StackRadar

CVE-2021-23343

Medium

Advisory

Published 10 Aug 2021In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.022
82nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
163
of 17,781 indexed, latest versions
Container images
159
deployed by those charts
Fix available
1 of 1
affected package

Regular Expression Denial of Service in path-parse

Carried by container images the latest versions of 163 of 17,781 indexed charts deploy, on 159 images.

Affected packageAffected versionsFixed inImages
path-parsenpm1.0.5, 1.0.61.0.7159
OSV records
GHSA-hj48-42vr-x3v9

Charts affected

163 by stars
ChartLatestAffected imagesRadar Score
chatwootchatwootVerified publisher2.0.241 of 3See more

chatwoot chatwoot 2.0.24

1 of the 3 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v4.15.167ebc751c171
path-parse@1.0.6
1.0.7

Open the chart page →

9,203
microcksmicrocksOfficialVerified publisher0.8.0-helm-3.kube-1.171 of 5See more

microcks microcks 0.8.0-helm-3.kube-1.17

1 of the 5 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
microcks/microcks-postman-runtime:latestcb72e46a1b3c
path-parse@1.0.6
1.0.7

Open the chart page →

10,732
netris-controllernetrisai2.8.21 of 14See more

netris-controller netrisai 2.8.2

1 of the 14 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
path-parse@1.0.6
1.0.7

Open the chart page →

30,326
lighthouse-cicowboysysopVerified publisher9.0.01 of 1See more

lighthouse-ci cowboysysop 9.0.0

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
patrickhulce/lhci-server:0.8.174b4b6a3954d
path-parse@1.0.6
1.0.7

Open the chart page →

2,213
misskeyalytiVerified publisher1.0.01 of 1See more

misskey alyti 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
misskey/misskey:12.110.1e08b7c478093
path-parse@1.0.6
1.0.7

Open the chart page →

5,251
fadicetic0.3.11 of 25See more

fadi cetic 0.3.1

1 of the 25 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
path-parse@1.0.6
1.0.7

Open the chart page →

52,919
backstagedeliveryheroVerified publisher0.1.151 of 2See more

backstage deliveryhero 0.1.15

1 of the 2 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
path-parse@1.0.6
1.0.7

Open the chart page →

8,213
wikijsgeek-cookbookVerified publisher6.4.21 of 1See more

wikijs geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
path-parse@1.0.6
1.0.7

Open the chart page →

5,946
kubeflowkubeflow1.6.21 of 45See more

kubeflow kubeflow 1.6.2

1 of the 45 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
kubeflownotebookswg/centraldashboard:v1.6.137300551dea6
path-parse@1.0.6
1.0.7

Open the chart page →

96,941
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
path-parse@1.0.6
1.0.7

Open the chart page →

9,261
taigarc-helm-charts0.1.01 of 7See more

taiga rc-helm-charts 0.1.0

1 of the 7 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
taigaio/taiga-events:6.4.00bf2d24a57d9
path-parse@1.0.6
1.0.7

Open the chart page →

7,255
hubotdecayofmind1.0.21 of 3See more

hubot decayofmind 1.0.2

1 of the 3 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
decayofmind/hubot:3.3.21e18e92fe694
path-parse@1.0.6
1.0.7

Open the chart page →

2,513
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
path-parse@1.0.6
1.0.7

Open the chart page →

22,773
zwavejs2mqttgeek-cookbookVerified publisher5.4.21 of 1See more

zwavejs2mqtt geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
path-parse@1.0.6
1.0.7

Open the chart page →

3,476
kongakonga1.1.01 of 1See more

konga konga 1.1.0

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
pantsel/konga:latestc8172b75607d
path-parse@1.0.5
1.0.7

Open the chart page →

5,209
flagsmithone-acre-fundVerified publisher0.1.51 of 6See more

flagsmith one-acre-fund 0.1.5

1 of the 6 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
flagsmith/flagsmith-frontend:v2.6.0df02a29e8b0c
path-parse@1.0.6
1.0.7

