wikijs Helm chart
homeenterpriseincScored 14 Sept 2026
Wiki.js helm chart
Latest 1.4.0 2 years agoapp version canary-2.5.243 0Artifact Hub
wikijs 1.4.0 deploys 1 container image: requarks/wiki. Across them, 302 findings — 0 critical, 6 high. The highest contribution is ALPINE-CVE-2022-37434 in zlib 1.2.11-r3, fixed in 1.2.11-r4.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
1 image
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| requarks/ | canary-2.5.243 | 0691205 | 4,253 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
302 distinct across the version’s images
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| High | ALPINE-CVE-2022-37434 | zlib | 1.2.11-r4 |
| High | GHSA-r5fr-rjxr-66jc | lodash | 4.18.0 |
| High | GHSA-w573-4hg7-7wgq | decode-uri-component | 0.2.1 |
| High | GHSA-3jfq-g458-7qm9 | tar | 3.2.2 |
| High | GHSA-x3m8-899r-f7c3 | xml-crypto | 2.1.6 |
| High | GHSA-9p8x-f768-wp2g | xml-crypto | 2.1.6 |
| Medium | GHSA-hrpp-h998-j3pp | qs | 6.5.3 |
| Medium | GHSA-2p57-rm9w-gvfp | ip | no fix listed |
| Medium | GHSA-xvch-5gv4-984h | minimist | 1.2.6 |
| Medium | GHSA-cf4h-3jhx-xvhq | underscore | 1.12.1 |
| Medium | GHSA-896r-f27r-55mw | json-schema | 0.4.0 |
| Medium | GHSA-9c47-m6qq-7p4h | json5 | 2.2.2 |
| Medium | GHSA-9w5j-4mwv-2wj8 | simple-git | 3.16.0 |
| Medium | GHSA-fpw7-j2hg-69v5 | mysql2 | 3.9.4 |
| Medium | GHSA-8hfj-j24r-96c4 | moment | 2.29.2 |
| Medium | GHSA-wc69-rhjr-hc9g | moment | 2.29.4 |
| Medium | GHSA-48ww-j4fc-435p | nodemailer | 6.4.16 |
| Medium | GHSA-28xr-mwxg-3qc8 | simple-git | 3.5.0 |
| Medium | GHSA-3f95-r44v-8mrg | simple-git | 3.3.0 |
| Medium | GHSA-m974-647v-whv7 | passport-saml | 3.2.2 |
| Medium | GHSA-pmh2-wpjm-fj45 | mysql2 | 3.9.8 |
| Medium | GHSA-652h-xwhf-q4h6 | ssh2 | 1.4.0 |
| Medium | GHSA-fwr7-v2mv-hh25 | async | 2.6.4 |
| Medium | GHSA-93q8-gq69-wqmw | ansi-regex | 3.0.1 |
| Medium | GHSA-9p95-fxvg-qgq2 | simple-git | 3.15.0 |
| Medium | GHSA-fjxv-7rqg-78g4 | form-data | 2.5.4 |
| Medium | GHSA-wm7h-9275-46v2 | dicer | no fix listed |
| Medium | GHSA-r659-8xfp-j327 | objection | 2.2.16 |
| Medium | GHSA-jqv5-7xpx-qj74 | sqlite3 | 5.1.5 |
| Medium | GHSA-74fj-2j2h-c42q | follow-redirects | 1.14.7 |
| Medium | GHSA-crh6-fp67-6883 | @xmldom/ | 0.7.7 |
| Medium | GHSA-crh6-fp67-6883 | xmldom | no fix listed |
| Medium | GHSA-c2qf-rxjj-qqgw | semver | 5.7.2 |
| Medium | GHSA-43fc-jf86-j433 | axios | 0.30.3 |
| Medium | ALPINE-CVE-2021-42380 | busybox | 1.31.1-r11 |
| Medium | GHSA-r683-j2x4-v87g | node-fetch | 2.6.7 |
| Medium | GHSA-gx9m-whjm-85jf | dompurify | 2.5.0 |
| Medium | ALPINE-CVE-2021-42379 | busybox | 1.31.1-r11 |
| Medium | ALPINE-CVE-2021-42381 | busybox | 1.31.1-r11 |
| Medium | ALPINE-CVE-2021-42385 | busybox | 1.31.1-r11 |
| Medium | ALPINE-CVE-2021-42378 | busybox | 1.31.1-r11 |
| Medium | ALPINE-CVE-2021-42382 | busybox | 1.31.1-r11 |
| Medium | ALPINE-CVE-2021-42384 | busybox | 1.31.1-r11 |
| Medium | ALPINE-CVE-2021-42386 | busybox | 1.31.1-r11 |
| Medium | GHSA-4rch-2fh8-94vw | mysql2 | 3.9.7 |
| Medium | GHSA-q8pj-2vqx-8ggc | css-what | 5.0.1 |
| Medium | GHSA-265q-28rp-chq5 | node-uuid | 1.4.4 |
| Medium | GHSA-pq67-2wwv-3xjx | tar-fs | 2.1.2 |
| Medium | GHSA-wf6x-7x77-mvgw | immutable | 3.8.3 |
| Medium | GHSA-9qrh-qjmc-5w2p | sqlite3 | 5.0.3 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.4.0latest | 2 years ago | canary-2.5.243 | 0691205 | 4,253 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
[](https://charts.stackradar.io/charts/homeenterpriseinc/wikijs)
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.