StackRadar

CVE-2021-23214

High

Advisory

Published 11 Nov 2021In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.019
79th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
81
of 17,781 indexed, latest versions
Container images
86
deployed by those charts
Fix available
6 of 7
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 81 of 17,781 indexed charts deploy, on 86 images.

Affected packageAffected versionsFixed inImages
postgresqlapk12.1-r0, 12.2-r0, 12.3-r2, 12.4-r0+7 more12.9-r0, 13.5-r058
postgresql-12deb12.7-0ubuntu0.20.04.1, 12.8-0ubuntu0.20.04.112.9-0ubuntu0.20.04.19
postgresql-13deb13.3-1, 13.4-0+deb11u113.5-0+deb11u17
postgresql-10deb10.6-0ubuntu0.18.04.1, 10.10-0ubuntu0.18.04.1, 10.12-0ubuntu0.18.04.1, 10.14-0ubuntu0.18.04.1+1 more10.19-0ubuntu0.18.04.16
postgresql-9.5deb9.5.10-0ubuntu0.16.04, 9.5.14-0ubuntu0.16.049.5.25-0ubuntu0.16.04.1+esm13
postgresqlbitnami11.8.0-10, 11.12.0-79.6.242
postgresql-9.3deb9.3.22-0ubuntu0.14.04no fix listed1
OSV records
ALPINE-CVE-2021-23214BIT-postgresql-2021-23214DEBIAN-CVE-2021-23214UBUNTU-CVE-2021-23214
Also known as
USN-5145-1, USN-5645-1

Charts affected

81 by stars
ChartLatestAffected imagesRadar Score
loggingcomponentloggingcomponent1.0.01 of 3See more

loggingcomponent loggingcomponent 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/loggingcomponent-php:latest834b8e1af290
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,492
logicservicelogicservice1.0.01 of 4See more

logicservice logicservice 1.0.0

1 of the 4 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/logicservice-php:latest72aae2080595
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,499
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
logiqai/toolbox:2.0.155a574ec5b64
postgresql@12.2-r0
12.9-r0

Open the chart page →

23,613
memo-componentmemo-component1.0.01 of 3See more

memo-component memo-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/memo-component-php:latestef77f4c089a1
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,510
adminermogaal0.2.11 of 1See more

adminer mogaal 0.2.1

1 of the 1 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
library/adminer:4.7.5-standalonef42d935fec5a
postgresql@12.1-r0
12.9-r0

Open the chart page →

1,572
betydbncsaVerified publisher0.6.12 of 4See more

betydb ncsa 0.6.1

2 of the 4 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:11.8.0c3f10b41989f
postgresql@11.8.0-10
9.6.24
pecan/bety:5.4.1f825d480cd62
postgresql-13@13.4-0+deb11u1
13.5-0+deb11u1

Open the chart page →

9,542
pecanncsaVerified publisher0.6.23 of 15See more

pecan ncsa 0.6.2

3 of the 15 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
pecan/bety:5.4.1f825d480cd62
postgresql-13@13.4-0+deb11u1
13.5-0+deb11u1
pecan/data:1.7.257b399ea7422
postgresql@13.4-r0
13.5-r0
pecan/web:1.7.2814d678c5550
postgresql-13@13.4-0+deb11u1
13.5-0+deb11u1

Open the chart page →

14,154
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
robjuz/postgresql-nominatim:latest805c7bab76df
postgresql@11.12.0-7
9.6.24

Open the chart page →

22,658
notification-componentnotification-component1.0.01 of 4See more

notification-component notification-component 1.0.0

1 of the 4 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,527
comacopencord1.0.02 of 9See more

comac opencord 1.0.0

2 of the 9 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
postgresql-9.5@9.5.14-0ubuntu0.16.04
9.5.25-0ubuntu0.16.04.1+esm1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
postgresql-9.5@9.5.14-0ubuntu0.16.04
9.5.25-0ubuntu0.16.04.1+esm1

Open the chart page →

88,546
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
postgresql-9.5@9.5.14-0ubuntu0.16.04
9.5.25-0ubuntu0.16.04.1+esm1

Open the chart page →

26,211
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
postgresql-10@10.12-0ubuntu0.18.04.1
10.19-0ubuntu0.18.04.1

Open the chart page →

15,702
sebaopencord1.0.01 of 17See more

seba opencord 1.0.0

1 of the 17 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
postgresql-9.5@9.5.10-0ubuntu0.16.04
9.5.25-0ubuntu0.16.04.1+esm1

