StackRadar

dave Helm chart

it-at-mOfficialVerified publisher

Scored 14 Sept 2026

DAVe traffic counting plattform

Latest 0.2.15 11 days agoApp version not verified against the render 0Artifact Hub

dave 0.2.15 deploys 11 container images: ghcr.io/it-at-m/dave-admin-portal/dave-adminportal, ghcr.io/it-at-m/dave-backend/dave-backend, ghcr.io/it-at-m/dave-document-storage/dave-document-storage, ghcr.io/it-at-m/dave-eai/dave-eai and 6 more. Across the 10 measured, 1,355 findings6 critical, 4 high. The highest contribution is GHSA-f58c-gq56-vjjf in tika-parser-pdf-module 2.9.3, fixed in 3.2.2.

Radar Score

15,089642021,143

1,355 findings over 10 of 11 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

11 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/it-at-m/dave-admin-portal/dave-adminportal10.0.000144453
ghcr.io/it-at-m/dave-backend/dave-backend10.0.001752725
ghcr.io/it-at-m/dave-document-storage/dave-document-storage10.0.01013781,124
ghcr.io/it-at-m/dave-eai/dave-eai10.0.000737479
ghcr.io/it-at-m/dave-frontend/dave-frontend10.0.000144453
ghcr.io/it-at-m/dave-geodata-eai/dave-geodata-eai10.0.000642515
ghcr.io/it-at-m/dave-selfservice-portal/dave-selfserviceportal10.0.000144453
bitnamilegacy/elasticsearch9.1.2-debian-12-r031623614,681
bitnamilegacy/postgresql17.6.0-debian-12-r011522203,097
bitnami/keycloak×226.3.3-debian-12-r0unmeasured
bitnamilegacy/postgresqllatest11522213,109

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

512 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-13608curl@7.88.1-10+deb12u12no fix listed
LowDEBIAN-CVE-2026-5773curl@7.88.1-10+deb12u127.88.1-10+deb12u15
LowDEBIAN-CVE-2026-63072openssl@3.0.17-1~deb12u2no fix listed
LowDEBIAN-CVE-2026-40355krb5@1.20.1-2+deb12u31.20.1-2+deb12u5
LowRHSA-2026:55440glib2@2.68.4-19.el9_8.10:2.68.4-19.el9_8.9
LowDEBIAN-CVE-2026-40356krb5@1.20.1-2+deb12u31.20.1-2+deb12u5
LowDEBIAN-CVE-2026-45445openssl@3.0.17-1~deb12u23.0.20-1~deb12u2
LowDEBIAN-CVE-2026-85091zlib@1:1.2.13.dfsg-1no fix listed
LowBIT-postgresql-2026-6637postgresql@17.6.0-014.23.0
LowGHSA-574f-3g2m-x479bcprov-jdk18on@1.811.81.1
LowBIT-postgresql-2026-18408postgresql@17.6.0-014.24.0
LowRHSA-2026:55439curl@7.76.1-40.el90:7.76.1-40.el9_8.5
LowGHSA-c4c3-7fpv-j4q5netty-handler@4.1.135.Final4.1.137.Final
LowDEBIAN-CVE-2026-80230curl@7.88.1-10+deb12u12no fix listed
LowBIT-postgresql-2026-15741postgresql@17.6.0-014.24.0
LowRHSA-2026:28253libtasn1@4.16.0-9.el90:4.16.0-10.el9_8
LowDEBIAN-CVE-2026-42013gnutls28@3.7.9-2+deb12u53.7.9-2+deb12u7
LowDEBIAN-CVE-2026-0861glibc@2.36-9+deb12u102.36-9+deb12u14
LowRHSA-2026:42089glib2@2.68.4-19.el9_8.10:2.68.4-19.el9_8.2
LowDEBIAN-CVE-2026-3833gnutls28@3.7.9-2+deb12u53.7.9-2+deb12u7
LowDEBIAN-CVE-2024-2236libgcrypt20@1.10.1-3no fix listed
LowDEBIAN-CVE-2026-31789openssl@3.0.17-1~deb12u23.0.19-1~deb12u2
LowDEBIAN-CVE-2025-69419openssl@3.0.17-1~deb12u23.0.18-1~deb12u2
LowRHSA-2026:15971glib2@2.68.4-18.el9_70:2.68.4-18.el9_7.2
LowRHSA-2026:19361glib2@2.68.4-18.el9_70:2.68.4-19.el9_8.1
LowDEBIAN-CVE-2026-54874openssl@3.0.17-1~deb12u2no fix listed
LowBIT-postgresql-2026-6475postgresql@17.6.0-014.23.0
LowDEBIAN-CVE-2026-42766openssl@3.0.17-1~deb12u23.0.20-1~deb12u2
LowDEBIAN-CVE-2026-74860libxml2@2.9.14+dfsg-1.3~deb12u2no fix listed
LowDEBIAN-CVE-2025-69720ncurses@6.4-4no fix listed
LowRHSA-2026:19218openssl@1:3.5.1-4.el9_71:3.5.5-2.el9_8
LowRHSA-2026:27744openssl-fips-provider@3.0.7-8.el90:3.0.7-11.el9_8
LowGHSA-5pvg-856g-cp85netty-resolver-dns@4.1.118.Final4.1.135.Final
LowDEBIAN-CVE-2025-6020pam@1.5.2-6+deb12u11.5.2-6+deb12u2
LowRHSA-2026:1350curl@7.76.1-34.el90:7.76.1-35.el9_7.3
LowRHSA-2026:52674libarchive@3.5.3-9.el9_70:3.5.3-11.el9_8
LowDEBIAN-CVE-2026-86145pcre2@10.42-110.42-1+deb12u1
LowGHSA-qv9r-c865-cp47log4j-api@2.24.32.25.5
LowBIT-postgresql-2026-6479postgresql@17.6.0-014.23.0
LowGHSA-3p8m-j85q-pgmjnetty-codec@4.1.118.Final4.1.125.Final
LowDEBIAN-CVE-2025-15281glibc@2.36-9+deb12u102.36-9+deb12u14
LowRHSA-2025:22175expat@2.5.0-5.el9_60:2.5.0-5.el9_7.1
LowDEBIAN-CVE-2025-6297dpkg@1.21.221.21.23
LowRHSA-2026:4168python3.9@3.9.23-2.el90:3.9.25-3.el9_7.1
LowGHSA-mj4r-2hfc-f8p6netty-codec@4.1.118.Final4.1.133.Final
LowRHSA-2026:23230expat@2.5.0-5.el9_60:2.5.0-6.el9_8.1
LowDEBIAN-CVE-2026-42011gnutls28@3.7.9-2+deb12u53.7.9-2+deb12u7
LowGHSA-c653-97m9-rcg9netty-handler@4.1.118.Final4.1.135.Final
LowGHSA-vc5p-v9hr-52mjlog4j-core@2.19.02.25.3
LowBIT-postgresql-2026-6464postgresql@17.6.0-014.24.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.15latest11 days ago642021,14315,089

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/it-at-m/dave.svg)](https://charts.stackradar.io/charts/it-at-m/dave)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.