devportal Helm chart
veecode-platform-nextVerified publisherScored 14 Sept 2026
A Helm chart for deploying VeeCode DevPortal, a VeeCode distribution of Backstage.
Latest 0.1.21 11 days agoapp version 3.0.0-beta.6 (not verified against the render) 0Artifact Hub
devportal 0.1.21 deploys 1 container image: veecode/devportal. Across them, 181 findings — 0 critical, 0 high. The highest contribution is GHSA-5cgq-3rg8-m6cv in golang.org/x/crypto v0.46.0, fixed in 0.52.0. Chart.yaml declares kubeVersion >= 1.27.0-0; rendered for Kubernetes 1.27.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| veecode/ | digest-pinned | 0017164 | 1,787 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | RHSA-2026:61247 | libxml2 | 0:2.9.13-14.el9_8.4 |
| Low | GHSA-fcv2-xgw5-pqxf | github.com/ | 1.10.4 |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | GHSA-pq67-6m6q-mj2v | urllib3 | 2.5.0 |
| Low | GHSA-58qx-3vcg-4xpx | ws | 8.20.1 |
| Low | GHSA-9xwg-3r6f-jcx2 | pymdown-extensions | 11.0.0 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | GHSA-3v7f-55p6-f55p | picomatch | 2.3.2 |
| Low | GHSA-65pc-fj4g-8rjx | idna | 3.15 |
| Low | GHSA-x86f-5xw2-fm2r | github.com/ | no fix listed |
| Low | GHSA-7q8q-rj6j-mhjq | axios | 1.18.0 |
| Low | RHSA-2026:64812 | expat | 0:2.5.0-6.el9_8.3 |
| Low | GHSA-48p4-8xcf-vxj5 | urllib3 | 2.5.0 |
| Low | GHSA-3jxr-9vmj-r5cp | brace-expansion | 5.0.7 |
| Low | GHSA-q8mj-m7cp-5q26 | qs | 6.15.2 |
| Low | GHSA-p88m-4jfj-68fv | undici | 6.27.0 |
| Low | GHSA-vmf3-w455-68vh | tar | 7.5.16 |
| Low | GHSA-8988-4f7v-96qf | @opentelemetry/ | 2.8.0 |
| Low | RHSA-2026:61581 | tar | 2:1.34-13.el9_8 |
| Low | GO-2026-4918 | golang.org/ | 0.53.0 |
| Low | GHSA-qccp-gfcp-xxvc | urllib3 | 2.7.0 |
| Low | GHSA-5v7r-6r5c-r473 | file-type | 21.3.1 |
| Low | GHSA-59jp-pj84-45mr | github.com/ | 1.8.5 |
| Low | GO-2026-5026 | stdlib | 1.25.13 |
| Low | GO-2026-5026 | golang.org/ | 0.55.0 |
| Low | GHSA-2rp8-mm9q-fp49 | typeorm | 1.1.0 |
| Low | GHSA-2v4p-qf9q-27wj | google.golang.org/ | 1.82.2 |
| Low | GHSA-2x7j-588g-ccc2 | nodemailer | 9.1.0 |
| Low | GHSA-v836-6xw4-9cx3 | vm2 | 3.11.6 |
| Low | RHSA-2026:54662 | nghttp2 | 0:1.43.0-6.el9_8.2 |
| Low | GHSA-4mjr-xmp4-gh2g | qs | 6.16.0 |
| Low | GHSA-rg2x-37c3-w2rh | github.com/ | no fix listed |
| Low | RHSA-2026:60226 | attr | 0:2.6.0-1.el9_8 |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | RHSA-2026:49667 | p11-kit | 0:0.26.4-1.el9_8 |
| Low | GO-2026-5942 | stdlib | 1.26.6 |
| Low | GO-2026-5942 | golang.org/ | 0.56.0 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GO-2026-5970 | golang.org/ | 0.39.0 |
| Low | PYSEC-2026-2275 | requests | 2.33.0 |
| Low | GHSA-xvg9-69gf-fjrf | mkdocs-material | 9.7.7 |
| Low | GHSA-cc9r-2j5m-2m83 | nodemailer | 9.1.0 |
| Low | GHSA-wmmp-3585-3rmp | nodemailer | 9.1.0 |
| Low | GHSA-4992-7rv2-5pvq | undici | 6.24.0 |
| Low | GHSA-w9m9-85wc-3x92 | postcss-selector-parser | 7.1.3 |
| Low | GHSA-62q4-447f-wv8h | pymdown-extensions | 10.21.3 |
| Low | GHSA-vp62-88p7-qqf5 | github.com/ | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.1.21latest | 11 days ago | 3.0.0-beta.6 | 0017164 | 1,787 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.