StackRadar

CVE-2022-41717

Medium

Advisory

Published 8 Dec 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.056
93rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,425
of 17,787 indexed, latest versions
Container images
1,580
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/net/http2 vulnerable to possible excessive memory growth

Carried by container images the latest versions of 1,425 of 17,787 indexed charts deploy, on 1,580 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+172 more0.4.01,132
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+85 more1.18.91,485
OSV records
GHSA-xrjj-mj9h-534mGO-2022-1144
Also known as
BIT-golang-2022-41717

Charts affected

1,425 by stars
ChartLatestAffected imagesRadar Score
npre-essentialsphntom0.1.6013 of 22See more

npre-essentials phntom 0.1.60

13 of the 22 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.18.9
grafana/loki:2.6.11ee60f980950
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.17.9
0.4.0
1.18.9
grafana/promtail:2.7.0c16c710f7333
golang.org/x/net@v0.0.0-20220920203100-d0c6ba3f52d9
stdlib@go1.19.2
0.4.0
1.18.9
phntom/chartmuseum:v0.15.29242b4df9e65
golang.org/x/net@v0.0.0-20220906165146-f3363e06e74c
stdlib@go1.18.5
0.4.0
1.18.9
phntom/kochi:1.1.33b82358bd56e
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.5
0.4.0
1.18.9
phntom/oauth2-proxy:v7.3.48ea656a2a895
golang.org/x/net@v0.0.0-20221012135044-0b7e1fb9d458
stdlib@go1.19.2
0.4.0
1.18.9
quay.io/groundcover/grafana:9.3.18c65b333a3d3
golang.org/x/net@v0.1.0
stdlib@go1.19.3
0.4.0
1.18.9
quay.io/prometheus-operator/prometheus-operator:v0.61.1cd7d1a82ef00
golang.org/x/net@v0.2.0
stdlib@go1.19.3
0.4.0
1.18.9
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
golang.org/x/net@v0.2.0
stdlib@go1.19.3
0.4.0
1.18.9
quay.io/prometheuscommunity/elasticsearch-exporter:v1.5.013a41e8ac836
stdlib@go1.18.4
1.18.9
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
golang.org/x/net@v0.1.0
stdlib@go1.19.2
0.4.0
1.18.9
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.19.1
0.4.0
1.18.9
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.7.0a15ca437f230
golang.org/x/net@v0.0.0-20221014081412-f15817d10f9b
stdlib@go1.19.3
0.4.0
1.18.9

Open the chart page →

26,840
prometheus-elasticsearch-exporterphntom4.5.11 of 2See more

prometheus-elasticsearch-exporter phntom 4.5.1

1 of the 2 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.18.9

Open the chart page →

2,029
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
stdlib@go1.19
1.18.9

Open the chart page →

22,146
firehose-corepinaxVerified publisher0.1.11 of 2See more

firehose-core pinax 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.10.222f84e3615c8
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
stdlib@go1.18.5
0.4.0
1.18.9

Open the chart page →

3,527
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
stdlib@go1.18.5
0.4.0
1.18.9

Open the chart page →

7,149
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
stdlib@go1.18.5
0.4.0
1.18.9

Open the chart page →

4,938
planectlplanectlVerified publisher0.7.01 of 10See more

planectl planectl 0.7.0

1 of the 10 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.18.9

Open the chart page →

25,626
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.12
0.4.0
1.18.9

Open the chart page →

11,153
tenant-namespacepnnl-miscscripts0.6.231 of 1See more

tenant-namespace pnnl-miscscripts 0.6.23

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.2
0.4.0
1.18.9

Open the chart page →

2,578
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
library/postgres:16.24aea012537ed
stdlib@go1.18.2
1.18.9

Open the chart page →

11,181
podtato-headportefaix-hub0.3.06 of 6See more

podtato-head portefaix-hub 0.3.0

6 of the 6 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/podtato-head/entry:latestc3d9d9c98be7
stdlib@go1.19
1.18.9
ghcr.io/podtato-head/hat:latestde37ff39a4c0
stdlib@go1.19
1.18.9
ghcr.io/podtato-head/left-arm:latest97596c95276a
stdlib@go1.19
1.18.9
ghcr.io/podtato-head/left-leg:latest00bb31622b1e
stdlib@go1.19
1.18.9
ghcr.io/podtato-head/right-arm:latest5f8f97a60558
stdlib@go1.19
1.18.9
ghcr.io/podtato-head/right-leg:latest03e125b9279e
stdlib@go1.19
1.18.9

