StackRadar

flagsmith 0.1.5 Helm chart

one-acre-fundVerified publisher

Scored 14 Sept 2026

Flagsmith - a Feature flag and remote configuration solution

Version 0.1.5 4 years agoApp version not verified against the render 2Artifact Hub

flagsmith 0.1.5 deploys 6 container images: jwilder/dockerize, flagsmith/flagsmith-api, flagsmith/flagsmith-frontend, bitnami/postgresql and 1 more. Across the 5 measured, 449 findings0 critical, 14 high. The highest contribution is GHSA-phwq-j96m-2c2q in ejs 2.7.1, fixed in 3.1.7.

Radar Score

6,868014164271

449 findings over 5 of 6 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
jwilder/dockerize0.6.100000
flagsmith/flagsmith-api×2v2.6.00352922,216
jwilder/dockerizelatest00554502
flagsmith/flagsmith-frontendv2.6.00874982,984
bitnami/postgresql14.4.0-debian-11-r23unmeasured
blacktop/httpielatest0333271,166

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

417 distinct across the version’s images
SeverityAdvisoryPackageFixed in
HighGHSA-phwq-j96m-2c2qejs@2.7.13.1.7
HighGHSA-c4w7-xm78-47vhy18n@4.0.04.0.1
HighALPINE-CVE-2021-23840openssl@1.1.1b-r11.1.1j-r0
HighGHSA-6cw3-g6wv-c2xvdjango@2.2.172.2.27
HighGHSA-2gwj-7jmv-h26rdjango@2.2.172.2.28
HighGHSA-frmv-pr5f-9mcrdjango@2.2.174.2.26
HighALPINE-CVE-2021-3449openssl@1.1.1b-r11.1.1k-r0
HighGHSA-r5fr-rjxr-66jclodash@4.17.154.18.0
HighGHSA-w573-4hg7-7wgqdecode-uri-component@0.2.00.2.1
HighGHSA-fr76-2wp8-fp92express-handlebars@3.0.05.3.1
HighGHSA-3jfq-g458-7qm9tar@4.4.134.4.14
HighGHSA-35jh-r3h4-6jhmlodash@4.17.154.17.21
HighALPINE-CVE-2019-12900bzip2@1.0.6-r61.0.6-r7
HighGHSA-f2jv-r9rf-7988handlebars@4.5.34.7.7
MediumGHSA-hrpp-h998-j3ppqs@6.5.26.5.3
MediumDSA-5169-1openssl@1.1.1d-0+deb10u61.1.1n-0+deb10u3
MediumDLA-3807-1glibc@2.28-102.28-10+deb10u3
MediumDSA-4963-1openssl@1.1.1d-0+deb10u61.1.1d-0+deb10u7
MediumGHSA-6w2r-r2m5-xq5wdjango@2.2.174.2.24
MediumGHSA-5cgq-3rg8-m6cvgolang.org/x/crypto@v0.45.00.52.0
MediumDSA-5139-1openssl@1.1.1d-0+deb10u61.1.1n-0+deb10u2
MediumDLA-3449-1openssl@1.1.1d-0+deb10u61.1.1n-0+deb10u5
MediumDSA-5103-1openssl@1.1.1d-0+deb10u61.1.1d-0+deb10u8
MediumGHSA-2p57-rm9w-gvfpip@1.1.5no fix listed
MediumGHSA-xvch-5gv4-984hminimist@0.0.100.2.4
MediumGHSA-r628-mhmh-qjhwtar@4.4.134.4.15
MediumGHSA-765h-qjxv-5f44handlebars@4.5.34.7.7
MediumGHSA-www2-v7xj-xrc6urllib3@1.221.23
MediumDLA-3325-1openssl@1.1.1d-0+deb10u61.1.1n-0+deb10u4
MediumGHSA-896r-f27r-55mwjson-schema@0.2.30.4.0
MediumGHSA-9c47-m6qq-7p4hjson5@0.5.11.0.2
MediumDLA-2968-1zlib@1:1.2.8.dfsg-51:1.2.8.dfsg-5+deb9u1
MediumGHSA-x84v-xcm2-53pgrequests@2.19.12.20.0
MediumALPINE-CVE-2018-20843expat@2.2.6-r02.2.7-r0
MediumALPINE-CVE-2019-15903expat@2.2.6-r02.2.7-r1
MediumGHSA-w24h-v9qh-8gxjdjango@2.2.172.2.28
MediumGHSA-76p3-8jx3-jpfqloader-utils@0.2.171.4.1
MediumALPINE-CVE-2020-14422python3@3.6.8-r23.6.9-r3
MediumALPINE-CVE-2019-14697musl@1.1.20-r41.1.20-r5
MediumGHSA-8hfj-j24r-96c4moment@2.22.22.29.2
MediumDSA-5085-1expat@2.2.6-2+deb10u12.2.6-2+deb10u3
MediumALPINE-CVE-2019-16056python3@3.6.8-r23.6.9-r1
MediumGHSA-rxjp-mfm9-w4wrdjango@2.2.172.2.21
MediumGHSA-p99v-5w3c-jqq9django@2.2.172.2.24
MediumGHSA-wc69-rhjr-hc9gmoment@2.22.22.29.4
MediumALPINE-CVE-2019-1551openssl@1.1.1b-r11.1.1d-r2
MediumGHSA-p6mc-m468-83gwlodash@4.17.154.17.19
MediumGHSA-vx3p-948g-6vhqssri@6.0.16.0.2
MediumGHSA-662x-fhqg-9p8vua-parser-js@0.7.200.7.22
MediumALPINE-CVE-2020-11655sqlite@3.28.0-r03.28.0-r3

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.5latest4 years ago0141642716,868

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/one-acre-fund/flagsmith.svg)](https://charts.stackradar.io/charts/one-acre-fund/flagsmith)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.