StackRadar

booksonic-air 6.4.2 Helm chart

geek-cookbookVerified publisher

Scored 14 Sept 2026

Booksonic is a platform for accessing the audibooks you own wherever you are

Version 6.4.2 4 years agodeploys tag version-v2009.1.0 0Artifact Hub

booksonic-air 6.4.2 deploys 1 container image: ghcr.io/linuxserver/booksonic-air. Across them, 1,174 findings22 critical, 34 high 10 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 5.2.6.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

19,2152234416701

1,174 findings over 1 of 1 images measured

KEV ×10 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
ghcr.io/linuxserver/booksonic-airversion-v2009.1.0223441670119,215

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

701 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-41989libgcrypt20@1.8.1-4ubuntu1.3no fix listed
LowUBUNTU-CVE-2026-75466libjpeg-turbo@1.5.2-0ubuntu5.18.04.4no fix listed
LowUBUNTU-CVE-2025-56226libsndfile@1.0.28-4ubuntu0.18.04.2no fix listed
LowUBUNTU-CVE-2024-11053curl@7.58.0-2ubuntu3.167.58.0-2ubuntu3.24+esm10
LowUBUNTU-CVE-2025-5372libssh@0.8.0~20170825.94fa1e38-1ubuntu0.7no fix listed
LowGHSA-wxpp-56q6-5pcgspring-expression@5.2.6.RELEASEno fix listed
LowUBUNTU-CVE-2023-38469avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowUBUNTU-CVE-2023-38470avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowUBUNTU-CVE-2023-38472avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowUBUNTU-CVE-2023-38473avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowUBUNTU-CVE-2024-21144openjdk-8@8u292-b10-0ubuntu1~18.048u422-b05-1~18.04
LowUBUNTU-CVE-2023-3164tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.10+esm6
LowUBUNTU-CVE-2023-21968openjdk-8@8u292-b10-0ubuntu1~18.048u372-ga~us1-0ubuntu1~18.04
LowUBUNTU-CVE-2026-13595util-linux@2.31.1-0.4ubuntu3.7no fix listed
LowUBUNTU-CVE-2022-2867tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowUBUNTU-CVE-2022-2868tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowUBUNTU-CVE-2022-2869tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowUBUNTU-CVE-2024-21131openjdk-8@8u292-b10-0ubuntu1~18.048u422-b05-1~18.04
LowUBUNTU-CVE-2026-54371attr@1:2.4.47-2build11:2.4.47-2ubuntu0.18.04.1~esm1
LowUBUNTU-CVE-2026-1489glib2.0@2.56.4-0ubuntu0.18.04.8no fix listed
LowUBUNTU-CVE-2025-7700ffmpeg@7:3.4.8-0ubuntu0.27:3.4.11-0ubuntu0.1+esm11
LowUBUNTU-CVE-2024-50612libsndfile@1.0.28-4ubuntu0.18.04.21.0.28-4ubuntu0.18.04.2+esm2
LowGHSA-5jmj-h7xm-6q6vjackson-databind@2.11.02.18.9
LowGHSA-562r-vg33-8x8hpostgresql@42.2.1242.2.27
LowUBUNTU-CVE-2024-21208openjdk-8@8u292-b10-0ubuntu1~18.048u432-ga~us1-0ubuntu2~18.04
LowUBUNTU-CVE-2026-0964libssh@0.8.0~20170825.94fa1e38-1ubuntu0.70.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
LowUBUNTU-CVE-2023-30086tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowGHSA-6p4f-wcwh-5vvmspring-webmvc@5.2.6.RELEASEno fix listed
LowUBUNTU-CVE-2026-59848libssh@0.8.0~20170825.94fa1e38-1ubuntu0.7no fix listed
LowUBUNTU-CVE-2026-5704tar@1.29b-2ubuntu0.21.29b-2ubuntu0.4+esm4
LowUBUNTU-CVE-2023-6004libssh@0.8.0~20170825.94fa1e38-1ubuntu0.70.8.0~20170825.94fa1e38-1ubuntu0.7+esm3
LowUBUNTU-CVE-2023-30775tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowUBUNTU-CVE-2021-33294elfutils@0.170-0.4ubuntu0.10.170-0.4ubuntu0.1+esm1
LowUBUNTU-CVE-2025-2175zvbi@0.2.35-130.2.35-13ubuntu0.1~esm1
LowGHSA-x2r2-rvhq-2mqvspring-security-web@5.2.4.RELEASEno fix listed
LowUBUNTU-CVE-2020-35538libjpeg-turbo@1.5.2-0ubuntu5.18.04.41.5.2-0ubuntu5.18.04.6
LowGHSA-wwpq-f5c3-7hvxspring-boot@2.2.7.RELEASEno fix listed
LowUBUNTU-CVE-2026-72522expat@2.2.5-3ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-22695libpng1.6@1.6.34-1ubuntu0.18.04.21.6.34-1ubuntu0.18.04.2+esm2
LowUBUNTU-CVE-2024-56827openjpeg2@2.3.0-2build0.18.04.12.3.0-2+deb10u2ubuntu0.1~esm4
LowUBUNTU-CVE-2026-56403expat@2.2.5-3ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-56404expat@2.2.5-3ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-56405expat@2.2.5-3ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-56408expat@2.2.5-3ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-56406expat@2.2.5-3ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-56407expat@2.2.5-3ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-56410expat@2.2.5-3ubuntu0.2no fix listed
LowUBUNTU-CVE-2026-56411expat@2.2.5-3ubuntu0.2no fix listed
LowGHSA-g9jj-cgmh-9f38mariadb-java-client@2.6.02.7.14
LowUBUNTU-CVE-2026-78410util-linux@2.31.1-0.4ubuntu3.7no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
6.4.2latest4 years agoversion-v2009.1.0223441670119,215

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/booksonic-air.svg)](https://charts.stackradar.io/charts/geek-cookbook/booksonic-air)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.