StackRadar

hive-metastore 0.0.5 Helm chart

slamdev

Scored 14 Sept 2026

Helm chart to deploy [hive-metastore](https://hive.apache.org/).

Version 0.0.5 4 years agoapp version 2.3.9-2.10.1 2Artifact Hub

hive-metastore 0.0.5 deploys 2 container images: tempire/alpine-perl and slamdev/apache-hive. Across them, 286 findings12 critical, 47 high 3 on CISA KEV. The highest contribution is GHSA-jfh8-c2jp-5v3q in log4j-core 2.6.2, fixed in 2.12.2.

Radar Score

8,198124715572

286 findings over 2 of 2 images measured

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
tempire/alpine-perl3.14.00851598
slamdev/apache-hive2.3.9-2.10.11239150717,600

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

High findings

41 distinct across the version’s images

High: findings whose contribution to the Radar Score is 40–69. Show every band

SeverityAdvisoryPackageFixed in
HighGHSA-fp5r-v3w9-4333log4j@1.2.17no fix listed
HighGHSA-ghgj-3xqr-6jfmjetty-server@9.2.5.v201411129.2.9.v20150224
HighALPINE-CVE-2022-0778libretls@3.3.3p1-r23.3.3p1-r3
HighALPINE-CVE-2022-0778openssl@1.1.1l-r01.1.1n-r0
HighGHSA-8489-44mv-ggj8log4j-core@2.6.22.12.4
HighGHSA-vf77-8h7g-gghptomcat-coyote@8.5.438.5.56
HighGHSA-4w82-r329-3q67jackson-databind@2.4.02.6.7.4
HighALPINE-CVE-2023-0286openssl@1.1.1l-r01.1.1t-r0
HighGHSA-26vr-8j45-3r4wjetty-server@9.2.5.v201411129.4.39
HighALPINE-CVE-2018-25032zlib@1.2.11-r31.2.12-r0
HighGHSA-cggj-fvv3-cqwvjackson-databind@2.4.02.6.7.5
HighGHSA-6x9x-8qw9-9pp6jetty-server@9.2.5.v201411129.2.25.v20180606
HighGHSA-q93h-jc49-78ggjackson-databind@2.4.02.7.9.7
HighGHSA-p43x-xfjf-5jhrjackson-databind@2.4.02.7.9.7
HighALPINE-CVE-2022-37434zlib@1.2.11-r31.2.12-r2
HighGHSA-xphj-m9cc-8fmqgroovy-all@2.4.42.4.8
HighGHSA-59j4-wjwp-mw9mvelocity@1.5no fix listed
HighGHSA-qppj-fm5r-hxr3KEVtomcat-coyote@8.5.438.5.94
HighGHSA-vgg8-72f2-qm23jetty-server@9.2.5.v201411129.2.25.v20180606
HighGHSA-645p-88qh-w398jackson-databind@2.4.02.6.7.3
HighGHSA-gwcr-j4wh-j3cqjetty-servlets@7.6.0.v201201279.4.41
HighALPINE-CVE-2018-18312perl@5.32.1-r05.26.3-r0
HighGHSA-9gph-22xh-8x98jackson-databind@2.4.02.6.7.5
HighALPINE-CVE-2018-18311perl@5.32.1-r05.26.3-r0
HighGHSA-vvw4-rfwf-p6hxtomcat-coyote@8.5.438.5.60
HighGHSA-h822-r4r5-v8jgjackson-databind@2.4.02.6.7.3
HighGHSA-c8hm-7hpq-7jhgjackson-databind@2.4.02.6.7.3
HighGHSA-7w75-32cg-r6g2tomcat-coyote@8.5.438.5.99
HighGHSA-mph4-vhrx-mv67jackson-databind@2.4.02.6.7.3
HighGHSA-5ww9-j83m-q7qxjackson-databind@2.4.02.6.7.3
HighGHSA-4gq5-ch57-c2mgjackson-databind@2.4.02.7.9.5
HighALPINE-CVE-2022-4450openssl@1.1.1l-r01.1.1t-r0
HighGHSA-phg2-9c5g-m4q7spark-core_2.11@2.0.0no fix listed
HighGHSA-2363-cqg2-863cjdom@1.1no fix listed
HighGHSA-gww7-p5w4-wrfvjackson-databind@2.4.02.6.7.4
HighGHSA-h592-38cm-4ggpjackson-databind@2.4.02.6.7.3
HighGHSA-6fpp-rgj9-8rwcjackson-databind@2.4.02.7.9.6
HighGHSA-288c-cq4h-88gqjackson-databind@2.9.10.62.9.10.7
HighGHSA-cqqj-4p63-rrmmnetty@3.10.6.Finalno fix listed
HighGHSA-cqqj-4p63-rrmmnetty-codec-http@4.1.17.Final4.1.44
HighGHSA-5r5r-6hpj-8gg9jackson-databind@2.4.02.9.10.8

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.5latest4 years ago2.3.9-2.10.11247155728,198

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/slamdev/hive-metastore.svg)](https://charts.stackradar.io/charts/slamdev/hive-metastore)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.