StackRadar

CVE-2022-1471

Critical

Advisory

Published 12 Dec 2022In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.996
100th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
457
of 17,781 indexed, latest versions
Container images
434
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: prometheus-jmx-exporter security update

Carried by container images the latest versions of 457 of 17,781 indexed charts deploy, on 434 images.

Affected packageAffected versionsFixed inImages
prometheus-jmx-exporterrpm0.12.0-6.el8, 0.12.0-7.el80:0.12.0-9.el8_710
snakeyamlmaven1.11, 1.12, 1.13, 1.15+17 more2.0434
OSV records
RHSA-2022:9058GHSA-mjmj-j48q-9wg2

Charts affected

457 by stars
ChartLatestAffected imagesRadar Score
apache-iotdbapache-iotdb-single-nodeVerified publisher0.1.01 of 1See more

apache-iotdb apache-iotdb-single-node 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
apache/iotdb:0.11.28647309f95d1
snakeyaml@1.17
2.0

Open the chart page →

5,277
apimap-apiapimapOfficialVerified publisher1.8.111 of 1See more

apimap-api apimap 1.8.11

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
apimap/api:v1.8.11ae2b3ab00177
snakeyaml@1.33
2.0

Open the chart page →

2,231
d.vazquezm.2021_helmapphelmVerified publisher1.0.01 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

1 of the 6 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-worker:1.0.10d221e834a21
snakeyaml@1.25
2.0

Open the chart page →

19,745
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
snakeyaml@1.26
2.0
opensearchproject/opensearch:2.1.04254021a8c71
snakeyaml@1.26
2.0

Open the chart page →

15,573
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
snakeyaml@1.26
2.0
opensearchproject/opensearch:2.1.04254021a8c71
snakeyaml@1.26
2.0
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
snakeyaml@1.31
2.0

Open the chart page →

16,975
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
fimperato/sparkvid-api:1.0.5-RELEASE604012b77841
snakeyaml@1.26
2.0

Open the chart page →

8,866
automatedconfigurationassist-iot-automated-configuration1.0.01 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

1 of the 5 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
assistiot/automated_configuration:latest23f195a7a26a
snakeyaml@1.23
2.0

Open the chart page →

14,728
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
assistiot/identity-manager_kc:latest0df4b4fa899a
snakeyaml@1.29
2.0

Open the chart page →

13,352
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
snakeyaml@1.18
2.0

Open the chart page →

7,936
dashboard-pui9assist-iot-tactile-dashboard0.2.01 of 3See more

dashboard-pui9 assist-iot-tactile-dashboard 0.2.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
assistiot/tacticle_dashboard:api-lateste4414cb72dc4
snakeyaml@1.30
2.0

Open the chart page →

4,145
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
snakeyaml@1.33
2.0

Open the chart page →

9,412
axelor-open-suiteaxelor-open-suiteVerified publisher7.2.581 of 2See more

axelor-open-suite axelor-open-suite 7.2.58

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
snakeyaml@1.33
2.0

Open the chart page →

9,722
url-shortenerbeastob1.0.21 of 3See more

url-shortener beastob 1.0.2

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
beastob/url-shortener:1.0.299a49885ab33
snakeyaml@1.27
2.0

Open the chart page →

3,607
opendistro-esbeeinventor1.15.11 of 3See more

opendistro-es beeinventor 1.15.1

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch:1.13.32acfa1dcc5f8
snakeyaml@1.26
2.0

Open the chart page →

5,806
pagesberrutig-pages1.0.01 of 3See more

pages berrutig-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
snakeyaml@1.26
2.0

Open the chart page →

20,190
firehoseblip-firehoseVerified publisher0.0.181 of 11See more

firehose blip-firehose 0.0.18

1 of the 11 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
snakeyaml@1.29
2.0

Open the chart page →

13,459
jaegerbook-k8sinfra-v23.4.02 of 5See more

jaeger book-k8sinfra-v2 3.4.0

2 of the 5 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
snakeyaml@1.26
2.0
library/cassandra:3.11.65aa8400b4b3b
snakeyaml@1.11
2.0

Open the chart page →

19,229
pagesbrian-pages1.0.01 of 3See more

pages brian-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
snakeyaml@1.26
2.0

