StackRadar

CVE-2022-28391

High

Advisory

Published 3 Apr 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.035
88th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
514
of 17,781 indexed, latest versions
Container images
535
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 514 of 17,781 indexed charts deploy, on 535 images.

Affected packageAffected versionsFixed inImages
busyboxapk1.31.1-r16, 1.31.1-r19, 1.31.1-r20, 1.31.1-r21+11 more1.31.1-r22, 1.32.1-r8, 1.33.1-r7, 1.34.1-r5535
OSV records
ALPINE-CVE-2022-28391

Charts affected

514 by stars
ChartLatestAffected imagesRadar Score
frpcwenerme1.0.11 of 1See more

frpc wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
wener/frpc:v0.37.0cc9fd4da44c0
busybox@1.33.1-r3
1.33.1-r7

Open the chart page →

3,359
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
longhornio/longhorn-ui:v1.2.3148598de4b7d
busybox@1.32.1-r7
1.32.1-r8

Open the chart page →

15,230
nats-account-serverwenerme0.8.11 of 1See more

nats-account-server wenerme 0.8.1

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
natsio/nats-account-server:1.0.0a3381560aab6
busybox@1.33.1-r2
1.33.1-r7

Open the chart page →

2,634
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
busybox@1.32.1-r2
1.32.1-r8

Open the chart page →

2,555
temporalwenerme0.15.12 of 13See more

temporal wenerme 0.15.1

2 of the 13 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.15.135034611d981
busybox@1.32.1-r7
1.32.1-r8
temporalio/server:1.15.1e26758f5a1bf
busybox@1.32.1-r7
1.32.1-r8

Open the chart page →

22,665
docker-hub-rate-limit-exporterwiremindVerified publisher0.3.01 of 1See more

docker-hub-rate-limit-exporter wiremind 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
viadee/docker-hub-rate-limit-exporter:version-1.52e27e3b3ee56
busybox@1.31.1-r19
1.31.1-r22

Open the chart page →

1,843
mrtg-backendwitcom-gmbh0.7.01 of 2See more

mrtg-backend witcom-gmbh 0.7.0

1 of the 2 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
busybox@1.34.1-r3
1.34.1-r5

Open the chart page →

2,616
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
busybox@1.32.1-r6
1.32.1-r8

Open the chart page →

2,643
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
busybox@1.33.1-r6
1.33.1-r7

Open the chart page →

2,534
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
busybox@1.34.1-r4
1.34.1-r5

Open the chart page →

1,752
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
busybox@1.31.1-r16
1.31.1-r22

Open the chart page →

1,198
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
busybox@1.31.1-r16
1.31.1-r22

Open the chart page →

3,023
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
edoburu/pgbouncer:1.12.0abc0a4123a81
busybox@1.32.1-r6
1.32.1-r8

Open the chart page →

3,697
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-28391.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
busybox@1.34.1-r3
1.34.1-r5

