StackRadar

istio-bookinfo Helm chart

rgnu

Scored 14 Sept 2026

Latest 1.0.2 2 years agoApp version not verified against the render 0Artifact Hub

istio-bookinfo 1.0.2 deploys 7 container images: istio/examples-bookinfo-details-v1, istio/examples-bookinfo-ratings-v1, istio/examples-bookinfo-reviews-v1, istio/examples-bookinfo-reviews-v2 and 3 more. Across them, 1,193 findings13 critical, 46 high. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.0.2g-1ubuntu4.14, fixed in 1.0.2g-1ubuntu4.20+esm5.

Radar Score

20,4621346457677

1,193 findings over 7 of 7 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

7 images
ImageTagVulnerabilitiesRadar Score
istio/examples-bookinfo-details-v11.14.0012128807
istio/examples-bookinfo-ratings-v11.14.00359792,364
istio/examples-bookinfo-reviews-v11.14.04121111665,073
istio/examples-bookinfo-reviews-v21.14.04121111665,073
istio/examples-bookinfo-reviews-v31.14.04121111665,073
istio/examples-bookinfo-productpage-v11.14.00137721,528
pstauffer/curllatest1570544

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

High findings

22 distinct across the version’s images

High: findings whose contribution to the Radar Score is 40–69. Show every band

SeverityAdvisoryPackageFixed in
HighUBUNTU-CVE-2022-0778openssl@1.0.2g-1ubuntu4.141.0.2g-1ubuntu4.20+esm2
HighGHSA-c4w7-xm78-47vhy18n@4.0.04.0.1
HighALPINE-CVE-2019-9511nghttp2@1.32.0-r01.39.2-r0
HighUBUNTU-CVE-2023-0286openssl@1.0.2g-1ubuntu4.141.0.2g-1ubuntu4.20+esm6
HighGHSA-j544-7q9p-6xp8werkzeug@0.14.10.15.5
HighUBUNTU-CVE-2018-25032zlib@1:1.2.8.dfsg-2ubuntu4.11:1.2.8.dfsg-2ubuntu4.3+esm1
HighUBUNTU-CVE-2021-23840openssl@1.0.2g-1ubuntu4.141.0.2g-1ubuntu4.19
HighUBUNTU-CVE-2023-2650openssl@1.0.2g-1ubuntu4.141.0.2g-1ubuntu4.20+esm9
HighUBUNTU-CVE-2021-3712openssl@1.0.2g-1ubuntu4.141.0.2g-1ubuntu4.20+esm1
HighALPINE-CVE-2019-5482curl@7.60.0-r17.61.1-r3
HighUBUNTU-CVE-2022-37434zlib@1:1.2.8.dfsg-2ubuntu4.11:1.2.8.dfsg-2ubuntu4.3+esm2
HighUBUNTU-CVE-2018-1000035unzip@6.0-20ubuntu16.0-20ubuntu1.1
HighALPINE-CVE-2019-3822curl@7.60.0-r17.61.1-r2
HighUBUNTU-CVE-2024-2511openssl@1.0.2g-1ubuntu4.141.0.2g-1ubuntu4.20+esm18
HighALPINE-CVE-2018-14618curl@7.60.0-r17.61.1-r0
HighGHSA-w573-4hg7-7wgqdecode-uri-component@0.2.00.2.1
HighGHSA-3jfq-g458-7qm9tar@2.2.13.2.2
HighGHSA-jvgm-pfqv-887xbundler@1.17.22.0.0
HighUBUNTU-CVE-2019-12900bzip2@1.0.6-81.0.6-8ubuntu0.1
HighUBUNTU-CVE-2016-9841zlib@1:1.2.8.dfsg-2ubuntu4.11:1.2.8.dfsg-2ubuntu4.3
HighALPINE-CVE-2019-5481curl@7.60.0-r17.61.1-r3
HighUBUNTU-CVE-2018-11236glibc@2.23-0ubuntu102.23-0ubuntu11.2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.2latest2 years ago134645767720,462

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/rgnu/istio-bookinfo.svg)](https://charts.stackradar.io/charts/rgnu/istio-bookinfo)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.