Open the chart page →

20,190
pagesbrixton-mayuribhavsar23-pages1.0.01 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
snakeyaml@1.26
2.0

Open the chart page →

20,190
pagesbrixton-pages1.0.01 of 3See more

pages brixton-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
snakeyaml@1.26
2.0

Open the chart page →

20,190
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/category:distributed02fc234353a9
snakeyaml@1.26
2.0

Open the chart page →

11,869
pagescamden-pages1.0.01 of 3See more

pages camden-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
snakeyaml@1.26
2.0

Open the chart page →

20,190
geoservercamptocamp20.0.36 of 12See more

geoserver camptocamp2 0.0.3

6 of the 12 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
snakeyaml@1.26
2.0
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
snakeyaml@1.26
2.0
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
snakeyaml@1.26
2.0
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
snakeyaml@1.26
2.0
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
snakeyaml@1.26
2.0
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
snakeyaml@1.26
2.0

Open the chart page →

88,335
puppetservercamptocamp31.0.11 of 2See more

puppetserver camptocamp3 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
camptocamp/jmx-exporter:0.12.058b9306482da
snakeyaml@1.16
2.0

Open the chart page →

5,886
pagescarina-pages1.0.01 of 3See more

pages carina-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
snakeyaml@1.26
2.0

Open the chart page →

20,190
pagescarmel-pages-dell1.0.01 of 3See more

pages carmel-pages-dell 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
snakeyaml@1.26
2.0

Open the chart page →

20,190
cassandra-clustercassandra-clusterVerified publisher0.1.01 of 1See more

cassandra-cluster cassandra-cluster 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
library/cassandra:3.11.10b095ff3248c6
snakeyaml@1.11
2.0

Open the chart page →

9,473
temporalcastaiVerified publisher0.54.21 of 14See more

temporal castai 0.54.2

1 of the 14 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
snakeyaml@1.11
2.0

Open the chart page →

16,198
tsoragecetic0.4.112 of 8See more

tsorage cetic 0.4.11

2 of the 8 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:5.0.1c87b1c07fb53
snakeyaml@1.18
2.0
library/cassandra:3.11.598531a31f213
snakeyaml@1.11
2.0

Open the chart page →

12,018
Chart-Oracle-Host-Appchart-oracle-host-appVerified publisher0.1.21 of 1See more

Chart-Oracle-Host-App chart-oracle-host-app 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
stanislovesid/oracle-host-app:14fe1ed26e194
snakeyaml@1.28
2.0

Open the chart page →

2,434
event-store-servicechoerodon0.8.01 of 2See more

event-store-service choerodon 0.8.0

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
choerodon/event-store-service:0.8.03c94c97f6f69
snakeyaml@1.17
2.0

Open the chart page →

9,808
rpc-routerchronicleVerified publisher0.2.91 of 1See more

rpc-router chronicle 0.2.9

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
drpcorg/dshackle:0.54.08858fae1859d
snakeyaml@1.29
2.0

Open the chart page →

6,447
cassandra-reapercloudnativeapp0.2.01 of 1See more

cassandra-reaper cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
thelastpickle/cassandra-reaper:1.3.09c53996c457d
snakeyaml@1.11
2.0

Open the chart page →

5,078
gocdcloudnativeapp1.9.21 of 2See more

gocd cloudnativeapp 1.9.2

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
gocd/gocd-server:v19.3.02da45cb09d57
snakeyaml@1.18
2.0

Open the chart page →

9,144
metabasecloudnativeapp0.5.01 of 1See more

metabase cloudnativeapp 0.5.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
metabase/metabase:v0.31.2ffb2dccacefc
snakeyaml@1.18
2.0

Open the chart page →

4,601
prometheus-cloudwatch-exportercloudnativeapp0.4.51 of 1See more

prometheus-cloudwatch-exporter cloudnativeapp 0.4.5

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:cloudwatch_exporter-0.5.0923705b2ae77
snakeyaml@1.17
2.0

Open the chart page →

2,629
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
rundeck/rundeck:3.0.16b13e8059ad72
snakeyaml@1.17
2.0

