StackRadar

CVE-2022-29824

High

Advisory

Published 3 May 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.038
89th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
659
of 17,787 indexed, latest versions
Container images
577
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libxml2 security update

Carried by container images the latest versions of 659 of 17,787 indexed charts deploy, on 577 images.

Affected packageAffected versionsFixed inImages
libxml2rpm2.9.7-5.el8, 2.9.7-7.el8, 2.9.7-8.el8, 2.9.7-9.el8+4 more0:2.9.7-13.el8_6.1, 2.9.14-1.171
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+23 more2.9.1+dfsg1-3ubuntu4.13+esm3, 2.9.3+dfsg1-1ubuntu0.7+esm2, 2.9.4+dfsg1-2.2+deb9u7, 2.9.4+dfsg1-6.1ubuntu1.6+4 more361
libxml2apk2.9.10-r4, 2.9.10-r5, 2.9.10-r6, 2.9.10-r7+4 more2.9.14-r0145
OSV records
RHSA-2022:5317ALPINE-CVE-2022-29824UBUNTU-CVE-2022-29824DLA-3012-1DSA-5142-1openSUSE-SU-2024:12043-1
Also known as
USN-5422-1

Charts affected

659 by stars
ChartLatestAffected imagesRadar Score
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
libxml2@2.9.12-r0
2.9.14-r0

Open the chart page →

2,643
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libxml2@2.9.7-12.el8_5
0:2.9.7-13.el8_6.1

Open the chart page →

11,592
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4

Open the chart page →

1,138
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
libxml2@2.9.12-r1
2.9.14-r0

Open the chart page →

2,535
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4

Open the chart page →

1,138

Container images carrying it

577 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
wavefronthq/proxy:9.2d1064d28f6eb
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
2.9.4+dfsg1-6.1ubuntu1.6
1
weblate/weblate:3.11.3-182848df56ecd
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
wiremind/pghoard:12-2019-11-264dea42c8166c
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
xeladock/mysql_dns:latest4baf531453f1
libxml2@2.9.13+dfsg-1build1
2.9.13+dfsg-1ubuntu0.1
1
xeladock/nginx2:latestc259a67b1dff
libxml2@2.9.13+dfsg-1build1
2.9.13+dfsg-1ubuntu0.1
1
xtrendence/cryptofolio:V.2.2.0e6e6612bb94c
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u2
1
yuzutech/kroki-bpmn:0.16.0bd629239a64e
libxml2@2.9.12-r1
2.9.14-r0
1
yuzutech/kroki-excalidraw:0.16.015c9eef47a62
libxml2@2.9.12-r1
2.9.14-r0
1
yuzutech/kroki-mermaid:0.16.07acc8fe7caba
libxml2@2.9.12-r1
2.9.14-r0
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.3
1
zammad/zammad-docker-compose:zammad-4.1.0-312808e2dfa810
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
zohardocker12/weather_app_flask:latestb86d60dbb68d
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
gcr.io/google-samples/microservices-demo/frontend:v0.2.3ca5c0f0771c8
libxml2@2.9.10-r6
2.9.14-r0
1
gcr.io/kubecost1/frontend:prod-1.81.096dfb19838b8
libxml2@2.9.10-r6
2.9.14-r0
1
gcr.io/kubecost1/frontend:prod-1.82.2ba66607c947c
libxml2@2.9.10-r7
2.9.14-r0
1
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
libxml2@2.9.3+dfsg1-1ubuntu0.7
2.9.3+dfsg1-1ubuntu0.7+esm2
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
libxml2@2.9.12-r2
2.9.14-r0
1
ghcr.io/appuio/cloud-portal:v0.2.18c7e08d32d70
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u2
1
ghcr.io/conductionnl/adresservice-nginx:latest849af80ab017
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/authorization-component-nginx:latest02d0644aa99b
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/berichtservice-nginx:latest833d26df3840
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u2
1
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
libxml2@2.9.13-r0
2.9.14-r0
1
ghcr.io/conductionnl/bisc-frontend:latestd8a0334cddfc
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/brpservice-nginx:latest4db9b77c4425
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/contactcatalogus-nginx:latest480c84fa9e63
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u2
1
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
libxml2@2.9.13-r0
2.9.14-r0
1
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u2
1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/eav-component-nginx:latestd785c893096c
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u2
1
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
libxml2@2.9.13-r0
2.9.14-r0
1
ghcr.io/conductionnl/education-component-nginx:latest38900bc76ee0
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u2
1
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
libxml2@2.9.13-r0
2.9.14-r0
1
ghcr.io/conductionnl/eherkenning-ui-nginx:latestfcd2100d863f
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/eherkenning-ui-php:latestdeed102b4255
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/grafregistratiecomponent-nginx:latestd0daf48dec68
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/grafregistratiecomponent-php:latest35225eaa87ab
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/instemmingservice-nginx:latesteeeb4e9f0485
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/instemmingservice-php:latest4ffe222b3e3a
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/landelijketabellencatalogus-nginx:lateste7076242888a
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/loggingcomponent-nginx:latestcee37e9cef09
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/loggingcomponent-php:latest834b8e1af290
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/logicservice-nginx:latest7c8ee08c591c
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
ghcr.io/conductionnl/logicservice-php:latest72aae2080595
libxml2@2.9.10-r4
2.9.14-r0
1
ghcr.io/conductionnl/medewerkercatalogus-nginx:latest06c3b27462e6
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u2
1
ghcr.io/conductionnl/medewerkercatalogus-php:latest1ea5412bed26
libxml2@2.9.13-r0
2.9.14-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.