StackRadar

tamp Helm chart

kubebb

Scored 14 Sept 2026

提供 API 的完整生命周期管理,以及丰富的插件能力

Latest 5.6.0 2 years agoapp version v5.6.0 0Artifact Hub

tamp 5.6.0 deploys 2 container images: kubebb/gateway-api and kubebb/tamp-portal. Across them, 242 findings5 critical, 17 high 2 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 9.0.65, fixed in 9.0.99.

Radar Score

4,66451785135

242 findings over 2 of 2 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
kubebb/gateway-apiv5.6.041253943,097
kubebb/tamp-portalv5.6.01532411,567

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

242 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-fpj8-gq4v-p354tomcat-embed-core@9.0.659.0.113
LowGHSA-hgrr-935x-pq79tomcat-embed-core@9.0.659.0.110
LowGHSA-558v-64gr-wgg4netty-codec@4.1.82.Final4.1.136.Final
LowGHSA-62ww-4p3p-7fhjelasticsearch@7.8.17.11.2
LowGHSA-mm3m-5497-xgggelasticsearch@7.8.17.17.25
LowGHSA-jgx4-7v3v-vwfmelasticsearch@7.8.17.17.21
LowGHSA-x23c-287f-qqv5spring-webmvc@5.3.23no fix listed
LowGHSA-2g4f-4pwh-qvx6ajv@6.12.66.14.0
LowGHSA-8xfc-gm6g-vgpvbcprov-jdk15on@1.661.78
LowGHSA-8h2f-7jc4-7m3murijs@1.19.61.19.10
LowGHSA-p8p7-x288-28g6request@2.88.0no fix listed
LowGHSA-r6q2-hw4h-h46wtar@4.4.137.5.4
LowGHSA-rc42-6c7j-7h5rspring-boot@2.7.4no fix listed
LowGHSA-r292-9mhp-454mtar@4.4.137.5.21
LowGHSA-4h8f-2wvx-gg5wbcprov-jdk15on@1.661.78
LowGHSA-42wg-hm62-jcwgtomcat-embed-core@9.0.659.0.106
LowGHSA-wjxj-5m7g-mg7qbcprov-jdk15on@1.66no fix listed
LowGHSA-cqgv-256r-m9r8elasticsearch@7.8.17.10.0
LowGHSA-v2xm-76pq-phcfclassgraph@4.8.834.8.112
LowGHSA-r5w3-xv2f-j59qspring-expression@5.3.23no fix listed
LowGHSA-w5hq-g745-h8pquuid@3.4.011.1.1
LowGHSA-w5gg-2q56-6h4felasticsearch@7.8.17.17.19
LowGHSA-7gcc-r8m5-44qmkoa@2.13.12.16.4
LowGHSA-9ppj-qmqm-q256tar@4.4.137.5.11
LowGHSA-mpwj-fcr6-x34cyarn@1.22.101.22.13
LowGHSA-5fvx-2jj3-6mffelasticsearch@7.8.17.10.2
LowGHSA-89gv-h8wf-cg8rurijs@1.19.61.19.7
LowGHSA-2rmj-mq67-h97gspring-web@5.3.235.3.38
LowGHSA-9m3c-qcxr-9x87tomcat-embed-core@9.0.659.0.116
LowGHSA-f886-m6hf-6m8vbrace-expansion@1.1.111.1.13
LowGHSA-fccg-mwvh-qqg4netty-handler@4.1.82.Final4.1.137.Final
LowGHSA-hr8g-6v94-x4m9bcprov-jdk15on@1.66no fix listed
LowGHSA-775g-4xr8-78h8spring-expression@5.3.23no fix listed
LowGHSA-w3c8-7r8f-9jp8spring-webmvc@5.3.235.3.42
LowGHSA-83g3-92jg-28cxtar@4.4.137.5.8
LowGHSA-w8wr-v893-vjvptar@4.4.137.5.18
LowGHSA-pr98-23f8-jwxvlogback-core@1.2.111.3.15
LowALPINE-CVE-2021-42374busybox@1.31.1-r101.31.1-r11
LowGHSA-jhq6-gfmj-v8fxlogback-core@1.2.111.5.34
LowGHSA-4gc7-5j7h-4qphspring-context@5.3.23no fix listed
LowGHSA-4gc7-5j7h-4qphspring-web@5.3.23no fix listed
LowGHSA-4g9r-vxhx-9pgxcommons-compress@1.191.26.0
LowGHSA-hwvv-438r-mhvjelasticsearch@7.8.17.11.0
LowGHSA-4773-3jfm-qmx3spring-webmvc@5.3.23no fix listed
LowGHSA-72pg-x5f8-j25jspring-webmvc@5.3.23no fix listed
LowGHSA-gvwx-54wh-qm9jtar@4.4.137.5.17
LowGHSA-mq64-j8f9-9gcjspring-webmvc@5.3.23no fix listed
LowGHSA-xq3w-v528-46rvnetty-common@4.1.82.Final4.1.115.Final
LowGHSA-r7wm-3cxj-wff9jackson-core@2.13.42.18.8
LowGHSA-389x-839f-4rhxnetty-common@4.1.82.Final4.1.118.Final

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
5.6.0latest2 years agov5.6.0517851354,664

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/kubebb/tamp.svg)](https://charts.stackradar.io/charts/kubebb/tamp)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.