StackRadar

CVE-2021-47621

Medium

Advisory

Published 21 Jun 2024In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
45
of 17,781 indexed, latest versions
Container images
51
deployed by those charts
Fix available
1 of 1
affected package

ClassGraph XML External Entity Reference

Carried by container images the latest versions of 45 of 17,781 indexed charts deploy, on 51 images.

Affected packageAffected versionsFixed inImages
classgraphmaven4.2.3, 4.4.12, 4.8.21, 4.8.53+9 more4.8.11251
OSV records
GHSA-v2xm-76pq-phcf

Charts affected

45 by stars
ChartLatestAffected imagesRadar Score
minecraft-proxyminecraft-server-chartsVerified publisher3.10.01 of 1See more

minecraft-proxy minecraft-server-charts 3.10.0

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
itzg/bungeecord:latest1c59f9631f3b
classgraph@4.8.21
4.8.112

Open the chart page →

3,074
spring-petclinic-cloudplatform9-communityVerified publisher0.2.01 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

1 of the 6 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
platform9community/api-gateway:latest40a4970de568
classgraph@4.8.69
4.8.112

Open the chart page →

41,872
nzbhydra2halkeye2.30.11 of 2See more

nzbhydra2 halkeye 2.30.1

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
binhex/arch-nzbhydra2:3.1.0-1-01fb8952921ab6
classgraph@4.8.78
4.8.112

Open the chart page →

6,711
kafdroplsst-sqre0.1.31 of 1See more

kafdrop lsst-sqre 0.1.3

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
classgraph@4.8.83
4.8.112

Open the chart page →

7,901
thingsboard-clusterthingsboard-cluster-bettaVerified publisher0.2.261 of 6See more

thingsboard-cluster thingsboard-cluster-betta 0.2.26

1 of the 6 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
thingsboard/tb-node:3.6.0f40a542832c4
classgraph@4.8.83
4.8.112

Open the chart page →

14,566
pitchforkexpediagroup0.1.41 of 1See more

pitchfork expediagroup 0.1.4

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
expediagroup/pitchfork:1.314f2cf61e7de9
classgraph@4.8.21
4.8.112

Open the chart page →

3,309
glowrootnovum-rgi-charts1.0.101 of 2See more

glowroot novum-rgi-charts 1.0.10

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
classgraph@4.4.12
4.8.112

Open the chart page →

2,308
routrroutr0.0.101 of 2See more

routr routr 0.0.10

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
fonoster/routr:1.0.0-rc52ca65af17cbc
classgraph@4.8.67
4.8.112

Open the chart page →

4,983
airports-apiairports-api0.1.01 of 1See more

airports-api airports-api 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
dina1993/airports-api:latestac731244aed1
classgraph@4.8.83
4.8.112

Open the chart page →

1,958
amorphieamorphie0.1.21 of 18See more

amorphie amorphie 0.1.2

1 of the 18 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
classgraph@4.8.108
4.8.112

Open the chart page →

28,131
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
classgraph@4.2.3
4.8.112

Open the chart page →

7,936
firehoseblip-firehoseVerified publisher0.0.181 of 11See more

firehose blip-firehose 0.0.18

1 of the 11 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
classgraph@4.8.83
4.8.112

Open the chart page →

13,459
clamapicnieg2.0.51 of 2See more

clamapi cnieg 2.0.5

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
audig/clamapi:2.1.62c3fe34ee430
classgraph@4.8.69
4.8.112

Open the chart page →

4,671
cp-helm-chartscp-helm-charts0.6.15 of 8See more

cp-helm-charts cp-helm-charts 0.6.1

5 of the 8 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
classgraph@4.8.21
4.8.112
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
classgraph@4.8.21
4.8.112
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
classgraph@4.8.21
4.8.112
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
classgraph@4.8.21
4.8.112
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
classgraph@4.8.21
4.8.112

Open the chart page →

58,857
api-postsdniel0.9.11 of 1See more

api-posts dniel 0.9.1

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
dniel/api-posts:master45a667852f2a
classgraph@4.8.53
4.8.112

Open the chart page →

8,986
mod-calendarfolio-org0.1.341 of 1See more

mod-calendar folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
folioci/mod-calendar:latest22f65982efd7
classgraph@4.8.90
4.8.112

Open the chart page →

415
mod-password-validatorfolio-org0.1.341 of 1See more

mod-password-validator folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
folioci/mod-password-validator:latestb31d75f2bf7b
classgraph@4.8.90
4.8.112

Open the chart page →

394
komgageek-cookbookVerified publisher2.4.21 of 1See more

komga geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
gotson/komga:0.99.49b15ea6bfc30
classgraph@4.8.69
4.8.112

Open the chart page →

12,581
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
classgraph@4.8.78
4.8.112

Open the chart page →

17,702
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.82 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

2 of the 5 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
classgraph@4.8.83
4.8.112
jingking/geonetwork-hnap:4.2.843e74ab234e1
classgraph@4.8.69
4.8.112

