StackRadar

chatbot-ai-sample 0.1.6 Helm chart

openshift

Scored 14 Sept 2026

This Helm Chart deploys a Large Language Model (LLM)-enabled [chat bot application](https://github.com/redhat-ai-dev/ai-lab-samples/tree/main/chatbot).

Version 0.1.6App version not verified against the render 0Artifact Hub

chatbot-ai-sample 0.1.6 deploys 4 container images: quay.io/redhat-ai-dev/granite-7b-lab, quay.io/ai-lab/llamacpp_python, quay.io/redhat-ai-dev/chatbot and registry.redhat.io/openshift4/ose-docker-builder-rhel9. Across the 2 measured, 1,153 findings44 critical, 26 high 31 on CISA KEV. The highest contribution is RHSA-2024:4726 in httpd 2.4.57-8.el9, fixed in 0:2.4.57-11.el9_4. Chart.yaml declares kubeVersion >= 1.27.0-0; rendered for Kubernetes 1.27.0.

Radar Score

18,9224426280803

1,153 findings over 2 of 4 images measured

KEV ×31 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
quay.io/redhat-ai-dev/granite-7b-lablatestnot yet scanned
quay.io/ai-lab/llamacpp_pythonlatest20111263558,459
quay.io/redhat-ai-dev/chatbotlatest241515444810,463
registry.redhat.io/openshift4/ose-docker-builder-rhel9v4.16unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

680 distinct across the version’s images
SeverityAdvisoryPackageFixed in
CriticalRHSA-2024:4726KEVhttpd@2.4.57-8.el90:2.4.57-11.el9_4
CriticalRHSA-2025:11462KEVgit@2.43.5-1.el9_40:2.47.3-1.el9_6
CriticalRHSA-2025:11686KEVgit@2.43.5-1.el9_40:2.43.5-1.el9_4.2
CriticalRHSA-2025:3383KEVfreetype@2.10.4-9.el90:2.10.4-10.el9_4
CriticalRHSA-2026:13932KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-427.124.1.el9_4
CriticalRHSA-2024:4312openssh@8.7p1-38.el90:8.7p1-38.el9_4.1
CriticalRHSA-2026:19568kernel@5.14.0-427.35.1.el9_40:5.14.0-687.10.1.el9_8
CriticalRHSA-2025:1732libpq@13.11-1.el90:13.20-1.el9_4
CriticalRHSA-2024:5363KEVkernel@5.14.0-427.18.1.el9_40:5.14.0-427.31.1.el9_4
CriticalRHSA-2025:15661KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-570.42.2.el9_6
CriticalRHSA-2025:15668KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-427.88.1.el9_4
CriticalRHSA-2025:2490KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-427.59.1.el9_4
CriticalRHSA-2025:2627KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-503.31.1.el9_5
CriticalRHSA-2026:13565KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-611.54.1.el9_7
CriticalRHSA-2026:19225KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-687.5.3.el9_8
CriticalRHSA-2026:1473openssl@1:3.0.7-27.el91:3.5.1-7.el9_7
CriticalRHSA-2026:1519openssl@1:3.0.7-27.el91:3.0.7-29.el9_4.2
CriticalRHSA-2026:16100kernel@5.14.0-427.35.1.el9_40:5.14.0-427.125.1.el9_4
CriticalRHSA-2025:1262KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-503.23.2.el9_5
CriticalRHSA-2025:3935KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-427.65.1.el9_4
CriticalRHSA-2025:3937KEVkernel@5.14.0-427.35.1.el9_40:5.14.0-503.38.1.el9_5
CriticalGHSA-c67j-w6g6-q2cmlangchain-core@0.1.520.3.81
CriticalRHSA-2025:11802nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:22.16.0-2.module+el9.6.0+23339+d3c8acfa
CriticalRHSA-2025:11992sqlite@3.34.1-7.el9_30:3.34.1-8.el9_6
HighRHSA-2024:5138httpd@2.4.57-8.el90:2.4.57-11.el9_4.1
HighGHSA-86qp-5c8j-p5mrKEVstarlette@0.46.21.0.1
HighRHSA-2025:1304KEVgcc@11.4.1-3.el90:11.4.1-4.el9_4
HighRHSA-2024:4083git@2.43.0-1.el90:2.43.5-1.el9_4
HighRHSA-2024:5529curl@7.76.1-29.el9_40:7.76.1-29.el9_4.1
HighRHSA-2026:25057mod_http2@2.0.26-2.el9_40:2.0.26-6.el9_8.1
HighRHSA-2026:55992mod_http2@2.0.26-2.el9_40:2.0.26-2.el9_4.3
HighRHSA-2024:6783openssl@1:3.0.7-27.el91:3.0.7-28.el9_4
HighRHSA-2024:3501nghttp2@1.43.0-5.el9_3.10:1.43.0-5.el9_4.3
HighRHSA-2024:9333openssl@1:3.0.7-27.el91:3.2.2-6.el9_5
HighRHSA-2024:9474krb5@1.21.1-2.el9_40:1.21.1-4.el9_5
HighRHSA-2026:7302nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:22.22.2-1.module+el9.7.0+24157+8ddb2461
HighRHSA-2026:7350nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:24.14.1-2.module+el9.7.0+24166+51c9666b
HighRHSA-2026:7896nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:20.20.2-1.module+el9.7.0+24193+41b7b572
HighRHSA-2026:9711nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:20.20.2-2.module+el9.4.0+24216+64c58546
HighRHSA-2024:4457openssh@8.7p1-38.el90:8.7p1-38.el9_4.4
MediumPYSEC-2024-227transformers@4.41.24.48.0
MediumRHSA-2026:20054kernel@5.14.0-427.35.1.el9_40:5.14.0-427.126.1.el9_4
MediumRHSA-2025:0324rsync@3.2.3-19.el90:3.2.3-20.el9_5.1
MediumRHSA-2024:8617kernel@5.14.0-427.35.1.el9_40:5.14.0-427.42.1.el9_4
MediumRHSA-2025:10379kernel@5.14.0-427.35.1.el9_40:5.14.0-570.25.1.el9_6
MediumRHSA-2025:11245kernel@5.14.0-427.35.1.el9_40:5.14.0-427.77.1.el9_4
MediumRHSA-2026:25239openssl@1:3.0.7-27.el91:3.5.5-4.el9_8
MediumRHSA-2025:3837openssh@8.7p1-38.el9_4.40:8.7p1-38.el9_4.5
MediumGHSA-wrfc-pvp9-mr9gtransformers@4.41.24.48.0
MediumRHSA-2026:35891nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:24.18.0-1.module+el9.8.0+24456+b244c3b4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.6latest442628080318,922

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/openshift/chatbot-ai-sample.svg)](https://charts.stackradar.io/charts/openshift/chatbot-ai-sample)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.