StackRadar

CVE-2022-41720

Unscored

Advisory

Published 7 Dec 2022In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.012
66th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,354
of 17,787 indexed, latest versions
Container images
1,485
deployed by those charts
Fix available
1 of 1
affected package

Restricted file access on Windows in os and net/http

Carried by container images the latest versions of 1,354 of 17,787 indexed charts deploy, on 1,485 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+85 more1.18.91,485
OSV records
GO-2022-1143
Also known as
BIT-golang-2022-41720

Charts affected

1,354 by stars
ChartLatestAffected imagesRadar Score
ethexporterethersphereVerified publisher0.3.01 of 1See more

ethexporter ethersphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
darkobas/ethexporter:latest62e6464491ba
stdlib@go1.19.1
1.18.9

Open the chart page →

2,394
ethproxyethersphereVerified publisher0.2.01 of 1See more

ethproxy ethersphere 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ethersphere/ethproxy:latest3a8a3926caa2
stdlib@go1.18.7
1.18.9

Open the chart page →

1,400
geth-swapethersphereVerified publisher0.6.31 of 2See more

geth-swap ethersphere 0.6.3

1 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.186d6d12a40465
stdlib@go1.18.2
1.18.9

Open the chart page →

4,756
onboarding-faucetethersphereVerified publisher0.2.01 of 1See more

onboarding-faucet ethersphere 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ethersphere/onboarding-faucet:0.3.0513154aab230
stdlib@go1.18.2
1.18.9

Open the chart page →

3,320
tokenexporterethersphereVerified publisher0.3.01 of 1See more

tokenexporter ethersphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
darkobas/tokenexporter:latesta0349a0eedf0
stdlib@go1.19.1
1.18.9

Open the chart page →

2,394
supportpalevilgn0me0.1.61 of 1See more

supportpal evilgn0me 0.1.6

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
stdlib@go1.18.1
1.18.9

Open the chart page →

20,987
pgbouncerevilmartians0.2.01 of 2See more

pgbouncer evilmartians 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
quay.io/evl.ms/pgbouncer-exporter:0.4.074f919b78494
stdlib@go1.14.4
1.18.9

Open the chart page →

1,838
exa-csiexa-csi-driver0.2.0-rev21 of 6See more

exa-csi exa-csi-driver 0.2.0-rev2

1 of the 6 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-snapshotter:v5.0.189e900a160a9
stdlib@go1.17.3
1.18.9

Open the chart page →

7,050
faasnetfaasnet0.0.41 of 5See more

faasnet faasnet 0.0.4

1 of the 5 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
simpleidserver/faasprometheus:0.0.425e378d57d78
stdlib@go1.17.1
1.18.9

Open the chart page →

7,665
degafactlyVerified publisher0.11.132 of 3See more

dega factly 0.11.13

2 of the 3 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
factly/dega-api:0.15.166fafc7b0a17
stdlib@go1.16.2
1.18.9
factly/dega-server:0.15.194d21479382e
stdlib@go1.16.2
1.18.9

Open the chart page →

5,747
kavachfactlyVerified publisher0.9.51 of 2See more

kavach factly 0.9.5

1 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
factly/kavach-server:0.22.3be85ff1b9bd3
stdlib@go1.16.2
1.18.9

Open the chart page →

3,573
oom-event-generatorfairwinds-incubator0.2.21 of 1See more

oom-event-generator fairwinds-incubator 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
stdlib@go1.13
1.18.9

Open the chart page →

4,645
stackdriver-metrics-adapterfairwinds-incubator0.3.01 of 1See more

stackdriver-metrics-adapter fairwinds-incubator 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
gcr.io/gke-release/custom-metrics-stackdriver-adapter:v0.13.1-gke.06937c0a9b203
stdlib@go1.19.3
1.18.9

Open the chart page →

1,758
activityrelayfedihost0.1.41 of 2See more

activityrelay fedihost 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
stdlib@go1.16.5
1.18.9

Open the chart page →

13,491
vipienferama0.2.81 of 1See more

vipien ferama 0.2.8

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
stdlib@go1.17.8
1.18.9

Open the chart page →

7,519
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
stdlib@go1.13.5
1.18.9

