StackRadar

CVE-2022-27664

High

Advisory

Published 7 Sept 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.033
88th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,336
of 17,787 indexed, latest versions
Container images
1,465
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/net/http2 Denial of Service vulnerability

Carried by container images the latest versions of 1,336 of 17,787 indexed charts deploy, on 1,465 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+156 more0.0.0-20220906165146-f3363e06e74c1,043
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+78 more1.18.61,362
OSV records
GHSA-69cg-p879-7622GO-2022-0969
Also known as
BIT-golang-2022-27664

Charts affected

1,336 by stars
ChartLatestAffected imagesRadar Score
gatekeepermesosphere0.6.111 of 2See more

gatekeeper mesosphere 0.6.11

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
openpolicyagent/gatekeeper:v3.4.0-rc.1825370bdb3c3
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.16.2
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

3,034
kafka-operatormesosphere0.20.21 of 2See more

kafka-operator mesosphere 0.20.2

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/kafka-operator:v0.20.2e341aefa9a90
golang.org/x/net@v0.0.0-20211029224645-99673261e6eb
stdlib@go1.17.6
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

1,884
karmamesosphere1.3.01 of 1See more

karma mesosphere 1.3.0

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
lmierzwa/karma:v0.503751e5eed656
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13.4
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

2,111
kubeaddons-catalogmesosphere0.1.161 of 2See more

kubeaddons-catalog mesosphere 0.1.16

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15.2
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

12,049
kubefedmesosphere0.5.21 of 1See more

kubefed mesosphere 0.5.2

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
mesosphere/kubefed:proxyurl4fd8889195fe
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
stdlib@go1.15.3
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

3,144
kube-oidc-proxymesosphere0.3.41 of 1See more

kube-oidc-proxy mesosphere 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
quay.io/jetstack/kube-oidc-proxy:v0.3.0e045b26eb6df
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.14.1
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

3,144
kudomesosphere0.1.41 of 1See more

kudo mesosphere 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
kudobuilder/controller:v0.9.069072d979708
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

5,688
local-path-provisionermesosphere0.0.221 of 1See more

local-path-provisioner mesosphere 0.0.22

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.22e34c88ae0aff
golang.org/x/net@v0.0.0-20201021035429-f5854403a974
stdlib@go1.16.15
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

2,317
nfs-server-provisionermesosphere0.6.11 of 1See more

nfs-server-provisioner mesosphere 0.6.1

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/net@v0.0.0-20190812203447-cdfb69ac37fc
stdlib@go1.13.4
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

2,806
nvidiamesosphere0.4.41 of 2See more

nvidia mesosphere 0.4.4

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
nvidia/dcgm-exporter:2.2.9-2.4.1-ubuntu20.0491b20b66d1cd
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.14.2
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

10,478
prometheus-operatormesosphere12.11.133 of 8See more

prometheus-operator mesosphere 12.11.13

3 of the 8 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
jettech/kube-webhook-certgen:v1.5.0fb7c2cd46ccf
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15.3
0.0.0-20220906165146-f3363e06e74c
1.18.6
quay.io/prometheus-operator/prometheus-operator:v0.44.0983627001c89
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
stdlib@go1.14.12
0.0.0-20220906165146-f3363e06e74c
1.18.6
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
stdlib@go1.14.4
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

11,690
traefik2mesosphere9.18.01 of 1See more

traefik2 mesosphere 9.18.0

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
library/traefik:2.4.8eda951fd29a8
golang.org/x/net@v0.0.0-20210220033124-5f55cee0dc0d
stdlib@go1.16.2
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

3,341
azuredisk-csi-drivermesosphere-stable0.8.16 of 6See more

azuredisk-csi-driver mesosphere-stable 0.8.1

6 of the 6 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
mcr.microsoft.com/k8s/csi/azuredisk-csi:v1.1.1ec1803037ed9
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
mcr.microsoft.com/oss/kubernetes-csi/csi-attacher:v2.2.0f55f30876129
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
stdlib@go1.14
0.0.0-20220906165146-f3363e06e74c
1.18.6
mcr.microsoft.com/oss/kubernetes-csi/csi-node-driver-registrar:v2.0.1fc5d14e9f26f
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15
0.0.0-20220906165146-f3363e06e74c
1.18.6
mcr.microsoft.com/oss/kubernetes-csi/csi-provisioner:v1.6.1667b1b1ea1e4
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
stdlib@go1.15.2
0.0.0-20220906165146-f3363e06e74c
1.18.6
mcr.microsoft.com/oss/kubernetes-csi/csi-resizer:v1.1.07997e0f236bc
golang.org/x/net@v0.0.0-20201216054612-986b41b23924
stdlib@go1.15.2
0.0.0-20220906165146-f3363e06e74c
1.18.6
mcr.microsoft.com/oss/kubernetes-csi/livenessprobe:v2.2.0b7d82802cca8
golang.org/x/net@v0.0.0-20201216054612-986b41b23924
stdlib@go1.15.6
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

