StackRadar

CVE-2022-41720

Unscored

Advisory

Published 7 Dec 2022In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.012
66th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,354
of 17,787 indexed, latest versions
Container images
1,485
deployed by those charts
Fix available
1 of 1
affected package

Restricted file access on Windows in os and net/http

Carried by container images the latest versions of 1,354 of 17,787 indexed charts deploy, on 1,485 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+85 more1.18.91,485
OSV records
GO-2022-1143
Also known as
BIT-golang-2022-41720

Charts affected

1,354 by stars
ChartLatestAffected imagesRadar Score
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
stdlib@go1.15.2
1.18.9

Open the chart page →

3,023
zahori-consulzahoriVerified publisher1.0.11 of 2See more

zahori-consul zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
hashicorp/consul-k8s-control-plane:1.1.262bed1bf8106
stdlib@go1.19.2
1.18.9

Open the chart page →

5,033
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
stdlib@go1.17.13
1.18.9

Open the chart page →

3,697
zookeeper-exporterzookeeper-exporter0.1.01 of 1See more

zookeeper-exporter zookeeper-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
dabealu/zookeeper-exporter:latest86106fec315f
stdlib@go1.14.15
1.18.9

Open the chart page →

1,248

Container images carrying it

1,485 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
stdlib@go1.15.7
1.18.9
3
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
stdlib@go1.13.11
1.18.9
3
prom/prometheus:v2.19.0bfad037f95e5
stdlib@go1.14.4
1.18.9
3
prom/pushgateway:v1.2.00a9031142481
stdlib@go1.13.8
1.18.9
3
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.18.9
3
prom/statsd-exporter:v0.18.0d23aca343b86
stdlib@go1.14.7
1.18.9
3
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.18.9
3
gcr.io/trillian-opensource-ci/db_server2a685a38dd01
stdlib@go1.18.2
1.18.9
3
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
stdlib@go1.16.5
1.18.9
3
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
stdlib@go1.18.2
1.18.9
3
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
stdlib@go1.15.7
1.18.9
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
stdlib@go1.17.13
1.18.9
3
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
stdlib@go1.15.2
1.18.9
3
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
stdlib@go1.15.2
1.18.9
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
stdlib@go1.15.2
1.18.9
3
quay.io/devtron/calico-networking:pod2daemon-flexvol-v3.19.1c1f36b6e18e0
stdlib@go1.15.2
1.18.9
3
quay.io/devtron/clair:4.3.675fb847ac045
stdlib@go1.17.6
1.18.9
3
quay.io/devtron/discord-alertmanager:ceceb475-65-35203586419ca31
stdlib@go1.18.1
1.18.9
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
stdlib@go1.18
1.18.9
3
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
stdlib@go1.16.10
1.18.9
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
stdlib@go1.14.15
1.18.9
3
quay.io/devtron/nats:2.9.3-alpinef0cf3c3ab495
stdlib@go1.19.2
1.18.9
3
quay.io/devtron/nats-box:latest48cdd3054b20
stdlib@go1.19.2
1.18.9
3
quay.io/devtron/nats-server-config-reloader:0.6.2b5252e783fb2
stdlib@go1.15.14
1.18.9
3
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
stdlib@go1.16.15
1.18.9
3
quay.io/dexidp/dex:v2.25.07bcf286807b8
stdlib@go1.14.9
1.18.9
3
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
stdlib@go1.13.4
1.18.9
3
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
stdlib@go1.17.7
1.18.9
3
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
stdlib@go1.15.8
1.18.9
3
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
stdlib@go1.16.7
1.18.9
3
quay.io/prometheus-operator/prometheus-operator:v0.50.0ab4f480f2cc6
stdlib@go1.16
1.18.9
3
quay.io/prometheus/prometheus:v2.26.038d40a760569
stdlib@go1.16.2
1.18.9
3
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
stdlib@go1.17.3
1.18.9
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
stdlib@go1.15.15
1.18.9
3
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
stdlib@go1.16.8
1.18.9
3
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
stdlib@go1.19.2
1.18.9
3
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
stdlib@go1.16.2
1.18.9
3
1password/scim:v2.3.129d0c6cb67eb
stdlib@go1.16.8
1.18.9
2
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.18.9
2
assistiot/fl_repository_db:latestad8f72108636
stdlib@go1.17.10
1.18.9
2
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
stdlib@go1.18.2
1.18.9
2
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
stdlib@go1.15.1
1.18.9
2
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
stdlib@go1.16.7
1.18.9
2
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
stdlib@go1.17.13
1.18.9
2
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
stdlib@go1.17.13
1.18.9
2
cesanta/docker_auth:1.6.04d16885f3d4c
stdlib@go1.13.7
1.18.9
2
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
stdlib@go1.14.5
1.18.9
2
containersol/locust_exporter:v0.4.1a914972d19ad
stdlib@go1.15.8
1.18.9
2
crate/crate_adapter:latestb8d89fa5d19b
stdlib@go1.16.3
1.18.9
2
cs3org/revad:v1.19.03b57a34a7dfd
stdlib@go1.17.3
1.18.9
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.