superset Helm chart
inseefrlabScored 14 Sept 2026
Apache Superset is a modern data exploration and visualization platform.
Latest 1.4.0 3 years agodeploys tag 9cdaa280429ec297db16d56c94fd77b5d2aff107 1Artifact Hub
superset 1.4.0 deploys 4 container images: jwilder/dockerize, apache/superset, bitnami/postgresql and bitnami/redis. Across the 2 measured, 517 findings — 3 critical, 12 high — 8 on CISA KEV. The highest contribution is GHSA-5cx2-vq3h-x52c in apache-superset 0.0.0.dev0, fixed in 2.1.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| jwilder/ | latest | 00554 | 502 |
| apache/ | 9cdaa280429ec297db16d56c94fd77b5d2aff107 | 312124318 | 6,627 |
| bitnami/ | 14.2.0-debian-10-r70 | — | unmeasured |
| bitnami/ | 6.2.6-debian-10-r120 | — | unmeasured |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | DEBIAN-CVE-2022-27376 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27381 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27384 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27452 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27445 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-v973-fxgf-6xhp | mako | 1.2.2 |
| Medium | DEBIAN-CVE-2022-27448 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32084 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-3f63-hfp8-52jq | pillow | 10.2.0 |
| Medium | DEBIAN-CVE-2022-27383 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27456 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32081 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32089 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32082 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-w6c7-j32f-rq8j | apache-superset | 4.1.2 |
| Medium | DEBIAN-CVE-2022-32085 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32088 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32083 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-v3c5-jqr6-7qm8 | future | 0.18.3 |
| Medium | GHSA-92qf-8gh3-gwcm | apache-superset | 4.1.0 |
| Medium | DEBIAN-CVE-2022-32087 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-rwhh-6x83-84v6 | apache-superset | 3.0.3 |
| Medium | GHSA-787v-v9vq-4rgv | apache-superset | 4.1.0 |
| Medium | DEBIAN-CVE-2022-27451 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27457 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27385 | mariadb-10.5 | 1:10.5.13-0+deb11u1 |
| Medium | GHSA-j8r2-6x86-q33q | requests | 2.31.0 |
| Medium | DEBIAN-CVE-2022-27446 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27455 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27382 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-j2pw-vp55-fqqj | flask-appbuilder | 4.3.11 |
| Medium | PYSEC-2023-192 | urllib3 | 2.0.6 |
| Medium | DEBIAN-CVE-2022-27444 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32086 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-grv7-fg5c-xmjg | braces | 3.0.3 |
| Medium | DSA-5119-1 | subversion | 1.14.1-3+deb11u1 |
| Medium | GHSA-xg9f-g7g7-2323 | werkzeug | 2.2.3 |
| Medium | PYSEC-2024-60 | idna | 3.7 |
| Medium | GHSA-ffqj-6fqr-9h24 | pyjwt | 2.4.0 |
| Medium | DLA-4087-1 | python3.9 | 3.9.2-1+deb11u3 |
| Medium | GHSA-m2qf-hxjv-5gpq | flask | 2.2.5 |
| Medium | GHSA-9v9h-cgj8-h64p | cryptography | 42.0.2 |
| Medium | GHSA-m2vv-5vj5-2hm7 | pillow | 9.2.0 |
| Medium | GHSA-f678-j579-4xf5 | apache-superset | 2.1.2 |
| Medium | GHSA-656c-6cxf-hvcv | flask-caching | no fix listed |
| Medium | PYSEC-2022-203 | werkzeug | 2.1.1 |
| Medium | DSA-5584-1 | bluez | 5.55-3.1+deb11u1 |
| Medium | GHSA-x527-x647-q7gg | golang.org/ | 0.52.0 |
| Medium | GHSA-5fp8-c45m-256p | apache-superset | 1.3.2 |
| Medium | GHSA-hcr7-cqwc-q5gq | apache-superset | 3.1.3 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.4.0latest | 3 years ago | 9cdaa280429ec297db16d56c94fd77b5d2aff107 | 312129372 | 7,129 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.