StackRadar

CVE-2019-9543

High

Advisory

Published 1 Mar 2019In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.033
88th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
62
of 17,781 indexed, latest versions
Container images
51
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 62 of 17,781 indexed charts deploy, on 51 images.

Affected packageAffected versionsFixed inImages
popplerdeb0.86.1-0ubuntu1, 22.02.0-2, 22.02.0-2ubuntu0.1, 22.02.0-2ubuntu0.3+18 moreno fix listed51
OSV records
DEBIAN-CVE-2019-9543UBUNTU-CVE-2019-9543

Charts affected

62 by stars
ChartLatestAffected imagesRadar Score
cupsr2dlan-helm-chartsVerified publisher0.1.01 of 1See more

cups r2dlan-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
anujdatar/cups:25.07.01685df04a643b
poppler@22.12.0-2+deb12u1
no fix listed

Open the chart page →

7,685
checkmkrtomik-helm-chartsVerified publisher0.1.01 of 1See more

checkmk rtomik-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
checkmk/check-mk-community:2.5.0p6c11b422210c4
poppler@22.02.0-2ubuntu0.13
no fix listed

Open the chart page →

7,436
paperless-ngxrtomik-helm-chartsVerified publisher0.0.51 of 1See more

paperless-ngx rtomik-helm-charts 0.0.5

1 of the 1 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
poppler@25.03.0-5+deb13u2
no fix listed

Open the chart page →

10,605
stirling-pdfrubxkubeVerified publisher0.1.21 of 1See more

stirling-pdf rubxkube 0.1.2

1 of the 1 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
poppler@24.02.0-1ubuntu9.8
no fix listed

Open the chart page →

6,207
photoprismschoolguys-helmcharts0.3.81 of 1See more

photoprism schoolguys-helmcharts 0.3.8

1 of the 1 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
photoprism/photoprism:260601650c6ad5a651
poppler@26.01.0-2build2
no fix listed

Open the chart page →

10,348
backendsignalen4.24.01 of 4See more

backend signalen 4.24.0

1 of the 4 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
signalen/backend:2.50.14760256000738
poppler@22.12.0-2+deb12u3
no fix listed

Open the chart page →

11,636
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
poppler@24.02.0-1ubuntu9.8
no fix listed

Open the chart page →

12,460
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
poppler@24.02.0-1ubuntu9.8
no fix listed

Open the chart page →

12,460
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
poppler@24.02.0-1ubuntu9.4
no fix listed

Open the chart page →

8,193
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
poppler@24.02.0-1ubuntu9
no fix listed

Open the chart page →

45,239
maybe-financevicsuferVerified publisher0.2.71 of 3See more

maybe-finance vicsufer 0.2.7

1 of the 3 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
poppler@22.12.0-2+b1
no fix listed

Open the chart page →

10,795
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2019-9543.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
poppler@22.02.0-2ubuntu0.13
no fix listed

Open the chart page →

7,849

Container images carrying it

51 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
poppler@25.03.0-5+deb13u4
no fix listed
7
apache/tika:2.9.2.1-fullae0b86d3c4d0
poppler@24.02.0-1ubuntu9
no fix listed
2
gotenberg/gotenberg:8.36.087c16b9f3642
poppler@25.03.0-5+deb13u4
no fix listed
2
gotenberg/gotenberg:8:8.37.0f29984bd1e22
poppler@25.03.0-5+deb13u4
no fix listed
2
kurento/kurento-media-server:latest03c0d34d0828
poppler@24.02.0-1ubuntu9.8
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
poppler@22.12.0-2+deb12u3
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
poppler@22.12.0-2+deb12u3
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
poppler@0.86.1-0ubuntu1
no fix listed
2
anujdatar/cups:25.07.01685df04a643b
poppler@22.12.0-2+deb12u1
no fix listed
1
apache/tika:latest-full80072bb73dd3
poppler@26.01.0-2ubuntu0.1
no fix listed
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
poppler@22.02.0-2ubuntu0.13
no fix listed
1
datamate/seafile-professional:11.0.202dd66b722464
poppler@22.02.0-2ubuntu0.10
no fix listed
1
gotenberg/gotenberg:8.30206a6c708fc6
poppler@25.03.0-5+deb13u2
no fix listed
1
gotenberg/gotenberg:8.3467097317623a
poppler@25.03.0-5+deb13u3
no fix listed
1
inventree/inventree:1.5.4a946ec09da3e
poppler@25.03.0-5+deb13u4
no fix listed
1
machines/filestash:latest0b8fc005e52e
poppler@25.03.0-5+deb13u4
no fix listed
1
mediagis/nominatim:5.3.27923a8e67197
poppler@24.02.0-1ubuntu9.9
no fix listed
1
mediagis/nominatim:3.7c15e941485ef
poppler@0.86.1-0ubuntu1
no fix listed
1
mediagis/nominatim:4.2d0eae7b51374
poppler@22.02.0-2ubuntu0.3
no fix listed
1
openkm/openkm-ce:6.3.113bc465a7461b
poppler@0.86.1-0ubuntu1
no fix listed
1
openproject/openproject:17.8.0-slim48952034215d
poppler@25.03.0-5+deb13u4
no fix listed
1
penpotapp/exporter:2.2.15c835ffd87ab
poppler@22.02.0-2ubuntu0.5
no fix listed
1
penpotapp/exporter:2.17.272a8061e8806
poppler@26.01.0-2ubuntu0.1
no fix listed
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
poppler@22.02.0-2ubuntu0.3
no fix listed
1
photoprism/photoprism:260601650c6ad5a651
poppler@26.01.0-2build2
no fix listed
1
photoprism/photoprism:260728958642220223
poppler@26.01.0-2ubuntu0.1
no fix listed
1
photoprism/photoprism:251130db16ee6b1ba3
poppler@25.03.0-10ubuntu0.1
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
poppler@24.02.0-1ubuntu9
no fix listed
1
postgis/postgis:18-3.67e00e8c3539f
poppler@25.03.0-5+deb13u4
no fix listed
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
poppler@22.12.0-2+b1
no fix listed
1
signalen/backend:2.50.14760256000738
poppler@22.12.0-2+deb12u3
no fix listed
1
stashapp/stash-box:latesta534c8afdf39
poppler@24.02.0-1ubuntu9.4
no fix listed
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
poppler@22.02.0-2ubuntu0.1
no fix listed
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
poppler@22.02.0-2ubuntu0.1
no fix listed
1
timescale/timescaledb-ha:pg16d7db8f1085a3
poppler@22.02.0-2ubuntu0.13
no fix listed
1
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
poppler@22.02.0-2ubuntu0.6
no fix listed
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
poppler@22.02.0-2
no fix listed
1
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
poppler@22.02.0-2ubuntu0.13
no fix listed
1
ghcr.io/afairgiant/medikeep:v0.69.0766699daa9ac
poppler@22.12.0-2+deb12u2
no fix listed
1
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
poppler@25.03.0-5+deb13u2
no fix listed
1
ghcr.io/caninehq/canine:latesta058034ca006
poppler@22.12.0-2+deb12u2
no fix listed
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
poppler@25.03.0-5+deb13u4
no fix listed
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
poppler@22.12.0-2+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
poppler@22.12.0-2+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
poppler@25.03.0-5+deb13u2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
poppler@25.03.0-5+deb13u2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
poppler@25.03.0-5+deb13u2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
poppler@22.12.0-2+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
poppler@25.03.0-5+deb13u2
no fix listed
1
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
poppler@25.03.0-5+deb13u4
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.