StackRadar

CVE-2022-24921

Unscored

Advisory

Published 23 May 2022In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.032
87th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
840
of 17,787 indexed, latest versions
Container images
868
deployed by those charts
Fix available
1 of 1
affected package

Stack exhaustion when compiling deeply nested expressions in regexp

Carried by container images the latest versions of 840 of 17,787 indexed charts deploy, on 868 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+63 more1.16.15868
OSV records
GO-2021-0347
Also known as
BIT-golang-2022-24921

Charts affected

840 by stars
ChartLatestAffected imagesRadar Score
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
stdlib@go1.16.7
1.16.15

Open the chart page →

13,028
rabbitmq-operatorsagikazarmarkVerified publisher0.0.31 of 1See more

rabbitmq-operator sagikazarmark 0.0.3

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
rabbitmqoperator/cluster-operator:1.8.3231e7ce0e905
stdlib@go1.17
1.16.15

Open the chart page →

2,001
scienceboxsciencebox0.0.72 of 17See more

sciencebox sciencebox 0.0.7

2 of the 17 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
cs3org/revad:v1.19.03b57a34a7dfd
stdlib@go1.17.3
1.16.15
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.16.15

Open the chart page →

6,587
external-secrets-operatorslamdev0.0.151 of 1See more

external-secrets-operator slamdev 0.0.15

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
slamdev/external-secrets-operator:0.0.8855f6625dda4
stdlib@go1.13.15
1.16.15

Open the chart page →

2,301
gcp-quota-exportersoftonic2.0.21 of 1See more

gcp-quota-exporter softonic 2.0.2

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
mintel/gcp-quota-exporter:v0.3.20e0707b7732b
stdlib@go1.13.12
1.16.15

Open the chart page →

2,637
go-ratelimitsoftonic1.0.72 of 3See more

go-ratelimit softonic 1.0.7

2 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:v1.4.071081616da3e
stdlib@go1.14
1.16.15
oliver006/redis_exporter:v1.9.04af75e9f16f6
stdlib@go1.14.4
1.16.15

Open the chart page →

5,098
node-policy-webhooksoftonic0.1.101 of 1See more

node-policy-webhook softonic 0.1.10

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
softonic/node-policy-webhook:0.1.2ab6098c04a53
stdlib@go1.14.6
1.16.15

Open the chart page →

2,591
redis-shardedsoftonic0.5.01 of 2See more

redis-sharded softonic 0.5.0

1 of the 2 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.9.04af75e9f16f6
stdlib@go1.14.4
1.16.15

Open the chart page →

2,320
gitwebhookproxystakaterVerified publisher0.2.791 of 1See more

gitwebhookproxy stakater 0.2.79

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
stakater/gitwebhookproxy:v0.2.79c1226e5270cd
stdlib@go1.13.1
1.16.15

Open the chart page →

1,503
statpingstatping0.1.141 of 1See more

statping statping 0.1.14

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
stdlib@go1.14.13
1.16.15

Open the chart page →

3,371
hlf-k8ssubstraVerified publisher10.2.42 of 7See more

hlf-k8s substra 10.2.4

2 of the 7 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:1.5.0f270dfeee91d
stdlib@go1.15.7
1.16.15
ghcr.io/substra/fabric-tools:0.2.43491a0f31c4a
stdlib@go1.15.7
1.16.15

Open the chart page →

12,006
Grafanasurajwarbhe-grafana0.1.01 of 1See more

Grafana surajwarbhe-grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
surajwarbhe/grafana:v185248611e9f1
stdlib@go1.14.3
1.16.15

Open the chart page →

2,597
terraform-controllerterraform-controller0.0.201 of 1See more

terraform-controller terraform-controller 0.0.20

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
absaoss/terraform-controller:v0.0.20ad538a1285a0
stdlib@go1.14.8
1.16.15

Open the chart page →

3,538
spa-reloadertoucanVerified publisher0.1.01 of 1See more

spa-reloader toucan 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
toucansoftware/spa-reloader:latestc187b1fba501
stdlib@go1.13.15
1.16.15

Open the chart page →

2,245
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
stdlib@go1.14.7
1.16.15

Open the chart page →

5,280
user-componentuser-component1.2.01 of 4See more

user-component user-component 1.2.0

1 of the 4 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
stdlib@go1.13.10
1.16.15

