StackRadar

CVE-2017-16137

Low

Advisory

Published 9 Aug 2018In the index since 6 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
0.028
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
139
of 17,781 indexed, latest versions
Container images
130
deployed by those charts
Fix available
1 of 1
affected package

Regular Expression Denial of Service in debug

Carried by container images the latest versions of 139 of 17,781 indexed charts deploy, on 130 images.

Affected packageAffected versionsFixed inImages
debugnpm0.7.2, 0.7.4, 0.8.1, 1.0.5+8 more2.6.9, 3.2.7, 4.3.1130
OSV records
GHSA-gxpj-cx7g-858c

Charts affected

139 by stars
ChartLatestAffected imagesRadar Score
mojaloopmojaloop14.0.02 of 6See more

mojaloop mojaloop 14.0.0

2 of the 6 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
mojaloop/event-sidecar:v11.0.189b8ab71b74b
debug@3.2.6
3.2.7
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
debug@3.2.6
3.2.7

Open the chart page →

19,226
reporting-legacy-apimojaloop2.2.01 of 1See more

reporting-legacy-api mojaloop 2.2.0

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
debug@0.7.2
2.6.9

Open the chart page →

1,948
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
debug@3.2.6
3.2.7

Open the chart page →

6,438
monocularmonocular1.4.152 of 5See more

monocular monocular 1.4.15

2 of the 5 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
migmartri/prerender:latest486aacfd5aa9
debug@0.7.4
2.6.9
quay.io/helmpack/monocular-ui:v1.10.086b71e90319f
debug@2.2.0
2.6.9

Open the chart page →

7,048
sentence-collectormozilla0.1.21 of 2See more

sentence-collector mozilla 0.1.2

1 of the 2 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
mozilla/sentencecollector:2.0.91da6ff5c4895
debug@4.1.1
4.3.1

Open the chart page →

6,684
ghostmt1905028.25.11 of 3See more

ghost mt190502 8.25.1

1 of the 3 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
library/ghost:6.25.12654b1e90413
debug@4.1.1
4.3.1

Open the chart page →

4,960
smilencsaVerified publisher1.1.02 of 23See more

smile ncsa 1.1.0

2 of the 23 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
socialmediamacroscope/smile_graphql:0.3.1c5095e94bc65
debug@2.6.1
2.6.9
socialmediamacroscope/smile_server:0.3.31a528c794270
debug@3.2.6
3.2.7

Open the chart page →

109,294
example-dev-toolsnoygal0.2.82 of 3See more

example-dev-tools noygal 0.2.8

2 of the 3 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
debug@2.2.0
2.6.9
linuxserver/codimd:latestb801bbcf6386
debug@4.1.1
4.3.1

Open the chart page →

27,465
ferdi-serverobeoneVerified publisher1.0.31 of 2See more

ferdi-server obeone 1.0.3

1 of the 2 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
getferdi/ferdi-server:1.3.26e620b85afaa
debug@4.1.1
4.3.1

Open the chart page →

1,866
flomesh-consoleopenshift0.70.0-30-ubi81 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

1 of the 2 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
debug@4.1.1
4.3.1

Open the chart page →

9,968
openwhiskopenwhisk1.0.02 of 10See more

openwhisk openwhisk 1.0.0

2 of the 10 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
openwhisk/alarmprovider:2.2.0b695a6ceb406
debug@3.2.6
3.2.7
openwhisk/ow-utils:1.0.0c80dba0de3aa
debug@2.2.0
2.6.9

Open the chart page →

36,215
myappp4-helm0.1.01 of 6See more

myapp p4-helm 0.1.0

1 of the 6 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
debug@3.2.6
3.2.7

Open the chart page →

19,720
codimdphntom0.1.121 of 3See more

codimd phntom 0.1.12

1 of the 3 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
phntom/codimd:2.4.31b9aafbb62e6
debug@4.1.1
4.3.1

Open the chart page →

6,524
practica-helmpractica-helm0.1.01 of 7See more

practica-helm practica-helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
slagattollas/weatherservice-practica:latest68e7f56393fc
debug@3.2.6
3.2.7

Open the chart page →

28,484
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
debug@3.2.6
3.2.7

Open the chart page →

29,227
gristrlex0.1.01 of 1See more

grist rlex 0.1.0

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
gristlabs/grist:0.7.96e71b1914a7e
debug@3.2.6
3.2.7

