StackRadar

CVE-2022-27191

High

Advisory

Published 19 Mar 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.039
90th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
730
of 17,781 indexed, latest versions
Container images
759
deployed by those charts
Fix available
1 of 1
affected package

golang.org/x/crypto/ssh Denial of service via crafted Signer

Carried by container images the latest versions of 730 of 17,781 indexed charts deploy, on 759 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+82 more0.0.0-20220314234659-1baeb1ce4c0b759
OSV records
GHSA-8c26-wmh5-6g9v
Also known as
GO-2021-0356

Charts affected

730 by stars
ChartLatestAffected imagesRadar Score
cluster-registrycluster-registry-controller0.2.121 of 1See more

cluster-registry cluster-registry-controller 0.2.12

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/cisco-open/cluster-registry-controller:v0.2.12937eff91df1e
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

1,707
listmonkdeliveryheroVerified publisher0.1.121 of 1See more

listmonk deliveryhero 0.1.12

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
listmonk/listmonk:v2.1.0d2eac77ddfad
golang.org/x/crypto@v0.0.0-20211202192323-5770296d904e
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,537
imagepullsecret-patcherempathyco1.0.01 of 1See more

imagepullsecret-patcher empathyco 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
quay.io/titansoft/imagepullsecret-patcher:v0.1421e6d6a155dc
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,271
blockygeek-cookbookVerified publisher10.5.21 of 1See more

blocky geek-cookbook 10.5.2

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
golang.org/x/crypto@v0.0.0-20211209193657-4570a0811e8b
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,030
mealiegeek-cookbookVerified publisher5.1.21 of 2See more

mealie geek-cookbook 5.1.2

1 of the 2 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
golang.org/x/crypto@v0.0.0-20210915214749-c084706c2272
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

7,579
multusgeek-cookbookVerified publisher3.5.21 of 3See more

multus geek-cookbook 3.5.2

1 of the 3 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v3.7.1e72aa733faf2
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

4,906
signal-cli-rest-apigeek-cookbookVerified publisher1.2.21 of 1See more

signal-cli-rest-api geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

10,154
statpinggeek-cookbookVerified publisher6.2.01 of 2See more

statping geek-cookbook 6.2.0

1 of the 2 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,371
syncthinggeek-cookbookVerified publisher3.5.21 of 1See more

syncthing geek-cookbook 3.5.2

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
syncthing/syncthing:1.18.2966433161272
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,610
traefik-forward-authgeek-cookbookVerified publisher2.2.21 of 1See more

traefik-forward-auth geek-cookbook 2.2.2

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:2.2.0e875194d67e2
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,234
gitvotegitvoteVerified publisher1.5.01 of 6See more

gitvote gitvote 1.5.0

1 of the 6 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/cncf/gitvote/dbmigrator:v1.5.0f1e7efe440da
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

5,613
frpc-ingressinfinity-server0.4.11 of 1See more

frpc-ingress infinity-server 0.4.1

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
springhack/frpc_ingress:latest4aceb821da88
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,622
coreinstill-aiOfficialVerified publisher0.1.751 of 15See more

core instill-ai 0.1.75

1 of the 15 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
library/influxdb:2.3.0-alpined7f5dd5f70e2
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

30,816
jenkins-operatorjenkins0.8.11 of 1See more

jenkins-operator jenkins 0.8.1

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
quay.io/jenkins-kubernetes-operator/operator:v0.8.171cb50263c3b
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,211
skywalkingkubesphere-testVerified publisher3.1.02 of 4See more

skywalking kubesphere-test 3.1.0

2 of the 4 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.1.0-es7641237e0299b
golang.org/x/crypto@v0.0.0-20191122220453-ac88ee75c92c
0.0.0-20220314234659-1baeb1ce4c0b
apache/skywalking-ui:8.1.067d50e4deff4
golang.org/x/crypto@v0.0.0-20191122220453-ac88ee75c92c
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

18,042
rclonemglants2.3.41 of 1See more

rclone mglants 2.3.4

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
rclone/rclone:1.57.01e6eeabddc01
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,743
move2kubemove2kube0.3.151 of 1See more

move2kube move2kube 0.3.15

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,793
keycloak-operatornewsaktuell0.1.71 of 1See more

keycloak-operator newsaktuell 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