Open the chart page →

6,868
predatorzooz1.7.01 of 1See more

predator zooz 1.7.0

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
zooz/predator:1.6f491d1f7a865
path-parse@1.0.6
1.0.7

Open the chart page →

2,851
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
path-parse@1.0.6
1.0.7

Open the chart page →

13,635
bredbandskollen-prometheus-exporteraolde0.2.31 of 1See more

bredbandskollen-prometheus-exporter aolde 0.2.3

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
aolde/bredbandskollen-prometheus-exporter:1.0.2dc61ee713720
path-parse@1.0.6
1.0.7

Open the chart page →

1,972
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-kbn:latest0570b27bb7c2
path-parse@1.0.6
1.0.7

Open the chart page →

17,896
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
path-parse@1.0.6
1.0.7

Open the chart page →

10,730
fluxcd-webuiccowleyVerified publisher0.0.21 of 2See more

fluxcd-webui ccowley 0.0.2

1 of the 2 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
adrianberger/fluxcd-webui:latest76848c0d2780
path-parse@1.0.6
1.0.7

Open the chart page →

3,509
squestchristianhuthVerified publisher6.6.71 of 4See more

squest christianhuth 6.6.7

1 of the 4 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
quay.io/hewlettpackardenterprise/squest:2.8.465694109877e
path-parse@1.0.6
1.0.7

Open the chart page →

9,971
data-fairdata354-helmVerified publisher1.1.21 of 12See more

data-fair data354-helm 1.1.2

1 of the 12 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
koumoul/capture:17108d47be3b2
path-parse@1.0.6
1.0.7

Open the chart page →

38,346
ranetogabisonfire0.1.21 of 1See more

raneto gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
path-parse@1.0.6
1.0.7

Open the chart page →

2,519
foundryvttgeek-cookbookVerified publisher3.4.21 of 1See more

foundryvtt geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
felddy/foundryvtt:0.8.36c5d90b90349
path-parse@1.0.6
1.0.7

Open the chart page →

2,042
magic-mirrorgeek-cookbookVerified publisher4.4.21 of 1See more

magic-mirror geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
path-parse@1.0.6
1.0.7

Open the chart page →

4,405
overseerrgeek-cookbookVerified publisher5.4.21 of 1See more

overseerr geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
ghcr.io/sct/overseerr:1.26.1254d16af8f71
path-parse@1.0.6
1.0.7

Open the chart page →

3,444
tdarrgeek-cookbookVerified publisher4.6.21 of 2See more

tdarr geek-cookbook 4.6.2

1 of the 2 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.00.101e3f9328327d
path-parse@1.0.6
1.0.7

Open the chart page →

31,000
youtubedl-materialgeek-cookbookVerified publisher4.4.21 of 1See more

youtubedl-material geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.23720b856bd2f
path-parse@1.0.6
1.0.7

Open the chart page →

4,410
zigbee2mqttgeek-cookbookVerified publisher9.4.21 of 1See more

zigbee2mqtt geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
path-parse@1.0.6
1.0.7

Open the chart page →

2,173
openprojecthomeenterpriseinc0.5.01 of 1See more

openproject homeenterpriseinc 0.5.0

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
openproject/community:12.0.2734743d11094
path-parse@1.0.6
1.0.7

Open the chart page →

6,810
pdc-portali4trustVerified publisher2.3.21 of 1See more

pdc-portal i4trust 2.3.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
i4trust/pdc-portal:2.0.03e77858e1219
path-parse@1.0.6
1.0.7

Open the chart page →

2,723
chatwootmaxcrm-chartsVerified publisher1.1.2011 of 4See more

chatwoot maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
path-parse@1.0.6
1.0.7

Open the chart page →

5,940
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.12 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

2 of the 6 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
path-parse@1.0.6
1.0.7
fjvela/urjc-fjvela-server:1.0.53c840aebce22
path-parse@1.0.6
1.0.7

Open the chart page →

19,187
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
path-parse@1.0.6
1.0.7

