StackRadar

archiva 0.0.7 Helm chart

slamdev

Scored 14 Sept 2026

Helm chart to deploy [archiva](https://hub.docker.com/r/xetusoss/archiva/).

Version 0.0.7 4 years agoapp version v2.2.5 0Artifact Hub

archiva 0.0.7 deploys 2 container images: library/busybox and xetusoss/archiva. Across them, 232 findings12 critical, 37 high 4 on CISA KEV. The highest contribution is GHSA-jfh8-c2jp-5v3q in log4j-core 2.8.2, fixed in 2.12.2.

Radar Score

6,907123713845

232 findings over 2 of 2 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
library/busyboxlatest00000
xetusoss/archivav2.2.51237138456,907

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

232 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumGHSA-x27m-9w8j-5vcwjettison@1.11.5.2
MediumGHSA-wmcc-9vch-jmx4cassandra-all@2.0.93.0.31
MediumGHSA-pvp8-3xj6-8c6xcommons-configuration@1.10no fix listed
MediumGHSA-2wrp-6fg6-hmc5spring-web@4.2.1.RELEASE5.3.34
MediumGHSA-j288-q9x7-2f5vcommons-lang3@3.13.18.0
MediumGHSA-j288-q9x7-2f5vcommons-lang@2.6no fix listed
MediumGHSA-7vgj-8mw4-hg8rcxf-core@3.0.33.0.16
MediumALPINE-CVE-2020-8177curl@7.64.0-r37.64.0-r4
MediumGHSA-7rf3-mqpx-h7xgjettison@1.11.5.2
MediumGHSA-grr4-wv38-f68wjettison@1.11.5.2
MediumGHSA-g6ph-x5wf-g337plexus-utils@3.0.153.0.24
MediumGHSA-c4r9-r8fh-9vj2snakeyaml@1.111.31
MediumGHSA-78wr-2p64-hpwjcommons-io@2.42.14.0
MediumALPINE-CVE-2019-19242sqlite@3.26.0-r33.28.0-r2
MediumGHSA-98wm-3w3q-mw94snakeyaml@1.111.31
MediumGHSA-463w-hxfv-g9f6archiva-common@2.2.52.2.9
MediumGHSA-3w37-5p3p-jv92cxf-core@3.0.33.4.10
MediumGHSA-48rh-qgjr-xfj6jsoup@1.7.21.8.3
MediumGHSA-qw69-rqj8-6qw8jetty-server@8.1.7.v201209109.4.51.v20230217
MediumGHSA-845h-985r-jrqhhibernate-validator@4.3.0.Final4.3.2
MediumGHSA-wxqc-pxw9-g2p8spring-expression@4.2.1.RELEASE5.2.24.RELEASE
MediumALPINE-CVE-2019-5094e2fsprogs@1.44.5-r01.44.5-r1
MediumGHSA-56h3-78gp-v83rjettison@1.11.5.1
MediumGHSA-4p6w-m9wc-c9c9ant@1.8.31.9.15
MediumGHSA-55g7-9cwv-5qfvsnappy-java@1.0.51.1.10.4
MediumGHSA-h46c-h94j-95f3jackson-core@2.3.02.15.0
MediumGHSA-q6g2-g7f3-rr83jettison@1.11.5.4
MediumGHSA-w37g-rhq8-7m4jsnakeyaml@1.111.32
MediumGHSA-5mcr-gq6c-3hq2netty@3.6.6.Finalno fix listed
MediumGHSA-q5r4-cfpx-h6fhant@1.8.31.9.16
MediumGHSA-j53j-gmr9-h8g3tika-core@1.31.19
MediumGHSA-vwqq-5vrc-xw9hlog4j-core@2.8.22.12.3
MediumGHSA-cxvc-g8f2-4gmmjackrabbit-core@2.9.12.22.2
MediumGHSA-cxvc-g8f2-4gmmjackrabbit-jcr-commons@2.9.12.22.2
MediumGHSA-pqr6-cmr2-h8hfsnappy-java@1.0.51.1.10.1
MediumGHSA-gp7f-rwcx-9369jsoup@1.7.21.15.3
MediumGHSA-rmrm-75hp-phr2hibernate-validator@4.3.0.Final6.0.20.Final
LowALPINE-CVE-2018-1000654libtasn1@4.13-r04.14-r0
LowGHSA-5mf7-26mw-3rqrtika-core@1.31.18
LowGHSA-3pxv-7cmr-fjr4log4j-core@2.8.22.25.4
LowALPINE-CVE-2019-5188e2fsprogs@1.44.5-r01.44.5-r2
LowGHSA-fjpj-2g6w-x25rsnappy-java@1.0.51.1.10.1
LowGHSA-7v6m-28jr-rg84hibernate-validator@4.3.0.Final6.2.0.CR1
LowGHSA-6fmv-xxpf-w3cwplexus-utils@3.0.153.6.1
LowALPINE-CVE-2020-14363libx11@1.6.7-r01.6.12-r0
LowGHSA-564r-hj7v-mcr5spring-expression@4.2.1.RELEASE5.2.23.RELEASE
LowGHSA-8wv5-x4w7-5gwwlibthrift@0.9.10.24.0
LowGHSA-7pwc-h2j2-rjgjlibthrift@0.9.10.23.0
LowGHSA-hp2x-6vrm-7j7varchiva-common@2.2.5no fix listed
LowGHSA-hhhw-99gj-p3c3snakeyaml@1.111.31

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.7latest4 years agov2.2.51237138456,907

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/slamdev/archiva.svg)](https://charts.stackradar.io/charts/slamdev/archiva)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.