StackRadar

jasperreports Helm chart

helm-dojo

Scored 25 Sept 2026

JasperReports Server is a stand-alone and embeddable reporting server. It is a central information hub, with reporting and analytics that can be embedded into web and mobile applications.

Latest 8.0.0-v1.3app version 8-v1.3 0Artifact Hub

jasperreports 8.0.0-v1.3 deploys 2 container images: palopalepalo/jasperreports and bitnami/mariadb. Across the 1 measured, 421 findings — 5 critical, 21 high — 8 on CISA KEV. The highest contribution is BIT-tomcat-2025-24813 in tomcat 9.0.71-10, fixed in 9.0.99.

Radar Score

6,561521114281

421 findings over 1 of 2 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
palopalepalo/jasperreports8-v1.35211142816,561
bitnami/mariadb10.6.12-debian-11-r9—unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

281 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-293q-567p-wmwqspring-security-web@4.2.19.RELEASEno fix listed
LowGO-2023-2041stdlib@go1.19.61.20.8
LowGO-2023-2043stdlib@go1.19.61.20.8
LowGO-2022-0515stdlib@go1.18.21.17.12
LowGO-2023-2186stdlib@go1.19.61.20.11
LowGO-2026-4981stdlib@go1.19.61.25.10
LowGO-2026-4918stdlib@go1.19.61.25.10
LowGO-2026-4986stdlib@go1.19.61.25.10
LowGHSA-hgj6-7826-r7m5jackson-databind@2.13.2.22.18.8
LowGO-2026-4337stdlib@go1.19.61.24.13
LowBIT-mysql-client-2023-52969mysql-client@10.6.12-110.5.29
LowGO-2024-3105stdlib@go1.19.61.22.7
LowGHSA-h2h4-5m64-m273activemq-client@5.16.25.19.3
LowGO-2022-1095stdlib@go1.18.21.18.8
LowBIT-mysql-client-2026-3494mysql-client@10.6.12-110.6.25
LowBIT-mysql-client-2023-52970mysql-client@10.6.12-110.5.29
LowGO-2023-1621stdlib@go1.19.61.19.7
LowGO-2025-3563stdlib@go1.19.61.23.8
LowGO-2026-4601stdlib@go1.19.61.25.8
LowGHSA-562r-vg33-8x8hpostgresql@42.3.542.3.8
LowGO-2026-4977stdlib@go1.19.61.25.10
LowGO-2024-2610stdlib@go1.19.61.21.8
LowGHSA-6p4f-wcwh-5vvmspring-webmvc@5.2.21.RELEASEno fix listed
LowDLA-4259-1systemd@247.3-7+deb11u1247.3-7+deb11u7
LowBIT-mysql-client-2023-52968mysql-client@10.6.12-110.4.33
LowBIT-mysql-client-2024-21096mysql-client@10.6.12-110.5.25
LowGHSA-957g-f97v-vppcspring-webmvc@5.2.21.RELEASEno fix listed
LowGHSA-qh8g-58pp-2wxhjetty-http@9.4.39.v2021032512.0.12
LowDLA-3951-1curl@7.74.0-1.3+deb11u77.74.0-1.3+deb11u14
LowDLA-3875-1gnutls28@3.7.1-5+deb11u33.7.1-5+deb11u6
LowGHSA-7p3p-8qv8-m2vhjetty-server@9.4.39.v20210325no fix listed
LowGHSA-cjpg-rgq5-fr37spring-webmvc@5.2.21.RELEASEno fix listed
LowGHSA-9cmq-m9j5-mvwwspring-expression@5.2.21.RELEASE5.3.39
LowGO-2026-4947stdlib@go1.19.61.25.9
LowGO-2026-4342stdlib@go1.19.61.24.12
LowGO-2025-3420stdlib@go1.19.61.22.11
LowGO-2026-4870stdlib@go1.19.61.25.9
LowGO-2024-2598stdlib@go1.19.61.21.8
LowGO-2025-3751stdlib@go1.19.61.23.10
LowGHSA-7c2q-5qmr-v76qesapi@2.1.0.12.5.2.0
LowGHSA-q3v6-hm2v-pw99spring-security-core@4.2.19.RELEASE5.7.14
LowGHSA-m6cp-vxjx-65j6jetty-server@9.4.39.v202103259.4.41
LowGHSA-7g45-4rm6-3mm3guava@30.1.1-jre32.0.0-android
LowDLA-4481-1libpng1.6@1.6.37-31.6.37-3+deb11u2
LowGO-2026-5026stdlib@go1.19.61.25.13
LowDLA-4492-1gnutls28@3.7.1-5+deb11u33.7.1-5+deb11u9
LowGO-2022-0532stdlib@go1.18.21.17.11
LowGO-2026-4971stdlib@go1.19.61.25.10
LowGO-2025-4009stdlib@go1.19.61.24.8
LowDLA-4176-1openssl@1.1.1n-0+deb11u41.1.1w-0+deb11u3

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
8.0.0-v1.3latest—8-v1.35211142816,561

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/helm-dojo/jasperreports.svg)](https://charts.stackradar.io/charts/helm-dojo/jasperreports)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 25 Sept 2026 · scanned 25 Sept 2026 · advisories as of 25 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.