tl;dr:
- If the password manager server is hacked and compromised, then syncing your passwords with the compromised server will lead to compromised passwords (duh)
- None of the providers tested have (or have had in the past) compromised servers.
and an observation or two:
- Vaultwarden is free, self-hostable, and doesn't rely on trust in a third party.
- Keepass (and its client variants, like KeepassXC which is pretty great) is even more secure because there is no server, just an encrypted file you can store anywhere.