Open the chart page →

5,215
unifi-protectschichtelVerified publisher0.10.11 of 1See more

unifi-protect schichtel 0.10.1

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
debug@4.2.0
4.3.1

Open the chart page →

5,582
hedgedocschmitzis0.1.121 of 1See more

hedgedoc schmitzis 0.1.12

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
debug@4.1.1
4.3.1

Open the chart page →

3,118
wekanschmitzis1.1.11 of 1See more

wekan schmitzis 1.1.1

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
quay.io/wekan/wekan:v5.65cb17600883a3
debug@2.2.0
2.6.9

Open the chart page →

3,638
parkingsikalabs0.1.01 of 1See more

parking sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
ondrejsika/parking:latestb1fd497416c8
debug@4.1.1
4.3.1

Open the chart page →

3,696
speedtest-trackersoblivionscall3.0.41 of 1See more

speedtest-tracker soblivionscall 3.0.4

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
henrywhitaker3/speedtest-tracker:latest47159a940229
debug@3.2.6
3.2.7

Open the chart page →

2,460
sorry-cypresssoftonic1.20.01 of 4See more

sorry-cypress softonic 1.20.0

1 of the 4 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
agoldis/sorry-cypress-director:2.5.1110228ecd353b
debug@4.2.0
4.3.1

Open the chart page →

4,285
pachydermstatcan0.5.11 of 4See more

pachyderm statcan 0.5.1

1 of the 4 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
pachyderm/grpc-proxy:0.4.92b27f41d4d02
debug@3.2.6
3.2.7

Open the chart page →

4,967
grafanasvtech-public-helm-charts1.0.01 of 2See more

grafana svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
debug@4.1.1
4.3.1

Open the chart page →

10,902
dashkioskt3n2.0.01 of 1See more

dashkiosk t3n 2.0.0

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
quay.io/t3n/dashkiosk:v2.7.8c973e166a5dc
debug@2.2.0
2.6.9

Open the chart page →

3,827
trudesktechpreta1.0.01 of 3See more

trudesk techpreta 1.0.0

1 of the 3 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
polonel/trudesk:1.2.60cf6513f6fe3
debug@4.1.1
4.3.1

Open the chart page →

4,017
vehicle-dashboardtest-vehi-dash0.1.01 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

1 of the 7 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
samajh/alprbackend:latestea742b4372ad
debug@4.1.1
4.3.1

Open the chart page →

20,270
csmmth-chartsVerified publisher0.1.01 of 3See more

csmm th-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
catalysm/csmm:latestf003b35f54d9
debug@4.1.1
4.3.1

Open the chart page →

3,576
thingsboardthingsboardVerified publisher0.1.31 of 12See more

thingsboard thingsboard 0.1.3

1 of the 12 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
thingsboard/tb-js-executor:3.4.113e1eadf8ace
debug@4.1.1
4.3.1

Open the chart page →

25,394
kubernetes-external-secretstrozz6.3.01 of 1See more

kubernetes-external-secrets trozz 6.3.0

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
debug@4.1.1
4.3.1

Open the chart page →

2,838
hedgedocvista0.1.11 of 1See more

hedgedoc vista 0.1.1

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
debug@4.1.1
4.3.1

Open the chart page →

3,118
resultappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
debug@4.1.1
4.3.1

Open the chart page →

1,263
voteappvoting-app-helm-charts-repoVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

1 of the 5 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
debug@4.1.1
4.3.1

Open the chart page →

8,262
resultappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
debug@4.1.1
4.3.1

Open the chart page →

1,263
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
debug@4.1.1
4.3.1

Open the chart page →

8,262
queryservice-gatewaywbstack0.2.01 of 1See more

queryservice-gateway wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
debug@4.1.1
4.3.1

Open the chart page →

2,559
temporalwenerme0.15.11 of 13See more

temporal wenerme 0.15.1

1 of the 13 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
temporalio/web:1.14.033cfa863d8ce
debug@3.2.6
3.2.7

Open the chart page →

22,665
wikiwikijs3.0.01 of 2See more

wiki wikijs 3.0.0

1 of the 2 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
requarks/wiki:268f0d1848261
debug@4.1.1
4.3.1

Open the chart page →

5,459
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2017-16137.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
debug@4.1.1
4.3.1

