StackRadar

CVE-2022-0536

Medium

Advisory

Published 10 Feb 2022In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
94
of 17,781 indexed, latest versions
Container images
93
deployed by those charts
Fix available
1 of 1
affected package

Exposure of Sensitive Information to an Unauthorized Actor in follow-redirects

Carried by container images the latest versions of 94 of 17,781 indexed charts deploy, on 93 images.

Affected packageAffected versionsFixed inImages
follow-redirectsnpm1.0.0, 1.2.5, 1.5.10, 1.6.1+14 more1.14.893
OSV records
GHSA-pw2r-vq6v-hr8c

Charts affected

94 by stars
ChartLatestAffected imagesRadar Score
ibm-app-navigatoribm-charts1.0.11 of 5See more

ibm-app-navigator ibm-charts 1.0.1

1 of the 5 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
ibmcom/app-nav-ui:1.0.1e2a86997b36b
follow-redirects@1.7.0
1.14.8

Open the chart page →

32,915
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
ibmcom/microclimate-portal:latested5505e5c7ec
follow-redirects@1.0.0
1.14.8

Open the chart page →

57,669
ibm-voice-gateway-devibm-charts3.1.01 of 2See more

ibm-voice-gateway-dev ibm-charts 3.1.0

1 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
follow-redirects@1.5.10
1.14.8

Open the chart page →

4,505
ikigaiikigai-chartVerified publisher0.0.91 of 58See more

ikigai ikigai-chart 0.0.9

1 of the 58 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
jupyterhub/configurable-http-proxy:4.5.08ced0a2f8073
follow-redirects@1.13.2
1.14.8

Open the chart page →

37,671
interbtc-hydrainterlay0.1.151 of 4See more

interbtc-hydra interlay 0.1.15

1 of the 4 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
follow-redirects@1.14.4
1.14.8

Open the chart page →

6,831
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
follow-redirects@1.13.0
1.14.8

Open the chart page →

7,232
yapijoelee2012Verified publisher0.2.01 of 1See more

yapi joelee2012 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
jayfong/yapi:1.10.2163e5d621910
follow-redirects@1.14.4
1.14.8

Open the chart page →

6,454
annotation-tooljtektVerified publisher0.1.51 of 2See more

annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
follow-redirects@1.13.0
1.14.8

Open the chart page →

2,315
polygonal-annotation-tooljtektVerified publisher0.1.51 of 2See more

polygonal-annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
follow-redirects@1.13.0
1.14.8

Open the chart page →

2,231
shinobik8s-home-lab-repo2.1.11 of 1See more

shinobi k8s-home-lab-repo 2.1.1

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
shinobisystems/shinobi:latestc2f5ce2e1067
follow-redirects@1.14.1
1.14.8

Open the chart page →

4,667
sqlpadkronkltdVerified publisher0.1.01 of 1See more

sqlpad kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
sqlpad/sqlpad:6.7d3d2f430dffd
follow-redirects@1.13.3
1.14.8

Open the chart page →

3,397
tooljetkrzwiatrzyk1.1.11 of 2See more

tooljet krzwiatrzyk 1.1.1

1 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
tooljet/tooljet-ce:v1.18.0c85a4720e42e
follow-redirects@1.14.7
1.14.8

Open the chart page →

5,410
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-ui-react:latestba6853e35c60
follow-redirects@1.14.5
1.14.8

Open the chart page →

5,905
nublado2lsst-sqre0.8.52 of 2See more

nublado2 lsst-sqre 0.8.5

2 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
jupyterhub/configurable-http-proxy:4.5.1723028bf9b3c
follow-redirects@1.14.7
1.14.8
lsstsqre/nublado2:2.0.1b75bf8aaafa4
follow-redirects@1.14.7
1.14.8

Open the chart page →

17,779
frontendluiscajl0.1.71 of 1See more

frontend luiscajl 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
lavandadelpatio/frontend:latest501c3f31e0bc
follow-redirects@1.5.10
1.14.8

Open the chart page →

3,651
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
follow-redirects@1.14.1
1.14.8

Open the chart page →

5,287
maxcrm-chartsmaxcrm-chartsVerified publisher1.1.2011 of 4See more

maxcrm-charts maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
follow-redirects@1.14.0
1.14.8

Open the chart page →

5,940
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
follow-redirects@1.13.1
1.14.8

Open the chart page →

68,284
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
follow-redirects@1.13.1
1.14.8

Open the chart page →

7,027
account-lookup-servicemojaloop13.0.01 of 4See more

account-lookup-service mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
follow-redirects@1.14.3
1.14.8

Open the chart page →

11,695
account-lookup-service-adminmojaloop13.0.01 of 4See more

account-lookup-service-admin mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
follow-redirects@1.14.3
1.14.8

Open the chart page →

11,695
admin-api-svcmojaloop12.0.01 of 4See more

admin-api-svc mojaloop 12.0.0

1 of the 4 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
mojaloop/central-ledger:v13.14.01abc8a7aa71c
follow-redirects@1.14.4
1.14.8