Open the chart page →

5,279
prometheus-bbox-exporterportefaix-hub0.4.11 of 1See more

prometheus-bbox-exporter portefaix-hub 0.4.1

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/nlamirault/bbox_exporter:1.0.0f5dd1f7794c6
golang.org/x/net@v0.0.0-20210917221730-978cfadd31cf
stdlib@go1.18.3
0.4.0
1.18.9

Open the chart page →

2,013
prometheus-freebox-exporterportefaix-hub0.1.11 of 1See more

prometheus-freebox-exporter portefaix-hub 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/nlamirault/freebox-exporter:1.0.02d522b664e12
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.19.2
0.4.0
1.18.9

Open the chart page →

1,755
speedtest-exporterportefaix-hub0.5.01 of 1See more

speedtest-exporter portefaix-hub 0.5.0

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/danopstech/speedtest_exporter:v0.0.599efbe55412b
stdlib@go1.16.6
1.18.9

Open the chart page →

1,209
postgrespostgresVerified publisher0.1.11 of 1See more

postgres postgres 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
library/postgres:13.12ced3ba927f4c
stdlib@go1.18.2
1.18.9

Open the chart page →

4,363
liftbridgepozetron0.1.11 of 1See more

liftbridge pozetron 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
pozetroninc/liftbridge:v1.1.079fd6b9d93e6
golang.org/x/net@v0.0.0-20191021144547-ec77196f6094
stdlib@go1.13.12
0.4.0
1.18.9

Open the chart page →

3,167
Practica_4_helmpr04helm0.1.02 of 7See more

Practica_4_helm pr04helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.18.9
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.18.9

Open the chart page →

27,649
practica-helmpractica-helm0.1.03 of 7See more

practica-helm practica-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
library/mongo:4.4-bionic3d0e6df9fd5b
stdlib@go1.16.3
1.18.9
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.18.9
slagattollas/weatherservice-practica:latest68e7f56393fc
stdlib@go1.15.6
1.18.9

Open the chart page →

28,495
cloudwatch-exporterpresto-loadbalancer0.0.61 of 1See more

cloudwatch-exporter presto-loadbalancer 0.0.6

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
garugaru/aws-cloudwatch-exporter:latest541852cafda5
stdlib@go1.16.15
1.18.9

Open the chart page →

1,086
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
golang.org/x/net@v0.0.0-20191112182307-2180aed22343
stdlib@go1.13.4
0.4.0
1.18.9

Open the chart page →

9,605
oauth2-proxypresto-loadbalancer4.3.181 of 2See more

oauth2-proxy presto-loadbalancer 4.3.18

1 of the 2 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
stdlib@go1.14.4
0.4.0
1.18.9

Open the chart page →

3,958
presto-exporterpresto-loadbalancer0.0.91 of 1See more

presto-exporter presto-loadbalancer 0.0.9

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
garugaru/presto-exporter:cb666560e9e82d5ae36aef1e663c3d7f51cca9fc5201314c28f3
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.14.13
0.4.0
1.18.9

Open the chart page →

2,190
presto-loadbalancerpresto-loadbalancer0.1.161 of 1See more

presto-loadbalancer presto-loadbalancer 0.1.16

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
garugaru/presto-loadbalancer:v0.1.589d66d117029
stdlib@go1.15.2
1.18.9

Open the chart page →

2,526
rds-exporterpresto-loadbalancer0.0.21 of 1See more

rds-exporter presto-loadbalancer 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
garugaru/aws-cloudwatch-exporter:latest541852cafda5
stdlib@go1.16.15
1.18.9

Open the chart page →

1,086
trino-exporterpresto-loadbalancer0.0.121 of 1See more

trino-exporter presto-loadbalancer 0.0.12

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
datappeal/trino-exporter:latest325b91c2b09e
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.16.15
0.4.0
1.18.9

Open the chart page →

1,969
trino-loadbalancerpresto-loadbalancer0.3.11 of 1See more

trino-loadbalancer presto-loadbalancer 0.3.1

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
datappeal/trino-loadbalancer:sha-950abbae6b5b9fdb2e6d
golang.org/x/net@v0.0.0-20220617184016-355a448f1bc9
stdlib@go1.17.13
0.4.0
1.18.9

