business-api-ecosystem Helm chart
fiwareScored 14 Sept 2026
A Helm chart for running the FIWARE business API ecosystem (FIWARE Marketplace) on Kubernetes
Latest 1.1.0 2 months agodeploys tag 11.7.0 0Artifact Hub
business-api-ecosystem 1.1.0 deploys 4 container images: bitnamilegacy/mongodb, fiware/biz-ecosystem-charging-backend, library/busybox and fiware/biz-ecosystem-logic-proxy. Across them, 4,380 findings — 66 critical, 60 high — 58 on CISA KEV. The highest contribution is UBUNTU-CVE-2025-24201 in webkit2gtk 2.38.6-0ubuntu0.20.04.1, with no fix listed.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnamilegacy/ | 3.6.21 | 0024149 | 1,926 |
| fiware/ | 11.7.0 | 65551,1091,906 | 50,775 |
| library/ | latest | 0000 | 0 |
| fiware/ | 11.20.3 | 15183878 | 11,788 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | UBUNTU-CVE-2026-2776 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2026-2778 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2026-4892 | dnsmasq | 2.90-0ubuntu0.20.04.1+esm2 |
| Medium | GHSA-4hjh-wcwx-xvwj | axios | 1.12.0 |
| Medium | GHSA-2xpw-w6gg-jr37 | urllib3 | 2.6.0 |
| Medium | GHSA-gm62-xv2j-4w53 | urllib3 | 2.6.0 |
| Medium | UBUNTU-CVE-2020-12393 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2022-3171 | protobuf | no fix listed |
| Medium | UBUNTU-CVE-2022-22764 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2022-45421 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2023-23605 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2023-25737 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2023-28162 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2023-29536 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2023-29550 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2024-7522 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2025-14330 | mozjs68 | no fix listed |
| Medium | DEBIAN-CVE-2024-26461 | krb5 | no fix listed |
| Medium | UBUNTU-CVE-2019-1010024 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2022-28289 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2022-46873 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2019-6988 | openjpeg2 | no fix listed |
| Medium | UBUNTU-CVE-2022-41409 | pcre2 | no fix listed |
| Medium | UBUNTU-CVE-2026-5450 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2026-28955 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2026-28955 | webkit2gtk | no fix listed |
| Medium | GHSA-3ww4-gg4f-jr7f | cryptography | 42.0.0 |
| Medium | UBUNTU-CVE-2021-30897 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2026-8953 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2017-2386 | qtwebkit-opensource-src | no fix listed |
| Medium | UBUNTU-CVE-2025-24189 | webkit2gtk | no fix listed |
| Medium | UBUNTU-CVE-2025-24189 | qtwebkit-opensource-src | no fix listed |
| Medium | GHSA-5528-5vmv-3xc2 | multer | 2.1.1 |
| Medium | UBUNTU-CVE-2021-43542 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2023-25739 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2024-11699 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2024-9143 | openssl | 1.1.1f-1ubuntu2.fips.24 |
| Medium | UBUNTU-CVE-2023-25729 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2023-6866 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2026-16411 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2026-2757 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2017-2424 | qtwebkit-opensource-src | no fix listed |
| Medium | DEBIAN-CVE-2026-14669 | postgresql-15 | 15.19-0+deb12u1 |
| Medium | UBUNTU-CVE-2020-15681 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2024-8389 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2025-8028 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2024-1553 | mozjs68 | no fix listed |
| Medium | UBUNTU-CVE-2017-2528 | qtwebkit-opensource-src | no fix listed |
| Medium | DEBIAN-CVE-2025-55154 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u4 |
| Medium | UBUNTU-CVE-2021-43536 | mozjs68 | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.1.0latest | 2 months ago | 11.7.0 | 66601,3162,933 | 64,489 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.