StackRadar

karakeep Helm chart

rtomik-helm-chartsVerified publisher

Scored 14 Sept 2026

Karakeep helm chart for Kubernetes

Latest 0.0.1 1 year agoapp version 0.26.0 0Artifact Hub

karakeep 0.0.1 deploys 3 container images: ghcr.io/karakeep-app/karakeep, gcr.io/zenika-hub/alpine-chrome and getmeili/meilisearch. Across the 2 measured, 491 findings1 critical, 4 high. The highest contribution is ALPINE-CVE-2025-6965 in sqlite 3.49.2-r0, fixed in 3.49.2-r1.

Radar Score

5,3381481405

491 findings over 2 of 3 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/karakeep-app/karakeep0.26.013723874,968
gcr.io/zenika-hub/alpine-chrome124unmeasured
getmeili/meilisearchv1.13.301918370

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

466 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowALPINE-CVE-2026-1502python3@3.12.11-r03.12.14-r0
LowGHSA-223j-4rm8-mrmfnext@14.2.2514.2.26
LowGHSA-83g3-92jg-28cxtar@6.2.17.5.8
LowALPINE-CVE-2026-63074openssl@3.5.1-r03.5.8-r0
LowALPINE-CVE-2026-4786python3@3.12.11-r03.12.14-r0
LowGHSA-g9mf-h72j-4rw9undici@6.21.36.23.0
LowALPINE-CVE-2025-14831gnutls@3.8.8-r03.8.12-r0
LowGHSA-jqff-g426-hqxpfast-uri@3.0.63.1.6
LowGHSA-qj8w-gfj5-8c6vserialize-javascript@6.0.27.0.5
LowGHSA-g6cj-pr64-35w5cryptography@44.0.350.0.0
LowGHSA-w8wr-v893-vjvptar@6.2.17.5.18
LowALPINE-CVE-2026-34181openssl@3.5.1-r03.5.7-r0
LowGHSA-7p8r-x3mc-p8w7fast-uri@3.0.63.1.5
LowALPINE-CVE-2026-25210expat@2.7.1-r02.7.4-r0
LowGHSA-9g9p-9gw9-jx7fnext@14.2.2515.5.10
LowGHSA-f65p-4m7j-42xcfast-uri@3.0.63.1.6
LowALPINE-CVE-2025-65018libpng@1.6.47-r01.6.51-r0
LowGHSA-jp2q-39xq-3w4gfast-xml-parser@4.4.14.5.5
LowGHSA-hpcv-96wg-7vj8dompurify@3.2.63.4.6
LowGHSA-p6gq-j5cr-w38fnodemailer@7.0.49.0.1
LowGO-2024-2963stdlib@go1.20.71.21.12
LowALPINE-CVE-2025-52496mbedtls@3.6.3.1-r03.6.4-r0
LowGHSA-6gmq-8vp8-gcm6@xmldom/xmldom@0.9.60.9.12
LowALPINE-CVE-2026-40200musl@1.2.5-r101.2.5-r12
LowGHSA-4633-3j49-mh5qnext@14.2.2515.5.21
LowGHSA-vvjj-xcjg-gr5gnodemailer@7.0.48.0.5
LowALPINE-CVE-2025-66199openssl@3.5.1-r03.5.5-r0
LowGHSA-2xp9-vwfh-vxw4next@14.2.2515.5.24
LowMAL-2025-5564karakeep@0.1.0no fix listed
LowGHSA-g5qg-72qw-gw5vnext@14.2.2514.2.31
LowGHSA-r47g-fvhr-h676dompurify@3.2.63.4.6
LowGHSA-52v5-jr5w-gjxrsigstore@3.0.04.1.1
LowALPINE-CVE-2026-27447cups@2.4.11-r02.4.18-r0
LowALPINE-CVE-2025-4947curl@8.12.1-r08.14.0-r0
LowGHSA-crv5-9vww-q3g8dompurify@3.2.63.4.0
LowALPINE-CVE-2026-25835mbedtls@3.6.3.1-r03.6.6-r0
LowGO-2023-2382stdlib@go1.20.71.20.12
LowGHSA-v2wj-7wpq-c8vvdompurify@3.2.63.3.2
LowALPINE-CVE-2026-22796openssl@3.5.1-r03.5.5-r0
LowGHSA-gvwx-54wh-qm9jtar@6.2.17.5.17
LowALPINE-CVE-2025-49601mbedtls@3.6.3.1-r03.6.4-r0
LowGO-2024-2599stdlib@go1.20.71.21.8
LowALPINE-CVE-2025-10148curl@8.12.1-r08.14.1-r2
LowGHSA-v9jr-rg53-9pgpdompurify@3.2.63.4.0
LowGHSA-xmgf-hq76-4vx2openssl@0.10.710.10.78
LowGHSA-68g3-v927-f742next@14.2.2515.5.21
LowGHSA-f7j3-774f-rfhjyt-dlp@2025.6.252026.6.9
LowGO-2024-3106stdlib@go1.20.71.22.7
LowGHSA-rgj7-g3m4-5g8csharp@0.33.30.35.4
LowGHSA-v2v4-37r5-5v8gip-address@9.0.510.1.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.1latest1 year ago0.26.014814055,338

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/rtomik-helm-charts/karakeep.svg)](https://charts.stackradar.io/charts/rtomik-helm-charts/karakeep)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.