Open the chart page →

12,108
fspiop-transfer-api-svcmojaloop12.0.11 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

1 of the 3 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
follow-redirects@1.13.1
1.14.8

Open the chart page →

11,479
mojaloopmojaloop14.0.03 of 6See more

mojaloop mojaloop 14.0.0

3 of the 6 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
follow-redirects@1.14.3
1.14.8
mojaloop/central-ledger:v13.14.01abc8a7aa71c
follow-redirects@1.14.4
1.14.8
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
follow-redirects@1.13.1
1.14.8

Open the chart page →

19,226
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
follow-redirects@1.14.5
1.14.8

Open the chart page →

6,438
sentence-collectormozilla0.1.21 of 2See more

sentence-collector mozilla 0.1.2

1 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
mozilla/sentencecollector:2.0.91da6ff5c4895
follow-redirects@1.5.10
1.14.8

Open the chart page →

6,684
dashynas-helm-chartsVerified publisher1.0.41 of 1See more

dashy nas-helm-charts 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
lissy93/dashy:2.0.51991f7be5ed0
follow-redirects@1.14.7
1.14.8

Open the chart page →

3,269
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
linuxserver/codimd:latestb801bbcf6386
follow-redirects@1.5.10
1.14.8

Open the chart page →

27,465
flomesh-consoleopenshift0.70.0-30-ubi81 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

1 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
follow-redirects@1.14.4
1.14.8

Open the chart page →

9,968
gristrlex0.1.01 of 1See more

grist rlex 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
gristlabs/grist:0.7.96e71b1914a7e
follow-redirects@1.13.3
1.14.8

Open the chart page →

5,215
joplinrubxkubeVerified publisher1.3.11 of 2See more

joplin rubxkube 1.3.1

1 of the 2 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
joplin/server:3.0-beta52af57880c0e
follow-redirects@1.14.5
1.14.8

Open the chart page →

7,413
parkingsikalabs0.1.01 of 1See more

parking sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
ondrejsika/parking:latestb1fd497416c8
follow-redirects@1.11.0
1.14.8

Open the chart page →

3,696
speedtest-trackersoblivionscall3.0.41 of 1See more

speedtest-tracker soblivionscall 3.0.4

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
henrywhitaker3/speedtest-tracker:latest47159a940229
follow-redirects@1.13.0
1.14.8

Open the chart page →

2,460
pwssoketi0.2.41 of 1See more

pws soketi 0.2.4

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
follow-redirects@1.14.4
1.14.8

Open the chart page →

3,228
alertmanager-to-alerta-botsomeblackmagic0.2.01 of 1See more

alertmanager-to-alerta-bot someblackmagic 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
someblackmagic/alertmanager-to-alerta-bot:latest78bf43744ea5
follow-redirects@1.14.5
1.14.8

Open the chart page →

2,121
alert-mappersomeblackmagic0.2.01 of 1See more

alert-mapper someblackmagic 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
someblackmagic/alert-mapper:v0.1.088351d85c04c
follow-redirects@1.14.5
1.14.8

Open the chart page →

1,890
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
follow-redirects@1.14.1
1.14.8

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
follow-redirects@1.14.1
1.14.8

Open the chart page →

11,554
fdi-dotstatsuite-dlmstatcan0.3.11 of 1See more

fdi-dotstatsuite-dlm statcan 0.3.1

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
follow-redirects@1.5.10
1.14.8

Open the chart page →

3,881
trudesktechpreta1.0.01 of 3See more

trudesk techpreta 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
polonel/trudesk:1.2.60cf6513f6fe3
follow-redirects@1.14.1
1.14.8

Open the chart page →

4,017
csmmth-chartsVerified publisher0.1.01 of 3See more

csmm th-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
catalysm/csmm:latestf003b35f54d9
follow-redirects@1.14.5
1.14.8

Open the chart page →

3,576
genievhdirkVerified publisher0.1.31 of 1See more

genie vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
stanfordoval/almond-server:latest1a63cdccedaf
follow-redirects@1.14.6
1.14.8

Open the chart page →

3,129
queryservice-gatewaywbstack0.2.01 of 1See more

queryservice-gateway wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
follow-redirects@1.9.0
1.14.8

Open the chart page →

2,559
workadventureworkadventure1.1.01 of 9See more

workadventure workadventure 1.1.0

1 of the 9 container images this version deploys carry CVE-2022-0536.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-back:v1.17.764001369dad5
follow-redirects@1.5.10
1.14.8

