StackRadar

CVE-2022-29824

High

Advisory

Published 3 May 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.038
89th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
656
of 17,787 indexed, latest versions
Container images
574
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libxml2 security update

Carried by container images the latest versions of 656 of 17,787 indexed charts deploy, on 574 images.

Affected packageAffected versionsFixed inImages
libxml2rpm2.9.7-5.el8, 2.9.7-7.el8, 2.9.7-8.el8, 2.9.7-9.el8+4 more0:2.9.7-13.el8_6.1, 2.9.14-1.171
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+23 more2.9.1+dfsg1-3ubuntu4.13+esm3, 2.9.3+dfsg1-1ubuntu0.7+esm2, 2.9.4+dfsg1-2.2+deb9u7, 2.9.4+dfsg1-6.1ubuntu1.6+4 more359
libxml2apk2.9.10-r4, 2.9.10-r5, 2.9.10-r6, 2.9.10-r7+4 more2.9.14-r0144
OSV records
RHSA-2022:5317ALPINE-CVE-2022-29824UBUNTU-CVE-2022-29824DLA-3012-1DSA-5142-1openSUSE-SU-2024:12043-1
Also known as
USN-5422-1

Charts affected

656 by stars
ChartLatestAffected imagesRadar Score
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
libxml2@2.9.12-r1
2.9.14-r0

Open the chart page →

2,534
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4

Open the chart page →

1,138

Container images carrying it

574 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
pecan/db:latest9a1cdc3a9ccb
libxml2@2.9.12-r2
2.9.14-r0
2
privatebin/pdo:1.3.500466418121c
libxml2@2.9.13-r0
2.9.14-r0
2
radondb/pgpool:4.2.2-debian-10-r1801ef77b5b87
libxml2@2.9.4+dfsg1-7+deb10u1
2.9.4+dfsg1-7+deb10u4
2
radondb/postgresql-repmgr:11.11.0-debian-r1bcfb7f67c6f5
libxml2@2.9.4+dfsg1-7+deb10u1
2.9.4+dfsg1-7+deb10u4
2
sealife/fritzbox-exporter:1.0f5cc2f0f4c9b
libxml2@2.9.10-r5
2.9.14-r0
2
statsd/statsd:v0.8.6dab129e74c25
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
2
ujamii/prometheus-sentry-exporter:0.5.06243197349e1
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
2
weblate/weblate:4.2.2-169c160d37a3c
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
2
wurstmeister/zookeeper:latest7a7fd44a7210
libxml2@2.9.1+dfsg1-3ubuntu4.3
2.9.1+dfsg1-3ubuntu4.13+esm3
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
2
quay.io/iver-wharf/wharf-web:v1.6.2dc5d1ed91c26
libxml2@2.9.13-r0
2.9.14-r0
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
libxml2@2.9.7-12.el8_5
0:2.9.7-13.el8_6.1
2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
libxml2@2.9.7-9.el8
0:2.9.7-13.el8_6.1
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
2
a10networks/acos-prometheus-exporter:latest8dc58d434d71
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
2.9.4+dfsg1-6.1ubuntu1.6
1
acockburn/appdaemon:4.0.83a93281d7e94
libxml2@2.9.10-r6
2.9.14-r0
1
adferrand/backuppc:4.4.06fea97b02758
libxml2@2.9.10-r4
2.9.14-r0
1
adolfintel/speedtest:latest1f828fe83374
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u2
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
libxml2@2.9.10+dfsg-5
2.9.10+dfsg-5ubuntu0.20.04.3
1
afrank/mozalert-controller:latestd463c37b08d7
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
1
ajanvier/polr:2.3.091ac61b88c85
libxml2@2.9.10-r6
2.9.14-r0
1
alerta/alerta-web:8.5.04786b9eaa606
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
alphayax/phpmemcachedadmin:latestc284977f027a
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
alpine/k8s:1.22.600ac10bcb759
libxml2@2.9.13-r0
2.9.14-r0
1
amancevice/superset:0.28.1c8c04bfe3d66
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
anchore/anchore-engine:v0.10.0bde9eedf639d
libxml2@2.9.7-9.el8
0:2.9.7-13.el8_6.1
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
libxml2@2.9.7-5.el8
0:2.9.7-13.el8_6.1
1
apache/nifi-registry:1.14.0090b7f87ec7f
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
apache/nifi-registry:0.8.0974efa2f21da
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
1
apachepulsar/pulsar:2.6.14db6ff0b4045
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
apachepulsar/pulsar:2.9.0d056c89b7131
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
1
apachepulsar/pulsar:2.8.2d538416d5afe
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
1
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u2
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1
arturisimo/server-urjc:v1.0d8dc4430531e
libxml2@2.9.4+dfsg1-7+deb10u3
2.9.4+dfsg1-7+deb10u4
1
asdkant/fastapi-hello-world:latesta23d8bf7c885
libxml2@2.9.4+dfsg1-7+deb10u1
2.9.4+dfsg1-7+deb10u4
1
azhar008/flaskapplication:latesta1e827b0adea
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u2
1
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
libxml2@2.9.4+dfsg1-7+deb10u1
2.9.4+dfsg1-7+deb10u4
1
bitnamilegacy/postgresql:11.8.0c3f10b41989f
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
1
blockstack/envsubst:latestd64d7430289a
libxml2@2.9.10-r6
2.9.14-r0
1
brannondorsey/mprime:p95v303b62f957f0839c2
libxml2@2.9.4+dfsg1-7+deb10u1
2.9.4+dfsg1-7+deb10u4
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
1
bryanalves/honeywell_exporter:0.0.1195f73dce8b21
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
bryanalves/smart_exporter:0.2af47dfbb9413
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.