Open the chart page →

5,806

Container images carrying it

130 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
inseefrlab/shelly:cloudshell31f04ca7436b
debug@4.1.1
4.3.1
1
jayfong/yapi:1.10.2163e5d621910
debug@2.2.0
2.6.9
1
jupyterhub/configurable-http-proxy:4.2.281bd96729c14
debug@3.2.6
3.2.7
1
jupyterhub/configurable-http-proxy:3.0.0c36cf3cc1c99
debug@2.2.0
2.6.9
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
debug@3.2.6
3.2.7
1
konradkleine/docker-registry-frontend:v2181aad54ee64
debug@1.0.5
2.6.9
1
koumoul/capture:17108d47be3b2
debug@3.2.6
3.2.7
1
koumoul/openapi-viewer:18eeca2e8285b
debug@2.6.8
2.6.9
1
lavandadelpatio/frontend:latest501c3f31e0bc
debug@4.1.1
4.3.1
1
library/ghost:6.25.12654b1e90413
debug@4.1.1
4.3.1
1
library/ghost:4.37.0767230c0f263
debug@4.1.1
4.3.1
1
library/ghost:5.79.083f7bf209844
debug@4.1.1
4.3.1
1
library/ghost:6.22.0-alpine3.23ac533a6988ee
debug@4.1.1
4.3.1
1
linuxserver/cloud9:latest45c5fe102ff3
debug@2.2.0
2.6.9
1
linuxserver/code-server:4.10.1a5e43a05ae79
debug@4.1.1
4.3.1
1
linuxserver/codimd:latestb801bbcf6386
debug@4.1.1
4.3.1
1
logentries/docker-logentries:0.2.1f1f90a236998
debug@2.6.0
2.6.9
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
debug@4.1.1
4.3.1
1
lsstsqre/sciplat-hub:latest5e0ade6bed1c
debug@2.2.0
2.6.9
1
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
debug@4.2.0
4.3.1
1
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
debug@0.8.1
2.6.9
1
microcks/microcks-postman-runtime:latestcb72e46a1b3c
debug@2.6.7
2.6.9
1
minddocdev/hubot:0.1.96c60b11a4fa7
debug@1.0.5
2.6.9
1
misskey/misskey:12.110.1e08b7c478093
debug@4.1.1
4.3.1
1
mozilla/sentencecollector:2.0.91da6ff5c4895
debug@4.1.1
4.3.1
1
netrisai/controller-web-service-backend:4.6.0-0086e865080e86c
debug@2.2.0
2.6.9
1
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
debug@4.1.1
4.3.1
1
nodered/node-red-docker:0.19.6-v8070643219ea2
debug@3.2.6
3.2.7
1
ondrejsika/parking:latestb1fd497416c8
debug@4.1.1
4.3.1
1
openhab/openhab-cloud:a8138a329dd2bac8c4b
debug@4.1.1
4.3.1
1
opensearchproject/opensearch-dashboards:2.10.0485a0019e5d6
debug@4.1.1
4.3.1
1
openthread/otbr:latestf307f59f6432
debug@2.2.0
2.6.9
1
openwhisk/alarmprovider:2.2.0b695a6ceb406
debug@3.2.6
3.2.7
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
debug@2.2.0
2.6.9
1
pachyderm/grpc-proxy:0.4.92b27f41d4d02
debug@3.2.6
3.2.7
1
phntom/codimd:2.4.31b9aafbb62e6
debug@4.1.1
4.3.1
1
polonel/trudesk:1.2.60cf6513f6fe3
debug@4.1.1
4.3.1
1
rakii8585/angular-node-webapp:latest026082a515ac
debug@3.2.6
3.2.7
1
requarks/wiki:canary-2.5.2438b5865a7386c
debug@4.1.1
4.3.1
1
roadiehq/community-backstage-image:latestef355bf5b639
debug@3.2.6
3.2.7
1
samajh/alprbackend:latestea742b4372ad
debug@4.1.1
4.3.1
1
shieldsio/shields:nextfa194b446e42
debug@4.1.1
4.3.1
1
shinobisystems/shinobi:dev3ca746937856
debug@4.1.1
4.3.1
1
shinobisystems/shinobi:latestc2f5ce2e1067
debug@4.1.1
4.3.1
1
slagattollas/weatherservice-practica:latest68e7f56393fc
debug@3.2.6
3.2.7
1
socialmediamacroscope/smile_graphql:0.3.1c5095e94bc65
debug@2.6.1
2.6.9
1
socialmediamacroscope/smile_server:0.3.31a528c794270
debug@3.2.6
3.2.7
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
debug@4.1.1
4.3.1
1
temporalio/web:1.14.033cfa863d8ce
debug@3.2.6
3.2.7
1
testhubio/testhub-frontend:on-preme86c2db53be8
debug@3.2.6
3.2.7
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.