business-api-ecosystem Helm chart
fiwareScored 15 Sept 2026
A Helm chart for running the FIWARE business API ecosystem (FIWARE Marketplace) on Kubernetes
Latest 1.1.0 2 months agodeploys tag 11.7.0 0Artifact Hub
business-api-ecosystem 1.1.0 deploys 4 container images: bitnamilegacy/mongodb, fiware/biz-ecosystem-charging-backend, library/busybox and fiware/biz-ecosystem-logic-proxy. Across them, 4,396 findings — 64 critical, 61 high — 58 on CISA KEV. The highest contribution is UBUNTU-CVE-2025-24201 in qtwebkit-opensource-src 5.212.0~alpha4-1ubuntu2.1, with no fix listed.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnamilegacy/ | 3.6.21 | 0024149 | 1,926 |
| fiware/ | 11.7.0 | 64561,1101,918 | 50,865 |
| library/ | latest | 0000 | 0 |
| fiware/ | 11.20.3 | 05164901 | 11,401 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2025-8039 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2023-6869 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-6784 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-6791 | glibc | no fix listed |
| Low | UBUNTU-CVE-2026-60315 | mysql-8.0 | no fix listed |
| Low | UBUNTU-CVE-2024-5700 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2020-26957 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2021-38497 | mozjs68 | no fix listed |
| Low | DEBIAN-CVE-2022-27943 | gcc-12 | no fix listed |
| Low | UBUNTU-CVE-2026-6761 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-74950 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-74955 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2023-51580 | bluez | no fix listed |
| Low | UBUNTU-CVE-2022-25836 | bluez | no fix listed |
| Low | UBUNTU-CVE-2022-25837 | bluez | no fix listed |
| Low | UBUNTU-CVE-2024-3853 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2025-64720 | libpng1.6 | 1.6.37-2ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2021-23955 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-8458 | curl | 7.68.0-1ubuntu2.25+esm4 |
| Low | DEBIAN-CVE-2026-28691 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u8 |
| Low | UBUNTU-CVE-2026-76641 | expat | no fix listed |
| Low | UBUNTU-CVE-2025-50083 | mysql-8.0 | 8.0.43-0ubuntu0.20.04.1+esm1 |
| Low | UBUNTU-CVE-2022-49737 | xorg-server | no fix listed |
| Low | UBUNTU-CVE-2026-4684 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2023-32210 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-6253 | curl | no fix listed |
| Low | GHSA-w5hq-g745-h8pq | uuid | 11.1.1 |
| Low | UBUNTU-CVE-2026-74977 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2025-50082 | mysql-8.0 | 8.0.43-0ubuntu0.20.04.1+esm1 |
| Low | DEBIAN-CVE-2026-33164 | libde265 | no fix listed |
| Low | UBUNTU-CVE-2024-54658 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2024-54658 | webkit2gtk | no fix listed |
| Low | UBUNTU-CVE-2025-49180 | xorg-server | 2:1.20.13-1ubuntu1~20.04.20+esm1 |
| Low | DSA-5949-1 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | UBUNTU-CVE-2025-13601 | glib2.0 | 2.64.6-1~ubuntu20.04.9+esm1 |
| Low | UBUNTU-CVE-2022-29912 | mozjs68 | no fix listed |
| Low | GO-2023-1703 | stdlib | 1.19.8 |
| Low | DEBIAN-CVE-2026-49218 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u11 |
| Low | DEBIAN-CVE-2026-53460 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u11 |
| Low | GHSA-w4pp-8pjf-rmxw | pacote | 21.5.1 |
| Low | GHSA-9hjg-9r4m-mvj7 | requests | 2.32.4 |
| Low | UBUNTU-CVE-2024-47081 | requests | 2.22.0-2ubuntu1.1+esm1 |
| Low | UBUNTU-CVE-2026-7323 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-4371 | mozjs68 | no fix listed |
| Low | GO-2021-0241 | stdlib | 1.15.13 |
| Low | UBUNTU-CVE-2026-16401 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2025-5222 | icu | no fix listed |
| Low | UBUNTU-CVE-2026-43713 | webkit2gtk | no fix listed |
| Low | UBUNTU-CVE-2026-43713 | qtwebkit-opensource-src | no fix listed |
| Low | GO-2022-0521 | stdlib | 1.17.12 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.1.0latest | 2 months ago | 11.7.0 | 64611,2982,968 | 64,192 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.