business-api-ecosystem Helm chart
fiwareScored 14 Sept 2026
A Helm chart for running the FIWARE business API ecosystem (FIWARE Marketplace) on Kubernetes
Latest 1.1.0 2 months agodeploys tag 11.7.0 0Artifact Hub
business-api-ecosystem 1.1.0 deploys 4 container images: bitnamilegacy/mongodb, fiware/biz-ecosystem-charging-backend, library/busybox and fiware/biz-ecosystem-logic-proxy. Across them, 4,380 findings — 66 critical, 60 high — 58 on CISA KEV. The highest contribution is UBUNTU-CVE-2025-24201 in webkit2gtk 2.38.6-0ubuntu0.20.04.1, with no fix listed.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnamilegacy/ | 3.6.21 | 0024149 | 1,926 |
| fiware/ | 11.7.0 | 65551,1091,906 | 50,775 |
| library/ | latest | 0000 | 0 |
| fiware/ | 11.20.3 | 15183878 | 11,788 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | UBUNTU-CVE-2017-7165 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2020-3868 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2020-6825 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2020-12417 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2026-4408 | samba | 2:4.15.13+dfsg-0ubuntu0.20.04.8+esm2 |
| Medium | UBUNTU-CVE-2018-4201 | qtwebkit-opensource-src | no fix listed |
| Medium | DEBIAN-CVE-2018-16376 | openjpeg2 | no fix listed |
| Medium | UBUNTU-CVE-2020-3895 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-7160 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2021-30934 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13885 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2024-3661 | network-manager-pptp | no fix listed |
| Medium | UBUNTU-CVE-2024-3661 | pptp-linux | no fix listed |
| Medium | UBUNTU-CVE-2018-4262 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2019-8816 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2025-6436 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2017-2479 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2019-8814 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2020-12389 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2017-5949 | qtwebkit-opensource-src | no fix listed |
| Medium | DEBIAN-CVE-2009-3546 | libwmf | no fix listed |
| Medium | UBUNTU-CVE-2017-2367 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-2442 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2019-8676 | qtwebkit-opensource-src | no fix listed |
| Medium | GHSA-hp87-p4gw-j4gq | gopkg.in/ | 3.0.1 |
| Medium | UBUNTU-CVE-2019-8669 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2019-8684 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2018-12294 | qtwebkit-opensource-src | no fix listed |
| Medium | GHSA-w3h3-4rj7-4ph4 | gunicorn | 22.0.0 |
| Medium | UBUNTU-CVE-2021-46848 | libtasn1-6 | 4.16.0-2ubuntu0.1+esm1 |
| Medium | UBUNTU-CVE-2020-15659 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2017-13856 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13866 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-13870 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-7156 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2017-7157 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2021-30851 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2021-1844 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2018-12911 | qtwebkit-opensource-src | no fix listed |
| Medium | GHSA-2w6w-674q-4c4q | handlebars | 4.7.9 |
| Medium | UBUNTU-CVE-2023-2828 | bind9 | no fix listed |
| Medium | UBUNTU-CVE-2019-8846 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2020-9951 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2020-12419 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2020-12396 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2023-40397 | webkit2gtk | no fix listed |
| Medium | UBUNTU-CVE-2023-40397 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2019-8815 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2023-0464 | openssl | 1.1.1f-1ubuntu2.fips.18 |
| Medium | GHSA-93xj-8mrv-444m | httplib2 | 0.19.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.1.0latest | 2 months ago | 11.7.0 | 66601,3162,933 | 64,489 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.