StackRadar

CVE-2021-3807

High

Advisory

Published 17 Sept 2021In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.036
89th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
278
of 17,781 indexed, latest versions
Container images
282
deployed by those charts
Fix available
1 of 2
affected packages

Inefficient Regular Expression Complexity in chalk/ansi-regex

Carried by container images the latest versions of 278 of 17,781 indexed charts deploy, on 282 images.

Affected packageAffected versionsFixed inImages
ansi-regexnpm3.0.0, 4.1.0, 5.0.03.0.1, 4.1.1, 5.0.1281
node-ansi-regexdeb5.0.0-1, 5.0.1-1no fix listed3
OSV records
GHSA-93q8-gq69-wqmwUBUNTU-CVE-2021-3807

Charts affected

278 by stars
ChartLatestAffected imagesRadar Score
pombasmo-helm-chart6.0.01 of 17See more

pomba smo-helm-chart 6.0.0

1 of the 17 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
taskrabbit/elasticsearch-dump:latestc967fe68b9c7
ansi-regex@3.0.0
3.0.1

Open the chart page →

29,220
speedtest-trackersoblivionscall3.0.41 of 1See more

speedtest-tracker soblivionscall 3.0.4

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
henrywhitaker3/speedtest-tracker:latest47159a940229
ansi-regex@4.1.0
4.1.1

Open the chart page →

2,460
pwssoketi0.2.41 of 1See more

pws soketi 0.2.4

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
ansi-regex@3.0.0
3.0.1

Open the chart page →

3,228
alertmanager-to-alerta-botsomeblackmagic0.2.01 of 1See more

alertmanager-to-alerta-bot someblackmagic 0.2.0

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
someblackmagic/alertmanager-to-alerta-bot:latest78bf43744ea5
ansi-regex@4.1.0
4.1.1

Open the chart page →

2,121
alert-mappersomeblackmagic0.2.01 of 1See more

alert-mapper someblackmagic 0.2.0

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
someblackmagic/alert-mapper:v0.1.088351d85c04c
ansi-regex@4.1.0
4.1.1

Open the chart page →

1,890
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
ansi-regex@5.0.0
5.0.1

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
ansi-regex@5.0.0
5.0.1

Open the chart page →

11,554
workshop-exercisestakaterVerified publisher0.0.2601 of 1See more

workshop-exercise stakater 0.0.260

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
stakater/workshop-exercise:0.0.26076926b7159d3
ansi-regex@3.0.0
3.0.1

Open the chart page →

992
fdi-dotstatsuite-dlmstatcan0.3.11 of 1See more

fdi-dotstatsuite-dlm statcan 0.3.1

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
ansi-regex@4.1.0
4.1.1

Open the chart page →

3,881
pachydermstatcan0.5.11 of 4See more

pachyderm statcan 0.5.1

1 of the 4 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
pachyderm/grpc-proxy:0.4.92b27f41d4d02
ansi-regex@3.0.0
3.0.1

Open the chart page →

4,967
grafanasvtech-public-helm-charts1.0.01 of 2See more

grafana svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
ansi-regex@5.0.0
node-ansi-regex@5.0.0-1
5.0.1
no fix listed

Open the chart page →

10,902
dashkioskt3n2.0.01 of 1See more

dashkiosk t3n 2.0.0

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
quay.io/t3n/dashkiosk:v2.7.8c973e166a5dc
ansi-regex@3.0.0
3.0.1

Open the chart page →

3,827
trudesktechpreta1.0.01 of 3See more

trudesk techpreta 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
polonel/trudesk:1.2.60cf6513f6fe3
ansi-regex@5.0.0
5.0.1

Open the chart page →

4,017
vehicle-dashboardtest-vehi-dash0.1.02 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

2 of the 7 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
samajh/alprbackend:latestea742b4372ad
ansi-regex@5.0.0
5.0.1
samajh/alprfrontend:latest05ef4fddbb75
ansi-regex@5.0.0
5.0.1