Open the chart page →

7,303
vearchvearch3.3.41 of 4See more

vearch vearch 3.3.4

1 of the 4 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.16.15

Open the chart page →

5,008
go-egvoid-xmh1.1.13 of 3See more

go-eg void-xmh 1.1.1

3 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
voidxmh/xmh-auther:v193e42a569ca8
stdlib@go1.16.5
1.16.15
voidxmh/xmh-cacher:v11b7397412320
stdlib@go1.16.5
1.16.15
voidxmh/xmh-ui:v12ff3f2146547
stdlib@go1.16.5
1.16.15

Open the chart page →

7,464
phpipamvquieVerified publisher1.0.31 of 3See more

phpipam vquie 1.0.3

1 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
library/mariadb:10.11.21c33370a599c
stdlib@go1.16.7
1.16.15

Open the chart page →

7,069
vultr-ccmvultrVerified publisher1.3.01 of 1See more

vultr-ccm vultr 1.3.0

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
stdlib@go1.16.7
1.16.15

Open the chart page →

3,034
waardepapierenwaardepapieren1.0.01 of 3See more

waardepapieren waardepapieren 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
stdlib@go1.13.10
1.16.15

Open the chart page →

8,078
waardepapieren-baliewaardepapieren-balie1.0.01 of 3See more

waardepapieren-balie waardepapieren-balie 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
stdlib@go1.13.10
1.16.15

Open the chart page →

7,871
waardepapieren-registerwaardepapieren-register1.1.01 of 4See more

waardepapieren-register waardepapieren-register 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
stdlib@go1.13.10
1.16.15

Open the chart page →

7,429
frpswenerme1.0.11 of 1See more

frps wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
wener/frps:v0.37.05c92cc9e8597
stdlib@go1.17.3
1.16.15

Open the chart page →

3,359
kubemodwiremindVerified publisher0.1.51 of 2See more

kubemod wiremind 0.1.5

1 of the 2 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.13.0cadca39288ad
stdlib@go1.14.7
1.16.15

Open the chart page →

3,030
pi-hole-exporterwyrihaximusnetVerified publisher0.1.31 of 1See more

pi-hole-exporter wyrihaximusnet 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ekofr/pihole-exporter:0.0.109fdad6f352e0
stdlib@go1.14.7
1.16.15

Open the chart page →

1,809
adresserviceadresservice1.1.01 of 5See more

adresservice adresservice 1.1.0

1 of the 5 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
stdlib@go1.13.10
1.16.15

Open the chart page →

7,447
agendaserviceagendaservice1.0.01 of 3See more

agendaservice agendaservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
conduction/agendaservice-php:latest9cfeeb6c7c20
stdlib@go1.13.10
1.16.15

Open the chart page →

7,209
akriakri0.12.551 of 3See more

akri akri 0.12.55

1 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.16.15

Open the chart page →

1,545
kpubberalekcVerified publisher0.0.41 of 1See more

kpubber alekc 0.0.4

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/alekc/kpubber:v0.0.2a462d5797e14
stdlib@go1.16.9
1.16.15

Open the chart page →

2,228
gitlab-code-review-notifieralmorgvVerified publisher0.1.21 of 2See more

gitlab-code-review-notifier almorgv 0.1.2

1 of the 2 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
almorgv/gitlab-code-review-notifier:0.1.25f2a7d2b44d8
stdlib@go1.14.15
1.16.15

Open the chart page →

2,115
terjangandylibrianVerified publisher0.0.31 of 1See more

terjang andylibrian 0.0.3

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/andylibrian/terjang:latest20a46b199247
stdlib@go1.16.4
1.16.15

Open the chart page →

1,985
chirpstack-packet-multiplexerangelnu3.0.01 of 1See more

chirpstack-packet-multiplexer angelnu 3.0.0

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/angelnu/chirpstack-packet-multiplexer:latest0c84c2d71006
stdlib@go1.13.15
1.16.15

Open the chart page →

2,239
cert-manager-webhook-safednsansgroupVerified publisher1.3.01 of 1See more

cert-manager-webhook-safedns ansgroup 1.3.0

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ansgroup/cert-manager-webhook-safedns:v1.0.1cd6b0ef2b309
stdlib@go1.13.15
1.16.15

