StackRadar

CVE-2022-0155

High

Advisory

Published 12 Jan 2022In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
8.0
base score, highest
EPSS
0.024
83rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
90
of 17,781 indexed, latest versions
Container images
88
deployed by those charts
Fix available
1 of 1
affected package

Exposure of sensitive information in follow-redirects

Carried by container images the latest versions of 90 of 17,781 indexed charts deploy, on 88 images.

Affected packageAffected versionsFixed inImages
follow-redirectsnpm1.0.0, 1.2.5, 1.5.10, 1.6.1+13 more1.14.788
OSV records
GHSA-74fj-2j2h-c42q

Charts affected

90 by stars
ChartLatestAffected imagesRadar Score
ibm-voice-gateway-devibm-charts3.1.01 of 2See more

ibm-voice-gateway-dev ibm-charts 3.1.0

1 of the 2 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
follow-redirects@1.5.10
1.14.7

Open the chart page →

4,505
ikigaiikigai-chartVerified publisher0.0.91 of 58See more

ikigai ikigai-chart 0.0.9

1 of the 58 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
jupyterhub/configurable-http-proxy:4.5.08ced0a2f8073
follow-redirects@1.13.2
1.14.7

Open the chart page →

37,671
interbtc-hydrainterlay0.1.151 of 4See more

interbtc-hydra interlay 0.1.15

1 of the 4 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
follow-redirects@1.14.4
1.14.7

Open the chart page →

6,831
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
follow-redirects@1.13.0
1.14.7

Open the chart page →

7,232
yapijoelee2012Verified publisher0.2.01 of 1See more

yapi joelee2012 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
jayfong/yapi:1.10.2163e5d621910
follow-redirects@1.14.4
1.14.7

Open the chart page →

6,454
annotation-tooljtektVerified publisher0.1.51 of 2See more

annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
follow-redirects@1.13.0
1.14.7

Open the chart page →

2,315
polygonal-annotation-tooljtektVerified publisher0.1.51 of 2See more

polygonal-annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
follow-redirects@1.13.0
1.14.7

Open the chart page →

2,231
shinobik8s-home-lab-repo2.1.11 of 1See more

shinobi k8s-home-lab-repo 2.1.1

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
shinobisystems/shinobi:latestc2f5ce2e1067
follow-redirects@1.14.1
1.14.7

Open the chart page →

4,667
sqlpadkronkltdVerified publisher0.1.01 of 1See more

sqlpad kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
sqlpad/sqlpad:6.7d3d2f430dffd
follow-redirects@1.13.3
1.14.7

Open the chart page →

3,397
tooljetkrzwiatrzyk1.1.11 of 2See more

tooljet krzwiatrzyk 1.1.1

1 of the 2 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
tooljet/tooljet-ce:v1.18.0c85a4720e42e
follow-redirects@1.5.10
1.14.7

Open the chart page →

5,410
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-ui-react:latestba6853e35c60
follow-redirects@1.14.5
1.14.7

Open the chart page →

5,905
frontendluiscajl0.1.71 of 1See more

frontend luiscajl 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
lavandadelpatio/frontend:latest501c3f31e0bc
follow-redirects@1.5.10
1.14.7

Open the chart page →

3,651
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
follow-redirects@1.14.1
1.14.7

Open the chart page →

5,287
maxcrm-chartsmaxcrm-chartsVerified publisher1.1.2011 of 4See more

maxcrm-charts maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
follow-redirects@1.14.0
1.14.7

Open the chart page →

5,940
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
follow-redirects@1.13.1
1.14.7

Open the chart page →

68,284
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
follow-redirects@1.13.1
1.14.7

Open the chart page →

7,027
account-lookup-servicemojaloop13.0.01 of 4See more

account-lookup-service mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
follow-redirects@1.14.3
1.14.7

Open the chart page →

11,695
account-lookup-service-adminmojaloop13.0.01 of 4See more

account-lookup-service-admin mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
follow-redirects@1.14.3
1.14.7