Open the chart page →

5,300
camophntom0.1.11 of 1See more

camo phntom 0.1.1

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
phntom/camo:2.3.1a9b1304d6c71
path-parse@1.0.6
1.0.7

Open the chart page →

1,217
laravel-octanerenoki-co1.0.01 of 1See more

laravel-octane renoki-co 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
quay.io/renokico/laravel-helm-demo:octane-0.6.0cad83090c58f
path-parse@1.0.6
1.0.7

Open the chart page →

3,634
statsdstatsd-airflow-smd0.1.191 of 1See more

statsd statsd-airflow-smd 0.1.19

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
statsd/statsd:v0.8.6dab129e74c25
path-parse@1.0.6
1.0.7

Open the chart page →

4,185
testhubteshubVerified publisher0.1.41 of 3See more

testhub teshub 0.1.4

1 of the 3 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
testhubio/testhub-frontend:on-preme86c2db53be8
path-parse@1.0.6
1.0.7

Open the chart page →

7,517
restreamerutkuozdemirVerified publisher1.1.01 of 1See more

restreamer utkuozdemir 1.1.0

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
datarhei/restreamer:0.6.4655e12f9eeed
path-parse@1.0.6
1.0.7

Open the chart page →

2,598
scrapoxywiremindVerified publisher0.3.41 of 1See more

scrapoxy wiremind 0.3.4

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
wiremind/scrapoxy:lateste7048929a676
path-parse@1.0.6
1.0.7

Open the chart page →

2,154
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-webui:v2.2.2fda21b0a0344
path-parse@1.0.6
1.0.7

Open the chart page →

25,443
allure-docker-helm-chartallure-service-chartVerified publisher0.1.01 of 2See more

allure-docker-helm-chart allure-service-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service-ui:latest4ebd8b4ef340
path-parse@1.0.6
1.0.7

Open the chart page →

3,647
openhab-cloudandibraeuVerified publisher1.2.61 of 1See more

openhab-cloud andibraeu 1.2.6

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
openhab/openhab-cloud:a8138a329dd2bac8c4b
path-parse@1.0.6
1.0.7

Open the chart page →

3,437
angular-node-chartangular-webapp2.0.01 of 1See more

angular-node-chart angular-webapp 2.0.0

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
rakii8585/angular-node-webapp:latest026082a515ac
path-parse@1.0.6
1.0.7

Open the chart page →

2,616
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-external-service:1.0.02a68e9ac7f09
path-parse@1.0.6
1.0.7
davidvmar/urjc-davidvmar-server:1.0.05663f5b24615
path-parse@1.0.6
1.0.7

Open the chart page →

19,745
trifidappuio2.0.21 of 1See more

trifid appuio 2.0.2

1 of the 1 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
zazuko/trifid:2.3.7054be137de70
path-parse@1.0.6
1.0.7

Open the chart page →

2,783
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
pantsel/konga:latestc8172b75607d
path-parse@1.0.5
1.0.7

Open the chart page →

18,277
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2021-23343.

Container imageDigestPackageFixed in
ltdstudio/terraforming-mars:latest0e76c6f4eac0
path-parse@1.0.6
1.0.7

