StackRadar

spring-petclinic-cloud 0.2.0 Helm chart

platform9-communityVerified publisher

Scored 14 Sept 2026

Spring pet clinic for Kubernetes on Platform9

Version 0.2.0 5 years agodeploys tag latest 5Artifact Hub

spring-petclinic-cloud 0.2.0 deploys 6 container images: platform9community/admin-server, platform9community/api-gateway, platform9community/customers-service, platform9community/vets-service and 2 more. Across the 5 measured, 2,682 findings49 critical, 104 high 26 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-webflux 5.2.7.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >= 1.18.10 <= 1.20.5; rendered for Kubernetes 1.18.10.

Radar Score

41,872491047151,814

2,682 findings over 5 of 6 images measured

KEV ×26 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
platform9community/admin-serverlatest8151333717,771
platform9community/api-gatewaylatest8171413788,115
platform9community/customers-servicelatest11241473558,662
platform9community/vets-servicelatest11241473558,662
platform9community/visits-servicelatest11241473558,662
bitnami/mysql×38.0.25unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

403 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-23hv-mwm6-g8jftomcat-embed-core@9.0.369.0.106
LowUBUNTU-CVE-2022-23491ca-certificates@20210119~18.04.120211016ubuntu0.18.04.1
LowGO-2021-0240stdlib@go1.15.111.15.13
LowUBUNTU-CVE-2026-54874openssl@1.1.1-1ubuntu2.1~18.04.91.1.1-1ubuntu2.1~18.04.23+esm10
LowGHSA-563x-q5rq-57qptomcat-embed-core@9.0.369.0.116
LowUBUNTU-CVE-2026-42766openssl@1.1.1-1ubuntu2.1~18.04.91.1.1-1ubuntu2.1~18.04.23+esm9
LowGO-2021-0242stdlib@go1.15.111.15.13
LowUBUNTU-CVE-2025-32990gnutls28@3.5.18-1ubuntu1.43.5.18-1ubuntu1.6+esm2
LowGO-2021-0264stdlib@go1.15.111.16.10
LowGO-2022-0969stdlib@go1.15.111.18.6
LowUBUNTU-CVE-2025-6020pam@1.1.8-3.6ubuntu2.18.04.3no fix listed
LowGHSA-hhhw-99gj-p3c3snakeyaml@1.261.31
LowUBUNTU-CVE-2019-6488glibc@2.27-3ubuntu1.4no fix listed
LowGO-2021-0239stdlib@go1.15.111.15.13
LowGHSA-5jpm-x58v-624vnetty-codec-http@4.1.50.Final4.1.108.Final
LowGHSA-qv9r-c865-cp47log4j-api@2.13.32.25.5
LowGO-2021-0347stdlib@go1.15.111.16.15
LowGHSA-6xx3-rg99-gc3pbcprov-jdk15on@1.641.66
LowGO-2021-0245stdlib@go1.15.111.15.15
LowGHSA-mgvc-8q2h-5pgcspring-boot-starter-actuator@2.3.1.RELEASEno fix listed
LowGO-2021-0319stdlib@go1.15.111.16.14
LowUBUNTU-CVE-2023-47039perl@5.26.1-6ubuntu0.5no fix listed
LowGHSA-3p8m-j85q-pgmjnetty-codec@4.1.50.Final4.1.125.Final
LowGHSA-5mp6-jrq3-r938tomcat-embed-core@9.0.369.0.118
LowUBUNTU-CVE-2025-15281glibc@2.27-3ubuntu1.42.27-3ubuntu1.6+esm6
LowUBUNTU-CVE-2025-6297dpkg@1.19.0.5ubuntu2.3no fix listed
LowGHSA-mj4r-2hfc-f8p6netty-codec@4.1.50.Final4.1.133.Final
LowUBUNTU-CVE-2019-1563openssl@1.1.1-1ubuntu2.1~18.04.91.1.1-1ubuntu2.fips.2.1~18.04.6.1
LowUBUNTU-CVE-2026-42011gnutls28@3.5.18-1ubuntu1.43.5.18-1ubuntu1.6+esm4
LowGHSA-c653-97m9-rcg9netty-handler@4.1.50.Final4.1.135.Final
LowUBUNTU-CVE-2024-12243gnutls28@3.5.18-1ubuntu1.43.5.18-1ubuntu1.6+esm3
LowGHSA-2wrh-6pvc-2jm9golang.org/x/net@v0.0.0-20210428140749-89ef3d95e7810.13.0
LowUBUNTU-CVE-2026-9538perl@5.26.1-6ubuntu0.5no fix listed
LowGO-2022-0493stdlib@go1.15.111.17.10
LowGHSA-x4m4-345f-5h5gtomcat-embed-core@9.0.369.0.117
LowGHSA-gfwj-fwqj-fp3vspring-web@5.2.7.RELEASE5.2.15
LowGHSA-93wv-jw9v-4972netty-codec-http2@4.1.50.Final4.1.136.Final
LowGHSA-6jqx-86gh-f27wnetty-codec-http@4.1.50.Final4.1.136.Final
LowGHSA-v435-xc8x-wvr9bcprov-jdk15on@1.641.78
LowGHSA-jjfh-589g-3hjxspring-boot-actuator@2.3.1.RELEASE2.7.18
LowGO-2021-0317stdlib@go1.15.111.16.14
LowUBUNTU-CVE-2026-85091zlib@1:1.2.11.dfsg-0ubuntu2no fix listed
LowGHSA-mvh2-crg5-v77cnetty-codec-http@4.1.50.Final4.1.136.Final
LowGHSA-fpj8-gq4v-p354tomcat-embed-core@9.0.369.0.113
LowGO-2023-2185stdlib@go1.15.111.20.11
LowUBUNTU-CVE-2026-42497perl@5.26.1-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-41992gzip@1.6-5ubuntu1no fix listed
LowUBUNTU-CVE-2023-7008systemd@237-3ubuntu10.48no fix listed
LowGHSA-269q-hmxg-m83qnetty-codec-http@4.1.50.Final4.1.77.Final
LowGHSA-hgrr-935x-pq79tomcat-embed-core@9.0.369.0.110

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.2.0latest5 years agolatest491047151,81441,872

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/platform9-community/spring-petclinic-cloud.svg)](https://charts.stackradar.io/charts/platform9-community/spring-petclinic-cloud)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.