StackRadar

standard-application-stack Helm chart

mintel

Scored 14 Sept 2026

A generic chart to support most common application requirements

Latest 11.4.0 1 month agoApp version not verified against the render 0Artifact Hub

standard-application-stack 11.4.0 deploys 12 container images: docker.elastic.co/kibana/kibana, localstack/localstack, library/docker, mailhog/mailhog and 8 more. Across the 6 measured, 770 findings7 critical, 22 high 4 on CISA KEV. The highest contribution is GHSA-jfh8-c2jp-5v3q in log4j-core 2.13.0, fixed in 2.15.0.

Radar Score

10,603722178562

770 findings over 6 of 12 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

12 images
ImageTagVulnerabilitiesRadar Score
docker.elastic.co/kibana/kibana7.5.2unmeasured
localstack/localstacklatest00241982,156
library/docker20.10-dind19381722,787
mailhog/mailhogv1.0.116133778
opensearchproject/opensearch-dashboards1.0.004521132,388
k3d-default.localhost:5000/testv0.0.0unmeasured
docker.elastic.co/elasticsearch/elasticsearch×27.5.2unmeasured
bitnami/mariadb10.6.8-debian-10-r0unmeasured
library/busyboxlatest00000
opensearchproject/opensearch1.1.05351762,494
bitnami/postgresql13.5.0-debian-10-r52unmeasured
bitnami/redis×26.2.7-debian-10-r23unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

766 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-v435-xc8x-wvr9bcprov-jdk15on@1.681.78
LowDEBIAN-CVE-2026-66034libssh2@1.11.1-1+deb13u11.11.1-1+deb13u2
LowGHSA-8x88-c5mf-7j5wtar@4.4.137.5.18
LowDEBIAN-CVE-2026-82208curl@8.14.1-2+deb13u4no fix listed
LowGHSA-mvh2-crg5-v77cnetty-codec-http@4.1.45.Final4.1.136.Final
LowGO-2023-2185stdlib@go1.19.71.20.11
LowDEBIAN-CVE-2026-54411pam@1.7.0-5no fix listed
LowDEBIAN-CVE-2026-42497perl@5.40.1-65.40.1-6+deb13u1
LowDEBIAN-CVE-2026-41992gzip@1.13-11.13-1+deb13u1
LowGHSA-269q-hmxg-m83qnetty-codec-http@4.1.45.Final4.1.77.Final
LowGHSA-558v-64gr-wgg4netty-codec@4.1.45.Final4.1.136.Final
LowGHSA-c2c7-rcm5-vvqjpicomatch@2.2.22.3.2
LowALPINE-CVE-2024-4603openssl@3.1.0-r43.1.5-r0
LowDEBIAN-CVE-2026-12064curl@8.14.1-2+deb13u4no fix listed
LowGHSA-mwp4-54f8-5fhrip-address@6.4.010.3.1
LowDEBIAN-CVE-2026-8932curl@8.14.1-2+deb13u4no fix listed
LowDEBIAN-CVE-2025-1372elfutils@0.192-4no fix listed
LowGHSA-2g4f-4pwh-qvx6ajv@6.12.46.14.0
LowDEBIAN-CVE-2026-8286curl@8.14.1-2+deb13u4no fix listed
LowGHSA-8xfc-gm6g-vgpvbc-fips@1.0.21.0.2.5
LowGHSA-8xfc-gm6g-vgpvbcprov-jdk15on@1.681.78
LowDEBIAN-CVE-2025-1365elfutils@0.192-4no fix listed
LowGHSA-p8p7-x288-28g6request@2.88.2no fix listed
LowGHSA-r6q2-hw4h-h46wtar@4.4.137.5.4
LowGHSA-2883-xcg3-v3hhjs-yaml@3.14.13.15.2
LowGHSA-p436-gjf2-799pgithub.com/docker/cli@v23.0.4+incompatible29.2.0
LowGHSA-xjpj-3mr7-gcpfhandlebars@4.7.74.7.9
LowGHSA-r292-9mhp-454mtar@4.4.137.5.21
LowGHSA-wg6q-6289-32hpbcpkix-jdk15on@1.681.84
LowDEBIAN-CVE-2026-58051libssh2@1.11.1-1+deb13u11.11.1-1+deb13u2
LowGHSA-4h8f-2wvx-gg5wbcprov-jdk15on@1.681.78
LowDEBIAN-CVE-2026-48959perl@5.40.1-65.40.1-6+deb13u1
LowDEBIAN-CVE-2026-5928glibc@2.41-12+deb13u32.41-12+deb13u4
LowDEBIAN-CVE-2025-66863binutils@2.44-3no fix listed
LowDEBIAN-CVE-2025-66865binutils@2.44-3no fix listed
LowGHSA-wjxj-5m7g-mg7qbcprov-jdk15on@1.68no fix listed
LowGHSA-mq39-4gv4-mvpxgithub.com/docker/docker@v23.0.0-rc.1+incompatible23.0.11
LowGHSA-vpvm-3wq2-2wvmgithub.com/opencontainers/runc@v1.1.31.1.5
LowGHSA-4rq4-32rv-6wp6shelljs@0.8.40.8.5
LowDEBIAN-CVE-2025-66862binutils@2.44-3no fix listed
LowGHSA-r5w3-xv2f-j59qspring-expression@5.2.5.RELEASEno fix listed
LowDEBIAN-CVE-2026-6791glibc@2.41-12+deb13u3no fix listed
LowALPINE-CVE-2021-23839openssl@1.1.1g-r01.1.1j-r0
LowDEBIAN-CVE-2026-8458curl@8.14.1-2+deb13u4no fix listed
LowGHSA-7pqw-9j4j-h8q3extract-zip@1.7.0no fix listed
LowGHSA-w5hq-g745-h8pquuid@3.4.011.1.1
LowGO-2023-1703stdlib@go1.19.71.19.8
LowGHSA-9p26-698r-w4hxgithub.com/moby/buildkit@v0.11.20.12.5
LowGHSA-gxpj-cx7g-858cdebug@4.1.14.3.1
LowGHSA-2328-f5f3-gj25node-forge@0.10.01.4.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
11.4.0latest1 month ago72217856210,603

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/mintel/standard-application-stack.svg)](https://charts.stackradar.io/charts/mintel/standard-application-stack)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.