Open the chart page →

20,270
thanhvt27-lab-k8sthanh-vtVerified publisher0.1.41 of 5See more

thanhvt27-lab-k8s thanh-vt 0.1.4

1 of the 5 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
pysga1996/python-redis-web:latestfdeec30ad482
ansi-regex@5.0.0
5.0.1

Open the chart page →

4,661
pock-helm-charttinote-chart0.1.01 of 3See more

pock-helm-chart tinote-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
denisshav/backend:latest4cc8dc5a4499
ansi-regex@5.0.0
5.0.1

Open the chart page →

6,881
joplintobiassackmann0.1.71 of 2See more

joplin tobiassackmann 0.1.7

1 of the 2 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
joplin/server:latest3f7b852959aa
ansi-regex@3.0.0
3.0.1

Open the chart page →

5,535
kubernetes-external-secretstrozz6.3.01 of 1See more

kubernetes-external-secrets trozz 6.3.0

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
ansi-regex@4.1.0
4.1.1

Open the chart page →

2,838
genievhdirkVerified publisher0.1.31 of 1See more

genie vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
stanfordoval/almond-server:latest1a63cdccedaf
ansi-regex@3.0.0
3.0.1

Open the chart page →

3,129
queryservice-gatewaywbstack0.2.01 of 1See more

queryservice-gateway wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
ansi-regex@3.0.0
3.0.1

Open the chart page →

2,559
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
ansi-regex@3.0.0
3.0.1

Open the chart page →

14,364
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
ansi-regex@3.0.0
3.0.1

Open the chart page →

28,605
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
ubercadence/web:v3.29.58564a5b44a6d
ansi-regex@4.1.0
4.1.1

Open the chart page →

10,127
temporalwenerme0.15.11 of 13See more

temporal wenerme 0.15.1

1 of the 13 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
temporalio/web:1.14.033cfa863d8ce
ansi-regex@4.1.0
4.1.1

Open the chart page →

22,665
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
ansi-regex@4.1.0
4.1.1

Open the chart page →

5,806
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
ansi-regex@4.1.0
4.1.1

Open the chart page →

1,752
helloworldyotron-helm-charts0.1.01 of 1See more

helloworld yotron-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
a5hut0sh/helloworld:1.02ae77620e616
ansi-regex@3.0.0
3.0.1

Open the chart page →

1,309
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2021-3807.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
ansi-regex@3.0.0
3.0.1