Open the chart page →

34,754
hazelcast-jethazelcastVerified publisher1.17.11 of 1See more

hazelcast-jet hazelcast 1.17.1

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
hazelcast/hazelcast-jet:4.5.3a825ecbe9fda
classgraph@4.8.66
4.8.112

Open the chart page →

6,102
helm-airportshelm-airports0.1.01 of 7See more

helm-airports helm-airports 0.1.0

1 of the 7 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
dina1993/airports-api:latestac731244aed1
classgraph@4.8.83
4.8.112

Open the chart page →

12,696
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
dannielkil/book-backend:lateste3b479a55a69
classgraph@4.8.108
4.8.112

Open the chart page →

9,122
minecrafthelmforgeVerified publisher1.5.31 of 1See more

minecraft helmforge 1.5.3

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
itzg/minecraft-server:2026.9.04e29d14082d9
classgraph@4.8.21
4.8.112

Open the chart page →

4,639
mvfi4trustVerified publisher1.1.21 of 1See more

mvf i4trust 1.1.2

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
wistefan/mvf:lateste0887302b2d8
classgraph@4.8.102
4.8.112

Open the chart page →

7,144
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
classgraph@4.8.102
4.8.112

Open the chart page →

7,862
itm-mqtt-brokerintelVerified publisher1.0.01 of 1See more

itm-mqtt-broker intel 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
hivemq/hivemq4:dns-4.5.144d194450d48e
classgraph@4.8.78
4.8.112

Open the chart page →

2,653
tampkubebb5.6.01 of 2See more

tamp kubebb 5.6.0

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
kubebb/gateway-api:v5.6.04d062f20309c
classgraph@4.8.83
4.8.112

Open the chart page →

4,664
kafka-connect-wrapperlsmhun0.1.01 of 1See more

kafka-connect-wrapper lsmhun 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
lsmaster/kafka-connect-wrapper:6.1.0-0.1061eb5fbfa00
classgraph@4.8.21
4.8.112

Open the chart page →

2,391
unifimidokura-communityVerified publisher0.0.61 of 1See more

unifi midokura-community 0.0.6

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:7.3.83ab105cc50322
classgraph@4.8.59
4.8.112

Open the chart page →

11,188
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
vlebediantsev/file-system-ms-final:latest10393a89b4a8
classgraph@4.8.83
4.8.112

Open the chart page →

5,875
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
vlebediantsev/logic-ms:latestdf8bf38c535b
classgraph@4.8.83
4.8.112

Open the chart page →

6,852
registration-ms-helm-chartnotesprojectchart0.1.01 of 2See more

registration-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-final:latest427af418b75e
classgraph@4.8.83
4.8.112

Open the chart page →

5,916
user-data-ms-helm-chartnotesprojectchart0.1.01 of 2See more

user-data-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
classgraph@4.8.83
4.8.112

Open the chart page →

5,873
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
classgraph@4.2.3
4.8.112

Open the chart page →

12,927
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
atomix/atomix:3.1.127738ff4f5c63
classgraph@4.2.3
4.8.112
voltha/voltha-onos:5.1.8e038acb950d3
classgraph@4.2.3
4.8.112

Open the chart page →

41,044
bpjstk-serviceopenshift1.0.03 of 6See more

bpjstk-service openshift 1.0.0

3 of the 6 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
andrianrf/backoffice-be:latest6036614803d4
classgraph@4.8.83
4.8.112
andrianrf/bpjstk-service:latest46abe878d9d8
classgraph@4.8.83
4.8.112
andrianrf/iso-client:latestba560086ce15
classgraph@4.8.83
4.8.112

Open the chart page →

34,671
minecraftpaul1365972-mc3.0.11 of 1See more

minecraft paul1365972-mc 3.0.1

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
itzg/minecraft-server:latest8672e335dbef
classgraph@4.8.21
4.8.112

Open the chart page →

4,253
game-serverpvillaverdeVerified publisher1.0.51 of 1See more

game-server pvillaverde 1.0.5

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
ghcr.io/itzg/minecraft-server:latestc1a267d9ed6d
classgraph@4.8.21
4.8.112

Open the chart page →

4,253
radar-cp-ksql-serverradar-baseVerified publisher0.0.21 of 2See more

radar-cp-ksql-server radar-base 0.0.2

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
classgraph@4.8.59
4.8.112

Open the chart page →

5,269
authentication-serviceredestroyder0.2.21 of 1See more

authentication-service redestroyder 0.2.2

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
redestroyder/authorization-service:0.0.1740364a619fd
classgraph@4.8.83
4.8.112

Open the chart page →

2,583
hetzner-iroboslamdev0.0.51 of 1See more

hetzner-irobo slamdev 0.0.5

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
slamdev/hetzner-irobo:0.0.13ca20c184c55
classgraph@4.8.69
4.8.112

Open the chart page →

3,754
smtp-fake-serversomeblackmagic0.1.01 of 1See more

smtp-fake-server someblackmagic 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
someblackmagic/smtp-fake-server:latest0d63ba37a560
classgraph@4.8.69
4.8.112

Open the chart page →

4,278
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
classgraph@4.8.59
4.8.112

Open the chart page →

14,493
thingsboardthingsboardVerified publisher0.1.31 of 12See more

thingsboard thingsboard 0.1.3

1 of the 12 container images this version deploys carry CVE-2021-47621.