5,067
oesopsmxVerified publisher4.0.323 of 25See more

oes opsmx 4.0.32

3 of the 25 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
golang.org/x/crypto@v0.0.0-20201012173705-84dcc777aaee
0.0.0-20220314234659-1baeb1ce4c0b
minio/minio:RELEASE.2020-12-03T05-49-24Z053f103f4894
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.0.0-20220314234659-1baeb1ce4c0b
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

107,811
kube-prometheus-stackprometheus-worawutchan12.8.04 of 6See more

kube-prometheus-stack prometheus-worawutchan 12.8.0

4 of the 6 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
grafana/grafana:7.2.1733842cca5bd
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.0.0-20220314234659-1baeb1ce4c0b
jettech/kube-webhook-certgen:v1.5.0fb7c2cd46ccf
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
quay.io/prometheus-operator/prometheus-operator:v0.44.0983627001c89
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220314234659-1baeb1ce4c0b
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

12,125
nfs-server-provisionerraphaelVerified publisher1.3.01 of 1See more

nfs-server-provisioner raphael 1.3.0

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,730
knative-servingsoftonic3.0.05 of 5See more

knative-serving softonic 3.0.0

5 of the 5 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhookdigest-pinned873b968f02b5
golang.org/x/crypto@v0.0.0-20200323165209-0ec3e9974c59
0.0.0-20220314234659-1baeb1ce4c0b
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinneda5de0fb75046
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.0.0-20220314234659-1baeb1ce4c0b
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned2ef460356b17
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.0.0-20220314234659-1baeb1ce4c0b
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned30ce73388ae5
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.0.0-20220314234659-1baeb1ce4c0b
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedf16c0e022203
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

12,502
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
streamnative/pulsar_vault_init:v1.0.731533fa9fab7
golang.org/x/crypto@v0.0.0-20220208050332-20e1d8d225ab
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

15,477
maeshtraefikOfficialVerified publisher2.1.21 of 7See more

maesh traefik 2.1.2

1 of the 7 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
containous/maesh:v1.3.2587162516502
golang.org/x/crypto@v0.0.0-20200317142112-1b76d66859c6
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

4,136
traefik-meshtraefikOfficialVerified publisher4.1.12 of 7See more

traefik-mesh traefik 4.1.1

2 of the 7 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.18db45c07f2e1b
golang.org/x/crypto@v0.0.0-20200214034016-1d94cc7ab1c6
0.0.0-20220314234659-1baeb1ce4c0b
library/traefik:v2.57d5a6ae66572
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

9,257
gethvulcanlink1.10.231 of 1See more

geth vulcanlink 1.10.23

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.23cce21b423165
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,245
minio-operatorwenerme4.3.71 of 2See more

minio-operator wenerme 4.3.7

1 of the 2 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
golang.org/x/crypto@v0.0.0-20210421170649-83a5a9bb288b
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

6,085
wharf-helmwharf-helmOfficialVerified publisher3.2.61 of 5See more

wharf-helm wharf-helm 3.2.6

1 of the 5 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

10,032
keycloak-operatorwiremindVerified publisher0.0.141 of 1See more

keycloak-operator wiremind 0.0.14

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

4,714
soft-servealphani-helm-chartsVerified publisher0.4.01 of 1See more

soft-serve alphani-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
charmcli/soft-serve:v0.4.039523c1a6ba8
golang.org/x/crypto@v0.0.0-20220307211146-efcb8507fb70
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,119
smockerandrcunsVerified publisher0.0.41 of 1See more

smocker andrcuns 0.0.4

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
andrcuns/smocker:0.18.5b4a8eb20581a
golang.org/x/crypto@v0.0.0-20220307211146-efcb8507fb70
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,173
upcloud-csiankra-chartsVerified publisher0.4.01 of 8See more

upcloud-csi ankra-charts 0.4.0

1 of the 8 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

14,917
stash-enterpriseappscodeVerified publisher0.42.01 of 4See more

stash-enterprise appscode 0.42.0

1 of the 4 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,620
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

5,222
cert-exporterarzu3.0.11 of 1See more

cert-exporter arzu 3.0.1

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
joeelliott/cert-exporter:v2.7.0b4acd14642d0
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,819
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

10,730
dltbrokerassist-iot-distributed-broker0.2.03 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

3 of the 9 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.0.0-20220314234659-1baeb1ce4c0b
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.0.0-20220314234659-1baeb1ce4c0b
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.03 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