Open the chart page →

11,695
admin-api-svcmojaloop12.0.01 of 4See more

admin-api-svc mojaloop 12.0.0

1 of the 4 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
mojaloop/central-ledger:v13.14.01abc8a7aa71c
follow-redirects@1.14.4
1.14.7

Open the chart page →

12,108
fspiop-transfer-api-svcmojaloop12.0.11 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

1 of the 3 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
follow-redirects@1.13.1
1.14.7

Open the chart page →

11,479
mojaloopmojaloop14.0.03 of 6See more

mojaloop mojaloop 14.0.0

3 of the 6 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
follow-redirects@1.14.3
1.14.7
mojaloop/central-ledger:v13.14.01abc8a7aa71c
follow-redirects@1.14.4
1.14.7
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
follow-redirects@1.13.1
1.14.7

Open the chart page →

19,226
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
follow-redirects@1.14.5
1.14.7

Open the chart page →

6,438
sentence-collectormozilla0.1.21 of 2See more

sentence-collector mozilla 0.1.2

1 of the 2 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
mozilla/sentencecollector:2.0.91da6ff5c4895
follow-redirects@1.5.10
1.14.7

Open the chart page →

6,684
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
linuxserver/codimd:latestb801bbcf6386
follow-redirects@1.5.10
1.14.7

Open the chart page →

27,465
flomesh-consoleopenshift0.70.0-30-ubi81 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

1 of the 2 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
follow-redirects@1.14.4
1.14.7

Open the chart page →

9,968
gristrlex0.1.01 of 1See more

grist rlex 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
gristlabs/grist:0.7.96e71b1914a7e
follow-redirects@1.13.3
1.14.7

Open the chart page →

5,215
joplinrubxkubeVerified publisher1.3.11 of 2See more

joplin rubxkube 1.3.1

1 of the 2 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
joplin/server:3.0-beta52af57880c0e
follow-redirects@1.14.5
1.14.7

Open the chart page →

7,413
parkingsikalabs0.1.01 of 1See more

parking sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
ondrejsika/parking:latestb1fd497416c8
follow-redirects@1.11.0
1.14.7

Open the chart page →

3,696
speedtest-trackersoblivionscall3.0.41 of 1See more

speedtest-tracker soblivionscall 3.0.4

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
henrywhitaker3/speedtest-tracker:latest47159a940229
follow-redirects@1.13.0
1.14.7

Open the chart page →

2,460
pwssoketi0.2.41 of 1See more

pws soketi 0.2.4

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
follow-redirects@1.14.4
1.14.7

Open the chart page →

3,228
alertmanager-to-alerta-botsomeblackmagic0.2.01 of 1See more

alertmanager-to-alerta-bot someblackmagic 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
someblackmagic/alertmanager-to-alerta-bot:latest78bf43744ea5
follow-redirects@1.14.5
1.14.7

Open the chart page →

2,121
alert-mappersomeblackmagic0.2.01 of 1See more

alert-mapper someblackmagic 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
someblackmagic/alert-mapper:v0.1.088351d85c04c
follow-redirects@1.14.5
1.14.7

Open the chart page →

1,890
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
follow-redirects@1.14.1
1.14.7

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
follow-redirects@1.14.1
1.14.7

Open the chart page →

11,554
fdi-dotstatsuite-dlmstatcan0.3.11 of 1See more

fdi-dotstatsuite-dlm statcan 0.3.1

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
follow-redirects@1.5.10
1.14.7

Open the chart page →

3,881
trudesktechpreta1.0.01 of 3See more

trudesk techpreta 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
polonel/trudesk:1.2.60cf6513f6fe3
follow-redirects@1.14.1
1.14.7

Open the chart page →

4,017
csmmth-chartsVerified publisher0.1.01 of 3See more

csmm th-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
catalysm/csmm:latestf003b35f54d9
follow-redirects@1.14.5
1.14.7

Open the chart page →

3,576
genievhdirkVerified publisher0.1.31 of 1See more

genie vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
stanfordoval/almond-server:latest1a63cdccedaf
follow-redirects@1.14.6
1.14.7

