StackRadar

mod-licenses Helm chart

folio-org

Scored 14 Sept 2026

A Helm chart for Kubernetes

Latest 0.1.32 3 years agodeploys tag latest 0Artifact Hub

mod-licenses 0.1.32 deploys 1 container image: folioci/mod-licenses. Across them, 138 findings0 critical, 4 high. The highest contribution is ALPINE-CVE-2025-15467 in openssl 3.3.1-r3, fixed in 3.3.6-r0.

Radar Score

1,760043599

138 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
folioci/mod-licenseslatest0435991,760

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

138 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-g8m5-722r-8whqjetty-server@9.4.39.v202103259.4.56
LowGHSA-qv9r-c865-cp47log4j-api@2.17.22.25.5
LowALPINE-CVE-2026-22184zlib@1.3.1-r11.3.2-r0
LowGHSA-q4rv-gq96-w7c5jetty-server@9.4.39.v202103259.4.57.v20241219
LowGHSA-jmp9-x22r-554xspring-core@5.3.39no fix listed
LowALPINE-CVE-2026-45186expat@2.6.2-r02.8.1-r0
LowGHSA-x23c-287f-qqv5spring-webmvc@5.3.39no fix listed
LowALPINE-CVE-2024-12133libtasn1@4.19.0-r24.20.0-r0
LowGHSA-rc42-6c7j-7h5rspring-boot@2.7.18no fix listed
LowALPINE-CVE-2025-15468openssl@3.3.1-r33.3.6-r0
LowGHSA-hmr7-m48g-48f6jetty-http@9.4.39.v202103259.4.52
LowGHSA-r5w3-xv2f-j59qspring-expression@5.3.39no fix listed
LowALPINE-CVE-2025-64720libpng@1.6.43-r01.6.53-r0
LowGHSA-j92g-9f8w-j867postgresql@42.7.1142.7.12
LowALPINE-CVE-2025-66293libpng@1.6.43-r01.6.53-r0
LowGHSA-xx22-p4ch-683rlz4-java@1.10.11.11.1
LowALPINE-CVE-2025-26519musl@1.2.5-r01.2.5-r1
LowGHSA-775g-4xr8-78h8spring-expression@5.3.39no fix listed
LowGHSA-w3c8-7r8f-9jp8spring-webmvc@5.3.395.3.42
LowGHSA-rcqc-6cw3-h962jackson-databind@3.1.33.1.4
LowGHSA-5gvw-p9qm-jgwhjackson-databind@2.18.72.18.9
LowGHSA-pr98-23f8-jwxvlogback-core@1.2.131.3.15
LowALPINE-CVE-2026-25210expat@2.6.2-r02.7.4-r0
LowALPINE-CVE-2025-65018libpng@1.6.43-r01.6.53-r0
LowGHSA-jhq6-gfmj-v8fxlogback-core@1.2.131.5.34
LowGHSA-4gc7-5j7h-4qphspring-context@5.3.39no fix listed
LowGHSA-4gc7-5j7h-4qphspring-web@5.3.39no fix listed
LowALPINE-CVE-2026-40200musl@1.2.5-r01.2.5-r3
LowALPINE-CVE-2025-66199openssl@3.3.1-r33.3.6-r0
LowGHSA-3pjw-73gf-8qr5jackson-databind@2.18.72.18.8
LowGHSA-4773-3jfm-qmx3spring-webmvc@5.3.39no fix listed
LowALPINE-CVE-2026-22796openssl@3.3.1-r33.3.6-r0
LowGHSA-72pg-x5f8-j25jspring-webmvc@5.3.39no fix listed
LowGHSA-mq64-j8f9-9gcjspring-webmvc@5.3.39no fix listed
LowGHSA-9fxm-vc8v-hj55jackson-databind@3.1.33.1.4
LowGHSA-r7wm-3cxj-wff9jackson-core@3.1.33.1.4
LowALPINE-CVE-2026-22801libpng@1.6.43-r01.6.54-r0
LowGHSA-3chg-m5w7-qfv5spring-webmvc@5.3.39no fix listed
LowGHSA-5hh8-q8hv-fr38jackson-databind@3.1.33.1.4
LowGHSA-hgj6-7826-r7m5jackson-databind@2.18.72.18.8
LowGHSA-wxpp-56q6-5pcgspring-expression@5.3.39no fix listed
LowGHSA-5jmj-h7xm-6q6vjackson-databind@2.18.72.18.9
LowGHSA-6p4f-wcwh-5vvmspring-webmvc@5.3.39no fix listed
LowGHSA-qh8g-58pp-2wxhjetty-http@9.4.39.v2021032512.0.12
LowGHSA-x2r2-rvhq-2mqvspring-security-web@5.8.16no fix listed
LowGHSA-wwpq-f5c3-7hvxspring-boot@2.7.18no fix listed
LowGHSA-7p3p-8qv8-m2vhjetty-server@9.4.39.v20210325no fix listed
LowALPINE-CVE-2025-64505libpng@1.6.43-r01.6.53-r0
LowALPINE-CVE-2024-13176openssl@3.3.1-r33.3.2-r2
LowGHSA-293q-567p-wmwqspring-security-web@5.8.16no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.32latest3 years agolatest0435991,760

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/folio-org/mod-licenses.svg)](https://charts.stackradar.io/charts/folio-org/mod-licenses)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.