Open the chart page →

2,357
procestypecatalogusprocestypecatalogus1.1.01 of 4See more

procestypecatalogus procestypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/procestypecatalogus-php:latest956c4fb64796
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.4.0
1.18.9

Open the chart page →

7,429
productenendienstencatalogusproductenendienstencatalogus1.0.01 of 3See more

productenendienstencatalogus productenendienstencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/productenendienstencatalogus-php:latest7242da105081
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.4.0
1.18.9

Open the chart page →

7,510
wp-chartprojet-devops0.1.01 of 2See more

wp-chart projet-devops 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.18.9

Open the chart page →

5,234
alertmanagerprometheus-worawutchan0.3.01 of 1See more

alertmanager prometheus-worawutchan 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
stdlib@go1.14.4
0.4.0
1.18.9

Open the chart page →

2,305
prometheus-blackbox-exporterprometheus-worawutchan4.10.11 of 1See more

prometheus-blackbox-exporter prometheus-worawutchan 4.10.1

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.18.01ffc3f109eb3
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
stdlib@go1.15.2
0.4.0
1.18.9

Open the chart page →

2,250
prometheus-druid-exporterprometheus-worawutchan0.9.01 of 1See more

prometheus-druid-exporter prometheus-worawutchan 0.9.0

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
quay.io/opstree/druid-exporter:v0.83f6d9885cfe2
stdlib@go1.14.6
1.18.9

Open the chart page →

2,090
prometheus-node-exporterprometheus-worawutchan1.12.01 of 1See more

prometheus-node-exporter prometheus-worawutchan 1.12.0

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
stdlib@go1.14.4
0.4.0
1.18.9

Open the chart page →

2,188
prometheus-pushgatewayprometheus-worawutchan1.5.01 of 1See more

prometheus-pushgateway prometheus-worawutchan 1.5.0

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
prom/pushgateway:v1.3.0c0d39b8d4cfe
stdlib@go1.15.2
1.18.9

Open the chart page →

1,285
prometheus-redis-exporterprometheus-worawutchan4.0.01 of 1See more

prometheus-redis-exporter prometheus-worawutchan 4.0.0

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.11.104d958d209ab
stdlib@go1.15
1.18.9

Open the chart page →

1,315
prometheus-statsd-exporterprometheus-worawutchan0.1.01 of 1See more

prometheus-statsd-exporter prometheus-worawutchan 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
prom/statsd-exporter:v0.18.0d23aca343b86
stdlib@go1.14.7
1.18.9

Open the chart page →

1,315
panproto-application-nldesign0.1.01 of 5See more

pan proto-application-nldesign 0.1.0

1 of the 5 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
conduction/pan-php:dev24f03c57568f
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.4.0
1.18.9

Open the chart page →

8,724
proto-component-commongroundproto-component-commonground1.0.01 of 3See more

proto-component-commonground proto-component-commonground 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/proto-component-commonground-php:latesteb36ead1954e
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.4.0
1.18.9

Open the chart page →

7,510
kspanpuckpuck0.2.41 of 1See more

kspan puckpuck 0.2.4

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/honeycombio/kspan/kspan:0.2c966a4f8a4b7
golang.org/x/net@v0.0.0-20201021035429-f5854403a974
0.4.0

Open the chart page →

1,681
seashellpuckpuck1.2.01 of 1See more

seashell puckpuck 1.2.0

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/puckpuck/seashell:1.2ef5e31333821
golang.org/x/net@v0.0.0-20201021035429-f5854403a974
0.4.0

Open the chart page →

4,214
pumperlypumperlyVerified publisher0.1.21 of 3See more

pumperly pumperly 0.1.2

1 of the 3 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
postgis/postgis:17-3.4-alpine5a1dbedac34e
stdlib@go1.18.2
1.18.9

Open the chart page →

2,853
cdmswebapppyalive-cdmswebappVerified publisher0.1.02 of 3See more

cdmswebapp pyalive-cdmswebapp 0.1.0

2 of the 3 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.18.9
sarwansharma/minio:v359d1da9385d1
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
stdlib@go1.18.3
0.4.0
1.18.9

