StackRadar

CVE-2015-3253

Critical

Advisory

Published 13 May 2022In the index since 9 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.410
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
5
of 17,781 indexed, latest versions
Container images
5
deployed by those charts
Fix available
1 of 1
affected package

Improper Neutralization of Special Elements in Output Used by a Downstream Component in Apache Groovy

Carried by container images the latest versions of 5 of 17,781 indexed charts deploy, on 5 images.

Affected packageAffected versionsFixed inImages
groovy-allmaven2.2.22.4.45
OSV records
GHSA-qg25-hgjv-cg9q

Charts affected

5 by stars
ChartLatestAffected imagesRadar Score
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2015-3253.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
groovy-all@2.2.2
2.4.4

Open the chart page →

13,607
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2015-3253.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
groovy-all@2.2.2
2.4.4

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2015-3253.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
groovy-all@2.2.2
2.4.4

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2015-3253.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
groovy-all@2.2.2
2.4.4

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2015-3253.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
groovy-all@2.2.2
2.4.4

Open the chart page →

13,100

Container images carrying it

5 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
gurolakman/smsf-configuration:1.0.49abb3882bcbd
groovy-all@2.2.2
2.4.4
1
gurolakman/smsf-momt:1.0.4ce23b20a8a17
groovy-all@2.2.2
2.4.4
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
groovy-all@2.2.2
2.4.4
1
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
groovy-all@2.2.2
2.4.4
1
gurolakman/ussigw-core:1.0.48739565c3ea2
groovy-all@2.2.2
2.4.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.