StackRadar

CVE-2022-25881

High

Advisory

Published 31 Jan 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
355
of 17,790 indexed, latest versions
Container images
352
deployed by those charts
Fix available
1 of 1
affected package

http-cache-semantics vulnerable to Regular Expression Denial of Service

Carried by container images the latest versions of 355 of 17,790 indexed charts deploy, on 352 images.

Affected packageAffected versionsFixed inImages
http-cache-semanticsnpm3.7.3, 3.8.0, 3.8.1, 4.0.3+1 more4.1.1352
OSV records
GHSA-rc47-6667-2j5j

Charts affected

355 by stars
ChartLatestAffected imagesRadar Score
sendgeek-cookbookVerified publisher1.2.21 of 1See more

send geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
registry.gitlab.com/timvisee/send:v3.4.2047986cf6ef69
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

1,148
tdarrgeek-cookbookVerified publisher4.6.21 of 2See more

tdarr geek-cookbook 4.6.2

1 of the 2 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.00.101e3f9328327d
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

31,185
uptime-kumageek-cookbookVerified publisher1.4.21 of 1See more

uptime-kuma geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.17.1a4eab252e5a2
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

5,086
uptimerobotgeek-cookbookVerified publisher3.0.41 of 1See more

uptimerobot geek-cookbook 3.0.4

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
billimek/node-influx-uptimerobot:latest5814f0bcf5ba
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

1,669
youtubedl-materialgeek-cookbookVerified publisher4.4.21 of 1See more

youtubedl-material geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.23720b856bd2f
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

4,410
zigbee2mqttgeek-cookbookVerified publisher9.4.21 of 1See more

zigbee2mqtt geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

2,173
openprojecthomeenterpriseinc0.5.01 of 1See more

openproject homeenterpriseinc 0.5.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
openproject/community:12.0.2734743d11094
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

6,811
pdc-portali4trustVerified publisher2.3.21 of 1See more

pdc-portal i4trust 2.3.2

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
i4trust/pdc-portal:2.0.03e77858e1219
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

2,723
elasticinseefrlab2.2.01 of 2See more

elastic inseefrlab 2.2.0

1 of the 2 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
library/kibana:7.17.3e2e2031c15be
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

17,372
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

3,376
dashykrzwiatrzyk1.0.01 of 1See more

dashy krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

3,143
lifecycle-jira-integrationlifecycle-jira-integration1.0.01 of 1See more

lifecycle-jira-integration lifecycle-jira-integration 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
anoopnair/lifecycle-jira-integration:latestd80c73a6089d
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

927
jspolicyloftVerified publisher0.2.21 of 1See more

jspolicy loft 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
loftsh/jspolicy:0.2.225deb9bd2683
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

2,309
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.12 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

2 of the 6 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
http-cache-semantics@3.8.1
4.1.1
fjvela/urjc-fjvela-server:1.0.53c840aebce22
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

19,195
tristian-idnonkronk0.1.31 of 1See more

tristian-id nonkronk 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
nonkronk/tristian-id:latest0a3694d70647
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

1,105
open-api-discoveryopen-api-discoveryVerified publisher0.1.11 of 1See more

open-api-discovery open-api-discovery 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
lukasreining/open-api-schema-collector:0.1.050e021c42e33
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

2,474
pdf-editor-helmpdf-editor-web1.0.01 of 4See more

pdf-editor-helm pdf-editor-web 1.0.0

1 of the 4 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
dipugodocker/pdf-editor:1.0-frontendd431c37fe1cd
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

4,206
camophntom0.1.11 of 1See more

camo phntom 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
phntom/camo:2.3.1a9b1304d6c71
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

1,217
laravel-octanerenoki-co1.0.01 of 1See more

laravel-octane renoki-co 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
quay.io/renokico/laravel-helm-demo:octane-0.6.0cad83090c58f
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

3,634
flamerlex0.3.01 of 1See more

flame rlex 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
pawelmalak/flame:2.1.193e7b0abb603
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

2,449
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

6,921
statsdstatsd-airflow-smd0.1.191 of 1See more

statsd statsd-airflow-smd 0.1.19

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
statsd/statsd:v0.8.6dab129e74c25
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

4,185
ackeesudaVerified publisher0.2.11 of 1See more

ackee suda 0.2.1

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
electerious/ackee:3.2.05e7173fa321c
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

1,602
testhubteshubVerified publisher0.1.41 of 3See more

testhub teshub 0.1.4

1 of the 3 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
testhubio/testhub-frontend:on-preme86c2db53be8
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

7,517
taigaunxwaresVerified publisher2026.3.81 of 6See more

taiga unxwares 2026.3.8

1 of the 6 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
taigaio/taiga-events:latest92fc0822564f
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

