StackRadar

CVE-2022-41723

High

Advisory

Published 16 Feb 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.046
91st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,517
of 17,787 indexed, latest versions
Container images
1,698
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/net vulnerable to Uncontrolled Resource Consumption

Carried by container images the latest versions of 1,517 of 17,787 indexed charts deploy, on 1,698 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+175 more0.7.01,206
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+90 more1.19.61,634
OSV records
GHSA-vvpx-j8f3-3w6hGO-2023-1571
Also known as
BIT-golang-2022-41723

Charts affected

1,517 by stars
ChartLatestAffected imagesRadar Score
lndkronkltdVerified publisher0.3.93 of 4See more

lnd kronkltd 0.3.9

3 of the 4 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.14.1-betad94c8dbf6dac
golang.org/x/net@v0.0.0-20210913180222-943fd674d43e
stdlib@go1.17.1
0.7.0
1.19.6
thesisrobot/loop:v0.11.1-beta89ae07e787ca
golang.org/x/net@v0.0.0-20191002035440-2ec189313ef0
stdlib@go1.13.12
0.7.0
1.19.6
thesisrobot/pool:v0.3.3-alpha2d1c388a4bda
golang.org/x/net@v0.0.0-20191112182307-2180aed22343
stdlib@go1.14.12
0.7.0
1.19.6

Open the chart page →

8,451
casdoorkrzwiatrzyk1.0.01 of 1See more

casdoor krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
casbin/casdoor:v1.224.066f836ef778b
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.17.5
0.7.0
1.19.6

Open the chart page →

3,649
nocodbkrzwiatrzyk0.0.11 of 1See more

nocodb krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
nocodb/nocodb:0.100.2b0b91ec2a2dd
golang.org/x/net@v0.0.0-20220805013720-a33c5aa5df48
stdlib@go1.18.2
0.7.0
1.19.6

Open the chart page →

2,313
pipecdkrzwiatrzyk0.39.01 of 3See more

pipecd krzwiatrzyk 0.39.0

1 of the 3 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
ghcr.io/pipe-cd/pipecd:v0.39.00fae829caf29
golang.org/x/net@v0.0.0-20191014212845-da9a3fd4c582
stdlib@go1.14.6
0.7.0
1.19.6

Open the chart page →

3,812
postgresql-backup-to-miniokrzwiatrzyk0.0.11 of 2See more

postgresql-backup-to-minio krzwiatrzyk 0.0.1

1 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.19.6

Open the chart page →

2,199
traggokrzwiatrzyk1.0.01 of 1See more

traggo krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
traggo/server:0.2.3f1ced637510e
stdlib@go1.13.1
1.19.6

Open the chart page →

1,885
cluster-componentkubebb0.2.24 of 4See more

cluster-component kubebb 0.2.2

4 of the 4 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubebb/cert-manager-cainjector:v1.8.0f83cd256229b
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.17.8
0.7.0
1.19.6
kubebb/cert-manager-controller:v1.8.020509de4b399
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.17.8
0.7.0
1.19.6
kubebb/cert-manager-webhook:v1.8.060d3cba0c267
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.17.8
0.7.0
1.19.6
kubebb/ingress-nginx-controller:v1.3.0067673df26a6
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.2
0.7.0
1.19.6

Open the chart page →

8,160
fabric-operatorkubebb0.1.01 of 1See more

fabric-operator kubebb 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.4
0.7.0
1.19.6

Open the chart page →

3,988
miniokubebb5.0.102 of 2See more

minio kubebb 5.0.10

2 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
golang.org/x/net@v0.4.0
stdlib@go1.19.4
0.7.0
1.19.6
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
golang.org/x/net@v0.5.0
stdlib@go1.19.4
0.7.0
1.19.6

Open the chart page →

7,457
tdsfkubebb5.7.01 of 3See more

tdsf kubebb 5.7.0

1 of the 3 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubebb/mesh-operator:v5.7.0163ebbfc7a82
stdlib@go1.18.4
1.19.6