3 of the 9 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.0.0-20220314234659-1baeb1ce4c0b
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.0.0-20220314234659-1baeb1ce4c0b
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

77,687
cso-proxyav1o-chartsVerified publisher0.1.31 of 1See more

cso-proxy av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

4,292
dex-k8sav1o-chartsVerified publisher0.2.11 of 1See more

dex-k8s av1o-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,391
kube-image-webhookav1o-chartsVerified publisher0.1.31 of 1See more

kube-image-webhook av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,723
db-backupballe-petersen0.1.41 of 1See more

db-backup balle-petersen 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
tobiasbp/db-backup:0.0.314bee6e33a26
golang.org/x/crypto@v0.0.0-20200109152110-61a87790db17
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

4,814
chirpstackbeeinventor0.1.101 of 5See more

chirpstack beeinventor 0.1.10

1 of the 5 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
chirpstack/chirpstack-application-server:3.17.6e0b23dfd24d6
golang.org/x/crypto@v0.0.0-20200709230013-948cd5f35899
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

7,807
cloudflare-tunnel-operatorbeezlabs0.2.01 of 1See more

cloudflare-tunnel-operator beezlabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/beezlabs-org/cloudflare-tunnel-operator:v0.1.09afcd070940f
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

1,595
brpservicebrpservice1.1.01 of 4See more

brpservice brpservice 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

7,830
agentbuildkite0.6.41 of 1See more

agent buildkite 0.6.4

1 of the 1 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
buildkite/agent:3.25.0aec38cfaae0e
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

2,663
fluxcd-webuiccowleyVerified publisher0.0.21 of 2See more

fluxcd-webui ccowley 0.0.2

1 of the 2 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
adrianberger/fluxcd-webui:latest76848c0d2780
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,509
cloudbees-sidecar-injectorcloudbees2.3.32 of 2See more

cloudbees-sidecar-injector cloudbees 2.3.3

2 of the 2 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
cloudbees/cert-requester:2.3.31d44fb4f799b
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
cloudbees/sidecar-injector:2.3.38f102ef0383a
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

3,268
cloudflow-enterprise-componentscloudflow-helm-charts0.0.0-NIGHTLY011220201 of 9See more

cloudflow-enterprise-components cloudflow-helm-charts 0.0.0-NIGHTLY01122020

1 of the 9 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
prom/prometheus:v2.21.0d43417c260e5
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

4,256
cnpg-sandboxcloudnative-pgVerified publisher0.6.11 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

1 of the 6 container images this version deploys carry CVE-2022-27191.

Container imageDigestPackageFixed in
grafana/grafana:8.3.5cd7cb4345aa7
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220314234659-1baeb1ce4c0b

