StackRadar

fspiop-transfer-api-svc 12.0.1 Helm chart

mojaloop

Scored 14 Sept 2026

EXPERIMENTAL FSPIOP Transfer API Service component Helm chart for Kubernetes

Version 12.0.1 4 days agoapp version 11.1.6 0Artifact Hub

fspiop-transfer-api-svc 12.0.1 deploys 3 container images: solsson/kafka, mojaloop/ml-api-adapter and mojaloop/event-sidecar. Across them, 751 findings7 critical, 29 high 1 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.16, fixed in 1.1.1f-1ubuntu2.fips.16.

Radar Score

11,479729214500

751 findings over 3 of 3 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
solsson/kafkalatest510912735,226
mojaloop/ml-api-adapterv11.1.6110711423,644
mojaloop/event-sidecarv11.0.11952852,609

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

High findings

20 distinct across the version’s images

High: findings whose contribution to the Radar Score is 40–69. Show every band

SeverityAdvisoryPackageFixed in
HighGHSA-phwq-j96m-2c2qejs@2.7.43.1.7
HighUBUNTU-CVE-2022-0778openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.fips.12
HighGHSA-vgq5-3255-v292kafka-clients@3.3.03.9.1
HighGHSA-c4w7-xm78-47vhy18n@3.2.13.2.2
HighUBUNTU-CVE-2023-0286openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.17
HighALPINE-CVE-2020-1967openssl@1.1.1d-r31.1.1g-r0
HighALPINE-CVE-2021-23840openssl@1.1.1d-r31.1.1j-r0
HighUBUNTU-CVE-2021-23840openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.fips.7.2
HighUBUNTU-CVE-2023-2650openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.19
HighALPINE-CVE-2021-3712openssl@1.1.1d-r31.1.1l-r0
HighUBUNTU-CVE-2021-3712openssl@1.1.1f-1ubuntu2.16no fix listed
HighALPINE-CVE-2022-37434zlib@1.2.11-r31.2.11-r4
HighUBUNTU-CVE-2022-37434zlib@1:1.2.11.dfsg-2ubuntu1.31:1.2.11.dfsg-2ubuntu1.5
HighALPINE-CVE-2021-3449openssl@1.1.1d-r31.1.1k-r0
HighUBUNTU-CVE-2021-3449openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.fips.7
HighGHSA-r5fr-rjxr-66jclodash@4.17.214.18.0
HighUBUNTU-CVE-2024-2511openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.23
HighGHSA-w573-4hg7-7wgqdecode-uri-component@0.2.00.2.1
HighUBUNTU-CVE-2022-4450openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.17
HighGHSA-3jfq-g458-7qm9tar@4.4.134.4.14

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
12.0.1latest4 days ago11.1.672921450011,479

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/mojaloop/fspiop-transfer-api-svc.svg)](https://charts.stackradar.io/charts/mojaloop/fspiop-transfer-api-svc)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 10 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.