StackRadar

CVE-2021-23566

Medium

Advisory

Published 14 Jan 2022In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
32
of 17,781 indexed, latest versions
Container images
30
deployed by those charts
Fix available
1 of 2
affected packages

Exposure of Sensitive Information to an Unauthorized Actor in nanoid

Carried by container images the latest versions of 32 of 17,781 indexed charts deploy, on 30 images.

Affected packageAffected versionsFixed inImages
nanoidnpm3.1.12, 3.1.16, 3.1.20, 3.1.22+4 more3.1.3129
node-postcssdeb8.4.31+~cs8.0.26-1no fix listed1
OSV records
GHSA-qrpm-p2h7-hrv2UBUNTU-CVE-2021-23566

Charts affected

32 by stars
ChartLatestAffected imagesRadar Score
redisinsightheywood8-helm-chartsVerified publisher0.4.51 of 1See more

redisinsight heywood8-helm-charts 0.4.5

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
heywood8/redisinsight:2.28.00bc9ab313d37
nanoid@3.1.20
3.1.31

Open the chart page →

2,828
wikijsgeek-cookbookVerified publisher6.4.21 of 1See more

wikijs geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
nanoid@3.1.22
3.1.31

Open the chart page →

5,946
nightscoutgabe565Verified publisher0.13.01 of 2See more

nightscout gabe565 0.13.0

1 of the 2 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:15.0.2ad29ca7a4de6
nanoid@3.1.20
3.1.31

Open the chart page →

2,521
mealiegeek-cookbookVerified publisher5.1.21 of 2See more

mealie geek-cookbook 5.1.2

1 of the 2 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
nanoid@3.1.30
3.1.31

Open the chart page →

7,579
zwavejs2mqttgeek-cookbookVerified publisher5.4.21 of 1See more

zwavejs2mqtt geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
nanoid@3.1.20
3.1.31

Open the chart page →

3,476
kubeviouskubevious1.2.21 of 7See more

kubevious kubevious 1.2.2

1 of the 7 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
kubevious/guard:1.2.19bf567704de2
nanoid@3.1.20
3.1.31

Open the chart page →

14,204
data-fairdata354-helmVerified publisher1.1.21 of 12See more

data-fair data354-helm 1.1.2

1 of the 12 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ghcr.io/data-fair/metrics:0a8d40779eeae
nanoid@3.1.25
3.1.31

Open the chart page →

38,346
ranetogabisonfire0.1.21 of 1See more

raneto gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
nanoid@3.1.12
3.1.31

Open the chart page →

2,519
overseerrgeek-cookbookVerified publisher5.4.21 of 1See more

overseerr geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ghcr.io/sct/overseerr:1.26.1254d16af8f71
nanoid@3.1.23
3.1.31

Open the chart page →

3,444
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ltdstudio/terraforming-mars:latest0e76c6f4eac0
nanoid@3.1.23
3.1.31

Open the chart page →

7,152
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
jupyterhub/jupyterhub:5.4.63974ba945e65
node-postcss@8.4.31+~cs8.0.26-1
no fix listed

Open the chart page →

13,220
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
conduction/conduction-ui-app:devd591f5e6f2a9
nanoid@3.1.20
3.1.31

Open the chart page →

12,907
frontend-charteks-3-tier-app-chart0.1.01 of 1See more

frontend-chart eks-3-tier-app-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
arfath29/3-tier-app-frontend:latest384b3e377f47
nanoid@3.1.23
3.1.31

Open the chart page →

3,744
bzz-token-serviceethersphereVerified publisher0.2.01 of 1See more

bzz-token-service ethersphere 0.2.0

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ethersphere/bzz-token-service:latest7624f11a72ad
nanoid@3.1.20
3.1.31

Open the chart page →

3,260
nightscoutgeek-cookbookVerified publisher1.2.21 of 1See more

nightscout geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
nanoid@3.1.20
3.1.31

Open the chart page →

4,043
Governify-Bluejaygovernify0.1.01 of 12See more

Governify-Bluejay governify 0.1.0

1 of the 12 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
nanoid@3.1.25
3.1.31

Open the chart page →

22,512
Governify-Falcongovernify0.1.01 of 10See more

Governify-Falcon governify 0.1.0

1 of the 10 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
nanoid@3.1.25
3.1.31

Open the chart page →

24,319
wikijshomeenterpriseinc1.4.01 of 1See more

wikijs homeenterpriseinc 1.4.0

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
requarks/wiki:canary-2.5.2438b5865a7386c
nanoid@3.1.22
3.1.31

Open the chart page →

4,253
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
nanoid@3.1.20
3.1.31

Open the chart page →

4,944
kubevious-agentkubevious1.0.41 of 1See more

kubevious-agent kubevious 1.0.4

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
kubevious/parser:1.0.151acf1a1f0b47
nanoid@3.1.20
3.1.31

