StackRadar

standard-application-stack 11.4.0 Helm chart

mintel

Scored 14 Sept 2026

A generic chart to support most common application requirements

Version 11.4.0 1 month agoApp version not verified against the render 0Artifact Hub

standard-application-stack 11.4.0 deploys 12 container images: docker.elastic.co/kibana/kibana, localstack/localstack, library/docker, mailhog/mailhog and 8 more. Across the 6 measured, 770 findings7 critical, 22 high 4 on CISA KEV. The highest contribution is GHSA-jfh8-c2jp-5v3q in log4j-core 2.13.0, fixed in 2.15.0.

Radar Score

10,603722178562

770 findings over 6 of 12 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

12 images
ImageTagVulnerabilitiesRadar Score
docker.elastic.co/kibana/kibana7.5.2unmeasured
localstack/localstacklatest00241982,156
library/docker20.10-dind19381722,787
mailhog/mailhogv1.0.116133778
opensearchproject/opensearch-dashboards1.0.004521132,388
k3d-default.localhost:5000/testv0.0.0unmeasured
docker.elastic.co/elasticsearch/elasticsearch×27.5.2unmeasured
bitnami/mariadb10.6.8-debian-10-r0unmeasured
library/busyboxlatest00000
opensearchproject/opensearch1.1.05351762,494
bitnami/postgresql13.5.0-debian-10-r52unmeasured
bitnami/redis×26.2.7-debian-10-r23unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

766 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-6pjf-3r9x-m592github.com/distribution/distribution/v3@v3.0.0-20220725133111-4bf3547399eb3.1.1
LowGO-2024-3106stdlib@go1.19.71.22.7
LowALPINE-CVE-2023-42364busybox@1.36.0-r91.36.1-r7
LowGHSA-68m8-v89j-7j2pbc-fips@1.0.21.0.2.4
LowALPINE-CVE-2023-42363busybox@1.36.0-r91.36.1-r7
LowDEBIAN-CVE-2022-0563util-linux@2.41-5no fix listed
LowGHSA-mqm9-c95h-x2p6angular@1.8.0no fix listed
LowGHSA-v2v4-37r5-5v8gip-address@6.4.010.1.1
LowGO-2024-2600stdlib@go1.19.71.21.8
LowALPINE-CVE-2023-42366busybox@1.36.0-r91.36.1-r6
LowGHSA-hrxh-6v49-42gfgoogle.golang.org/grpc@v1.50.11.82.1
LowGHSA-38f8-5428-x5cvnetty-codec-http@4.1.45.Final4.1.133.Final
LowGHSA-h8r8-wccr-v5f2dompurify@2.1.13.3.2
LowGHSA-xq3w-v528-46rvnetty-common@4.1.59.Final4.1.115.Final
LowGHSA-h7mw-gpvr-xq4mdompurify@2.1.13.4.0
LowGHSA-6gf2-pvqw-37phspring-core@5.2.5.RELEASE5.2.19
LowGHSA-m9gf-397r-hwpgangular@1.8.0no fix listed
LowGHSA-8c42-7qj2-3j46netty-codec-http@4.1.45.Final4.1.137.Final
LowGO-2024-2609stdlib@go1.19.71.21.8
LowGO-2024-3107stdlib@go1.19.71.22.7
LowDEBIAN-CVE-2026-5704tar@1.35+dfsg-3.1no fix listed
LowGO-2023-1751stdlib@go1.19.71.19.9
LowGO-2023-1753stdlib@go1.19.71.19.9
LowALPINE-CVE-2023-42365busybox@1.36.0-r91.36.1-r7
LowGHSA-r7wm-3cxj-wff9jackson-core@2.11.42.18.8
LowDEBIAN-CVE-2026-3441binutils@2.44-3no fix listed
LowGHSA-389x-839f-4rhxnetty-common@4.1.59.Final4.1.118.Final
LowDEBIAN-CVE-2026-3184util-linux@2.41-5no fix listed
LowDEBIAN-CVE-2026-58055nghttp2@1.64.0-1.1+deb13u1no fix listed
LowDEBIAN-CVE-2026-7010perl@5.40.1-65.40.1-6+deb13u1
LowGHSA-4mp9-239f-g9hgnetty-codec-http@4.1.45.Final4.1.136.Final
LowDEBIAN-CVE-2026-19487perl@5.40.1-6no fix listed
LowGHSA-9m57-25v3-79x9golang.org/x/crypto@v0.2.00.52.0
LowGHSA-pwhc-rpq9-4c8wgithub.com/containerd/containerd@v1.6.16-0.20230124210447-1709cfe273d91.7.29
LowGHSA-3v7f-55p6-f55ppicomatch@2.2.22.3.2
LowGHSA-mh29-5h37-fv8mjs-yaml@3.14.13.14.2
LowDEBIAN-CVE-2026-89158pcre2@10.46-1~deb13u110.46-1~deb13u2
LowGHSA-259w-8hf6-59c2github.com/containerd/containerd@v1.6.16-0.20230124210447-1709cfe273d91.6.18
LowGHSA-x86f-5xw2-fm2rgithub.com/docker/docker@v23.0.0-rc.1+incompatibleno fix listed
LowGO-2023-2041stdlib@go1.19.71.20.8
LowGO-2023-2043stdlib@go1.19.71.20.8
LowDEBIAN-CVE-2013-4392systemd@257.13-1~deb13u1no fix listed
LowGO-2023-2186stdlib@go1.19.71.20.11
LowGHSA-h67p-54hq-rp68js-yaml@3.14.13.15.0
LowGO-2024-3333golang.org/x/net@v0.4.00.33.0
LowDEBIAN-CVE-2026-78408util-linux@2.41-5no fix listed
LowGHSA-vhxf-7vqr-mrjgdompurify@2.1.13.2.4
LowGHSA-hgj6-7826-r7m5jackson-databind@2.11.22.18.8
LowDEBIAN-CVE-2025-1377elfutils@0.192-4no fix listed
LowGHSA-3jxr-9vmj-r5cpbrace-expansion@1.1.111.1.16

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
11.4.0latest1 month ago72217856210,603

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/mintel/standard-application-stack.svg)](https://charts.stackradar.io/charts/mintel/standard-application-stack)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.