9,193
prerenderutkuozdemirVerified publisher1.1.21 of 1See more

prerender utkuozdemir 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
tvanro/prerender-alpine:6.4.06909015f0328
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

2,660
restreamerutkuozdemirVerified publisher1.1.01 of 1See more

restreamer utkuozdemir 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
datarhei/restreamer:0.6.4655e12f9eeed
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

2,598
tdarrvhdirkVerified publisher5.0.51 of 2See more

tdarr vhdirk 5.0.5

1 of the 2 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

26,848
scrapoxywiremindVerified publisher0.3.41 of 1See more

scrapoxy wiremind 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
wiremind/scrapoxy:lateste7048929a676
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

2,154
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

9,835
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-webui:v2.2.2fda21b0a0344
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

25,531
admin-portaladmin-web-portal1.2.11 of 2See more

admin-portal admin-web-portal 1.2.1

1 of the 2 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
soulou2019/node-server:latest5e6ecfcc109e
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

3,419
allure-docker-helm-chartallure-service-chartVerified publisher0.1.01 of 2See more

allure-docker-helm-chart allure-service-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service-ui:latest4ebd8b4ef340
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

3,691
openhab-cloudandibraeuVerified publisher1.2.61 of 1See more

openhab-cloud andibraeu 1.2.6

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
openhab/openhab-cloud:a8138a329dd2bac8c4b
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

3,437
angular-chartangular-application0.1.01 of 1See more

angular-chart angular-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
ibarreche/cloud-front-ci:latestc8970ac1c8dc
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

3,237
angular-node-chartangular-webapp2.0.01 of 1See more

angular-node-chart angular-webapp 2.0.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
rakii8585/angular-node-webapp:latest026082a515ac
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

2,616
lametric-nightscout-proxyaolde0.1.01 of 1See more

lametric-nightscout-proxy aolde 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
ghcr.io/aolde/lametric-nightscout-proxy:latest7d1951b6baf5
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

1,186
apimap-developerapimapOfficialVerified publisher1.4.11 of 1See more

apimap-developer apimap 1.4.1

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
apimap/developer:v1.3.1406d3858e20c
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

2,353
apimap-portalapimapOfficialVerified publisher2.4.01 of 1See more

apimap-portal apimap 2.4.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
apimap/portal:v2.4.0041a4790c65c
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

2,396
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-external-service:1.0.02a68e9ac7f09
http-cache-semantics@3.8.1
4.1.1
davidvmar/urjc-davidvmar-server:1.0.05663f5b24615
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

19,788
app-movies-seriesapp-movies-seriesVerified publisher0.1.01 of 2See more

app-movies-series app-movies-series 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
felipecs8/app-movies-series:v14e51693fcdf5
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

3,167
mongo-uiappscodeVerified publisher2026.3.301 of 1See more

mongo-ui appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
ghcr.io/kubedb/mongo-gui:latestee0354b7a57a
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

912
trifidappuio2.0.21 of 1See more

trifid appuio 2.0.2

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
zazuko/trifid:2.3.7054be137de70
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

2,784
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
http-cache-semantics@4.1.0
4.1.1

Open the chart page →

23,425
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
http-cache-semantics@3.8.0
4.1.1
hyperledger/fabric-couchdb:0.4.15f6c724592abf
http-cache-semantics@3.8.0
4.1.1

Open the chart page →

77,883
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
http-cache-semantics@3.8.0
4.1.1
hyperledger/fabric-couchdb:0.4.15f6c724592abf
http-cache-semantics@3.8.0
4.1.1

Open the chart page →

77,883
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:api-latest7473d77448e1
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

9,411
monitoring-notifyingassist-iot-monitoring-notifying0.1.01 of 1See more

monitoring-notifying assist-iot-monitoring-notifying 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
assistiot/monitoring_notifying:2.0.068324d0fa5bb
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

1,677
openapiassist-iot-open-api-management0.2.22 of 6See more

openapi assist-iot-open-api-management 0.2.2

2 of the 6 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
assistiot/open_api_frontend:1.0.1f11d82defc70
http-cache-semantics@3.8.1
4.1.1
pantsel/konga:latestc8172b75607d
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

18,357
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2022-25881.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_cluster:latest4f41e1defe99
http-cache-semantics@4.1.0
4.1.1
assistiot/smart-orchestrator_enabler:latest89f37e88c871
http-cache-semantics@3.8.1
4.1.1
assistiot/smart-orchestrator_repository:latesta8b8dbed04a4
http-cache-semantics@3.8.1
4.1.1

Open the chart page →

45,656

Container images carrying it

352 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/infinitydon/registry/open5gs-webui:v2.2.2fda21b0a0344
http-cache-semantics@3.8.1
4.1.1
1
registry.gitlab.com/timvisee/send:v3.4.2047986cf6ef69
http-cache-semantics@4.1.0
4.1.1
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.