Open the chart page →

7,583

Container images carrying it

759 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20220314234659-1baeb1ce4c0b
2
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.0.0-20220314234659-1baeb1ce4c0b
2
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
csiplugin/csi-qingcloud:v1.4.00766163dc046
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.0.0-20220314234659-1baeb1ce4c0b
2
datawire/aes:1.14.48588eafe6862
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.0.0-20220314234659-1baeb1ce4c0b
2
drone/drone-runner-kube:1.0.0-rc.34359bf2bb3dc
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220314234659-1baeb1ce4c0b
2
governify/dashboard:lateste83a17ba5038
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220314234659-1baeb1ce4c0b
2
grafana/agent-operator:v0.25.1a136c6208aa3
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.0.0-20220314234659-1baeb1ce4c0b
2
grafana/grafana:8.5.042d3e6bc1865
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220314234659-1baeb1ce4c0b
2
grafana/grafana:7.3.5511bc20bfcd1
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.0.0-20220314234659-1baeb1ce4c0b
2
grafana/loki:1.5.0922b3f412fdd
golang.org/x/crypto@v0.0.0-20191112222119-e1110fd1c708
0.0.0-20220314234659-1baeb1ce4c0b
2
grafana/loki:2.5.0f9ef133793af
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.0.0-20220314234659-1baeb1ce4c0b
2
grafana/promtail:1.5.046e88d390cd6
golang.org/x/crypto@v0.0.0-20191112222119-e1110fd1c708
0.0.0-20220314234659-1baeb1ce4c0b
2
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220314234659-1baeb1ce4c0b
2
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.0.0-20220314234659-1baeb1ce4c0b
2
honestica/kube-iptables-tailer:master-91a393242fb939
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
iomesh/csi-provisioner:v3.0.0f9508460b273
golang.org/x/crypto@v0.0.0-20210317152858-513c2a44f670
0.0.0-20220314234659-1baeb1ce4c0b
2
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.0.0-20220314234659-1baeb1ce4c0b
2
iomesh/node-disk-exporter:1.8.0f03148764f38
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220314234659-1baeb1ce4c0b
2
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.0.0-20220314234659-1baeb1ce4c0b
2
jaegertracing/all-in-one:1.3104d224a9999b
golang.org/x/crypto@v0.0.0-20210920023735-84f357641f63
0.0.0-20220314234659-1baeb1ce4c0b
2
jettech/kube-webhook-certgen:v1.2.1c42098c8d855
golang.org/x/crypto@v0.0.0-20181203042331-505ab145d0a9
0.0.0-20220314234659-1baeb1ce4c0b
2
jettech/kube-webhook-certgen:v1.5.0fb7c2cd46ccf
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
kubernetesui/dashboard:v2.2.0148991563e37
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220314234659-1baeb1ce4c0b
2
library/traefik:v2.57d5a6ae66572
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220314234659-1baeb1ce4c0b
2
listmonk/listmonk:v2.1.0d2eac77ddfad
golang.org/x/crypto@v0.0.0-20211202192323-5770296d904e
0.0.0-20220314234659-1baeb1ce4c0b
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
golang.org/x/crypto@v0.0.0-20201012173705-84dcc777aaee
0.0.0-20220314234659-1baeb1ce4c0b
2
minio/operator:v4.3.754393e03f3b2
golang.org/x/crypto@v0.0.0-20210421170649-83a5a9bb288b
0.0.0-20220314234659-1baeb1ce4c0b
2
natsio/nats-account-server:1.0.0a3381560aab6
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220314234659-1baeb1ce4c0b
2
natsio/nats-box:0.11.09fbf7bf684e4
golang.org/x/crypto@v0.0.0-20200323165209-0ec3e9974c59
0.0.0-20220314234659-1baeb1ce4c0b
2
openpolicyagent/gatekeeper:v3.4.0-rc.1825370bdb3c3
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
osixia/openldap:1.4.0ccd95cc6e61e
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20220314234659-1baeb1ce4c0b
2
phntom/kochi:1.1.33b82358bd56e
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
place1/wg-access-server:v0.4.62b2f3ea80ed6
golang.org/x/crypto@v0.0.0-20200709230013-948cd5f35899
0.0.0-20220314234659-1baeb1ce4c0b
2
prom/blackbox-exporter:v0.18.01ffc3f109eb3
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20220314234659-1baeb1ce4c0b
2
prom/prometheus:v2.17.242d2395cd719
golang.org/x/crypto@v0.0.0-20191206172530-e9b2fee46413
0.0.0-20220314234659-1baeb1ce4c0b
2
prom/prometheus:v2.21.0d43417c260e5
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
squareup/ghostunnel:v1.5.270f4cf270425
golang.org/x/crypto@v0.0.0-20191002192127-34f69633bfdc
0.0.0-20220314234659-1baeb1ce4c0b
2
statping/statping:v0.90.74e874da513a5c
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
thesisrobot/loop:v0.11.1-beta89ae07e787ca
golang.org/x/crypto@v0.0.0-20200709230013-948cd5f35899
0.0.0-20220314234659-1baeb1ce4c0b
2
thesisrobot/pool:v0.3.3-alpha2d1c388a4bda
golang.org/x/crypto@v0.0.0-20200709230013-948cd5f35899
0.0.0-20220314234659-1baeb1ce4c0b
2
thomasnyambati/labelsmanager-controller:1.0.0148ae3f99fea
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20220314234659-1baeb1ce4c0b
2
voltha/voltha-rw-core:3.4.87a325316fe59
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220314234659-1baeb1ce4c0b
2
weblate/weblate:4.2.2-169c160d37a3c
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20220314234659-1baeb1ce4c0b
2
xelalex/dregsy:0.4.3574054e1c417
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.0.0-20220314234659-1baeb1ce4c0b
2
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20220314234659-1baeb1ce4c0b
2
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220314234659-1baeb1ce4c0b
2
ghcr.io/chaos-mesh/chaos-coredns:v0.2.838bfdf5e3774
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220314234659-1baeb1ce4c0b
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.