aperag 0.0.0-nightly Helm chart
kubeblocksVerified publisherScored 14 Sept 2026
A Helm chart for Kubernetes
Version 0.0.0-nightly 1 year agodeploys tag v0.0.0-nightly 0Artifact Hub
aperag 0.0.0-nightly deploys 3 container images: apecloud/aperag, apecloud/doc-ray and apecloud/aperag-frontend. Across the 2 measured, 699 findings — 3 critical, 7 high — 3 on CISA KEV. The highest contribution is GHSA-7488-6r32-c95q in litellm 1.80.0, fixed in 1.84.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| apecloud/ | v0.0.0-nightly | 3498481 | 6,947 |
| apecloud/ | v0.2.0 | — | not yet scanned |
| apecloud/ | v0.0.0-nightly | 032585 | 1,458 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-3f7w-8rr8-f37f | gitpython | 3.1.57 |
| Low | DEBIAN-CVE-2026-9538 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-58050 | libssh2 | 1.11.1-1+deb13u2 |
| Low | DEBIAN-CVE-2020-15719 | openldap | no fix listed |
| Low | PYSEC-2026-2095 | aiohttp | 3.13.4 |
| Low | GHSA-4fvr-rgm6-gqmc | aiohttp | 3.14.1 |
| Low | DEBIAN-CVE-2026-66034 | libssh2 | 1.11.1-1+deb13u2 |
| Low | GHSA-8x88-c5mf-7j5w | tar | 7.5.18 |
| Low | PYSEC-2025-249 | llama-index | 0.12.41 |
| Low | GHSA-w8v5-vhqr-4h9v | diskcache | no fix listed |
| Low | GHSA-8359-h9fx-j6v9 | datamodel-code-generator | 0.62.0 |
| Low | GHSA-7753-xrfw-ch36 | llama-index-core | 0.12.38 |
| Low | DEBIAN-CVE-2026-82208 | curl | no fix listed |
| Low | GHSA-gphh-9q3h-jgpp | banks | 2.4.2 |
| Low | GHSA-j5g9-f88f-gfj3 | httplib2 | 0.32.0 |
| Low | DEBIAN-CVE-2025-15661 | libssh2 | 1.11.1-1+deb13u1 |
| Low | GHSA-45hq-cxwh-f6vc | pillow | 12.3.0 |
| Low | GHSA-fjr4-x663-mwxc | gitpython | 3.1.54 |
| Low | DEBIAN-CVE-2026-54411 | pam | no fix listed |
| Low | DEBIAN-CVE-2026-2219 | dpkg | 1.22.22 |
| Low | GHSA-5x94-69rx-g8h2 | pillow | 12.3.0 |
| Low | GHSA-phj9-mv4w-65pm | pillow | 12.3.0 |
| Low | DEBIAN-CVE-2026-42497 | perl | 5.40.1-6+deb13u1 |
| Low | DEBIAN-CVE-2026-41992 | gzip | 1.13-1+deb13u1 |
| Low | GHSA-5578-w22f-pfx9 | datamodel-code-generator | 0.64.0 |
| Low | GHSA-f2ff-p2ww-7p4p | sqlparse | 0.6.0 |
| Low | GHSA-pwgv-4x5q-6m9f | sqlparse | 0.6.0 |
| Low | GHSA-8v84-f9pq-wr9x | pillow | 12.3.0 |
| Low | GHSA-c2c7-rcm5-vvqj | picomatch | 2.3.2 |
| Low | GHSA-hvrp-rf83-w775 | mcp | 1.27.2 |
| Low | GHSA-p4rw-rvv2-7xwr | nltk | 3.10.3 |
| Low | GHSA-5qjq-93h5-hrgp | pypdf | 6.14.0 |
| Low | DEBIAN-CVE-2026-12064 | curl | no fix listed |
| Low | GHSA-82w8-qh3p-5jfq | starlette | 1.3.1 |
| Low | GHSA-mwp4-54f8-5fhr | ip-address | 10.3.1 |
| Low | DEBIAN-CVE-2026-8932 | curl | no fix listed |
| Low | GHSA-3x9g-8vmp-wqvf | tornado | 6.5.6 |
| Low | GHSA-6ww7-3frv-cqxh | nltk | 3.10.3 |
| Low | PYSEC-2026-3553 | cryptography | 49.0.0 |
| Low | DEBIAN-CVE-2026-8286 | curl | no fix listed |
| Low | GHSA-wf93-45jw-7689 | pip | 26.1.2 |
| Low | DEBIAN-CVE-2026-75803 | openssl | 3.5.7-1~deb13u2 |
| Low | GHSA-r6q2-hw4h-h46w | tar | 7.5.4 |
| Low | GHSA-2883-xcg3-v3hh | js-yaml | 4.3.2 |
| Low | GHSA-6r8x-57c9-28j4 | pillow | 12.3.0 |
| Low | GHSA-9hw9-ch79-4vh6 | pillow | 12.3.0 |
| Low | GHSA-jjj6-mw9f-p565 | pillow | 12.3.0 |
| Low | DEBIAN-CVE-2026-4046 | glibc | 2.41-12+deb13u3 |
| Low | GHSA-r292-9mhp-454m | tar | 7.5.21 |
| Low | GHSA-xgmm-8j9v-c9wx | pyjwt | 2.13.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.0.0-nightlylatest | 1 year ago | v0.0.0-nightly | 37123566 | 8,405 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.