StackRadar

data-fair 1.1.2 Helm chart

data354-helmVerified publisher

Scored 14 Sept 2026

A Helm chart for datafair project

Version 1.1.2 3 years agodeploys tag 6.7.0 1Artifact Hub

data-fair 1.1.2 deploys 12 container images: apsl/thumbor, ghcr.io/data-fair/simple-directory, koumoul/openapi-viewer, koumoul/capture and 8 more. Across them, 2,603 findings21 critical, 74 high 5 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.10, fixed in 1.1.1f-1ubuntu2.15.

Radar Score

38,34621747541,754

2,603 findings over 12 of 12 images measured

KEV ×5 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

12 images
ImageTagVulnerabilitiesRadar Score
apsl/thumbor6.7.02053832,190
ghcr.io/data-fair/simple-directory4011721483,568
koumoul/openapi-viewer10453441,828
koumoul/capture104561012,520
ghcr.io/data-fair/metrics028631493,357
ghcr.io/data-fair/notify304321492,248
ghcr.io/data-fair/data-fair×2316731583,386
ghcr.io/data-fair/portals104271151,880
ghcr.io/data-fair/processings×2116541592,974
ghcr.io/data-fair/elasticsearch7.17.1111921138610,213
library/mongo4.448592514,087
prom/prometheuslatest0011195

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,424 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-78mq-xcr3-xm33golang.org/x/crypto@v0.25.00.52.0
LowALPINE-CVE-2025-10148curl@8.12.1-r18.14.1-r2
LowGHSA-434g-2637-qmqrelliptic@6.5.46.5.6
LowGHSA-qrpm-p2h7-hrv2nanoid@3.1.253.1.31
LowGHSA-vjh7-7g9h-fjfhelliptic@6.5.46.6.1
LowUBUNTU-CVE-2026-51400vim@2:8.1.2269-1ubuntu5.7no fix listed
LowUBUNTU-CVE-2026-55895vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm9
LowGO-2024-3106stdlib@go1.21.121.22.7
LowALPINE-CVE-2024-2004curl@8.5.0-r08.7.1-r0
LowALPINE-CVE-2023-42364busybox@1.36.1-r21.36.1-r7
LowGHSA-68m8-v89j-7j2pbc-fips@1.0.21.0.2.4
LowUBUNTU-CVE-2023-5441vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.20
LowUBUNTU-CVE-2026-45130vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm5
LowALPINE-CVE-2023-42363busybox@1.36.1-r21.36.1-r7
LowGHSA-v6wh-96g9-6wx3launch-editor@2.6.12.14.1
LowUBUNTU-CVE-2026-1965curl@7.68.0-1ubuntu2.77.68.0-1ubuntu2.25+esm3
LowUBUNTU-CVE-2023-1264vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.12
LowUBUNTU-CVE-2025-3576krb5@1.17-6ubuntu4.11.17-6ubuntu4.11
LowDLA-2518-1cairo@1.14.8-11.14.8-1+deb9u1
LowGHSA-rgj7-g3m4-5g8csharp@0.32.60.35.4
LowUBUNTU-CVE-2025-68973gnupg2@2.2.19-3ubuntu2.12.2.19-3ubuntu2.5+esm1
LowGHSA-v2v4-37r5-5v8gip-address@9.0.510.1.1
LowUBUNTU-CVE-2026-7168curl@7.68.0-1ubuntu2.77.68.0-1ubuntu2.25+esm5
LowUBUNTU-CVE-2022-3821systemd@245.4-4ubuntu3.15245.4-4ubuntu3.20
LowGHSA-378v-28hj-76wfbn.js@4.12.04.12.3
LowGHSA-fv7c-fp4j-7gwp@babel/plugin-transform-modules-systemjs@7.16.07.29.4
LowGHSA-m87m-mmvp-v9qmpymongo@3.10.04.6.3
LowUBUNTU-CVE-2026-57456vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm9
LowALPINE-CVE-2023-42366busybox@1.36.1-r21.36.1-r6
LowGHSA-977x-g7h5-7qgwelliptic@6.5.46.5.7
LowUBUNTU-CVE-2026-59847libssh@0.9.3-2ubuntu2.2no fix listed
LowGHSA-38f8-5428-x5cvnetty-codec-http@4.1.66.Final4.1.133.Final
LowGHSA-xq3w-v528-46rvnetty-common@4.1.66.Final4.1.115.Final
LowGHSA-28wg-ghj8-5hjvnanoid@3.3.63.3.16
LowGHSA-m6fv-jmcg-4jfgsend@0.18.00.19.0
LowUBUNTU-CVE-2026-3783curl@7.68.0-1ubuntu2.77.68.0-1ubuntu2.25+esm3
LowGHSA-w9j2-pvgh-6h63axios@1.6.51.15.1
LowUBUNTU-CVE-2026-4873curl@7.68.0-1ubuntu2.7no fix listed
LowUBUNTU-CVE-2023-39804tar@1.30+dfsg-7ubuntu0.20.04.11.30+dfsg-7ubuntu0.20.04.4
LowGHSA-5xm9-x7x4-4j5xelasticsearch@7.17.17.17.24
LowGHSA-8c42-7qj2-3j46netty-codec-http@4.1.66.Final4.1.137.Final
LowUBUNTU-CVE-2026-34743xz-utils@5.2.4-1ubuntu15.2.4-1ubuntu1.1+esm1
LowGO-2024-3107stdlib@go1.21.121.22.7
LowDLA-2800-1cups@2.2.1-8+deb9u42.2.1-8+deb9u7
LowUBUNTU-CVE-2026-42307vim@2:8.1.2269-1ubuntu5.72:8.1.2269-1ubuntu5.32+esm5
LowALPINE-CVE-2023-42365busybox@1.36.1-r21.36.1-r7
LowGHSA-r7wm-3cxj-wff9jackson-core@2.10.42.18.8
LowGHSA-mp7j-qc5w-4988websocket-driver@0.7.40.7.5
LowUBUNTU-CVE-2026-54411pam@1.3.1-5ubuntu4.3no fix listed
LowGHSA-pq67-6m6q-mj2vurllib3@1.25.72.5.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.1.2latest3 years ago6.7.021747541,75438,346

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/data354-helm/data-fair.svg)](https://charts.stackradar.io/charts/data354-helm/data-fair)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.