14,067
gatekeepermesosphere-stable0.6.111 of 2See more

gatekeeper mesosphere-stable 0.6.11

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
openpolicyagent/gatekeeper:v3.4.0-rc.1825370bdb3c3
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.16.2
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

3,034
gcpdisk-csi-drivermesosphere-stable0.7.31 of 7See more

gcpdisk-csi-driver mesosphere-stable 0.7.3

1 of the 7 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
golang.org/x/net@v0.0.0-20180301190904-22ae77b79946
stdlib@go1.13.3
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

3,605
karmamesosphere-stable2.0.31 of 1See more

karma mesosphere-stable 2.0.3

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
lmierzwa/karma:v0.70d417abe7ddb5
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15.2
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

1,966
kommandermesosphere-stable0.39.219 of 29See more

kommander mesosphere-stable 0.39.2

19 of the 29 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
grafana/grafana:6.6.0052147d7e0ec
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.6
mesosphere/karma:v0.55-d2iq-proxy4693bb4e0814
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13.7
0.0.0-20220906165146-f3363e06e74c
1.18.6
mesosphere/kommander-federation-authorizedlister:v0.21.263bc411b930b
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.14.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
mesosphere/kommander-federation-controller-manager:v0.21.2b036785a8862
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.14.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
mesosphere/kommander-federation-utility-apiserver:v0.21.2f9b769c65e24
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.14.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
mesosphere/kommander-federation-webhook:v0.21.294af41b6dd9a
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.14.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
mesosphere/kommander-licensing-controller-manager:v0.21.28e18bbe407f7
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
stdlib@go1.14.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
mesosphere/kommander-licensing-webhook:v0.21.2265edcd2a1ca
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
stdlib@go1.14.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
mesosphere/kubeaddons-addon-initializer:v0.2.8c10011f866f2
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
stdlib@go1.13.8
0.0.0-20220906165146-f3363e06e74c
1.18.6
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15.2
0.0.0-20220906165146-f3363e06e74c
1.18.6
prom/prometheus:v2.19.2cd134bd4fca0
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
stdlib@go1.14.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
thanosio/thanos:v0.19.088276fcd1491
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.15.10
0.0.0-20220906165146-f3363e06e74c
1.18.6
thanosio/thanos:v0.15.0b12d5c31bf5a
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.14.2
0.0.0-20220906165146-f3363e06e74c
1.18.6
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.16.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
golang.org/x/net@v0.0.0-20190311183353-d8887717615a
stdlib@go1.16.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
quay.io/kubernetes-multicluster/kubefed:v0.7.06d56f69b15a3
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.3
0.0.0-20220906165146-f3363e06e74c
1.18.6
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
stdlib@go1.14.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
quay.io/thanos/thanos:v0.17.1e362f02ed304
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
stdlib@go1.15
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

68,330
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-addon-initializer:v0.2.09f863160127b
golang.org/x/net@v0.0.0-20190613194153-d28f0bde5980
stdlib@go1.13.7
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

7,027
cortexmetakube0.6.01 of 2See more

cortex metakube 0.6.0

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
quay.io/cortexproject/cortex:v1.9.05d1c2cf4c538
golang.org/x/net@v0.0.0-20210324051636-2c4c8ecb7826
stdlib@go1.16.3
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

4,107
istio-operatormetakube1.12.01 of 1See more

istio-operator metakube 1.12.0

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
istio/operator:1.12.06cfce8a071b9
golang.org/x/net@v0.0.0-20211020060615-d418f374d309
stdlib@go1.17.3
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

8,940
wg-access-servermglants0.4.71 of 1See more

wg-access-server mglants 0.4.7

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
place1/wg-access-server:v0.4.62b2f3ea80ed6
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.13.8
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

2,745
gogsmhio0.9.21 of 2See more

gogs mhio 0.9.2

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
gogs/gogs:0.12.1420d53bb7277
golang.org/x/net@v0.0.0-20191014212845-da9a3fd4c582
stdlib@go1.14.7
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

3,230
postgresmicroboxlabs0.3.01 of 1See more

postgres microboxlabs 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
library/postgres:16.6557fea37a744
stdlib@go1.18.2
1.18.6

