StackRadar

thehive 1.0.6 Helm chart

strangebee-helmOfficialVerified publisher

Scored 14 Sept 2026

The official Helm Chart of TheHive for Kubernetes

Version 1.0.6 7 days agoapp version 5.7.6-1 4Artifact Hub

thehive 1.0.6 deploys 7 container images: quay.io/minio/minio, curlimages/curl, strangebee/thehive, bitnamilegacy/cassandra and 3 more. Across them, 1,513 findings5 critical, 4 high. The highest contribution is GHSA-f58c-gq56-vjjf in tika-core 2.9.3, fixed in 3.2.2. Chart.yaml declares kubeVersion >= 1.23.0-0; rendered for Kubernetes 1.23.0.

Radar Score

16,210542381,266

1,513 findings over 7 of 7 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

7 images
ImageTagVulnerabilitiesRadar Score
quay.io/minio/minioRELEASE.2025-09-07T16-13-09Z0091091,069
curlimages/curl×28.17.0011934752
strangebee/thehive5.7.6-100311361,822
bitnamilegacy/cassandra4.1.7-debian-12-r321642793,919
bitnamilegacy/os-shell12-debian-12-r5101462563,141
bitnamilegacy/elasticsearch×29.1.2-debian-12-r031623614,681
quay.io/minio/mc×2RELEASE.2025-08-13T08-35-41Z00791826

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

701 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-22695libpng1.6@1.6.39-21.6.39-2+deb12u2
LowDEBIAN-CVE-2026-1965curl@7.88.1-10+deb12u15no fix listed
LowDEBIAN-CVE-2022-0563util-linux@2.38.1-5+deb12u3no fix listed
LowDEBIAN-CVE-2025-3576krb5@1.20.1-2+deb12u21.20.1-2+deb12u4
LowDEBIAN-CVE-2026-4878libcap2@1:2.66-41:2.66-4+deb12u3
LowDEBIAN-CVE-2026-7168curl@7.88.1-10+deb12u127.88.1-10+deb12u15
LowBIT-elasticsearch-2026-78607elasticsearch@9.1.2-08.19.19
LowBIT-python-2025-15367python@3.11.11-03.15.0
LowGHSA-hrxh-6v49-42gfgoogle.golang.org/grpc@v1.71.01.82.1
LowGHSA-38f8-5428-x5cvnetty-codec-http@4.1.118.Final4.1.133.Final
LowDEBIAN-CVE-2026-3783curl@7.88.1-10+deb12u127.88.1-10+deb12u15
LowDEBIAN-CVE-2026-4873curl@7.88.1-10+deb12u15no fix listed
LowDSA-6189-1libpng1.6@1.6.39-21.6.39-2+deb12u4
LowGHSA-8c42-7qj2-3j46netty-codec-http@4.1.118.Final4.1.137.Final
LowDEBIAN-CVE-2026-34743xz-utils@5.4.1-0.25.4.1-1+deb12u1
LowDEBIAN-CVE-2026-5704tar@1.34+dfsg-1.2+deb12u1no fix listed
LowBIT-elasticsearch-2026-63136elasticsearch@9.1.2-08.19.15
LowBIT-elasticsearch-2026-63140elasticsearch@9.1.2-08.19.19
LowBIT-elasticsearch-2026-63144elasticsearch@9.1.2-08.19.19
LowBIT-elasticsearch-2026-63263elasticsearch@9.1.2-08.19.19
LowGHSA-r7wm-3cxj-wff9jackson-core@2.15.22.18.8
LowDEBIAN-CVE-2026-3184util-linux@2.38.1-5+deb12u3no fix listed
LowBIT-elasticsearch-2026-56144elasticsearch@9.1.2-08.19.18
LowGHSA-cp6g-7hqx-qxhpgo.mongodb.org/mongo-driver@v1.17.31.17.7
LowDEBIAN-CVE-2026-58055nghttp2@1.52.0-1+deb12u3no fix listed
LowBIT-java-2026-21933java@11.0.25-11-11.8.0
LowRHSA-2026:33226glibc@2.34-168.el9_6.230:2.34-272.el9_8
LowDEBIAN-CVE-2026-7010perl@5.36.0-7+deb12u3no fix listed
LowGHSA-4mp9-239f-g9hgnetty-codec-http@4.1.118.Final4.1.136.Final
LowDEBIAN-CVE-2026-19487perl@5.36.0-7+deb12u3no fix listed
LowDEBIAN-CVE-2026-22801libpng1.6@1.6.39-21.6.39-2+deb12u2
LowRHSA-2026:12441libcap@2.48-9.el9_20:2.48-10.el9_7.1
LowGHSA-9m57-25v3-79x9golang.org/x/crypto@v0.40.00.52.0
LowDEBIAN-CVE-2026-89158pcre2@10.42-110.42-1+deb12u1
LowGHSA-m9gh-789g-q5pvelasticsearch@9.1.29.1.8
LowDEBIAN-CVE-2025-27587openssl@3.0.20-1~deb12u2no fix listed
LowBIT-java-2026-46968java@11.0.25-11-11.8.0
LowALPINE-CVE-2026-42769openssl@3.5.4-r03.5.7-r0
LowBIT-elasticsearch-2026-56149elasticsearch@9.1.2-08.19.17
LowGHSA-vffh-x6r8-xx99github.com/prometheus/prometheus@v0.303.00.311.2-0.20260410083055-07c6232d159b
LowDEBIAN-CVE-2013-4392systemd@252.39-1~deb12u2no fix listed
LowBIT-java-2024-21217java@11.0.25-11-11.8.0
LowGHSA-32fw-gq77-f2f2github.com/eclipse/paho.mqtt.golang@v1.5.01.5.1
LowGHSA-9h8m-3fm2-qjrqgo.opentelemetry.io/otel/sdk@v1.35.01.40.0
LowDEBIAN-CVE-2026-78408util-linux@2.38.1-5+deb12u3no fix listed
LowGHSA-hgj6-7826-r7m5jackson-databind@2.15.22.18.8
LowRHSA-2026:42736acl@2.3.1-4.el90:2.4.0-1.el9_8
LowDEBIAN-CVE-2026-41989libgcrypt20@1.10.1-31.10.1-3+deb12u1
LowBIT-java-2026-62574java@11.0.25-11-11.8.0
LowDEBIAN-CVE-2026-49839jq@1.6-2.11.6-2.1+deb12u2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.6latest7 days ago5.7.6-1542381,26616,210
1.0.51 month ago5.7.5-1542361,27316,224

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/strangebee-helm/thehive.svg)](https://charts.stackradar.io/charts/strangebee-helm/thehive)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.