Open the chart page →

6,667
loki-stackpyalive-cdmswebappVerified publisher2.6.52 of 4See more

loki-stack pyalive-cdmswebapp 2.6.5

2 of the 4 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
grafana/loki:2.5.0f9ef133793af
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.17.8
0.4.0
1.18.9
grafana/promtail:2.4.2626900031c4e
golang.org/x/net@v0.0.0-20211101193420-4a448f8816b3
stdlib@go1.17.2
0.4.0
1.18.9

Open the chart page →

6,526
cf-operatorquarks2.3.0+0.g27a91cdf2 of 2See more

cf-operator quarks 2.3.0+0.g27a91cdf

2 of the 2 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
golang.org/x/net@v0.0.0-20190813141303-74dc4d7220e7
stdlib@go1.13.3
0.4.0
1.18.9
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
golang.org/x/net@v0.0.0-20190813141303-74dc4d7220e7
stdlib@go1.13.4
0.4.0
1.18.9

Open the chart page →

11,942
quarksquarks7.0.1+0.g5396b114 of 5See more

quarks quarks 7.0.1+0.g5396b11

4 of the 5 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.4.0
1.18.9
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
stdlib@go1.13.15
0.4.0
1.18.9
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
stdlib@go1.14.7
0.4.0
1.18.9
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.4.0
1.18.9

Open the chart page →

18,197
quarks-statefulsetquarks0.0.1304-g4b4f2ac51 of 1See more

quarks-statefulset quarks 0.0.1304-g4b4f2ac5

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.4.0
1.18.9

Open the chart page →

4,010
ingress-controllerqumine0.8.5001 of 1See more

ingress-controller qumine 0.8.500

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
qumine/ingress-controller:v0.8.5f2c8a2148381
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.19
0.4.0
1.18.9

Open the chart page →

1,533
saleorrc-helm-charts0.1.11 of 5See more

saleor rc-helm-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.22.0ca6b73330616
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.15.8
0.4.0
1.18.9

Open the chart page →

3,738
ansible-automation-platformredhat-cop0.0.91 of 1See more

ansible-automation-platform redhat-cop 0.0.9

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.14
0.4.0
1.18.9

Open the chart page →

15,290
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-41717.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.14
0.4.0
1.18.9

