StackRadar

weblate 0.3.2 Helm chart

deliveryheroVerified publisher

Scored 14 Sept 2026

Free web-based translation management system.

Version 0.3.2 2 months agodeploys tag 4.2.2-1 1Artifact Hub

weblate 0.3.2 deploys 3 container images: weblate/weblate, bitnami/postgresql and bitnami/redis. Across the 1 measured, 562 findings5 critical, 11 high 7 on CISA KEV. The highest contribution is GHSA-j7hp-h8jx-5ppr in pillow 7.2.0, fixed in 10.0.1.

Radar Score

7,984511151394

562 findings over 1 of 3 images measured

KEV ×7 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
weblate/weblate4.2.2-15111513947,984
bitnami/postgresql14.4.0-debian-11-r23unmeasured
bitnami/redis×27.0.4-debian-11-r11unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

562 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumDLA-3613-1curl@7.64.0-4+deb10u17.64.0-4+deb10u7
MediumGHSA-rm3j-f69w-wqmqgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
MediumGHSA-wrxv-2j5q-m38wlxml@4.5.24.9.1
MediumGHSA-hcg3-q754-cr77golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.35.0
MediumGHSA-wvpp-8hx9-p66jgitpython@3.1.73.1.58
MediumGHSA-7gcm-g887-7qv7protobuf@3.13.05.29.6
MediumDLA-3175-1python3.7@3.7.3-2+deb10u23.7.3-2+deb10u4
MediumGHSA-558g-h753-6m33weblate@4.2.25.17
MediumPYSEC-2023-206selenium@3.141.04.14.0
MediumGO-2022-1144stdlib@go1.13.51.18.9
MediumGHSA-6v2p-p543-phr9golang.org/x/oauth2@v0.0.0-20181106182150-f42d051822880.27.0
MediumGHSA-w7pp-m8wf-vj6rcryptography@3.139.0.1
MediumPYSEC-2024-225cryptography@3.142.0.4
MediumDLA-3152-1glibc@2.28-102.28-10+deb10u2
MediumGHSA-xrx6-fmxq-rjj2rsa@4.64.7
MediumGHSA-jr27-m4p2-rc6rpyasn1@0.4.80.6.3
MediumGHSA-5xp3-jfq3-5q8xpip@20.2.221.1
LowPYSEC-2026-2309weblate@4.2.25.16
LowGHSA-jm78-9fvv-mhgrgitpython@3.1.73.1.58
LowDLA-3614-1python3.7@3.7.3-2+deb10u23.7.3-2+deb10u6
LowDSA-5122-1gzip@1.9-31.9-3+deb10u1
LowDSA-5123-1xz-utils@5.2.4-15.2.4-1+deb10u1
LowGHSA-68w8-qjq3-2gfmdjango@3.1.13.1.12
LowDSA-4882-1openjpeg2@2.3.0-2+deb10u12.3.0-2+deb10u2
LowGHSA-89gr-r52h-f8rxgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
LowGHSA-jppx-rxg9-jmrxgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
LowDSA-5073-1expat@2.2.6-2+deb10u12.2.6-2+deb10u2
LowGHSA-9rj7-rf2p-w77rgitpython@3.1.73.1.58
LowGO-2021-0142stdlib@go1.13.51.13.15
LowGO-2021-0263stdlib@go1.13.51.16.10
LowPYSEC-2023-165gitpython@3.1.73.1.35
LowGHSA-44wm-f244-xhp3pillow@7.2.010.3.0
LowGHSA-62p4-gmf7-7g93pillow@7.2.012.3.0
LowGO-2023-1571stdlib@go1.13.51.19.6
LowGHSA-fx83-3ph3-9j2qdjangorestframework@3.11.13.11.2
LowGHSA-29pr-6jr8-q5jmsentry-sdk@0.16.51.14.0
LowPYSEC-2026-3787gitpython@3.1.73.1.59
LowDSA-4795-1krb5@1.17-31.17-3+deb10u1
LowDLA-3288-1curl@7.64.0-4+deb10u17.64.0-4+deb10u4
LowGHSA-3382-gw9x-477vweblate@4.2.25.17
LowDSA-5087-1cyrus-sasl2@2.1.27+dfsg-1+deb10u12.1.27+dfsg-1+deb10u2
LowGO-2022-0435stdlib@go1.13.51.17.9
LowGHSA-hf64-x4gq-p99hpillow@7.2.08.1.0
LowGHSA-gw84-84pc-xp82djangorestframework@3.11.13.15.2
LowGO-2022-0288stdlib@go1.13.51.16.12
LowGO-2022-0288golang.org/x/net@v0.0.0-20190620200207-3b0461eec8590.0.0-20211209124913-491a49abca63
LowGHSA-xj96-63gp-2gmrpillow@7.2.012.3.0
LowGO-2023-2102stdlib@go1.13.51.20.10
LowPYSEC-2022-162weblate@4.2.24.11.1
LowPYSEC-2022-31weblate@4.2.24.11.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.3.2latest2 months ago4.2.2-15111513947,984

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/deliveryhero/weblate.svg)](https://charts.stackradar.io/charts/deliveryhero/weblate)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 13 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.