StackRadar

CVE-2022-1471

Critical

Advisory

Published 12 Dec 2022In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.996
100th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
457
of 17,787 indexed, latest versions
Container images
434
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: prometheus-jmx-exporter security update

Carried by container images the latest versions of 457 of 17,787 indexed charts deploy, on 434 images.

Affected packageAffected versionsFixed inImages
prometheus-jmx-exporterrpm0.12.0-6.el8, 0.12.0-7.el80:0.12.0-9.el8_710
snakeyamlmaven1.11, 1.12, 1.13, 1.15+17 more2.0434
OSV records
RHSA-2022:9058GHSA-mjmj-j48q-9wg2

Charts affected

457 by stars
ChartLatestAffected imagesRadar Score
apicurio-registry-sqlwitcom-gmbh0.1.01 of 1See more

apicurio-registry-sql witcom-gmbh 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
snakeyaml@1.27
2.0

Open the chart page →

3,424
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch:1.13.32acfa1dcc5f8
snakeyaml@1.26
2.0

Open the chart page →

5,806
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
prometheus-jmx-exporter@0.12.0-6.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0

Open the chart page →

11,577
is-pattern-1wso2is-pattern15.11.01 of 2See more

is-pattern-1 wso2is-pattern1 5.11.0

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
massimolauri/wso2is:5.11.0-centose08abf0ce767
snakeyaml@1.23
2.0

Open the chart page →

6,213
zahori-processzahoriVerified publisher1.0.11 of 1See more

zahori-process zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
zahoriaut/zahori-process:0.1.13351f8a220ed7
snakeyaml@1.33
2.0

Open the chart page →

3,480
zahori-serverzahoriVerified publisher1.0.11 of 2See more

zahori-server zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
zahoriaut/zahori-server:0.1.17b2de13916f3e
snakeyaml@1.30
2.0

Open the chart page →

5,846
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
snakeyaml@1.33
2.0

Open the chart page →

6,016

Container images carrying it

434 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
prometheus-jmx-exporter@0.12.0-6.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
prometheus-jmx-exporter@0.12.0-7.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0
1
quay.io/fiware/tmforum-account:1.18.06b25aac03414
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
snakeyaml@1.32
2.0
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
prometheus-jmx-exporter@0.12.0-7.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
snakeyaml@1.33
2.0
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
snakeyaml@1.26
2.0
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
snakeyaml@1.26
2.0
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
snakeyaml@1.33
2.0
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
snakeyaml@1.33
2.0
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
prometheus-jmx-exporter@0.12.0-6.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0
1
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
snakeyaml@1.13
2.0
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
snakeyaml@1.23
2.0
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
snakeyaml@1.23
2.0
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
snakeyaml@1.30
2.0
1
quay.io/srcmaxim/gradle-example-app:1.1.37c3fc28746ef
snakeyaml@1.28
2.0
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
snakeyaml@1.32
2.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.