StackRadar

enav Helm chart

enav-service-architectureVerified publisher

Scored 14 Sept 2026

A Helm chart for deploying the GLA e-Navigation Service Architecture

Latest 0.0.7 6 months agoapp version latest 1Artifact Hub

enav 0.0.7 deploys 10 container images: library/busybox, ghcr.io/gla-rad/enav-api-gateway, ghcr.io/gla-rad/enav-aton-admin-service, ghcr.io/gla-rad/enav-aton-service-client and 6 more. Across them, 1,360 findings6 critical, 2 high. The highest contribution is GHSA-vv7r-c36w-3prj in commons-fileupload 1.5, fixed in 1.6.0.

Radar Score

15,860623021,050

1,360 findings over 10 of 10 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

10 images
ImageTagVulnerabilitiesRadar Score
library/busybox×7latest00000
ghcr.io/gla-rad/enav-api-gatewaylatest00261121,495
ghcr.io/gla-rad/enav-aton-admin-servicelatest10351211,855
ghcr.io/gla-rad/enav-aton-service-clientlatest10331141,737
ghcr.io/gla-rad/enav-aton-servicelatest10351211,855
ghcr.io/gla-rad/enav-ckeeperlatest10331281,845
ghcr.io/gla-rad/enav-eurekalatest00441612,346
apache/kafka3.9.01233761,518
ghcr.io/gla-rad/enav-msg-brokerlatest00351311,842
ghcr.io/gla-rad/enav-vdes-controllerlatest1028861,367

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

76 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumALPINE-CVE-2026-45447openssl@3.5.6-r03.5.7-r0
MediumGHSA-r29c-68gh-xp6xtomcat-embed-core@11.0.2111.0.22
MediumGHSA-98qh-xjc8-98pqpostgresql@42.7.1042.7.11
MediumGHSA-7r82-7xv7-xcpjhttpclient@4.5.34.5.13
MediumGHSA-wxr5-93ph-8wr9commons-beanutils@1.9.41.11.0
MediumGHSA-h6fc-48rj-7qqhtomcat-embed-core@11.0.2111.0.22
MediumALPINE-CVE-2026-19931curl@8.17.0-r18.22.0-r0
MediumGHSA-mvr2-9pj6-7w5jguava@22.024.1.1-android
MediumALPINE-CVE-2026-9079curl@8.17.0-r18.22.0-r0
MediumALPINE-CVE-2026-42010gnutls@3.8.5-r03.8.13-r0
MediumGHSA-4g8c-wm8x-jfhwnetty-handler@4.1.111.Final4.1.118.Final
MediumALPINE-CVE-2026-63073openssl@3.5.6-r03.5.8-r0
MediumGHSA-5m62-pw8w-7w9ftomcat-embed-core@11.0.2111.0.22
MediumALPINE-CVE-2026-10536curl@8.17.0-r18.22.0-r0
MediumGHSA-3qwq-q9vm-5j42spring-cloud-config-server@5.0.15.0.2
MediumGHSA-crhr-qqj8-rpxczookeeper@3.8.43.8.6
MediumGHSA-9xv2-5v5q-p794tomcat-embed-core@11.0.2111.0.25
MediumALPINE-CVE-2025-32988gnutls@3.8.5-r03.8.12-r0
MediumGHSA-76qp-h5mr-frr4kafka_2.13@3.9.03.9.1
MediumALPINE-CVE-2026-18924curl@8.17.0-r18.22.0-r0
MediumALPINE-CVE-2025-9230openssl@3.3.2-r13.3.5-r0
MediumGHSA-pvp8-3xj6-8c6xcommons-configuration@1.10no fix listed
MediumALPINE-CVE-2026-11856curl@8.17.0-r18.22.0-r0
MediumALPINE-CVE-2026-8925curl@8.17.0-r18.22.0-r0
MediumALPINE-CVE-2024-12797openssl@3.3.2-r13.3.3-r0
MediumALPINE-CVE-2026-18798openssl@3.5.6-r03.5.8-r0
MediumGHSA-j288-q9x7-2f5vcommons-lang@2.6no fix listed
MediumGHSA-j288-q9x7-2f5vcommons-lang3@3.12.03.18.0
MediumALPINE-CVE-2025-9231openssl@3.3.2-r13.3.5-r0
MediumALPINE-CVE-2026-33845gnutls@3.8.5-r03.8.13-r0
MediumALPINE-CVE-2026-42009gnutls@3.8.5-r03.8.13-r0
MediumALPINE-CVE-2026-63076openssl@3.5.6-r03.5.8-r0
MediumALPINE-CVE-2026-1584gnutls@3.8.5-r03.8.12-r0
MediumALPINE-CVE-2025-59375expat@2.6.3-r02.7.2-r0
MediumALPINE-CVE-2024-8176expat@2.6.3-r02.7.0-r0
MediumGHSA-6g23-24mc-hx6xspring-cloud-config-server@5.0.15.0.3
MediumGHSA-3qp7-7mw8-wx86netty-handler@4.2.12.Final4.2.15.Final
MediumALPINE-CVE-2026-33846gnutls@3.8.5-r03.8.13-r0
MediumGHSA-355h-qmc2-wpwfjetty-http@9.4.56.v202408269.4.60
MediumALPINE-CVE-2026-25646libpng@1.6.44-r01.6.55-r0
MediumALPINE-CVE-2026-42764openssl@3.5.6-r03.5.7-r0
MediumALPINE-CVE-2026-2100p11-kit@0.25.5-r20.26.2-r0
MediumALPINE-CVE-2025-13151libtasn1@4.19.0-r24.21.0-r0
MediumGHSA-h3x4-894j-xpx5tomcat-embed-core@11.0.2111.0.25
MediumGHSA-rmj7-2vxq-3g9fjackson-databind@3.1.23.1.4
MediumGHSA-j3rv-43j4-c7qmjackson-databind@3.1.23.1.4
MediumALPINE-CVE-2026-34182openssl@3.5.6-r03.5.7-r0
MediumGHSA-gcx9-497g-6cp6tomcat-embed-core@11.0.2111.0.25
MediumALPINE-CVE-2026-33416libpng@1.6.44-r01.6.56-r0
MediumALPINE-CVE-2026-34183openssl@3.5.6-r03.5.7-r0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.7latest6 months agolatest623021,05015,860

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/enav-service-architecture/enav.svg)](https://charts.stackradar.io/charts/enav-service-architecture/enav)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.