StackRadar

spark-shuffle 0.2.0 Helm chart

duyet

Scored 14 Sept 2026

A Helm chart to deploy Spark shuffle service daemon set for Kubernetes

Version 0.2.0 1 month agodeploys tag v2.2.0-kubernetes-0.5.1 0Artifact Hub

spark-shuffle 0.2.0 deploys 1 container image: snappydatainc/spark-shuffle. Across them, 195 findings8 critical, 28 high. The highest contribution is GHSA-2qrg-x229-3v8q in log4j 1.2.17, with no fix listed.

Radar Score

5,63982812336

195 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
snappydatainc/spark-shufflev2.2.0-kubernetes-0.5.1828123365,639

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

High findings

28 distinct across the version’s images

High: findings whose contribution to the Radar Score is 40–69. Show every band

SeverityAdvisoryPackageFixed in
HighGHSA-fp5r-v3w9-4333log4j@1.2.17no fix listed
HighGHSA-4w82-r329-3q67jackson-databind@2.6.52.6.7.4
HighGHSA-26vr-8j45-3r4wjetty-server@9.3.11.v201607219.4.39
HighALPINE-CVE-2018-0732libressl@2.6.3-r02.6.5-r0
HighGHSA-cggj-fvv3-cqwvjackson-databind@2.6.52.6.7.5
HighGHSA-6x9x-8qw9-9pp6jetty-server@9.3.11.v201607219.3.24.v20180605
HighGHSA-q93h-jc49-78ggjackson-databind@2.6.52.7.9.7
HighGHSA-p43x-xfjf-5jhrjackson-databind@2.6.52.7.9.7
HighGHSA-vgg8-72f2-qm23jetty-server@9.3.11.v201607219.3.24.v20180605
HighGHSA-645p-88qh-w398jackson-databind@2.6.52.6.7.3
HighGHSA-gwcr-j4wh-j3cqjetty-servlets@9.3.11.v201607219.4.41
HighGHSA-rvwf-54qp-4r6vsnakeyaml@1.151.26
HighGHSA-9gph-22xh-8x98jackson-databind@2.6.52.6.7.5
HighGHSA-h822-r4r5-v8jgjackson-databind@2.6.52.6.7.3
HighGHSA-c8hm-7hpq-7jhgjackson-databind@2.6.52.6.7.3
HighGHSA-mph4-vhrx-mv67jackson-databind@2.6.52.6.7.3
HighGHSA-5ww9-j83m-q7qxjackson-databind@2.6.52.6.7.3
HighGHSA-4gq5-ch57-c2mgjackson-databind@2.6.52.7.9.5
HighALPINE-CVE-2018-14600libx11@1.6.5-r11.6.6-r0
HighGHSA-phg2-9c5g-m4q7spark-core_2.11@2.2.0-k8s-0.5.0no fix listed
HighGHSA-gww7-p5w4-wrfvjackson-databind@2.6.52.6.7.4
HighGHSA-h592-38cm-4ggpjackson-databind@2.6.52.6.7.3
HighALPINE-CVE-2017-15088krb5@1.15.2-r11.15.3-r0
HighGHSA-6fpp-rgj9-8rwcjackson-databind@2.6.52.7.9.6
HighGHSA-288c-cq4h-88gqjackson-databind@2.6.52.6.7.4
HighALPINE-CVE-2019-12900bzip2@1.0.6-r61.0.6-r7
HighGHSA-cqqj-4p63-rrmmnetty@3.9.9.Finalno fix listed
HighGHSA-5r5r-6hpj-8gg9jackson-databind@2.6.52.9.10.8

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.0latest1 month agov2.2.0-kubernetes-0.5.1828123365,639

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/duyet/spark-shuffle.svg)](https://charts.stackradar.io/charts/duyet/spark-shuffle)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.