StackRadar

CVE-2022-2880

Unscored

Advisory

Published 6 Oct 2022In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,275
of 17,787 indexed, latest versions
Container images
1,380
deployed by those charts
Fix available
1 of 1
affected package

Incorrect sanitization of forwarded query parameters in net/http/httputil

Carried by container images the latest versions of 1,275 of 17,787 indexed charts deploy, on 1,380 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+81 more1.18.71,380
OSV records
GO-2022-1038
Also known as
BIT-golang-2022-2880

Charts affected

1,275 by stars
ChartLatestAffected imagesRadar Score
discord-alertmanagerromholdings0.10.01 of 1See more

discord-alertmanager romholdings 0.10.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
quay.io/devtron/discord-alertmanager:ceceb475-65-35203586419ca31
stdlib@go1.18.1
1.18.7

Open the chart page →

951
kube-prometheus-stackromholdings19.3.03 of 6See more

kube-prometheus-stack romholdings 19.3.0

3 of the 6 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
grafana/grafana:8.2.500568d89c4f8
stdlib@go1.17
1.18.7
quay.io/prometheus-operator/prometheus-operator:v0.50.0ab4f480f2cc6
stdlib@go1.16
1.18.7
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
stdlib@go1.16.7
1.18.7

Open the chart page →

8,645
migration-incluster-cdromholdings0.10.01 of 1See more

migration-incluster-cd romholdings 0.10.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
stdlib@go1.18.2
1.18.7

Open the chart page →

3,891
securityromholdings0.2.21 of 1See more

security romholdings 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
stdlib@go1.16.10
1.18.7

Open the chart page →

2,435
operatorrookout0.0.201 of 2See more

operator rookout 0.0.20

1 of the 2 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
rookout/k8s-operator:latest0d083f3ef1a7
stdlib@go1.15.15
1.18.7

Open the chart page →

2,209
routehub-serverroutehub-helm1.0.11 of 3See more

routehub-server routehub-helm 1.0.1

1 of the 3 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
stdlib@go1.16.7
1.18.7

Open the chart page →

6,890
noderss30.7.21 of 3See more

node rss3 0.7.2

1 of the 3 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/redis:7.2.4-alpinec8bb255c3559
stdlib@go1.18.2
1.18.7

Open the chart page →

4,718
komgarubxkubeVerified publisher0.1.31 of 1See more

komga rubxkube 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
gotson/komga:1.26.36c2a967bbe9a
stdlib@go1.17.8
1.18.7

Open the chart page →

2,261
caddysagikazarmarkVerified publisher0.0.141 of 1See more

caddy sagikazarmark 0.0.14

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/caddy:2.4.5874405536b3e
stdlib@go1.17
1.18.7

Open the chart page →

2,960
fmtok8s-conference-chartsalaboy0.1.41 of 6See more

fmtok8s-conference-chart salaboy 0.1.4

1 of the 6 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
stdlib@go1.17.11
1.18.7

Open the chart page →

16,101
fmtok8s-email-servicesalaboy0.2.01 of 1See more

fmtok8s-email-service salaboy 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
ghcr.io/salaboy/fmtok8s-email-service:v0.2.0-nativeb52d5dbac2ca
stdlib@go1.17.11
1.18.7

Open the chart page →

2,890
hellowsamarthya2.0.01 of 1See more

hellow samarthya 2.0.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
samarthya/spinnaker:v1.0ef06d81036af
stdlib@go1.17.6
1.18.7

Open the chart page →

2,121
speedtestsantisbon0.1.01 of 3See more

speedtest santisbon 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
stdlib@go1.18.2
1.18.7

Open the chart page →

12,668
uptime-kumasarab97Verified publisher0.1.51 of 1See more

uptime-kuma sarab97 0.1.5

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.22.10b55bcb83a1c
stdlib@go1.18.1
1.18.7

Open the chart page →

4,744
mongodbsb-helm-charts0.4.01 of 1See more

mongodb sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/mongo:7.0.140032d2ca20db
stdlib@go1.18.2
1.18.7

Open the chart page →

4,055
mysqlsb-helm-charts0.4.01 of 1See more

mysql sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/mysql:8.4.3106d5197fd8e
stdlib@go1.18.2
1.18.7

Open the chart page →

1,096
redissb-helm-charts0.4.01 of 1See more

redis sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/redis:7.4.1-alpinec1e88455c852
stdlib@go1.18.2
1.18.7

Open the chart page →

1,324
ed-traefikscaleway-charts0.2.01 of 1See more

ed-traefik scaleway-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/traefik:v1.7.345d47b7bb2546
stdlib@go1.16.12
1.18.7

Open the chart page →

2,133
ed-traefik2scaleway-charts0.2.01 of 1See more

ed-traefik2 scaleway-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/traefik:2.5.62f603f8d3abe
stdlib@go1.17.5
1.18.7

Open the chart page →

3,160
scalyr-k8snode-managerscalyr-k8snode-managerVerified publisher0.1.71 of 1See more

scalyr-k8snode-manager scalyr-k8snode-manager 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
ghcr.io/dodevops/scalyr-k8snode-manager:latestfc39fcdd3968
stdlib@go1.18.1
1.18.7

