StackRadar

superset 1.4.0 Helm chart

inseefrlab

Scored 14 Sept 2026

Apache Superset is a modern data exploration and visualization platform.

Version 1.4.0 3 years agodeploys tag 9cdaa280429ec297db16d56c94fd77b5d2aff107 1Artifact Hub

superset 1.4.0 deploys 4 container images: jwilder/dockerize, apache/superset, bitnami/postgresql and bitnami/redis. Across the 2 measured, 517 findings3 critical, 12 high 8 on CISA KEV. The highest contribution is GHSA-5cx2-vq3h-x52c in apache-superset 0.0.0.dev0, fixed in 2.1.0.

Radar Score

7,129312129372

517 findings over 2 of 4 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
jwilder/dockerize×3latest00554502
apache/superset×39cdaa280429ec297db16d56c94fd77b5d2aff1073121243186,627
bitnami/postgresql14.2.0-debian-10-r70unmeasured
bitnami/redis6.2.6-debian-10-r120unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

517 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGO-2026-4976stdlib@go1.25.51.25.10
LowGO-2026-5856stdlib@go1.25.51.25.12
LowGO-2026-6355golang.org/x/crypto@v0.45.00.56.0
LowGO-2026-4980stdlib@go1.25.51.25.10
LowGO-2026-5039stdlib@go1.25.51.25.11
LowGHSA-m959-cc7f-wv43cryptography@3.4.746.0.6
LowDLA-4143-1glibc@2.31-13+deb11u22.31-13+deb11u12
LowGO-2026-4946stdlib@go1.25.51.25.9
LowGHSA-gj48-438w-jh9vbleach@3.3.16.4.0
LowDLA-4089-1libxslt@1.1.34-41.1.34-4+deb11u2
LowDLA-4195-1krb5@1.18.3-6+deb11u11.18.3-6+deb11u7
LowDLA-4420-1postgresql-13@13.7-0+deb11u113.23-0+deb11u1
LowGO-2026-4603stdlib@go1.25.51.25.8
LowGHSA-r73j-pqj5-w3x7pillow@9.1.012.2.0
LowGO-2026-6303golang.org/x/crypto@v0.45.00.55.0
LowGHSA-jp4c-xjxw-mgf9pip@21.2.426.1
LowGO-2026-6354golang.org/x/crypto@v0.45.00.56.0
LowGO-2026-4982stdlib@go1.25.51.25.10
LowGO-2026-6091stdlib@go1.25.51.25.13
LowGHSA-wjx4-4jcj-g98jpillow@9.1.012.2.0
LowGO-2026-4864stdlib@go1.25.51.25.9
LowGO-2026-4865stdlib@go1.25.51.25.9
LowGO-2026-4869stdlib@go1.25.51.25.9
LowGO-2026-4340stdlib@go1.25.51.24.12
LowGHSA-fhv5-28vv-h8m8pyjwt@2.2.02.13.0
LowGHSA-99pm-ch96-ccp2flask-appbuilder@4.0.04.6.2
LowDLA-4424-1openjpeg2@2.4.0-32.4.0-3+deb11u2
LowGHSA-pjjw-qhg8-p2p9aiohttp@3.7.43.8.6
LowGHSA-cfqr-cjx5-5jcmsqlparse@0.3.00.6.0
LowGHSA-993g-76c3-p5m4pyjwt@2.2.02.13.0
LowGHSA-4x4j-2g7c-83w6pillow@9.1.012.3.0
LowGO-2026-5025golang.org/x/net@v0.47.00.55.0
LowGO-2026-4970stdlib@go1.25.51.25.12
LowGHSA-32ff-4g79-vgfcflask-appbuilder@4.0.04.1.3
LowGO-2026-5027golang.org/x/net@v0.47.00.55.0
LowGO-2026-5029golang.org/x/net@v0.47.00.55.0
LowGO-2026-5030golang.org/x/net@v0.47.00.55.0
LowGHSA-58qw-9mgm-455vpip@21.2.426.1
LowGHSA-jhpr-j7cq-3jp3flask-appbuilder@4.0.04.3.2
LowGO-2026-4602stdlib@go1.25.51.25.8
LowDLA-4156-1openssh@1:8.4p1-51:8.4p1-5+deb11u5
LowGHSA-fw5r-6m3x-rh7pflask-appbuilder@4.0.04.5.1
LowDLA-4225-1gdk-pixbuf@2.42.2+dfsg-12.42.2+dfsg-1+deb11u3
LowDLA-4319-1libxml2@2.9.10+dfsg-6.72.9.10+dfsg-6.7+deb11u9
LowDLA-4437-1gnupg2@2.2.27-22.2.27-2+deb11u3
LowGHSA-px8h-6qxv-m22qwerkzeug@2.0.32.2.3
LowGO-2026-5024golang.org/x/sys@v0.38.00.44.0
LowDLA-3954-2postgresql-13@13.7-0+deb11u113.18-0+deb11u1
LowDLA-3972-1tzdata@2021a-1+deb11u22024b-0+deb11u1
LowDLA-4016-1ucf@3.00433.0043+deb11u2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.4.0latest3 years ago9cdaa280429ec297db16d56c94fd77b5d2aff1073121293727,129

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/inseefrlab/superset.svg)](https://charts.stackradar.io/charts/inseefrlab/superset)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.