StackRadar

CVE-2021-3677

Medium

Advisory

Published 12 Aug 2021In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.014
72nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
60
of 17,781 indexed, latest versions
Container images
64
deployed by those charts
Fix available
4 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 60 of 17,781 indexed charts deploy, on 64 images.

Affected packageAffected versionsFixed inImages
postgresqlapk12.1-r0, 12.2-r0, 12.3-r2, 12.4-r0+5 more12.8-r0, 13.4-r050
postgresql-12deb12.7-0ubuntu0.20.04.112.8-0ubuntu0.20.04.17
postgresql-13deb13.3-113.4-0+deb11u15
postgresqlbitnami11.8.0-10, 11.12.0-711.13.02
OSV records
ALPINE-CVE-2021-3677BIT-postgresql-2021-3677DEBIAN-CVE-2021-3677UBUNTU-CVE-2021-3677
Also known as
USN-5038-1

Charts affected

60 by stars
ChartLatestAffected imagesRadar Score
proto-component-commongroundproto-component-commonground1.0.01 of 3See more

proto-component-commonground proto-component-commonground 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/proto-component-commonground-php:latesteb36ead1954e
postgresql@12.5-r0
12.8-r0

Open the chart page →

7,510
dolibarrraphaelVerified publisher0.0.11 of 1See more

dolibarr raphael 0.0.1

1 of the 1 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
monogramm/docker-dolibarr:13.0-alpine5afd99523984
postgresql@13.3-r0
13.4-r0

Open the chart page →

3,466
request-registryrequest-registry0.1.01 of 2See more

request-registry request-registry 0.1.0

1 of the 2 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
registry.gitlab.com/open-forms/request-registry:latest0886cbbc5f95
postgresql-13@13.3-1
13.4-0+deb11u1

Open the chart page →

2,201
review-componentreview-component1.0.01 of 3See more

review-component review-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/review-component-php:latestafe623824b82
postgresql@12.5-r0
12.8-r0

Open the chart page →

7,491
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
postgresql@12.5-r0
12.8-r0

Open the chart page →

7,480
trouw-servicetrouw-service1.0.01 of 3See more

trouw-service trouw-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/trouw-service-php:latestf745e2870692
postgresql@12.5-r0
12.8-r0

Open the chart page →

7,510
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
postgresql@12.5-r0
12.8-r0

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
postgresql@12.5-r0
12.8-r0

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
postgresql@12.5-r0
12.8-r0

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2021-3677.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
postgresql@12.5-r0
12.8-r0

Open the chart page →

7,429

Container images carrying it

64 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
postgresql@12.5-r0
12.8-r0
1
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
postgresql@12.5-r0
12.8-r0
1
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
postgresql@12.5-r0
12.8-r0
1
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
postgresql@12.5-r0
12.8-r0
1
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
postgresql@12.5-r0
12.8-r0
1
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
postgresql@12.5-r0
12.8-r0
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
postgresql-12@12.7-0ubuntu0.20.04.1
12.8-0ubuntu0.20.04.1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
postgresql-12@12.7-0ubuntu0.20.04.1
12.8-0ubuntu0.20.04.1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
postgresql-12@12.7-0ubuntu0.20.04.1
12.8-0ubuntu0.20.04.1
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
postgresql-12@12.7-0ubuntu0.20.04.1
12.8-0ubuntu0.20.04.1
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
postgresql-12@12.7-0ubuntu0.20.04.1
12.8-0ubuntu0.20.04.1
1
ghcr.io/leoquote/tinyproxy_exporter:master6b4103d88dbb
postgresql-13@13.3-1
13.4-0+deb11u1
1
registry.gitlab.com/open-forms/forms-catalogue:latest4eaf9c911f33
postgresql-13@13.3-1
13.4-0+deb11u1
1
registry.gitlab.com/open-forms/request-registry:latest0886cbbc5f95
postgresql-13@13.3-1
13.4-0+deb11u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.