StackRadar

airsonic Helm chart

geek-cookbookVerified publisher

Scored 14 Sept 2026

Airsonic is a Free and Open Source community driven media server

Latest 6.4.2 4 years agodeploys tag latest 0Artifact Hub

airsonic 6.4.2 deploys 1 container image: airsonicadvanced/airsonic-advanced. Across them, 1,153 findings19 critical, 36 high 9 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 5.3.8, fixed in 5.3.18. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

18,2301936366732

1,153 findings over 1 of 1 images measured

KEV ×9 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
airsonicadvanced/airsonic-advancedlatest193636673218,230

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,153 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumUBUNTU-CVE-2022-27776curl@7.68.0-1ubuntu2.47.68.0-1ubuntu2.10
MediumGHSA-v7wg-cpwc-24m4postgresql@42.2.2042.2.25
MediumUBUNTU-CVE-2022-43680expat@2.2.9-1build12.2.9-1ubuntu0.6
MediumUBUNTU-CVE-2022-29824libxml2@2.9.10+dfsg-5ubuntu0.20.04.12.9.10+dfsg-5ubuntu0.20.04.3
MediumUBUNTU-CVE-2025-47273setuptools@45.2.0-145.2.0-1ubuntu0.3
MediumUBUNTU-CVE-2019-14732adplug@2.3.1+dfsg-2build1no fix listed
MediumUBUNTU-CVE-2021-33560libgcrypt20@1.8.5-5ubuntu11.8.5-5ubuntu1.1
MediumUBUNTU-CVE-2023-3446openssl@1.1.1f-1ubuntu2.21.1.1f-1ubuntu2.20
MediumUBUNTU-CVE-2024-7592python3.8@3.8.5-1~20.04.33.8.10-0ubuntu1~20.04.12
MediumUBUNTU-CVE-2024-34459libxml2@2.9.10+dfsg-5ubuntu0.20.04.12.9.10+dfsg-5ubuntu0.20.04.8
MediumUBUNTU-CVE-2016-20013glibc@2.31-0ubuntu9.2no fix listed
MediumUBUNTU-CVE-2020-36129aom@3.1.0-0ubuntu1~20.04.sav0no fix listed
MediumUBUNTU-CVE-2024-6232python3.8@3.8.5-1~20.04.33.8.10-0ubuntu1~20.04.12
MediumUBUNTU-CVE-2023-31486perl@5.30.0-9ubuntu0.2no fix listed
MediumUBUNTU-CVE-2023-52356tiff@4.1.0+git191117-2ubuntu0.20.04.14.1.0+git191117-2ubuntu0.20.04.12
MediumUBUNTU-CVE-2022-3970tiff@4.1.0+git191117-2ubuntu0.20.04.14.1.0+git191117-2ubuntu0.20.04.7
MediumUBUNTU-CVE-2022-25313expat@2.2.9-1build12.2.9-1ubuntu0.4
MediumGHSA-fh5r-crhr-qrrqcxf-core@3.4.33.5.10
MediumUBUNTU-CVE-2021-20305nettle@3.5.1+really3.5.1-23.5.1+really3.5.1-2ubuntu0.1
MediumGHSA-wc4r-xq3c-5cf3tomcat-embed-core@9.0.469.0.106
MediumUBUNTU-CVE-2018-5709krb5@1.17-6ubuntu4.1no fix listed
MediumGHSA-rqph-vqwm-22vcspring-messaging@5.3.85.3.20
MediumGHSA-r6j3-px5g-cq3xtomcat-embed-core@9.0.469.0.81
MediumGHSA-wr62-c79q-cv37tomcat-embed-core@9.0.469.0.107
MediumUBUNTU-CVE-2023-6879aom@3.1.0-0ubuntu1~20.04.sav0no fix listed
MediumGHSA-5m62-pw8w-7w9ftomcat-embed-core@9.0.469.0.118
MediumUBUNTU-CVE-2024-28757expat@2.2.9-1build1no fix listed
MediumGHSA-25xr-qj8w-c4vftomcat-embed-core@9.0.469.0.107
MediumUBUNTU-CVE-2024-8088python3.8@3.8.5-1~20.04.33.8.10-0ubuntu1~20.04.12
MediumGHSA-hh26-6xwr-ggv7spring-beans@5.3.85.3.20
MediumUBUNTU-CVE-2016-10228glibc@2.31-0ubuntu9.22.31-0ubuntu9.7
MediumUBUNTU-CVE-2023-31484perl@5.30.0-9ubuntu0.25.30.0-9ubuntu0.4
MediumUBUNTU-CVE-2023-2953openldap@2.4.49+dfsg-2ubuntu1.72.4.49+dfsg-2ubuntu1.10
MediumUBUNTU-CVE-2022-4883libxpm@1:3.5.12-11:3.5.12-1ubuntu0.20.04.1
MediumUBUNTU-CVE-2017-9937jbigkit@2.1-3.1build12.1-3.1ubuntu0.20.04.1
MediumGHSA-4j3c-42xv-3f84tomcat-embed-core@9.0.469.0.107
MediumUBUNTU-CVE-2021-22876curl@7.68.0-1ubuntu2.47.68.0-1ubuntu2.5
MediumUBUNTU-CVE-2022-2509gnutls28@3.6.13-2ubuntu1.33.6.13-2ubuntu1.7
MediumUBUNTU-CVE-2014-5271ffmpeg@7:4.4-1ubuntu0~20.04.sav0.1no fix listed
MediumUBUNTU-CVE-2023-36054krb5@1.17-6ubuntu4.11.17-6ubuntu4.4
MediumUBUNTU-CVE-2023-52355tiff@4.1.0+git191117-2ubuntu0.20.04.1no fix listed
MediumUBUNTU-CVE-2021-30535icu@66.1-2ubuntu266.1-2ubuntu2.1
MediumUBUNTU-CVE-2023-52425expat@2.2.9-1build1no fix listed
MediumUBUNTU-CVE-2023-25193harfbuzz@2.6.4-1ubuntu42.6.4-1ubuntu4.3
MediumUBUNTU-CVE-2022-34903gnupg2@2.2.19-3ubuntu2.12.2.19-3ubuntu2.2
MediumUBUNTU-CVE-2022-0856libcaca@0.99.beta19-2.1ubuntu1.20.04.10.99.beta19-2.1ubuntu1.20.04.2+esm1
MediumGHSA-r38f-c4h4-hqq2postgresql@42.2.2042.2.26
MediumUBUNTU-CVE-2022-29800networkd-dispatcher@2.0.1-12.1-2~ubuntu20.04.2
MediumUBUNTU-CVE-2021-22925curl@7.68.0-1ubuntu2.47.68.0-1ubuntu2.6
MediumGHSA-h2fw-rfh5-95r3tomcat-embed-core@9.0.469.0.105

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
6.4.2latest4 years agolatest193636673218,230

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/airsonic.svg)](https://charts.stackradar.io/charts/geek-cookbook/airsonic)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.