StackRadar

feedbacksystem 0.48.1 Helm chart

thm-mni-iiVerified publisher

Scored 2 Oct 2026

Intelligent, personalized feedback for students using artificial intelligence

Version 0.48.1 yesterdayapp version v2.0.6 2Artifact Hub

feedbacksystem 0.48.1 deploys 14 container images: bitnamilegacy/minio, ghcr.io/thm-mni-ii/fbs-collab, ghcr.io/thm-mni-ii/fbs-core, ghcr.io/thm-mni-ii/fbs-core-web and 10 more. Across them, 2,133 findings — 11 critical, 38 high — 11 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 9.0.75, fixed in 9.0.99.

Radar Score

25,09311383701,714

2,133 findings over 14 of 14 images measured

KEV ×11 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

14 images
ImageTagVulnerabilitiesRadar Score
bitnamilegacy/minio2023.12.23-debian-11-r202441722,413
ghcr.io/thm-mni-ii/fbs-collabv2.0.600224287
ghcr.io/thm-mni-ii/fbs-corev2.0.6310572113,861
ghcr.io/thm-mni-ii/fbs-core-webv2.0.600235250
ghcr.io/thm-mni-ii/fbs-identity-servicev2.0.600121421,417
ghcr.io/thm-mni-ii/fbs-qcm-backendv2.0.60027741,253
ghcr.io/thm-mni-ii/fbs-qcm-frontendv2.0.603371662,380
ghcr.io/thm-mni-ii/fbs-runnerv2.0.616662163,607
library/docker20.10.21-dind311622003,768
ghcr.io/thm-mni-ii/fbs-sql-playground-webv2.0.600235250
ghcr.io/thm-mni-ii/fbs-web-shellv2.0.600235250
bitnamilegacy/mongodb×36.0.10-debian-11-r825231852,479
bitnamilegacy/mysql×28.0.35-debian-11-r200494825
bitnamilegacy/postgresql×315.4.0-debian-11-r4521301252,053

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

807 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-7m2p-62gw-p8qqspring-web@6.2.186.2.19
LowGHSA-29wx-vh33-7x7rgithub.com/golang-jwt/jwt/v4@v4.4.24.5.1
LowALPINE-CVE-2026-42768openssl@3.5.6-r03.5.7-r0
LowUBUNTU-CVE-2026-54875openssl@3.5.5-1ubuntu3.53.5.5-1ubuntu3.6
LowGHSA-67mh-4wv8-2f99esbuild@0.21.50.25.0
LowUBUNTU-CVE-2026-35345rust-coreutils@0.8.0-0ubuntu3no fix listed
LowGO-2026-4970stdlib@go1.26.31.25.12
LowUBUNTU-CVE-2026-97399glibc@2.43-2ubuntu2.4no fix listed
LowGHSA-jfvp-7x6p-h2pvgithub.com/opencontainers/runc@v1.1.31.1.14
LowGHSA-g4jq-h2w9-997cvite@5.4.115.4.20
LowGO-2026-5027golang.org/x/net@v0.8.00.55.0
LowGO-2026-5029golang.org/x/net@v0.8.00.55.0
LowGO-2026-5030golang.org/x/net@v0.8.00.55.0
LowUBUNTU-CVE-2026-89160pcre2@10.46-1build1no fix listed
LowGHSA-xhjh-pmcv-23jwaxios@1.11.01.15.1
LowUBUNTU-CVE-2026-54872openssl@3.5.5-1ubuntu3.53.5.5-1ubuntu3.6
LowGHSA-m4gq-fm9h-8q75github.com/docker/buildx@v0.9.10.21.3
LowGHSA-9f52-rjqv-25qvspring-expression@5.3.27no fix listed
LowALPINE-CVE-2026-42770openssl@3.5.6-r03.5.7-r0
LowBIT-postgresql-2026-14666postgresql@15.4.0-614.24.0
LowBIT-postgresql-2026-14666PostgreSQL@15.4.014.24.0
LowBIT-mongodb-2025-6707mongodb@6.0.10-15.0.31
LowBIT-mongodb-2025-6707MongoDB (R)@6.0.105.0.31
LowGHSA-4wp7-92pw-q264spring-context@5.3.27no fix listed
LowGHSA-w573-9ffj-6ff9netty-transport-native-epoll@4.1.92.Final4.1.135.Final
LowGHSA-w573-9ffj-6ff9netty-transport-native-kqueue@4.1.92.Final4.1.135.Final
LowUBUNTU-CVE-2026-77696openssl@3.5.5-1ubuntu3.53.5.5-1ubuntu3.6
LowUBUNTU-CVE-2026-18508tar@1.35+dfsg-4ubuntu0.4no fix listed
LowGO-2026-4869stdlib@go1.20.111.25.9
LowGO-2026-5622github.com/containerd/containerd@v1.7.12no fix listed
LowBIT-postgresql-2024-10977postgresql@15.4.0-612.21.0
LowBIT-postgresql-2024-10977PostgreSQL@15.4.012.21.0
LowUBUNTU-CVE-2026-35359rust-coreutils@0.8.0-0ubuntu3no fix listed
LowGHSA-vxf7-qj7q-83fhspring-security-core@5.7.8no fix listed
LowBIT-postgresql-2026-16241postgresql@15.4.0-614.24.0
LowBIT-postgresql-2026-16241PostgreSQL@15.4.014.24.0
LowUBUNTU-CVE-2026-35370rust-coreutils@0.8.0-0ubuntu3no fix listed
LowGO-2026-4887github.com/docker/docker@v20.10.3-0.20221021173910-5aac513617f0+incompatibleno fix listed
LowUBUNTU-CVE-2026-35351rust-coreutils@0.8.0-0ubuntu3no fix listed
LowDLA-4319-1libxml2@2.9.10+dfsg-6.7+deb11u42.9.10+dfsg-6.7+deb11u9
LowGO-2026-5024golang.org/x/sys@v0.6.00.44.0
LowUBUNTU-CVE-2026-35357rust-coreutils@0.8.0-0ubuntu3no fix listed
LowDLA-4437-1gnupg2@2.2.27-2+deb11u22.2.27-2+deb11u3
LowUBUNTU-CVE-2026-35354rust-coreutils@0.8.0-0ubuntu3no fix listed
LowBIT-postgresql-2026-14673PostgreSQL@15.4.014.24.0
LowBIT-postgresql-2026-14673postgresql@15.4.0-614.24.0
LowUBUNTU-CVE-2026-102474dash@0.5.12-12ubuntu3no fix listed
LowGHSA-ww38-37g9-m3q3spring-security-saml2-service-provider@6.5.106.5.11
LowGO-2026-6179golang.org/x/mod@v0.11.00.40.0
LowALPINE-CVE-2025-69418openssl@3.0.7-r03.0.19-r0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.48.1latestyesterdayv2.0.611383701,71425,093
0.48.08 days agov2.0.111424021,70426,149
0.47.11 year agov1.27.117514581,78728,983

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/thm-mni-ii/feedbacksystem.svg)](https://charts.stackradar.io/charts/thm-mni-ii/feedbacksystem)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 2 Oct 2026 · scanned 2 Oct 2026 · advisories as of 2 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.