Open the chart page →

6,490
tekton-operatorkubebb0.64.02 of 2See more

tekton-operator kubebb 0.64.0

2 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
hyperledgerk8s/tekton-operator-webhook:v0.64.02237cb80f52b
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
stdlib@go1.18.7
0.7.0
1.19.6
hyperledgerk8s/tektoncd-operator:v0.64.0d0a3a35a138d
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
stdlib@go1.18.7
0.7.0
1.19.6

Open the chart page →

2,406
u4a-componentkubebb0.2.106 of 8See more

u4a-component kubebb 0.2.10

6 of the 8 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubebb/capsule-ce:v0.1.2-20221122a3dba2a95cef
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.18.8
0.7.0
1.19.6
kubebb/iam-controller:v0.2.0-202401288ffbfa2d67e9
golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc2
0.7.0
kubebb/iam-provider:v0.2.0-202401280ba03fcee3a7
golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc2
stdlib@go1.17.13
0.7.0
1.19.6
kubebb/kube-oidc-proxy-ce:v0.3.0-2022100858d5efec568b
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.18
0.7.0
1.19.6
kubebb/oidc-server:v0.2.02b5894ef1e2f
golang.org/x/net@v0.0.0-20220325170049-de3da57026de
stdlib@go1.17.8
0.7.0
1.19.6
kubebb/resource-viewer:v0.2.065bb40b353db
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.18.7
0.7.0
1.19.6

Open the chart page →

13,820
chaos-meshkubeblocksVerified publisher2.7.22 of 4See more

chaos-mesh kubeblocks 2.7.2

2 of the 4 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-coredns:v0.2.678dc63bc5b89
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
0.7.0
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
stdlib@go1.16.2
1.19.6

Open the chart page →

13,517
geminikubeblocksVerified publisher0.13.41 of 8See more

gemini kubeblocks 0.13.4

1 of the 8 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.19.6

Open the chart page →

3,103
jupyterhubkubeblocksVerified publisher0.1.02 of 7See more

jupyterhub kubeblocks 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
jupyterhub/k8s-image-awaiter:3.0.1-0.dev.git.6287.hbfb05cd6a395326989c3
stdlib@go1.18.10
1.19.6
registry.k8s.io/kube-scheduler:v1.23.143e149d206076
stdlib@go1.17.13
1.19.6

Open the chart page →

7,356
kubeblocks-csi-driverkubeblocksVerified publisher0.1.31 of 6See more

kubeblocks-csi-driver kubeblocks 0.1.3

1 of the 6 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
apecloud/kubeblocks-csi-driver:0.1.3c93655ccb2d7
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.7.0

Open the chart page →

2,083
nvidia-gpu-exporterkubeblocksVerified publisher0.3.11 of 1See more

nvidia-gpu-exporter kubeblocks 0.3.1

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
stdlib@go1.17
0.7.0
1.19.6

Open the chart page →

4,500
openebskubeblocksVerified publisher3.10.02 of 3See more

openebs kubeblocks 3.10.0

2 of the 3 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.19.3
0.7.0
1.19.6
openebs/node-disk-operator:2.1.06afe2123c457
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.19.3
0.7.0
1.19.6

Open the chart page →

10,568
prometheuskubeblocksVerified publisher15.16.16 of 6See more

prometheus kubeblocks 15.16.1

6 of the 6 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.19.6
prom/pushgateway:v1.4.33496e0f85943
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.2
0.7.0
1.19.6
quay.io/prometheus/alertmanager:v0.24.0088464f949de
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.17.8
0.7.0
1.19.6
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
stdlib@go1.17.3
0.7.0
1.19.6
quay.io/prometheus/prometheus:v2.39.14748e26f9369
golang.org/x/net@v0.0.0-20220920203100-d0c6ba3f52d9
stdlib@go1.19.2
0.7.0
1.19.6
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.3
0.7.0
1.19.6