Open the chart page →

3,129
queryservice-gatewaywbstack0.2.01 of 1See more

queryservice-gateway wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
follow-redirects@1.9.0
1.14.7

Open the chart page →

2,559
workadventureworkadventure1.1.01 of 9See more

workadventure workadventure 1.1.0

1 of the 9 container images this version deploys carry CVE-2022-0155.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-back:v1.17.764001369dad5
follow-redirects@1.5.10
1.14.7

Open the chart page →

16,083

Container images carrying it

88 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
follow-redirects@1.5.10
1.14.7
1
ondrejsika/parking:latestb1fd497416c8
follow-redirects@1.11.0
1.14.7
1
parithoshj/testnet-faucet:9859e0dcdca426fea6d
follow-redirects@1.6.1
1.14.7
1
pawelmalak/flame:2.1.193e7b0abb603
follow-redirects@1.14.5
1.14.7
1
pawelmalak/flame:multiarch2.3.19f88b17692a0
follow-redirects@1.14.5
1.14.7
1
plumdog/db-operator:latest0c2fa2db0357
follow-redirects@1.14.6
1.14.7
1
polonel/trudesk:1.2.60cf6513f6fe3
follow-redirects@1.14.1
1.14.7
1
requarks/wiki:canary-2.5.2438b5865a7386c
follow-redirects@1.14.4
1.14.7
1
roadiehq/community-backstage-image:latestef355bf5b639
follow-redirects@1.13.0
1.14.7
1
shinobisystems/shinobi:dev3ca746937856
follow-redirects@1.14.1
1.14.7
1
shinobisystems/shinobi:latestc2f5ce2e1067
follow-redirects@1.14.1
1.14.7
1
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
follow-redirects@1.5.10
1.14.7
1
someblackmagic/alertmanager-to-alerta-bot:latest78bf43744ea5
follow-redirects@1.14.5
1.14.7
1
someblackmagic/alert-mapper:v0.1.088351d85c04c
follow-redirects@1.14.5
1.14.7
1
sqlpad/sqlpad:6.7d3d2f430dffd
follow-redirects@1.13.3
1.14.7
1
stanfordoval/almond-server:latest1a63cdccedaf
follow-redirects@1.14.6
1.14.7
1
testhubio/testhub-frontend:on-preme86c2db53be8
follow-redirects@1.11.0
1.14.7
1
thecodingmachine/workadventure-back:v1.17.764001369dad5
follow-redirects@1.5.10
1.14.7
1
tooljet/tooljet-ce:v1.18.0c85a4720e42e
follow-redirects@1.5.10
1.14.7
1
tzahi12345/youtubedl-material:4.23720b856bd2f
follow-redirects@1.13.1
1.14.7
1
youssef11gaber10/deployment-ui-react:latestba6853e35c60
follow-redirects@1.14.5
1.14.7
1
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
follow-redirects@1.14.0
1.14.7
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
follow-redirects@1.13.2
1.14.7
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
follow-redirects@1.13.2
1.14.7
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
follow-redirects@1.13.2
1.14.7
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
follow-redirects@1.13.2
1.14.7
1
ghcr.io/data-fair/data-fair:3cc9498b64b5b
follow-redirects@1.5.10
1.14.7
1
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
follow-redirects@1.13.2
1.14.7
1
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
follow-redirects@1.13.3
1.14.7
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
follow-redirects@1.14.1
1.14.7
1
ghcr.io/sct/overseerr:1.26.1254d16af8f71
follow-redirects@1.13.0
1.14.7
1
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
follow-redirects@1.9.0
1.14.7
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
follow-redirects@1.14.4
1.14.7
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
follow-redirects@1.7.0
1.14.7
1
quay.io/ibmgaragecloud/slack-notifications:latest041df93e2bac
follow-redirects@1.14.1
1.14.7
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
follow-redirects@1.14.5
1.14.7
1
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
follow-redirects@1.14.4
1.14.7
1
registry.gitlab.com/infinitydon/registry/open5gs-webui:v2.2.2fda21b0a0344
follow-redirects@1.2.5
1.14.7
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.