StackRadar

CVE-2021-27568

Medium

Advisory

Published 16 Jun 2021In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.029
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
53
of 17,781 indexed, latest versions
Container images
62
deployed by those charts
Fix available
1 of 1
affected package

Improper Check for Unusual or Exceptional Conditions in json-smart

Carried by container images the latest versions of 53 of 17,781 indexed charts deploy, on 62 images.

Affected packageAffected versionsFixed inImages
json-smartmaven1.1.1, 1.3.1, 2.2.1, 2.31.3.2, 2.3.162
OSV records
GHSA-v528-7hrm-frqp

Charts affected

53 by stars
ChartLatestAffected imagesRadar Score
thingsboardthingsboardVerified publisher0.1.33 of 12See more

thingsboard thingsboard 0.1.3

3 of the 12 container images this version deploys carry CVE-2021-27568.

Container imageDigestPackageFixed in
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
json-smart@2.3
2.3.1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
json-smart@2.3
2.3.1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
json-smart@2.3
2.3.1

Open the chart page →

25,394
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2021-27568.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch:1.13.32acfa1dcc5f8
json-smart@2.3
2.3.1

Open the chart page →

5,806
is-pattern-1wso2is-pattern15.11.01 of 2See more

is-pattern-1 wso2is-pattern1 5.11.0

1 of the 2 container images this version deploys carry CVE-2021-27568.

Container imageDigestPackageFixed in
massimolauri/wso2is:5.11.0-centose08abf0ce767
json-smart@2.3
2.3.1

Open the chart page →

6,213

Container images carrying it

62 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
raykrueger/riemann:0.2.14c8baf3de57bb
json-smart@1.1.1
1.3.2
1
reportportal/service-authorization:5.7.09e73114dbd15
json-smart@2.3
2.3.1
1
rodolpheche/wiremock:2.27.22328a9fce2bf
json-smart@2.3
2.3.1
1
seldonio/apife:0.2.7ba81b17f00eb
json-smart@2.2.1
2.3.1
1
seldonio/apife:0.3.1eea0d3f578ca
json-smart@2.2.1
2.3.1
1
seldonio/cluster-manager:0.2.729e362bb1ba2
json-smart@2.2.1
2.3.1
1
slamdev/apache-hive:2.3.9-2.10.1b4b029c9b15f
json-smart@1.3.1
1.3.2
1
sslhep/hive-metastore:3.1.39e80af083079
json-smart@2.3
2.3.1
1
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
json-smart@2.3
2.3.1
1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
json-smart@2.3
2.3.1
1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
json-smart@2.3
2.3.1
1
gcr.io/spinnaker-marketplace/halyard:1.32.00ee5f968d2ab
json-smart@2.3
2.3.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.