Open the chart page →

3,699
middleware-odigosmiddleware-labsVerified publisher0.2.413 of 6See more

middleware-odigos middleware-labs 0.2.41

3 of the 6 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/odigos-autoscaler:middleware-test-0.0.14aac0389614e4
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.0.0-20220906165146-f3363e06e74c
ghcr.io/middleware-labs/odigos-instrumentor:middleware-test-0.0.104ae1fc698a5
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.0.0-20220906165146-f3363e06e74c
ghcr.io/middleware-labs/odigos-scheduler:middleware-test-0.0.109741c86aee7
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.0.0-20220906165146-f3363e06e74c

Open the chart page →

8,370
middleware-visionmiddleware-labsVerified publisher0.2.653 of 6See more

middleware-vision middleware-labs 0.2.65

3 of the 6 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/vision-autoscaler:middleware-test-0.0.231f7f89bc6585
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.0.0-20220906165146-f3363e06e74c
ghcr.io/middleware-labs/vision-instrumentor:middleware-test-0.0.4dfa5907170c4
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.0.0-20220906165146-f3363e06e74c
ghcr.io/middleware-labs/vision-scheduler:middleware-test-0.0.33609a075c825
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.0.0-20220906165146-f3363e06e74c

Open the chart page →

8,361
sshportalmidokura-communityVerified publisher0.1.41 of 2See more

sshportal midokura-community 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
moul/sshportal:v1.19.3332b603727c3
stdlib@go1.17.6
1.18.6

Open the chart page →

2,338
pulsarv2milvus-helm2.7.82 of 4See more

pulsarv2 milvus-helm 2.7.8

2 of the 4 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
prom/prometheus:v2.17.242d2395cd719
golang.org/x/net@v0.0.0-20200301022130-244492dfa37a
stdlib@go1.13.10
0.0.0-20220906165146-f3363e06e74c
1.18.6
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.10ebcf7f033b54
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13.4
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

15,855
zkapps-dashboardminaVerified publisher0.1.21 of 2See more

zkapps-dashboard mina 0.1.2

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
library/postgres:12-alpine7c8f48705831
stdlib@go1.18.2
1.18.6

Open the chart page →

1,524
minio-operatorminio-operator4.3.71 of 2See more

minio-operator minio-operator 4.3.7

1 of the 2 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
golang.org/x/net@v0.0.0-20210421230115-4e50805a0758
stdlib@go1.17.4
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

6,085
cert-manager-webhook-duckdnsmmontesVerified publisher1.2.31 of 1See more

cert-manager-webhook-duckdns mmontes 1.2.3

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ebrianne/cert-manager-webhook-duckdns:v1.2.39cd17700c9ec
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.15.13
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

2,847
cockroachdb-operatormmontesVerified publisher0.1.01 of 1See more

cockroachdb-operator mmontes 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
cockroachdb/cockroach-operator:v2.1.0983312754620
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
stdlib@go1.13.14
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

7,775
echoperatormmontesVerified publisher0.0.21 of 1See more

echoperator mmontes 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ghcr.io/mmontes11/echoperator:v0.0.4a544a71c6e3b
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.18.3
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

1,826
mariadbmmontesVerified publisher0.3.01 of 1See more

mariadb mmontes 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
library/mariadb:10.7.307e06f2e7ae9
stdlib@go1.16.7
1.18.6

Open the chart page →

10,109
mongodbmmontesVerified publisher0.5.01 of 1See more

mongodb mmontes 0.5.0

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
library/mongo:4.4.1305678ae4e5e1
stdlib@go1.16.7
1.18.6

Open the chart page →

7,148
basic-git-servermoikot0.0.21 of 1See more

basic-git-server moikot 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
moikot/basic-git-server:0.0.20d941bd30ffa
stdlib@go1.14.9
1.18.6

Open the chart page →

2,954
corednsmoikot1.13.31 of 1See more

coredns moikot 1.13.3

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
coredns/coredns:1.7.073ca82b4ce82
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
stdlib@go1.14.4
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

2,547
smartthings-metricsmoikot0.1.01 of 1See more

smartthings-metrics moikot 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
moikot/smartthings-metrics:0.1.08625f53aa9b7
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
stdlib@go1.14.13
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

1,744
smartthings-metrics-feat-log-detailsmoikot0.0.921 of 1See more

smartthings-metrics-feat-log-details moikot 0.0.92

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
moikot/smartthings-metrics:feat-log-detailsfb8565140106
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
stdlib@go1.14.15
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

