StackRadar

togglr-backend 1.0.0 Helm chart

togglrVerified publisher

Scored 14 Sept 2026

A Helm chart for Togglr Feature Toggle Management System Backend

Version 1.0.0 10 months agoapp version 1.0.0 0Artifact Hub

togglr-backend 1.0.0 deploys 1 container image: gdrocha/togglr-backend. Across them, 208 findings4 critical, 7 high 1 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 10.1.15, fixed in 10.1.35.

Radar Score

3,2214763134

208 findings over 1 of 1 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
gdrocha/togglr-backend1.0.047631343,221

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

208 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumALPINE-CVE-2025-13151libtasn1@4.20.0-r04.21.0-r0
MediumGHSA-h3x4-894j-xpx5tomcat-embed-core@10.1.1510.1.58
MediumGHSA-rmj7-2vxq-3g9fjackson-databind@2.15.32.18.8
MediumGHSA-j3rv-43j4-c7qmjackson-databind@2.15.32.18.8
MediumALPINE-CVE-2026-34182openssl@3.5.4-r03.5.7-r0
MediumGHSA-gcx9-497g-6cp6tomcat-embed-core@10.1.1510.1.58
MediumALPINE-CVE-2026-33416libpng@1.6.47-r01.6.56-r0
MediumALPINE-CVE-2026-34183openssl@3.5.4-r03.5.7-r0
MediumALPINE-CVE-2026-31790openssl@3.5.4-r03.5.6-r0
MediumALPINE-CVE-2025-32990gnutls@3.8.8-r03.8.12-r0
MediumALPINE-CVE-2026-34180openssl@3.5.4-r03.5.7-r0
MediumALPINE-CVE-2026-7383openssl@3.5.4-r03.5.7-r0
MediumGHSA-r936-gwx5-v52fspring-webmvc@6.0.13no fix listed
MediumALPINE-CVE-2026-14457openssl@3.5.4-r03.5.8-r0
MediumALPINE-CVE-2026-5260gnutls@3.8.8-r03.8.13-r0
MediumALPINE-CVE-2026-66046expat@2.7.3-r02.8.4-r0
MediumALPINE-CVE-2026-28388openssl@3.5.4-r03.5.6-r0
MediumALPINE-CVE-2025-69421openssl@3.5.4-r03.5.5-r0
MediumGHSA-mf92-479x-3373spring-security-web@6.1.5no fix listed
MediumGHSA-x4gw-5cx5-pgmhnetty-handler@4.1.100.Final4.1.135.Final
MediumALPINE-CVE-2026-28387openssl@3.5.4-r03.5.6-r0
MediumGHSA-gx5v-xp9w-j4cgtomcat-embed-core@10.1.1510.1.55
MediumALPINE-CVE-2026-28389openssl@3.5.4-r03.5.6-r0
MediumALPINE-CVE-2026-28390openssl@3.5.4-r03.5.6-r0
LowALPINE-CVE-2025-69420openssl@3.5.4-r03.5.5-r0
LowGHSA-g3pr-3p32-fp23micrometer-core@1.11.5no fix listed
LowALPINE-CVE-2026-27135nghttp2@1.65.0-r01.68.1
LowALPINE-CVE-2026-33636libpng@1.6.47-r01.6.56-r0
LowGHSA-vmq6-5m68-f53mlogback-classic@1.4.111.4.12
LowGHSA-vmq6-5m68-f53mlogback-core@1.4.111.4.12
LowALPINE-CVE-2026-14456openssl@3.5.4-r03.5.8-r0
LowALPINE-CVE-2026-9076openssl@3.5.4-r03.5.7-r0
LowGHSA-w3w6-26f2-p474spring-security-core@6.1.56.1.7
LowALPINE-CVE-2026-63072openssl@3.5.4-r03.5.8-r0
LowALPINE-CVE-2026-45445openssl@3.5.4-r03.5.7-r0
LowGHSA-c4c3-7fpv-j4q5netty-handler@4.1.100.Final4.1.137.Final
LowGHSA-mg83-c7gq-rv5cspring-security-crypto@6.1.56.1.14
LowGHSA-fv25-8xcx-gqjctomcat-embed-core@10.1.1510.1.55
LowALPINE-CVE-2026-42013gnutls@3.8.8-r03.8.13-r0
LowALPINE-CVE-2026-76641expat@2.7.3-r02.8.4-r0
LowALPINE-CVE-2026-3833gnutls@3.8.8-r03.8.13-r0
LowALPINE-CVE-2026-31789openssl@3.5.4-r03.5.6-r0
LowALPINE-CVE-2025-69419openssl@3.5.4-r03.5.5-r0
LowGHSA-23hv-mwm6-g8jftomcat-embed-core@10.1.1510.1.42
LowALPINE-CVE-2026-54874openssl@3.5.4-r03.5.8-r0
LowGHSA-563x-q5rq-57qptomcat-embed-core@10.1.1510.1.52
LowALPINE-CVE-2026-42766openssl@3.5.4-r03.5.7-r0
LowGHSA-mgp5-rv84-w37qtomcat-embed-core@10.1.1510.1.52
LowGHSA-qv9r-c865-cp47log4j-api@2.20.02.25.5
LowALPINE-CVE-2026-63075openssl@3.5.4-r03.5.8-r0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.0latest10 months ago1.0.047631343,221

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/togglr/togglr-backend.svg)](https://charts.stackradar.io/charts/togglr/togglr-backend)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.