StackRadar

fib 1.0.0 Helm chart

fibonacci-cluster-appsVerified publisher

Scored 14 Sept 2026

An "app-of-apps" Helm chart with Fibonacci applications

Version 1.0.0 1 year agoapp version 1.0.0 0Artifact Hub

fib 1.0.0 deploys 5 container images: golenski/fibonacci-front, golenski/fibonacci-task-manager, golenski/fibonacci-msg-relay, golenski/fibonacci-worker and 1 more. Across them, 1,180 findings23 critical, 30 high 9 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 10.1.31, fixed in 10.1.35.

Radar Score

16,9272330283844

1,180 findings over 5 of 5 images measured

KEV ×9 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

5 images
ImageTagVulnerabilitiesRadar Score
golenski/fibonacci-front2.0.02740111,710
golenski/fibonacci-task-manager2.0.077792504,780
golenski/fibonacci-msg-relay1.0.077792504,780
golenski/fibonacci-worker2.0.077782514,764
golenski/db-init1.0.002782893

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

336 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2025-69420openssl@3.0.9-13.0.18-1~deb12u2
LowDEBIAN-CVE-2026-57433perl@5.36.0-7no fix listed
LowGHSA-g3pr-3p32-fp23micrometer-core@1.13.6no fix listed
LowDEBIAN-CVE-2023-4806glibc@2.36-9+deb12u12.36-9+deb12u3
LowALPINE-CVE-2021-20205libjpeg-turbo@2.0.5-r02.1.0-r0
LowALPINE-CVE-2022-27774curl@7.69.1-r07.79.1-r1
LowDEBIAN-CVE-2026-13221perl@5.36.0-7no fix listed
LowDEBIAN-CVE-2026-42496perl@5.36.0-7no fix listed
LowDEBIAN-CVE-2024-56406perl@5.36.0-75.36.0-7+deb12u2
LowALPINE-CVE-2021-22924curl@7.69.1-r07.78.0-r0
LowDSA-5611-1glibc@2.36-9+deb12u12.36-9+deb12u4
LowGHSA-57rv-r2g8-2cj3netty-codec-http@4.1.114.Final4.1.133.Final
LowDEBIAN-CVE-2026-9076openssl@3.0.9-13.0.20-1~deb12u2
LowALPINE-CVE-2021-40528libgcrypt@1.8.5-r01.8.8-r1
LowALPINE-CVE-2021-22923curl@7.69.1-r07.78.0-r0
LowDEBIAN-CVE-2026-12087perl@5.36.0-7no fix listed
LowDLA-3954-1postgresql-13@13.16-0+deb11u113.17-0+deb11u1
LowDLA-4297-1imagemagick@8:6.9.11.60+dfsg-1.3+deb11u48:6.9.11.60+dfsg-1.3+deb11u6
LowGHSA-pwqr-wmgm-9rr8netty-codec-http@4.1.114.Final4.1.132.Final
LowGHSA-45q3-82m4-75jrnetty-handler-proxy@4.1.114.Final4.1.133.Final
LowDEBIAN-CVE-2026-0915glibc@2.36-9+deb12u12.36-9+deb12u14
LowDEBIAN-CVE-2025-4802glibc@2.36-9+deb12u12.36-9+deb12u11
LowDEBIAN-CVE-2023-50495ncurses@6.4-4no fix listed
LowDEBIAN-CVE-2023-5981gnutls28@3.7.9-23.7.9-2+deb12u1
LowDEBIAN-CVE-2026-63072openssl@3.0.9-1no fix listed
LowDEBIAN-CVE-2026-45445openssl@3.0.9-13.0.20-1~deb12u2
LowDEBIAN-CVE-2026-85091zlib@1:1.2.13.dfsg-1no fix listed
LowGHSA-574f-3g2m-x479bcprov-jdk18on@1.771.80.2
LowDEBIAN-CVE-2024-33600glibc@2.36-9+deb12u12.36-9+deb12u7
LowDLA-3907-1sqlite3@3.34.1-33.34.1-3+deb11u1
LowDEBIAN-CVE-2022-48303tar@1.34+dfsg-1.21.34+dfsg-1.2+deb12u1
LowGHSA-c4c3-7fpv-j4q5netty-handler@4.1.114.Final4.1.137.Final
LowGHSA-fv25-8xcx-gqjctomcat-embed-core@10.1.3110.1.55
LowDEBIAN-CVE-2026-42013gnutls28@3.7.9-23.7.9-2+deb12u7
LowDEBIAN-CVE-2026-0861glibc@2.36-9+deb12u12.36-9+deb12u14
LowDEBIAN-CVE-2026-3833gnutls28@3.7.9-23.7.9-2+deb12u7
LowDEBIAN-CVE-2024-2236libgcrypt20@1.10.1-3no fix listed
LowDEBIAN-CVE-2026-31789openssl@3.0.9-13.0.19-1~deb12u2
LowDEBIAN-CVE-2025-69419openssl@3.0.9-13.0.18-1~deb12u2
LowGHSA-23hv-mwm6-g8jftomcat-embed-core@10.1.3110.1.42
LowDEBIAN-CVE-2026-54874openssl@3.0.9-1no fix listed
LowGHSA-563x-q5rq-57qptomcat-embed-core@10.1.3110.1.52
LowDEBIAN-CVE-2026-42766openssl@3.0.9-13.0.20-1~deb12u2
LowDEBIAN-CVE-2025-69720ncurses@6.4-4no fix listed
LowGHSA-mgp5-rv84-w37qtomcat-embed-core@10.1.3110.1.52
LowDEBIAN-CVE-2025-6020pam@1.5.2-61.5.2-6+deb12u2
LowDEBIAN-CVE-2026-86145pcre2@10.42-110.42-1+deb12u1
LowGHSA-qv9r-c865-cp47log4j-api@2.23.12.25.5
LowALPINE-CVE-2020-8284curl@7.69.1-r07.74.0-r0
LowGHSA-3p8m-j85q-pgmjnetty-codec@4.1.114.Final4.1.125.Final

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.0latest1 year ago1.0.0233028384416,927

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/fibonacci-cluster-apps/fib.svg)](https://charts.stackradar.io/charts/fibonacci-cluster-apps/fib)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.