Open the chart page →

10,302
smartfs-csi-driverkubeblocksVerified publisher0.1.21 of 6See more

smartfs-csi-driver kubeblocks 0.1.2

1 of the 6 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
golang.org/x/net@v0.5.0
0.7.0

Open the chart page →

9,249
snapshot-controllerkubeblocksVerified publisher1.7.21 of 1See more

snapshot-controller kubeblocks 1.7.2

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v6.2.198bab4eaf23c
golang.org/x/net@v0.4.0
stdlib@go1.19
0.7.0
1.19.6

Open the chart page →

1,128
victoria-metrics-alertkubeblocksVerified publisher0.8.3-reload2 of 3See more

victoria-metrics-alert kubeblocks 0.8.3-reload

2 of the 3 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.19.6
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/net@v0.4.0
stdlib@go1.19.4
0.7.0
1.19.6

Open the chart page →

3,715
cephfs-csikubegems1.0.81 of 6See more

cephfs-csi kubegems 1.0.8

1 of the 6 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
golang.org/x/net@v0.0.0-20210825183410-e898025ed96a
stdlib@go1.17.5
0.7.0
1.19.6

Open the chart page →

4,445
chartmuseumkubegems3.8.01 of 1See more

chartmuseum kubegems 3.8.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.14.0878ef6a31fa0
golang.org/x/net@v0.0.0-20220121210141-e204ce36a2ba
stdlib@go1.17.6
0.7.0
1.19.6

Open the chart page →

3,518
gatewaykubegems0.3.22 of 2See more

gateway kubegems 0.3.2

2 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubegems/ingress-nginx-operator:v0.2.0cc67357beeeb
golang.org/x/net@v0.0.0-20210825183410-e898025ed96a
0.7.0
kubegems/kube-rbac-proxy:v0.8.0941f557ed1ee
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.13.15
0.7.0
1.19.6

Open the chart page →

3,498
giteakubegems5.0.81 of 2See more

gitea kubegems 5.0.8

1 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
gitea/gitea:1.16.8b0bdf102b485
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.2
0.7.0
1.19.6

Open the chart page →

3,400
knative-servingkubegems1.0.17 of 8See more

knative-serving kubegems 1.0.1

7 of the 8 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourierdigest-pinned197fbb71d1f1
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.3
0.7.0
1.19.6
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned08315309da4b
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.3
0.7.0
1.19.6
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned105bdd14ecaa
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.3
0.7.0
1.19.6
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedbac158dfb0c7
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.3
0.7.0
1.19.6
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mappingdigest-pinnede384a295069b
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.3
0.7.0
1.19.6
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhookdigest-pinned15f1ce7f35b4
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.3
0.7.0
1.19.6
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinned1282a399cbb9
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18.3
0.7.0
1.19.6

Open the chart page →

10,420
logging-operatorkubegems3.17.61 of 1See more

logging-operator kubegems 3.17.6

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/logging-operator:3.17.623c2d4d54a64
golang.org/x/net@v0.0.0-20220114011407-0dd24b26b47d
stdlib@go1.17.9
0.7.0
1.19.6

Open the chart page →

1,800
prometheus-blackbox-exporterkubegems7.1.31 of 1See more

prometheus-blackbox-exporter kubegems 7.1.3

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.22.0608acee5704a
golang.org/x/net@v0.0.0-20220728211354-c7608f3a8462
stdlib@go1.18.5
0.7.0
1.19.6

Open the chart page →

1,628
xpai-schedulerkubegems1.12.11 of 2See more

xpai-scheduler kubegems 1.12.1

1 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
projecthami/volcano-vgpu-device-plugin:v1.9.40c94118d1d98
golang.org/x/net@v0.0.0-20200421231249-e086a090c8fd
stdlib@go1.19.3
0.7.0
1.19.6

