StackRadar

CVE-2019-10746

Critical

Advisory

Published 27 Aug 2019In the index since 8 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.035
89th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
10
of 17,781 indexed, latest versions
Container images
10
deployed by those charts
Fix available
1 of 1
affected package

Prototype Pollution in mixin-deep

Carried by container images the latest versions of 10 of 17,781 indexed charts deploy, on 10 images.

Affected packageAffected versionsFixed inImages
mixin-deepnpm1.3.11.3.210
OSV records
GHSA-fhjf-83wg-r2j9
Also known as
SNYK-JS-MIXINDEEP-450212

Charts affected

10 by stars
ChartLatestAffected imagesRadar Score
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
mixin-deep@1.3.1
1.3.2

Open the chart page →

9,261
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
mixin-deep@1.3.1
1.3.2

Open the chart page →

5,300
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-webui:v2.2.2fda21b0a0344
mixin-deep@1.3.1
1.3.2

Open the chart page →

25,443
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
mixin-deep@1.3.1
1.3.2

Open the chart page →

29,901
hubotcloudnativeapp0.0.11 of 1See more

hubot cloudnativeapp 0.0.1

1 of the 1 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
minddocdev/hubot:0.1.96c60b11a4fa7
mixin-deep@1.3.1
1.3.2

Open the chart page →

2,580
developer-dashboardcloud-native-toolkit1.4.11 of 1See more

developer-dashboard cloud-native-toolkit 1.4.1

1 of the 1 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
mixin-deep@1.3.1
1.3.2

Open the chart page →

25,456
testnet-faucetethereum-helm-chartsVerified publisher0.1.31 of 1See more

testnet-faucet ethereum-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
parithoshj/testnet-faucet:9859e0dcdca426fea6d
mixin-deep@1.3.1
1.3.2

Open the chart page →

3,005
ibm-microclimateibm-charts0.1.02 of 8See more

ibm-microclimate ibm-charts 0.1.0

2 of the 8 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
mixin-deep@1.3.1
1.3.2
ibmcom/microclimate-portal:latested5505e5c7ec
mixin-deep@1.3.1
1.3.2

Open the chart page →

57,669
opendistro-eslsst-sqre1.4.11 of 3See more

opendistro-es lsst-sqre 1.4.1

1 of the 3 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
mixin-deep@1.3.1
1.3.2

Open the chart page →

7,929
trudesktechpreta1.0.01 of 3See more

trudesk techpreta 1.0.0

1 of the 3 container images this version deploys carry CVE-2019-10746.

Container imageDigestPackageFixed in
polonel/trudesk:1.2.60cf6513f6fe3
mixin-deep@1.3.1
1.3.2

Open the chart page →

4,017

Container images carrying it

10 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
gradiant/open5gs-webui:2.7.5fbd10c017541
mixin-deep@1.3.1
1.3.2
2
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
mixin-deep@1.3.1
1.3.2
1
daskdev/dask-notebook:1.1.0052630f5ca04
mixin-deep@1.3.1
1.3.2
1
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
mixin-deep@1.3.1
1.3.2
1
ibmcom/microclimate-portal:latested5505e5c7ec
mixin-deep@1.3.1
1.3.2
1
minddocdev/hubot:0.1.96c60b11a4fa7
mixin-deep@1.3.1
1.3.2
1
parithoshj/testnet-faucet:9859e0dcdca426fea6d
mixin-deep@1.3.1
1.3.2
1
polonel/trudesk:1.2.60cf6513f6fe3
mixin-deep@1.3.1
1.3.2
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
mixin-deep@1.3.1
1.3.2
1
registry.gitlab.com/infinitydon/registry/open5gs-webui:v2.2.2fda21b0a0344
mixin-deep@1.3.1
1.3.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.