StackRadar

wallabag Helm chart

hpVerified publisher

Scored 14 Sept 2026

Single-Instance SQLite wallabag.

Latest 0.1.7 6 days agoapp version 2.6.14 0Artifact Hub

wallabag 0.1.7 deploys 1 container image: wallabag/wallabag. Across them, 113 findings1 critical, 2 high. The highest contribution is ALPINE-CVE-2025-6965 in sqlite 3.44.2-r1, fixed in 3.44.2-r2.

Radar Score

1,136121199

113 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
wallabag/wallabag2.6.141211991,136

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

113 distinct across the version’s images
SeverityAdvisoryPackageFixed in
CriticalALPINE-CVE-2025-6965sqlite@3.44.2-r13.44.2-r2
HighALPINE-CVE-2018-18312perl@5.38.5-r05.26.3-r0
HighALPINE-CVE-2018-18311perl@5.38.5-r05.26.3-r0
MediumGHSA-25mq-v84q-4j7rguzzlehttp/guzzle@5.3.46.5.8
MediumGHSA-f2wf-25xc-69c9guzzlehttp/guzzle@5.3.46.5.7
MediumGHSA-w248-ffj2-4v5qguzzlehttp/guzzle@5.3.46.5.7
MediumGHSA-q559-8m2m-g699guzzlehttp/guzzle@5.3.46.5.8
MediumGHSA-cwmx-hcrq-mhc3guzzlehttp/guzzle@5.3.46.5.6
MediumALPINE-CVE-2025-9230openssl@3.1.8-r03.1.8-r1
MediumGHSA-7p85-w9px-jpjptwig/twig@v3.11.33.26.0
MediumGHSA-m7v2-7gxm-vc2vsymfony/monolog-bridge@v5.2.125.4.52
MediumGHSA-2q52-x2ff-qgfrtwig/twig@v3.11.33.26.0
MediumGHSA-3rg7-wf37-54rmsymfony/http-foundation@v4.4.495.4.50
MediumALPINE-CVE-2025-9232openssl@3.1.8-r03.1.8-r1
LowGHSA-xx3c-qf5g-hc39symfony/mailer@v4.4.495.4.52
LowGHSA-6h46-9jf5-q59xsymfony/security-http@v4.4.505.4.53
LowGHSA-ph86-p8f6-f9r2symfony/security-http@v4.4.505.4.52
LowGHSA-529h-vh3j-85hqtwig/twig@v3.11.33.27.0
LowGHSA-4qpc-3hr4-r2p4symfony/yaml@v5.3.145.4.52
LowGHSA-9frc-8383-795msymfony/yaml@v5.3.145.4.52
LowGHSA-qpmx-3rfj-7rhvsymfony/mime@v4.4.475.4.52
LowGHSA-c2p3-7m5p-cv8xsymfony/yaml@v5.3.145.4.52
LowGHSA-94g3-g5v7-q4jgphpseclib/phpseclib@3.0.463.0.50
LowGHSA-2xf4-cg6j-vhgqsymfony/polyfill-intl-idn@v1.33.01.38.1
LowGHSA-pr2w-4gpj-cpq4twig/twig@v3.11.33.26.0
LowGHSA-6qh9-h6wf-jgqcsymfony/cache@v5.4.465.4.52
LowGHSA-38cx-cq6f-5755symfony/http-client@v5.4.495.4.53
LowGHSA-vqc8-7275-q272symfony/mime@v4.4.475.4.52
LowGO-2026-4341stdlib@go1.25.11.24.12
LowGHSA-h5x3-xfc9-m39hsymfony/routing@v4.4.445.4.53
LowGHSA-24x9-r6q4-q93wtwig/twig@v3.11.33.26.0
LowGHSA-7fxw-r6jv-74c8twig/twig@v3.11.33.26.0
LowALPINE-CVE-2026-40200musl@1.2.4_git20230717-r51.2.4_git20230717-r6
LowGHSA-x6g4-fwcc-jj8wsymfony/dom-crawler@v4.4.455.4.52
LowGHSA-3qpq-r242-jqj7phpseclib/phpseclib@3.0.463.0.52
LowGHSA-v5mv-p594-2x33guzzlehttp/guzzle@5.3.47.15.2
LowALPINE-CVE-2025-12818postgresql16@16.10-r016.11-r0
LowGHSA-5v5v-ww74-355vtwig/twig@v3.11.33.27.0
LowGHSA-h8vq-8gpg-mhcgtwig/twig@v3.11.33.27.0
LowGHSA-g7m4-839x-ch6vspomky-labs/otphp@v10.0.311.4.3
LowGHSA-8x9c-rmqh-456ctwig/twig@v3.11.33.27.0
LowGHSA-22wq-q86m-83fhenshrined/svg-sanitize@0.15.40.22.0
LowGHSA-72xp-p242-47p9symfony/routing@v4.4.445.4.52
LowGO-2026-4981stdlib@go1.25.11.25.10
LowGHSA-h95v-h523-3mw8guzzlehttp/guzzle@5.3.47.15.1
LowGO-2026-4977stdlib@go1.25.11.25.10
LowGO-2026-4986stdlib@go1.25.11.25.10
LowGO-2026-4918stdlib@go1.25.11.25.10
LowGO-2026-4337stdlib@go1.25.11.24.13
LowGHSA-wm3w-8rrp-j577guzzlehttp/guzzle@5.3.47.15.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.7latest6 days ago2.6.141211991,136
0.1.627 days ago2.6.141211991,136

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/hp/wallabag.svg)](https://charts.stackradar.io/charts/hp/wallabag)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.