Open the chart page →

2,317
gptchat-api-feishubotkubegemsapp0.1.13 of 3See more

gptchat-api-feishubot kubegemsapp 0.1.1

3 of the 3 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubegems/chatgpt-api:latestf3c492a938ad
stdlib@go1.19.3
1.19.6
kubegems/chatgpt-api-feishubot:latest7c93c84b2055
golang.org/x/net@v0.4.0
stdlib@go1.19.4
0.7.0
1.19.6
kubegems/chatgpt-api-proxy:latest8905c9dbbb5d
golang.org/x/net@v0.4.0
stdlib@go1.19.4
0.7.0
1.19.6

Open the chart page →

8,486
kubelet-summary-exporterkubelet-summary-exporter1.0.01 of 1See more

kubelet-summary-exporter kubelet-summary-exporter 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
ghcr.io/salesforce/kubelet-summary-exporter:sha-c2bf90d377e09d2dd72
stdlib@go1.18.10
1.19.6

Open the chart page →

1,015
log-socketkube-loggingVerified publisher0.1.21 of 1See more

log-socket kube-logging 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/log-socket:latesta514736d2d4d
golang.org/x/net@v0.0.0-20220114011407-0dd24b26b47d
stdlib@go1.18.6
0.7.0
1.19.6

Open the chart page →

1,220
apm-serverkube-opsVerified publisher0.1.21 of 1See more

apm-server kube-ops 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
elastic/apm-server:7.17.6c7a1c63257d0
golang.org/x/net@v0.0.0-20220822230855-b0a4917ee28c
stdlib@go1.18.2
0.7.0
1.19.6

Open the chart page →

7,196
lokikube-opsVerified publisher1.7.31 of 1See more

loki kube-ops 1.7.3

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
quay.io/kube-ops/loki:2.2.14fbd63194674
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
stdlib@go1.15.3
0.7.0
1.19.6

Open the chart page →

2,646
promtailkube-opsVerified publisher1.5.11 of 2See more

promtail kube-ops 1.5.1

1 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
quay.io/kube-ops/promtail:2.2.134de6387233b
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
stdlib@go1.15.3
0.7.0
1.19.6

Open the chart page →

4,149
kubernetesweeklykubernetesweekly2.1.01 of 1See more

kubernetesweekly kubernetesweekly 2.1.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
zufardhiyaulhaq/kubernetesweekly:v2.1.0a287ada277c6
golang.org/x/net@v0.0.0-20211015210444-4f30a5c0130f
stdlib@go1.16.15
0.7.0
1.19.6

Open the chart page →

1,489
api-serverkubeshop0.11.161 of 2See more

api-server kubeshop 0.11.16

1 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubeshop/testkube-api-server:0.11.160ad97f07a78b
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.17.8
0.7.0
1.19.6

Open the chart page →

3,417
kusk-gatewaykubeshop0.0.651 of 2See more

kusk-gateway kubeshop 0.0.65

1 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubeshop/kusk-gateway:v1.5.48b5bfd57a3ce
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.19.4
0.7.0
1.19.6

Open the chart page →

1,615
kusk-gateway-apikubeshop0.1.282 of 2See more

kusk-gateway-api kubeshop 0.1.28

2 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubeshop/kusk-gateway-api:v1.5.4126c713cf7d8
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18.10
0.7.0
1.19.6
kubeshop/kusk-gateway-api-websocket:v1.5.43b4f8345ca5c
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18.10
0.7.0
1.19.6

Open the chart page →

2,308
apisix-dashboardkubesphereVerified publisher0.3.01 of 1See more

apisix-dashboard kubesphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
apache/apisix-dashboard:2.9.0c010ea7d1694
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.14.15
0.7.0
1.19.6

Open the chart page →

2,518
apisix-ingress-controllerkubesphereVerified publisher0.8.01 of 2See more

apisix-ingress-controller kubesphere 0.8.0

1 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
apache/apisix-ingress-controller:1.3.0412f92cde0b3
golang.org/x/net@v0.0.0-20210510120150-4163338589ed
stdlib@go1.13.8
0.7.0
1.19.6

