StackRadar

chatbot-ai-sample Helm chart

openshift

Scored 14 Sept 2026

This Helm Chart deploys a Large Language Model (LLM)-enabled [chat bot application](https://github.com/redhat-ai-dev/ai-lab-samples/tree/main/chatbot).

Latest 0.1.6App version not verified against the render 0Artifact Hub

chatbot-ai-sample 0.1.6 deploys 4 container images: quay.io/redhat-ai-dev/granite-7b-lab, quay.io/ai-lab/llamacpp_python, quay.io/redhat-ai-dev/chatbot and registry.redhat.io/openshift4/ose-docker-builder-rhel9. Across the 2 measured, 1,153 findings44 critical, 26 high 31 on CISA KEV. The highest contribution is RHSA-2024:4726 in httpd 2.4.57-8.el9, fixed in 0:2.4.57-11.el9_4. Chart.yaml declares kubeVersion >= 1.27.0-0; rendered for Kubernetes 1.27.0.

Radar Score

18,9224426280803

1,153 findings over 2 of 4 images measured

KEV ×31 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

4 images
ImageTagVulnerabilitiesRadar Score
quay.io/redhat-ai-dev/granite-7b-lablatestnot yet scanned
quay.io/ai-lab/llamacpp_pythonlatest20111263558,459
quay.io/redhat-ai-dev/chatbotlatest241515444810,463
registry.redhat.io/openshift4/ose-docker-builder-rhel9v4.16unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

High findings

16 distinct across the version’s images

High: findings whose contribution to the Radar Score is 40–69. Show every band

SeverityAdvisoryPackageFixed in
HighRHSA-2024:5138httpd@2.4.57-8.el90:2.4.57-11.el9_4.1
HighGHSA-86qp-5c8j-p5mrKEVstarlette@0.46.21.0.1
HighRHSA-2025:1304KEVgcc@11.4.1-3.el90:11.4.1-4.el9_4
HighRHSA-2024:4083git@2.43.0-1.el90:2.43.5-1.el9_4
HighRHSA-2024:5529curl@7.76.1-29.el9_40:7.76.1-29.el9_4.1
HighRHSA-2026:25057mod_http2@2.0.26-2.el9_40:2.0.26-6.el9_8.1
HighRHSA-2026:55992mod_http2@2.0.26-2.el9_40:2.0.26-2.el9_4.3
HighRHSA-2024:6783openssl@1:3.0.7-27.el91:3.0.7-28.el9_4
HighRHSA-2024:3501nghttp2@1.43.0-5.el9_3.10:1.43.0-5.el9_4.3
HighRHSA-2024:9333openssl@1:3.0.7-27.el91:3.2.2-6.el9_5
HighRHSA-2024:9474krb5@1.21.1-2.el9_40:1.21.1-4.el9_5
HighRHSA-2026:7302nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:22.22.2-1.module+el9.7.0+24157+8ddb2461
HighRHSA-2026:7350nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:24.14.1-2.module+el9.7.0+24166+51c9666b
HighRHSA-2026:7896nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:20.20.2-1.module+el9.7.0+24193+41b7b572
HighRHSA-2026:9711nodejs@1:20.16.0-1.module+el9.4.0+22197+9e60f1271:20.20.2-2.module+el9.4.0+24216+64c58546
HighRHSA-2024:4457openssh@8.7p1-38.el90:8.7p1-38.el9_4.4

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.6latest442628080318,922

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/openshift/chatbot-ai-sample.svg)](https://charts.stackradar.io/charts/openshift/chatbot-ai-sample)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.