aperag Helm chart
kubeblocksVerified publisherScored 14 Sept 2026
A Helm chart for Kubernetes
Latest 0.0.0-nightly 1 year agodeploys tag v0.0.0-nightly 0Artifact Hub
aperag 0.0.0-nightly deploys 3 container images: apecloud/aperag, apecloud/doc-ray and apecloud/aperag-frontend. Across the 2 measured, 699 findings — 3 critical, 7 high — 3 on CISA KEV. The highest contribution is GHSA-7488-6r32-c95q in litellm 1.80.0, fixed in 1.84.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| apecloud/ | v0.0.0-nightly | 3498481 | 6,947 |
| apecloud/ | v0.2.0 | — | not yet scanned |
| apecloud/ | v0.0.0-nightly | 032585 | 1,458 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | DEBIAN-CVE-2026-18798 | openssl | 3.5.7-1~deb13u2 |
| Medium | ALPINE-CVE-2025-9231 | openssl | 3.3.5-r0 |
| Medium | DEBIAN-CVE-2025-9231 | openssl | 3.5.1-1+deb13u1 |
| Medium | GHSA-956x-8gvw-wg5v | gitpython | 3.1.51 |
| Medium | DEBIAN-CVE-2026-33845 | gnutls28 | 3.8.9-3+deb13u4 |
| Medium | DEBIAN-CVE-2011-3389 | gnutls28 | no fix listed |
| Medium | GHSA-qh6h-p6c9-ff54 | langchain-core | 1.2.22 |
| Medium | GHSA-68j8-pq59-fqgm | nltk | 3.9.3 |
| Medium | GHSA-847f-9342-265h | h2 | 4.3.0 |
| Medium | DEBIAN-CVE-2026-42009 | gnutls28 | 3.8.9-3+deb13u4 |
| Medium | DEBIAN-CVE-2026-63076 | openssl | 3.5.7-1~deb13u2 |
| Medium | GHSA-4xpc-pv4p-pm3w | litellm | 1.84.0 |
| Medium | PYSEC-2026-2161 | gitpython | 3.1.47 |
| Medium | DEBIAN-CVE-2026-33846 | gnutls28 | 3.8.9-3+deb13u4 |
| Medium | GHSA-9v9h-cgj8-h64p | cryptography | 42.0.2 |
| Medium | GHSA-6wvf-77m9-58rm | litellm | 1.83.7 |
| Medium | GHSA-jm6w-m3j8-898g | nltk | 3.9.4 |
| Medium | GHSA-rpm5-65cw-6hj4 | gitpython | 3.1.47 |
| Medium | GHSA-qrc4-49gv-mv9m | litellm | 1.83.14 |
| Medium | GHSA-89xv-2m56-2m9x | next | 15.5.21 |
| Medium | DEBIAN-CVE-2026-42764 | openssl | 3.5.6-1~deb13u2 |
| Medium | DEBIAN-CVE-2025-13151 | libtasn1-6 | 4.20.0-2+deb13u1 |
| Medium | GHSA-2xpw-w6gg-jr37 | urllib3 | 2.6.0 |
| Medium | GHSA-gm62-xv2j-4w53 | urllib3 | 2.6.0 |
| Medium | GHSA-p9j2-gv94-2wf4 | next | 15.5.21 |
| Medium | DEBIAN-CVE-2024-26461 | krb5 | no fix listed |
| Medium | DEBIAN-CVE-2019-1010024 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2026-5450 | glibc | 2.41-12+deb13u4 |
| Medium | GHSA-3ww4-gg4f-jr7f | cryptography | 42.0.0 |
| Medium | ALPINE-CVE-2024-9143 | openssl | 3.3.2-r1 |
| Medium | DEBIAN-CVE-2026-34182 | openssl | 3.5.6-1~deb13u2 |
| Medium | GHSA-f23m-r3pf-42rh | lodash | 4.18.0 |
| Medium | GHSA-wpfp-gwwc-vwq6 | litellm | 1.83.10 |
| Medium | GHSA-r9mr-m37c-5fr3 | gitpython | 3.1.54 |
| Medium | DEBIAN-CVE-2026-34183 | openssl | 3.5.6-1~deb13u2 |
| Medium | GHSA-vqfr-h8mv-ghfj | h11 | 0.16.0 |
| Medium | ALPINE-CVE-2026-31790 | openssl | 3.3.7-r0 |
| Medium | DEBIAN-CVE-2026-31790 | openssl | 3.5.5-1~deb13u2 |
| Medium | PYSEC-2026-2120 | black | 26.3.0 |
| Medium | DEBIAN-CVE-2026-34180 | openssl | 3.5.6-1~deb13u2 |
| Medium | DEBIAN-CVE-2026-7383 | openssl | 3.5.6-1~deb13u2 |
| Medium | DEBIAN-CVE-2026-8924 | curl | no fix listed |
| Medium | DEBIAN-CVE-2026-8376 | perl | 5.40.1-6+deb13u1 |
| Medium | DEBIAN-CVE-2026-14457 | openssl | 3.5.7-1~deb13u2 |
| Medium | GHSA-wvwj-cvrp-7pv5 | authlib | 1.6.9 |
| Medium | PYSEC-2026-3717 | django | 5.2.17 |
| Medium | ALPINE-CVE-2025-9232 | openssl | 3.3.5-r0 |
| Medium | DEBIAN-CVE-2025-9232 | openssl | 3.5.1-1+deb13u1 |
| Medium | GHSA-g867-7843-wf8q | pypdf | 6.14.2 |
| Medium | GHSA-jjhc-v7c2-5hh6 | litellm | 1.83.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.0.0-nightlylatest | 1 year ago | v0.0.0-nightly | 37123566 | 8,405 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.