Open the chart page →

3,118

Container images carrying it

282 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
shahanafarooqui/rtl:0.11.0d0cd3d868aca
ansi-regex@5.0.0
5.0.1
1
shinobisystems/shinobi:dev3ca746937856
ansi-regex@3.0.0
3.0.1
1
shinobisystems/shinobi:latestc2f5ce2e1067
ansi-regex@5.0.0
5.0.1
1
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
ansi-regex@4.1.0
4.1.1
1
slagattollas/server-practica:latest6dd8ead8e2b1
ansi-regex@3.0.0
3.0.1
1
slagattollas/weatherservice-practica:latest68e7f56393fc
ansi-regex@4.1.0
4.1.1
1
socialmediamacroscope/smile_graphql:0.3.1c5095e94bc65
ansi-regex@3.0.0
3.0.1
1
socialmediamacroscope/smile_server:0.3.31a528c794270
ansi-regex@3.0.0
3.0.1
1
someblackmagic/alertmanager-to-alerta-bot:latest78bf43744ea5
ansi-regex@4.1.0
4.1.1
1
someblackmagic/alert-mapper:v0.1.088351d85c04c
ansi-regex@4.1.0
4.1.1
1
soulou2019/node-server:latest5e6ecfcc109e
ansi-regex@5.0.0
5.0.1
1
sqlpad/sqlpad:6.7d3d2f430dffd
ansi-regex@3.0.0
3.0.1
1
stakater/workshop-exercise:0.0.26076926b7159d3
ansi-regex@3.0.0
3.0.1
1
stanfordoval/almond-server:latest1a63cdccedaf
ansi-regex@3.0.0
3.0.1
1
stremio/server:latest3dc145603def
ansi-regex@3.0.0
3.0.1
1
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
ansi-regex@4.1.0
4.1.1
1
subsquid/hydra-indexer-status-service:5.0.0-alpha.37a4136013909c
ansi-regex@4.1.0
4.1.1
1
svenwal/jsonplaceholder:latestba2f285af432
ansi-regex@4.1.0
4.1.1
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
ansi-regex@5.0.0
node-ansi-regex@5.0.0-1
5.0.1
no fix listed
1
taigaio/taiga-events:6.4.00bf2d24a57d9
ansi-regex@4.1.0
4.1.1
1
temporalio/web:1.14.033cfa863d8ce
ansi-regex@4.1.0
4.1.1
1
testhubio/testhub-frontend:on-preme86c2db53be8
ansi-regex@4.1.0
4.1.1
1
thelounge/thelounge:4.3.0-alpine0037aa258261
ansi-regex@3.0.0
3.0.1
1
thelounge/thelounge:4.2.0-alpine639978459c3a
ansi-regex@3.0.0
3.0.1
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
ansi-regex@3.0.0
3.0.1
1
tooljet/tooljet-ce:v1.18.0c85a4720e42e
ansi-regex@3.0.0
3.0.1
1
treskon/portrait-ui:DEV-lateste7970783bc8d
ansi-regex@3.0.0
3.0.1
1
trufflesuite/ganache-cli:v6.12.2c062707f17f3
ansi-regex@4.1.0
4.1.1
1
tvanro/prerender-alpine:6.4.06909015f0328
ansi-regex@4.1.0
4.1.1
1
tzahi12345/youtubedl-material:4.23720b856bd2f
ansi-regex@4.1.0
4.1.1
1
ubercadence/web:v3.29.58564a5b44a6d
ansi-regex@4.1.0
4.1.1
1
vabene1111/recipes:1.0.5.2ec4e9e2905b0
ansi-regex@4.1.0
4.1.1
1
wekanteam/wekan:v4.2268a51f0327df
ansi-regex@3.0.0
3.0.1
1
willwill/kube-slack:v4.1.1d443017aae98
ansi-regex@3.0.0
3.0.1
1
wiremind/scrapoxy:lateste7048929a676
ansi-regex@3.0.0
3.0.1
1
ymuski/skooner:latest67819ca511b5
ansi-regex@4.1.0
4.1.1
1
zazuko/trifid:2.3.7054be137de70
ansi-regex@4.1.0
4.1.1
1
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
ansi-regex@3.0.0
3.0.1
1
zooz/predator:1.6f491d1f7a865
ansi-regex@3.0.0
3.0.1
1
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
ansi-regex@3.0.0
3.0.1
1
gcr.io/google-samples/microservices-demo/currencyservice:v0.2.349d458a3650f
ansi-regex@4.1.0
4.1.1
1
gcr.io/google-samples/microservices-demo/paymentservice:v0.2.36eb201217a8f
ansi-regex@4.1.0
4.1.1
1
ghcr.io/advplyr/audiobookshelf:2.0.3140aed2752c3
ansi-regex@3.0.0
3.0.1
1
ghcr.io/aolde/lametric-nightscout-proxy:latest7d1951b6baf5
ansi-regex@3.0.0
3.0.1
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
ansi-regex@4.1.0
4.1.1
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
ansi-regex@4.1.0
4.1.1
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
ansi-regex@4.1.0
4.1.1
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
ansi-regex@3.0.0
3.0.1
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
ansi-regex@4.1.0
4.1.1
1
ghcr.io/data-fair/simple-directory:438a4f32fad82
ansi-regex@5.0.0
5.0.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.