StackRadar

hedgedoc Helm chart

schmitzis

Scored 14 Sept 2026

A HedgeDoc Helm chart for Kubernetes

Latest 0.1.12 3 years agoapp version 1.9.4 0Artifact Hub

hedgedoc 0.1.12 deploys 1 container image: quay.io/hedgedoc/hedgedoc. Across them, 229 findings0 critical, 4 high 1 on CISA KEV. The highest contribution is GHSA-r5fr-rjxr-66jc in lodash 4.17.21, fixed in 4.18.0. Chart.yaml declares kubeVersion >=1.14.0-0; rendered for Kubernetes 1.14.0.

Radar Score

3,1180460165

229 findings over 1 of 1 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
quay.io/hedgedoc/hedgedoc1.9.404601653,118

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

60 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumDLA-3859-1systemd@247.3-7+deb11u1247.3-7+deb11u6
MediumGHSA-hrpp-h998-j3ppqs@6.9.36.9.7
MediumDSA-5673-1glibc@2.31-13+deb11u52.31-13+deb11u9
MediumDSA-5417-1openssl@1.1.1n-0+deb11u31.1.1n-0+deb11u5
MediumGHSA-2p57-rm9w-gvfpip@2.0.0no fix listed
MediumDSA-5343-1openssl@1.1.1n-0+deb11u31.1.1n-0+deb11u4
MediumDLA-3942-1openssl@1.1.1n-0+deb11u31.1.1n-0+deb11u6
MediumDLA-3942-2openssl@1.1.1n-0+deb11u31.1.1w-0+deb11u2
MediumGHSA-x3cc-x39p-42qxfast-xml-parser@3.21.14.1.2
MediumGHSA-fpw7-j2hg-69v5mysql2@2.3.33.9.4
MediumGHSA-p6mc-m468-83gwlodash.pick@4.4.0no fix listed
MediumGHSA-m974-647v-whv7passport-saml@3.2.13.2.2
MediumGHSA-pmh2-wpjm-fj45mysql2@2.3.33.9.8
MediumGHSA-fjxv-7rqg-78g4form-data@1.0.0-rc32.5.4
MediumGHSA-wrh9-cjv3-2hpwsequelize@5.22.56.19.1
MediumGHSA-jqv5-7xpx-qj74sqlite3@5.0.85.1.5
MediumGHSA-crh6-fp67-6883xmldom@0.1.31no fix listed
MediumGHSA-crh6-fp67-6883@xmldom/xmldom@0.7.50.7.7
MediumGHSA-rrrm-qjm4-v8hfmarked@2.1.34.0.10
MediumGHSA-c2qf-rxjj-qqgwsemver@6.3.06.3.1
MediumGHSA-5v2h-r2cx-5xgjmarked@2.1.34.0.10
MediumGHSA-43fc-jf86-j433axios@0.21.40.30.3
MediumGHSA-qm95-pgcg-qqfqsocket.io-parser@3.4.13.4.2
MediumGHSA-gqgv-6jq5-jjj9qs@2.3.36.0.4
MediumGHSA-4rch-2fh8-94vwmysql2@2.3.33.9.7
MediumGHSA-rp65-9cf3-cjxrnth-check@1.0.22.0.1
MediumGHSA-wrvr-8mpx-r7ppmime@1.3.41.4.1
MediumGHSA-f598-mfpv-gmfxsequelize@5.22.56.29.0
MediumGHSA-vqfx-gj96-3w95sequelize@5.22.56.28.1
MediumGHSA-g36h-6r4f-3mqpstring@3.3.3no fix listed
MediumGHSA-72xf-g2v4-qvf3tough-cookie@2.5.04.1.3
MediumGHSA-rc47-6667-2j5jhttp-cache-semantics@4.1.04.1.1
MediumGHSA-3h5v-q93c-6h6qws@7.4.67.5.10
MediumGHSA-pjwm-pj3p-43mvaxios@0.21.40.32.0
MediumGHSA-r7qp-cfhv-p84wengine.io@3.6.03.6.1
MediumGHSA-jr5f-v2jv-69x6axios@0.21.40.30.0
MediumGHSA-95m3-7q98-8xr5sha.js@2.4.112.4.12
MediumGHSA-qrmc-fj45-qfc2extend@3.0.03.0.2
MediumGHSA-4gxf-g5gf-22h4dottie@2.0.22.0.4
MediumGHSA-f23m-r3pf-42rhlodash@4.17.214.18.0
MediumGHSA-xxjr-mmjv-4gpglodash@4.17.214.17.23
MediumGHSA-2v35-w6hq-6mfwxmldom@0.1.31no fix listed
MediumGHSA-2v35-w6hq-6mfw@xmldom/xmldom@0.7.50.8.13
MediumGHSA-cqmj-92xf-r6r9socket.io-parser@3.4.13.4.3
MediumDSA-5286-1krb5@1.18.3-6+deb11u21.18.3-6+deb11u3
MediumGHSA-37ch-88jc-xwx2path-to-regexp@0.1.70.1.13
MediumGHSA-9wv6-86v2-598jpath-to-regexp@0.1.70.1.10
MediumGHSA-cpq7-6gpm-g9rccipher-base@1.0.41.0.5
MediumGHSA-5fg8-2547-mr8qxmldom@0.1.31no fix listed
MediumGHSA-v8fg-2rw7-q452sequelize@5.22.56.37.4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.12latest3 years ago1.9.404601653,118

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/schmitzis/hedgedoc.svg)](https://charts.stackradar.io/charts/schmitzis/hedgedoc)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.