devportal 0.1.21 Helm chart
veecode-platform-nextVerified publisherScored 14 Sept 2026
A Helm chart for deploying VeeCode DevPortal, a VeeCode distribution of Backstage.
Version 0.1.21 11 days agoapp version 3.0.0-beta.6 (not verified against the render) 0Artifact Hub
devportal 0.1.21 deploys 1 container image: veecode/devportal. Across them, 181 findings — 0 critical, 0 high. The highest contribution is GHSA-5cgq-3rg8-m6cv in golang.org/x/crypto v0.46.0, fixed in 0.52.0. Chart.yaml declares kubeVersion >= 1.27.0-0; rendered for Kubernetes 1.27.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| veecode/ | digest-pinned | 0017164 | 1,787 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-8988-4f7v-96qf | @opentelemetry/ | 2.8.0 |
| Low | RHSA-2026:61581 | tar | 2:1.34-13.el9_8 |
| Low | GO-2026-4918 | golang.org/ | 0.53.0 |
| Low | GHSA-qccp-gfcp-xxvc | urllib3 | 2.7.0 |
| Low | GHSA-5v7r-6r5c-r473 | file-type | 21.3.1 |
| Low | GHSA-59jp-pj84-45mr | github.com/ | 1.8.5 |
| Low | GO-2026-5026 | stdlib | 1.25.13 |
| Low | GO-2026-5026 | golang.org/ | 0.55.0 |
| Low | GHSA-2rp8-mm9q-fp49 | typeorm | 1.1.0 |
| Low | GHSA-2v4p-qf9q-27wj | google.golang.org/ | 1.82.2 |
| Low | GHSA-2x7j-588g-ccc2 | nodemailer | 9.1.0 |
| Low | GHSA-v836-6xw4-9cx3 | vm2 | 3.11.6 |
| Low | RHSA-2026:54662 | nghttp2 | 0:1.43.0-6.el9_8.2 |
| Low | GHSA-4mjr-xmp4-gh2g | qs | 6.16.0 |
| Low | GHSA-rg2x-37c3-w2rh | github.com/ | no fix listed |
| Low | RHSA-2026:60226 | attr | 0:2.6.0-1.el9_8 |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | RHSA-2026:49667 | p11-kit | 0:0.26.4-1.el9_8 |
| Low | GO-2026-5942 | golang.org/ | 0.56.0 |
| Low | GO-2026-5942 | stdlib | 1.26.6 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GO-2026-5970 | golang.org/ | 0.39.0 |
| Low | PYSEC-2026-2275 | requests | 2.33.0 |
| Low | GHSA-xvg9-69gf-fjrf | mkdocs-material | 9.7.7 |
| Low | GHSA-cc9r-2j5m-2m83 | nodemailer | 9.1.0 |
| Low | GHSA-wmmp-3585-3rmp | nodemailer | 9.1.0 |
| Low | GHSA-4992-7rv2-5pvq | undici | 6.24.0 |
| Low | GHSA-w9m9-85wc-3x92 | postcss-selector-parser | 7.1.3 |
| Low | GHSA-62q4-447f-wv8h | pymdown-extensions | 10.21.3 |
| Low | GHSA-vp62-88p7-qqf5 | github.com/ | no fix listed |
| Low | GO-2026-5856 | stdlib | 1.25.12 |
| Low | GO-2026-6355 | golang.org/ | 0.56.0 |
| Low | GHSA-v3r7-h72x-cjcm | undici | 6.28.0 |
| Low | GHSA-v422-hmwv-36x6 | body-parser | 1.20.6 |
| Low | GHSA-38hq-7x33-php4 | @backstage/ | 0.29.2 |
| Low | GO-2026-6303 | golang.org/ | 0.55.0 |
| Low | GHSA-jp4c-xjxw-mgf9 | pip | 26.1 |
| Low | GHSA-8m3c-c648-2xjj | nodemailer | 9.1.1 |
| Low | GHSA-rgwj-5xj2-c3m3 | mysql2 | 3.23.1 |
| Low | GO-2026-6354 | golang.org/ | 0.56.0 |
| Low | GO-2026-6091 | stdlib | 1.25.13 |
| Low | GHSA-8xcm-r25x-g524 | undici | 6.28.0 |
| Low | GHSA-x5fp-wj9c-mxmx | qs | 6.16.0 |
| Low | GO-2026-5025 | golang.org/ | 0.55.0 |
| Low | GO-2026-4970 | stdlib | 1.25.12 |
| Low | GHSA-m8rv-5g2x-5cg5 | undici | 6.28.0 |
| Low | GO-2026-5027 | golang.org/ | 0.55.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.1.21latest | 11 days ago | 3.0.0-beta.6 | 0017164 | 1,787 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.