StackRadar

synapse 0.1.0 Helm chart

tranhailongVerified publisher

Scored 14 Sept 2026

Vanilla Matrix's Synapse Homeserver

Version 0.1.0 3 years agodeploys tag v1.78.0 0Artifact Hub

synapse 0.1.0 deploys 2 container images: matrixdotorg/synapse and library/postgres. Across them, 231 findings2 critical, 7 high 5 on CISA KEV. The highest contribution is GHSA-j7hp-h8jx-5ppr in pillow 9.4.0, fixed in 10.0.1.

Radar Score

3,1642748173

231 findings over 2 of 2 images measured

KEV ×5 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
matrixdotorg/synapsev1.78.023321552,420
library/postgres15.2-alpine041618744

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

231 distinct across the version’s images
SeverityAdvisoryPackageFixed in
CriticalGHSA-j7hp-h8jx-5pprKEVpillow@9.4.010.0.1
CriticalPYSEC-2026-1794KEVpillow@9.4.010.0.1
HighALPINE-CVE-2025-15467openssl@3.0.8-r33.0.19-r0
HighALPINE-CVE-2024-6119openssl@3.0.8-r33.0.15-r0
HighALPINE-CVE-2023-2650openssl@3.0.8-r33.0.9-r0
HighALPINE-CVE-2024-2511openssl@3.0.8-r33.0.12-r5
HighDSA-5497-2KEVlibwebp@0.6.1-2.10.6.1-2.1+deb11u2
HighDSA-5514-1KEVglibc@2.31-13+deb11u52.31-13+deb11u7
HighDSA-5570-1KEVnghttp2@1.43.0-11.43.0-1+deb11u1
MediumDLA-3859-1systemd@247.3-7+deb11u1247.3-7+deb11u6
MediumDLA-4052-1postgresql-13@13.9-0+deb11u113.19-0+deb11u1
MediumDSA-5673-1glibc@2.31-13+deb11u52.31-13+deb11u9
MediumDLA-3898-1nghttp2@1.43.0-11.43.0-1+deb11u2
MediumDSA-5523-1curl@7.74.0-1.3+deb11u77.74.0-1.3+deb11u10
MediumDSA-5417-1openssl@1.1.1n-0+deb11u41.1.1n-0+deb11u5
MediumALPINE-CVE-2024-5535openssl@3.0.8-r33.0.14-r0
MediumDLA-3942-1openssl@1.1.1n-0+deb11u41.1.1n-0+deb11u6
MediumDLA-3942-2openssl@1.1.1n-0+deb11u41.1.1w-0+deb11u2
MediumALPINE-CVE-2023-5363openssl@3.0.8-r33.0.12-r0
MediumALPINE-CVE-2024-37371krb5@1.20.1-r01.20.2-r1
MediumGHSA-cx63-2mw6-8hw5setuptools@65.5.170.0.0
MediumGHSA-38jv-5279-wg99urllib3@1.26.122.6.3
MediumALPINE-CVE-2024-4741openssl@3.0.8-r33.0.14-r0
MediumPYSEC-2025-49setuptools@65.5.178.1.1
MediumALPINE-CVE-2023-3446openssl@3.0.8-r33.0.9-r3
MediumGHSA-3f63-hfp8-52jqpillow@9.4.010.2.0
MediumALPINE-CVE-2023-36054krb5@1.20.1-r01.20.2-r0
MediumGHSA-j8r2-6x86-q33qrequests@2.27.12.31.0
MediumALPINE-CVE-2023-5678openssl@3.0.8-r33.0.12-r1
MediumPYSEC-2026-2269pyopenssl@23.0.026.0.0
MediumALPINE-CVE-2025-9230openssl@3.0.8-r33.0.19-r0
MediumPYSEC-2023-192urllib3@1.26.122.0.6
MediumALPINE-CVE-2023-6129openssl@3.0.8-r33.0.12-r2
MediumPYSEC-2024-60idna@3.43.7
MediumALPINE-CVE-2024-0727openssl@3.0.8-r33.0.12-r4
MediumGHSA-9v9h-cgj8-h64pcryptography@39.0.142.0.2
MediumGHSA-c8m8-j448-xjx7twisted@22.10.024.7.0rc1
MediumGHSA-2xpw-w6gg-jr37urllib3@1.26.122.6.0
MediumGHSA-gm62-xv2j-4w53urllib3@1.26.122.6.0
MediumGHSA-8ghj-p4vj-mr35pillow@9.4.010.0.0
MediumALPINE-CVE-2023-6237openssl@3.0.8-r33.0.12-r3
MediumGHSA-3ww4-gg4f-jr7fcryptography@39.0.142.0.0
MediumALPINE-CVE-2024-9143openssl@3.0.8-r33.0.15-r1
MediumALPINE-CVE-2023-3817openssl@3.0.8-r33.0.10-r0
MediumPYSEC-2024-230certifi@2022.12.72024.7.4
MediumGHSA-8w49-h785-mj3ctornado@6.16.4.2
MediumALPINE-CVE-2023-29491ncurses@6.3_p20221119-r06.3_p20221119-r1
MediumGHSA-v56r-hwv5-mxg6matrix-synapse@1.78.01.127.1
MediumPYSEC-2023-254cryptography@39.0.141.0.6
MediumGHSA-wvwj-cvrp-7pv5authlib@1.2.01.6.9

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.0latest3 years agov1.78.027481733,164

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/tranhailong/synapse.svg)](https://charts.stackradar.io/charts/tranhailong/synapse)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.