StackRadar

music-assistant 0.1.3 Helm chart

karljorgensen

Scored 15 Sept 2026

Music Assistant for Kubernetes

Version 0.1.3 4 months agoapp version 2.8.7 0Artifact Hub

music-assistant 0.1.3 deploys 1 container image: ghcr.io/music-assistant/server. Across them, 702 findings0 critical, 2 high. The highest contribution is GHSA-4v7x-pqxf-cx7m in golang.org/x/net v0.17.0, fixed in 0.23.0.

Radar Score

6,8360277622

702 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
ghcr.io/music-assistant/server2.8.702776226,836

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

702 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2025-30258gnupg2@2.2.40-1.1+deb12u2no fix listed
LowDEBIAN-CVE-2025-8851tiff@4.5.0-6+deb12u3no fix listed
LowGO-2026-6091stdlib@go1.25.71.25.13
LowDEBIAN-CVE-2026-15059systemd@252.39-1~deb12u1no fix listed
LowDEBIAN-CVE-2026-41991gzip@1.12-1no fix listed
LowDEBIAN-CVE-2026-5419gnutls28@3.7.9-2+deb12u63.7.9-2+deb12u7
LowGHSA-wjx4-4jcj-g98jpillow@12.1.112.2.0
LowDEBIAN-CVE-2026-89157pcre2@10.42-110.42-1+deb12u1
LowDEBIAN-CVE-2026-40226systemd@252.39-1~deb12u1252.39-1~deb12u2
LowDEBIAN-CVE-2025-61143tiff@4.5.0-6+deb12u3no fix listed
LowGO-2026-4864stdlib@go1.25.71.25.9
LowDEBIAN-CVE-2011-4116perl@5.36.0-7+deb12u3no fix listed
LowGO-2026-4865stdlib@go1.25.71.25.9
LowGO-2026-4869stdlib@go1.25.71.25.9
LowDEBIAN-CVE-2023-45221intel-mediasdk@22.5.4-1no fix listed
LowGHSA-fhv5-28vv-h8m8pyjwt@2.12.12.13.0
LowDEBIAN-CVE-2026-89092glibc@2.36-9+deb12u13no fix listed
LowDEBIAN-CVE-2026-18374glibc@2.36-9+deb12u13no fix listed
LowDEBIAN-CVE-2026-25068alsa-lib@1.2.8-1+b1no fix listed
LowDEBIAN-CVE-2023-22656intel-mediasdk@22.5.4-1no fix listed
LowDEBIAN-CVE-2026-19542glibc@2.36-9+deb12u13no fix listed
LowDEBIAN-CVE-2026-19617lvm2@2:1.02.185-2no fix listed
LowDEBIAN-CVE-2026-16742systemd@252.39-1~deb12u1no fix listed
LowDEBIAN-CVE-2024-10041pam@1.5.2-6+deb12u2no fix listed
LowDEBIAN-CVE-2026-86469glib2.0@2.74.6-2+deb12u8no fix listed
LowDEBIAN-CVE-2023-47169intel-mediasdk@22.5.4-1no fix listed
LowGHSA-3pv8-6f4r-ffg2tar@0.4.450.4.46
LowGHSA-4gg8-gxpx-9rphuv@0.11.110.11.15
LowGHSA-4gg8-gxpx-9rphuv@0.11.110.11.15
LowDEBIAN-CVE-2026-34757libpng1.6@1.6.39-2+deb12u31.6.39-2+deb12u5
LowGHSA-993g-76c3-p5m4pyjwt@2.12.12.13.0
LowDEBIAN-CVE-2025-61145tiff@4.5.0-6+deb12u3no fix listed
LowGHSA-4x4j-2g7c-83w6pillow@12.1.112.3.0
LowDEBIAN-CVE-2024-28757expat@2.5.0-1+deb12u2no fix listed
LowDEBIAN-CVE-2023-39328openjpeg2@2.5.0-2+deb12u2no fix listed
LowDEBIAN-CVE-2023-48368intel-mediasdk@22.5.4-1no fix listed
LowDEBIAN-CVE-2026-90781alsa-lib@1.2.8-1+b1no fix listed
LowDEBIAN-CVE-2023-47282intel-mediasdk@22.5.4-1no fix listed
LowDEBIAN-CVE-2024-35369ffmpeg@7:5.1.8-0+deb12u1no fix listed
LowDEBIAN-CVE-2023-48727intel-mediasdk@22.5.4-1no fix listed
LowGO-2026-5025golang.org/x/net@v0.17.00.55.0
LowRUSTSEC-2026-0285rustls@0.23.380.23.45
LowGO-2026-4970stdlib@go1.25.71.25.12
LowDEBIAN-CVE-2025-15224curl@7.88.1-10+deb12u14no fix listed
LowDEBIAN-CVE-2026-22185openldap@2.5.13+dfsg-5no fix listed
LowGO-2026-5027golang.org/x/net@v0.17.00.55.0
LowGO-2026-5029golang.org/x/net@v0.17.00.55.0
LowGO-2026-5030golang.org/x/net@v0.17.00.55.0
LowGHSA-58qw-9mgm-455vpip@25.326.1
LowDEBIAN-CVE-2023-31486perl@5.36.0-7+deb12u3no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.3latest4 months ago2.8.702776226,836

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/karljorgensen/music-assistant.svg)](https://charts.stackradar.io/charts/karljorgensen/music-assistant)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.