StackRadar

CVE-2019-10247

Medium

Advisory

Published 23 Apr 2019In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.059
93rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
67
of 17,781 indexed, latest versions
Container images
58
deployed by those charts
Fix available
1 of 1
affected package

Installation information leak in Eclipse Jetty

Carried by container images the latest versions of 67 of 17,781 indexed charts deploy, on 58 images.

Affected packageAffected versionsFixed inImages
jetty-servermaven7.6.0.v20120127, 8.1.7.v20120910, 8.1.9.v20130131, 8.1.12.v20130726+21 more9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v2019041858
OSV records
GHSA-xc67-hjx6-cgg6

Charts affected

67 by stars
ChartLatestAffected imagesRadar Score
MINTmint8.0.21 of 15See more

MINT mint 8.0.2

1 of the 15 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
mintproject/model-catalog-endpoint:29256555a6fbaefae4729d5cd259564708a4ab04ffbb13f20465
jetty-server@9.4.12.v20180830
9.4.17.v20190418

Open the chart page →

43,341
crowdmoxVerified publisher2.4.31 of 3See more

crowd mox 2.4.3

1 of the 3 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
atlassian/crowd:5.2.2ebf761c7d437
jetty-server@8.1.15.v20140411
9.2.28.v20190418

Open the chart page →

5,663
datawolfncsaVerified publisher1.1.01 of 3See more

datawolf ncsa 1.1.0

1 of the 3 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
ncsa/datawolf:4.7.0af6649d59150
jetty-server@9.2.2.v20140723
9.2.28.v20190418

Open the chart page →

4,989
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
jetty-server@9.2.10.v20150310
9.2.28.v20190418

Open the chart page →

55,726
comacopencord1.0.01 of 9See more

comac opencord 1.0.0

1 of the 9 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
omecproject/onos-progran:1.0.05715e5648aa0
jetty-server@8.1.17.v20150415
9.2.28.v20190418

Open the chart page →

88,546
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
jetty-server@8.1.17.v20150415
9.2.28.v20190418

Open the chart page →

38,865
jmxproxypndaproject0.1.01 of 1See more

jmxproxy pndaproject 0.1.0

1 of the 1 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
gradiant/jmxproxy:3.4.045eceb1bc55c
jetty-server@9.4.8.v20171121
9.4.17.v20190418

Open the chart page →

4,177
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
jetty-server@9.3.24.v20180605
9.3.27.v20190418

Open the chart page →

9,606
prometheus-cloudwatch-exporterprometheus-worawutchan0.12.01 of 1See more

prometheus-cloudwatch-exporter prometheus-worawutchan 0.12.0

1 of the 1 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:cloudwatch_exporter-0.8.0fc4b9b9f5e15
jetty-server@9.4.15.v20190215
9.4.17.v20190418

Open the chart page →

2,831
archivaslamdev0.0.71 of 2See more

archiva slamdev 0.0.7

1 of the 2 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
xetusoss/archiva:v2.2.588f25242b9ee
jetty-server@8.1.7.v20120910
9.2.28.v20190418

Open the chart page →

6,907
atlassian-jirasomeblackmagic3.3.21 of 1See more

atlassian-jira someblackmagic 3.3.2

1 of the 1 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
atlassian/jira-software:8.14.037bc46cbec1a
jetty-server@8.1.15.v20140411
9.2.28.v20190418

Open the chart page →

13,079
newrelic-private-minionsstarcher0.1.21 of 1See more

newrelic-private-minion sstarcher 0.1.2

1 of the 1 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
jetty-server@9.4.11.v20180605
9.4.17.v20190418

Open the chart page →

3,164
trinostatcan1.23.41 of 2See more

trino statcan 1.23.4

1 of the 2 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
trinodb/trino:405ee80ab5eeab2
jetty-server@9.3.24.v20180605
9.3.27.v20190418

Open the chart page →

13,767
streamastreama1.0.11 of 2See more

streama streama 1.0.1

1 of the 2 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
just1not2/streama:1.10.48a2305192dec
jetty-server@8.1.15.v20140411
9.2.28.v20190418

Open the chart page →

8,554
ubooquityvhdirkVerified publisher0.1.31 of 1See more

ubooquity vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
linuxserver/ubooquity:2.1.2-ls369932d6759112
jetty-server@9.4.0.v20161208
9.4.17.v20190418

Open the chart page →

4,303
queryservicewbstack0.2.11 of 1See more

queryservice wbstack 0.2.1

1 of the 1 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
jetty-server@9.4.12.v20180830
9.4.17.v20190418

Open the chart page →

4,649
is-pattern-1wso2is-pattern15.11.01 of 2See more

is-pattern-1 wso2is-pattern1 5.11.0

1 of the 2 container images this version deploys carry CVE-2019-10247.

Container imageDigestPackageFixed in
massimolauri/wso2is:5.11.0-centose08abf0ce767
jetty-server@8.1.15.v20140411
9.2.28.v20190418

Open the chart page →

6,213

Container images carrying it

58 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
slamdev/apache-hive:2.3.9-2.10.1b4b029c9b15f
jetty-server@9.2.5.v20141112
9.2.28.v20190418
1
snappydatainc/spark-shuffle:v2.2.0-kubernetes-0.5.1fd4b2070466f
jetty-server@9.3.11.v20160721
9.3.27.v20190418
1
sslhep/hive-metastore:3.1.39e80af083079
jetty-server@9.3.20.v20170531
9.3.27.v20190418
1
thelastpickle/cassandra-reaper:1.3.09c53996c457d
jetty-server@9.4.6.v20170531
9.4.17.v20190418
1
trinodb/trino:405ee80ab5eeab2
jetty-server@9.3.24.v20180605
9.3.27.v20190418
1
xetusoss/archiva:v2.2.588f25242b9ee
jetty-server@8.1.7.v20120910
9.2.28.v20190418
1
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
jetty-server@9.4.12.v20180830
9.4.17.v20190418
1
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
jetty-server@9.4.11.v20180605
9.4.17.v20190418
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.