StackRadar

endpoint-auth-service 0.1.4 Helm chart

fiware

Scored 14 Sept 2026

A Helm chart for running the endpoint-auth-service on kubernetes.

Version 0.1.4 7 months agodeploys tag 0.4.3 0Artifact Hub

endpoint-auth-service 0.1.4 deploys 4 container images: quay.io/fiware/endpoint-configuration-service, quay.io/fiware/envoy-configmap-updater, quay.io/fiware/ishare-auth-provider and expediagroup/kubernetes-sidecar-injector. Across them, 784 findings11 critical, 33 high 7 on CISA KEV. The highest contribution is RHSA-2022:9058 in prometheus-jmx-exporter 0.12.0-7.el8, fixed in 0:0.12.0-9.el8_7.

Radar Score

11,8351133215525

784 findings over 4 of 4 images measured

KEV ×7 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
quay.io/fiware/endpoint-configuration-service0.4.311221661747,325
quay.io/fiware/envoy-configmap-updater0.4.305171131,556
quay.io/fiware/ishare-auth-provider0.4.304201181,629
expediagroup/kubernetes-sidecar-injector1.0.102121201,325

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

195 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumRHSA-2022:7106zlib@1.2.11-18.el8_50:1.2.11-19.el8_6
MediumRHSA-2022:7793rsync@3.1.3-14.el8_6.20:3.1.3-19.el8
MediumGO-2024-2687stdlib@go1.18.51.21.9
MediumGHSA-5cgq-3rg8-m6cvgolang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.52.0
MediumRHSA-2024:0425sqlite@3.26.0-15.el80:3.26.0-16.el8_6.1
MediumRHSA-2025:11035lz4@1.8.3-3.el8_40:1.8.3-5.el8_10
MediumRHSA-2022:7704glib2@2.56.4-158.el80:2.56.4-159.el8
MediumRHSA-2023:7151python3@3.6.8-45.el80:3.6.8-56.el8_9
MediumRHSA-2023:7176python-pip@9.0.3-22.el80:9.0.3-23.el8
MediumRHSA-2023:0110sqlite@3.26.0-15.el80:3.26.0-17.el8_7
MediumRHEA-2023:3850krb5@1.18.2-14.el80:1.18.2-25.el8_8
MediumGHSA-rhgr-952r-6p8qmaven-shared-utils@3.2.13.3.3
MediumRHSA-2022:4797maven-shared-utils@3.2.1-0.4.module+el8.6.0+13337+afcb49ec0:3.2.1-0.5.module+el8.6.0+15049+43453910
MediumRHSA-2025:0325rsync@3.1.3-14.el8_6.20:3.1.3-20.el8_10
MediumRHSA-2022:6457python3@3.6.8-45.el80:3.6.8-47.el8_6
MediumRHSA-2022:4991xz@5.2.4-3.el80:5.2.4-4.el8_6
MediumALPINE-CVE-2022-4304openssl@1.1.1q-r01.1.1t-r0
MediumRHSA-2025:12013rsync@3.1.3-14.el8_6.20:3.1.3-14.el8_6.8
MediumRHSA-2023:0833python3@3.6.8-45.el80:3.6.8-48.el8_7.1
MediumGHSA-m72m-mhq2-9p6cjsoup@1.12.11.14.2
MediumGHSA-v778-237x-gjrcgolang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.31.0
MediumGHSA-r48q-9g5r-8q2hgithub.com/emicklei/go-restful@v2.9.5+incompatible2.16.0
MediumGHSA-57j2-w4cx-62h2jackson-databind@2.12.42.12.6.1
MediumRHSA-2022:5313curl@7.61.1-22.el80:7.61.1-22.el8_6.3
MediumRHSA-2022:5314expat@2.2.5-8.el80:2.2.5-8.el8_6.2
MediumGHSA-vvpx-j8f3-3w6hgolang.org/x/net@v0.0.0-20211209124913-491a49abca630.7.0
MediumALPINE-CVE-2023-0215openssl@1.1.1q-r01.1.1t-r0
MediumRHSA-2026:26275openssl@1:1.1.1k-6.el8_51:1.1.1k-16.el8_6
MediumRHSA-2025:7540libjpeg-turbo@1.5.3-12.el80:1.5.3-14.el8_10
MediumGHSA-hp87-p4gw-j4gqgopkg.in/yaml.v3@v3.0.0-20210107192922-496545a6307b3.0.1
MediumGHSA-8c26-wmh5-6g9vgolang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.0.0-20220314234659-1baeb1ce4c0b
MediumGHSA-4374-p667-p6c8golang.org/x/net@v0.0.0-20211209124913-491a49abca630.17.0
MediumALPINE-CVE-2023-0464openssl@1.1.1q-r01.1.1t-r1
MediumRHSA-2022:5317libxml2@2.9.7-13.el80:2.9.7-13.el8_6.1
MediumRHSA-2022:7745freetype@2.9.1-4.el8_3.10:2.9.1-9.el8
MediumRHSA-2024:0420freetype@2.9.1-4.el8_3.10:2.9.1-5.el8_6.3
MediumGHSA-7rpj-hg47-cx62h2@1.4.2002.0.202
MediumRHSA-2022:5809pcre2@10.32-2.el80:10.32-3.el8_6
MediumGHSA-69cg-p879-7622golang.org/x/net@v0.0.0-20211209124913-491a49abca630.0.0-20220906165146-f3363e06e74c
MediumGHSA-3vm4-22fp-5rfmgolang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.0.0-20201216223049-8b5274cf687f
MediumGHSA-7r82-7xv7-xcpjhttpclient@4.5.104.5.13
MediumRHSA-2023:7877openssl@1:1.1.1k-6.el8_51:1.1.1k-12.el8_9
MediumGHSA-cx63-2mw6-8hw5setuptools@39.2.070.0.0
MediumRHSA-2024:5040python-setuptools@39.2.0-6.el80:39.2.0-7.el8_6.1
MediumRHSA-2025:2600rsync@3.1.3-14.el8_6.20:3.1.3-21.el8_10
MediumGHSA-668q-qrv7-99fmlogback-core@1.2.31.2.9
MediumRHSA-2023:6292curl@7.61.1-22.el80:7.61.1-22.el8_6.9
MediumRHSA-2022:6206systemd@239-58.el80:239-58.el8_6.4
MediumRHSA-2022:6878expat@2.2.5-8.el80:2.2.5-8.el8_6.3
MediumGHSA-jjjh-jjxp-wpffjackson-databind@2.12.42.12.7.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.4latest7 months ago0.4.3113321552511,835

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/fiware/endpoint-auth-service.svg)](https://charts.stackradar.io/charts/fiware/endpoint-auth-service)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.