Open the chart page →

2,488
nfs-server-provisioneranvibo1.3.01 of 1See more

nfs-server-provisioner anvibo 1.3.0

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
stdlib@go1.15
1.16.15

Open the chart page →

2,730
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.16.15
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.16.15

Open the chart page →

19,784
app-mobilityappmo0.1.01 of 5See more

app-mobility appmo 0.1.0

1 of the 5 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
velero/velero:v1.8.18d784580931c
stdlib@go1.16.6
1.16.15

Open the chart page →

12,520
app-movies-seriesapp-movies-seriesVerified publisher0.1.01 of 2See more

app-movies-series app-movies-series 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
library/postgres:14.32d1e636f0778
stdlib@go1.16.7
1.16.15

Open the chart page →

3,166
capi-ops-managerappscodeVerified publisher2024.8.141 of 2See more

capi-ops-manager appscode 2024.8.14

1 of the 2 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
stdlib@go1.15.14
1.16.15

Open the chart page →

3,416
grafanaappscodeVerified publisher2026.9.111 of 1See more

grafana appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/appscode/grafana:v2025.2.367d18880448c
stdlib@go1.17.1
1.16.15

Open the chart page →

2,333
kubedb-communityappscodeVerified publisher0.24.21 of 2See more

kubedb-community appscode 0.24.2

1 of the 2 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
kubedb/operator:v0.24.01a06ff0bda52
stdlib@go1.17.6
1.16.15

Open the chart page →

2,550
kubedb-enterpriseappscodeVerified publisher0.11.21 of 2See more

kubedb-enterprise appscode 0.11.2

1 of the 2 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
kubedb/kubedb-enterprise:v0.11.05829bcedcb0d
stdlib@go1.17.3
1.16.15

Open the chart page →

2,575
kubedb-oneappscodeVerified publisher2023.12.281 of 10See more

kubedb-one appscode 2023.12.28

1 of the 10 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.16.15

Open the chart page →

15,016
stash-communityappscodeVerified publisher0.42.01 of 4See more

stash-community appscode 0.42.0

1 of the 4 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.16.15

Open the chart page →

3,661
statefulsetappscodeVerified publisher0.0.11 of 3See more

statefulset appscode 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
stdlib@go1.15.14
1.16.15

Open the chart page →

2,732
harbor-scanner-trivyaqua-helm0.17.01 of 1See more

harbor-scanner-trivy aqua-helm 0.17.0

1 of the 1 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
stdlib@go1.16.4
1.16.15

Open the chart page →

5,203
itera-lmaarzu1.34.601 of 6See more

itera-lma arzu 1.34.60

1 of the 6 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
stdlib@go1.17.3
1.16.15

Open the chart page →

8,608
performanceandusagediagnosisassist-iot-pud1.0.01 of 7See more

performanceandusagediagnosis assist-iot-pud 1.0.0

1 of the 7 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.16.15

Open the chart page →

8,556
smartorchestratorassist-iot-smart-orchestrator4.0.02 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

2 of the 14 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_helm:latest9bb46ea14e8e
stdlib@go1.13
1.16.15
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.16.15

Open the chart page →

42,460
sequencerastria4.0.01 of 3See more

sequencer astria 4.0.0

1 of the 3 container images this version deploys carry CVE-2022-24921.

Container imageDigestPackageFixed in
rclone/rclone:1.56.0f2fc45c8bc57
stdlib@go1.16.6
1.16.15