1,732
backendmojaloop0.1.03 of 6See more

backend mojaloop 0.1.0

3 of the 6 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:2.8.1-debian-11-r7b6e381ffd6ae
stdlib@go1.18.2
1.18.6
bitnamilegacy/kafka-exporter-archived:1.3.2e527fbf75dce
golang.org/x/net@v0.0.0-20210726213435-c6fcb2dbf985
stdlib@go1.17
0.0.0-20220906165146-f3363e06e74c
1.18.6
bitnamilegacy/mysqld-exporter:0.13.0a7e14cc919cb
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.16.4
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

16,111
reporting-nifi-processor-svcmojaloop0.0.21 of 3See more

reporting-nifi-processor-svc mojaloop 0.0.2

1 of the 3 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
library/mongo:6.0.271a63fc2438e
stdlib@go1.17.10
1.18.6

Open the chart page →

6,220
camera-viewermoreillonVerified publisher0.2.11 of 4See more

camera-viewer moreillon 0.2.1

1 of the 4 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.18.6

Open the chart page →

11,694
face-recognitionmoreillonVerified publisher0.2.41 of 3See more

face-recognition moreillon 0.2.4

1 of the 3 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.18.6

Open the chart page →

8,556
mqtt-loggermoreillonVerified publisher0.3.12 of 5See more

mqtt-logger moreillon 0.3.1

2 of the 5 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
golang.org/x/net@v0.0.0-20220617184016-355a448f1bc9
stdlib@go1.18.2
0.0.0-20220906165146-f3363e06e74c
1.18.6
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.18.6

Open the chart page →

10,998
hcloud-csi-drivermorremeyer3.0.05 of 6See more

hcloud-csi-driver morremeyer 3.0.0

5 of the 6 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.1.008721106b949
stdlib@go1.19
1.18.6
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.7.04a4cae5118c4
stdlib@go1.19
1.18.6
registry.k8s.io/sig-storage/csi-provisioner:v3.4.0e468dddcd275
stdlib@go1.19
1.18.6
registry.k8s.io/sig-storage/csi-resizer:v1.7.03a7bdf5d1057
stdlib@go1.19
1.18.6
registry.k8s.io/sig-storage/livenessprobe:v2.9.02b10b24dafdc
stdlib@go1.19
1.18.6

Open the chart page →

7,145
chirpstackmosquitto-helm-chart0.5.02 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

2 of the 8 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
chirpstack/chirpstack-application-server:3fb7667fe037f
golang.org/x/net@v0.0.0-20220726230323-06994584191e
0.0.0-20220906165146-f3363e06e74c
oliver006/redis_exporter:v1.14.0d55e056987af
stdlib@go1.15.6
1.18.6

Open the chart page →

25,989
chirpstack-event-forwardmosquitto-helm-chart0.1.21 of 1See more

chirpstack-event-forward mosquitto-helm-chart 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/chirpstack-event-forward:v0.1.223dc6274cc4b
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
stdlib@go1.17.10
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

1,854
replacermosquitto-helm-chart0.2.02 of 3See more

replacer mosquitto-helm-chart 0.2.0

2 of the 3 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/replacer:v1.1.00b2a41c2a43e
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.17.7
0.0.0-20220906165146-f3363e06e74c
1.18.6
ghcr.io/liangyuanpeng/waitfor:v1.0.0ca5a98cbed32
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.17.7
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

3,931
configmapsecretsmozilla0.0.11 of 1See more

configmapsecrets mozilla 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
mzinc/configmapsecret-controller:v0.5.1eebbcbf2d1f7
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.16.1
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

2,109
devops-demomungari-development-charts1.0.41 of 4See more

devops-demo mungari-development-charts 1.0.4

1 of the 4 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
stdlib@go1.18.4
1.18.6

Open the chart page →

8,946
approuvezmvisonneau0.1.11 of 1See more

approuvez mvisonneau 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-27664.

Container imageDigestPackageFixed in
ghcr.io/mvisonneau/approuvez:v0.1.0441da62e6cb3
golang.org/x/net@v0.0.0-20190311183353-d8887717615a
stdlib@go1.15.6
0.0.0-20220906165146-f3363e06e74c
1.18.6

