2026

A Helm chart for datafair project

Version 1.1.2 3 years agodeploys tag 6.7.0 1Artifact Hub

data-fair 1.1.2 deploys 12 container images: apsl/thumbor, ghcr.io/data-fair/simple-directory, koumoul/openapi-viewer, koumoul/capture and 8 more. Across them, 2,617 findings17 critical, 78 high 5 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.10, fixed in 1.1.1f-1ubuntu2.15.

Radar Score

38,42417787541,768

2,617 findings over 12 of 12 images measured

KEV ×5 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

12 images
ImageTagVulnerabilitiesRadar Score
apsl/thumbor6.7.02053832,190
ghcr.io/data-fair/simple-directory4011721483,569
koumoul/openapi-viewer10453441,828
koumoul/capture104561012,520
ghcr.io/data-fair/metrics028631493,358
ghcr.io/data-fair/notify304321492,248
ghcr.io/data-fair/data-fair×2307731583,385
ghcr.io/data-fair/portals104271151,880
ghcr.io/data-fair/processings×2107541592,973
ghcr.io/data-fair/elasticsearch7.17.1102021139310,253
library/mongo4.439592584,125
prom/prometheuslatest0011195

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

917 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-v6wh-96g9-6wx3launch-editor@2.6.12.14.1
LowUBUNTU-CVE-2026-1965curl@7.68.0-1ubuntu2.77.68.0-1ubuntu2.25+esm3
LowUBUNTU-CVE-2023-1264vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.12
LowUBUNTU-CVE-2025-3576krb5@1.17-6ubuntu4.11.17-6ubuntu4.11
LowDLA-2518-1cairo@1.14.8-11.14.8-1+deb9u1
LowGHSA-rgj7-g3m4-5g8csharp@0.32.60.35.4
LowUBUNTU-CVE-2025-68973gnupg2@2.2.19-3ubuntu2.12.2.19-3ubuntu2.5+esm1
LowGHSA-v2v4-37r5-5v8gip-address@9.0.510.1.1
LowUBUNTU-CVE-2026-7168curl@7.68.0-1ubuntu2.77.68.0-1ubuntu2.25+esm5
LowUBUNTU-CVE-2022-3821systemd@245.4-4ubuntu3.15245.4-4ubuntu3.20
LowGHSA-378v-28hj-76wfbn.js@4.12.04.12.3
LowGHSA-fv7c-fp4j-7gwp@babel/plugin-transform-modules-systemjs@7.16.07.29.4
LowGHSA-m87m-mmvp-v9qmpymongo@3.10.04.6.3
LowUBUNTU-CVE-2026-57456vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm9
LowALPINE-CVE-2023-42366busybox@1.36.1-r21.36.1-r6
LowGHSA-977x-g7h5-7qgwelliptic@6.5.46.5.7
LowUBUNTU-CVE-2026-59847libssh@0.9.3-2ubuntu2.2no fix listed
LowGHSA-38f8-5428-x5cvnetty-codec-http@4.1.66.Final4.1.133.Final
LowGHSA-xq3w-v528-46rvnetty-common@4.1.66.Final4.1.115.Final
LowGHSA-28wg-ghj8-5hjvnanoid@3.3.63.3.16
LowGHSA-m6fv-jmcg-4jfgsend@0.18.00.19.0
LowUBUNTU-CVE-2026-3783curl@7.68.0-1ubuntu2.77.68.0-1ubuntu2.25+esm3
LowGHSA-w9j2-pvgh-6h63axios@1.6.51.15.1
LowUBUNTU-CVE-2026-4873curl@7.68.0-1ubuntu2.7no fix listed
LowUBUNTU-CVE-2023-39804tar@1.30+dfsg-7ubuntu0.20.04.11.30+dfsg-7ubuntu0.20.04.4
LowGHSA-5xm9-x7x4-4j5xelasticsearch@7.17.17.17.24
LowGHSA-8c42-7qj2-3j46netty-codec-http@4.1.66.Final4.1.137.Final
LowUBUNTU-CVE-2026-34743xz-utils@5.2.4-1ubuntu15.2.4-1ubuntu1.1+esm1
LowGO-2024-3107stdlib@go1.21.121.22.7
LowDLA-2800-1cups@2.2.1-8+deb9u42.2.1-8+deb9u7
LowUBUNTU-CVE-2026-42307vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm5
LowALPINE-CVE-2023-42365busybox@1.36.1-r21.36.1-r7
LowGHSA-r7wm-3cxj-wff9jackson-core@2.10.42.18.8
LowGHSA-mp7j-qc5w-4988websocket-driver@0.7.40.7.5
LowUBUNTU-CVE-2026-54411pam@1.3.1-5ubuntu4.3no fix listed
LowGHSA-pq67-6m6q-mj2vurllib3@1.25.72.5.0
LowDLA-2290-1e2fsprogs@1.43.4-2+deb9u11.43.4-2+deb9u2
LowGHSA-jxwj-j7wr-gfrwsanitize-html@2.11.02.17.6
LowGHSA-2v37-7h3g-55p8nanoid@3.3.63.3.18
LowGHSA-389x-839f-4rhxnetty-common@4.1.66.Final4.1.118.Final
LowUBUNTU-CVE-2026-59858vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm10
LowGHSA-2pr8-phx7-x9h3protobufjs@6.8.67.5.6
LowGHSA-cp6g-7hqx-qxhpgo.mongodb.org/mongo-driver@v1.16.01.17.7
LowUBUNTU-CVE-2026-25749vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm2
LowGHSA-58qx-3vcg-4xpxws@8.14.28.20.1
LowGHSA-4vpr-x523-8j87svgo@1.3.22.8.4
LowGHSA-2hjr-vmf3-xwvpelasticsearch@7.17.17.17.16
LowALPINE-CVE-2024-6874curl@8.5.0-r08.9.0-r0
LowGHSA-4mp9-239f-g9hgnetty-codec-http@4.1.66.Final4.1.136.Final
LowUBUNTU-CVE-2026-19487perl@5.30.0-9ubuntu0.25.30.0-9ubuntu0.5+esm4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.1.2latest3 years ago6.7.017787541,76838,424

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/data354-helm/data-fair.svg)](https://charts.stackradar.io/charts/data354-helm/data-fair)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.