StackRadar

CVE-2022-37435

High

Advisory

Published 2 Sept 2022In the index since 9 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.013
69th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3
of 17,781 indexed, latest versions
Container images
2
deployed by those charts
Fix available
1 of 1
affected package

Apache ShenYu Admin has insecure permissions

Carried by container images the latest versions of 3 of 17,781 indexed charts deploy, on 2 images.

Affected packageAffected versionsFixed inImages
shenyu-commonmaven2.4.22.5.02
OSV records
GHSA-fjjw-82xw-vfc2

Charts affected

3 by stars
ChartLatestAffected imagesRadar Score
shenyuerdeng2.4.212 of 2See more

shenyu erdeng 2.4.21

2 of the 2 container images this version deploys carry CVE-2022-37435.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
shenyu-common@2.4.2
2.5.0
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
shenyu-common@2.4.2
2.5.0

Open the chart page →

12,513
shenyushenyu-helm-chart-test2.4.272 of 2See more

shenyu shenyu-helm-chart-test 2.4.27

2 of the 2 container images this version deploys carry CVE-2022-37435.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
shenyu-common@2.4.2
2.5.0
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
shenyu-common@2.4.2
2.5.0

Open the chart page →

12,513
shenyutest-helm2.4.212 of 2See more

shenyu test-helm 2.4.21

2 of the 2 container images this version deploys carry CVE-2022-37435.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
shenyu-common@2.4.2
2.5.0
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
shenyu-common@2.4.2
2.5.0

Open the chart page →

12,513

Container images carrying it

2 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
apache/shenyu-admin:2.4.2e8b7c4ddd069
shenyu-common@2.4.2
2.5.0
3
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
shenyu-common@2.4.2
2.5.0
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.