StackRadar

CVE-2022-29244

High

Advisory

Published 2 Jun 2022In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.039
90th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
72
of 17,781 indexed, latest versions
Container images
71
deployed by those charts
Fix available
1 of 2
affected packages

Packing does not respect root-level ignore files in workspaces

Carried by container images the latest versions of 72 of 17,781 indexed charts deploy, on 71 images.

Affected packageAffected versionsFixed inImages
npmnpm7.11.2, 7.13.0, 7.15.1, 7.17.0+16 more8.11.065
npmdeb3.5.2-0ubuntu4, 6.14.4+ds-1ubuntu2, 9.2.0~ds1-2no fix listed6
OSV records
GHSA-hj9c-8jmm-8c52UBUNTU-CVE-2022-29244

Charts affected

72 by stars
ChartLatestAffected imagesRadar Score
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
npm@7.19.1
8.11.0

Open the chart page →

5,287
eoloplantmca-eoloplaner0.1.01 of 7See more

eoloplant mca-eoloplaner 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
hugohg34/server:0.0.2503e5d8960ff
npm@8.5.5
8.11.0

Open the chart page →

29,588
MINTmint8.0.21 of 15See more

MINT mint 8.0.2

1 of the 15 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
mintproject/data-catalog:9be70359feabe03ed55bfdbf92c20a7e43ab928b67d2f2103085
npm@8.1.3
8.11.0

Open the chart page →

43,341
finance-portalmojaloop5.1.41 of 11See more

finance-portal mojaloop 5.1.4

1 of the 11 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
npm@8.5.5
8.11.0

Open the chart page →

14,809
reporting-hub-bop-api-svcmojaloop4.1.31 of 1See more

reporting-hub-bop-api-svc mojaloop 4.1.3

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
npm@8.5.5
8.11.0

Open the chart page →

1,661
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
npm@8.1.0
8.11.0

Open the chart page →

6,438
monopolymonopolypackage0.1.01 of 1See more

monopoly monopolypackage 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
gonzague/monopoly:latest70465995deea
npm@8.3.1
8.11.0

Open the chart page →

1,130
dashynas-helm-chartsVerified publisher1.0.41 of 1See more

dashy nas-helm-charts 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
lissy93/dashy:2.0.51991f7be5ed0
npm@8.1.2
8.11.0

Open the chart page →

3,269
smilencsaVerified publisher1.1.02 of 23See more

smile ncsa 1.1.0

2 of the 23 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
socialmediamacroscope/smile_graphql:0.3.1c5095e94bc65
npm@7.19.1
8.11.0
socialmediamacroscope/smile_server:0.3.31a528c794270
npm@7.19.1
8.11.0

Open the chart page →

109,294
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
npm@3.5.2-0ubuntu4
no fix listed

Open the chart page →

36,215
blockscoutparadeum-teamVerified publisher0.1.51 of 1See more

blockscout paradeum-team 0.1.5

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
quay.io/netwarps/blockscoutdigest-pinnedbecd3e39360a
npm@8.1.3
8.11.0

Open the chart page →

3,448
laravel-workerrenoki-co1.1.01 of 1See more

laravel-worker renoki-co 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
npm@7.17.0
8.11.0

Open the chart page →

5,687
wekanschmitzis1.1.11 of 1See more

wekan schmitzis 1.1.1

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
quay.io/wekan/wekan:v5.65cb17600883a3
npm@8.0.0
8.11.0

Open the chart page →

3,638
dashysergiotocaliniVerified publisher1.0.01 of 1See more

dashy sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
npm@8.1.2
8.11.0

Open the chart page →

3,143
pwssoketi0.2.41 of 1See more

pws soketi 0.2.4

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
npm@7.24.0
8.11.0

Open the chart page →

3,228
workshop-exercisestakaterVerified publisher0.0.2601 of 1See more

workshop-exercise stakater 0.0.260

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
stakater/workshop-exercise:0.0.26076926b7159d3
npm@8.5.0
8.11.0

Open the chart page →

992
grafanasvtech-public-helm-charts1.0.01 of 2See more

grafana svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
npm@6.14.4+ds-1ubuntu2
no fix listed

Open the chart page →

10,902
trudesktechpreta1.0.01 of 3See more

trudesk techpreta 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
polonel/trudesk:1.2.60cf6513f6fe3
npm@8.5.0
8.11.0

Open the chart page →

4,017
vehicle-dashboardtest-vehi-dash0.1.02 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
samajh/alprbackend:latestea742b4372ad
npm@8.5.0
8.11.0
samajh/alprfrontend:latest05ef4fddbb75
npm@8.5.0
8.11.0

Open the chart page →

20,270
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
npm@8.1.0
8.11.0

Open the chart page →

14,364
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
npm@8.1.0
8.11.0

Open the chart page →

28,605
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-29244.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
npm@8.1.2
8.11.0

Open the chart page →

3,118

Container images carrying it

71 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
shinobisystems/shinobi:dev3ca746937856
npm@7.20.1
8.11.0
1
shinobisystems/shinobi:latestc2f5ce2e1067
npm@7.17.0
8.11.0
1
socialmediamacroscope/smile_graphql:0.3.1c5095e94bc65
npm@7.19.1
8.11.0
1
socialmediamacroscope/smile_server:0.3.31a528c794270
npm@7.19.1
8.11.0
1
soulou2019/node-server:latest5e6ecfcc109e
npm@8.4.1
8.11.0
1
stakater/workshop-exercise:0.0.26076926b7159d3
npm@8.5.0
8.11.0
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
npm@6.14.4+ds-1ubuntu2
no fix listed
1
thelounge/thelounge:4.3.0-alpine0037aa258261
npm@8.3.1
8.11.0
1
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
npm@8.1.2
8.11.0
1
ghcr.io/advplyr/audiobookshelf:2.0.3140aed2752c3
npm@8.5.0
8.11.0
1
ghcr.io/aolde/lametric-nightscout-proxy:latest7d1951b6baf5
npm@7.24.2
8.11.0
1
ghcr.io/data-fair/simple-directory:438a4f32fad82
npm@8.1.2
8.11.0
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
npm@8.5.0
8.11.0
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
npm@7.19.1
8.11.0
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
npm@8.1.0
8.11.0
1
quay.io/netwarps/blockscoutbecd3e39360a
npm@8.1.3
8.11.0
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
npm@7.17.0
8.11.0
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
npm@7.17.0
8.11.0
1
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
npm@7.24.0
8.11.0
1
quay.io/wekan/wekan:v5.65cb17600883a3
npm@8.0.0
8.11.0
1
registry.gitlab.com/timvisee/send:v3.4.2047986cf6ef69
npm@8.1.2
8.11.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.