StackRadar

CVE-2019-10747

Critical

Advisory

Published 27 Aug 2019In the index since 8 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.025
84th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
11
of 17,781 indexed, latest versions
Container images
11
deployed by those charts
Fix available
1 of 1
affected package

Prototype Pollution in set-value

Carried by container images the latest versions of 11 of 17,781 indexed charts deploy, on 11 images.

Affected packageAffected versionsFixed inImages
set-valuenpm0.4.3, 1.0.0, 2.0.02.0.111
OSV records
GHSA-4g88-fppr-53pp
Also known as
SNYK-JS-SETVALUE-450213

Charts affected

11 by stars
ChartLatestAffected imagesRadar Score
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
set-value@0.4.3
2.0.1

Open the chart page →

9,261
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
set-value@0.4.3
2.0.1

Open the chart page →

5,300
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-webui:v2.2.2fda21b0a0344
set-value@0.4.3
2.0.1

Open the chart page →

25,443
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
set-value@2.0.0
2.0.1

Open the chart page →

29,901
hubotcloudnativeapp0.0.11 of 1See more

hubot cloudnativeapp 0.0.1

1 of the 1 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
minddocdev/hubot:0.1.96c60b11a4fa7
set-value@0.4.3
2.0.1

Open the chart page →

2,580
developer-dashboardcloud-native-toolkit1.4.11 of 1See more

developer-dashboard cloud-native-toolkit 1.4.1

1 of the 1 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
set-value@0.4.3
2.0.1

Open the chart page →

25,456
testnet-faucetethereum-helm-chartsVerified publisher0.1.31 of 1See more

testnet-faucet ethereum-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
parithoshj/testnet-faucet:9859e0dcdca426fea6d
set-value@2.0.0
2.0.1

Open the chart page →

3,005
ibm-microclimateibm-charts0.1.02 of 8See more

ibm-microclimate ibm-charts 0.1.0

2 of the 8 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
set-value@2.0.0
2.0.1
ibmcom/microclimate-portal:latested5505e5c7ec
set-value@0.4.3
2.0.1

Open the chart page →

57,669
opendistro-eslsst-sqre1.4.11 of 3See more

opendistro-es lsst-sqre 1.4.1

1 of the 3 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
set-value@2.0.0
2.0.1

Open the chart page →

7,929
ferdi-serverobeoneVerified publisher1.0.31 of 2See more

ferdi-server obeone 1.0.3

1 of the 2 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
getferdi/ferdi-server:1.3.26e620b85afaa
set-value@1.0.0
2.0.1

Open the chart page →

1,866
trudesktechpreta1.0.01 of 3See more

trudesk techpreta 1.0.0

1 of the 3 container images this version deploys carry CVE-2019-10747.

Container imageDigestPackageFixed in
polonel/trudesk:1.2.60cf6513f6fe3
set-value@2.0.0
2.0.1

Open the chart page →

4,017

Container images carrying it

11 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
gradiant/open5gs-webui:2.7.5fbd10c017541
set-value@0.4.3
2.0.1
2
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
set-value@2.0.0
2.0.1
1
daskdev/dask-notebook:1.1.0052630f5ca04
set-value@2.0.0
2.0.1
1
getferdi/ferdi-server:1.3.26e620b85afaa
set-value@1.0.0
2.0.1
1
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
set-value@2.0.0
2.0.1
1
ibmcom/microclimate-portal:latested5505e5c7ec
set-value@0.4.3
2.0.1
1
minddocdev/hubot:0.1.96c60b11a4fa7
set-value@0.4.3
2.0.1
1
parithoshj/testnet-faucet:9859e0dcdca426fea6d
set-value@2.0.0
2.0.1
1
polonel/trudesk:1.2.60cf6513f6fe3
set-value@2.0.0
2.0.1
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
set-value@0.4.3
2.0.1
1
registry.gitlab.com/infinitydon/registry/open5gs-webui:v2.2.2fda21b0a0344
set-value@0.4.3
2.0.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.