StackRadar

booksonic-air 6.4.2 Helm chart

geek-cookbookVerified publisher

Scored 14 Sept 2026

Booksonic is a platform for accessing the audibooks you own wherever you are

Version 6.4.2 4 years agodeploys tag version-v2009.1.0 0Artifact Hub

booksonic-air 6.4.2 deploys 1 container image: ghcr.io/linuxserver/booksonic-air. Across them, 1,174 findings22 critical, 34 high 10 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 5.2.6.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

19,2152234416701

1,174 findings over 1 of 1 images measured

KEV ×10 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
ghcr.io/linuxserver/booksonic-airversion-v2009.1.0223441670119,215

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Critical findings

22 distinct across the version’s images

Critical: findings whose contribution to the Radar Score is 70–100. Show every band

SeverityAdvisoryPackageFixed in
CriticalGHSA-36p3-wjmg-h94xKEVspring-webmvc@5.2.6.RELEASE5.2.20.RELEASE
CriticalGHSA-36p3-wjmg-h94xKEVspring-boot-starter-web@2.2.7.RELEASE2.5.12
CriticalGHSA-36p3-wjmg-h94xKEVspring-beans@5.2.6.RELEASE5.2.20.RELEASE
CriticalGHSA-83qj-6fr2-vhqgKEVtomcat-embed-core@9.0.379.0.99
CriticalUBUNTU-CVE-2015-4852KEVopenjdk-8@8u292-b10-0ubuntu1~18.04no fix listed
CriticalGHSA-599f-7c49-w659commons-text@1.81.10.0
CriticalUBUNTU-CVE-2022-2068openssl@1.1.1-1ubuntu2.1~18.04.131.1.1-1ubuntu2.1~18.04.19
CriticalUBUNTU-CVE-2021-3711openssl@1.1.1-1ubuntu2.1~18.04.131.1.1-1ubuntu2.fips.2.1~18.04.13.2
CriticalUBUNTU-CVE-2022-1292openssl@1.1.1-1ubuntu2.1~18.04.131.1.1-1ubuntu2.1~18.04.17
CriticalUBUNTU-CVE-2023-4863KEVlibwebp@0.6.1-2ubuntu0.18.04.10.6.1-2ubuntu0.18.04.2+esm1
CriticalUBUNTU-CVE-2023-5217KEVlibvpx@1.7.0-3ubuntu0.18.04.11.7.0-3ubuntu0.18.04.1+esm1
CriticalUBUNTU-CVE-2022-29155openldap@2.4.45+dfsg-1ubuntu1.102.4.45+dfsg-1ubuntu1.11
CriticalGHSA-mjmj-j48q-9wg2snakeyaml@1.252.0
CriticalUBUNTU-CVE-2025-27363KEVfreetype@2.8.1-2ubuntu2.12.8.1-2ubuntu2.2+esm1
CriticalGHSA-xj57-8qj4-c4m6commons-configuration2@2.72.8.0
CriticalUBUNTU-CVE-2023-44487KEVnghttp2@1.30.0-1ubuntu11.30.0-1ubuntu1+esm2
CriticalGHSA-5j33-cvvr-w245tomcat-embed-core@9.0.379.0.98
CriticalGHSA-vv7r-c36w-3prjcommons-fileupload@1.41.6.0
CriticalUBUNTU-CVE-2024-47175cups@2.2.7-1ubuntu2.82.2.7-1ubuntu2.10+esm6
CriticalUBUNTU-CVE-2025-6965sqlite3@3.22.0-1ubuntu0.43.22.0-1ubuntu0.7+esm2
CriticalUBUNTU-CVE-2019-9513nghttp2@1.30.0-1ubuntu11.30.0-1ubuntu1+esm2
CriticalUBUNTU-CVE-2024-2961glibc@2.27-3ubuntu1.42.27-3ubuntu1.6+esm2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
6.4.2latest4 years agoversion-v2009.1.0223441670119,215

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/booksonic-air.svg)](https://charts.stackradar.io/charts/geek-cookbook/booksonic-air)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.