StackRadar

CVE-2022-1471

Critical

Advisory

Published 12 Dec 2022In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.996
100th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
457
of 17,781 indexed, latest versions
Container images
434
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: prometheus-jmx-exporter security update

Carried by container images the latest versions of 457 of 17,781 indexed charts deploy, on 434 images.

Affected packageAffected versionsFixed inImages
prometheus-jmx-exporterrpm0.12.0-6.el8, 0.12.0-7.el80:0.12.0-9.el8_710
snakeyamlmaven1.11, 1.12, 1.13, 1.15+17 more2.0434
OSV records
RHSA-2022:9058GHSA-mjmj-j48q-9wg2

Charts affected

457 by stars
ChartLatestAffected imagesRadar Score
apicurio-registry-sqlwitcom-gmbh0.1.01 of 1See more

apicurio-registry-sql witcom-gmbh 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
snakeyaml@1.27
2.0

Open the chart page →

3,424
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch:1.13.32acfa1dcc5f8
snakeyaml@1.26
2.0

Open the chart page →

5,806
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
prometheus-jmx-exporter@0.12.0-6.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0

Open the chart page →

11,577
is-pattern-1wso2is-pattern15.11.01 of 2See more

is-pattern-1 wso2is-pattern1 5.11.0

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
massimolauri/wso2is:5.11.0-centose08abf0ce767
snakeyaml@1.23
2.0

Open the chart page →

6,213
zahori-processzahoriVerified publisher1.0.11 of 1See more

zahori-process zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
zahoriaut/zahori-process:0.1.13351f8a220ed7
snakeyaml@1.33
2.0

Open the chart page →

3,480
zahori-serverzahoriVerified publisher1.0.11 of 2See more

zahori-server zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
zahoriaut/zahori-server:0.1.17b2de13916f3e
snakeyaml@1.30
2.0

Open the chart page →

5,846
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
snakeyaml@1.33
2.0

Open the chart page →

6,016

Container images carrying it

434 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/elasticsearch:7.17.8fdc73b3249c1
snakeyaml@1.33
2.0
1
library/logstash:7.17.817a4f64e9cf5
snakeyaml@1.18
2.0
1
library/neo4j:4.2.4348e3f56faa2
snakeyaml@1.26
2.0
1
library/sonarqube:6.7.6-community0ae5169e3d0f
snakeyaml@1.15
2.0
1
library/sonarqube:9.1.0-datacenter-search7e43ff493a47
snakeyaml@1.26
2.0
1
library/sonarqube:8.9.2-community88cd63154d4b
snakeyaml@1.26
2.0
1
library/sonarqube:8.2-communitya246bc64207e
snakeyaml@1.17
2.0
1
library/sonarqube:9.1.0-datacenter-appa9bc5a3a1fc3
snakeyaml@1.26
2.0
1
library/sonarqube:8.9-communityeb2f0be32efd
snakeyaml@1.33
2.0
1
library/sonarqube:10.0.0-communityef9723cf4fe4
snakeyaml@1.33
2.0
1
library/storm:2.4.0bd5d420506d6
snakeyaml@1.26
2.0
1
lightbend/cloudflow-operator:0.0.0-NIGHTLY011220202647f396de23
snakeyaml@1.25
2.0
1
lightbend/spark-history-server:2.4.00bedf37f428a
snakeyaml@1.15
2.0
1
linuxserver/unifi-controller:8.0.240ae315a3a456
snakeyaml@1.30
2.0
1
localstack/localstack:3.19d278167f2b7
snakeyaml@1.33
2.0
1
lourdesmorente/new-planner:1.0.0608745878cdb
snakeyaml@1.29
2.0
1
lsmaster/kafka-connect-wrapper:6.1.0-0.1061eb5fbfa00
snakeyaml@1.26
2.0
1
ma1uta/ma1sd:2.5.0ee2a56d8b8ca
snakeyaml@1.28
2.0
1
magento/magento-cloud-docker-opensearch:2.5-1.4.059fb6f0f1461
snakeyaml@1.32
2.0
1
maksimkavalenka/microservices-learning.resource-processor:latest64a25afb8748
snakeyaml@1.33
2.0
1
maksimkavalenka/microservices-learning.resource-service:latest13ad9bb170a0
snakeyaml@1.33
2.0
1
maksimkavalenka/microservices-learning.song-service:latest2bcdac368b07
snakeyaml@1.33
2.0
1
marcelmay/hadoop-hdfs-fsimage-exporter:1.3abeccb740ef7
snakeyaml@1.25
2.0
1
massimolauri/wso2is:5.11.0-centose08abf0ce767
snakeyaml@1.23
2.0
1
metabase/metabase:v0.46.09ebdc664a6b2
snakeyaml@1.33
2.0
1
metabase/metabase:v0.31.2ffb2dccacefc
snakeyaml@1.18
2.0
1
microcks/microcks:0.8.0e3a3e0c67b09
snakeyaml@1.16
2.0
1
molynx/planner:v1441c9f52f092
snakeyaml@1.29
2.0
1
muluder/prograncontrollermcord:0.1.843b597a93da7
snakeyaml@1.17
2.0
1
nacos/nacos-server:1.4.1fe6e5688cdf3
snakeyaml@1.23
2.0
1
ncsa/datawolf:4.7.0af6649d59150
snakeyaml@1.33
2.0
1
omecproject/c3po-hssdb:master-latest28a90cc26716
snakeyaml@1.11
2.0
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
snakeyaml@1.18
2.0
1
omecproject/onos-progran:1.0.05715e5648aa0
snakeyaml@1.17
2.0
1
onosproject/onos:2.2.144914a8d4b3f
snakeyaml@1.25
2.0
1
opencord/ves-agent:1.0.04187e2a8c918
snakeyaml@1.19
2.0
1
openhab/openhab:3.2.0d0aa4af452c1
snakeyaml@1.27
2.0
1
openkm/openkm-ce:6.3.113bc465a7461b
snakeyaml@1.17
2.0
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
snakeyaml@1.33
2.0
1
openwhisk/invoker:1.0.0f5831ec85525
snakeyaml@1.23
2.0
1
openzipkin/zipkin:2.21.060c3970df479
snakeyaml@1.25
2.0
1
openzipkin/zipkin-gcp:0.15.2b5d51d1144e2
snakeyaml@1.25
2.0
1
operaton/operaton:1.0.0-beta-4b35867ffe4d8
snakeyaml@1.16
2.0
1
opsmx11/issuegen:v2.1.05c50ca123d88
snakeyaml@1.23
2.0
1
oscarsotosanchez/planner:v1.0730c00a099b8
snakeyaml@1.27
2.0
1
owasp/dependency-track:3.8.0efc65e702ee1
snakeyaml@1.24
2.0
1
paulczar/spring-helloworld:latestc7140cecd5f7
snakeyaml@1.23
2.0
1
pcarrascoponce/planner:v1.0981fc482442c
snakeyaml@1.29
2.0
1
penpotapp/backend:2.2.147853d9bb9dd
snakeyaml@1.33
2.0
1
platform9community/admin-server:latestde3fa9b70df1
snakeyaml@1.26
2.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.