StackRadar

pulsarv2 Helm chart

milvus-helm

Scored 14 Sept 2026

Apache Pulsar Helm chart for Kubernetes

Latest 2.7.8 1 year agoapp version 2.7.4 0Artifact Hub

pulsarv2 2.7.8 deploys 4 container images: streamnative/apache-pulsar-grafana-dashboard-k8s, prom/prometheus, apachepulsar/pulsar-manager and apachepulsar/pulsar-all. Across the 3 measured, 866 findings21 critical, 57 high 12 on CISA KEV. The highest contribution is GHSA-jfh8-c2jp-5v3q in log4j-core 2.10.0, fixed in 2.12.2.

Radar Score

15,8552157265523

866 findings over 3 of 4 images measured

KEV ×12 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
streamnative/apache-pulsar-grafana-dashboard-k8s0.0.1007492043,167
prom/prometheusv2.17.204331762,478
apachepulsar/pulsar-managerv0.1.0214618314310,210
apachepulsar/pulsar-all×172.7.4not yet scanned

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

350 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGO-2025-3849stdlib@go1.13.41.23.12
LowGO-2026-4946stdlib@go1.13.41.25.9
LowGHSA-m452-q8c9-rg2fasync-http-client@2.7.02.16.0
LowGO-2026-4603stdlib@go1.13.41.25.8
LowGO-2026-6303golang.org/x/crypto@v0.0.0-20191011191535-87dc89f015500.55.0
LowGHSA-jp4c-xjxw-mgf9pip@18.126.1
LowGO-2026-6354golang.org/x/crypto@v0.0.0-20191011191535-87dc89f015500.56.0
LowGO-2026-4982stdlib@go1.13.41.25.10
LowGO-2026-6091stdlib@go1.13.41.25.13
LowGO-2025-3750stdlib@go1.13.41.23.10
LowGO-2026-4864stdlib@go1.13.41.25.9
LowGO-2025-3447stdlib@go1.13.41.22.12
LowGO-2026-4865stdlib@go1.13.41.25.9
LowGO-2026-4869stdlib@go1.13.41.25.9
LowGO-2026-4340stdlib@go1.13.41.24.12
LowGO-2025-4175stdlib@go1.13.41.24.11
LowGHSA-p26g-97m4-6q7cjetty-server@9.4.10.v201805039.4.51.v20230217
LowGHSA-9m89-8frq-c98ctomcat-embed-core@8.5.319.0.118
LowGHSA-659m-px2c-25wjspring-core@5.0.6.RELEASEno fix listed
LowGO-2026-4403stdlib@go1.13.41.23.9
LowGO-2026-5025golang.org/x/net@v0.0.0-20190923162816-aa69164e44780.55.0
LowGO-2026-4970stdlib@go1.13.41.25.12
LowGO-2026-5027golang.org/x/net@v0.0.0-20190923162816-aa69164e44780.55.0
LowGO-2026-5029golang.org/x/net@v0.0.0-20190923162816-aa69164e44780.55.0
LowGO-2026-5030golang.org/x/net@v0.0.0-20190923162816-aa69164e44780.55.0
LowGHSA-58qw-9mgm-455vpip@18.126.1
LowGO-2026-4602stdlib@go1.13.41.25.8
LowGHSA-4wp7-92pw-q264spring-context@5.0.6.RELEASEno fix listed
LowGHSA-h3qp-gqrc-q736spring-webmvc@5.0.6.RELEASEno fix listed
LowGHSA-9f52-rjqv-25qvspring-expression@5.0.6.RELEASEno fix listed
LowGHSA-w573-9ffj-6ff9netty-transport-native-epoll@4.1.24.Final4.1.135.Final
LowGHSA-wjpw-4j6x-6rwhjetty-http@9.4.10.v20180503no fix listed
LowGO-2026-5024golang.org/x/sys@v0.0.0-20200223170610-d5e6a3e2c0ae0.44.0
LowGHSA-wg35-8jpf-2xv3spring-webmvc@5.0.6.RELEASEno fix listed
LowGO-2023-2153google.golang.org/grpc@v1.23.11.56.3
LowGO-2026-5932golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550no fix listed
LowGO-2026-6061google.golang.org/grpc@v1.23.11.82.1
LowGO-2026-6278github.com/gorilla/websocket@v1.4.11.5.3
LowGHSA-58qw-p7qm-5rvhjetty-xml@9.4.10.v201805039.4.52.v20230823
LowGHSA-fghv-69vj-qj49netty-codec-http@4.1.24.Final4.1.125.Final
LowGHSA-7f33-f4f5-xwgwgithub.com/aws/aws-sdk-go@v1.25.481.34.0
LowGHSA-p47f-322f-whfhlogback-core@1.2.31.5.33
LowGHSA-6vgw-5pg2-w6jppip@18.126.0
LowGHSA-6v67-2wr5-gvf4logback-core@1.2.31.3.15
LowGHSA-7372-q459-jxhrpyxdg@0.250.26
LowGHSA-chfm-68vv-pvw5xmlunit-core@2.5.12.10.0
LowGHSA-qqpg-mvqg-649vlogback-core@1.2.31.5.25
LowGHSA-5cpq-8wj7-hf2vcryptography@2.6.141.0.0
LowGHSA-jm77-qphf-c4w8cryptography@2.6.141.0.3
LowGHSA-v8gr-m533-ghj9cryptography@2.6.141.0.4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
2.7.8latest1 year ago2.7.4215726552315,855

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/milvus-helm/pulsarv2.svg)](https://charts.stackradar.io/charts/milvus-helm/pulsarv2)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.