Open the chart page →

7,152

Container images carrying it

159 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
mojaloop/event-sidecar:v11.0.189b8ab71b74b
path-parse@1.0.6
1.0.7
5
oscarsotosanchez/server:v1.06e2e1279126b
path-parse@1.0.6
1.0.7
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
path-parse@1.0.6
1.0.7
4
dgraph/dgraph:v21.12.03b55ea83fffe
path-parse@1.0.6
1.0.7
3
frankescobar/allure-docker-service-ui:7.0.3:latest4ebd8b4ef340
path-parse@1.0.6
1.0.7
3
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
path-parse@1.0.6
1.0.7
3
pantsel/konga:latestc8172b75607d
path-parse@1.0.5
1.0.7
3
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
path-parse@1.0.6
1.0.7
2
chatwoot/chatwoot:v3.1.0d530ab8c1753
path-parse@1.0.6
1.0.7
2
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
path-parse@1.0.6
1.0.7
2
fjvela/urjc-fjvela-server:1.0.53c840aebce22
path-parse@1.0.6
1.0.7
2
governify/assets-manager:v1.4.12987672448c7
path-parse@1.0.6
1.0.7
2
governify/director:v1.4.0608c6940bb98
path-parse@1.0.6
1.0.7
2
governify/registry:v3.4.0d3f37f4f8168
path-parse@1.0.6
1.0.7
2
governify/render:v2.2.0daeca1ce28e6
path-parse@1.0.6
1.0.7
2
governify/reporter:v2.2.038595913458f
path-parse@1.0.6
1.0.7
2
gradiant/open5gs-webui:2.7.5fbd10c017541
path-parse@1.0.6
1.0.7
2
istio/examples-bookinfo-ratings-v1:1.15.009b9d6958a13
path-parse@1.0.6
1.0.7
2
istio/examples-bookinfo-ratings-v1:1.14.0eb0f1a725ca8
path-parse@1.0.6
1.0.7
2
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
path-parse@1.0.6
1.0.7
2
l7mp/kurento-one2one-call-server:latestfd2b2d06fff6
path-parse@1.0.5
1.0.7
2
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
path-parse@1.0.6
1.0.7
2
mesosphere/kommander:6.100.13917e82333a9
path-parse@1.0.6
1.0.7
2
mojaloop/central-ledger:v13.14.01abc8a7aa71c
path-parse@1.0.6
1.0.7
2
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
path-parse@1.0.6
1.0.7
2
statsd/statsd:v0.8.6dab129e74c25
path-parse@1.0.6
1.0.7
2
taskrabbit/elasticsearch-dump:latestc967fe68b9c7
path-parse@1.0.6
1.0.7
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
path-parse@1.0.6
1.0.7
2
adrianberger/fluxcd-webui:latest76848c0d2780
path-parse@1.0.6
1.0.7
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
path-parse@1.0.6
1.0.7
1
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
path-parse@1.0.5
1.0.7
1
amundsendev/amundsen-frontend:2.1.169e7915e61c1
path-parse@1.0.5
1.0.7
1
aolde/bredbandskollen-prometheus-exporter:1.0.2dc61ee713720
path-parse@1.0.6
1.0.7
1
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
path-parse@1.0.6
1.0.7
1
assistiot/cybersecurity-monitoring_ir-kbn:latest0570b27bb7c2
path-parse@1.0.6
1.0.7
1
aureliengasser/http-folder:1.1.111c4318c2571
path-parse@1.0.6
1.0.7
1
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
path-parse@1.0.6
1.0.7
1
bluerange/bluerange-mosquitto:25f1bfbba84832
path-parse@1.0.6
1.0.7
1
catalysm/csmm:latestf003b35f54d9
path-parse@1.0.6
1.0.7
1
chatwoot/chatwoot:v4.15.167ebc751c171
path-parse@1.0.6
1.0.7
1
cnieg/maildev:v1.1.998ee05668915
path-parse@1.0.6
1.0.7
1
conduction/conduction-ui-app:devd591f5e6f2a9
path-parse@1.0.6
1.0.7
1
datarhei/restreamer:0.6.4655e12f9eeed
path-parse@1.0.6
1.0.7
1
davidvmar/urjc-davidvmar-external-service:1.0.02a68e9ac7f09
path-parse@1.0.6
1.0.7
1
davidvmar/urjc-davidvmar-server:1.0.05663f5b24615
path-parse@1.0.6
1.0.7
1
decayofmind/hubot:3.3.21e18e92fe694
path-parse@1.0.6
1.0.7
1
denisshav/backend:latest4cc8dc5a4499
path-parse@1.0.6
1.0.7
1
eameti/node-app:latestf36642affa86
path-parse@1.0.6
1.0.7
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
path-parse@1.0.5
1.0.7
1
ethersphere/bzz-token-service:latest7624f11a72ad
path-parse@1.0.6
1.0.7
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.