Open the chart page →

2,150
cosischichtelVerified publisher0.1.01 of 1See more

cosi schichtel 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/objectstorage-controller:v20221027-v0.1.1-8-g300019fa84b574e8027
stdlib@go1.18.3
1.18.7

Open the chart page →

1,309
satisfactoryschichtelVerified publisher0.3.31 of 1See more

satisfactory schichtel 0.3.3

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.9464d11e36e10
stdlib@go1.18.1
1.18.7

Open the chart page →

3,525
unifi-protectschichtelVerified publisher0.10.11 of 1See more

unifi-protect schichtel 0.10.1

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
stdlib@go1.17
1.18.7

Open the chart page →

5,582
icinga2-masterschmitzis0.2.01 of 6See more

icinga2-master schmitzis 0.2.0

1 of the 6 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
grafana/grafana:8.0.3696823fbc561
stdlib@go1.16.1
1.18.7

Open the chart page →

3,731
version-checkerschmitzis0.2.21 of 1See more

version-checker schmitzis 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
stdlib@go1.15.2
1.18.7

Open the chart page →

3,023
openldapschoolguys-helmcharts0.1.31 of 1See more

openldap schoolguys-helmcharts 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.18.7

Open the chart page →

3,313
satisfactory-serverschoolguys-helmcharts0.1.81 of 1See more

satisfactory-server schoolguys-helmcharts 0.1.8

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
stdlib@go1.18.1
1.18.7

Open the chart page →

3,427
cernboxsciencebox0.0.41 of 6See more

cernbox sciencebox 0.0.4

1 of the 6 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
cs3org/revad:v1.19.03b57a34a7dfd
stdlib@go1.17.3
1.18.7

Open the chart page →

2,330
ldap-instance-configsciencebox0.0.11 of 1See more

ldap-instance-config sciencebox 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.18.7

Open the chart page →

3,313
centralbrainsciencemeshVerified publisher0.0.34 of 5See more

centralbrain sciencemesh 0.0.3

4 of the 5 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
grafana/grafana:7.3.315b977f5207d
stdlib@go1.15.1
1.18.7
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.18.7
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.18.7
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
stdlib@go1.15.3
1.18.7

Open the chart page →

9,754
searchpesearchpe4.1.01 of 2See more

searchpe searchpe 4.1.0

1 of the 2 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/postgres:13.703652c675ae1
stdlib@go1.16.7
1.18.7

Open the chart page →

2,637
secret-managersecret-managerVerified publisher1.0.01 of 4See more

secret-manager secret-manager 1.0.0

1 of the 4 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/mysql:9.0.192dc86967801
stdlib@go1.18.2
1.18.7

Open the chart page →

5,497
aws-secretssecretsprovider0.1.01 of 1See more

aws-secrets secretsprovider 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Open the chart page →

2,213
cloudflaredsectionmeVerified publisher2022.3.41 of 1See more

cloudflared sectionme 2022.3.4

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
quay.io/giantswarm/cloudflared:2022.3.40b20d2fe9a6b
stdlib@go1.17.1
1.18.7

Open the chart page →

2,407
influxdb_exportersectionmeVerified publisher0.0.21 of 1See more

influxdb_exporter sectionme 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
quay.io/prometheus/influxdb-exporter:v0.10.03854d8af7bd4
stdlib@go1.18.3
1.18.7

Open the chart page →

922
seldon-core-analyticsseldon1.17.14 of 8See more

seldon-core-analytics seldon 1.17.1

4 of the 8 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.18.7
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.18.7
prom/prometheus:v2.18.15880ec936055
stdlib@go1.14.2
1.18.7
prom/pushgateway:v1.0.1a5df60347882
stdlib@go1.13.5
1.18.7

Open the chart page →

10,733
backendsignalen4.24.02 of 4See more

backend signalen 4.24.0

2 of the 4 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
stdlib@go1.16.7
1.18.7
bitnamilegacy/rabbitmq:3.10.7-debian-11-r4cf93e2772250
stdlib@go1.16.7
1.18.7

Open the chart page →

11,636
alertmanagersignoz0.5.21 of 1See more

alertmanager signoz 0.5.2

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
signoz/alertmanager:0.5.07bc7de2e33c2
stdlib@go1.14
1.18.7

Open the chart page →

2,181
trilliansigstoreVerified publisher0.3.201See more

trillian sigstore 0.3.20

1 container image this version deploys carries CVE-2022-2880.

