aperag Helm chart
kubeblocksVerified publisherScored 14 Sept 2026
A Helm chart for Kubernetes
Latest 0.0.0-nightly 1 year agodeploys tag v0.0.0-nightly 0Artifact Hub
aperag 0.0.0-nightly deploys 3 container images: apecloud/aperag, apecloud/doc-ray and apecloud/aperag-frontend. Across the 2 measured, 699 findings — 3 critical, 7 high — 3 on CISA KEV. The highest contribution is GHSA-7488-6r32-c95q in litellm 1.80.0, fixed in 1.84.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| apecloud/ | v0.0.0-nightly | 3498481 | 6,947 |
| apecloud/ | v0.2.0 | — | not yet scanned |
| apecloud/ | v0.0.0-nightly | 032585 | 1,458 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-vj7q-gjh5-988w | mcp | 1.28.1 |
| Low | DEBIAN-CVE-2026-63074 | openssl | 3.5.7-1~deb13u2 |
| Low | GHSA-mf52-j94g-746m | litellm | no fix listed |
| Low | GHSA-vx7x-vcc2-c44g | datamodel-code-generator | 0.63.0 |
| Low | GHSA-mq44-7p77-q5h7 | aiohttp | 3.14.2 |
| Low | DEBIAN-CVE-2025-14524 | curl | 8.14.1-2+deb13u4 |
| Low | GHSA-fc8x-2rww-xw9m | pypdf | 6.15.0 |
| Low | GHSA-hh9p-6wh2-4mfc | gitpython | 3.1.58 |
| Low | GHSA-3rp5-jjmw-4wv2 | gitpython | 3.1.53 |
| Low | GHSA-hg6j-4rv6-33pg | aiohttp | 3.14.0 |
| Low | DEBIAN-CVE-2026-6238 | glibc | no fix listed |
| Low | GHSA-4xh5-x5gv-qwph | pip | 25.3 |
| Low | GHSA-mwh4-6h8g-pg8w | aiohttp | 3.13.4 |
| Low | GHSA-w8wr-v893-vjvp | tar | 7.5.18 |
| Low | GHSA-pwv6-vv43-88gr | pillow | 12.2.0 |
| Low | DEBIAN-CVE-2026-34181 | openssl | 3.5.6-1~deb13u2 |
| Low | GHSA-3wxx-q3gv-pvvv | llama-index-core | 0.12.38 |
| Low | PYSEC-2025-251 | llama-index | 0.12.38 |
| Low | GHSA-9g9p-9gw9-jx7f | next | 15.5.10 |
| Low | DEBIAN-CVE-2026-5435 | glibc | no fix listed |
| Low | GHSA-h35f-9h28-mq5c | setuptools | 83.0.0 |
| Low | DEBIAN-CVE-2026-54369 | acl | no fix listed |
| Low | GHSA-mqqc-3gqh-h2x8 | aiohttp | 3.13.3 |
| Low | GHSA-f4xh-w4cj-qxq8 | langsmith | 0.8.18 |
| Low | GHSA-fj7v-r99m-22gq | pillow | 12.3.0 |
| Low | GHSA-fqwm-6jpj-5wxc | tornado | 6.5.5 |
| Low | DEBIAN-CVE-2026-7017 | perl | 5.40.1-6+deb13u1 |
| Low | ALPINE-CVE-2026-40200 | musl | 1.2.5-r3 |
| Low | GHSA-4633-3j49-mh5q | next | 15.5.21 |
| Low | PYSEC-2026-3739 | nltk | 3.10.3 |
| Low | GHSA-5hq9-5r78-2gjh | llama-index | 0.12.41 |
| Low | DEBIAN-CVE-2026-54371 | attr | no fix listed |
| Low | PYSEC-2026-3788 | gitpython | 3.1.59 |
| Low | ALPINE-CVE-2025-66199 | openssl | 3.3.6-r0 |
| Low | DEBIAN-CVE-2025-66199 | openssl | 3.5.4-1~deb13u2 |
| Low | GHSA-2xp9-vwfh-vxw4 | next | 15.5.24 |
| Low | GHSA-2c2j-9gv5-cj73 | starlette | 0.47.2 |
| Low | GHSA-7432-952r-cw78 | authlib | 1.6.9 |
| Low | PYSEC-2026-3721 | pip | 26.2 |
| Low | GHSA-52v5-jr5w-gjxr | sigstore | 4.1.1 |
| Low | GHSA-69f9-5gxw-wvc2 | aiohttp | 3.13.3 |
| Low | DEBIAN-CVE-2025-15079 | curl | no fix listed |
| Low | GHSA-3gqm-fcw5-w839 | nltk | 3.10.0 |
| Low | GHSA-9548-qrrj-x5pj | aiohttp | 3.12.14 |
| Low | DEBIAN-CVE-2026-6429 | curl | 8.14.1-2+deb13u4 |
| Low | GHSA-hpj7-wq8m-9hgp | aiohttp | 3.14.1 |
| Low | ALPINE-CVE-2026-22796 | openssl | 3.3.6-r0 |
| Low | DEBIAN-CVE-2026-22796 | openssl | 3.5.4-1~deb13u2 |
| Low | GHSA-gvwx-54wh-qm9j | tar | 7.5.17 |
| Low | GHSA-gfwx-w7gr-fvh7 | nltk | 3.9.4 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.0.0-nightlylatest | 1 year ago | v0.0.0-nightly | 37123566 | 8,405 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.