wikijs 6.4.2 Helm chart
geek-cookbookVerified publisherScored 14 Sept 2026
Make documentation a joy to write using Wiki.js's beautiful and intuitive interface!
Version 6.4.2 4 years agoapp version version-2.5.201 3Artifact Hub
wikijs 6.4.2 deploys 1 container image: ghcr.io/linuxserver/wikijs. Across them, 354 findings — 0 critical, 15 high. The highest contribution is ALPINE-CVE-2022-25236 in expat 2.2.10-r1, fixed in 2.2.10-r4. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| ghcr.io/ | version-2.5.201 | 015141198 | 5,946 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| High | ALPINE-CVE-2022-25236 | expat | 2.2.10-r4 |
| High | ALPINE-CVE-2022-0778 | openssl | 1.1.1n-r0 |
| High | ALPINE-CVE-2022-32214 | nodejs | 14.20.1-r0 |
| High | ALPINE-CVE-2018-25032 | zlib | 1.2.12-r0 |
| High | ALPINE-CVE-2022-32215 | nodejs | 14.20.1-r0 |
| High | ALPINE-CVE-2022-37434 | zlib | 1.2.12-r2 |
| High | ALPINE-CVE-2022-32213 | nodejs | 14.20.1-r0 |
| High | ALPINE-CVE-2022-21824 | nodejs | 14.19.0-r0 |
| High | GHSA-r5fr-rjxr-66jc | lodash | 4.18.0 |
| High | GHSA-w573-4hg7-7wgq | decode-uri-component | 0.2.1 |
| High | ALPINE-CVE-2022-32206 | curl | 7.79.1-r2 |
| High | GHSA-3jfq-g458-7qm9 | tar | 3.2.2 |
| High | GHSA-x3m8-899r-f7c3 | xml-crypto | 2.1.6 |
| High | GHSA-9p8x-f768-wp2g | xml-crypto | 2.1.6 |
| High | ALPINE-CVE-2022-32207 | curl | 7.79.1-r2 |
| Medium | GHSA-hrpp-h998-j3pp | qs | 6.10.3 |
| Medium | ALPINE-CVE-2021-22945 | curl | 7.79.0-r0 |
| Medium | ALPINE-CVE-2022-25235 | expat | 2.2.10-r4 |
| Medium | ALPINE-CVE-2022-22822 | expat | 2.2.10-r2 |
| Medium | ALPINE-CVE-2022-25315 | expat | 2.2.10-r4 |
| Medium | GHSA-2p57-rm9w-gvfp | ip | no fix listed |
| Medium | GHSA-xvch-5gv4-984h | minimist | 1.2.6 |
| Medium | GHSA-r628-mhmh-qjhw | tar | 4.4.15 |
| Medium | ALPINE-CVE-2022-23852 | expat | 2.2.10-r3 |
| Medium | GHSA-cf4h-3jhx-xvhq | underscore | 1.12.1 |
| Medium | GHSA-896r-f27r-55mw | json-schema | 0.4.0 |
| Medium | GHSA-cph5-m8f7-6c5x | axios | 0.21.2 |
| Medium | ALPINE-CVE-2022-1271 | xz | 5.2.5-r1 |
| Medium | ALPINE-CVE-2021-44531 | nodejs | 14.19.0-r0 |
| Medium | GHSA-9c47-m6qq-7p4h | json5 | 2.2.2 |
| Medium | ALPINE-CVE-2022-22823 | expat | 2.2.10-r2 |
| Medium | ALPINE-CVE-2022-22824 | expat | 2.2.10-r2 |
| Medium | ALPINE-CVE-2021-45960 | expat | 2.2.10-r2 |
| Medium | GHSA-9w5j-4mwv-2wj8 | simple-git | 3.16.0 |
| Medium | ALPINE-CVE-2022-1586 | pcre2 | 10.36-r1 |
| Medium | GHSA-fpw7-j2hg-69v5 | mysql2 | 3.9.4 |
| Medium | ALPINE-CVE-2022-28391 | busybox | 1.32.1-r8 |
| Medium | GHSA-8hfj-j24r-96c4 | moment | 2.29.2 |
| Medium | GHSA-wc69-rhjr-hc9g | moment | 2.29.4 |
| Medium | ALPINE-CVE-2022-32205 | curl | 7.79.1-r2 |
| Medium | GHSA-48ww-j4fc-435p | nodemailer | 6.4.16 |
| Medium | GHSA-28xr-mwxg-3qc8 | simple-git | 3.5.0 |
| Medium | ALPINE-CVE-2022-1587 | pcre2 | 10.36-r1 |
| Medium | ALPINE-CVE-2022-25314 | expat | 2.2.10-r4 |
| Medium | ALPINE-CVE-2021-22946 | curl | 7.79.0-r0 |
| Medium | ALPINE-CVE-2022-22826 | expat | 2.2.10-r2 |
| Medium | ALPINE-CVE-2022-22827 | expat | 2.2.10-r2 |
| Medium | GHSA-3f95-r44v-8mrg | simple-git | 3.3.0 |
| Medium | GHSA-9r2w-394v-53qc | tar | 4.4.16 |
| Medium | ALPINE-CVE-2021-46143 | expat | 2.2.10-r2 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 6.4.2latest | 4 years ago | version-2.5.201 | 015141198 | 5,946 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.