CVE-2022-24801
HighAdvisory
Published 4 Apr 2022In the index since 6 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 8.1
- base score, highest
- EPSS
- 0.028
- 86th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 16
- of 17,781 indexed, latest versions
- Container images
- 20
- deployed by those charts
- Fix available
- 1 of 2
- affected packages
Inconsistent Interpretation of HTTP Requests in twisted.web
Carried by container images the latest versions of 16 of 17,781 indexed charts deploy, on 20 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| twistedpypi | 16.6.0, 17.9.0, 18.9.0, 19.7.0+4 more | 22.4.0 | 20 |
| twisteddeb | 17.9.0-2ubuntu0.1 | no fix listed | 2 |
- OSV records
- GHSA-c2jg-hw38-jrqqUBUNTU-CVE-2022-24801
- Also known as
- PYSEC-2022-195
Charts affected
16 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| netris-controllernetrisai | 2.8.2 | 1 of 14See more | 30,326 |
| delugerubxkubeVerified publisher | 1.2.1 | 1 of 1See more | 13,541 |
| prometheus-pve-exporterstenicVerified publisher | 0.1.1 | 1 of 1See more | 2,469 |
| synapsesudermanjr | 1.1.5 | 1 of 1See more | 3,332 |
| huebigdata-chartsVerified publisher | 1.0.4 | 1 of 2See more | 22,891 |
| duoauthproxy-radius-simplecaerus | 0.1.0 | 1 of 1See more | 2,974 |
| vmware-exporterdniel | 0.0.1 | 1 of 1See more | 1,351 |
| pritunldysnixVerified publisher | 0.2.7 | 1 of 3See more | 5,055 |
| delugegeek-cookbookVerified publisher | 5.4.2 | 1 of 1See more | 13,551 |
| jx-app-anchorejenkins-x | 0.0.4 | 1 of 2See more | 9,854 |
| splashntppoolVerified publisher | 1.0.4 | 1 of 1See more | 27,633 |
| anchore-engineopencloudcx | 1.13.0 | 1 of 2See more | 18,023 |
| comacopencord | 1.0.0 | 3 of 9See more | 88,546 |
| comac-platformopencord | 0.0.17 | 2 of 11See more | 26,211 |
| ponsimv2opencord | 1.2.3 | 1 of 2See more | 12,609 |
| sebaopencord | 1.0.0 | 4 of 17See more | 93,855 |
Container images carrying it
20 by charts deploying them
A fixed version is listed for 1 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| omecproject/ | 7c17a7b1d1ef | twisted | 22.4.0 | 2 |
| omecproject/ | cfdb566dd949 | twisted | 22.4.0 | 2 |
| anchore/ | bde9eedf639d | twisted | 22.4.0 | 1 |
| anchore/ | ed9b3badd17c | twisted | 22.4.0 | 1 |
| dysnix/ | 19951e3e7a32 | twisted | 22.4.0 | 1 |
| ethanbergstrom/ | 345c2a46c103 | twisted | 22.4.0 | 1 |
| gethue/ | 5702b2c37ff9 | twisted | 22.4.0 | 1 |
| graphiteapp/ | 04a0037cc2ae | twisted | 22.4.0 | 1 |
| linuxserver/ | 0ac871624394 | twisted twisted | no fix listed 22.4.0 | 1 |
| linuxserver/ | 2ce561a95e7b | twisted twisted | no fix listed 22.4.0 | 1 |
| matrixdotorg/ | cb89c0f17ba1 | twisted | 22.4.0 | 1 |
| omecproject/ | d109a8e57e71 | twisted | 22.4.0 | 1 |
| prompve/ | ff6749eb03b0 | twisted | 22.4.0 | 1 |
| pryorda/ | e0f5ba8b7856 | twisted | 22.4.0 | 1 |
| scrapinghub/ | a5f89bc84606 | twisted | 22.4.0 | 1 |
| voltha/ | c4e41e92f046 | twisted | 22.4.0 | 1 |
| voltha/ | 37f80524c207 | twisted | 22.4.0 | 1 |
| voltha/ | 9ee8c1f4428c | twisted | 22.4.0 | 1 |
| voltha/ | 655c3048a602 | twisted | 22.4.0 | 1 |
| voltha/ | ff596b62de59 | twisted | 22.4.0 | 1 |