StackRadar

data-fair 1.1.2 Helm chart

data354-helmVerified publisher

Scored 14 Sept 2026

A Helm chart for datafair project

Version 1.1.2 3 years agodeploys tag 6.7.0 1Artifact Hub

data-fair 1.1.2 deploys 12 container images: apsl/thumbor, ghcr.io/data-fair/simple-directory, koumoul/openapi-viewer, koumoul/capture and 8 more. Across them, 2,603 findings21 critical, 74 high 5 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.10, fixed in 1.1.1f-1ubuntu2.15.

Radar Score

38,34621747541,754

2,603 findings over 12 of 12 images measured

KEV ×5 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

12 images
ImageTagVulnerabilitiesRadar Score
apsl/thumbor6.7.02053832,190
ghcr.io/data-fair/simple-directory4011721483,568
koumoul/openapi-viewer10453441,828
koumoul/capture104561012,520
ghcr.io/data-fair/metrics028631493,357
ghcr.io/data-fair/notify304321492,248
ghcr.io/data-fair/data-fair×2316731583,386
ghcr.io/data-fair/portals104271151,880
ghcr.io/data-fair/processings×2116541592,974
ghcr.io/data-fair/elasticsearch7.17.1111921138610,213
library/mongo4.448592514,087
prom/prometheuslatest0011195

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,424 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-p6gq-j5cr-w38fnodemailer@6.9.79.0.1
LowGHSA-869p-cjfg-cm3xjws@3.2.23.2.3
LowGHSA-4g9r-vxhx-9pgxcommons-compress@1.191.26.0
LowGHSA-fj7v-r99m-22gqpillow@5.4.112.3.0
LowGHSA-qf7c-7r9h-mm92x-pack-security@7.17.18.19.9
LowGHSA-mmx7-hfxf-jppxaxios@1.6.51.18.0
LowGHSA-fqwm-6jpj-5wxctornado@5.1.16.5.5
LowUBUNTU-CVE-2026-7017perl@5.30.0-9ubuntu0.2no fix listed
LowALPINE-CVE-2026-40200musl@1.2.5-r91.2.5-r11
LowGHSA-84h7-rjj3-6jx4netty-codec-http@4.1.66.Final4.1.129.Final
LowALPINE-CVE-2025-62408c-ares@1.34.5-r01.34.6-r0
LowGHSA-vvjj-xcjg-gr5gnodemailer@6.9.78.0.5
LowUBUNTU-CVE-2022-1725vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.21
LowALPINE-CVE-2025-66199openssl@3.3.3-r03.3.6-r0
LowMAL-2022-4691monorepo-symlink-test@0.0.0no fix listed
LowDLA-2932-1tiff@4.0.8-2+deb9u44.0.8-2+deb9u8
LowUBUNTU-CVE-2025-0395glibc@2.31-0ubuntu9.22.31-0ubuntu9.17
LowUBUNTU-CVE-2023-4039gcc-10@10.3.0-1ubuntu1~20.0410.5.0-1ubuntu1~20.04.1+esm1
LowUBUNTU-CVE-2026-76642util-linux@2.34-0.1ubuntu9.3no fix listed
LowDSA-4685-1apt@1.4.91.4.10
LowGHSA-j5w8-q4qc-rx2xgolang.org/x/crypto@v0.25.00.45.0
LowUBUNTU-CVE-2026-11822sqlite3@3.31.1-4ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-11824sqlite3@3.31.1-4ubuntu0.2no fix listed
LowUBUNTU-CVE-2022-2923vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.13
LowUBUNTU-CVE-2025-4598systemd@245.4-4ubuntu3.15245.4-4ubuntu3.24+esm1
LowUBUNTU-CVE-2024-28085util-linux@2.34-0.1ubuntu9.32.34-0.1ubuntu9.6
LowPYSEC-2026-3721pip@19.3.126.2
LowGHSA-52v5-jr5w-gjxrsigstore@2.1.04.1.1
LowUBUNTU-CVE-2025-15079curl@7.68.0-1ubuntu2.77.68.0-1ubuntu2.25+esm2
LowGHSA-65ch-62r8-g69gnode-forge@1.3.11.3.2
LowGHSA-mq26-g339-26xfpip@19.3.123.3
LowALPINE-CVE-2025-4947curl@8.12.1-r18.14.0-r0
LowGHSA-cm22-4g7w-348pserve-static@1.15.01.16.0
LowUBUNTU-CVE-2023-2609vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.15
LowGHSA-cpwx-vrp4-4pq7jinja2@2.10.33.1.6
LowGHSA-qc2q-p7wx-3px3google.golang.org/grpc@v1.82.11.83.1
LowUBUNTU-CVE-2026-73076vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm12
LowDLA-2784-1icu@57.1-6+deb9u357.1-6+deb9u5
LowUBUNTU-CVE-2026-39881vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm4
LowUBUNTU-CVE-2026-6429curl@7.68.0-1ubuntu2.7no fix listed
LowUBUNTU-CVE-2022-4293vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.18
LowUBUNTU-CVE-2026-73072vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm12
LowGHSA-qpw4-5x99-6vjpgolang.org/x/crypto@v0.25.00.52.0
LowGHSA-p9pc-299p-vxgpyargs-parser@7.0.013.1.2
LowUBUNTU-CVE-2024-22365pam@1.3.1-5ubuntu4.31.3.1-5ubuntu4.7
LowALPINE-CVE-2026-22796openssl@3.3.3-r03.3.6-r0
LowUBUNTU-CVE-2026-22796openssl@1.1.1f-1ubuntu2.101.1.1f-1ubuntu2.24+esm2
LowGHSA-f6x5-jh6r-wrfvgolang.org/x/crypto@v0.25.00.45.0
LowGHSA-gvwx-54wh-qm9jtar@6.1.157.5.17
LowUBUNTU-CVE-2026-43961vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm7

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.1.2latest3 years ago6.7.021747541,75438,346

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/data354-helm/data-fair.svg)](https://charts.stackradar.io/charts/data354-helm/data-fair)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.