Open the chart page →

6,239

Container images carrying it

868 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
rclone/rclone:1.56.0f2fc45c8bc57
stdlib@go1.16.6
1.16.15
1
redislabs/redisearch:2.4.1433561794c5c8
stdlib@go1.16.7
1.16.15
1
reportportal/migrations:5.7.0da5d8e1395fe
stdlib@go1.13.6
1.16.15
1
reportportal/service-index:5.0.112b27a2d7a87d
stdlib@go1.17.1
1.16.15
1
ribbybibby/s3-exporter:v0.5.0998184c51a00
stdlib@go1.15.15
1.16.15
1
rimusz/security-sample-app:0.2.0b9a178ca76ef
stdlib@go1.14.4
1.16.15
1
robjuz/postgresql-nominatim:latest805c7bab76df
stdlib@go1.16.5
1.16.15
1
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.16.15
1
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.16.15
1
rogerrum/alertmanager-discord:1.0.3827593369625
stdlib@go1.17.4
1.16.15
1
rookout/k8s-operator:latest0d083f3ef1a7
stdlib@go1.15.15
1.16.15
1
runatlantis/atlantis:v0.16.145fbaf7e207c
stdlib@go1.14.7
1.16.15
1
samarthya/spinnaker:v1.0ef06d81036af
stdlib@go1.17.6
1.16.15
1
sentriz/gonic:v0.13.1a74012a6adf3
stdlib@go1.16.4
1.16.15
1
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
stdlib@go1.15.12
1.16.15
1
signoz/alertmanager:0.5.07bc7de2e33c2
stdlib@go1.14
1.16.15
1
sikalabs/slu:v0.34.0fdc0c6711add
stdlib@go1.17.6
1.16.15
1
simpleidserver/faasprometheus:0.0.425e378d57d78
stdlib@go1.17.1
1.16.15
1
skylenet/ethereum-testnet-homepage:latest8698903e379f
stdlib@go1.17.2
1.16.15
1
slagattollas/weatherservice-practica:latest68e7f56393fc
stdlib@go1.15.6
1.16.15
1
slamdev/config-connector-templater:0.0.3a234541c9fa8
stdlib@go1.16.5
1.16.15
1
slamdev/external-secrets-operator:0.0.8855f6625dda4
stdlib@go1.13.15
1.16.15
1
slamdev/flux-notifier:v0.0.8b173d809132d
stdlib@go1.13.11
1.16.15
1
slamdev/gke-preemptible-notifier:v0.0.3d5d6430108a3
stdlib@go1.13.11
1.16.15
1
smailkoz/torrserver:1.0.1117b52d15de8f0
stdlib@go1.17.5
1.16.15
1
softonic/node-policy-webhook:0.1.2ab6098c04a53
stdlib@go1.14.6
1.16.15
1
softonic/pod-defaulter:0.1.072017aed5902
stdlib@go1.14.9
1.16.15
1
softonic/preemptible-killer:1.2.6-294b87f1fb362
stdlib@go1.14.10
1.16.15
1
softonic/rate-limit-operator:0.1.1910f6de37763
stdlib@go1.13.15
1.16.15
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
stdlib@go1.17.5
1.16.15
1
sophos/nginx-vts-exporter:latestf1073556b29b
stdlib@go1.13.6
1.16.15
1
sorintlab/stolon:v0.16.0-pg1236b45c0f97fc
stdlib@go1.13.8
1.16.15
1
springhack/frpc_ingress:latest4aceb821da88
stdlib@go1.17.2
1.16.15
1
sstarcher/ecr-cleaner:0.1.12d43c390cb19
stdlib@go1.14.2
1.16.15
1
sstarcher/helm-exporter:0.5.011769d01ba35
stdlib@go1.13.6
1.16.15
1
sstarcher/kube-ebs-tagger:0.1.01f8cae8cfa80
stdlib@go1.13.9
1.16.15
1
stakater/gitwebhookproxy:v0.2.79c1226e5270cd
stdlib@go1.13.1
1.16.15
1
stakater/tronador:v0.0.137ce9acf2722
stdlib@go1.15.11
1.16.15
1
stakater/whitelister:v0.0.1639107924063e
stdlib@go1.13.1
1.16.15
1
stakater/workshop-operator:v0.0.3897bf456cc97c
stdlib@go1.16.13
1.16.15
1
stashapp/stash:latest24dbd7607174
stdlib@go1.13.15
1.16.15
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
stdlib@go1.15.6
1.16.15
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.10ebcf7f033b54
stdlib@go1.13.4
1.16.15
1
subspacecommunity/subspace:1.5.0e2042b63fb35
stdlib@go1.14.6
1.16.15
1
superorbital/cludod:0.0.2-alphad59732f61d6e
stdlib@go1.17.6
1.16.15
1
surajwarbhe/grafana:v185248611e9f1
stdlib@go1.14.3
1.16.15
1
syncthing/syncthing:1.18.2966433161272
stdlib@go1.17
1.16.15
1
t3nde/tideways:1.7.2777e008f764db
stdlib@go1.16.4
1.16.15
1
tdengine/tdengine:3.0.2.24140a4021ddb
stdlib@go1.17.6
1.16.15
1
temporalio/admin-tools:1.15.135034611d981
stdlib@go1.17.6
1.16.15
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.