StackRadar

shopware 2.0.0 Helm chart

robjuz

Scored 14 Sept 2026

Web publishing platform for building blogs and websites.

Version 2.0.0 4 years agodeploys tag 2021.12.10-debian-10-r0 0Artifact Hub

shopware 2.0.0 deploys 6 container images: bitnami/minio, bitnami/bitnami-shell, bitnami/elasticsearch, bitnami/mariadb and 2 more. Across the 1 measured, 239 findings5 critical, 1 high 3 on CISA KEV. The highest contribution is GHSA-x752-qjv4-c4hc in dompdf/dompdf v1.0.2, fixed in 1.2.1.

Radar Score

2,9725143190

239 findings over 1 of 6 images measured

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
bitnami/minio2021.12.10-debian-10-r0unmeasured
bitnami/bitnami-shell×310-debian-10-r273unmeasured
bitnami/elasticsearch×37.16.0-debian-10-r0unmeasured
bitnami/mariadb10.5.13-debian-10-r0unmeasured
bitnami/redis6.2.6-debian-10-r53unmeasured
shyim/shopware×36.4.6.051431902,972

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

239 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-4h9w-7vfp-px8mshopware/core@6.4.6.06.5.8.17
LowGO-2026-5026stdlib@go1.20.71.25.13
LowGHSA-4j38-f5cw-54h7twig/twig@v3.3.33.26.0
LowGO-2025-3420stdlib@go1.20.71.22.11
LowGO-2026-4342stdlib@go1.20.71.24.12
LowGO-2024-2598stdlib@go1.20.71.21.8
LowGO-2025-3751stdlib@go1.20.71.23.10
LowGHSA-cwxw-98qj-8qjxguzzlehttp/guzzle@7.4.07.12.1
LowGO-2026-4870stdlib@go1.20.71.25.9
LowGO-2025-4009stdlib@go1.20.71.24.8
LowGO-2026-4947stdlib@go1.20.71.25.9
LowGHSA-gjfg-22fp-rrxxcomposer/composer@2.1.112.2.29
LowGO-2025-4006stdlib@go1.20.71.24.8
LowGO-2026-5037stdlib@go1.20.71.25.11
LowGO-2026-4971stdlib@go1.20.71.25.10
LowGHSA-2x45-7fc3-mxwqfirebase/php-jwt@v5.4.07.0.0
LowGHSA-f7vp-7xgx-4w4rguzzlehttp/guzzle@7.4.07.15.2
LowGHSA-59qg-93jg-236fshopware/core@6.4.6.06.4.18.1
LowGHSA-f283-ghqc-fg79guzzlehttp/guzzle@7.4.07.15.1
LowGO-2026-5972stdlib@go1.20.71.25.13
LowGO-2026-6088stdlib@go1.20.71.25.13
LowGO-2026-6089stdlib@go1.20.71.25.13
LowGO-2026-6090stdlib@go1.20.71.25.13
LowGO-2026-5038stdlib@go1.20.71.25.11
LowGHSA-94pj-82f3-465wguzzlehttp/guzzle@7.4.07.14.2
LowGO-2025-4012stdlib@go1.20.71.24.8
LowGO-2025-3956stdlib@go1.20.71.23.12
LowGO-2025-4011stdlib@go1.20.71.24.8
LowGO-2025-4015stdlib@go1.20.71.24.8
LowGO-2026-6218stdlib@go1.20.71.25.13
LowGHSA-9v5m-39wh-5chqshopware/core@6.4.6.06.6.10.18
LowGHSA-gqc5-xv7m-gcjqshopware/core@6.4.6.06.6.10.15
LowGHSA-x8cp-jf6f-r4xhaws/aws-sdk-php@3.198.83.368.0
LowGO-2025-3373stdlib@go1.20.71.22.11
LowGHSA-wpwq-4j6v-78m3guzzlehttp/guzzle@7.4.07.12.1
LowGHSA-34xg-wgjx-8xphguzzlehttp/psr7@1.8.32.10.2
LowGO-2025-4155stdlib@go1.20.71.24.11
LowGO-2024-2888stdlib@go1.20.71.21.11
LowGHSA-hq7v-mx3g-29hwguzzlehttp/psr7@1.8.32.10.2
LowGO-2025-4008stdlib@go1.20.71.24.8
LowGO-2025-4010stdlib@go1.20.71.24.8
LowGO-2025-4014stdlib@go1.20.71.24.8
LowGO-2025-3503stdlib@go1.20.71.23.7
LowGHSA-vm85-hxw5-5432guzzlehttp/psr7@1.8.32.12.1
LowGO-2026-4976stdlib@go1.20.71.25.10
LowGO-2026-5856stdlib@go1.20.71.25.12
LowGO-2025-4007stdlib@go1.20.71.24.9
LowGO-2026-4980stdlib@go1.20.71.25.10
LowGO-2026-5039stdlib@go1.20.71.25.11
LowGHSA-c2w2-prh8-qm98guzzlehttp/psr7@1.8.32.12.3

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
2.0.0latest4 years ago2021.12.10-debian-10-r051431902,972

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/robjuz/shopware.svg)](https://charts.stackradar.io/charts/robjuz/shopware)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.