Open the chart page →

1,971

Container images carrying it

1,465 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.18.6
22
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.6
14
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.18.6
11
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.18.6
10
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
stdlib@go1.16.9
0.0.0-20220906165146-f3363e06e74c
1.18.6
8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
stdlib@go1.14.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
8
osixia/openldap:1.5.018742e9c449c
golang.org/x/net@v0.0.0-20201010224723-4f7140c49acb
stdlib@go1.15.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
7
wurstmeister/kafka:latest2d4bbf9cc83d
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
stdlib@go1.17.10
0.0.0-20220906165146-f3363e06e74c
1.18.6
7
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.14.3
0.0.0-20220906165146-f3363e06e74c
1.18.6
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.18.2
0.0.0-20220906165146-f3363e06e74c
1.18.6
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/net@v0.0.0-20210503060351-7fd8e65b6420
stdlib@go1.16.6
0.0.0-20220906165146-f3363e06e74c
1.18.6
6
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
6
quay.io/devtron/postgres:14.91b594392f7cb
stdlib@go1.18.2
1.18.6
6
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
stdlib@go1.17.6
0.0.0-20220906165146-f3363e06e74c
1.18.6
6
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
stdlib@go1.14.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
6
containous/whoami:latest:v1.5.07d6a3c8f9147
stdlib@go1.14
1.18.6
5
library/postgres:122f2a8c2a7d10
stdlib@go1.18.2
1.18.6
5
library/redis:7.4.2-alpine:7.4.2-alpine3.2102419de7eddf
stdlib@go1.18.2
1.18.6
5
library/redis:5:5.0fc5ecd863862
stdlib@go1.16.7
1.18.6
5
postgis/postgis:latest01a6a70e41e6
stdlib@go1.18.2
1.18.6
5
prom/alertmanager:v0.20.07e4e9f7a0954
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
stdlib@go1.13.5
0.0.0-20220906165146-f3363e06e74c
1.18.6
5
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
stdlib@go1.13.1
0.0.0-20220906165146-f3363e06e74c
1.18.6
5
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
golang.org/x/net@v0.0.0-20180301190904-22ae77b79946
stdlib@go1.13.3
0.0.0-20220906165146-f3363e06e74c
1.18.6
5
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/net@v0.0.0-20210726213435-c6fcb2dbf985
stdlib@go1.16.7
0.0.0-20220906165146-f3363e06e74c
1.18.6
5
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
stdlib@go1.16.2
0.0.0-20220906165146-f3363e06e74c
1.18.6
5
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1
stdlib@go1.16
0.0.0-20220906165146-f3363e06e74c
1.18.6
4
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
stdlib@go1.16
0.0.0-20220906165146-f3363e06e74c
1.18.6
4
grafana/grafana:6.7.11ff3999e0fc0
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13.4
0.0.0-20220906165146-f3363e06e74c
1.18.6
4
grafana/loki:2.6.11ee60f980950
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.17.9
0.0.0-20220906165146-f3363e06e74c
1.18.6
4
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.0.0-20220906165146-f3363e06e74c
4
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.0.0-20220906165146-f3363e06e74c
4
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.0.0-20220906165146-f3363e06e74c
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.18.6
4
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.18.6
4
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.18.6
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
stdlib@go1.15.6
1.18.6
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.0.0-20220906165146-f3363e06e74c
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.9
0.0.0-20220906165146-f3363e06e74c
1.18.6
4
alfhou/hammond:v0.0.24c85dc0293aa1
golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1
0.0.0-20220906165146-f3363e06e74c
3
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/net@v0.0.0-20201024042810-be3efd7ff127
stdlib@go1.14.12
0.0.0-20220906165146-f3363e06e74c
1.18.6
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.18.6
3
ciscolabs/rtsp-server:latestb59fc10bb821
golang.org/x/net@v0.0.0-20220526153639-5463443f8c37
0.0.0-20220906165146-f3363e06e74c
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
stdlib@go1.16
0.0.0-20220906165146-f3363e06e74c
1.18.6
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
golang.org/x/net@v0.0.0-20201209123823-ac852fbbde11
stdlib@go1.15
0.0.0-20220906165146-f3363e06e74c
1.18.6
3
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/net@v0.0.0-20201021035429-f5854403a974
stdlib@go1.17.3
0.0.0-20220906165146-f3363e06e74c
1.18.6
3
grafana/grafana:8.2.500568d89c4f8
golang.org/x/net@v0.0.0-20210726213435-c6fcb2dbf985
stdlib@go1.17
0.0.0-20220906165146-f3363e06e74c
1.18.6
3
grafana/promtail:2.4.2626900031c4e
golang.org/x/net@v0.0.0-20211101193420-4a448f8816b3
stdlib@go1.17.2
0.0.0-20220906165146-f3363e06e74c
1.18.6
3
groundnuty/k8s-wait-for:v2.0c14d7271e401
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.0.0-20220906165146-f3363e06e74c
3
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.18.6
3
library/postgres:15.7-alpine:15.7-alpine3.20468d34fefd63
stdlib@go1.18.2
1.18.6
3

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.