StackRadar

CVE-2022-24761

High

Advisory

Published 17 Mar 2022In the index since 8 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.018
77th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
10
of 17,781 indexed, latest versions
Container images
9
deployed by those charts
Fix available
1 of 1
affected package

HTTP Request Smuggling in waitress

Carried by container images the latest versions of 10 of 17,781 indexed charts deploy, on 9 images.

Affected packageAffected versionsFixed inImages
waitresspypi1.2.1, 1.4.3, 1.4.4, 2.0.02.1.19
OSV records
GHSA-4f7p-27jc-3c36
Also known as
PYSEC-2022-169

Charts affected

10 by stars
ChartLatestAffected imagesRadar Score
keystonearzu0.2.291 of 4See more

keystone arzu 0.2.29

1 of the 4 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
waitress@2.0.0
2.1.1

Open the chart page →

22,568
syncserverchristianhuthVerified publisher1.3.01 of 1See more

syncserver christianhuth 1.3.0

1 of the 1 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
mozilla/syncserver:latest016162bf39d8
waitress@1.4.4
2.1.1

Open the chart page →

1,382
speedtest-exportergeek-cookbookVerified publisher5.4.21 of 1See more

speedtest-exporter geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
ghcr.io/miguelndecarvalho/speedtest-exporter:v3.2.29e36964bce26
waitress@2.0.0
2.1.1

Open the chart page →

1,772
whooglegeek-cookbookVerified publisher3.4.21 of 1See more

whoogle geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
benbusby/whoogle-search:0.5.4f77f7e6e4ad2
waitress@1.4.3
2.1.1

Open the chart page →

2,061
allurekfirfer0.1.81 of 2See more

allure kfirfer 0.1.8

1 of the 2 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.21.08a4d7e9308de
waitress@1.4.4
2.1.1

Open the chart page →

12,527
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.19.0cafa03b94dac
waitress@1.4.4
2.1.1

Open the chart page →

12,847
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
waitress@1.4.4
2.1.1

Open the chart page →

55,726
reportportalreportportal5.7.21 of 8See more

reportportal reportportal 5.7.2

1 of the 8 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
reportportal/service-metrics-gatherer:1.1.202a0e6dc11161
waitress@1.4.3
2.1.1

Open the chart page →

25,737
ceph-csi-cephfswikimedia0.1.81 of 5See more

ceph-csi-cephfs wikimedia 0.1.8

1 of the 5 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
waitress@1.2.1
2.1.1

Open the chart page →

10,285
ceph-csi-rbdwikimedia0.1.131 of 6See more

ceph-csi-rbd wikimedia 0.1.13

1 of the 6 container images this version deploys carry CVE-2022-24761.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
waitress@1.2.1
2.1.1

Open the chart page →

11,784

Container images carrying it

9 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
waitress@1.2.1
2.1.1
2
benbusby/whoogle-search:0.5.4f77f7e6e4ad2
waitress@1.4.3
2.1.1
1
craigwillis/c2metadata-bd:latestae317d7e4724
waitress@1.4.4
2.1.1
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
waitress@1.4.4
2.1.1
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
waitress@1.4.4
2.1.1
1
mozilla/syncserver:latest016162bf39d8
waitress@1.4.4
2.1.1
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
waitress@2.0.0
2.1.1
1
reportportal/service-metrics-gatherer:1.1.202a0e6dc11161
waitress@1.4.3
2.1.1
1
ghcr.io/miguelndecarvalho/speedtest-exporter:v3.2.29e36964bce26
waitress@2.0.0
2.1.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.