StackRadar

CVE-2022-28391

High

Advisory

Published 3 Apr 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.035
88th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
514
of 17,781 indexed, latest versions
Container images
535
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 514 of 17,781 indexed charts deploy, on 535 images.

Affected packageAffected versionsFixed inImages
busyboxapk1.31.1-r16, 1.31.1-r19, 1.31.1-r20, 1.31.1-r21+11 more1.31.1-r22, 1.32.1-r8, 1.33.1-r7, 1.34.1-r5535
OSV records
ALPINE-CVE-2022-28391

Charts affected

514 by stars
ChartLatestAffected imagesRadar Score
frpcwenerme1.0.11 of 1See more

frpc wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
wener/frpc:v0.37.0cc9fd4da44c0
busybox@1.33.1-r3
1.33.1-r7

Open the chart page →

3,359
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
longhornio/longhorn-ui:v1.2.3148598de4b7d
busybox@1.32.1-r7
1.32.1-r8

Open the chart page →

15,230
nats-account-serverwenerme0.8.11 of 1See more

nats-account-server wenerme 0.8.1

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
natsio/nats-account-server:1.0.0a3381560aab6
busybox@1.33.1-r2
1.33.1-r7

Open the chart page →

2,634
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
busybox@1.32.1-r2
1.32.1-r8

Open the chart page →

2,555
temporalwenerme0.15.12 of 13See more

temporal wenerme 0.15.1

2 of the 13 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.15.135034611d981
busybox@1.32.1-r7
1.32.1-r8
temporalio/server:1.15.1e26758f5a1bf
busybox@1.32.1-r7
1.32.1-r8

Open the chart page →

22,665
docker-hub-rate-limit-exporterwiremindVerified publisher0.3.01 of 1See more

docker-hub-rate-limit-exporter wiremind 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
viadee/docker-hub-rate-limit-exporter:version-1.52e27e3b3ee56
busybox@1.31.1-r19
1.31.1-r22

Open the chart page →

1,843
mrtg-backendwitcom-gmbh0.7.01 of 2See more

mrtg-backend witcom-gmbh 0.7.0

1 of the 2 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
busybox@1.34.1-r3
1.34.1-r5

Open the chart page →

2,616
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
busybox@1.32.1-r6
1.32.1-r8

Open the chart page →

2,643
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
busybox@1.33.1-r6
1.33.1-r7

Open the chart page →

2,534
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
busybox@1.34.1-r4
1.34.1-r5

Open the chart page →

1,752
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
busybox@1.31.1-r16
1.31.1-r22

Open the chart page →

1,198
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
busybox@1.31.1-r16
1.31.1-r22

Open the chart page →

3,023
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
edoburu/pgbouncer:1.12.0abc0a4123a81
busybox@1.32.1-r6
1.32.1-r8

Open the chart page →

3,697
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
busybox@1.34.1-r3
1.34.1-r5