Open the chart page →

23,665
seleniumcloudnativeapp1.0.81 of 1See more

selenium cloudnativeapp 1.0.8

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
snakeyaml@1.19
2.0

Open the chart page →

11,782
spark-history-servercloudnativeapp1.0.01 of 3See more

spark-history-server cloudnativeapp 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
lightbend/spark-history-server:2.4.00bedf37f428a
snakeyaml@1.15
2.0

Open the chart page →

14,066
robot-shopcloud-native-toolkit1.1.11 of 12See more

robot-shop cloud-native-toolkit 1.1.1

1 of the 12 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
robotshop/rs-shipping:latest89753ab48919
snakeyaml@1.26
2.0

Open the chart page →

29,555
clamapicnieg2.0.51 of 2See more

clamapi cnieg 2.0.5

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
audig/clamapi:2.1.62c3fe34ee430
snakeyaml@1.26
2.0

Open the chart page →

4,671
dependency-trackcnieg3.0.81 of 2See more

dependency-track cnieg 3.0.8

1 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dependencytrack/apiserver:4.6.3485ac0952c02
snakeyaml@1.30
2.0

Open the chart page →

2,503
ganttcnieg2.1.01 of 1See more

gantt cnieg 2.1.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
cnieg/gantt:1.1.2d4b478d76f2a
snakeyaml@1.30
2.0

Open the chart page →

2,390
pulsarcnieg1.0.82 of 2See more

pulsar cnieg 1.0.8

2 of the 2 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.6.14db6ff0b4045
snakeyaml@1.26
2.0
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
snakeyaml@1.19
2.0

Open the chart page →

16,860
sumoconsensys0.4.1451 of 4See more

sumo consensys 0.4.145

1 of the 4 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
snakeyaml@1.26
2.0

Open the chart page →

5,958
sumo-besu-genesisconsensys0.1.751 of 1See more

sumo-besu-genesis consensys 0.1.75

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
snakeyaml@1.26
2.0

Open the chart page →

7,963
sumo-besu-nodeconsensys0.1.751 of 4See more

sumo-besu-node consensys 0.1.75

1 of the 4 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
snakeyaml@1.26
2.0

Open the chart page →

7,963
consumer-helmconsumer-app-helm-chart0.1.01 of 1See more

consumer-helm consumer-app-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
j4ckhunter/consumer:1.00bb7a429e3e75
snakeyaml@1.30
2.0

Open the chart page →

2,564
cp-helm-chartscp-helm-charts0.6.18 of 8See more

cp-helm-charts cp-helm-charts 0.6.1

8 of the 8 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
snakeyaml@1.26
2.0
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
snakeyaml@1.26
2.0
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
snakeyaml@1.26
2.0
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
snakeyaml@1.26
2.0
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
snakeyaml@1.26
2.0
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
snakeyaml@1.26
2.0
confluentinc/cp-zookeeper:6.1.078c190f4472c
snakeyaml@1.26
2.0
solsson/kafka-prometheus-jmx-exporterdigest-pinned6f82e2b0464f
snakeyaml@1.16
2.0

Open the chart page →

58,857
pagescrypticcode-helmchart1.0.01 of 3See more

pages crypticcode-helmchart 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1471.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
snakeyaml@1.26
2.0

Open the chart page →

20,190

Container images carrying it

434 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
prometheus-jmx-exporter@0.12.0-6.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
prometheus-jmx-exporter@0.12.0-7.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0
1
quay.io/fiware/tmforum-account:1.18.06b25aac03414
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
snakeyaml@1.32
2.0
1
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
snakeyaml@1.32
2.0
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
prometheus-jmx-exporter@0.12.0-7.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
snakeyaml@1.33
2.0
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
snakeyaml@1.26
2.0
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
snakeyaml@1.26
2.0
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
snakeyaml@1.33
2.0
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
snakeyaml@1.33
2.0
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
prometheus-jmx-exporter@0.12.0-6.el8
snakeyaml@1.26
0:0.12.0-9.el8_7
2.0
1
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
snakeyaml@1.13
2.0
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
snakeyaml@1.23
2.0
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
snakeyaml@1.23
2.0
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
snakeyaml@1.30
2.0
1
quay.io/srcmaxim/gradle-example-app:1.1.37c3fc28746ef
snakeyaml@1.28
2.0
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
snakeyaml@1.32
2.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.