Open the chart page →

2,409
fluentbit-operatorkubesphereVerified publisher0.1.01 of 2See more

fluentbit-operator kubesphere 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubesphere/fluentbit-operator:v0.9.0b87db3c57cb3
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.15
0.7.0
1.19.6

Open the chart page →

2,902
gitlabkubesphereVerified publisher4.2.36 of 17See more

gitlab kubesphere 4.2.3

6 of the 17 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
golang.org/x/net@v0.0.0-20200222125558-5a598a2470a0
stdlib@go1.13.8
0.7.0
1.19.6
mirrorgitlabcontainers/gitaly:v13.2.283599461ef8b
golang.org/x/net@v0.0.0-20200114155413-6afb5195e5aa
stdlib@go1.13.9
0.7.0
1.19.6
mirrorgitlabcontainers/gitlab-container-registry:v2.9.1-gitlab06b19a4bc805
golang.org/x/net@v0.0.0-20191014212845-da9a3fd4c582
stdlib@go1.13.9
0.7.0
1.19.6
mirrorgitlabcontainers/gitlab-shell:v13.3.09f3654f1eafc
golang.org/x/net@v0.0.0-20200114155413-6afb5195e5aa
stdlib@go1.13.9
0.7.0
1.19.6
mirrorgitlabcontainers/gitlab-workhorse-ce:v13.2.2a6d7bf42805a
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
stdlib@go1.13.9
0.7.0
1.19.6
mirrorgitlabcontainers/kubectl:1.13.1299931bd06b41
stdlib@go1.13.3
1.19.6

Open the chart page →

38,135
harborkubesphereVerified publisher1.9.37 of 11See more

harbor kubesphere 1.9.3

7 of the 11 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
goharbor/chartmuseum-photon:v2.5.36ab3ca28e9e5
golang.org/x/net@v0.0.0-20220121210141-e204ce36a2ba
stdlib@go1.17.7
0.7.0
1.19.6
goharbor/harbor-core:v2.5.386bf3031f4a7
golang.org/x/net@v0.0.0-20211013171255-e13a2654a71e
stdlib@go1.17.7
0.7.0
1.19.6
goharbor/harbor-jobservice:v2.5.38d5339ff2d74
golang.org/x/net@v0.0.0-20211013171255-e13a2654a71e
stdlib@go1.17.7
0.7.0
1.19.6
goharbor/harbor-registryctl:v2.5.37f82ed1e2635
golang.org/x/net@v0.0.0-20211013171255-e13a2654a71e
stdlib@go1.17.7
0.7.0
1.19.6
goharbor/notary-server-photon:v2.5.3fd91a4a1273f
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.14.15
0.7.0
1.19.6
goharbor/notary-signer-photon:v2.5.3a92b51aa7d6e
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.14.15
0.7.0
1.19.6
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
golang.org/x/net@v0.0.0-20211108170745-6635138e15ea
stdlib@go1.18.3
0.7.0
1.19.6

Open the chart page →

17,798
pvc-autoresizerkubesphereVerified publisher0.1.01 of 1See more

pvc-autoresizer kubesphere 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubesphere/pvc-autoresizer:v0.19a18a16c7b87
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.10
0.7.0
1.19.6

Open the chart page →

1,562
storageclass-accessorkubesphereVerified publisher0.1.01 of 1See more

storageclass-accessor kubesphere 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
kubesphere/storageclass-accessor:v0.1.1eac8f273a9b6
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.10
0.7.0
1.19.6

Open the chart page →

1,509
ccm-qingcloudkubesphere-stable0.1.01 of 1See more

ccm-qingcloud kubesphere-stable 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
stdlib@go1.18.2
1.19.6

Open the chart page →

1,540
chaos-meshkubesphere-stable2.5.13 of 3See more

chaos-mesh kubesphere-stable 2.5.1

3 of the 3 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18
0.7.0
1.19.6
ghcr.io/chaos-mesh/chaos-dashboard:v2.5.1448cb346b12c
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18
0.7.0
1.19.6
ghcr.io/chaos-mesh/chaos-mesh:v2.5.1700bb42ac21d
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18
0.7.0
1.19.6

Open the chart page →

8,555
cni-hostnickubesphere-stable0.1.01 of 1See more

cni-hostnic kubesphere-stable 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-41723.