Container imageDigestPackageFixed in
thingsboard/tb-node:3.4.1645f43b688f7
classgraph@4.8.83
4.8.112

Open the chart page →

25,394

Container images carrying it

51 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
dina1993/airports-api:latestac731244aed1
classgraph@4.8.83
4.8.112
2
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
classgraph@4.8.83
4.8.112
2
andrianrf/backoffice-be:latest6036614803d4
classgraph@4.8.83
4.8.112
1
andrianrf/bpjstk-service:latest46abe878d9d8
classgraph@4.8.83
4.8.112
1
andrianrf/iso-client:latestba560086ce15
classgraph@4.8.83
4.8.112
1
assistiot/sdn_controller:2.4.0ea254b6d8a31
classgraph@4.2.3
4.8.112
1
atomix/atomix:3.1.127738ff4f5c63
classgraph@4.2.3
4.8.112
1
audig/clamapi:2.1.62c3fe34ee430
classgraph@4.8.69
4.8.112
1
binhex/arch-nzbhydra2:3.1.0-1-01fb8952921ab6
classgraph@4.8.78
4.8.112
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
classgraph@4.8.21
4.8.112
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
classgraph@4.8.21
4.8.112
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
classgraph@4.8.21
4.8.112
1
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
classgraph@4.8.59
4.8.112
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
classgraph@4.8.21
4.8.112
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
classgraph@4.8.21
4.8.112
1
dannielkil/book-backend:lateste3b479a55a69
classgraph@4.8.108
4.8.112
1
dniel/api-posts:master45a667852f2a
classgraph@4.8.53
4.8.112
1
expediagroup/pitchfork:1.314f2cf61e7de9
classgraph@4.8.21
4.8.112
1
folioci/mod-calendar:latest22f65982efd7
classgraph@4.8.90
4.8.112
1
folioci/mod-password-validator:latestb31d75f2bf7b
classgraph@4.8.90
4.8.112
1
fonoster/routr:1.0.0-rc52ca65af17cbc
classgraph@4.8.67
4.8.112
1
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
classgraph@4.8.83
4.8.112
1
gotson/komga:0.99.49b15ea6bfc30
classgraph@4.8.69
4.8.112
1
hazelcast/hazelcast-jet:4.5.3a825ecbe9fda
classgraph@4.8.66
4.8.112
1
hivemq/hivemq4:dns-4.5.144d194450d48e
classgraph@4.8.78
4.8.112
1
itzg/bungeecord:latest1c59f9631f3b
classgraph@4.8.21
4.8.112
1
itzg/minecraft-server:2026.9.04e29d14082d9
classgraph@4.8.21
4.8.112
1
itzg/minecraft-server:latest8672e335dbef
classgraph@4.8.21
4.8.112
1
jacobalberty/unifi:v7.1.664a3616625dda
classgraph@4.8.59
4.8.112
1
jingking/geonetwork-hnap:4.2.843e74ab234e1
classgraph@4.8.69
4.8.112
1
kubebb/gateway-api:v5.6.04d062f20309c
classgraph@4.8.83
4.8.112
1
linuxserver/unifi-controller:7.3.83ab105cc50322
classgraph@4.8.59
4.8.112
1
lsmaster/kafka-connect-wrapper:6.1.0-0.1061eb5fbfa00
classgraph@4.8.21
4.8.112
1
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
classgraph@4.4.12
4.8.112
1
onosproject/onos:2.2.144914a8d4b3f
classgraph@4.2.3
4.8.112
1
platform9community/api-gateway:latest40a4970de568
classgraph@4.8.69
4.8.112
1
redestroyder/authorization-service:0.0.1740364a619fd
classgraph@4.8.83
4.8.112
1
slamdev/hetzner-irobo:0.0.13ca20c184c55
classgraph@4.8.69
4.8.112
1
someblackmagic/smtp-fake-server:latest0d63ba37a560
classgraph@4.8.69
4.8.112
1
thingsboard/tb-node:3.4.1645f43b688f7
classgraph@4.8.83
4.8.112
1
thingsboard/tb-node:3.6.0f40a542832c4
classgraph@4.8.83
4.8.112
1
vlebediantsev/file-system-ms-final:latest10393a89b4a8
classgraph@4.8.83
4.8.112
1
vlebediantsev/logic-ms:latestdf8bf38c535b
classgraph@4.8.83
4.8.112
1
vlebediantsev/registration-ms-final:latest427af418b75e
classgraph@4.8.83
4.8.112
1
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
classgraph@4.8.83
4.8.112
1
voltha/voltha-onos:5.1.8e038acb950d3
classgraph@4.2.3
4.8.112
1
wistefan/mvf:lateste0887302b2d8
classgraph@4.8.102
4.8.112
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
classgraph@4.8.108
4.8.112
1
ghcr.io/itzg/minecraft-server:latestc1a267d9ed6d
classgraph@4.8.21
4.8.112
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
classgraph@4.8.78
4.8.112
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.