StackRadar

CVE-2022-24775

Medium

Advisory

Published 21 Mar 2022In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.025
84th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
72
of 17,781 indexed, latest versions
Container images
63
deployed by those charts
Fix available
2 of 2
affected packages

Improper Input Validation in guzzlehttp/psr7

Carried by container images the latest versions of 72 of 17,781 indexed charts deploy, on 63 images.

Affected packageAffected versionsFixed inImages
guzzlehttp/psr7composer1.4.2, 1.5.2, 1.6.1, 1.7.0+4 more1.8.4, 2.1.163
drupal/corecomposer8.9.209.2.161
OSV records
GHSA-q7rv-6hp3-vh96DRUPAL-CORE-2022-006
Also known as
BIT-drupal-2022-24775

Charts affected

72 by stars
ChartLatestAffected imagesRadar Score
notification-componentnotification-component1.0.01 of 4See more

notification-component notification-component 1.0.0

1 of the 4 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,527
openldapopenldap0.1.11 of 2See more

openldap openldap 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ldapaccountmanager/lam:8.0.1d46cf25d1dda
guzzlehttp/psr7@1.8.3
1.8.4

Open the chart page →

5,293
orderregistratiecomponentorderregistratiecomponent1.0.01 of 3See more

orderregistratiecomponent orderregistratiecomponent 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/orderregistratiecomponent-php:latestd17257e4fa27
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,492
procestypecatalogusprocestypecatalogus1.1.01 of 4See more

procestypecatalogus procestypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/procestypecatalogus-php:latest956c4fb64796
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,429
productenendienstencatalogusproductenendienstencatalogus1.0.01 of 3See more

productenendienstencatalogus productenendienstencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/productenendienstencatalogus-php:latest7242da105081
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,510
panproto-application-nldesign0.1.01 of 5See more

pan proto-application-nldesign 0.1.0

1 of the 5 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
conduction/pan-php:dev24f03c57568f
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

8,725
proto-component-commongroundproto-component-commonground1.0.01 of 3See more

proto-component-commonground proto-component-commonground 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/proto-component-commonground-php:latesteb36ead1954e
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,510
laravel-workerrenoki-co1.1.01 of 1See more

laravel-worker renoki-co 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
guzzlehttp/psr7@1.8.1
1.8.4

Open the chart page →

5,687
review-componentreview-component1.0.01 of 3See more

review-component review-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/review-component-php:latestafe623824b82
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,491
shopwarerobjuz2.0.01 of 6See more

shopware robjuz 2.0.0

1 of the 6 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
shyim/shopware:6.4.6.0a951c0e6b836
guzzlehttp/psr7@1.8.3
1.8.4

Open the chart page →

2,972
mauticromholdings0.1.31 of 3See more

mautic romholdings 0.1.3

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
mautic/mautic:2.13-apachea954c5868d76
guzzlehttp/psr7@1.4.2
1.8.4

Open the chart page →

2,939
bookstackschmitzis0.1.11 of 1See more

bookstack schmitzis 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
solidnerd/bookstack:21.12762ffd5c51d3
guzzlehttp/psr7@2.1.0
2.1.1

Open the chart page →

2,751
cachetsergiotocaliniVerified publisher1.0.01 of 1See more

cachet sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
cachethq/docker:2.3.15a61ff0f67ea7
guzzlehttp/psr7@1.4.2
1.8.4

Open the chart page →

1,896
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
guzzlehttp/psr7@1.8.2
1.8.4

Open the chart page →

7,480
repmanteam-blueVerified publisher0.3.01 of 5See more

repman team-blue 0.3.0

1 of the 5 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
buddy/repman:1.4.0097c897f8b54
guzzlehttp/psr7@1.8.3
1.8.4

Open the chart page →

3,993
trouw-servicetrouw-service1.0.01 of 3See more

trouw-service trouw-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/trouw-service-php:latestf745e2870692
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,510
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
guzzlehttp/psr7@1.7.0
1.8.4

Open the chart page →

7,429
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
guzzlehttp/psr7@1.8.3
1.8.4

Open the chart page →

2,132
tool-quickstatementswbstack0.4.01 of 1See more

tool-quickstatements wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-24775.

