StackRadar

onyx-stack 0.3.1 Helm chart

onyx

Scored 14 Sept 2026

A Helm chart for Kubernetes

Version 0.3.1 11 months agoapp version latest 0Artifact Hub

onyx-stack 0.3.1 deploys 12 container images: ghcr.io/kedacore/keda, ghcr.io/kedacore/keda-metrics-apiserver, ghcr.io/kedacore/keda-admission-webhooks, bitnami/minio and 8 more. Across the 6 measured, 731 findings0 critical, 0 high. The highest contribution is GHSA-5cgq-3rg8-m6cv in golang.org/x/crypto v0.37.0, fixed in 0.52.0.

Radar Score

6,3380079652

731 findings over 6 of 12 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

12 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/kedacore/keda2.17.2009101944
ghcr.io/kedacore/keda-metrics-apiserver2.17.2009101944
ghcr.io/kedacore/keda-admission-webhooks2.17.200580695
bitnami/minio2025.5.24-debian-12-r5unmeasured
bitnami/minio-object-browser2.0.1-debian-12-r1unmeasured
bitnami/nginx×21.25.4-debian-12-r3unmeasured
onyxdotapp/onyx-backend×10latest00331752,109
onyxdotapp/onyx-model-server×2latestnot yet scanned
onyxdotapp/onyx-web-serverlatest00715266
bitnami/postgresql16.2.0-debian-12-r6unmeasured
bitnami/redis7.4.0-debian-12-r2unmeasured
vespaengine/vespa8.526.1500161801,380

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

58 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumGHSA-5cgq-3rg8-m6cvgolang.org/x/crypto@v0.37.00.52.0
MediumDEBIAN-CVE-2019-1010022glibc@2.41-12+deb13u3no fix listed
MediumDEBIAN-CVE-2014-8166cups@2.4.10-3+deb13u2no fix listed
MediumDEBIAN-CVE-2026-45447openssl@3.5.6-1~deb13u13.5.6-1~deb13u2
MediumDEBIAN-CVE-2018-20796glibc@2.41-12+deb13u3no fix listed
MediumDEBIAN-CVE-2019-1010023glibc@2.41-12+deb13u3no fix listed
MediumGHSA-mmxm-8w33-wc4hjetty-http2-common@12.0.2112.0.25
MediumGHSA-cx63-2mw6-8hw5setuptools@39.2.070.0.0
MediumGHSA-p77j-4mvh-x3m3google.golang.org/grpc@v1.71.11.79.3
MediumGHSA-r9hx-vwmv-q579setuptools@39.2.065.5.1
MediumPYSEC-2025-49setuptools@39.2.078.1.1
MediumDEBIAN-CVE-2019-9192glibc@2.41-12+deb13u3no fix listed
MediumDEBIAN-CVE-2026-63073openssl@3.5.6-1~deb13u13.5.7-1~deb13u2
MediumDEBIAN-CVE-2018-5709krb5@1.21.3-5+deb13u1no fix listed
MediumDEBIAN-CVE-2023-45924libglvnd@1.7.0-1+b2no fix listed
MediumDEBIAN-CVE-2012-0039glib2.0@2.84.4-3~deb13u3no fix listed
MediumGHSA-crhr-qqj8-rpxczookeeper@3.9.33.9.5
MediumDEBIAN-CVE-2018-6829libgcrypt20@1.11.0-7+deb13u1no fix listed
MediumGHSA-cx4m-2p55-rw7jopennlp-tools@2.4.02.5.9
MediumDEBIAN-CVE-2026-18798openssl@3.5.6-1~deb13u13.5.7-1~deb13u2
MediumGHSA-j288-q9x7-2f5vcommons-lang3@3.16.03.18.0
MediumDEBIAN-CVE-2011-3389gnutls28@3.8.9-3+deb13u4no fix listed
MediumGHSA-xgrm-4fwx-7qm8github.com/jackc/pgx/v5@v5.7.45.9.0
MediumDEBIAN-CVE-2026-63076openssl@3.5.6-1~deb13u13.5.7-1~deb13u2
MediumGHSA-78wr-2p64-hpwjcommons-io@2.8.02.14.0
MediumGHSA-3qp7-7mw8-wx86netty-handler@4.1.118.Final4.1.135.Final
MediumGHSA-355h-qmc2-wpwfjetty-http@12.0.2112.0.33
MediumGHSA-9jj7-4m8r-rfcmgithub.com/jackc/pgx/v5@v5.7.45.9.0
MediumGHSA-x527-x647-q7gggolang.org/x/crypto@v0.37.00.52.0
MediumDEBIAN-CVE-2026-42764openssl@3.5.6-1~deb13u13.5.6-1~deb13u2
MediumDEBIAN-CVE-2024-26461krb5@1.21.3-5+deb13u1no fix listed
MediumDEBIAN-CVE-2019-1010024glibc@2.41-12+deb13u3no fix listed
MediumGHSA-rmj7-2vxq-3g9fjackson-databind@2.18.32.18.8
MediumDEBIAN-CVE-2026-5450glibc@2.41-12+deb13u32.41-12+deb13u4
MediumGHSA-vgwf-h737-ff37golang.org/x/crypto@v0.37.00.52.0
MediumGHSA-j3rv-43j4-c7qmjackson-databind@2.18.32.18.8
MediumDEBIAN-CVE-2026-34182openssl@3.5.6-1~deb13u13.5.6-1~deb13u2
MediumGHSA-f5wc-c3c7-36mcgolang.org/x/crypto@v0.37.00.52.0
MediumDEBIAN-CVE-2026-34183openssl@3.5.6-1~deb13u13.5.6-1~deb13u2
MediumDEBIAN-CVE-2023-45931mesa@25.0.7-2+deb13u1no fix listed
MediumDEBIAN-CVE-2026-34180openssl@3.5.6-1~deb13u13.5.6-1~deb13u2
MediumDEBIAN-CVE-2026-7383openssl@3.5.6-1~deb13u13.5.6-1~deb13u2
MediumDEBIAN-CVE-2026-14457openssl@3.5.6-1~deb13u13.5.7-1~deb13u2
MediumDEBIAN-CVE-2026-58016glib2.0@2.84.4-3~deb13u32.84.4-3~deb13u4
MediumDEBIAN-CVE-2018-18064cairo@1.18.4-1+b1no fix listed
MediumGHSA-rm3j-f69w-wqmqgolang.org/x/crypto@v0.37.00.52.0
MediumDEBIAN-CVE-2026-66046expat@2.8.3-1~deb13u1no fix listed
MediumDEBIAN-CVE-2026-44950libxfont@1:2.0.6-1+deb13u1no fix listed
MediumGHSA-4v8g-86x5-3vrcopennlp-tools@2.4.02.5.9
MediumGHSA-hf6x-8p5f-cgmfhttpcore5@5.2.55.4.3

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.3.1latest11 months agolatest00796526,338

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/onyx/onyx-stack.svg)](https://charts.stackradar.io/charts/onyx/onyx-stack)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.