Container imageDigestPackageFixed in
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.3
0.7.0
1.19.6

Open the chart page →

2,437

Container images carrying it

1,698 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
drone/drone-runner-docker:1.8.1137e79c5e23c
golang.org/x/net@v0.0.0-20190404232315-eb5bcb51f2a3
stdlib@go1.16.15
0.7.0
1.19.6
1
drone/kubernetes-secrets:latest206df2280ecf
golang.org/x/net@v0.0.0-20180811021610-c39426892332
stdlib@go1.13.15
0.7.0
1.19.6
1
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
golang.org/x/net@v0.5.0
stdlib@go1.18.10
0.7.0
1.19.6
1
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
stdlib@go1.14.4
1.19.6
1
duyetdev/applause-btn:latest25e59d223eaa
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.14.9
0.7.0
1.19.6
1
dysnix/gke-upgrade-notification-handler:latestc166f958f86a
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
stdlib@go1.17.7
0.7.0
1.19.6
1
easysoft/quickon-zentao:18.5592ad5df1f8b
golang.org/x/net@v0.0.0-20221002022538-bcab6841153b
0.7.0
1
ebrianne/cert-manager-webhook-duckdns:v1.2.39cd17700c9ec
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.15.13
0.7.0
1.19.6
1
ecadlabs/tezos_exporter:latest4bcbe5d1cdd2
stdlib@go1.16.5
1.19.6
1
eclipseaerios/openldap:2.6.30208743f315e
stdlib@go1.18.2
1.19.6
1
ekofr/pihole-exporter:0.0.109fdad6f352e0
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
stdlib@go1.14.7
0.7.0
1.19.6
1
elastic/apm-server:7.17.6c7a1c63257d0
golang.org/x/net@v0.0.0-20220822230855-b0a4917ee28c
stdlib@go1.18.2
0.7.0
1.19.6
1
elastisys/kube-bench-metrics:0.1.6509b94f1da55
stdlib@go1.15.7
1.19.6
1
empathyco/cost-report:0.0.124f1e26eaacbf
stdlib@go1.15.15
1.19.6
1
emqx/edge-operator-controller:0.0.553865c1267d9
golang.org/x/net@v0.1.0
0.7.0
1
engrmth/bnkr:2.1.06d8464e6f0e8
stdlib@go1.15.8
1.19.6
1
enix/san-iscsi-csi:v4.0.2f963da81ecf7
golang.org/x/net@v0.0.0-20210610132358-84b48f89b13b
stdlib@go1.16.8
0.7.0
1.19.6
1
enketo/enketo-express:3.0.4dcad9c2273f6
stdlib@go1.17.1
1.19.6
1
envoyproxy/ratelimit:v1.4.071081616da3e
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
stdlib@go1.14
0.7.0
1.19.6
1
envoyproxy/ratelimit:6f5de117b6cb6e16f8c9
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
stdlib@go1.14.13
0.7.0
1.19.6
1
envoyproxy/ratelimit:4d2efd61ede09a75a84c
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
stdlib@go1.14.15
0.7.0
1.19.6
1
epamedp/admin-console-operator:2.14.090f9921d8d58
golang.org/x/net@v0.0.0-20210928044308-7d9f5e0b762b
0.7.0
1
epamedp/codebase-operator:2.12.0-MDTU-DDM-SNAPSHOT.1096028c86f0dd
golang.org/x/net@v0.0.0-20210928044308-7d9f5e0b762b
stdlib@go1.17.2
0.7.0
1.19.6
1
epamedp/edp-admin-console:2.14.0616c678ba3e7
golang.org/x/net@v0.0.0-20211029224645-99673261e6eb
stdlib@go1.18.3
0.7.0
1.19.6
1
epamedp/edp-argocd-operator:0.2.0976a662a5e72
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.18.4
