StackRadar

CVE-2022-27781

High

Advisory

Published 11 May 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.027
85th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
406
of 17,781 indexed, latest versions
Container images
313
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 406 of 17,781 indexed charts deploy, on 313 images.

Affected packageAffected versionsFixed inImages
curldeb7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16, 7.35.0-1ubuntu2.19+31 more7.35.0-1ubuntu2.20+esm11, 7.47.0-1ubuntu2.19+esm4, 7.58.0-2ubuntu3.18, 7.68.0-1ubuntu2.11199
curlapk7.74.0-r0, 7.74.0-r1, 7.76.1-r0, 7.77.0-r0+6 more7.79.1-r2, 7.80.0-r2114
OSV records
ALPINE-CVE-2022-27781UBUNTU-CVE-2022-27781
Also known as
USN-5412-1, USN-5499-1

Charts affected

406 by stars
ChartLatestAffected imagesRadar Score
frpcwenerme1.0.11 of 1See more

frpc wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-27781.

Container imageDigestPackageFixed in
wener/frpc:v0.37.0cc9fd4da44c0
curl@7.79.1-r0
7.79.1-r2

Open the chart page →

3,359
longhornwenerme1.2.32 of 2See more

longhorn wenerme 1.2.3

2 of the 2 container images this version deploys carry CVE-2022-27781.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.11
longhornio/longhorn-ui:v1.2.3148598de4b7d
curl@7.79.1-r0
7.79.1-r2

Open the chart page →

15,230
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-27781.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
curl@7.74.0-r0
7.79.1-r2

Open the chart page →

2,555
temporalwenerme0.15.12 of 13See more

temporal wenerme 0.15.1

2 of the 13 container images this version deploys carry CVE-2022-27781.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.15.135034611d981
curl@7.79.1-r0
7.79.1-r2
temporalio/server:1.15.1e26758f5a1bf
curl@7.79.1-r0
7.79.1-r2

Open the chart page →

22,665
workadventureworkadventure1.1.01 of 9See more

workadventure workadventure 1.1.0

1 of the 9 container images this version deploys carry CVE-2022-27781.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
curl@7.80.0-r1
7.80.0-r2

Open the chart page →

16,083
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-27781.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
curl@7.79.1-r0
7.79.1-r2

Open the chart page →

2,534

Container images carrying it

313 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
reportportal/migrations:5.7.0da5d8e1395fe
curl@7.80.0-r0
7.80.0-r2
1
resouer/redis-slave:v2e2f198b49ba7
curl@7.35.0-1ubuntu2.3
7.35.0-1ubuntu2.20+esm11
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.11
1
robotshop/rs-mongodb:latest119b545823cd
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.11
1
rundeck/rundeck:3.2.74d64fe56f767
curl@7.47.0-1ubuntu2.14
7.47.0-1ubuntu2.19+esm4
1
rundeck/rundeck:3.0.16b13e8059ad72
curl@7.47.0-1ubuntu2.11
7.47.0-1ubuntu2.19+esm4
1
saiakhil46/pizza-app:main-1ffbdf3dc39ce11e5d0
curl@7.76.1-r0
7.79.1-r2
1
scrapinghub/splash:3.4.1a5f89bc84606
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.18
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.11
1
seldonio/locust-core:0.81d0da98a2d76
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm4
1
shlinkio/shlink:2.7.1c6729db1d3a8
curl@7.76.1-r0
7.79.1-r2
1
sismics/docs:v1.10f4b0ef019cf1
curl@7.58.0-2ubuntu3.3
7.58.0-2ubuntu3.18
1
slagattollas/weatherservice-practica:latest68e7f56393fc
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.18
1
soulou2019/angular-nginx:latesta3970f97c215
curl@7.80.0-r0
7.80.0-r2
1
statcan/ckan:2.93921305425b8
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.11
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.11
1
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
curl@7.80.0-r1
7.80.0-r2
1
swaggerapi/swagger-ui:v4.12.00d7088d47928
curl@7.80.0-r1
7.80.0-r2
1
t3nde/matomo:4.3.1-fpm-alpine329ce194393a
curl@7.77.0-r1
7.79.1-r2
1
taemon1337/image-api:0.0.1247bc1dc4f07
curl@7.80.0-r0
7.80.0-r2
1
taemon1337/ingress-dashboard:0.0.10e8f5096c66bb
curl@7.80.0-r0
7.80.0-r2
1
taigaio/taiga-front:6.4.24d367b1e1250
curl@7.74.0-r0
7.79.1-r2
1
temporalio/admin-tools:1.15.135034611d981
curl@7.79.1-r0
7.79.1-r2
1
temporalio/server:1.15.1e26758f5a1bf
curl@7.79.1-r0
7.79.1-r2
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
curl@7.47.0-1ubuntu2.6
7.47.0-1ubuntu2.19+esm4
1
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
curl@7.80.0-r1
7.80.0-r2
1
timescale/timescaledb-postgis:latest-pg127758704d4a14
curl@7.76.1-r0
7.79.1-r2
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm4
1
tomsquest/docker-radicale:3.1.1.04759cc353a1d
curl@7.79.1-r0
7.79.1-r2
1
tpdock/freeradius:2.2.93da600c95a49
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm4
1
trafex/php-nginx:2.4.07282edfca2bf
curl@7.79.1-r0
7.79.1-r2
1
trafex/php-nginx:2.2.0ee0b7c6cce07
curl@7.79.1-r0
7.79.1-r2
1
vectorim/riot-web:v1.7.3384bb5af00b5d
curl@7.77.0-r1
7.79.1-r2
1
vitorbari/jwks-merge:v0.1.0fd3ccb820ada
curl@7.79.1-r0
7.79.1-r2
1
voltha/voltha-envoy:1.6.059ab2a00f712
curl@7.35.0-1ubuntu2.19
7.35.0-1ubuntu2.20+esm11
1
wavefronthq/proxy:9.2d1064d28f6eb
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.18
1
weetmuts/wmbusmeters:release-1.4.1-amd64a79967400c61
curl@7.78.0-r0
7.79.1-r2
1
wener/frpc:v0.37.0cc9fd4da44c0
curl@7.79.1-r0
7.79.1-r2
1
wener/frps:v0.37.05c92cc9e8597
curl@7.79.1-r0
7.79.1-r2
1
wener/samba:4.13.39a42bae466d4
curl@7.74.0-r0
7.79.1-r2
1
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.11
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.11
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.11
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.18
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
curl@7.47.0-1ubuntu2.2
7.47.0-1ubuntu2.19+esm4
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
curl@7.47.0-1ubuntu2.2
7.47.0-1ubuntu2.19+esm4
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm4
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.11
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm4
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.11
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.