StackRadar

tandoor 0.0.1 Helm chart

rtomik-helm-chartsVerified publisher

Scored 14 Sept 2026

Tandoor Recipes - A recipe management application for Kubernetes

Version 0.0.1 9 months agoapp version 2.3.5 0Artifact Hub

tandoor 0.0.1 deploys 1 container image: vabene1111/recipes. Across them, 364 findings2 critical, 7 high 1 on CISA KEV. The highest contribution is GHSA-7488-6r32-c95q in litellm 1.64.1, fixed in 1.84.0.

Radar Score

4,4992758296

364 findings over 1 of 1 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
vabene1111/recipes2.3.527582964,499

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

364 distinct across the version’s images
SeverityAdvisoryPackageFixed in
CriticalGHSA-7488-6r32-c95qKEVlitellm@1.64.11.84.0
CriticalALPINE-CVE-2026-42945nginx@1.28.0-r31.28.3-r1
HighALPINE-CVE-2025-15467openssl@3.5.4-r03.5.5-r0
HighALPINE-CVE-2026-27654nginx@1.28.0-r31.28.3-r0
HighGHSA-53mr-6c8q-9789litellm@1.64.11.83.0
HighALPINE-CVE-2026-49975nginx@1.28.0-r31.28.3-r3
HighALPINE-CVE-2026-21710nodejs@22.16.0-r222.22.2-r0
HighGHSA-mwm9-4648-f68qdjango@5.2.85.2.11
HighALPINE-CVE-2026-9256nginx@1.28.0-r31.28.3-r2
MediumALPINE-CVE-2026-42055nginx@1.28.0-r31.28.3-r4
MediumALPINE-CVE-2026-42533nginx@1.28.0-r31.28.3-r6
MediumALPINE-CVE-2026-45447openssl@3.5.4-r03.5.7-r0
MediumALPINE-CVE-2025-59465nodejs@22.16.0-r222.22.0-r0
MediumALPINE-CVE-2026-48933nodejs@22.16.0-r222.23.0-r0
MediumGHSA-5j98-mcp5-4vw2glob@10.4.510.5.0
MediumALPINE-CVE-2025-55130nodejs@22.16.0-r222.22.0-r0
MediumGHSA-38jv-5279-wg99urllib3@1.26.202.6.3
MediumALPINE-CVE-2025-55131nodejs@22.16.0-r222.22.0-r0
MediumALPINE-CVE-2025-11187openssl@3.5.4-r03.5.5-r0
MediumALPINE-CVE-2026-2005postgresql17@17.7-r017.8-r0
MediumALPINE-CVE-2026-48618nodejs@22.16.0-r222.23.0-r0
MediumPYSEC-2025-109django@5.2.84.2.27
MediumALPINE-CVE-2026-63073openssl@3.5.4-r03.5.8-r0
MediumALPINE-CVE-2026-2004postgresql17@17.7-r017.8-r0
MediumALPINE-CVE-2026-2006postgresql17@17.7-r017.8-r0
MediumALPINE-CVE-2026-6473postgresql17@17.7-r017.10-r0
MediumALPINE-CVE-2026-27784nginx@1.28.0-r31.28.3-r0
MediumGHSA-gvg8-93h5-g6qqdjango@5.2.85.2.11
MediumALPINE-CVE-2026-18798openssl@3.5.4-r03.5.8-r0
MediumALPINE-CVE-2026-27651nginx@1.28.0-r31.28.3-r0
MediumPYSEC-2026-36cryptography@45.0.546.0.7
MediumALPINE-CVE-2026-32647nginx@1.28.0-r31.28.3-r0
MediumALPINE-CVE-2026-63076openssl@3.5.4-r03.5.8-r0
MediumGHSA-4xpc-pv4p-pm3wlitellm@1.64.11.84.0
MediumGHSA-6wvf-77m9-58rmlitellm@1.64.11.83.7
MediumGHSA-qrc4-49gv-mv9mlitellm@1.64.11.83.14
MediumALPINE-CVE-2026-42764openssl@3.5.4-r03.5.7-r0
MediumGHSA-2xpw-w6gg-jr37urllib3@1.26.202.6.0
MediumGHSA-gm62-xv2j-4w53urllib3@1.26.202.6.0
MediumALPINE-CVE-2026-21637nodejs@22.16.0-r222.22.0-r0
MediumALPINE-CVE-2026-14669postgresql17@17.7-r017.11-r0
MediumALPINE-CVE-2026-34182openssl@3.5.4-r03.5.7-r0
MediumGHSA-wpfp-gwwc-vwq6litellm@1.64.11.83.10
MediumALPINE-CVE-2026-34183openssl@3.5.4-r03.5.7-r0
MediumPYSEC-2026-43django@5.2.84.2.28
MediumPYSEC-2026-45django@5.2.84.2.28
MediumALPINE-CVE-2026-31790openssl@3.5.4-r03.5.6-r0
MediumALPINE-CVE-2026-34180openssl@3.5.4-r03.5.7-r0
MediumPYSEC-2026-52django@5.2.84.2.30
MediumALPINE-CVE-2026-7383openssl@3.5.4-r03.5.7-r0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.1latest9 months ago2.3.527582964,499

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/rtomik-helm-charts/tandoor.svg)](https://charts.stackradar.io/charts/rtomik-helm-charts/tandoor)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.