StackRadar

feedbacksystem 0.48.1 Helm chart

thm-mni-iiVerified publisher

Scored 2 Oct 2026

Intelligent, personalized feedback for students using artificial intelligence

Version 0.48.1 todayapp version v2.0.6 2Artifact Hub

feedbacksystem 0.48.1 deploys 14 container images: bitnamilegacy/minio, ghcr.io/thm-mni-ii/fbs-collab, ghcr.io/thm-mni-ii/fbs-core, ghcr.io/thm-mni-ii/fbs-core-web and 10 more. Across them, 2,133 findings — 11 critical, 38 high — 11 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 9.0.75, fixed in 9.0.99.

Radar Score

25,09311383701,714

2,133 findings over 14 of 14 images measured

KEV ×11 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

14 images
ImageTagVulnerabilitiesRadar Score
bitnamilegacy/minio2023.12.23-debian-11-r202441722,413
ghcr.io/thm-mni-ii/fbs-collabv2.0.600224287
ghcr.io/thm-mni-ii/fbs-corev2.0.6310572113,861
ghcr.io/thm-mni-ii/fbs-core-webv2.0.600235250
ghcr.io/thm-mni-ii/fbs-identity-servicev2.0.600121421,417
ghcr.io/thm-mni-ii/fbs-qcm-backendv2.0.60027741,253
ghcr.io/thm-mni-ii/fbs-qcm-frontendv2.0.603371662,380
ghcr.io/thm-mni-ii/fbs-runnerv2.0.616662163,607
library/docker20.10.21-dind311622003,768
ghcr.io/thm-mni-ii/fbs-sql-playground-webv2.0.600235250
ghcr.io/thm-mni-ii/fbs-web-shellv2.0.600235250
bitnamilegacy/mongodb×36.0.10-debian-11-r825231852,479
bitnamilegacy/mysql×28.0.35-debian-11-r200494825
bitnamilegacy/postgresql×315.4.0-debian-11-r4521301252,053

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,085 distinct across the version’s images
SeverityAdvisoryPackageFixed in
CriticalGHSA-83qj-6fr2-vhqgKEVtomcat-embed-core@9.0.759.0.99
CriticalGHSA-f58c-gq56-vjjftika-core@2.8.03.2.2
CriticalALPINE-CVE-2023-38408openssh@9.1_p1-r19.1_p1-r4
CriticalGHSA-mjmj-j48q-9wg2snakeyaml@1.302.0
CriticalALPINE-CVE-2024-6387openssh@9.1_p1-r19.1_p1-r6
CriticalBIT-postgresql-2025-1094postgresql@15.4.0-613.19.0
CriticalBIT-postgresql-2025-1094PostgreSQL@15.4.013.19.0
CriticalBIT-mongodb-2025-14847KEVmongodb@6.0.10-14.4.30
CriticalBIT-mongodb-2025-14847KEVMongoDB (R)@6.0.104.4.30
CriticalALPINE-CVE-2025-15467openssl@3.0.7-r03.0.19-r0
HighGHSA-4wrc-f8pq-fpqpspring-web@5.3.276.0.0
HighGHSA-5j33-cvvr-w245tomcat-embed-core@9.0.759.0.98
HighALPINE-CVE-2024-6119openssl@3.1.4-r13.1.7-r0
HighGHSA-wmwf-9ccg-fff5tomcat-embed-core@9.0.759.0.109
HighALPINE-CVE-2023-0286openssl@3.0.7-r03.0.8-r0
HighGHSA-g5vr-rgqm-vf78spring-webflux@5.3.27no fix listed
HighGHSA-g5vr-rgqm-vf78spring-webmvc@5.3.27no fix listed
HighGHSA-xx8w-mq23-29g4github.com/minio/minio@v0.0.0-20231223071911-496027b589c20.0.0-20240131185645-0ae4915a9391
HighALPINE-CVE-2023-2650openssl@3.0.7-r03.0.9-r0
HighALPINE-CVE-2023-48795openssh@9.1_p1-r19.1_p1-r5
HighGHSA-45x7-px36-x8w8golang.org/x/crypto@v0.2.00.17.0
HighGHSA-v23v-6jw2-98fqgithub.com/docker/docker@v20.10.3-0.20221021173910-5aac513617f0+incompatible23.0.15
HighGHSA-4r4m-qw57-chr8KEVvite@5.4.115.4.16
HighGHSA-qppj-fm5r-hxr3KEVgolang.org/x/net@v0.8.00.17.0
HighGHSA-qppj-fm5r-hxr3KEVtomcat-embed-core@9.0.759.0.81
HighGHSA-4v7x-pqxf-cx7mgolang.org/x/net@v0.8.00.23.0
HighGHSA-h3gc-qfqq-6h8ftomcat-embed-core@9.0.759.0.106
HighGHSA-xr7r-f8xq-vfvvgithub.com/opencontainers/runc@v1.1.31.1.12
HighGHSA-r5fr-rjxr-66jclodash@4.17.214.18.0
HighGHSA-x574-m823-4x7wvite@5.4.115.4.15
HighALPINE-CVE-2024-2511openssl@3.1.4-r13.1.4-r6
HighGHSA-7w75-32cg-r6g2tomcat-embed-core@9.0.759.0.86
HighGHSA-vfww-5hm6-hx2jtomcat-embed-core@9.0.759.0.109
HighALPINE-CVE-2022-4450openssl@3.0.7-r03.0.8-r0
HighGHSA-27hp-xhwr-wr2mtomcat-embed-core@9.0.759.0.98
HighDSA-5514-1KEVglibc@2.31-13+deb11u62.31-13+deb11u7
HighDSA-5570-1KEVnghttp2@1.43.0-11.43.0-1+deb11u1
MediumDLA-3859-1systemd@247.3-7+deb11u4247.3-7+deb11u6
MediumGHSA-cx7f-g6mp-7hqmspring-webflux@5.3.27no fix listed
MediumGHSA-cx7f-g6mp-7hqmspring-webmvc@5.3.27no fix listed
MediumGHSA-xcj6-pq6g-qj4xvite@5.4.115.4.17
MediumGO-2024-2687stdlib@go1.20.111.21.9
MediumDSA-5673-1glibc@2.31-13+deb11u72.31-13+deb11u9
MediumDLA-3898-1nghttp2@1.43.0-1+deb11u11.43.0-1+deb11u2
MediumALPINE-CVE-2023-51385openssh@9.1_p1-r19.1_p1-r5
MediumDSA-5523-1curl@7.74.0-1.3+deb11u77.74.0-1.3+deb11u10
MediumGHSA-24rp-q3w6-vc56postgresql@42.5.342.5.5
MediumALPINE-CVE-2024-5535openssl@3.1.4-r13.1.6-r0
MediumGHSA-wm47-8v5p-wjpjnetty-codec-http2@4.1.49.Final4.1.60.Final
MediumDLA-3942-1openssl@1.1.1n-0+deb11u51.1.1n-0+deb11u6

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.48.1latesttodayv2.0.611383701,71425,093
0.48.07 days agov2.0.111424021,70426,149
0.47.11 year agov1.27.117514581,78728,983

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/thm-mni-ii/feedbacksystem.svg)](https://charts.stackradar.io/charts/thm-mni-ii/feedbacksystem)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 2 Oct 2026 · scanned 2 Oct 2026 · advisories as of 2 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.