StackRadar

siembol Helm chart

gresearch

Scored 14 Sept 2026

Siembol is an open-source, real-time Security Information & Event Management tool based on big data technologies, providing a scalable, advanced security analytics framework

Latest 0.1.6 6 days agoApp version not verified against the render 0Artifact Hub

siembol 0.1.6 deploys 4 container images: gresearchdev/siembol-config-editor-rest, gresearchdev/siembol-storm-topology-manager, gresearchdev/siembol-config-editor-ui and alpine/k8s. Across them, 820 findings20 critical, 45 high 10 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 9.0.68, fixed in 9.0.99.

Radar Score

14,3122045253502

820 findings over 4 of 4 images measured

KEV ×10 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
gresearchdev/siembol-config-editor-restlatest712611073,580
gresearchdev/siembol-storm-topology-managerlatest712551063,453
gresearchdev/siembol-config-editor-uilatest34199952
alpine/k8s1.18.163171182806,327

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

624 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumALPINE-CVE-2022-25235expat@2.4.1-r02.4.5-r0
MediumALPINE-CVE-2022-22822expat@2.4.1-r02.4.3-r0
MediumALPINE-CVE-2022-25315expat@2.4.1-r02.4.5-r0
MediumALPINE-CVE-2022-23852expat@2.4.1-r02.4.4-r0
MediumDSA-5343-1openssl@1.1.1n-0+deb11u31.1.1n-0+deb11u4
MediumDLA-3942-1openssl@1.1.1n-0+deb11u31.1.1n-0+deb11u6
MediumDLA-3942-2openssl@1.1.1n-0+deb11u31.1.1w-0+deb11u2
MediumALPINE-CVE-2022-1271xz@5.2.5-r05.2.5-r1
MediumGHSA-mmmh-wcxm-2wr4spring-security-core@5.7.45.7.5
MediumALPINE-CVE-2022-4304openssl@1.1.1s-r01.1.1t-r0
MediumALPINE-CVE-2022-22823expat@2.4.1-r02.4.3-r0
MediumALPINE-CVE-2022-22824expat@2.4.1-r02.4.3-r0
MediumGHSA-83g2-8m93-v3w7golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b0.0.0-20210520170846-37e1c6afe023
MediumGHSA-3h6f-g5f3-gc4wspring-security-config@5.7.45.7.10
MediumGHSA-c3xm-pvg7-gh7rgithub.com/opencontainers/runc@v0.1.11.0.0-rc95
MediumALPINE-CVE-2021-45960expat@2.4.1-r02.4.3-r0
MediumALPINE-CVE-2023-29007git@2.32.0-r02.32.7-r0
MediumGHSA-7phw-cxx7-q9vqspring-webmvc@5.3.235.3.26
MediumGHSA-cg3q-j54f-5p7pgithub.com/prometheus/client_golang@v1.7.11.11.1
MediumALPINE-CVE-2022-1586pcre2@10.36-r010.36-r1
MediumALPINE-CVE-2022-28391busybox@1.33.1-r21.33.1-r7
MediumGHSA-v778-237x-gjrcgolang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.31.0
MediumGHSA-r48q-9g5r-8q2hgithub.com/emicklei/go-restful@v2.9.5+incompatible2.16.0
MediumALPINE-CVE-2022-39260git@2.32.0-r02.32.4-r0
MediumGHSA-c3h9-896r-86jmgithub.com/gogo/protobuf@v1.3.11.3.2
MediumALPINE-CVE-2022-32205curl@7.78.0-r07.79.1-r2
MediumGHSA-ccgv-vj62-xf9hspring-web@5.3.235.3.32
MediumALPINE-CVE-2022-1587pcre2@10.36-r010.36-r1
MediumALPINE-CVE-2021-36159apk-tools@2.12.5-r12.12.6-r0
MediumALPINE-CVE-2022-25314expat@2.4.1-r02.4.5-r0
MediumGHSA-wm9w-rjj3-j356tomcat-embed-core@9.0.689.0.90
MediumGHSA-vvpx-j8f3-3w6hgolang.org/x/net@v0.0.0-20201110031124-69a78807bb2b0.7.0
MediumGHSA-33c5-9fx5-fvjmk8s.io/apimachinery@v0.16.80.16.13
MediumALPINE-CVE-2021-22946curl@7.78.0-r07.79.0-r0
MediumALPINE-CVE-2022-22826expat@2.4.1-r02.4.3-r0
MediumALPINE-CVE-2022-22827expat@2.4.1-r02.4.3-r0
MediumALPINE-CVE-2023-0215openssl@1.1.1s-r01.1.1t-r0
MediumGHSA-fgv8-vj5c-2ppqgithub.com/opencontainers/runc@v0.1.11.0.0-rc8.0.20190930145003-cad42f6e0932
MediumALPINE-CVE-2021-46143expat@2.4.1-r02.4.3-r0
MediumALPINE-CVE-2022-22825expat@2.4.1-r02.4.3-r0
MediumALPINE-CVE-2022-23990expat@2.4.1-r02.4.4-r0
MediumGHSA-hp87-p4gw-j4gqgopkg.in/yaml.v3@v3.0.0-20210107192922-496545a6307b3.0.1
MediumGHSA-8c26-wmh5-6g9vgolang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.0.0-20220314234659-1baeb1ce4c0b
MediumGHSA-4374-p667-p6c8golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b0.17.0
MediumALPINE-CVE-2023-0464openssl@1.1.1s-r01.1.1t-r1
MediumGHSA-j249-ghv5-7mxvgithub.com/docker/docker@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible18.09.8
MediumALPINE-CVE-2023-27534curl@7.83.1-r48.0.1-r0
MediumGHSA-3p86-9955-h393org.eclipse.jgit@6.3.0.202209071007-r6.6.1.202309021850-r
MediumGHSA-6635-c626-vj4rgithub.com/Masterminds/vcs@v1.13.11.13.2
MediumALPINE-CVE-2022-32208curl@7.78.0-r07.79.1-r2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.6latest6 days ago204525350214,312

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/gresearch/siembol.svg)](https://charts.stackradar.io/charts/gresearch/siembol)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.