StackRadar

CVE-2021-0341

High

Advisory

Published 24 May 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
103
of 17,781 indexed, latest versions
Container images
114
deployed by those charts
Fix available
1 of 1
affected package

Square OkHttp can accept the wrong certificate

Carried by container images the latest versions of 103 of 17,781 indexed charts deploy, on 114 images.

Affected packageAffected versionsFixed inImages
okhttpmaven3.3.1, 3.4.1, 3.4.2, 3.5.0+22 more4.9.2114
OSV records
GHSA-3cqm-mf7h-prrj
Also known as
A-171980069, ASB-A-171980069

Charts affected

103 by stars
ChartLatestAffected imagesRadar Score
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2021-0341.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
okhttp@3.14.9
4.9.2

Open the chart page →

12,455
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2021-0341.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
okhttp@3.13.1
4.9.2

Open the chart page →

5,460
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2021-0341.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
okhttp@3.9.0
4.9.2

Open the chart page →

28,605

Container images carrying it

114 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
gurolakman/smsf-momt:1.0.4ce23b20a8a17
okhttp@4.9.1
4.9.2
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
okhttp@4.9.1
4.9.2
1
hivemq/hivemq-operator:4.7.10241d6a8e1963
okhttp@3.12.12
4.9.2
1
ibmcom/app-nav-was-controller:1.0.1a6748792da26
okhttp@3.14.0
4.9.2
1
ibmcom/bai-flink-dev:19.0.2e31ff09e8aad
okhttp@3.7.0
4.9.2
1
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
okhttp@3.3.1
4.9.2
1
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
okhttp@3.10.0
4.9.2
1
ibmcom/microclimate-theia:lateste17bdccc5030
okhttp@3.7.0
4.9.2
1
jingking/geonetwork-hnap:4.2.843e74ab234e1
okhttp@3.14.9
4.9.2
1
keyfactor/signserver-ce:7.3.2798fbbe00283
okhttp@3.10.0
4.9.2
1
kyso/imagebox:latest68091eace89c
okhttp@3.7.0
4.9.2
1
ladeit/ladeit:latest962b665ffe82
okhttp@3.12.0
4.9.2
1
lavandadelpatio/filebot:0.0.671f2ccec8c0d
okhttp@3.4.2
4.9.2
1
lavandadelpatio/filebot-bot:0.0.1-SNAPSHOTd2cba20aa4d8
okhttp@3.4.2
4.9.2
1
library/flink:1.11.2-scala_2.121fe4fb22a2a5
okhttp@3.7.0
4.9.2
1
library/sonarqube:6.7.6-community0ae5169e3d0f
okhttp@3.7.0
4.9.2
1
library/sonarqube:9.1.0-datacenter-search7e43ff493a47
okhttp@3.14.2
4.9.2
1
library/sonarqube:8.9.2-community88cd63154d4b
okhttp@3.14.2
4.9.2
1
library/sonarqube:8.2-communitya246bc64207e
okhttp@3.13.1
4.9.2
1
library/sonarqube:9.1.0-datacenter-appa9bc5a3a1fc3
okhttp@3.14.2
4.9.2
1
library/sonarqube:8.9-communityeb2f0be32efd
okhttp@3.14.2
4.9.2
1
lightbend/spark-history-server:2.4.00bedf37f428a
okhttp@3.8.1
4.9.2
1
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
okhttp@3.11.0
4.9.2
1
odavid/my-bloody-jenkins:2.462.3-306e7ab3bbc948e
okhttp@3.14.9
4.9.2
1
onosproject/onos:2.2.144914a8d4b3f
okhttp@3.9.1
4.9.2
1
openwhisk/invoker:1.0.0f5831ec85525
okhttp@3.12.0
4.9.2
1
opsmx11/issuegen:v2.1.05c50ca123d88
okhttp@3.12.12
4.9.2
1
paulczar/spring-helloworld:latestc7140cecd5f7
okhttp@3.8.1
4.9.2
1
platform9community/api-gateway:latest40a4970de568
okhttp@3.14.9
4.9.2
1
platform9community/customers-service:latest2089811e5cc6
okhttp@3.14.9
4.9.2
1
platform9community/vets-service:latestd1165c94dfb3
okhttp@3.14.9
4.9.2
1
platform9community/visits-service:latest8d11b50368c6
okhttp@3.14.9
4.9.2
1
raykrueger/riemann:0.2.14c8baf3de57bb
okhttp@3.4.1
4.9.2
1
refar/apm-api:v5.7.1241373fa2972
okhttp@3.14.9
4.9.2
1
refar/apm-operator-server:v5.7.1e5490f050f9f
okhttp@3.14.9
4.9.2
1
remche/shinyproxy:2.6.18bcda8a04d3b
okhttp@3.14.9
4.9.2
1
reportportal/service-api:5.7.29df41f8fb320
okhttp@3.14.7
4.9.2
1
reportportal/service-authorization:5.7.09e73114dbd15
okhttp@3.14.7
4.9.2
1
reportportal/service-jobs:5.7.2dc166c58485a
okhttp@3.14.9
4.9.2
1
rundeck/rundeck:3.2.74d64fe56f767
okhttp@3.12.0
4.9.2
1
rundeck/rundeck:3.0.16b13e8059ad72
okhttp@3.6.0
4.9.2
1
sismics/docs:v1.10f4b0ef019cf1
okhttp@4.9.0
4.9.2
1
snappydatainc/spark-shuffle:v2.2.0-kubernetes-0.5.1fd4b2070466f
okhttp@3.8.1
4.9.2
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
okhttp@3.14.9
4.9.2
1
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
okhttp@3.12.6
4.9.2
1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
okhttp@3.12.6
4.9.2
1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
okhttp@3.12.6
4.9.2
1
thingsboard/tb-node:3.4.1645f43b688f7
okhttp@3.12.6
4.9.2
1
thingsboard/tb-node:3.6.0f40a542832c4
okhttp@4.9.1
4.9.2
1
trinodb/trino:405ee80ab5eeab2
okhttp@3.14.9
4.9.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.