StackRadar

hawk-envoy-plugin Helm chart

hawk

Scored 14 Sept 2026

A Helm chart for Kubernetes

Latest 0.1.0 2 years agodeploys tag main 0Artifact Hub

hawk-envoy-plugin 0.1.0 deploys 4 container images: ghcr.io/privacyengineering/collector-go, ghcr.io/privacyengineering/consumer, kong/httpbin and bitnami/rabbitmq. Across the 3 measured, 828 findings3 critical, 8 high 5 on CISA KEV. The highest contribution is UBUNTU-CVE-2025-27363 in freetype 2.11.1+dfsg-1ubuntu0.2, fixed in 2.11.1+dfsg-1ubuntu0.3.

Radar Score

9,09638118698

828 findings over 3 of 4 images measured

KEV ×5 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/privacyengineering/collector-gomain01201381,735
ghcr.io/privacyengineering/consumermain03241532,054
kong/httpbinlatest34744075,307
bitnami/rabbitmq3.12.3-debian-11-r1unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

98 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumDLA-3694-1openssh@1:7.9p1-10+deb10u21:7.9p1-10+deb10u4
MediumGO-2024-2687stdlib@go1.17.131.21.9
MediumDLA-3145-1git@1:2.20.1-2+deb10u31:2.20.1-2+deb10u4
MediumDLA-3807-1glibc@2.28-10+deb10u12.28-10+deb10u3
MediumDLA-3804-1nghttp2@1.36.0-2+deb10u11.36.0-2+deb10u3
MediumDLA-3532-1openssh@1:7.9p1-10+deb10u21:7.9p1-10+deb10u3
MediumDLA-3449-1openssl@1.1.1n-0+deb10u31.1.1n-0+deb10u5
MediumUBUNTU-CVE-2024-5535openssl@3.0.2-0ubuntu1.18no fix listed
MediumDLA-3325-1openssl@1.1.1n-0+deb10u31.1.1n-0+deb10u4
MediumDLA-3282-1git@1:2.20.1-2+deb10u31:2.20.1-2+deb10u7
MediumUBUNTU-CVE-2018-6952patch@2.7.6-7build2no fix listed
MediumDLA-3844-1git@1:2.20.1-2+deb10u31:2.20.1-2+deb10u9
MediumUBUNTU-CVE-2020-10735python3.10@3.10.12-1~22.04.7no fix listed
MediumUBUNTU-CVE-2026-45447openssl@3.0.2-0ubuntu1.183.0.2-0ubuntu1.25
MediumUBUNTU-CVE-2025-26465openssh@1:8.9p1-3ubuntu0.101:8.9p1-3ubuntu0.11
MediumDLA-3575-1python2.7@2.7.16-2+deb10u12.7.16-2+deb10u3
MediumDLA-3085-1curl@7.64.0-4+deb10u27.64.0-4+deb10u3
MediumGHSA-vvpx-j8f3-3w6hgolang.org/x/net@v0.0.0-20211029224645-99673261e6eb0.7.0
MediumUBUNTU-CVE-2021-46848libtasn1-6@4.18.0-4build14.18.0-4ubuntu0.2
MediumGHSA-4374-p667-p6c8golang.org/x/net@v0.0.0-20211029224645-99673261e6eb0.17.0
MediumDLA-3432-1python2.7@2.7.16-2+deb10u12.7.16-2+deb10u2
MediumGHSA-69cg-p879-7622golang.org/x/net@v0.0.0-20211029224645-99673261e6eb0.0.0-20220906165146-f3363e06e74c
MediumGHSA-cx63-2mw6-8hw5setuptools@59.6.070.0.0
MediumUBUNTU-CVE-2017-11164pcre3@2:8.39-13ubuntu0.22.04.1no fix listed
MediumUBUNTU-CVE-2026-21441python-pip@22.0.2+dfsg-1ubuntu0.5no fix listed
MediumUBUNTU-CVE-2024-4741openssl@3.0.2-0ubuntu1.18no fix listed
MediumUBUNTU-CVE-2026-3497openssh@1:8.9p1-3ubuntu0.101:8.9p1-3ubuntu0.14
MediumDLA-3103-1zlib@1:1.2.11.dfsg-1+deb10u11:1.2.11.dfsg-1+deb10u2
MediumGHSA-qwmp-2cf2-g9g6wheel@0.37.10.38.1
MediumUBUNTU-CVE-2022-24975git@1:2.34.1-1ubuntu1.11no fix listed
MediumGHSA-r9hx-vwmv-q579setuptools@59.6.065.5.1
MediumUBUNTU-CVE-2026-19931curl@7.81.0-1ubuntu1.20no fix listed
MediumPYSEC-2025-49setuptools@75.6.078.1.1
MediumUBUNTU-CVE-2025-47273setuptools@59.6.0-1.2ubuntu0.22.04.259.6.0-1.2ubuntu0.22.04.3
MediumUBUNTU-CVE-2022-40735openssl@3.0.2-0ubuntu1.18no fix listed
MediumUBUNTU-CVE-2016-20013glibc@2.35-0ubuntu3.8no fix listed
MediumUBUNTU-CVE-2023-31486perl@5.34.0-3ubuntu1.3no fix listed
MediumUBUNTU-CVE-2018-5709krb5@1.19.2-2ubuntu0.4no fix listed
MediumGHSA-xrjj-mj9h-534mgolang.org/x/net@v0.0.0-20211029224645-99673261e6eb0.4.0
MediumUBUNTU-CVE-2016-20012openssh@1:8.9p1-3ubuntu0.10no fix listed
MediumUBUNTU-CVE-2023-52355tiff@4.3.0-6ubuntu0.10no fix listed
MediumDLA-3559-1libssh2@1.8.0-2.11.8.0-2.1+deb10u1
MediumUBUNTU-CVE-2025-13836python3.10@3.10.12-1~22.04.73.10.12-1~22.04.13
MediumUBUNTU-CVE-2026-18924curl@7.81.0-1ubuntu1.20no fix listed
MediumUBUNTU-CVE-2023-32681python-pip@22.0.2+dfsg-1ubuntu0.522.0.2+dfsg-1ubuntu0.7
MediumUBUNTU-CVE-2022-4899libzstd@1.4.8+dfsg-3build1no fix listed
MediumUBUNTU-CVE-2023-5678openssl@3.0.2-0ubuntu1.18no fix listed
MediumUBUNTU-CVE-2025-9230openssl@3.0.2-0ubuntu1.183.0.2-0ubuntu1.20
MediumUBUNTU-CVE-2026-11856curl@7.81.0-1ubuntu1.207.81.0-1ubuntu1.26
MediumUBUNTU-CVE-2023-6129openssl@3.0.2-0ubuntu1.18no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.0latest2 years agomain381186989,096

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/hawk/hawk-envoy-plugin.svg)](https://charts.stackradar.io/charts/hawk/hawk-envoy-plugin)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.