StackRadar

feedbacksystem 0.48.0 Helm chart

thm-mni-iiVerified publisher

Scored 25 Sept 2026

Intelligent, personalized feedback for students using artificial intelligence

Version 0.48.0 yesterdayapp version v2.0.1 2Artifact Hub

feedbacksystem 0.48.0 deploys 14 container images: bitnamilegacy/minio, ghcr.io/thm-mni-ii/fbs-collab, ghcr.io/thm-mni-ii/fbs-core, ghcr.io/thm-mni-ii/fbs-core-web and 10 more. Across them, 2,080 findings — 11 critical, 42 high — 11 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 9.0.75, fixed in 9.0.99.

Radar Score

25,43911424051,622

2,080 findings over 14 of 14 images measured

KEV ×11 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

14 images
ImageTagVulnerabilitiesRadar Score
bitnamilegacy/minio2023.12.23-debian-11-r202431732,411
ghcr.io/thm-mni-ii/fbs-collabv2.0.100218228
ghcr.io/thm-mni-ii/fbs-corev2.0.1310602143,932
ghcr.io/thm-mni-ii/fbs-core-webv2.0.1021821685
ghcr.io/thm-mni-ii/fbs-identity-servicev2.0.100161431,473
ghcr.io/thm-mni-ii/fbs-qcm-backendv2.0.10024681,142
ghcr.io/thm-mni-ii/fbs-qcm-frontendv2.0.103341602,268
ghcr.io/thm-mni-ii/fbs-runnerv2.0.116652083,506
library/docker20.10.21-dind311612003,755
ghcr.io/thm-mni-ii/fbs-sql-playground-webv2.0.1021821685
ghcr.io/thm-mni-ii/fbs-web-shellv2.0.1000115
bitnamilegacy/mongodb×36.0.10-debian-11-r825231852,474
bitnamilegacy/mysql×28.0.35-debian-11-r200494822
bitnamilegacy/postgresql×315.4.0-debian-11-r4521371162,043

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,092 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowALPINE-CVE-2023-51384openssh@9.1_p1-r19.1_p1-r5
LowBIT-postgresql-2025-12818PostgreSQL@15.4.013.23.0
LowBIT-postgresql-2025-12818postgresql@15.4.0-613.23.0
LowUBUNTU-CVE-2026-35368rust-coreutils@0.8.0-0ubuntu3no fix listed
LowGHSA-mq64-j8f9-9gcjspring-webmvc@5.3.27no fix listed
LowGHSA-mq64-j8f9-9gcjspring-webflux@5.3.27no fix listed
LowGHSA-7236-3392-c5c6github.com/moby/buildkit@v0.11.20.31.1
LowGO-2024-2600stdlib@go1.20.121.21.8
LowGHSA-pvcr-v8j8-j5q3github.com/lestrrat-go/jwx@v1.2.271.2.28
LowALPINE-CVE-2023-42366busybox@1.36.1-r151.36.1-r16
LowGHSA-wxpp-56q6-5pcgspring-expression@5.3.27no fix listed
LowGHSA-hc43-m36c-8v33spring-data-mongodb@3.4.12no fix listed
LowGHSA-hrxh-6v49-42gfgoogle.golang.org/grpc@v1.53.01.82.1
LowBIT-mongodb-2024-3374mongodb@6.0.10-15.0.26
LowBIT-mongodb-2024-3374MongoDB (R)@6.0.105.0.26
LowGHSA-v6wh-96g9-6wx3vite@5.4.116.4.3
LowGHSA-xq3w-v528-46rvnetty-common@4.1.92.Final4.1.115.Final
LowGHSA-28wg-ghj8-5hjvnanoid@3.3.73.3.16
LowGHSA-8c42-7qj2-3j46netty-codec-http@4.1.92.Final4.1.137.Final
LowGHSA-x2r2-rvhq-2mqvspring-security-web@5.7.8no fix listed
LowUBUNTU-CVE-2026-54369acl@2.3.2-2no fix listed
LowGO-2024-2609stdlib@go1.20.121.21.8
LowGO-2024-3107stdlib@go1.20.121.22.7
LowGHSA-9fxm-vc8v-hj55jackson-databind@2.21.22.21.4
LowGO-2023-1751stdlib@go1.18.71.19.9
LowGO-2023-1753stdlib@go1.18.71.19.9
LowGHSA-5jmj-h7xm-6q6vjackson-databind@2.14.22.18.9
LowALPINE-CVE-2023-42365busybox@1.36.1-r151.36.1-r19
LowGHSA-r7wm-3cxj-wff9jackson-core@2.13.52.18.8
LowGHSA-389x-839f-4rhxnetty-common@4.1.92.Final4.1.118.Final
LowUBUNTU-CVE-2026-89157pcre2@10.46-1build1no fix listed
LowGHSA-465g-fh3v-9jw4github.com/rabbitmq/amqp091-go@v1.9.01.13.0
LowUBUNTU-CVE-2026-78410util-linux@2.41.3-3ubuntu2.2no fix listed
LowBIT-mongodb-2024-6384MongoDB (R)@6.0.106.0.16
LowBIT-mongodb-2024-6384mongodb@6.0.10-16.0.16
LowGHSA-cp6g-7hqx-qxhpgo.mongodb.org/mongo-driver@v1.13.11.17.7
LowALPINE-CVE-2024-6874curl@8.5.0-r08.9.0-r0
LowGHSA-4mjr-xmp4-gh2gqs@6.13.06.16.0
LowGHSA-q8mj-m7cp-5q26qs@6.13.06.15.2
LowALPINE-CVE-2023-52426expat@2.5.0-r12.6.0-r0
LowGHSA-h67p-54hq-rp68js-yaml@4.1.04.2.0
LowGHSA-x86f-5xw2-fm2rgithub.com/docker/docker@v20.10.3-0.20221021173910-5aac513617f0+incompatibleno fix listed
LowDLA-4490-1openssl@1.1.1w-0+deb11u11.1.1w-0+deb11u5
LowGHSA-pwhc-rpq9-4c8wgithub.com/containerd/containerd@v1.6.16-0.20230124210447-1709cfe273d91.7.29
LowGHSA-293q-567p-wmwqspring-security-web@5.7.8no fix listed
LowGHSA-mh29-5h37-fv8mjs-yaml@4.1.04.1.1
LowGHSA-259w-8hf6-59c2github.com/containerd/containerd@v1.6.16-0.20230124210447-1709cfe273d91.6.18
LowGO-2023-2041stdlib@go1.18.71.20.8
LowBIT-mongodb-2024-6375MongoDB (R)@6.0.105.0.22
LowBIT-mongodb-2024-6375mongodb@6.0.10-15.0.22

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.48.0latestyesterdayv2.0.111424051,62225,439
0.47.11 year agov1.27.117514631,77928,950

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/thm-mni-ii/feedbacksystem.svg)](https://charts.stackradar.io/charts/thm-mni-ii/feedbacksystem)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 25 Sept 2026 · scanned 25 Sept 2026 · advisories as of 25 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.