Open the chart page →

16,083

Container images carrying it

93 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
follow-redirects@1.14.3
1.14.8
3
chatwoot/chatwoot:v3.1.0d530ab8c1753
follow-redirects@1.14.0
1.14.8
2
governify/assets-manager:v1.4.12987672448c7
follow-redirects@1.14.4
1.14.8
2
governify/director:v1.4.0608c6940bb98
follow-redirects@1.14.4
1.14.8
2
governify/registry:v3.4.0d3f37f4f8168
follow-redirects@1.14.4
1.14.8
2
governify/render:v2.2.0daeca1ce28e6
follow-redirects@1.14.4
1.14.8
2
governify/reporter:v2.2.038595913458f
follow-redirects@1.14.4
1.14.8
2
jupyterhub/configurable-http-proxy:4.5.08ced0a2f8073
follow-redirects@1.13.2
1.14.8
2
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
follow-redirects@1.14.1
1.14.8
2
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
follow-redirects@1.13.0
1.14.8
2
mesosphere/kommander:6.100.13917e82333a9
follow-redirects@1.13.1
1.14.8
2
mojaloop/central-ledger:v13.14.01abc8a7aa71c
follow-redirects@1.14.4
1.14.8
2
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
follow-redirects@1.13.1
1.14.8
2
moreillon/api-proxy:a3e8b41e9e578c9653b6
follow-redirects@1.13.0
1.14.8
2
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
follow-redirects@1.14.1
1.14.8
2
amundsendev/amundsen-frontend:2.1.169e7915e61c1
follow-redirects@1.5.10
1.14.8
1
arfath29/3-tier-app-frontend:latest384b3e377f47
follow-redirects@1.14.1
1.14.8
1
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
follow-redirects@1.14.5
1.14.8
1
assistiot/cybersecurity-monitoring_ir-kbn:latest0570b27bb7c2
follow-redirects@1.13.0
1.14.8
1
assistiot/fl_orchestrator:api-latest7473d77448e1
follow-redirects@1.5.10
1.14.8
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
follow-redirects@1.14.3
1.14.8
1
carbonetes/carbonetes-analyzer:1.0.31b9b93c9a37f
follow-redirects@1.14.4
1.14.8
1
catalysm/csmm:latestf003b35f54d9
follow-redirects@1.14.5
1.14.8
1
chatwoot/chatwoot:v4.15.167ebc751c171
follow-redirects@1.14.0
1.14.8
1
codercom/code-server:3.10.247605610ad8d
follow-redirects@1.13.0
1.14.8
1
conduction/conduction-ui-app:devd591f5e6f2a9
follow-redirects@1.13.2
1.14.8
1
cryptexlabs/authf:0.12.11189c07411d7c
follow-redirects@1.5.10
1.14.8
1
enketo/enketo-express:3.0.4dcad9c2273f6
follow-redirects@1.14.5
1.14.8
1
ethersphere/bzz-token-service:latest7624f11a72ad
follow-redirects@1.14.1
1.14.8
1
fiware/iotagent-ul:1.14.0fe11f55a926d
follow-redirects@1.5.10
1.14.8
1
flagsmith/flagsmith-frontend:v2.6.0df02a29e8b0c
follow-redirects@1.5.10
1.14.8
1
governify/collector-dynamic:v1.3.06d3d1a5b46a9
follow-redirects@1.13.3
1.14.8
1
gristlabs/grist:0.7.96e71b1914a7e
follow-redirects@1.13.3
1.14.8
1
halkeye/irslackd:latest7638bfba70b0
follow-redirects@1.5.10
1.14.8
1
henrywhitaker3/speedtest-tracker:latest47159a940229
follow-redirects@1.13.0
1.14.8
1
hhaluk/crypto-watchdog:0.4.0a6555953d941
follow-redirects@1.14.0
1.14.8
1
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
follow-redirects@1.14.3
1.14.8
1
ibmcom/app-nav-ui:1.0.1e2a86997b36b
follow-redirects@1.7.0
1.14.8
1
ibmcom/microclimate-portal:latested5505e5c7ec
follow-redirects@1.0.0
1.14.8
1
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
follow-redirects@1.5.10
1.14.8
1
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
follow-redirects@1.14.4
1.14.8
1
jakowenko/double-take:1.6.0b858bac9e32a
follow-redirects@1.14.4
1.14.8
1
jayfong/yapi:1.10.2163e5d621910
follow-redirects@1.14.4
1.14.8
1
joplin/server:3.0-beta52af57880c0e
follow-redirects@1.14.5
1.14.8
1
joplin/server:2.14.2-betab87564ef34e9
follow-redirects@1.14.5
1.14.8
1
jupyterhub/configurable-http-proxy:4.5.1723028bf9b3c
follow-redirects@1.14.7
1.14.8
1
jupyterhub/configurable-http-proxy:4.2.281bd96729c14
follow-redirects@1.11.0
1.14.8
1
lavandadelpatio/frontend:latest501c3f31e0bc
follow-redirects@1.5.10
1.14.8
1
library/ghost:4.37.0767230c0f263
follow-redirects@1.14.7
1.14.8
1
linuxserver/codimd:latestb801bbcf6386
follow-redirects@1.5.10
1.14.8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.