Open the chart page →

1,927
squareonelsst-sqre0.4.11 of 1See more

squareone lsst-sqre 0.4.1

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
lsstsqre/squareone:0.4.09ded78e7fe03
nanoid@3.1.22
3.1.31

Open the chart page →

2,247
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
nanoid@3.1.23
3.1.31

Open the chart page →

5,287
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
nanoid@3.1.16
3.1.31

Open the chart page →

6,438
user-manager-mongodbmoreillonVerified publisher0.6.21 of 4See more

user-manager-mongodb moreillon 0.6.2

1 of the 4 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
nanoid@3.1.20
3.1.31

Open the chart page →

25,704
nightscoutmt1905021.1.01 of 3See more

nightscout mt190502 1.1.0

1 of the 3 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:15.0.3f604dc4c03ca
nanoid@3.1.20
3.1.31

Open the chart page →

6,608
flomesh-consoleopenshift0.70.0-30-ubi81 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

1 of the 2 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
nanoid@3.1.28
3.1.31

Open the chart page →

9,968
jsonplaceholderrgnu1.0.01 of 1See more

jsonplaceholder rgnu 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
svenwal/jsonplaceholder:latestba2f285af432
nanoid@3.1.30
3.1.31

Open the chart page →

1,547
wekanschmitzis1.1.11 of 1See more

wekan schmitzis 1.1.1

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
quay.io/wekan/wekan:v5.65cb17600883a3
nanoid@3.1.22
3.1.31

Open the chart page →

3,638
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
nanoid@3.1.23
3.1.31

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
nanoid@3.1.23
3.1.31

Open the chart page →

11,554
fdi-dotstatsuite-dlmstatcan0.3.11 of 1See more

fdi-dotstatsuite-dlm statcan 0.3.1

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
nanoid@3.1.23
3.1.31

Open the chart page →

3,881
queryservice-gatewaywbstack0.2.01 of 1See more

queryservice-gateway wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2021-23566.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
nanoid@3.1.20
3.1.31

Open the chart page →

2,559

Container images carrying it

30 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
governify/assets-manager:v1.4.12987672448c7
nanoid@3.1.25
3.1.31
2
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
nanoid@3.1.23
3.1.31
2
arfath29/3-tier-app-frontend:latest384b3e377f47
nanoid@3.1.23
3.1.31
1
conduction/conduction-ui-app:devd591f5e6f2a9
nanoid@3.1.20
3.1.31
1
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
nanoid@3.1.20
3.1.31
1
ethersphere/bzz-token-service:latest7624f11a72ad
nanoid@3.1.20
3.1.31
1
heywood8/redisinsight:2.28.00bc9ab313d37
nanoid@3.1.20
3.1.31
1
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
nanoid@3.1.30
3.1.31
1
jupyterhub/jupyterhub:5.4.63974ba945e65
node-postcss@8.4.31+~cs8.0.26-1
no fix listed
1
kubevious/guard:1.2.19bf567704de2
nanoid@3.1.20
3.1.31
1
kubevious/parser:1.0.151acf1a1f0b47
nanoid@3.1.20
3.1.31
1
lsstsqre/squareone:0.4.09ded78e7fe03
nanoid@3.1.22
3.1.31
1
ltdstudio/terraforming-mars:latest0e76c6f4eac0
nanoid@3.1.23
3.1.31
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
nanoid@3.1.20
3.1.31
1
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
nanoid@3.1.20
3.1.31
1
nightscout/cgm-remote-monitor:15.0.2ad29ca7a4de6
nanoid@3.1.20
3.1.31
1
nightscout/cgm-remote-monitor:15.0.3f604dc4c03ca
nanoid@3.1.20
3.1.31
1
requarks/wiki:canary-2.5.2438b5865a7386c
nanoid@3.1.22
3.1.31
1
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
nanoid@3.1.23
3.1.31
1
svenwal/jsonplaceholder:latestba2f285af432
nanoid@3.1.30
3.1.31
1
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
nanoid@3.1.20
3.1.31
1
ghcr.io/data-fair/metrics:0a8d40779eeae
nanoid@3.1.25
3.1.31
1
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
nanoid@3.1.12
3.1.31
1
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
nanoid@3.1.22
3.1.31
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
nanoid@3.1.23
3.1.31
1
ghcr.io/sct/overseerr:1.26.1254d16af8f71
nanoid@3.1.23
3.1.31
1
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
nanoid@3.1.20
3.1.31
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
nanoid@3.1.28
3.1.31
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
nanoid@3.1.16
3.1.31
1
quay.io/wekan/wekan:v5.65cb17600883a3
nanoid@3.1.22
3.1.31
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.