StackRadar

CVE-2022-28111

Critical

Advisory

Published 5 May 2022In the index since 6 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.017
76th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
6
of 17,781 indexed, latest versions
Container images
3
deployed by those charts
Fix available
1 of 1
affected package

MyBatis PageHelper vulnerable to time-blind SQL injection via orderBy parameter

Carried by container images the latest versions of 6 of 17,781 indexed charts deploy, on 3 images.

Affected packageAffected versionsFixed inImages
pagehelpermaven5.1.2, 5.1.3, 5.3.05.3.13
OSV records
GHSA-w559-623p-vfg8

Charts affected

6 by stars
ChartLatestAffected imagesRadar Score
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2022-28111.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
pagehelper@5.3.0
5.3.1

Open the chart page →

13,486
pulsarcnieg1.0.81 of 2See more

pulsar cnieg 1.0.8

1 of the 2 container images this version deploys carry CVE-2022-28111.

Container imageDigestPackageFixed in
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
pagehelper@5.1.3
5.3.1

Open the chart page →

16,860
shenyuerdeng2.4.211 of 2See more

shenyu erdeng 2.4.21

1 of the 2 container images this version deploys carry CVE-2022-28111.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
pagehelper@5.1.2
5.3.1

Open the chart page →

12,513
pulsarv2milvus-helm2.7.81 of 4See more

pulsarv2 milvus-helm 2.7.8

1 of the 4 container images this version deploys carry CVE-2022-28111.

Container imageDigestPackageFixed in
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
pagehelper@5.1.3
5.3.1

Open the chart page →

15,855
shenyushenyu-helm-chart-test2.4.271 of 2See more

shenyu shenyu-helm-chart-test 2.4.27

1 of the 2 container images this version deploys carry CVE-2022-28111.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
pagehelper@5.1.2
5.3.1

Open the chart page →

12,513
shenyutest-helm2.4.211 of 2See more

shenyu test-helm 2.4.21

1 of the 2 container images this version deploys carry CVE-2022-28111.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
pagehelper@5.1.2
5.3.1

Open the chart page →

12,513

Container images carrying it

3 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
apache/shenyu-admin:2.4.2e8b7c4ddd069
pagehelper@5.1.2
5.3.1
3
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
pagehelper@5.1.3
5.3.1
2
ghcr.io/star-whale/server:0.6.158368359c8dd0
pagehelper@5.3.0
5.3.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.