StackRadar

hive-metastore 0.0.5 Helm chart

slamdev

Scored 14 Sept 2026

Helm chart to deploy [hive-metastore](https://hive.apache.org/).

Version 0.0.5 4 years agoapp version 2.3.9-2.10.1 2Artifact Hub

hive-metastore 0.0.5 deploys 2 container images: tempire/alpine-perl and slamdev/apache-hive. Across them, 286 findings12 critical, 47 high 3 on CISA KEV. The highest contribution is GHSA-jfh8-c2jp-5v3q in log4j-core 2.6.2, fixed in 2.12.2.

Radar Score

8,198124715572

286 findings over 2 of 2 images measured

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
tempire/alpine-perl3.14.00851598
slamdev/apache-hive2.3.9-2.10.11239150717,600

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

150 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumGHSA-r38f-c4h4-hqq2postgresql@9.4.1208.jre742.2.26
MediumGHSA-qcwq-55hx-v3vhsnappy-java@1.0.51.1.10.1
MediumGHSA-wx5j-54mm-rqqqnetty-codec-http@4.1.17.Final4.1.71.Final
MediumGHSA-wx5j-54mm-rqqqnetty@3.10.6.Finalno fix listed
MediumGHSA-qxp4-27vx-xmm3jetty-server@7.6.0.v201201278.1.0.RC4
MediumGHSA-7vpq-g998-qpv7netty@3.6.2.Final3.6.9.Final
MediumGHSA-wrvw-hg22-4m67protobuf-java@2.5.03.16.1
MediumALPINE-CVE-2022-2097openssl@1.1.1l-r01.1.1q-r0
MediumGHSA-x27m-9w8j-5vcwjettison@1.11.5.2
MediumGHSA-6mjq-h674-j845netty-handler@4.1.17.Final4.1.94.Final
MediumGHSA-pvp8-3xj6-8c6xcommons-configuration@1.6no fix listed
MediumGHSA-9rgv-h7x4-qw8gjetty-server@9.2.5.v201411129.3.24.v20180605
MediumGHSA-c8cc-p3j7-4c7fmesos@0.21.11.4.2
MediumGHSA-j288-q9x7-2f5vcommons-lang@2.6no fix listed
MediumGHSA-j288-q9x7-2f5vcommons-lang3@3.43.18.0
MediumGHSA-r28m-g6j9-r2h5jetty-server@9.2.5.v201411129.2.28.v20190418
MediumGHSA-v528-7hrm-frqpjson-smart@1.3.11.3.2
MediumGHSA-7rf3-mqpx-h7xgjettison@1.11.5.2
MediumGHSA-grr4-wv38-f68wjettison@1.11.5.2
MediumGHSA-9q4x-fr4m-jp86commons-vfs2@2.12.10.0
MediumGHSA-v682-8vv8-vpwrtomcat-websocket@8.5.438.5.99
MediumGHSA-g6ph-x5wf-g337plexus-utils@3.0.153.0.24
MediumGHSA-cgp8-4m63-fhh5commons-net@3.13.9.0
MediumGHSA-78wr-2p64-hpwjcommons-io@2.42.14.0
MediumGHSA-fp5j-3fpf-mhj5spark-core_2.11@2.0.02.3.3
MediumGHSA-3qp7-7mw8-wx86netty-handler@4.1.17.Final4.1.135.Final
MediumGHSA-qw69-rqj8-6qw8jetty-server@9.2.5.v201411129.4.51.v20230217
MediumALPINE-CVE-2022-29458ncurses@6.2_p20210612-r06.2_p20210612-r1
MediumGHSA-493p-pfq6-5258json-smart@1.3.12.4.9
MediumGHSA-56h3-78gp-v83rjettison@1.11.5.1
MediumGHSA-4p6w-m9wc-c9c9ant@1.6.51.9.15
MediumGHSA-5v34-g2px-j4fwant@1.9.11.9.16
MediumGHSA-55g7-9cwv-5qfvsnappy-java@1.0.51.1.10.4
MediumGHSA-h46c-h94j-95f3jackson-core@2.4.02.15.0
MediumGHSA-hxp5-8pgq-mgv9calcite-core@1.10.01.26.0
MediumGHSA-hxp5-8pgq-mgv9calcite-druid@1.10.01.26.0
MediumGHSA-q6g2-g7f3-rr83jettison@1.11.5.4
MediumGHSA-5mcr-gq6c-3hq2netty-codec-http@4.1.17.Final4.1.59.Final
MediumGHSA-5mcr-gq6c-3hq2netty@3.10.6.Finalno fix listed
MediumGHSA-q5r4-cfpx-h6fhant@1.6.51.9.16
MediumGHSA-f6hv-jmp6-3vwvnetty-codec-http@4.1.17.Final4.1.133.Final
MediumGHSA-vwqq-5vrc-xw9hlog4j-core@2.6.22.12.3
MediumGHSA-jppx-w49h-x2qqnetty-codec-http@4.1.17.Final4.1.136.Final
MediumGHSA-x4gw-5cx5-pgmhnetty-handler@4.1.17.Final4.1.135.Final
MediumGHSA-pqr6-cmr2-h8hfsnappy-java@1.0.51.1.10.1
MediumGHSA-264p-99wq-f4j6ion-java@1.0.2no fix listed
MediumGHSA-8rhc-48pp-52grspark-core_2.11@2.0.02.1.2
MediumGHSA-gvpg-vgmx-xg6wnimbus-jose-jwt@7.99.37.2
MediumGHSA-779h-3r69-4f5pjson-io@2.5.14.14.1
MediumGHSA-rmrm-75hp-phr2hibernate-validator@5.1.3.Final6.0.20.Final

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.5latest4 years ago2.3.9-2.10.11247155728,198

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/slamdev/hive-metastore.svg)](https://charts.stackradar.io/charts/slamdev/hive-metastore)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.