StackRadar

booksonic-air Helm chart

geek-cookbookVerified publisher

Scored 16 Sept 2026

Booksonic is a platform for accessing the audibooks you own wherever you are

Latest 6.4.2 4 years agodeploys tag version-v2009.1.0 0Artifact Hub

booksonic-air 6.4.2 deploys 1 container image: ghcr.io/linuxserver/booksonic-air. Across them, 1,179 findings21 critical, 35 high 10 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-boot-starter-web 2.2.7.RELEASE, fixed in 2.5.12. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

19,2462135418704

1,179 findings over 1 of 1 images measured

KEV ×10 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
ghcr.io/linuxserver/booksonic-airversion-v2009.1.0213541870419,246

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,179 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2023-43788libxpm@1:3.5.12-11:3.5.12-1ubuntu0.18.04.2+esm1
LowUBUNTU-CVE-2026-46968openjdk-8@8u292-b10-0ubuntu1~18.048u502-ga~us1-0ubuntu1~18.04
LowUBUNTU-CVE-2026-65705ffmpeg@7:3.4.8-0ubuntu0.27:3.4.11-0ubuntu0.1+esm15
LowUBUNTU-CVE-2026-65706ffmpeg@7:3.4.8-0ubuntu0.27:3.4.11-0ubuntu0.1+esm15
LowUBUNTU-CVE-2024-36618ffmpeg@7:3.4.8-0ubuntu0.27:3.4.11-0ubuntu0.1+esm10
LowUBUNTU-CVE-2025-4373glib2.0@2.56.4-0ubuntu0.18.04.8no fix listed
LowUBUNTU-CVE-2023-43789libxpm@1:3.5.12-11:3.5.12-1ubuntu0.18.04.2+esm1
LowUBUNTU-CVE-2024-21217openjdk-8@8u292-b10-0ubuntu1~18.048u432-ga~us1-0ubuntu2~18.04
LowUBUNTU-CVE-2023-3576tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.10+esm4
LowUBUNTU-CVE-2023-32360cups@2.2.7-1ubuntu2.82.2.7-1ubuntu2.10+esm3
LowUBUNTU-CVE-2024-36617ffmpeg@7:3.4.8-0ubuntu0.27:3.4.11-0ubuntu0.1+esm7
LowGHSA-3chg-m5w7-qfv5spring-webmvc@5.2.6.RELEASEno fix listed
LowUBUNTU-CVE-2023-39742giflib@5.1.4-2ubuntu0.15.1.4-2ubuntu0.1+esm1
LowUBUNTU-CVE-2025-0518ffmpeg@7:3.4.8-0ubuntu0.27:3.4.11-0ubuntu0.1+esm8
LowUBUNTU-CVE-2023-25435tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.10
LowUBUNTU-CVE-2023-6135nss@2:3.35-2ubuntu2.13no fix listed
LowUBUNTU-CVE-2026-34979cups@2.2.7-1ubuntu2.8no fix listed
LowUBUNTU-CVE-2026-78408util-linux@2.31.1-0.4ubuntu3.7no fix listed
LowUBUNTU-CVE-2024-56826openjpeg2@2.3.0-2build0.18.04.12.3.0-2+deb10u2ubuntu0.1~esm4
LowUBUNTU-CVE-2023-38471avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowGHSA-hgj6-7826-r7m5jackson-databind@2.11.02.18.8
LowUBUNTU-CVE-2026-54369acl@2.2.52-3build1no fix listed
LowUBUNTU-CVE-2026-41989libgcrypt20@1.8.1-4ubuntu1.3no fix listed
LowUBUNTU-CVE-2026-75466libjpeg-turbo@1.5.2-0ubuntu5.18.04.4no fix listed
LowUBUNTU-CVE-2025-56226libsndfile@1.0.28-4ubuntu0.18.04.2no fix listed
LowUBUNTU-CVE-2024-11053curl@7.58.0-2ubuntu3.167.58.0-2ubuntu3.24+esm10
LowUBUNTU-CVE-2025-5372libssh@0.8.0~20170825.94fa1e38-1ubuntu0.7no fix listed
LowGHSA-wxpp-56q6-5pcgspring-expression@5.2.6.RELEASEno fix listed
LowUBUNTU-CVE-2023-38469avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowUBUNTU-CVE-2023-38470avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowUBUNTU-CVE-2023-38472avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowUBUNTU-CVE-2023-38473avahi@0.7-3.1ubuntu1.30.7-3.1ubuntu1.3+esm2
LowUBUNTU-CVE-2024-21144openjdk-8@8u292-b10-0ubuntu1~18.048u422-b05-1~18.04
LowUBUNTU-CVE-2026-1489glib2.0@2.56.4-0ubuntu0.18.04.8no fix listed
LowUBUNTU-CVE-2023-3164tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.10+esm6
LowUBUNTU-CVE-2023-21968openjdk-8@8u292-b10-0ubuntu1~18.048u372-ga~us1-0ubuntu1~18.04
LowUBUNTU-CVE-2026-13595util-linux@2.31.1-0.4ubuntu3.7no fix listed
LowUBUNTU-CVE-2022-2867tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowUBUNTU-CVE-2022-2868tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowUBUNTU-CVE-2022-2869tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowUBUNTU-CVE-2024-21131openjdk-8@8u292-b10-0ubuntu1~18.048u422-b05-1~18.04
LowUBUNTU-CVE-2026-54371attr@1:2.4.47-2build11:2.4.47-2ubuntu0.18.04.1~esm1
LowUBUNTU-CVE-2025-7700ffmpeg@7:3.4.8-0ubuntu0.27:3.4.11-0ubuntu0.1+esm11
LowUBUNTU-CVE-2024-50612libsndfile@1.0.28-4ubuntu0.18.04.21.0.28-4ubuntu0.18.04.2+esm2
LowGHSA-5jmj-h7xm-6q6vjackson-databind@2.11.02.18.9
LowGHSA-562r-vg33-8x8hpostgresql@42.2.1242.2.27
LowUBUNTU-CVE-2024-21208openjdk-8@8u292-b10-0ubuntu1~18.048u432-ga~us1-0ubuntu2~18.04
LowUBUNTU-CVE-2026-0964libssh@0.8.0~20170825.94fa1e38-1ubuntu0.70.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
LowUBUNTU-CVE-2023-30086tiff@4.0.9-5ubuntu0.44.0.9-5ubuntu0.8
LowGHSA-6p4f-wcwh-5vvmspring-webmvc@5.2.6.RELEASEno fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
6.4.2latest4 years agoversion-v2009.1.0213541870419,246

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/booksonic-air.svg)](https://charts.stackradar.io/charts/geek-cookbook/booksonic-air)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 16 Sept 2026 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.