StackRadar

weblate 0.3.2 Helm chart

deliveryheroVerified publisher

Scored 14 Sept 2026

Free web-based translation management system.

Version 0.3.2 2 months agodeploys tag 4.2.2-1 1Artifact Hub

weblate 0.3.2 deploys 3 container images: weblate/weblate, bitnami/postgresql and bitnami/redis. Across the 1 measured, 562 findings5 critical, 11 high 7 on CISA KEV. The highest contribution is GHSA-j7hp-h8jx-5ppr in pillow 7.2.0, fixed in 10.0.1.

Radar Score

7,984511151394

562 findings over 1 of 3 images measured

KEV ×7 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
weblate/weblate4.2.2-15111513947,984
bitnami/postgresql14.4.0-debian-11-r23unmeasured
bitnami/redis×27.0.4-debian-11-r11unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

562 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGO-2022-0520stdlib@go1.13.51.17.12
LowPYSEC-2026-3788gitpython@3.1.73.1.59
LowDLA-3167-1ncurses@6.1+20181013-2+deb10u26.1+20181013-2+deb10u3
LowDLA-3850-1glibc@2.28-102.28-10+deb10u4
LowGHSA-j5w8-q4qc-rx2xgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.45.0
LowDLA-3459-1libxpm@1:3.5.12-11:3.5.12-1+deb10u1
LowDLA-3660-1gnutls28@3.6.7-4+deb10u53.6.7-4+deb10u11
LowPYSEC-2026-3721pip@20.2.226.2
LowGO-2023-2375stdlib@go1.13.51.20.0
LowGHSA-vvgc-356p-c3xwgolang.org/x/net@v0.0.0-20190620200207-3b0461eec8590.38.0
LowGO-2023-1569stdlib@go1.13.51.19.6
LowDLA-3107-1sqlite3@3.27.2-33.27.2-3+deb10u2
LowGHSA-mq26-g339-26xfpip@20.2.223.3
LowDSA-5014-1icu@63.1-6+deb10u163.1-6+deb10u2
LowGO-2023-2382stdlib@go1.13.51.20.12
LowGO-2022-1143stdlib@go1.13.51.18.9
LowGHSA-qpw4-5x99-6vjpgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
LowGHSA-f6x5-jh6r-wrfvgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.45.0
LowGHSA-78mq-xcr3-xm33golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
LowGO-2024-2599stdlib@go1.13.51.21.8
LowPYSEC-2022-42980pillow@7.2.09.3.0
LowGHSA-8qcx-xf44-272xdjango@3.1.15.2.16
LowGO-2022-1038stdlib@go1.13.51.18.7
LowDLA-3338-1git@1:2.20.1-2+deb10u31:2.20.1-2+deb10u8
LowGO-2024-3106stdlib@go1.13.51.22.7
LowGO-2023-1570stdlib@go1.13.51.19.6
LowGHSA-7833-fr7j-v32qgitpython@3.1.73.1.59
LowDLA-3405-1libxml2@2.9.4+dfsg1-7+b32.9.4+dfsg1-7+deb10u6
LowGO-2022-0531stdlib@go1.13.51.17.11
LowGO-2024-2600stdlib@go1.13.51.21.8
LowGHSA-r88r-gmrh-7j83gopkg.in/yaml.v2@v2.2.12.2.3
LowGHSA-2gr8-3wc7-xhj3social-auth-app-django@4.0.05.4.1
LowDLA-3377-1systemd@241-7~deb10u4241-7~deb10u9
LowGO-2024-2609stdlib@go1.13.51.21.8
LowGO-2024-3107stdlib@go1.13.51.22.7
LowGO-2023-1751stdlib@go1.13.51.19.9
LowGO-2023-1753stdlib@go1.13.51.19.9
LowGHSA-3wxw-xv34-2frggitpython@3.1.73.1.59
LowGHSA-pq67-6m6q-mj2vurllib3@1.25.102.5.0
LowGHSA-9m57-25v3-79x9golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
LowDLA-3439-1libwebp@0.6.1-20.6.1-2+deb10u2
LowGHSA-65pc-fj4g-8rjxidna@2.103.15
LowGO-2023-2041stdlib@go1.13.51.20.8
LowGHSA-9wx4-h78v-vm56requests@2.24.02.32.0
LowGO-2023-2043stdlib@go1.13.51.20.8
LowGHSA-2m8g-3cmr-wg3wdjangorestframework@3.11.13.17.2
LowGO-2022-0515stdlib@go1.13.51.17.12
LowGO-2023-2186stdlib@go1.13.51.20.11
LowPYSEC-2025-183pyjwt@1.7.1no fix listed
LowGHSA-jfmj-5v4g-7637zipp@3.1.03.19.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.3.2latest2 months ago4.2.2-15111513947,984

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/deliveryhero/weblate.svg)](https://charts.stackradar.io/charts/deliveryhero/weblate)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 13 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.