business-api-ecosystem Helm chart
fiwareScored 15 Sept 2026
A Helm chart for running the FIWARE business API ecosystem (FIWARE Marketplace) on Kubernetes
Latest 1.1.0 2 months agodeploys tag 11.7.0 0Artifact Hub
business-api-ecosystem 1.1.0 deploys 4 container images: bitnamilegacy/mongodb, fiware/biz-ecosystem-charging-backend, library/busybox and fiware/biz-ecosystem-logic-proxy. Across them, 4,396 findings — 64 critical, 61 high — 58 on CISA KEV. The highest contribution is UBUNTU-CVE-2025-24201 in qtwebkit-opensource-src 5.212.0~alpha4-1ubuntu2.1, with no fix listed.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnamilegacy/ | 3.6.21 | 0024149 | 1,926 |
| fiware/ | 11.7.0 | 64561,1101,918 | 50,865 |
| library/ | latest | 0000 | 0 |
| fiware/ | 11.20.3 | 05164901 | 11,401 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2025-3030 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-8955 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-8957 | mozjs68 | no fix listed |
| Low | DEBIAN-CVE-2026-34191 | apr-util | 1.6.3-1+deb12u1 |
| Low | UBUNTU-CVE-2026-56002 | libxfont | 1:2.0.3-1ubuntu0.20.04.1~esm2 |
| Low | GHSA-rgw5-rvv9-x895 | brace-expansion | 2.1.4 |
| Low | UBUNTU-CVE-2024-54551 | webkit2gtk | no fix listed |
| Low | UBUNTU-CVE-2024-54551 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2026-16407 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-6760 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-4775 | tiff | no fix listed |
| Low | UBUNTU-CVE-2023-25733 | mozjs68 | no fix listed |
| Low | DEBIAN-CVE-2026-25898 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u7 |
| Low | UBUNTU-CVE-2021-30744 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2026-12292 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2020-3902 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2022-2795 | bind9 | no fix listed |
| Low | UBUNTU-CVE-2017-2549 | qtwebkit-opensource-src | no fix listed |
| Low | GO-2022-0435 | stdlib | 1.17.9 |
| Low | UBUNTU-CVE-2026-20652 | webkit2gtk | no fix listed |
| Low | UBUNTU-CVE-2026-20652 | qtwebkit-opensource-src | no fix listed |
| Low | DEBIAN-CVE-2026-13608 | curl | no fix listed |
| Low | UBUNTU-CVE-2026-5773 | curl | 7.68.0-1ubuntu2.25+esm5 |
| Low | UBUNTU-CVE-2025-6433 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-12291 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2022-42852 | qtwebkit-opensource-src | no fix listed |
| Low | GHSA-9cx6-37pm-9jff | handlebars | 4.7.9 |
| Low | UBUNTU-CVE-2025-5268 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2021-1826 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2021-29987 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2025-43419 | webkit2gtk | no fix listed |
| Low | UBUNTU-CVE-2025-43419 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2025-6427 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2024-3865 | mozjs68 | no fix listed |
| Low | DEBIAN-CVE-2026-78002 | rsyslog | no fix listed |
| Low | DEBIAN-CVE-2026-40355 | krb5 | 1.20.1-2+deb12u5 |
| Low | UBUNTU-CVE-2026-74959 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2026-28947 | webkit2gtk | no fix listed |
| Low | UBUNTU-CVE-2026-28947 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2024-40866 | webkit2gtk | no fix listed |
| Low | UBUNTU-CVE-2024-40866 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2026-0891 | mozjs68 | no fix listed |
| Low | UBUNTU-CVE-2024-0744 | mozjs68 | no fix listed |
| Low | DEBIAN-CVE-2026-25968 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u7 |
| Low | UBUNTU-CVE-2026-0877 | mozjs68 | no fix listed |
| Low | DEBIAN-CVE-2026-40356 | krb5 | 1.20.1-2+deb12u5 |
| Low | UBUNTU-CVE-2026-0889 | mozjs68 | no fix listed |
| Low | GHSA-8cf7-32gw-wr33 | jsonwebtoken | 9.0.0 |
| Low | DEBIAN-CVE-2026-45445 | openssl | 3.0.20-1~deb12u2 |
| Low | UBUNTU-CVE-2023-27954 | qtwebkit-opensource-src | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.1.0latest | 2 months ago | 11.7.0 | 64611,2982,968 | 64,192 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.