calibre-web 1.1.3 Helm chart
charts-derwitt-devVerified publisherScored 27 Sept 2026
A Helm chart for Calibre-Web. Calibre-Web is a web app for browsing, reading and downloading eBooks stored in a Calibre database. This chart expects a rootless image with bundled Calibre binaries so it can run with a read-only root filesystem.
Version 1.1.3 yesterdayapp version 1.1.2 0Artifact Hub
calibre-web 1.1.3 deploys 1 container image: ghcr.io/wittdennis/calibre-web. Across them, 508 findings — 0 critical, 1 high. The highest contribution is DEBIAN-CVE-2023-34152 in imagemagick 8:6.9.11.60+dfsg-1.6+deb12u13, with no fix listed.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| ghcr.io/ | 1.1.2 | 0177430 | 5,190 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-9538 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-41071 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-74860 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2017-7275 | imagemagick | no fix listed |
| Low | DEBIAN-CVE-2024-2236 | libgcrypt20 | no fix listed |
| Low | DEBIAN-CVE-2023-5388 | nss | no fix listed |
| Low | GHSA-jwv3-5hgf-82ww | cryptography | 49.0.0 |
| Low | DEBIAN-CVE-2026-84384 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-84447 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-33164 | libde265 | 1.0.11-1+deb12u3 |
| Low | DEBIAN-CVE-2026-86145 | pcre2 | 10.42-1+deb12u1 |
| Low | DEBIAN-CVE-2025-69720 | ncurses | no fix listed |
| Low | DEBIAN-CVE-2026-32882 | libheif | no fix listed |
| Low | GO-2022-0969 | stdlib | 1.18.6 |
| Low | DEBIAN-CVE-2023-46361 | jbig2dec | no fix listed |
| Low | DEBIAN-CVE-2026-5928 | glibc | no fix listed |
| Low | GHSA-55h5-xmcq-c37v | pypdf | 6.14.0 |
| Low | DEBIAN-CVE-2024-31852 | llvm-toolchain-15 | no fix listed |
| Low | DEBIAN-CVE-2026-47247 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-42497 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-84444 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-84446 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-48962 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-86421 | imagemagick | no fix listed |
| Low | GO-2022-0493 | stdlib | 1.17.10 |
| Low | GHSA-r6ph-v2qm-q3c2 | cryptography | 46.0.5 |
| Low | DEBIAN-CVE-2020-15719 | openldap | no fix listed |
| Low | DEBIAN-CVE-2026-88807 | libxrender | no fix listed |
| Low | DEBIAN-CVE-2026-11822 | sqlite3 | no fix listed |
| Low | DEBIAN-CVE-2025-7458 | sqlite3 | no fix listed |
| Low | PYSEC-2026-3554 | cryptography | 49.0.0 |
| Low | GO-2023-2185 | stdlib | 1.20.11 |
| Low | GHSA-fc8x-2rww-xw9m | pypdf | 6.15.0 |
| Low | GHSA-5qjq-93h5-hrgp | pypdf | 6.14.0 |
| Low | DEBIAN-CVE-2026-12912 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-75803 | openssl | 3.0.22-1~deb12u1 |
| Low | DEBIAN-CVE-2025-1372 | elfutils | no fix listed |
| Low | DEBIAN-CVE-2025-1365 | elfutils | no fix listed |
| Low | DEBIAN-CVE-2023-39329 | openjpeg2 | no fix listed |
| Low | DEBIAN-CVE-2026-32741 | libheif | no fix listed |
| Low | DEBIAN-CVE-2026-54240 | libde265 | 1.0.11-1+deb12u3 |
| Low | DEBIAN-CVE-2026-54241 | libde265 | 1.0.11-1+deb12u3 |
| Low | GO-2022-0537 | stdlib | 1.17.13 |
| Low | DEBIAN-CVE-2026-48961 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-5435 | glibc | no fix listed |
| Low | DEBIAN-CVE-2023-32570 | dav1d | no fix listed |
| Low | DEBIAN-CVE-2022-27943 | gcc-12 | no fix listed |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | GO-2023-1703 | stdlib | 1.19.8 |
| Low | GO-2022-0521 | stdlib | 1.17.12 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.1.3latest | yesterday | 1.1.2 | 0177430 | 5,190 |
| 1.1.2 | 26 days ago | 1.1.1 | 0178448 | 5,362 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.