servicex 1.8.6 Helm chart
ssl-hepScored 24 Sept 2026
Install ServiceX deployment - HEP Columnar Data Delivery Service
Version 1.8.6 yesterdayapp version 1.8.6 0Artifact Hub
servicex 1.8.6 deploys 16 container images: bitnamilegacy/minio, sslhep/servicex_app, sslhep/servicex_code_gen_atlas_xaod, sslhep/servicex_code_gen_python and 12 more. Across them, 5,222 findings — 2 critical, 30 high — 7 on CISA KEV. The highest contribution is BIT-minio-2023-28434 in minio 2022.12.12-0, fixed in 2023.03.20.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnamilegacy/ | 2022.12.12-debian-11-r9 | 2734242 | 3,499 |
| sslhep/ | v1.8.6 | 0275377 | 4,729 |
| sslhep/ | v1.8.6 | 0276379 | 4,765 |
| sslhep/ | v1.8.6 | 0276379 | 4,765 |
| sslhep/ | v1.8.6 | 0276379 | 4,765 |
| sslhep/ | v1.8.6 | 0276379 | 4,765 |
| sslhep/ | v1.8.6 | 0276379 | 4,765 |
| ncsa/ | main | 0133140 | 1,930 |
| sslhep/ | v1.8.6 | 0275372 | 4,697 |
| sslhep/ | v1.8.6 | 0276377 | 4,743 |
| sslhep/ | v1.8.6 | 001154 | 509 |
| sslhep/ | v1.8.6 | 0275381 | 4,757 |
| bitnamilegacy/ | 3.11.18-debian-11-r0 | 02639 | 597 |
| library/ | 3.10 | 0275374 | 4,706 |
| library/ | 3.6 | 0000 | 0 |
| sslhep/ | v1.8.6 | 001158 | 547 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-42250 | bzip2 | no fix listed |
| Low | DEBIAN-CVE-2026-90802 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-77860 | unbound | 1.26.1-0+deb13u1 |
| Low | DEBIAN-CVE-2026-56416 | unbound | 1.26.1-0+deb13u1 |
| Low | DEBIAN-CVE-2026-39113 | sqlite3 | no fix listed |
| Low | DEBIAN-CVE-2026-41637 | unbound | 1.26.1-0+deb13u1 |
| Low | DEBIAN-CVE-2026-91779 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-91780 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-3949 | libheif | no fix listed |
| Low | GO-2026-4602 | stdlib | 1.25.8 |
| Low | DEBIAN-CVE-2026-93587 | imagemagick | no fix listed |
| Low | DEBIAN-CVE-2026-27456 | util-linux | 2.41.5-0+deb13u1 |
| Low | DEBIAN-CVE-2026-15028 | libarchive | no fix listed |
| Low | DEBIAN-CVE-2026-18508 | tar | no fix listed |
| Low | DEBIAN-CVE-2025-68972 | gnupg2 | no fix listed |
| Low | DEBIAN-CVE-2026-81893 | gdk-pixbuf | no fix listed |
| Low | DEBIAN-CVE-2026-62363 | imagemagick | no fix listed |
| Low | DEBIAN-CVE-2026-44687 | unbound | 1.26.1-0+deb13u1 |
| Low | DEBIAN-CVE-2026-77955 | unbound | 1.26.1-0+deb13u1 |
| Low | DEBIAN-CVE-2022-3219 | gnupg2 | no fix listed |
| Low | DEBIAN-CVE-2026-42955 | unbound | 1.26.1-0+deb13u1 |
| Low | DLA-4437-1 | gnupg2 | 2.2.27-2+deb11u3 |
| Low | DEBIAN-CVE-2026-46582 | unbound | 1.26.1-0+deb13u1 |
| Low | DEBIAN-CVE-2026-62343 | imagemagick | no fix listed |
| Low | DEBIAN-CVE-2026-62946 | imagemagick | no fix listed |
| Low | DEBIAN-CVE-2026-54478 | unbound | 1.26.1-0+deb13u1 |
| Low | DEBIAN-CVE-2025-1181 | binutils | no fix listed |
| Low | DEBIAN-CVE-2025-1180 | binutils | no fix listed |
| Low | DEBIAN-CVE-2025-11731 | libxslt | no fix listed |
| Low | DEBIAN-CVE-2026-84448 | libheif | no fix listed |
| Low | DEBIAN-CVE-2025-69418 | openssl | 3.5.4-1~deb13u2 |
| Low | DEBIAN-CVE-2007-5686 | shadow | no fix listed |
| Low | DEBIAN-CVE-2025-1151 | binutils | no fix listed |
| Low | GO-2026-5024 | golang.org/ | 0.44.0 |
| Low | DEBIAN-CVE-2025-1182 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-18477 | tar | no fix listed |
| Low | DEBIAN-CVE-2026-73281 | openssh | no fix listed |
| Low | GHSA-xjvp-4fhw-gc47 | github.com/ | 1.3.6 |
| Low | ALSA-2026:38500 | apache-commons-cli | 1.9.0-4.module_el9.6.0+148+fb6dc857 |
| Low | ALSA-2026:38500 | apache-commons-io | 1:2.16.1-9.module_el9.6.0+148+fb6dc857 |
| Low | ALSA-2026:38511 | vim | 2:8.2.2637-26.el9_8.10 |
| Low | ALSA-2026:39315 | libsolv | 0.7.24-6.el9_8 |
| Low | ALSA-2026:39316 | cups | 1:2.3.3op2-39.el9_8 |
| Low | ALSA-2026:39317 | libxml2 | 2.9.13-14.el9_8.2 |
| Low | ALSA-2026:39798 | python3.9 | 3.9.25-7.el9_8.2 |
| Low | ALSA-2026:42089 | glib2 | 2.68.4-19.el9_8.2 |
| Low | ALSA-2026:42736 | acl | 2.4.0-1.el9_8 |
| Low | ALSA-2026:42887 | java-17-openjdk | 1:17.0.20.0.8-1.2.el9.alma.1 |
| Low | ALSA-2026:42952 | glibc | 2.34-274.el9_8 |
| Low | ALSA-2026:47982 | vim | 2:8.2.2637-26.el9_8.13 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.8.6latest | yesterday | 1.8.6 | 2308514,309 | 54,539 |
| 1.8.5 | 2 days ago | 1.8.5 | 2301,0465,634 | 70,558 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.