Open the chart page →

15,290

Container images carrying it

1,580 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
stdlib@go1.16.7
1.18.9
2
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
stdlib@go1.17.13
1.18.9
2
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
stdlib@go1.17.13
1.18.9
2
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/net@v0.0.0-20190813141303-74dc4d7220e7
stdlib@go1.13.7
0.4.0
1.18.9
2
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.14.5
0.4.0
1.18.9
2
containersol/locust_exporter:v0.4.1a914972d19ad
stdlib@go1.15.8
1.18.9
2
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/net@v0.0.0-20210423184538-5f58ad60dda6
stdlib@go1.16.3
0.4.0
1.18.9
2
cs3org/revad:v1.19.03b57a34a7dfd
golang.org/x/net@v0.0.0-20220325170049-de3da57026de
stdlib@go1.17.3
0.4.0
1.18.9
2
csiplugin/csi-qingcloud:v1.4.00766163dc046
golang.org/x/net@v0.0.0-20190812203447-cdfb69ac37fc
0.4.0
2
danielfm/aws-limits-exporter:0.6.07152b84e57cb
stdlib@go1.17.2
1.18.9
2
datawire/aes:1.14.48588eafe6862
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.15
0.4.0
1.18.9
2
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.16.2
0.4.0
1.18.9
2
drone/drone-runner-kube:1.0.0-rc.34359bf2bb3dc
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.16.15
0.4.0
1.18.9
2
eqalpha/keydb:latest6537505c4235
stdlib@go1.16.7
1.18.9
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
stdlib@go1.16.7
1.18.9
2
falcosecurity/falco-driver-loader:0.33.11fe583eee4af
stdlib@go1.18.6
1.18.9
2
falcosecurity/falco-no-driver:0.33.10d427b8d5fc6
stdlib@go1.18.6
1.18.9
2
filebrowser/filebrowser:v2.23.086e8449ff8ff
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
stdlib@go1.18.3
0.4.0
1.18.9
2
friendsofgo/killgrave:0.4.139cfbecca342
stdlib@go1.16.3
1.18.9
2
garugaru/aws-cloudwatch-exporter:latest541852cafda5
stdlib@go1.16.15
1.18.9
2
goelankit/cortex-gateway:v1.1.00d9a82dcf026
golang.org/x/net@v0.0.0-20220403103023-749bd193bc2b
stdlib@go1.18
0.4.0
1.18.9
2
gotson/komga:1.26.36c2a967bbe9a
stdlib@go1.17.8
1.18.9
2
governify/dashboard:lateste83a17ba5038
golang.org/x/net@v0.0.0-20210726213435-c6fcb2dbf985
stdlib@go1.17
0.4.0
1.18.9
2
grafana/agent-operator:v0.25.1a136c6208aa3
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18
0.4.0
1.18.9
2
grafana/grafana:9.2.4057896e23443
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.19.3
0.4.0
1.18.9
2
grafana/grafana:8.5.042d3e6bc1865
golang.org/x/net@v0.0.0-20211118161319-6a13c67c3ce4
stdlib@go1.17.9
0.4.0
1.18.9
2
grafana/grafana:7.3.5511bc20bfcd1
golang.org/x/net@v0.0.0-20201022231255-08b38378de70
stdlib@go1.15.5
0.4.0
1.18.9
2
grafana/loki:1.5.0922b3f412fdd
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
stdlib@go1.13.11
0.4.0
1.18.9
2
grafana/loki:2.5.0f9ef133793af
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.17.8
0.4.0
1.18.9
2
grafana/promtail:1.5.046e88d390cd6
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
stdlib@go1.13.11
0.4.0
1.18.9
2
hashicorp/consul:1.14.2e38576edcdfd
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.19.2
0.4.0
1.18.9
2
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.19.2
0.4.0
1.18.9
2
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/net@v0.0.0-20210510120150-4163338589ed
stdlib@go1.16.7
0.4.0
1.18.9
2
hashicorp/vault:1.12.18de4d5f31b38
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.19.2
0.4.0
1.18.9
2
hashicorp/vault-k8s:1.1.0844337076b72
golang.org/x/net@v0.0.0-20221004154528-8021a29435af
stdlib@go1.19.3
0.4.0
1.18.9
2
hashicorp/vault-k8s:0.13.1bebb03e8e800
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.3
0.4.0
1.18.9
2
honestica/kube-iptables-tailer:master-91a393242fb939
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
stdlib@go1.13.8
0.4.0
1.18.9
2
iomesh/csi-node-driver-registrar:v2.5.086f58b0a2106
golang.org/x/net@v0.0.0-20210825183410-e898025ed96a
stdlib@go1.17.3
0.4.0
1.18.9
2
iomesh/csi-provisioner:v3.0.0f9508460b273
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.2
0.4.0
1.18.9
2
iomesh/csi-snapshotter:v6.2.2becc53e25b96
stdlib@go1.19
1.18.9
2
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
golang.org/x/net@v0.0.0-20191112182307-2180aed22343
stdlib@go1.13.1
0.4.0
1.18.9
2
iomesh/livenessprobe:v2.8.0560f01510f99
golang.org/x/net@v0.0.0-20220921203646-d300de134e69
stdlib@go1.18
0.4.0
1.18.9
2
iomesh/localpv-manager:v0.2.0f13deacac3f4
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.4.0
2
iomesh/node-disk-exporter:1.8.0f03148764f38
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.14.7
0.4.0
1.18.9
2
iomesh/snapshot-controller:v6.2.2fb95b65bb88f
stdlib@go1.19
1.18.9
2
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
stdlib@go1.16.6
0.4.0
1.18.9
2
jaegertracing/all-in-one:1.3104d224a9999b
golang.org/x/net@v0.0.0-20220105145211-5b0dc2dfae98
stdlib@go1.17.6
0.4.0
1.18.9
2
jettech/kube-webhook-certgen:v1.2.1c42098c8d855
golang.org/x/net@v0.0.0-20190108225652-1e06a53dbb7e
stdlib@go1.13.11
0.4.0
1.18.9
2
jettech/kube-webhook-certgen:v1.5.0fb7c2cd46ccf
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15.3
0.4.0
1.18.9
2
jmalloc/echo-server:0.3.1e4eaee2c7998
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
stdlib@go1.17
0.4.0
1.18.9
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.