thehive 1.0.7 Helm chart
strangebee-helmOfficialVerified publisherScored 16 Sept 2026
The official Helm Chart of TheHive for Kubernetes
Version 1.0.7 yesterdayapp version 5.8.0-1 4Artifact Hub
thehive 1.0.7 deploys 7 container images: quay.io/minio/minio, curlimages/curl, strangebee/thehive, bitnamilegacy/cassandra and 3 more. Across them, 1,502 findings — 4 critical, 5 high. The highest contribution is GHSA-f58c-gq56-vjjf in tika-core 2.9.3, fixed in 3.2.2. Chart.yaml declares kubeVersion >= 1.23.0-0; rendered for Kubernetes 1.23.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| quay.io/ | RELEASE.2025-09-07T16-13-09Z | 009110 | 1,084 |
| curlimages/ | 8.17.0 | 012033 | 753 |
| strangebee/ | 5.8.0-1 | 0031124 | 1,727 |
| bitnamilegacy/ | 4.1.7-debian-12-r3 | 1268274 | 3,946 |
| bitnamilegacy/ | 12-debian-12-r51 | 0147255 | 3,164 |
| bitnamilegacy/ | 9.1.2-debian-12-r0 | 3165358 | 4,705 |
| quay.io/ | RELEASE.2025-08-13T08-35-41Z | 00792 | 841 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2025-65018 | libpng1.6 | 1.6.39-2+deb12u1 |
| Low | GHSA-jhq6-gfmj-v8fx | logback-core | 1.5.34 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
| Low | DEBIAN-CVE-2026-5435 | glibc | no fix listed |
| Low | BIT-setuptools-2026-59890 | setuptools | 83.0.0 |
| Low | GHSA-h35f-9h28-mq5c | setuptools | 83.0.0 |
| Low | GHSA-c2gf-v879-257j | netty-codec-http2 | 4.1.135.Final |
| Low | BIT-python-2026-0672 | python | 3.10.20 |
| Low | GHSA-fw7p-63qq-7hpr | filippo.io/ | 1.1.1 |
| Low | BIT-elasticsearch-2026-56145 | elasticsearch | 8.19.18 |
| Low | BIT-elasticsearch-2026-72679 | elasticsearch | 8.19.20 |
| Low | DEBIAN-CVE-2026-54369 | acl | no fix listed |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
| Low | BIT-elasticsearch-2025-68384 | elasticsearch | 8.19.9 |
| Low | GHSA-qf7c-7r9h-mm92 | x-pack-security | 9.1.9 |
| Low | DEBIAN-CVE-2026-7017 | perl | no fix listed |
| Low | ALPINE-CVE-2026-40200 | musl | 1.2.5-r12 |
| Low | BIT-python-2026-15806 | python | no fix listed |
| Low | GHSA-84h7-rjj3-6jx4 | netty-codec-http | 4.1.129.Final |
| Low | DEBIAN-CVE-2021-4214 | libpng1.6 | no fix listed |
| Low | DEBIAN-CVE-2026-54371 | attr | no fix listed |
| Low | ALPINE-CVE-2025-66199 | openssl | 3.5.5-r0 |
| Low | GHSA-3pjw-73gf-8qr5 | jackson-databind | 2.18.8 |
| Low | DEBIAN-CVE-2025-0395 | glibc | 2.36-9+deb12u10 |
| Low | GHSA-fcvm-3cpj-f9qx | shiro-core | 2.2.0 |
| Low | DEBIAN-CVE-2023-4039 | gcc-12 | 12.2.0-14+deb12u1 |
| Low | GHSA-j5w8-q4qc-rx2x | golang.org/ | 0.45.0 |
| Low | DSA-5962-1 | gnutls28 | 3.7.9-2+deb12u5 |
| Low | BIT-elasticsearch-2026-72636 | elasticsearch | 8.19.20 |
| Low | DEBIAN-CVE-2025-4598 | systemd | 252.38-1~deb12u1 |
| Low | BIT-elasticsearch-2026-72638 | elasticsearch | 8.19.20 |
| Low | BIT-elasticsearch-2026-72645 | elasticsearch | 8.19.20 |
| Low | BIT-elasticsearch-2026-72647 | elasticsearch | 8.19.20 |
| Low | BIT-elasticsearch-2026-72684 | elasticsearch | 8.19.21 |
| Low | BIT-elasticsearch-2026-72687 | elasticsearch | 8.19.20 |
| Low | GHSA-4q2v-9p7v-3v22 | reactor-netty-http | 1.2.8 |
| Low | GHSA-xmv7-r254-6q78 | netty-resolver-dns | 4.1.135.Final |
| Low | PYSEC-2026-3721 | pip | 26.2 |
| Low | DEBIAN-CVE-2025-15079 | curl | no fix listed |
| Low | BIT-java-2026-60147 | java | 1.8.0 |
| Low | BIT-python-2025-15366 | python | 3.15.0 |
| Low | BIT-elasticsearch-2025-37731 | elasticsearch | 8.19.8 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | ALPINE-CVE-2026-22796 | openssl | 3.5.5-r0 |
| Low | DEBIAN-CVE-2026-22796 | openssl | 3.0.18-1~deb12u2 |
| Low | DEBIAN-CVE-2026-6429 | curl | no fix listed |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | DEBIAN-CVE-2024-22365 | pam | 1.5.2-6+deb12u2 |
| Low | GHSA-c69g-56f8-xwqj | netty-codec-http2 | 4.1.136.Final |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.0.7latest | yesterday | 5.8.0-1 | 452471,246 | 16,220 |
| 1.0.6 | 9 days ago | 5.7.6-1 | 452421,263 | 16,224 |
| 1.0.5 | 1 month ago | 5.7.5-1 | 452451,265 | 16,329 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.