StackRadar

CVE-2021-3801

Medium

Advisory

Published 20 Sept 2021In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.010
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
10
of 17,781 indexed, latest versions
Container images
8
deployed by those charts
Fix available
1 of 1
affected package

prismjs Regular Expression Denial of Service vulnerability

Carried by container images the latest versions of 10 of 17,781 indexed charts deploy, on 8 images.

Affected packageAffected versionsFixed inImages
prismjsnpm1.22.0, 1.23.0, 1.24.0, 1.24.11.25.08
OSV records
GHSA-hqhp-5p83-hx96

Charts affected

10 by stars
ChartLatestAffected imagesRadar Score
zwavejs2mqttgeek-cookbookVerified publisher5.4.21 of 1See more

zwavejs2mqtt geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
prismjs@1.23.0
1.25.0

Open the chart page →

3,476
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
prismjs@1.22.0
1.25.0

Open the chart page →

10,730
opendistro-esbeeinventor1.15.11 of 3See more

opendistro-es beeinventor 1.15.1

1 of the 3 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
prismjs@1.22.0
1.25.0

Open the chart page →

5,806
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
prismjs@1.23.0
1.25.0

Open the chart page →

7,232
aws-api-gateway-operatormintel0.1.21 of 11See more

aws-api-gateway-operator mintel 0.1.2

1 of the 11 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
prismjs@1.24.0
1.25.0

Open the chart page →

10,603
standard-application-stackmintel11.4.01 of 12See more

standard-application-stack mintel 11.4.0

1 of the 12 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
prismjs@1.24.0
1.25.0

Open the chart page →

10,603
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
linuxserver/codimd:latestb801bbcf6386
prismjs@1.22.0
1.25.0

Open the chart page →

27,465
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
prismjs@1.24.1
1.25.0

Open the chart page →

29,227
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
ubercadence/web:v3.29.58564a5b44a6d
prismjs@1.23.0
1.25.0

Open the chart page →

10,127
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2021-3801.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
prismjs@1.22.0
1.25.0

Open the chart page →

5,806

Container images carrying it

8 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
prismjs@1.22.0
1.25.0
2
opensearchproject/opensearch-dashboards:1.0.039695180364b
prismjs@1.24.0
1.25.0
2
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
prismjs@1.22.0
1.25.0
1
linuxserver/codimd:latestb801bbcf6386
prismjs@1.22.0
1.25.0
1
roadiehq/community-backstage-image:latestef355bf5b639
prismjs@1.23.0
1.25.0
1
ubercadence/web:v3.29.58564a5b44a6d
prismjs@1.23.0
1.25.0
1
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
prismjs@1.23.0
1.25.0
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
prismjs@1.24.1
1.25.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.