business-api-ecosystem Helm chart
fiwareScored 14 Sept 2026
A Helm chart for running the FIWARE business API ecosystem (FIWARE Marketplace) on Kubernetes
Latest 1.1.0 2 months agodeploys tag 11.7.0 0Artifact Hub
business-api-ecosystem 1.1.0 deploys 4 container images: bitnamilegacy/mongodb, fiware/biz-ecosystem-charging-backend, library/busybox and fiware/biz-ecosystem-logic-proxy. Across them, 4,380 findings — 66 critical, 60 high — 58 on CISA KEV. The highest contribution is UBUNTU-CVE-2025-24201 in webkit2gtk 2.38.6-0ubuntu0.20.04.1, with no fix listed.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnamilegacy/ | 3.6.21 | 0024149 | 1,926 |
| fiware/ | 11.7.0 | 65551,1091,906 | 50,775 |
| library/ | latest | 0000 | 0 |
| fiware/ | 11.20.3 | 15183878 | 11,788 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | UBUNTU-CVE-2017-2476 | qtwebkit-opensource-src | no fix listed |
| Medium | GHSA-2p57-rm9w-gvfp | ip | no fix listed |
| Medium | UBUNTU-CVE-2018-4089 | qtwebkit-opensource-src | no fix listed |
| Medium | GHSA-xvch-5gv4-984h | minimist | 0.2.4 |
| Medium | UBUNTU-CVE-2017-7039 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-7040 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-7043 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-2457 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-2469 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-2470 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13798 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-7049 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2020-9895 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2024-5535 | openssl | 1.1.1f-1ubuntu2.24+esm5 |
| Medium | UBUNTU-CVE-2024-8381 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2017-2514 | qtwebkit-opensource-src | no fix listed |
| Medium | DLA-3017-1 | openldap | 2.4.44+dfsg-5+deb9u9 |
| Medium | UBUNTU-CVE-2024-54502 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2024-54502 | webkit2gtk | no fix listed |
| Medium | DLA-2574-1 | openldap | 2.4.44+dfsg-5+deb9u8 |
| Medium | UBUNTU-CVE-2017-2521 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2018-4443 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2018-4382 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2018-4438 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2018-4442 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13783 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13791 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13796 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13784 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13785 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13792 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13795 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13802 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2021-38503 | mozjs68 | no fix listed |
| Medium | GHSA-jf85-cpcp-j695 | lodash | 4.17.12 |
| Medium | UBUNTU-CVE-2026-4890 | dnsmasq | 2.90-0ubuntu0.20.04.1+esm2 |
| Medium | GHSA-m7xq-9374-9rvx | mongoose | 7.8.3 |
| Medium | UBUNTU-CVE-2017-7092 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2025-0242 | mozjs68 | no fix listed |
| Medium | DEBIAN-CVE-2018-6951 | patch | no fix listed |
| Medium | UBUNTU-CVE-2018-6952 | patch | no fix listed |
| Medium | UBUNTU-CVE-2020-13584 | qtwebkit-opensource-src | no fix listed |
| Medium | GHSA-34r7-q49f-h37c | uglify-js | 2.4.24 |
| Medium | GHSA-9c47-m6qq-7p4h | json5 | 1.0.2 |
| Medium | UBUNTU-CVE-2022-4304 | openssl | 1.1.1f-1ubuntu2.fips.17 |
| Medium | DLA-2968-1 | zlib | 1:1.2.8.dfsg-5+deb9u1 |
| Medium | UBUNTU-CVE-2020-13753 | qtwebkit-opensource-src | no fix listed |
| Medium | DLA-2563-1 | openssl | 1.1.0l-1~deb9u3 |
| Medium | DLA-2565-1 | openssl1.0 | 1.0.2u-1~deb9u4 |
| Medium | DLA-2774-1 | openssl1.0 | 1.0.2u-1~deb9u6 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.1.0latest | 2 months ago | 11.7.0 | 66601,3162,933 | 64,489 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.