StackRadar

karakeep Helm chart

helmforgeVerified publisher

Scored 14 Sept 2026

AI-powered bookmark manager with full-text search and web archiving

Latest 1.2.9 2 days agoapp version 0.33.2 3Artifact Hub

karakeep 1.2.9 deploys 3 container images: ghcr.io/karakeep-app/karakeep, getmeili/meilisearch and ghcr.io/browserless/chromium. Across them, 970 findings0 critical, 1 high. The highest contribution is GHSA-r5fr-rjxr-66jc in lodash 4.17.23, fixed in 4.18.0. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.

Radar Score

9,46001112857

970 findings over 3 of 3 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/karakeep-app/karakeep0.33.201885986,822
getmeili/meilisearchv1.53.00046149
ghcr.io/browserless/chromiumv2.55.400202532,489

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

838 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-f65p-4m7j-42xcfast-uri@3.1.53.1.6
LowGHSA-fph4-wmhf-6fwffast-uri@3.1.53.1.6
LowDEBIAN-CVE-2026-5435glibc@2.36-9+deb12u14no fix listed
LowGHSA-h35f-9h28-mq5csetuptools@68.1.283.0.0
LowUBUNTU-CVE-2026-59890setuptools@68.1.2-2ubuntu1.2no fix listed
LowGHSA-hpcv-96wg-7vj8dompurify@3.2.63.4.6
LowGHSA-p6gq-j5cr-w38fnodemailer@7.0.139.0.1
LowDEBIAN-CVE-2024-36615ffmpeg@7:5.1.9-0+deb12u1no fix listed
LowDEBIAN-CVE-2026-54369acl@2.3.1-3no fix listed
LowGO-2024-2963stdlib@go1.20.71.21.12
LowGHSA-gqvv-2mrq-wpjvhono@4.12.324.13.5
LowDEBIAN-CVE-2025-52496mbedtls@2.28.3-1no fix listed
LowDEBIAN-CVE-2026-70628ffmpeg@7:5.1.9-0+deb12u1no fix listed
LowGHSA-6gmq-8vp8-gcm6@xmldom/xmldom@0.9.60.9.12
LowUBUNTU-CVE-2026-7017perl@5.38.2-3.2ubuntu0.35.38.2-3.2ubuntu0.4
LowUBUNTU-CVE-2026-15806python3.12@3.12.3-1ubuntu0.15no fix listed
LowDEBIAN-CVE-2026-32739libheif@1.15.1-1+deb12u1no fix listed
LowUBUNTU-CVE-2026-16118glib2.0@2.80.0-6ubuntu3.8no fix listed
LowDEBIAN-CVE-2021-4214libpng1.6@1.6.39-2+deb12u5no fix listed
LowDEBIAN-CVE-2026-54371attr@1:2.5.1-4no fix listed
LowGHSA-vvjj-xcjg-gr5gnodemailer@7.0.138.0.5
LowGHSA-2xp9-vwfh-vxw4next@16.2.1216.3.3
LowDEBIAN-CVE-2026-32814libheif@1.15.1-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-75141ffmpeg@7:5.1.9-0+deb12u1no fix listed
LowDEBIAN-CVE-2026-75142ffmpeg@7:5.1.9-0+deb12u1no fix listed
LowDEBIAN-CVE-2026-75144ffmpeg@7:5.1.9-0+deb12u1no fix listed
LowUBUNTU-CVE-2024-52615avahi@0.8-13ubuntu6.2no fix listed
LowDEBIAN-CVE-2026-52491tiff@4.5.0-6+deb12u4no fix listed
LowGHSA-r47g-fvhr-h676dompurify@3.2.63.4.6
LowDEBIAN-CVE-2026-32738libheif@1.15.1-1+deb12u1no fix listed
LowDEBIAN-CVE-2023-1916tiff@4.5.0-6+deb12u4no fix listed
LowDEBIAN-CVE-2026-58470wget@1.21.3-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-13858ffmpeg@7:5.1.9-0+deb12u1no fix listed
LowPYSEC-2026-3721pip@24.026.2
LowUBUNTU-CVE-2026-13346python-pip@24.0+dfsg-1ubuntu1.3no fix listed
LowDEBIAN-CVE-2025-15079curl@7.88.1-10+deb12u15no fix listed
LowUBUNTU-CVE-2026-60001openssh@1:9.6p1-3ubuntu13.181:9.6p1-3ubuntu13.18+Fips1
LowUBUNTU-CVE-2025-12781python3.12@3.12.3-1ubuntu0.15no fix listed
LowDEBIAN-CVE-2026-27447cups@2.4.2-3+deb12u9no fix listed
LowDEBIAN-CVE-2026-58471wget@1.21.3-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-58472wget@1.21.3-1+deb12u1no fix listed
LowUBUNTU-CVE-2025-15366python3.12@3.12.3-1ubuntu0.15no fix listed
LowUBUNTU-CVE-2026-50259xorg-server@2:21.1.12-1ubuntu1.6no fix listed
LowGHSA-crv5-9vww-q3g8dompurify@3.2.63.4.0
LowDEBIAN-CVE-2026-77118graphicsmagick@1.4+really1.3.40-4+deb12u1no fix listed
LowDEBIAN-CVE-2026-25835mbedtls@2.28.3-1no fix listed
LowGO-2023-2382stdlib@go1.20.71.20.12
LowDEBIAN-CVE-2026-6429curl@7.88.1-10+deb12u15no fix listed
LowGHSA-v2wj-7wpq-c8vvdompurify@3.2.63.3.2
LowDEBIAN-CVE-2026-65706ffmpeg@7:5.1.9-0+deb12u1no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.2.9latest2 days ago0.33.2011128579,460

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/helmforge/karakeep.svg)](https://charts.stackradar.io/charts/helmforge/karakeep)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.