0.7.0
1.19.6
1
epamedp/edp-tekton:0.2.4924939850655
golang.org/x/net@v0.1.0
stdlib@go1.18.3
0.7.0
1.19.6
1
epamedp/gerrit-operator:2.11.0-MDTU-DDM-SNAPSHOT.2b71fb39e0c9e
golang.org/x/net@v0.0.0-20210928044308-7d9f5e0b762b
stdlib@go1.17.2
0.7.0
1.19.6
1
epamedp/jenkins-operator:2.11.0-MDTU-DDM-SNAPSHOT.1ff25e9fe4419
golang.org/x/net@v0.0.0-20210928044308-7d9f5e0b762b
stdlib@go1.17.2
0.7.0
1.19.6
1
epamedp/keycloak-operator:1.11.0-MDTU-DDM-SNAPSHOT.105d352199e12e
golang.org/x/net@v0.0.0-20210928044308-7d9f5e0b762b
stdlib@go1.17.2
0.7.0
1.19.6
1
epamedp/nexus-operator:2.11.0-MDTU-DDM-SNAPSHOT.1449a53804699
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.17.2
0.7.0
1.19.6
1
epamedp/reconciler:2.12.0d33e938b6d59
golang.org/x/net@v0.0.0-20210928044308-7d9f5e0b762b
stdlib@go1.18.4
0.7.0
1.19.6
1
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
stdlib@go1.18.2
1.19.6
1
etejeda/butlerci:0.1.0737d58183abc
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.16.3
0.7.0
1.19.6
1
ethereum/client-go:v1.10.186d6d12a40465
golang.org/x/net@v0.0.0-20211015210444-4f30a5c0130f
stdlib@go1.18.2
0.7.0
1.19.6
1
ethereum/client-go:v1.10.23cce21b423165
golang.org/x/net@v0.0.0-20220607020251-c690dde0001d
stdlib@go1.18.5
0.7.0
1.19.6
1
ethereum/client-go:v1.10.15d99fbb9585c7
golang.org/x/net@v0.0.0-20210805182204-aaa1db679c0d
stdlib@go1.17.5
0.7.0
1.19.6
1
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
stdlib@go1.19.3
1.19.6
1
ethereumoptimism/l2geth:0.5.315577036dc36d
golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc2
stdlib@go1.18
0.7.0
1.19.6
1
ethersphere/ethproxy:latest3a8a3926caa2
stdlib@go1.18.7
1.19.6
1
ethersphere/onboarding-faucet:0.3.0513154aab230
stdlib@go1.18.2
1.19.6
1
ethpandaops/ethereum-metrics-exporter:0.21.0d1780db2e286
golang.org/x/net@v0.0.0-20220607020251-c690dde0001d
stdlib@go1.18.10
0.7.0
1.19.6
1
everpcpc/channels:latestb378d137ae8b
stdlib@go1.17
1.19.6
1
expediagroup/kubernetes-sidecar-injector:1.0.1193a00ec8dd4
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.18.3
0.7.0
1.19.6
1
factly/dega-api:0.15.166fafc7b0a17
stdlib@go1.16.2
1.19.6
1
factly/dega-server:0.15.194d21479382e
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.16.2
0.7.0
1.19.6
1
factly/kavach-server:0.22.3be85ff1b9bd3
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.16.2
0.7.0
1.19.6
1
factly/mande-server:0.34.1384d384310ef
stdlib@go1.18.10
1.19.6
1
factly/vidcheck-server:0.12.087064eb0463c
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.14.2
0.7.0
1.19.6
1
falcosecurity/falcosidekick:2.27.0828ee36cb13a
golang.org/x/net@v0.0.0-20220826154423-83b083e8dc8b
stdlib@go1.18.1
0.7.0
1.19.6
1
filebrowser/filebrowser:v2.18.04fcd47af573c
golang.org/x/net@v0.0.0-20200528225125-3c3fba18258b
stdlib@go1.16.9
0.7.0
1.19.6
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.