StackRadar

bastillion-upstream Helm chart

rock8sVerified publisher

Scored 14 Sept 2026

A Helm chart for Kubernetes

Latest 0.1.0 1 year agodeploys tag v0.1 0Artifact Hub

bastillion-upstream 0.1.0 deploys 1 container image: iamdorsah/bastillion. Across them, 255 findings1 critical, 8 high 5 on CISA KEV. The highest contribution is GHSA-vv7r-c36w-3prj in commons-fileupload 1.4, fixed in 1.6.0.

Radar Score

3,0511834212

255 findings over 1 of 1 images measured

KEV ×5 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
iamdorsah/bastillionv0.118342123,051

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

255 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowDLA-3907-1sqlite3@3.34.1-33.34.1-3+deb11u1
LowGO-2023-2102stdlib@go1.17.131.20.10
LowGHSA-r7p8-xq5m-436cjetty-jaspi@9.4.45.v202202039.4.61
LowGHSA-g8m5-722r-8whqjetty-server@9.4.45.v202202039.4.56
LowGO-2022-0969stdlib@go1.17.131.18.6
LowGHSA-qv9r-c865-cp47log4j-api@2.17.12.25.5
LowGHSA-q4h4-gmj2-qvw2golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d30.52.0
LowGHSA-w879-237q-wc7rgolang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d30.52.0
LowGHSA-q4rv-gq96-w7c5jetty-server@9.4.45.v202202039.4.57.v20241219
LowDEBIAN-CVE-2026-47057openjdk-11@11.0.16+8-1~deb11u111.0.32+9-2~deb11u1
LowGHSA-vc5p-v9hr-52mjlog4j-core@2.17.12.25.3
LowGHSA-2wrh-6pvc-2jm9golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc20.13.0
LowGO-2023-2185stdlib@go1.17.131.20.11
LowDSA-5331-1openjdk-11@11.0.16+8-1~deb11u111.0.18+10-1~deb11u1
LowDSA-5478-1openjdk-11@11.0.16+8-1~deb11u111.0.20+8-1~deb11u1
LowGHSA-hmr7-m48g-48f6jetty-http@9.4.45.v202202039.4.52
LowDSA-5266-1expat@2.2.10-2+deb11u42.2.10-2+deb11u5
LowDEBIAN-CVE-2026-47058openjdk-11@11.0.16+8-1~deb11u111.0.32+9-2~deb11u1
LowGHSA-22wj-vf5f-wrvjh2@2.1.2102.2.220
LowGO-2023-1703stdlib@go1.17.131.19.8
LowDSA-5650-1util-linux@2.36.1-8+deb11u12.36.1-8+deb11u2
LowGHSA-j26w-f9rq-mr2qjetty-servlets@9.4.45.v202202039.4.54
LowGO-2026-4341stdlib@go1.17.131.24.12
LowGO-2024-2887stdlib@go1.17.131.21.11
LowGO-2023-1704stdlib@go1.17.131.19.8
LowDSA-5726-1krb5@1.18.3-6+deb11u21.18.3-6+deb11u5
LowDEBIAN-CVE-2025-30761openjdk-11@11.0.16+8-1~deb11u111.0.28+6-1~deb11u1
LowDLA-3893-1expat@2.2.10-2+deb11u42.2.10-2+deb11u6
LowGO-2023-1568stdlib@go1.17.131.19.6
LowGO-2022-1037stdlib@go1.17.131.18.7
LowGHSA-6hg6-v5c8-fphqlog4j-core@2.17.12.25.4
LowGO-2023-1987stdlib@go1.17.131.19.12
LowGO-2023-1752stdlib@go1.17.131.19.9
LowDLA-4321-1openssl@1.1.1n-0+deb11u31.1.1w-0+deb11u4
LowDLA-3926-1perl@5.32.1-4+deb11u25.32.1-4+deb11u4
LowGO-2023-1705stdlib@go1.17.131.19.8
LowGO-2023-1878stdlib@go1.17.131.19.11
LowGHSA-45gg-vh54-h5m9golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d30.52.0
LowGO-2022-1039stdlib@go1.17.131.18.7
LowDSA-5349-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u3
LowGO-2024-2963stdlib@go1.17.131.21.12
LowDSA-5537-1openjdk-11@11.0.16+8-1~deb11u111.0.21+9-1~deb11u1
LowGO-2023-1702stdlib@go1.17.131.19.8
LowGHSA-5cv4-jp36-h3mwgolang.org/x/net@v0.0.0-20211112202133-69e39bad7dc20.55.0
LowDSA-5250-1dbus@1.12.20-21.12.24-0+deb11u1
LowDLA-3910-1e2fsprogs@1.46.2-21.46.2-2+deb11u1
LowDSA-5671-1openjdk-11@11.0.16+8-1~deb11u111.0.23+9-1~deb11u1
LowDSA-5678-1glibc@2.31-13+deb11u42.31-13+deb11u10
LowGHSA-j5w8-q4qc-rx2xgolang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d30.45.0
LowDLA-4267-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u8

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.0latest1 year agov0.118342123,051

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/rock8s/bastillion-upstream.svg)](https://charts.stackradar.io/charts/rock8s/bastillion-upstream)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.