business-api-ecosystem 1.1.0 Helm chart
fiwareScored 14 Sept 2026
A Helm chart for running the FIWARE business API ecosystem (FIWARE Marketplace) on Kubernetes
Version 1.1.0 2 months agodeploys tag 11.7.0 0Artifact Hub
business-api-ecosystem 1.1.0 deploys 4 container images: bitnamilegacy/mongodb, fiware/biz-ecosystem-charging-backend, library/busybox and fiware/biz-ecosystem-logic-proxy. Across them, 4,380 findings — 66 critical, 60 high — 58 on CISA KEV. The highest contribution is UBUNTU-CVE-2025-24201 in webkit2gtk 2.38.6-0ubuntu0.20.04.1, with no fix listed.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnamilegacy/ | 3.6.21 | 0024149 | 1,926 |
| fiware/ | 11.7.0 | 65551,1091,906 | 50,775 |
| library/ | latest | 0000 | 0 |
| fiware/ | 11.20.3 | 15183878 | 11,788 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | UBUNTU-CVE-2025-31277KEV | webkit2gtk | no fix listed |
| Critical | UBUNTU-CVE-2025-43529KEV | qtwebkit-opensource-src | no fix listed |
| Critical | UBUNTU-CVE-2025-43529KEV | webkit2gtk | no fix listed |
| Critical | UBUNTU-CVE-2025-6558KEV | qtwebkit-opensource-src | no fix listed |
| Critical | UBUNTU-CVE-2025-6558KEV | webkit2gtk | no fix listed |
| Critical | UBUNTU-CVE-2023-32409KEV | qtwebkit-opensource-src | no fix listed |
| Critical | UBUNTU-CVE-2025-48384KEV | git | 1:2.25.1-1ubuntu3.14+esm1 |
| Critical | UBUNTU-CVE-2024-4367 | mozjs68 | no fix listed |
| Critical | UBUNTU-CVE-2021-30952KEV | qtwebkit-opensource-src | no fix listed |
| Critical | UBUNTU-CVE-2023-50387 | bind9 | no fix listed |
| Critical | UBUNTU-CVE-2025-68615 | net-snmp | 5.8+dfsg-2ubuntu2.9+esm2 |
| Critical | UBUNTU-CVE-2025-10230 | samba | 2:4.15.13+dfsg-0ubuntu0.20.04.8+esm1 |
| Critical | UBUNTU-CVE-2018-4233 | qtwebkit-opensource-src | no fix listed |
| Critical | UBUNTU-CVE-2025-6965 | sqlite3 | 3.31.1-4ubuntu0.7+esm1 |
| Critical | UBUNTU-CVE-2023-50868 | bind9 | no fix listed |
| High | DEBIAN-CVE-2025-15467 | openssl | 3.0.18-1~deb12u2 |
| High | UBUNTU-CVE-2022-0778 | openssl | 1.1.1f-1ubuntu2.fips.12 |
| High | UBUNTU-CVE-2018-11646 | qtwebkit-opensource-src | no fix listed |
| High | UBUNTU-CVE-2020-26950 | mozjs68 | no fix listed |
| High | UBUNTU-CVE-2023-28204KEV | webkit2gtk | no fix listed |
| High | UBUNTU-CVE-2023-28204KEV | qtwebkit-opensource-src | no fix listed |
| High | UBUNTU-CVE-2023-42916KEV | webkit2gtk | no fix listed |
| High | UBUNTU-CVE-2023-42916KEV | qtwebkit-opensource-src | no fix listed |
| High | GHSA-2hrw-hx67-34x6 | django | 3.2.18 |
| High | UBUNTU-CVE-2018-4162 | qtwebkit-opensource-src | no fix listed |
| High | UBUNTU-CVE-2007-4559 | python3.8 | no fix listed |
| High | UBUNTU-CVE-2024-44309KEV | qtwebkit-opensource-src | no fix listed |
| High | UBUNTU-CVE-2024-44309KEV | webkit2gtk | no fix listed |
| High | GHSA-x4qr-2fvf-3mr5 | cryptography | 39.0.1 |
| High | UBUNTU-CVE-2023-0286 | openssl | 1.1.1f-1ubuntu2.fips.17 |
| High | UBUNTU-CVE-2022-42867 | qtwebkit-opensource-src | no fix listed |
| High | UBUNTU-CVE-2018-4416 | qtwebkit-opensource-src | no fix listed |
| High | UBUNTU-CVE-2024-29943 | mozjs68 | no fix listed |
| High | UBUNTU-CVE-2021-23840 | openssl | 1.1.1f-1ubuntu2.fips.7.2 |
| High | GHSA-qmf9-6jqf-j8fq | django | 3.2.23 |
| High | GHSA-6cw3-g6wv-c2xv | django | 3.2.12 |
| High | UBUNTU-CVE-2023-2650 | openssl | 1.1.1f-1ubuntu2.fips.19 |
| High | UBUNTU-CVE-2021-3712 | openssl | no fix listed |
| High | GHSA-q2jf-h9jm-m7p4 | django | 3.2.17 |
| High | UBUNTU-CVE-2023-48795 | openssh | 1:8.2p1-4ubuntu0.fips.0.10 |
| High | GHSA-2gwj-7jmv-h26r | django | 3.2.13 |
| High | UBUNTU-CVE-2019-8375 | qtwebkit-opensource-src | no fix listed |
| High | GHSA-frmv-pr5f-9mcr | django | 4.2.26 |
| High | UBUNTU-CVE-2022-35583 | wkhtmltopdf | no fix listed |
| High | UBUNTU-CVE-2023-6856 | mozjs68 | no fix listed |
| High | UBUNTU-CVE-2021-3449 | openssl | 1.1.1f-1ubuntu2.fips.7 |
| High | GHSA-r5fr-rjxr-66jc | lodash | 4.18.0 |
| High | UBUNTU-CVE-2024-2511 | openssl | 1.1.1f-1ubuntu2.24+esm5 |
| High | UBUNTU-CVE-2026-4480 | samba | 2:4.15.13+dfsg-0ubuntu0.20.04.8+esm2 |
| High | UBUNTU-CVE-2017-2547 | qtwebkit-opensource-src | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.1.0latest | 2 months ago | 11.7.0 | 66601,3162,933 | 64,489 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.