StackRadar

redhat-trusted-application-pipeline Helm chart

openshift

Scored 14 Sept 2026

A Helm chart for deploying Red Hat Trusted Application Pipeline

Latest 1.0.2app version 1.1.x (not verified against the render) 0Artifact Hub

redhat-trusted-application-pipeline 1.0.2 deploys 2 container images: registry.redhat.io/openshift4/ose-tools-rhel8 and quay.io/redhat-appstudio/appstudio-utils. Across the 1 measured, 605 findings12 critical, 17 high 6 on CISA KEV. The highest contribution is RHSA-2024:3339 in glibc 2.34-60.el9, fixed in 0:2.34-100.el9_4.2. Chart.yaml declares kubeVersion >= 1.25.0-0; rendered for Kubernetes 1.25.0.

Radar Score

8,5991217131445

605 findings over 1 of 2 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
registry.redhat.io/openshift4/ose-tools-rhel8×5latestunmeasured
quay.io/redhat-appstudio/appstudio-utilsdbbdd82734232e6289e8fbae5b4c858481a7c05712171314458,599

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

445 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-9wx4-h78v-vm56requests@2.25.12.32.0
LowRHSA-2025:7049python-requests@2.25.1-7.el9_20:2.25.1-9.el9
LowRHSA-2026:64812expat@2.5.0-1.el90:2.5.0-6.el9_8.3
LowRHSA-2025:4241glibc@2.34-60.el90:2.34-60.el9_2.17
LowRHSA-2025:23342python3.9@3.9.16-1.el9_2.10:3.9.25-2.el9_7
LowGO-2023-2043stdlib@go1.19.41.20.8
LowGO-2022-0515stdlib@go1.18.11.17.12
LowGO-2023-2186stdlib@go1.20.81.20.11
LowRHSA-2026:13677systemd@252-14.el9_2.30:252-55.el9_7.9
LowGO-2024-3333golang.org/x/net@v0.11.00.33.0
LowRHSA-2026:42736acl@2.3.1-3.el90:2.4.0-1.el9_8
LowRHSA-2024:4779python3.9@3.9.16-1.el9_2.10:3.9.18-3.el9_4.3
LowGHSA-389r-gv7p-r3rpgithub.com/go-git/go-git/v5@v5.3.05.19.0
LowRHSA-2025:1350libxml2@2.9.13-3.el9_2.10:2.9.13-6.el9_5.1
LowRHSA-2025:9877glibc@2.34-60.el90:2.34-168.el9_6.20
LowGO-2024-3105stdlib@go1.20.81.22.7
LowGO-2022-1095stdlib@go1.18.11.18.8
LowGHSA-7236-3392-c5c6github.com/moby/buildkit@v0.11.50.31.1
LowGHSA-m6hq-p25p-ffr2github.com/containerd/containerd@v1.5.11.7.29
LowRHSA-2025:17742vim@2:8.2.2637-20.el9_12:8.2.2637-22.el9_6.1
LowRHSA-2025:20945vim@2:8.2.2637-20.el9_12:8.2.2637-23.el9_7
LowGO-2023-1621stdlib@go1.19.41.19.7
LowGO-2026-4981stdlib@go1.20.81.25.10
LowGO-2025-3563stdlib@go1.20.81.23.8
LowGHSA-4c4x-jm2x-pf9jgithub.com/sigstore/rekor@v1.2.2-0.20230530122220-67cc9e58bd231.5.0
LowGO-2026-4977stdlib@go1.20.81.25.10
LowGO-2024-2610stdlib@go1.20.81.21.8
LowGO-2026-4986stdlib@go1.20.81.25.10
LowRHSA-2026:61581tar@2:1.34-6.el9_12:1.34-13.el9_8
LowGO-2026-4918golang.org/x/net@v0.11.00.53.0
LowGO-2026-4918stdlib@go1.20.81.25.10
LowGO-2026-4337stdlib@go1.20.81.24.13
LowGHSA-qccp-gfcp-xxvcurllib3@1.26.52.7.0
LowGHSA-88jx-383q-w4qcgithub.com/sigstore/cosign/v2@v2.2.02.2.4
LowGHSA-crhj-59gh-8x96github.com/go-git/go-git/v5@v5.3.05.19.1
LowGO-2026-4601stdlib@go1.20.81.25.8
LowGHSA-59jp-pj84-45mrgithub.com/sigstore/fulcio@v1.4.01.8.5
LowRHSA-2026:18693python3.9@3.9.16-1.el9_2.10:3.9.25-5.el9_8
LowGO-2026-5026golang.org/x/net@v0.11.00.55.0
LowGO-2026-5026stdlib@go1.20.81.25.13
LowRHSA-2026:1913util-linux@2.37.4-11.el9_20:2.37.4-21.el9_7
LowGO-2025-3420stdlib@go1.20.81.22.11
LowGO-2026-4342stdlib@go1.20.81.24.12
LowGO-2024-2598stdlib@go1.20.81.21.8
LowGO-2025-3751stdlib@go1.20.81.23.10
LowRHSA-2025:23480openssh@8.7p1-30.el9_20:8.7p1-47.el9_7
LowRHSA-2026:1815openssh@8.7p1-30.el9_20:8.7p1-30.el9_2.9
LowGHSA-2v4p-qf9q-27wjgoogle.golang.org/grpc@v1.46.01.82.2
LowGHSA-9763-4f94-gfchgithub.com/cloudflare/circl@v1.3.31.3.7
LowGHSA-m425-mq94-257ggoogle.golang.org/grpc@v1.46.01.56.3

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.2latest1.1.x12171314458,599

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/openshift/redhat-trusted-application-pipeline.svg)](https://charts.stackradar.io/charts/openshift/redhat-trusted-application-pipeline)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.