Container imageDigestPackageFixed in
ghcr.io/wbstack/quickstatements:1.3.588423e422ea8
guzzlehttp/psr7@2.1.0
2.1.1

Open the chart page →

1,698

Container images carrying it

63 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
cachethq/docker:2.3.15a61ff0f67ea7
guzzlehttp/psr7@1.4.2
1.8.4
4
buddy/repman:1.4.0097c897f8b54
guzzlehttp/psr7@1.8.3
1.8.4
3
mautic/mautic:2.13-apachea954c5868d76
guzzlehttp/psr7@1.4.2
1.8.4
3
ldapaccountmanager/lam:8.0.1d46cf25d1dda
guzzlehttp/psr7@1.8.3
1.8.4
2
ujamii/prometheus-sentry-exporter:0.5.06243197349e1
guzzlehttp/psr7@1.6.1
1.8.4
2
conduction/agendaservice-php:latest9cfeeb6c7c20
guzzlehttp/psr7@1.7.0
1.8.4
1
conduction/balance-registration-php:devc36094a41369
guzzlehttp/psr7@1.7.0
1.8.4
1
conduction/betaalservice-php:latestece1ab544c57
guzzlehttp/psr7@1.7.0
1.8.4
1
conduction/cgrc-php:dev25415534d245
guzzlehttp/psr7@1.6.1
1.8.4
1
conduction/checkin-component-php:dev3423845692c1
guzzlehttp/psr7@1.7.0
1.8.4
1
conduction/conduction-ui-php:dev2744565516e8
guzzlehttp/psr7@1.8.1
1.8.4
1
conduction/contactmoment-component-php:deve1d4ad1e22a8
guzzlehttp/psr7@1.7.0
1.8.4
1
conduction/docparser-php:devb6f95c8ead7d
guzzlehttp/psr7@1.7.0
1.8.4
1
conduction/kvk-php:dev8f177f9f8a7b
guzzlehttp/psr7@1.7.0
1.8.4
1
conduction/pan-php:dev24f03c57568f
guzzlehttp/psr7@1.7.0
1.8.4
1
fireflyiii/core:version-5.6.142f4283bd0cf7
guzzlehttp/psr7@2.1.0
2.1.1
1
jordan/icinga2:latestf75025fe8ea8
guzzlehttp/psr7@1.7.0
1.8.4
1
library/drupal:8-apache8a1a3ee83899
guzzlehttp/psr7@1.6.1
drupal/core@8.9.20
1.8.4
9.2.16
1
library/monica:3.7.0-apacheceb1ba4196ab
guzzlehttp/psr7@2.1.0
2.1.1
1
library/nextcloud:17.0.0-apache96104cb965fc
guzzlehttp/psr7@1.5.2
1.8.4
1
linuxserver/grocy:version-v3.1.3291296e66c2a
guzzlehttp/psr7@2.1.0
2.1.1
1
lycheeorg/lychee-laravel:v4.3.0308c0e6231da
guzzlehttp/psr7@1.8.1
1.8.4
1
openemr/openemr:6.1.089eaa6d9a4e3
guzzlehttp/psr7@2.1.0
2.1.1
1
pe46dro/xbackbone-docker:3.3.309dfe3aa10f6
guzzlehttp/psr7@1.7.0
1.8.4
1
shlinkio/shlink:2.7.1c6729db1d3a8
guzzlehttp/psr7@1.8.2
1.8.4
1
shyim/shopware:6.4.6.0a951c0e6b836
guzzlehttp/psr7@1.8.3
1.8.4
1
solidnerd/bookstack:21.12762ffd5c51d3
guzzlehttp/psr7@2.1.0
2.1.1
1
wallabag/wallabag:2.4.25e4c26a7fb4a
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
guzzlehttp/psr7@1.8.2
1.8.4
1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
guzzlehttp/psr7@1.8.2
1.8.4
1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
guzzlehttp/psr7@1.8.3
1.8.4
1
ghcr.io/conductionnl/eherkenning-ui-php:latestdeed102b4255
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/grafregistratiecomponent-php:latest35225eaa87ab
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/instemmingservice-php:latest4ffe222b3e3a
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/loggingcomponent-php:latest834b8e1af290
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/logicservice-php:latest72aae2080595
guzzlehttp/psr7@1.8.2
1.8.4
1
ghcr.io/conductionnl/memo-component-php:latestef77f4c089a1
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/ocatiecatalogus-php:latestc22764cbfa97
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/orderregistratiecomponent-php:latestd17257e4fa27
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/procestypecatalogus-php:latest956c4fb64796
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/productenendienstencatalogus-php:latest7242da105081
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/proto-component-commonground-php:latesteb36ead1954e
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/review-component-php:latestafe623824b82
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
guzzlehttp/psr7@1.8.2
1.8.4
1
ghcr.io/conductionnl/trouw-service-php:latestf745e2870692
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
guzzlehttp/psr7@1.7.0
1.8.4
1
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
guzzlehttp/psr7@1.7.0
1.8.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.