Open the chart page →

3,118

Container images carrying it

535 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
nocodb/nocodb:0.84.15f9b799933aa8
busybox@1.31.1-r21
1.31.1-r22
1
nodered/node-red:2.2.2e131dcadfe92
busybox@1.31.1-r21
1.31.1-r22
1
nonkronk/tristian-id:latest0a3694d70647
busybox@1.34.1-r3
1.34.1-r5
1
nyurik/alpine-python3-requests:lateste0553236e3eb
busybox@1.33.1-r2
1.33.1-r7
1
ohif/viewer:latestb4bfecdc7cc6
busybox@1.33.1-r3
1.33.1-r7
1
ohmyform/ohmyform:1.0.3afe53f4acdb1
busybox@1.34.1-r3
1.34.1-r5
1
olliai/exposecontroller:1.0.5a470d96525e4
busybox@1.32.1-r6
1.32.1-r8
1
olliai/k8s-replicator:1.3.05716f2a8bd4c
busybox@1.33.1-r3
1.33.1-r7
1
opencord/onos-classic-helm-utils:0.1.00d693ba85fd6
busybox@1.31.1-r20
1.31.1-r22
1
openebs/provisioner-nfs:0.11.04f41dd782761
busybox@1.31.1-r16
1.31.1-r22
1
openemr/openemr:6.1.089eaa6d9a4e3
busybox@1.34.1-r4
1.34.1-r5
1
openwhisk/invoker:1.0.0f5831ec85525
busybox@1.31.1-r19
1.31.1-r22
1
openzipkin/zipkin-dependencies:2.6.45ff2fa849a82
busybox@1.31.1-r19
1.31.1-r22
1
ovhplatform/what-is-my-pod:1.0.16d4d455e9aba
busybox@1.34.1-r3
1.34.1-r5
1
owncloud/ocis:1.7.0d2efcae92c84
busybox@1.32.1-r6
1.32.1-r8
1
oxheadalpha/tezos-k8s-utils:5.3.4d9faed45bf1c
busybox@1.33.1-r6
1.33.1-r7
1
pactfoundation/pact-broker:2.79.1.112861b0bd4d9
busybox@1.32.1-r6
1.32.1-r8
1
pawelmalak/flame:2.1.193e7b0abb603
busybox@1.33.1-r6
1.33.1-r7
1
pecan/data:1.7.257b399ea7422
busybox@1.33.1-r3
1.33.1-r7
1
phntom/keeweb:1.17.4-kix10c75ed6dd606
busybox@1.32.1-r3
1.32.1-r8
1
phntom/mindav:0.1.7-kix35695f546abbb
busybox@1.32.1-r3
1.32.1-r8
1
phntom/stocks-nasdaq-crawler:0.0.28d2b844700b57
busybox@1.31.1-r16
1.31.1-r22
1
pnnlmiscscripts/k8s-node-image:1.16.15-nginx-903b3fed5bdbc
busybox@1.32.1-r6
1.32.1-r8
1
pozetroninc/liftbridge:v1.1.079fd6b9d93e6
busybox@1.31.1-r16
1.31.1-r22
1
prompve/prometheus-pve-exporter:2.0.1ff6749eb03b0
busybox@1.31.1-r19
1.31.1-r22
1
pryorda/vmware_exporter:v0.18.3e0f5ba8b7856
busybox@1.34.1-r4
1.34.1-r5
1
pypiserver/pypiserver:v1.4.2c9250d3c418d
busybox@1.31.1-r16
1.31.1-r22
1
ralexstokes/eth2-fork-mon:latestc0d4bbefd31f
busybox@1.33.1-r3
1.33.1-r7
1
rancher/helm-controller:v0.11.9f18efbe9776e
busybox@1.33.1-r6
1.33.1-r7
1
rancher/local-path-provisioner:v0.0.1440cb8c984c17
busybox@1.31.1-r16
1.31.1-r22
1
rancher/local-path-provisioner:v0.0.20d5999b20a1b1
busybox@1.33.1-r2
1.33.1-r7
1
rancher/local-path-provisioner:v0.0.22e34c88ae0aff
busybox@1.34.1-r4
1.34.1-r5
1
rancher/pushprox-client:v0.1.0-rancher2-clienta41cd716c412
busybox@1.32.1-r6
1.32.1-r8
1
rancher/pushprox-proxy:v0.1.0-rancher2-proxy3126395b966c
busybox@1.32.1-r6
1.32.1-r8
1
rasooll/postfix:lateste731e21c3f67
busybox@1.31.1-r16
1.31.1-r22
1
rasooll/stunnel:5.56-r18c8ca63cb92e
busybox@1.31.1-r16
1.31.1-r22
1
rclone/rclone:1.57.01e6eeabddc01
busybox@1.33.1-r3
1.33.1-r7
1
rclone/rclone:1.56.0f2fc45c8bc57
busybox@1.33.1-r2
1.33.1-r7
1
redestroyder/authorization-service:0.0.1740364a619fd
busybox@1.34.1-r3
1.34.1-r5
1
redestroyder/business-service:0.0.1db03499a0726
busybox@1.34.1-r3
1.34.1-r5
1
reportportal/migrations:5.7.0da5d8e1395fe
busybox@1.34.1-r4
1.34.1-r5
1
rpardini/docker-registry-proxy:0.6.383d5f6a96682
busybox@1.31.1-r19
1.31.1-r22
1
runatlantis/atlantis:v0.16.145fbaf7e207c
busybox@1.31.1-r16
1.31.1-r22
1
saiakhil46/pizza-app:main-1ffbdf3dc39ce11e5d0
busybox@1.32.1-r6
1.32.1-r8
1
saiyato/snapserver:latest5d2dc80a84a1
busybox@1.34.1-r4
1.34.1-r5
1
scottcrossen/kube-node-labels:1.1.02e9aaf85b961
busybox@1.33.1-r2
1.33.1-r7
1
searx/searx:1.0.0-211-968b28993dbb3a6d9419
busybox@1.31.1-r20
1.31.1-r22
1
sentriz/gonic:v0.13.1a74012a6adf3
busybox@1.32.1-r6
1.32.1-r8
1
shlinkio/shlink:2.7.1c6729db1d3a8
busybox@1.32.1-r6
1.32.1-r8
1
slamdev/apache-hive:2.3.9-2.10.1b4b029c9b15f
busybox@1.33.1-r6
1.33.1-r7
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.