StackRadar

pact-broker Helm chart

qamatic

Scored 14 Sept 2026

A Helm chart for Pact-Broker

Latest 0.1.0 7 years agodeploys tag 9.6.2 0Artifact Hub

pact-broker 0.1.0 deploys 2 container images: library/postgres and pactfoundation/pact-broker. Across them, 207 findings1 critical, 6 high 1 on CISA KEV. The highest contribution is ALPINE-CVE-2019-8457 in sqlite 3.26.0-r3, fixed in 3.28.0-r0.

Radar Score

3,5331610199

207 findings over 2 of 2 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
library/postgres9.6.20130491,123
pactfoundation/pact-broker2.32.0-21571502,410

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

101 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumGHSA-22f2-v57c-j9cxrack@2.0.72.2.8.1
MediumDLA-2176-1inetutils@2:1.9.2.39.3a460-32:1.9.2.39.3a460-3+deb8u1
MediumGHSA-fp4w-jxhp-m23pbundler@1.17.22.2.10
MediumALPINE-CVE-2020-15180mariadb@10.3.15-r010.3.25-r0
MediumALPINE-CVE-2019-5018sqlite@3.26.0-r33.28.0-r0
MediumALPINE-CVE-2019-19906cyrus-sasl@2.1.27-r12.1.27-r2
MediumDLA-1449-1openssl@1.0.1t-1+deb8u61.0.1t-1+deb8u9
MediumGHSA-jphg-qwrw-7w9gjson@2.1.02.3.0
MediumALPINE-CVE-2019-14697musl@1.1.20-r41.1.20-r5
MediumALPINE-CVE-2019-10164postgresql@11.3-r011.4-r0
MediumDLA-1911-1exim4@4.84.2-2+deb8u34.84.2-2+deb8u6
MediumGHSA-v5h6-c2hv-hv3rstringio@0.0.23.0.1.1
MediumGHSA-5f9h-9pjv-v6j7rack@2.0.72.1.3
MediumGHSA-8cr8-4vfw-mr7hrexml@3.1.93.2.5
MediumALPINE-CVE-2019-1551openssl@1.1.1b-r11.1.1d-r2
MediumALPINE-CVE-2019-13565openldap@2.4.47-r22.4.48-r0
MediumALPINE-CVE-2020-13249mariadb-connector-c@3.0.8-r03.0.8-r1
MediumALPINE-CVE-2020-12243openldap@2.4.47-r22.4.48-r1
MediumALPINE-CVE-2020-11655sqlite@3.26.0-r33.28.0-r3
MediumGHSA-wq4h-7r42-5hrrrack@2.0.72.0.9.1
MediumGHSA-x7jg-6pwg-fx5hpuma@3.12.13.12.5
MediumGHSA-h99w-9q5r-gjq9puma@3.12.14.3.12
MediumGHSA-gwfg-cqmg-cf8fwebrick@1.4.21.4.4
MediumALPINE-CVE-2021-23841openssl@1.1.1b-r11.1.1j-r0
MediumALPINE-CVE-2019-10208postgresql@11.3-r011.5-r0
MediumDSA-3952-1libxml2@2.9.1+dfsg1-5+deb8u42.9.1+dfsg1-5+deb8u5
MediumALPINE-CVE-2020-1971openssl@1.1.1b-r11.1.1i-r0
MediumALPINE-CVE-2019-19244sqlite@3.26.0-r33.28.0-r2
MediumGHSA-qg54-694p-wgppdate@2.0.02.0.1
MediumDSA-4018-1openssl@1.0.1t-1+deb8u61.0.1t-1+deb8u7
MediumDLA-1834-1python2.7@2.7.9-2+deb8u12.7.9-2+deb8u3
MediumDLA-1519-1python2.7@2.7.9-2+deb8u12.7.9-2+deb8u2
MediumGHSA-j6w9-fv6q-3q52rack@2.0.72.1.4
MediumALPINE-CVE-2020-25709openldap@2.4.47-r22.4.48-r2
MediumDSA-4157-1openssl@1.0.1t-1+deb8u61.0.1t-1+deb8u8
MediumALPINE-CVE-2019-16168sqlite@3.26.0-r33.28.0-r1
MediumALPINE-CVE-2020-25696postgresql@11.3-r011.10-r0
MediumALPINE-CVE-2020-25710openldap@2.4.47-r22.4.48-r2
MediumDLA-1701-1openssl@1.0.1t-1+deb8u61.0.1t-1+deb8u11
MediumALPINE-CVE-2019-2740mariadb@10.3.15-r010.3.17-r0
MediumGHSA-rmj8-8hhh-gv5hpuma@3.12.14.3.11
MediumALPINE-CVE-2019-2805mariadb@10.3.15-r010.3.17-r0
MediumALPINE-CVE-2019-2974mariadb@10.3.15-r010.3.20-r0
MediumDLA-1833-1bzip2@1.0.6-7+b31.0.6-7+deb8u1
MediumALPINE-CVE-2020-25692openldap@2.4.47-r22.4.48-r2
MediumDLA-1637-1apt@1.0.9.8.41.0.9.8.5
MediumGHSA-hrqr-hxpp-chr3rack@2.0.72.0.8
MediumALPINE-CVE-2019-1549openssl@1.1.1b-r11.1.1d-r0
MediumGHSA-qp49-3pvw-x4m5sinatra@2.0.52.2.0
MediumGHSA-w64w-qqph-5gxmpuma@3.12.13.12.6

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.0latest7 years ago9.6.216101993,533

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/qamatic/pact-broker.svg)](https://charts.stackradar.io/charts/qamatic/pact-broker)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.