Container imageDigestPackageFixed in
gcr.io/trillian-opensource-ci/db_serverdigest-pinned2a685a38dd01
stdlib@go1.18.2
1.18.7

Open the chart page →

metrics-generatorsikalabs0.2.01 of 1See more

metrics-generator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
sikalabs/slu:v0.34.0fdc0c6711add
stdlib@go1.17.6
1.18.7

Open the chart page →

2,381
config-connector-templaterslamdev0.0.51 of 1See more

config-connector-templater slamdev 0.0.5

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
slamdev/config-connector-templater:0.0.3a234541c9fa8
stdlib@go1.16.5
1.18.7

Open the chart page →

2,110
flux-notifierslamdev0.0.71 of 1See more

flux-notifier slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
slamdev/flux-notifier:v0.0.8b173d809132d
stdlib@go1.13.11
1.18.7

Open the chart page →

2,015
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
stdlib@go1.17.9
1.18.7

Open the chart page →

9,196
gke-preemptible-notifierslamdev0.0.61 of 1See more

gke-preemptible-notifier slamdev 0.0.6

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
slamdev/gke-preemptible-notifier:v0.0.3d5d6430108a3
stdlib@go1.13.11
1.18.7

Open the chart page →

2,860
octavia-ingress-controllerslamdev0.0.71 of 1See more

octavia-ingress-controller slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
k8scloudprovider/octavia-ingress-controller:v1.20.26ddf80b34265
stdlib@go1.15
1.18.7

Open the chart page →

2,761
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
stdlib@go1.13.5
1.18.7

Open the chart page →

8,694
oi-slurm-cluster-chartslurm-cluster-chart0.25.11 of 4See more

oi-slurm-cluster-chart slurm-cluster-chart 0.25.1

1 of the 4 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/mariadb:10.10334b315c10e5
stdlib@go1.18.2
1.18.7

Open the chart page →

4,332
slurm-cluster-chartslurm-cluster-chart0.25.01 of 4See more

slurm-cluster-chart slurm-cluster-chart 0.25.0

1 of the 4 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
library/mariadb:10.10334b315c10e5
stdlib@go1.18.2
1.18.7

Open the chart page →

4,332
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
helga09/my_sql_shoes:v1.1.1a03657d97897
stdlib@go1.18.2
1.18.7

Open the chart page →

7,574
csi-gcs-softonic-factorysoftonic0.9.31 of 4See more

csi-gcs-softonic-factory softonic 0.9.3

1 of the 4 container images this version deploys carry CVE-2022-2880.

Container imageDigestPackageFixed in
ofekmeister/csi-gcs:v0.9.030d70fa9211b
stdlib@go1.18.2
1.18.7

Open the chart page →

1,842

Container images carrying it

1,380 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.18.7
22
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.7
14
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.18.7
11
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.18.7
10
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.18.7
8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.18.7
8
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.18.7
7
wurstmeister/kafka:latest2d4bbf9cc83d
stdlib@go1.17.10
1.18.7
7
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.18.7
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
stdlib@go1.18.2
1.18.7
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
stdlib@go1.16.6
1.18.7
6
quay.io/devtron/kubectl:latest2ad610626658
stdlib@go1.18.5
1.18.7
6
quay.io/devtron/postgres:14.91b594392f7cb
stdlib@go1.18.2
1.18.7
6
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
stdlib@go1.17.6
1.18.7
6
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.18.7
6
containous/whoami:latest:v1.5.07d6a3c8f9147
stdlib@go1.14
1.18.7
5
library/postgres:122f2a8c2a7d10
stdlib@go1.18.2
1.18.7
5
library/redis:7.4.2-alpine:7.4.2-alpine3.2102419de7eddf
stdlib@go1.18.2
1.18.7
5
library/redis:5:5.0fc5ecd863862
stdlib@go1.16.7
1.18.7
5
postgis/postgis:latest01a6a70e41e6
stdlib@go1.18.2
1.18.7
5
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.18.7
5
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.18.7
5
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.18.7
5
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
stdlib@go1.16.7
1.18.7
5
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.18.7
5
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.18.7
4
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.18.7
4
grafana/grafana:6.7.11ff3999e0fc0
stdlib@go1.13.4
1.18.7
4
grafana/loki:2.6.11ee60f980950
stdlib@go1.17.9
1.18.7
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.18.7
4
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.18.7
4
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.18.7
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
stdlib@go1.15.6
1.18.7
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.18.7
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.18.7
4
argoproj/argocd:v1.8.1830e86cacefd
stdlib@go1.14.12
1.18.7
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.18.7
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.18.7
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.18.7
3
dgraph/dgraph:v21.12.03b55ea83fffe
stdlib@go1.17.3
1.18.7
3
grafana/grafana:8.2.500568d89c4f8
stdlib@go1.17
1.18.7
3
grafana/promtail:2.4.2626900031c4e
stdlib@go1.17.2
1.18.7
3
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.18.7
3
library/postgres:15.7-alpine:15.7-alpine3.20468d34fefd63
stdlib@go1.18.2
1.18.7
3
library/postgres:115d2aa4a7b5f9
stdlib@go1.16.7
1.18.7
3
library/redis:7.2.4-alpinec8bb255c3559
stdlib@go1.18.2
1.18.7
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
stdlib@go1.15.7
1.18.7
3
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
stdlib@go1.13.11
1.18.7
3
prom/prometheus:v2.19.0bfad037f95e5
stdlib@go1.14.4
1.18.7
3
prom/pushgateway:v1.2.00a9031142481
stdlib@go1.13.8
1.18.7
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.