StackRadar

spark-shuffle Helm chart

duyet

Scored 14 Sept 2026

A Helm chart to deploy Spark shuffle service daemon set for Kubernetes

Latest 0.2.0 1 month agodeploys tag v2.2.0-kubernetes-0.5.1 0Artifact Hub

spark-shuffle 0.2.0 deploys 1 container image: snappydatainc/spark-shuffle. Across them, 195 findings8 critical, 28 high. The highest contribution is GHSA-2qrg-x229-3v8q in log4j 1.2.17, with no fix listed.

Radar Score

5,63982812336

195 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
snappydatainc/spark-shufflev2.2.0-kubernetes-0.5.1828123365,639

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Critical findings

8 distinct across the version’s images

Critical: findings whose contribution to the Radar Score is 70–100. Show every band

SeverityAdvisoryPackageFixed in
CriticalGHSA-2qrg-x229-3v8qlog4j@1.2.17no fix listed
CriticalGHSA-65fg-84f6-3jq3log4j@1.2.17no fix listed
CriticalGHSA-mjmj-j48q-9wg2snakeyaml@1.152.0
CriticalGHSA-f7vh-qwp3-x37mlog4j@1.2.17no fix listed
CriticalGHSA-rfx6-vp9g-rh7vjackson-databind@2.6.52.7.9.2
CriticalGHSA-w9p3-5cr8-m3jjlog4j@1.2.17no fix listed
CriticalALPINE-CVE-2019-8457sqlite@3.21.0-r03.25.3-r1
CriticalGHSA-qxxx-2pp7-5hmxjackson-databind@2.6.52.6.7.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.0latest1 month agov2.2.0-kubernetes-0.5.1828123365,639

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/duyet/spark-shuffle.svg)](https://charts.stackradar.io/charts/duyet/spark-shuffle)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.