StackRadar

nordmart-review-instance Helm chart

stakaterVerified publisher

Scored 14 Sept 2026

A Helm chart for Kubernetes

Latest 1.0.0 4 years agodeploys tag 5.0.9-debian-10-r0 0Artifact Hub

nordmart-review-instance 1.0.0 deploys 3 container images: bitnami/mongodb, stakater/stakater-nordmart-review and stakater/stakater-nordmart-review-ui. Across the 2 measured, 651 findings11 critical, 34 high 9 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 9.0.65, fixed in 9.0.99.

Radar Score

11,5541134245361

651 findings over 2 of 3 images measured

KEV ×9 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
bitnami/mongodb5.0.9-debian-10-r0unmeasured
stakater/stakater-nordmart-review1.0.3511301751777,950
stakater/stakater-nordmart-review-ui1.0.1404701843,604

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

361 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowRHSA-2025:8686glibc@2.28-189.5.el8_60:2.28-251.el8_10.22
LowGHSA-8fr3-hfg3-gpgpnode-forge@0.10.01.0.0
LowGHSA-x4m4-345f-5h5gtomcat-embed-core@9.0.659.0.117
LowGHSA-w27v-7q3p-w38rsvgo@1.3.22.8.4
LowGHSA-73wf-gq98-2v4gbrowserslist@4.16.64.28.7
LowGHSA-8x88-c5mf-7j5wtar@4.4.197.5.18
LowGHSA-jjfh-589g-3hjxspring-boot-actuator@2.7.32.7.18
LowGHSA-jchw-25xp-jwwcfollow-redirects@1.14.11.15.4
LowDLA-3626-1krb5@1.17-3+deb10u31.17-3+deb10u6
LowGHSA-rv95-896h-c2vcexpress@4.17.14.19.2
LowGHSA-fpj8-gq4v-p354tomcat-embed-core@9.0.659.0.113
LowRHSA-2024:3203systemd@239-58.el80:239-82.el8
LowGHSA-5whc-4q84-fj73spring-data-mongodb@3.4.2no fix listed
LowGHSA-hgrr-935x-pq79tomcat-embed-core@9.0.659.0.110
LowGHSA-xv26-6w52-cph6websocket-driver@0.7.40.7.5
LowGHSA-c2c7-rcm5-vvqjpicomatch@2.3.02.3.2
LowRHSA-2025:12450libxml2@2.9.7-13.el8_6.10:2.9.7-21.el8_10.2
LowGHSA-x23c-287f-qqv5spring-webmvc@5.3.22no fix listed
LowRHSA-2025:4049libtasn1@4.13-3.el80:4.13-5.el8_10
LowGHSA-2g4f-4pwh-qvx6ajv@6.12.66.14.0
LowRHSA-2026:57462curl@7.61.1-22.el8_6.30:7.61.1-34.el8_10.13
LowRHSA-2024:10779python3@3.6.8-45.el80:3.6.8-69.el8_10
LowGHSA-8h2f-7jc4-7m3murijs@1.19.61.19.10
LowGHSA-p8p7-x288-28g6request@2.88.0no fix listed
LowGHSA-r6q2-hw4h-h46wtar@4.4.197.5.4
LowGHSA-2883-xcg3-v3hhjs-yaml@3.14.13.15.2
LowGHSA-rc42-6c7j-7h5rspring-boot@2.7.3no fix listed
LowGHSA-r292-9mhp-454mtar@4.4.197.5.21
LowGHSA-r4q5-vmmm-2653follow-redirects@1.14.11.16.0
LowRHSA-2024:3347python3@3.6.8-45.el80:3.6.8-62.el8_10
LowRHSA-2024:4406python3@3.6.8-45.el80:3.6.8-47.el8_6.6
LowRHSA-2026:17481rsync@3.1.3-14.el8_6.20:3.1.3-25.el8_10
LowGHSA-r28c-9q8g-f849postcss@8.3.08.5.18
LowGHSA-42wg-hm62-jcwgtomcat-embed-core@9.0.659.0.106
LowDLA-3114-1mariadb-10.3@1:10.3.34-0+deb10u11:10.3.36-0+deb10u1
LowDLA-3165-1expat@2.2.6-2+deb10u42.2.6-2+deb10u6
LowRHSA-2024:3233libssh@0.9.6-3.el80:0.9.6-14.el8
LowRHSA-2026:62218libssh@0.9.6-3.el80:0.9.6-17.el8_10
LowDLA-3118-1unzip@6.0-23+deb10u26.0-23+deb10u3
LowGHSA-9fw2-h3hf-293rspring-data-commons@2.7.2no fix listed
LowDLA-3429-1imagemagick@8:6.9.10.23+dfsg-2.1+deb10u18:6.9.10.23+dfsg-2.1+deb10u5
LowGHSA-c83g-rgw3-j3cxbrowserslist@4.16.64.28.7
LowGHSA-r5w3-xv2f-j59qspring-expression@5.3.22no fix listed
LowRHSA-2026:0241libpng@2:1.6.34-5.el82:1.6.34-9.el8_10
LowRHSA-2026:0322libpng@2:1.6.34-5.el82:1.6.34-8.el8_6.1
LowGHSA-w5hq-g745-h8pquuid@3.3.311.1.1
LowRHSA-2026:0991glib2@2.56.4-158.el80:2.56.4-168.el8_10
LowRHSA-2023:3839libssh@0.9.6-3.el80:0.9.6-10.el8_8
LowRHSA-2023:0837systemd@239-58.el80:239-68.el8_7.4
LowDLA-3782-1util-linux@2.33.1-0.12.33.1-0.1+deb10u1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.0latest4 years ago5.0.9-debian-10-r0113424536111,554

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/stakater/nordmart-review-instance.svg)](https://charts.stackradar.io/charts/stakater/nordmart-review-instance)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.