StackRadar

mastodon 3.1.2 Helm chart

rivals-spaceVerified publisher

Scored 14 Sept 2026

Rivals.space Mastodon helm chart

Version 3.1.2 3 years agoapp version 1.6.1 0Artifact Hub

mastodon 3.1.2 deploys 3 container images: ghcr.io/rivals-space/rivals-nginx, ghcr.io/rivals-space/rivals-mastodon and bitnami/redis. Across the 2 measured, 456 findings1 critical, 14 high 4 on CISA KEV. The highest contribution is GHSA-754f-8gm6-c4r2 in ruby-saml 1.13.0, fixed in 1.18.0.

Radar Score

6,02611490351

456 findings over 2 of 3 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/rivals-space/rivals-nginx1.6.1061918929
ghcr.io/rivals-space/rivals-mastodon×81.6.118713335,097
bitnami/redis7.0.5-debian-11-r15unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

351 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-3qc2-v3hp-6cv8sidekiq@6.5.86.5.10
LowGHSA-pj73-v5mw-pm9jactivesupport@6.1.7.26.1.7.3
LowGHSA-vcgp-9326-pqcpnet-imap@0.1.10.3.10
LowGHSA-fhx8-5c23-x7x5sidekiq-unique-jobs@7.1.297.1.33
LowGHSA-2p49-hgcm-8545svgo@1.3.22.8.3
LowGHSA-968p-4wvh-cqc8@babel/helpers@7.20.77.26.10
LowGHSA-968p-4wvh-cqc8@babel/runtime@7.0.07.26.10
LowGHSA-3p68-rc4w-qgx5axios@1.3.21.15.0
LowGHSA-rrqh-93c8-j966ruby-saml@1.13.01.18.1
LowDSA-5518-1libvpx@1.9.0-11.9.0-1+deb11u2
LowGHSA-7fh5-64p2-3v2jpostcss@7.0.328.4.31
LowGHSA-xwg4-73v4-xw9wnanoid@3.3.43.3.12
LowALPINE-CVE-2025-26519musl@1.2.3-r41.2.3-r6
LowDSA-5726-1krb5@1.18.3-6+deb11u31.18.3-6+deb11u5
LowGHSA-p9fm-f462-ggrgactivestorage@6.1.7.27.2.3.1
LowGHSA-4xqq-m2hx-25v8rexml@3.2.53.3.2
LowGHSA-f886-m6hf-6m8vbrace-expansion@2.0.12.0.3
LowGHSA-2m96-52r3-2f3gfugit@1.7.11.11.1
LowDSA-5686-1dav1d@0.7.1-30.7.1-3+deb11u1
LowGHSA-3m6q-jj5j-38c9oj@3.13.233.17.3
LowGHSA-c4rq-3m3g-8wgxnokogiri@1.14.11.19.3
LowGHSA-48rx-c7pg-q66rexcon@0.95.01.5.0
LowGHSA-75xq-5h9v-w6pxnet-imap@0.1.10.4.24
LowDLA-3893-1expat@2.2.10-2+deb11u52.2.10-2+deb11u6
LowDSA-5622-1postgresql-13@13.9-0+deb11u113.14-0+deb11u1
LowGHSA-9cv2-cfxc-v4v2nokogiri@1.14.11.19.4
LowGHSA-phwj-rprq-35ppnokogiri@1.14.11.19.4
LowGHSA-ghhp-3qvg-889pwebsocket-driver@0.7.50.8.1
LowGHSA-fxqj-rqcc-2cmppostcss@7.0.328.5.23
LowDLA-4402-1libsndfile@1.0.31-21.0.31-2+deb11u2
LowGHSA-2vqw-3mp8-cgmxpuma@5.6.57.2.1
LowGHSA-33ph-fccm-39pjwebsocket-driver@0.7.50.8.1
LowGHSA-9ppp-w3g4-fh4qoj@3.13.233.17.3
LowGHSA-q2gm-54r6-8fwmoj@3.13.233.17.3
LowGHSA-35w3-pjm6-wj95oj@3.13.233.17.3
LowGHSA-42h9-826w-cgv3axios@1.3.21.18.0
LowGHSA-pmv8-rq9r-6j72axios@1.3.21.18.0
LowGHSA-5prr-v3j2-97mhnokogiri@1.14.11.19.4
LowDSA-5433-1libx11@2:1.7.2-12:1.7.2-1+deb11u1
LowGHSA-fwhr-88qx-h9g7actionpack@6.1.7.26.1.7.8
LowGHSA-83g3-92jg-28cxtar@6.1.117.5.8
LowGHSA-j3g3-5qv5-52mjnet-imap@0.1.10.2.5
LowGHSA-9hf4-67fc-4vf4puma@5.6.55.6.9
LowGHSA-p67v-3w7g-wjg7nokogiri@1.14.11.19.4
LowGHSA-wjv4-x9w8-wm3hnokogiri@1.14.11.19.4
LowDSA-5746-1postgresql-13@13.9-0+deb11u113.16-0+deb11u1
LowGHSA-cvp8-5r8g-fhvqomniauth-saml@1.10.31.10.5
LowDLA-4107-1openjpeg2@2.4.0-32.4.0-3+deb11u1
LowDLA-4321-1openssl@1.1.1n-0+deb11u41.1.1w-0+deb11u4
LowDLA-3926-1perl@5.32.1-4+deb11u25.32.1-4+deb11u4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
3.1.2latest3 years ago1.6.1114903516,026

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/rivals-space/mastodon.svg)](https://charts.stackradar.io/charts/rivals-space/mastodon)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.