Open the chart page →

93,855
voltha-infraopencord2.14.01 of 10See more

voltha-infra opencord 2.14.0

1 of the 10 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
postgresql-10@10.12-0ubuntu0.18.04.1
10.19-0ubuntu0.18.04.1

Open the chart page →

41,044
orderregistratiecomponentorderregistratiecomponent1.0.01 of 3See more

orderregistratiecomponent orderregistratiecomponent 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/orderregistratiecomponent-php:latestd17257e4fa27
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,492
procestypecatalogusprocestypecatalogus1.1.01 of 4See more

procestypecatalogus procestypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/procestypecatalogus-php:latest956c4fb64796
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,429
productenendienstencatalogusproductenendienstencatalogus1.0.01 of 3See more

productenendienstencatalogus productenendienstencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/productenendienstencatalogus-php:latest7242da105081
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,510
panproto-application-nldesign0.1.01 of 5See more

pan proto-application-nldesign 0.1.0

1 of the 5 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
conduction/pan-php:dev24f03c57568f
postgresql@12.5-r0
12.9-r0

Open the chart page →

8,725
proto-component-commongroundproto-component-commonground1.0.01 of 3See more

proto-component-commonground proto-component-commonground 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/proto-component-commonground-php:latesteb36ead1954e
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,510
dolibarrraphaelVerified publisher0.0.11 of 1See more

dolibarr raphael 0.0.1

1 of the 1 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
monogramm/docker-dolibarr:13.0-alpine5afd99523984
postgresql@13.3-r0
13.5-r0

Open the chart page →

3,466
laravel-workerrenoki-co1.1.01 of 1See more

laravel-worker renoki-co 1.1.0

1 of the 1 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
postgresql@13.4-r0
13.5-r0

Open the chart page →

5,687
request-registryrequest-registry0.1.01 of 2See more

request-registry request-registry 0.1.0

1 of the 2 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
registry.gitlab.com/open-forms/request-registry:latest0886cbbc5f95
postgresql-13@13.3-1
13.5-0+deb11u1

Open the chart page →

2,201
review-componentreview-component1.0.01 of 3See more

review-component review-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/review-component-php:latestafe623824b82
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,491
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,480
trouw-servicetrouw-service1.0.01 of 3See more

trouw-service trouw-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/trouw-service-php:latestf745e2870692
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,510
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
postgresql@12.5-r0
12.9-r0

Open the chart page →

7,429
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
postgresql@13.4-r0
13.5-r0

Open the chart page →

2,643
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2021-23214.

Container imageDigestPackageFixed in
edoburu/pgbouncer:1.12.0abc0a4123a81
postgresql@13.4-r0
13.5-r0

