StackRadar

CVE-2022-2047

Low

Advisory

Published 7 Jul 2022In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
2.7
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
156
of 17,781 indexed, latest versions
Container images
142
deployed by those charts
Fix available
1 of 1
affected package

Jetty invalid URI parsing may produce invalid HttpURI.authority

Carried by container images the latest versions of 156 of 17,781 indexed charts deploy, on 142 images.

Affected packageAffected versionsFixed inImages
jetty-httpmaven7.6.0.v20120127, 8.1.7.v20120910, 8.1.9.v20130131, 8.1.12.v20130726+46 more9.4.47142
OSV records
GHSA-cj7v-27pg-wf7q

Charts affected

156 by stars
ChartLatestAffected imagesRadar Score
clickhousetemp-charts0.7.11 of 3See more

clickhouse temp-charts 0.7.1

1 of the 3 container images this version deploys carry CVE-2022-2047.

Container imageDigestPackageFixed in
library/zookeeper:3.6.180ad2170ad62
jetty-http@9.4.24.v20191120
9.4.47

Open the chart page →

8,707
ubooquityvhdirkVerified publisher0.1.31 of 1See more

ubooquity vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-2047.

Container imageDigestPackageFixed in
linuxserver/ubooquity:2.1.2-ls369932d6759112
jetty-http@9.4.0.v20161208
9.4.47

Open the chart page →

4,303
queryservicewbstack0.2.11 of 1See more

queryservice wbstack 0.2.1

1 of the 1 container images this version deploys carry CVE-2022-2047.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
jetty-http@9.4.12.v20180830
9.4.47

Open the chart page →

4,649
queryservice-updaterwbstack0.3.01 of 1See more

queryservice-updater wbstack 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-2047.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-updater:0.3.84_3.97525a57ac3f1
jetty-http@9.4.12.v20180830
9.4.47

Open the chart page →

3,176
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2022-2047.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
jetty-http@9.4.41.v20210516
9.4.47

Open the chart page →

9,397
is-pattern-1wso2is-pattern15.11.01 of 2See more

is-pattern-1 wso2is-pattern1 5.11.0

1 of the 2 container images this version deploys carry CVE-2022-2047.

Container imageDigestPackageFixed in
massimolauri/wso2is:5.11.0-centose08abf0ce767
jetty-http@8.1.15.v20140411
9.4.47

Open the chart page →

6,213

Container images carrying it

142 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
lsmaster/kafka-connect-wrapper:6.1.0-0.1061eb5fbfa00
jetty-http@9.4.33.v20201020
9.4.47
1
massimolauri/wso2is:5.11.0-centose08abf0ce767
jetty-http@8.1.15.v20140411
9.4.47
1
metabase/metabase:v0.31.2ffb2dccacefc
jetty-http@9.4.11.v20180605
9.4.47
1
microcks/microcks:0.8.0e3a3e0c67b09
jetty-http@9.4.12.v20180830
9.4.47
1
mintproject/model-catalog-endpoint:29256555a6fbaefae4729d5cd259564708a4ab04ffbb13f20465
jetty-http@9.4.12.v20180830
9.4.47
1
muluder/prograncontrollermcord:0.1.843b597a93da7
jetty-http@8.1.14.v20131031
9.4.47
1
ncsa/datawolf:4.7.0af6649d59150
jetty-http@9.2.2.v20140723
9.4.47
1
omecproject/onos-progran:1.0.05715e5648aa0
jetty-http@8.1.14.v20131031
9.4.47
1
onosproject/onos:2.2.144914a8d4b3f
jetty-http@9.4.22.v20191022
9.4.47
1
openhab/openhab:3.2.0d0aa4af452c1
jetty-http@9.4.43.v20210629
9.4.47
1
openhab/openhab-cloud:a8138a329dd2bac8c4b
jetty-http@8.1.12.v20130726
9.4.47
1
owasp/dependency-track:3.8.0efc65e702ee1
jetty-http@9.4.27.v20200227
9.4.47
1
polyakov/hapi-fhir-jpaserver-example:latestdbcef69146b8
jetty-http@8.1.15.v20140411
9.4.47
1
prom/cloudwatch-exporter:cloudwatch_exporter-0.5.0923705b2ae77
jetty-http@8.1.7.v20120910
9.4.47
1
prom/cloudwatch-exporter:cloudwatch_exporter-0.8.0fc4b9b9f5e15
jetty-http@9.4.15.v20190215
9.4.47
1
radondb/zookeeper:3.6.216981604f1a0
jetty-http@9.4.24.v20191120
9.4.47
1
rodolpheche/wiremock:2.27.22328a9fce2bf
jetty-http@9.4.30.v20200611
9.4.47
1
rundeck/rundeck:3.2.74d64fe56f767
jetty-http@9.4.20.v20190813
9.4.47
1
rundeck/rundeck:3.0.16b13e8059ad72
jetty-http@8.1.15.v20140411
9.4.47
1
sismics/docs:v1.10f4b0ef019cf1
jetty-http@9.4.36.v20210114
9.4.47
1
slamdev/apache-hive:2.3.9-2.10.1b4b029c9b15f
jetty-http@7.6.0.v20120127
9.4.47
1
snappydatainc/spark-shuffle:v2.2.0-kubernetes-0.5.1fd4b2070466f
jetty-http@9.3.11.v20160721
9.4.47
1
sslhep/hive-metastore:3.1.39e80af083079
jetty-http@9.3.20.v20170531
9.4.47
1
thehiveproject/cortex:3.1.7f4bc64fb8844
jetty-http@9.4.39.v20210325
9.4.47
1
thelastpickle/cassandra-reaper:1.3.09c53996c457d
jetty-http@9.4.6.v20170531
9.4.47
1
trinodb/trino:405ee80ab5eeab2
jetty-http@9.3.24.v20180605
9.4.47
1
voltha/voltha-onos:5.1.8e038acb950d3
jetty-http@9.4.43.v20210629
9.4.47
1
vromero/activemq-artemis:2.16.0408d6a46b153
jetty-http@9.4.27.v20200227
9.4.47
1
xetusoss/archiva:v2.2.588f25242b9ee
jetty-http@8.1.7.v20120910
9.4.47
1
ghcr.io/fleeksoft/hbase/hbase-base:2.4.13.2c144bdd688d7
jetty-http@9.4.46.v20220331
9.4.47
1
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
jetty-http@9.4.43.v20210629
9.4.47
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
jetty-http@9.4.30.v20200611
9.4.47
1
ghcr.io/jens-maus/raspberrymatic:3.83.6.202508244b22b4f407c4
jetty-http@9.4.7.v20170914
9.4.47
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
jetty-http@9.4.43.v20210629
9.4.47
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
jetty-http@9.4.43.v20210629
9.4.47
1
ghcr.io/openccu/openccu:3.89.8.20260719b2de2ff6e8e0
jetty-http@9.4.7.v20170914
9.4.47
1
ghcr.io/punchplatform/punchline-java:8.1.1d46ce7b96482
jetty-http@9.4.43.v20210629
9.4.47
1
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
jetty-http@9.3.11.v20160721
9.4.47
1
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
jetty-http@9.4.12.v20180830
9.4.47
1
ghcr.io/wbstack/queryservice-updater:0.3.84_3.97525a57ac3f1
jetty-http@9.4.12.v20180830
9.4.47
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.59.3_local8cdcb7e83f9f
jetty-http@9.4.44.v20210927
9.4.47
1
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
jetty-http@9.4.11.v20180605
9.4.47
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.