StackRadar

security-role-perm-operator-svc 3.0.0 Helm chart

mojaloop

Scored 14 Sept 2026

Kubernetes operator watches mojaloop roles and updates keto

Version 3.0.0 4 days agoapp version 3.0.2 0Artifact Hub

security-role-perm-operator-svc 3.0.0 deploys 1 container image: mojaloop/security-role-perm-operator-svc. Across them, 207 findings0 critical, 2 high. The highest contribution is ALPINE-CVE-2025-15467 in openssl 3.5.4-r0, fixed in 3.5.5-r0.

Radar Score

2,4570238167

207 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
mojaloop/security-role-perm-operator-svcv3.0.202381672,457

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

207 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-r4q5-vmmm-2653follow-redirects@1.15.111.16.0
LowALPINE-CVE-2025-15468openssl@3.5.4-r03.5.5-r0
LowGHSA-r28c-9q8g-f849postcss@8.5.68.5.18
LowGHSA-jvwf-75h9-cwggprotobufjs@7.5.47.5.6
LowGHSA-fj3w-jwp8-x2g3fast-xml-parser@4.5.34.5.4
LowGHSA-qj83-cq47-w5f8axios@1.13.01.13.2
LowGHSA-w4pp-8pjf-rmxwpacote@21.0.321.5.1
LowGHSA-9ppj-qmqm-q256tar@7.5.17.5.11
LowGHSA-2mjp-6q6p-2qxmundici@7.16.07.24.0
LowGHSA-3p68-rc4w-qgx5axios@1.13.01.15.0
LowGHSA-jqh4-m9w3-8hp9axios@1.13.01.18.0
LowGHSA-xwg4-73v4-xw9wnanoid@3.3.113.3.12
LowALPINE-CVE-2026-2673openssl@3.5.4-r03.5.6-r0
LowGHSA-f886-m6hf-6m8vbrace-expansion@1.1.121.1.13
LowALPINE-CVE-2026-42767openssl@3.5.4-r03.5.7-r0
LowGHSA-fxqj-rqcc-2cmppostcss@8.5.68.5.23
LowGHSA-42h9-826w-cgv3axios@1.13.01.18.0
LowGHSA-pmv8-rq9r-6j72axios@1.13.01.18.0
LowGHSA-mwf2-3pr3-8698axios@1.13.01.18.0
LowGHSA-vhjm-w67q-g75c@hapi/wreck@18.1.018.1.1
LowGHSA-83g3-92jg-28cxtar@7.5.17.5.8
LowALPINE-CVE-2026-63074openssl@3.5.4-r03.5.8-r0
LowGHSA-g9mf-h72j-4rw9undici@7.16.07.18.2
LowGHSA-jqff-g426-hqxpfast-uri@3.1.03.1.6
LowGHSA-w8wr-v893-vjvptar@7.5.17.5.18
LowALPINE-CVE-2026-34181openssl@3.5.4-r03.5.7-r0
LowGHSA-m7pr-hjqh-92cmaxios@1.13.01.15.1
LowGHSA-7p8r-x3mc-p8w7fast-uri@3.1.03.1.5
LowGHSA-f65p-4m7j-42xcfast-uri@3.1.03.1.6
LowGHSA-jp2q-39xq-3w4gfast-xml-parser@4.5.34.5.5
LowGHSA-mmx7-hfxf-jppxaxios@1.13.01.18.0
LowALPINE-CVE-2026-40200musl@1.2.5-r101.2.5-r12
LowGHSA-rcvq-m9j9-6f4g@hapi/inert@7.1.07.1.1
LowALPINE-CVE-2025-66199openssl@3.5.4-r03.5.5-r0
LowGHSA-44fc-8fm5-q62hconvict@6.2.46.2.5
LowGHSA-hf2r-9gf9-rwchconvict@6.2.46.2.5
LowGHSA-52v5-jr5w-gjxrsigstore@4.0.04.1.1
LowGHSA-pr7r-676h-xcf6undici@7.16.07.28.0
LowGHSA-q7cg-457f-vx79joi@18.0.118.2.1
LowALPINE-CVE-2026-22796openssl@3.5.4-r03.5.5-r0
LowGHSA-gvwx-54wh-qm9jtar@7.5.17.5.17
LowGHSA-v2v4-37r5-5v8gip-address@10.0.110.1.1
LowGHSA-28wg-ghj8-5hjvnanoid@3.3.113.3.16
LowGHSA-w9j2-pvgh-6h63axios@1.13.01.15.1
LowGHSA-jxwj-j7wr-gfrwsanitize-html@2.12.12.17.6
LowGHSA-2v37-7h3g-55p8nanoid@3.3.113.3.18
LowGHSA-2pr8-phx7-x9h3protobufjs@7.5.47.5.6
LowGHSA-58qx-3vcg-4xpxws@8.18.38.20.1
LowGHSA-jr45-8vmc-qm54undici@7.16.07.29.0
LowGHSA-3v7f-55p6-f55ppicomatch@2.3.12.3.2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
3.0.0latest4 days ago3.0.202381672,457

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/mojaloop/security-role-perm-operator-svc.svg)](https://charts.stackradar.io/charts/mojaloop/security-role-perm-operator-svc)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 10 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.