StackRadar

CVE-2022-23647

High

Advisory

Published 22 Feb 2022In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.015
72nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
12
of 17,781 indexed, latest versions
Container images
10
deployed by those charts
Fix available
1 of 1
affected package

Cross-site Scripting in Prism

Carried by container images the latest versions of 12 of 17,781 indexed charts deploy, on 10 images.

Affected packageAffected versionsFixed inImages
prismjsnpm1.22.0, 1.23.0, 1.24.0, 1.24.1+1 more1.27.010
OSV records
GHSA-3949-f494-cm99

Charts affected

12 by stars
ChartLatestAffected imagesRadar Score
zwavejs2mqttgeek-cookbookVerified publisher5.4.21 of 1See more

zwavejs2mqtt geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
prismjs@1.23.0
1.27.0

Open the chart page →

3,476
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
prismjs@1.22.0
1.27.0

Open the chart page →

10,730
recipesgeek-cookbookVerified publisher6.6.21 of 2See more

recipes geek-cookbook 6.6.2

1 of the 2 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
vabene1111/recipes:1.0.5.2ec4e9e2905b0
prismjs@1.25.0
1.27.0

Open the chart page →

7,801
opendistro-esbeeinventor1.15.11 of 3See more

opendistro-es beeinventor 1.15.1

1 of the 3 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
prismjs@1.22.0
1.27.0

Open the chart page →

5,806
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
prismjs@1.23.0
1.27.0

Open the chart page →

7,232
aws-api-gateway-operatormintel0.1.21 of 11See more

aws-api-gateway-operator mintel 0.1.2

1 of the 11 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
prismjs@1.24.0
1.27.0

Open the chart page →

10,603
standard-application-stackmintel11.4.01 of 12See more

standard-application-stack mintel 11.4.0

1 of the 12 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
prismjs@1.24.0
1.27.0

Open the chart page →

10,603
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
linuxserver/codimd:latestb801bbcf6386
prismjs@1.22.0
1.27.0

Open the chart page →

27,465
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
prismjs@1.24.1
1.27.0

Open the chart page →

29,227
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
ubercadence/web:v3.29.58564a5b44a6d
prismjs@1.23.0
1.27.0

Open the chart page →

10,127
temporalwenerme0.15.11 of 13See more

temporal wenerme 0.15.1

1 of the 13 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
temporalio/web:1.14.033cfa863d8ce
prismjs@1.25.0
1.27.0

Open the chart page →

22,665
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2022-23647.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
prismjs@1.22.0
1.27.0

Open the chart page →

5,806

Container images carrying it

10 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
prismjs@1.22.0
1.27.0
2
opensearchproject/opensearch-dashboards:1.0.039695180364b
prismjs@1.24.0
1.27.0
2
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
prismjs@1.22.0
1.27.0
1
linuxserver/codimd:latestb801bbcf6386
prismjs@1.22.0
1.27.0
1
roadiehq/community-backstage-image:latestef355bf5b639
prismjs@1.23.0
1.27.0
1
temporalio/web:1.14.033cfa863d8ce
prismjs@1.25.0
1.27.0
1
ubercadence/web:v3.29.58564a5b44a6d
prismjs@1.23.0
1.27.0
1
vabene1111/recipes:1.0.5.2ec4e9e2905b0
prismjs@1.25.0
1.27.0
1
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
prismjs@1.23.0
1.27.0
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
prismjs@1.24.1
1.27.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.