Open the chart page →

3,697

Container images carrying it

86 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
freeradius/freeradius-server:3.0.2121c8bfa904d8
postgresql-10@10.12-0ubuntu0.18.04.1
10.19-0ubuntu0.18.04.1
2
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
postgresql@13.4-r0
13.5-r0
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
postgresql-9.5@9.5.14-0ubuntu0.16.04
9.5.25-0ubuntu0.16.04.1+esm1
2
pecan/bety:5.4.1f825d480cd62
postgresql-13@13.4-0+deb11u1
13.5-0+deb11u1
2
bitnamilegacy/postgresql:11.8.0c3f10b41989f
postgresql@11.8.0-10
9.6.24
1
conduction/agendaservice-php:latest9cfeeb6c7c20
postgresql@12.5-r0
12.9-r0
1
conduction/balance-registration-php:devc36094a41369
postgresql@12.5-r0
12.9-r0
1
conduction/betaalservice-php:latestece1ab544c57
postgresql@12.5-r0
12.9-r0
1
conduction/cgrc-php:dev25415534d245
postgresql@12.2-r0
12.9-r0
1
conduction/checkin-component-php:dev3423845692c1
postgresql@12.5-r0
12.9-r0
1
conduction/conduction-ui-php:dev2744565516e8
postgresql@12.5-r0
12.9-r0
1
conduction/contactmoment-component-php:deve1d4ad1e22a8
postgresql@12.5-r0
12.9-r0
1
conduction/docparser-php:devb6f95c8ead7d
postgresql@12.5-r0
12.9-r0
1
conduction/kvk-php:dev8f177f9f8a7b
postgresql@12.4-r0
12.9-r0
1
conduction/pan-php:dev24f03c57568f
postgresql@12.5-r0
12.9-r0
1
dpage/pgadmin4:4.22b1f00b8163cf
postgresql@12.2-r0
12.9-r0
1
edoburu/pgbouncer:1.12.0abc0a4123a81
postgresql@13.4-r0
13.5-r0
1
galaxy/galaxy-stable:v18.018e577a626dfd
postgresql-9.3@9.3.22-0ubuntu0.14.04
no fix listed
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
postgresql-10@10.14-0ubuntu0.18.04.1
10.19-0ubuntu0.18.04.1
1
gluufederation/opendj:4.3.0_011a1128b28b95
postgresql@13.4-r0
13.5-r0
1
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
postgresql@12.3-r2
12.9-r0
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
postgresql-10@10.15-0ubuntu0.18.04.1
10.19-0ubuntu0.18.04.1
1
instrumentisto/coturn:4.56c25f154177c
postgresql@12.5-r0
12.9-r0
1
kanboard/kanboard:v1.2.200b6d33dbbc16
postgresql@13.3-r0
13.5-r0
1
library/adminer:4.7143ec8cc2f3a
postgresql@13.1-r2
13.5-r0
1
library/adminer:4.7.5-standalonef42d935fec5a
postgresql@12.1-r0
12.9-r0
1
logiqai/toolbox:2.0.155a574ec5b64
postgresql@12.2-r0
12.9-r0
1
monogramm/docker-dolibarr:13.0-alpine5afd99523984
postgresql@13.3-r0
13.5-r0
1
ngoduykhanh/powerdns-admin:0.2.3099371dd9ba6
postgresql@12.4-r0
12.9-r0
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
postgresql-9.5@9.5.14-0ubuntu0.16.04
9.5.25-0ubuntu0.16.04.1+esm1
1
opendatacube/pipelines:wofs-1.225d810e8504b8
postgresql-10@10.6-0ubuntu0.18.04.1
10.19-0ubuntu0.18.04.1
1
opendatacube/restcube:latest91870111837c
postgresql-10@10.10-0ubuntu0.18.04.1
10.19-0ubuntu0.18.04.1
1
opendatacube/wms:latest1b90cdf68831
postgresql-10@10.10-0ubuntu0.18.04.1
10.19-0ubuntu0.18.04.1
1
openelevation/open-elevation:latest82fb21612e86
postgresql-12@12.7-0ubuntu0.20.04.1
12.9-0ubuntu0.20.04.1
1
pactfoundation/pact-broker:2.79.1.112861b0bd4d9
postgresql@13.2-r0
13.5-r0
1
pecan/data:1.7.257b399ea7422
postgresql@13.4-r0
13.5-r0
1
pecan/web:1.7.2814d678c5550
postgresql-13@13.4-0+deb11u1
13.5-0+deb11u1
1
robjuz/postgresql-nominatim:latest805c7bab76df
postgresql@11.12.0-7
9.6.24
1
robmarkcole/deepstack-ui:latest410275726459
postgresql-13@13.3-1
13.5-0+deb11u1
1
robotshop/rs-payment:latest774b52c6180d
postgresql-13@13.3-1
13.5-0+deb11u1
1
shlinkio/shlink:2.7.1c6729db1d3a8
postgresql@13.3-r0
13.5-r0
1
statcan/ckan:2.93921305425b8
postgresql-12@12.7-0ubuntu0.20.04.1
12.9-0ubuntu0.20.04.1
1
timescale/timescaledb-postgis:latest-pg127758704d4a14
postgresql@13.3-r0
13.5-r0
1
tpdock/freeradius:2.2.93da600c95a49
postgresql-9.5@9.5.10-0ubuntu0.16.04
9.5.25-0ubuntu0.16.04.1+esm1
1
wallabag/wallabag:2.4.25e4c26a7fb4a
postgresql@12.6-r0
12.9-r0
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
postgresql-12@12.8-0ubuntu0.20.04.1
12.9-0ubuntu0.20.04.1
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
postgresql-12@12.8-0ubuntu0.20.04.1
12.9-0ubuntu0.20.04.1
1
ghcr.io/alexanderbabel/database-s3-backup:1.3.33191b771a6f2
postgresql@13.4-r0
13.5-r0
1
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
postgresql@12.5-r0
12.9-r0
1
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
postgresql@12.5-r0
12.9-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.