Open the chart page →

14,688
infrafibonacci-cluster-infraVerified publisher1.0.02 of 4See more

infra fibonacci-cluster-infra 1.0.0

2 of the 4 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
library/postgres:16.4e62fbf9d3e2b
stdlib@go1.18.2
1.18.9
library/redis:7.4.1bb142a9c18ac
stdlib@go1.18.2
1.18.9

Open the chart page →

12,510
fickyhelmappfickyhelmapp1.1.01 of 1See more

fickyhelmapp fickyhelmapp 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
tundeficky/nodejs-app:v1.0.03cf9a9ce54e8
stdlib@go1.17.5
1.18.9

Open the chart page →

3,311
findery-marketfindery-market0.1.01 of 7See more

findery-market findery-market 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
chandanteekinavar/findery-market-payment-service:1.0c96f759b6ce4
stdlib@go1.13
1.18.9

Open the chart page →

7,691
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:3.6.213e51da56fc54
stdlib@go1.15.1
1.18.9

Open the chart page →

64,192
endpoint-auth-servicefiware0.1.43 of 4See more

endpoint-auth-service fiware 0.1.4

3 of the 4 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
expediagroup/kubernetes-sidecar-injector:1.0.1193a00ec8dd4
stdlib@go1.18.3
1.18.9
quay.io/fiware/envoy-configmap-updater:0.4.39eabc3f3e1e2
stdlib@go1.18.5
1.18.9
quay.io/fiware/ishare-auth-provider:0.4.3158108f70f95
stdlib@go1.18.5
1.18.9

Open the chart page →

11,834
grafanaflagger1.7.01 of 1See more

grafana flagger 1.7.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
grafana/grafana:7.3.46d42886b3ebe
stdlib@go1.15.5
1.18.9

Open the chart page →

3,365
podinfoflagger6.1.41 of 1See more

podinfo flagger 6.1.4

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/stefanprodan/podinfo:6.1.3f25ebb9c6788
stdlib@go1.17.9
1.18.9

Open the chart page →

2,808
mission-control-tenantflanksourceVerified publisher1.0.921 of 3See more

mission-control-tenant flanksource 1.0.92

1 of the 3 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
flanksource/vcluster-sync-host-secrets:v0.1.6bd3294c20a60
stdlib@go1.17.13
1.18.9

Open the chart page →

5,684
flask-appflask-mysqlVerified publisher1.0.11 of 2See more

flask-app flask-mysql 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.18.9

Open the chart page →

4,079
floriapp-mongodbfloriapp1.0.01 of 1See more

floriapp-mongodb floriapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.18.9

Open the chart page →

8,046
fluent-operatorfluent-operatorVerified publisher0.1.01 of 2See more

fluent-operator fluent-operator 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
kubesphere/fluent-operator:v1.0.2702df77228c6
stdlib@go1.16.6
1.18.9

Open the chart page →

2,630
flyte-depsflyte1.16.81 of 3See more

flyte-deps flyte 1.16.8

1 of the 3 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
kubernetesui/dashboard:v2.2.0148991563e37
stdlib@go1.15.1
1.18.9

Open the chart page →

2,245
csp-reporterfoomoVerified publisher2.2.01 of 1See more

csp-reporter foomo 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
foomo/csp-reporter:1.3.0e436da524785
stdlib@go1.18
1.18.9

Open the chart page →

1,408
maxscalefour-allportalVerified publisher4.1.162 of 3See more

maxscale four-allportal 4.1.16

2 of the 3 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:10.6.12-debian-11-r1643a70df0e7c6
stdlib@go1.18.2
1.18.9
bitnamilegacy/mysqld-exporter:0.14.0-debian-11-r10304768b637c94
stdlib@go1.17.8
1.18.9

Open the chart page →

6,610
aptlyg0dscookie0.4.01 of 2See more

aptly g0dscookie 0.4.0

1 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
stdlib@go1.18.3
1.18.9

Open the chart page →

3,481
icinga2g0dscookie0.2.01 of 1See more

icinga2 g0dscookie 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
stdlib@go1.18.1
1.18.9

Open the chart page →

4,428
passboltg0dscookie0.5.22 of 2See more

passbolt g0dscookie 0.5.2

2 of the 2 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
library/mariadb:10.79a48ac9f196f
stdlib@go1.16.7
1.18.9
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
stdlib@go1.14.4
1.18.9