Open the chart page →

3,118

Container images carrying it

535 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
foomo/pagespeed_exporter:2.1.2b21330d692e3
busybox@1.31.1-r16
1.31.1-r22
1
foxcpp/maddy:v0.5.28fa2bd8f6830
busybox@1.33.1-r3
1.33.1-r7
1
gabekangas/owncast:0.0.797461aedb580
busybox@1.31.1-r16
1.31.1-r22
1
garugaru/presto-loadbalancer:v0.1.589d66d117029
busybox@1.31.1-r16
1.31.1-r22
1
gitea/gitea:1.13.0d5ab14cd29af
busybox@1.31.1-r19
1.31.1-r22
1
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
busybox@1.31.1-r16
1.31.1-r22
1
gluufederation/opendj:4.3.0_011a1128b28b95
busybox@1.33.1-r3
1.33.1-r7
1
gmelillo/bind9:latesteeb2f9371b71
busybox@1.31.1-r19
1.31.1-r22
1
gmelillo/nginx:2021-01-091b30f79cf7ea
busybox@1.31.1-r19
1.31.1-r22
1
gmelillo/openvpn:2021-01-09ce075bfc98a8
busybox@1.31.1-r19
1.31.1-r22
1
gmelillo/registry:0.1.8c599d608a2f7
busybox@1.34.1-r3
1.34.1-r5
1
gocrane/craned:v0.5.1a1400909118c
busybox@1.32.1-r6
1.32.1-r8
1
gocrane/crane-scheduler:0.0.239ba6d11b2079
busybox@1.32.1-r6
1.32.1-r8
1
gocrane/crane-scheduler-controller:0.1.23a2d7e60576f9
busybox@1.32.1-r6
1.32.1-r8
1
golenski/fibonacci-front:2.0.048cfd60b8413
busybox@1.31.1-r16
1.31.1-r22
1
gonzague/monopoly:latest70465995deea
busybox@1.34.1-r3
1.34.1-r5
1
goofball222/pritunl:1.30.3070.5943c0743701d4
busybox@1.34.1-r3
1.34.1-r5
1
grafana/grafana:7.5.609bb407e26ab
busybox@1.31.1-r20
1.31.1-r22
1
grafana/grafana:7.3.315b977f5207d
busybox@1.31.1-r19
1.31.1-r22
1
grafana/grafana:8.0.3696823fbc561
busybox@1.32.1-r6
1.32.1-r8
1
grafana/grafana:7.3.46d42886b3ebe
busybox@1.31.1-r19
1.31.1-r22
1
grafana/grafana:7.2.1733842cca5bd
busybox@1.31.1-r16
1.31.1-r22
1
grafana/grafana:8.3.5cd7cb4345aa7
busybox@1.34.1-r3
1.34.1-r5
1
grafana/grafana:8.3.4cf81d2c753c8
busybox@1.34.1-r3
1.34.1-r5
1
grafana/grafana:7.4.5d322192ed2fa
busybox@1.31.1-r19
1.31.1-r22
1
grafana/kubernetes-diff-logger:0.0.598f6d1cd1e25
busybox@1.33.1-r2
1.33.1-r7
1
grafana/logcli:main-c90366d-amd643d85bb66e39b
busybox@1.32.1-r6
1.32.1-r8
1
grafana/loki:2.4.2b3af8ead67d7
busybox@1.32.1-r7
1.32.1-r8
1
grafana/mimir:2.0.080c1a8eb24dd
busybox@1.34.1-r3
1.34.1-r5
1
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
busybox@1.31.1-r16
1.31.1-r22
1
gtato/demo-multiclus-model:1.0.032c4cb24c407
busybox@1.33.1-r6
1.33.1-r7
1
gtato/demo-multiclus-registrator:1.0.09a744588fab3
busybox@1.31.1-r21
1.31.1-r22
1
gtato/demo-multiclus-registry:1.0.02df5174f3cfd
busybox@1.31.1-r21
1.31.1-r22
1
gtsopour/awscli-kubectl:latest7983cf0505cf
busybox@1.34.1-r3
1.34.1-r5
1
hashicorp/boundary:0.8.1fb70bd9210ff
busybox@1.32.1-r6
1.32.1-r8
1
hashicorp/vault:1.8.4dfc3500beb0e
busybox@1.33.1-r3
1.33.1-r7
1
hashicorp/vault-k8s:0.6.05697b85bc69a
busybox@1.31.1-r16
1.31.1-r22
1
hashicorp/vault-k8s:0.14.0aff47b5ba39c
busybox@1.33.1-r3
1.33.1-r7
1
hbahadorzadeh/cert-manager-webhook-arvan:latestbf9756b3bc47
busybox@1.31.1-r19
1.31.1-r22
1
hcguersoy/cleanreg:v0.8.063b76fdcfbe1
busybox@1.34.1-r3
1.34.1-r5
1
hetznercloud/hcloud-csi-driver:1.6.01475d525f9a4
busybox@1.32.1-r6
1.32.1-r8
1
hetznercloud/hcloud-csi-driver:1.5.141dce5b33644
busybox@1.31.1-r16
1.31.1-r22
1
hmdmph/redis-pod-labeler:1.0.0-alpine7f1381fe0f3b
busybox@1.31.1-r16
1.31.1-r22
1
hyperledger/fabric-ca:1.5.1c7f3422ec1d5
busybox@1.32.1-r6
1.32.1-r8
1
hyperledger/fabric-ca:1.5.0f270dfeee91d
busybox@1.32.1-r3
1.32.1-r8
1
hyperledger/fabric-orderer:2.2.137294e05209b
busybox@1.31.1-r16
1.31.1-r22
1
hyperledger/fabric-peer:2.2.1bf4995c86af6
busybox@1.31.1-r16
1.31.1-r22
1
ibarreche/cloud-reporting-ci:latest1f45af91da6a
busybox@1.34.1-r3
1.34.1-r5
1
inbucket/inbucket:3.0.01f10a0efea69
busybox@1.33.1-r3
1.33.1-r7
1
instrumentisto/coturn:4.56c25f154177c
busybox@1.31.1-r19
1.31.1-r22
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.