cadence Helm chart
wenerNot scored yet
Cadence is a distributed, scalable, durable, and highly available orchestration engine to execute asynchronous long-running business logic in a scalable and resilient way.
Latest 0.23.0 4 years agoapp version 0.23.2 0Artifact Hub
cadence 0.23.0 deploys 5 container images: library/busybox, library/cassandra, ubercadence/server, ghcr.io/banzaicloud/tcheck and 1 more. The highest contribution is ALPINE-CVE-2021-3711 in openssl 1.1.1g-r0, fixed in 1.1.1l-r0.
Radar Score
Not yet scored
The daily scoring run has not folded the 5 images into a score yet.
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | latest | 0000 | 0 |
| library/ | 3.11.3 | 144071 | 1,926 |
| ubercadence/ | 0.23.2 | 0532173 | 2,472 |
| ghcr.io/ | latest | 3847152 | 3,177 |
| ubercadence/ | v3.29.5 | 066297 | 2,573 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | ALPINE-CVE-2021-3711 | openssl | 1.1.1l-r0 |
| Critical | GHSA-mjmj-j48q-9wg2 | snakeyaml | 2.0 |
| Critical | GHSA-39qc-96h7-956f | golang.org/ | 0.0.0-20190813141303-74dc4d7220e7 |
| Critical | GHSA-hgr8-6h9x-f7q9 | golang.org/ | 0.0.0-20190813141303-74dc4d7220e7 |
| High | ALPINE-CVE-2022-0778 | openssl | 1.1.1n-r0 |
| High | ALPINE-CVE-2018-25032 | zlib | 1.2.12-r0 |
| High | ALPINE-CVE-2021-23840 | openssl | 1.1.1j-r0 |
| High | ALPINE-CVE-2021-3712 | openssl | 1.1.1l-r0 |
| High | GHSA-45x7-px36-x8w8 | golang.org/ | 0.0.0-20231218163308-9d2ee975ef9f |
| High | ALPINE-CVE-2022-37434 | zlib | 1.2.11-r4 |
| High | GHSA-qppj-fm5r-hxr3KEV | golang.org/ | 0.17.0 |
| High | GHSA-4v7x-pqxf-cx7m | golang.org/ | 0.23.0 |
| High | ALPINE-CVE-2021-3449 | openssl | 1.1.1k-r0 |
| High | GHSA-r5fr-rjxr-66jc | lodash-es | 4.18.0 |
| High | GHSA-r5fr-rjxr-66jc | lodash | 4.18.0 |
| High | GHSA-rvwf-54qp-4r6v | snakeyaml | 1.26 |
| High | GHSA-w573-4hg7-7wgq | decode-uri-component | 0.2.1 |
| High | GHSA-3jfq-g458-7qm9 | tar | 3.2.2 |
| High | GHSA-35jh-r3h4-6jhm | lodash | 4.17.21 |
| High | GHSA-35jh-r3h4-6jhm | lodash-es | 4.17.21 |
| High | GHSA-vmfg-rjjm-rjrj | logback-core | 1.2.0 |
| High | GHSA-vmfg-rjjm-rjrj | logback-classic | 1.2.0 |
| High | DLA-2415-1KEV | freetype | 2.6.3-3.2+deb9u2 |
| High | GO-2022-0535KEV | stdlib | 1.12.16 |
| Medium | GHSA-hrpp-h998-j3pp | qs | 6.5.3 |
| Medium | GO-2024-2687 | stdlib | 1.21.9 |
| Medium | GHSA-8hfj-j24r-96c4 | moment | 2.29.2 |
| Medium | GHSA-5cgq-3rg8-m6cv | golang.org/ | 0.52.0 |
| Medium | DLA-2544-1 | openldap | 2.4.44+dfsg-5+deb9u7 |
| Medium | GO-2022-0536 | golang.org/ | 0.0.0-20190813141303-74dc4d7220e7 |
| Medium | DLA-3008-1 | openssl | 1.1.0l-1~deb9u6 |
| Medium | ALPINE-CVE-2021-22945 | curl | 7.79.0-r0 |
| Medium | DLA-2952-1 | openssl | 1.1.0l-1~deb9u5 |
| Medium | GHSA-r4m4-pmvw-m6j5 | github.com/ | 0.10.0 |
| Medium | GHSA-2p57-rm9w-gvfp | ip | no fix listed |
| Medium | GHSA-xvch-5gv4-984h | minimist | 1.2.6 |
| Medium | GHSA-r628-mhmh-qjhw | tar | 4.4.15 |
| Medium | DLA-3017-1 | openldap | 2.4.44+dfsg-5+deb9u9 |
| Medium | ALPINE-CVE-2020-8285 | curl | 7.69.1-r3 |
| Medium | DLA-2574-1 | openldap | 2.4.44+dfsg-5+deb9u8 |
| Medium | GHSA-rj7p-rfgp-852x | libthrift | 0.13.0 |
| Medium | GHSA-896r-f27r-55mw | json-schema | 0.4.0 |
| Medium | GHSA-p979-4mfw-53vg | netty-all | 4.1.42.Final |
| Medium | GHSA-wjxj-f8rg-99wx | libthrift | 0.9.3-1 |
| Medium | GHSA-9c47-m6qq-7p4h | json5 | 1.0.2 |
| Medium | DLA-2968-1 | zlib | 1:1.2.8.dfsg-5+deb9u1 |
| Medium | DLA-2563-1 | openssl | 1.1.0l-1~deb9u3 |
| Medium | DLA-2766-1 | openssl | 1.1.0l-1~deb9u4 |
| Medium | GHSA-83g2-8m93-v3w7 | golang.org/ | 0.0.0-20210520170846-37e1c6afe023 |
| Medium | DLA-2388-1 | nss | 2:3.26.2-1.1+deb9u2 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.23.0latest | 4 years ago | 0.23.2 | — | — |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.