Open the chart page →

7,983
podgrabgabe565Verified publisher0.5.21 of 1See more

podgrab gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
stdlib@go1.15.2
1.18.9

Open the chart page →

2,401
smarter-device-managergabe565Verified publisher0.5.21 of 1See more

smarter-device-manager gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.11826b984e75d4
stdlib@go1.19.1
1.18.9

Open the chart page →

1,219
galoygaloymoney0.34.71 of 24See more

galoy galoymoney 0.34.7

1 of the 24 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.18.9

Open the chart page →

8,679
galoygaloymoney20.34.71 of 24See more

galoy galoymoney2 0.34.7

1 of the 24 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.18.9

Open the chart page →

8,679
alertmanager-discordgeek-cookbookVerified publisher1.3.21 of 1See more

alertmanager-discord geek-cookbook 1.3.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
rogerrum/alertmanager-discord:1.0.3827593369625
stdlib@go1.17.4
1.18.9

Open the chart page →

1,045
anonaddygeek-cookbookVerified publisher6.0.01 of 1See more

anonaddy geek-cookbook 6.0.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
anonaddy/anonaddy:0.12.3957a95565166
stdlib@go1.18.3
1.18.9

Open the chart page →

4,788
apache-musicindexgeek-cookbookVerified publisher2.4.21 of 1See more

apache-musicindex geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
stdlib@go1.18.4
1.18.9

Open the chart page →

14,698
autobrrgeek-cookbookVerified publisher1.1.31 of 1See more

autobrr geek-cookbook 1.1.3

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/autobrr/autobrr:v1.10.0d4022cd32df5
stdlib@go1.19.3
1.18.9

Open the chart page →

2,236
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
stdlib@go1.16.7
1.18.9

Open the chart page →

16,178
dendritegeek-cookbookVerified publisher6.4.01 of 1See more

dendrite geek-cookbook 6.4.0

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/dendrite-monolith:v0.9.43267d27d392f
stdlib@go1.18.5
1.18.9

Open the chart page →

2,143
embygeek-cookbookVerified publisher3.4.21 of 1See more

emby geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
stdlib@go1.15
1.18.9

Open the chart page →

8,584
gatusgeek-cookbookVerified publisher1.1.21 of 1See more

gatus geek-cookbook 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
twinproduction/gatus:v3.8.049dc0d9b2e2c
stdlib@go1.18.1
1.18.9

Open the chart page →

1,881
gonicgeek-cookbookVerified publisher6.4.21 of 1See more

gonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
sentriz/gonic:v0.13.1a74012a6adf3
stdlib@go1.16.4
1.18.9

Open the chart page →

3,525
gotifygeek-cookbookVerified publisher1.2.21 of 1See more

gotify geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
gotify/server:2.1.409c79bc1e403
stdlib@go1.16
1.18.9

Open the chart page →

3,131
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
stdlib@go1.15
1.18.9

Open the chart page →

11,042
jackettgeek-cookbookVerified publisher11.7.21 of 1See more

jackett geek-cookbook 11.7.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
stdlib@go1.18.3
1.18.9

Open the chart page →

9,736
lidarrgeek-cookbookVerified publisher14.2.21 of 1See more

lidarr geek-cookbook 14.2.2

1 of the 1 container images this version deploys carry CVE-2022-41720.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
stdlib@go1.16.7
1.18.9

Open the chart page →

14,328

Container images carrying it

1,485 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
danielfm/aws-limits-exporter:0.6.07152b84e57cb
stdlib@go1.17.2
1.18.9
2
datawire/aes:1.14.48588eafe6862
stdlib@go1.15
1.18.9
2
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
stdlib@go1.16.2
1.18.9
2
drone/drone-runner-kube:1.0.0-rc.34359bf2bb3dc
stdlib@go1.16.15
1.18.9
2
eqalpha/keydb:latest6537505c4235
stdlib@go1.16.7
1.18.9
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
stdlib@go1.16.7
1.18.9
2
falcosecurity/falco-driver-loader:0.33.11fe583eee4af
stdlib@go1.18.6
1.18.9
2
falcosecurity/falco-no-driver:0.33.10d427b8d5fc6
stdlib@go1.18.6
1.18.9
2
filebrowser/filebrowser:v2.23.086e8449ff8ff
stdlib@go1.18.3
1.18.9
2
friendsofgo/killgrave:0.4.139cfbecca342
stdlib@go1.16.3
1.18.9
2
garugaru/aws-cloudwatch-exporter:latest541852cafda5
stdlib@go1.16.15
1.18.9
2
goelankit/cortex-gateway:v1.1.00d9a82dcf026
stdlib@go1.18
1.18.9
2
gotson/komga:1.26.36c2a967bbe9a
stdlib@go1.17.8
1.18.9
2
governify/dashboard:lateste83a17ba5038
stdlib@go1.17
1.18.9
2
grafana/agent-operator:v0.25.1a136c6208aa3
stdlib@go1.18
1.18.9
2
grafana/grafana:9.2.4057896e23443
stdlib@go1.19.3
1.18.9
2
grafana/grafana:8.5.042d3e6bc1865
stdlib@go1.17.9
1.18.9
2
grafana/grafana:7.3.5511bc20bfcd1
stdlib@go1.15.5
1.18.9
2
grafana/loki:1.5.0922b3f412fdd
stdlib@go1.13.11
1.18.9
2
grafana/loki:2.5.0f9ef133793af
stdlib@go1.17.8
1.18.9
2
grafana/promtail:1.5.046e88d390cd6
stdlib@go1.13.11
1.18.9
2
hashicorp/consul:1.14.2e38576edcdfd
stdlib@go1.19.2
1.18.9
2
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
stdlib@go1.19.2
1.18.9
2
hashicorp/vault:1.8.34db614d40d0e
stdlib@go1.16.7
1.18.9
2
hashicorp/vault:1.12.18de4d5f31b38
stdlib@go1.19.2
1.18.9
2
hashicorp/vault-k8s:1.1.0844337076b72
stdlib@go1.19.3
1.18.9
2
hashicorp/vault-k8s:0.13.1bebb03e8e800
stdlib@go1.16.3
1.18.9
2
honestica/kube-iptables-tailer:master-91a393242fb939
stdlib@go1.13.8
1.18.9
2
iomesh/csi-node-driver-registrar:v2.5.086f58b0a2106
stdlib@go1.17.3
1.18.9
2
iomesh/csi-provisioner:v3.0.0f9508460b273
stdlib@go1.16.2
1.18.9
2
iomesh/csi-snapshotter:v6.2.2becc53e25b96
stdlib@go1.19
1.18.9
2
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.18.9
2
iomesh/livenessprobe:v2.8.0560f01510f99
stdlib@go1.18
1.18.9
2
iomesh/node-disk-exporter:1.8.0f03148764f38
stdlib@go1.14.7
1.18.9
2
iomesh/snapshot-controller:v6.2.2fb95b65bb88f
stdlib@go1.19
1.18.9
2
istio/proxyv2:1.10.3a78b7a165744
stdlib@go1.16.6
1.18.9
2
jaegertracing/all-in-one:1.3104d224a9999b
stdlib@go1.17.6
1.18.9
2
jettech/kube-webhook-certgen:v1.2.1c42098c8d855
stdlib@go1.13.11
1.18.9
2
jettech/kube-webhook-certgen:v1.5.0fb7c2cd46ccf
stdlib@go1.15.3
1.18.9
2
jmalloc/echo-server:0.3.1e4eaee2c7998
stdlib@go1.17
1.18.9
2
kubernetesui/dashboard:v2.2.0148991563e37
stdlib@go1.15.1
1.18.9
2
kubespheredev/kube-webhook-certgen:v1.1.123a03c9c381f
stdlib@go1.16.9
1.18.9
2
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
stdlib@go1.19.3
1.18.9
2
library/cassandra:4.1.37cbcec0086ac
stdlib@go1.18.2
1.18.9
2
library/influxdb:2.7b8d940ca9376
stdlib@go1.18.2
1.18.9
2
library/mariadb:10.8.30abf60f81588
stdlib@go1.16.7
1.18.9
2
library/mariadb:10.10334b315c10e5
stdlib@go1.18.2
1.18.9
2
library/mariadb:11.3.2e101f9db3191
stdlib@go1.18.2
1.18.9
2
library/mysql:8.2.0212fe73edca5
stdlib@go1.18.2
1.18.9
2
library/mysql:8.4.2ac80b6e09e5b
stdlib@go1.18.2
1.18.9
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.