StackRadar

CVE-2022-41915

Medium

Advisory

Published 12 Dec 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.009
59th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
14
of 17,957 indexed, latest versions
Container images
2
deployed by those charts
Fix available
1 of 1
affected package

Netty vulnerable to HTTP Response splitting from assigning header value iterator

Carried by container images the latest versions of 14 of 17,957 indexed charts deploy, on 2 images.

Affected packageAffected versionsFixed inImages
netty-codec-httpmaven4.1.84.Final, 4.1.85.Final4.1.86.Final2
OSV records
GHSA-hh82-3pmq-7frp

Charts affected

14 by stars
ChartLatestAffected imagesRadar Score
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
netty-codec-http@4.1.84.Final
4.1.86.Final

Open the chart page →

6,973
eoloPlanteolo-plannerVerified publisher0.1.01 of 7See more

eoloPlant eolo-planner 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,983
eoloplannereoloplannerVerified publisher0.1.01 of 7See more

eoloplanner eoloplanner 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

33,644
eoloPlannerCommunicationsKubernetes3eoloplannercommunicationskuberneteshelmVerified publisher0.1.01 of 7See more

eoloPlannerCommunicationsKubernetes3 eoloplannercommunicationskuberneteshelm 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,983
eoloplannereoloplanner-molynx-gat0.1.01 of 7See more

eoloplanner eoloplanner-molynx-gat 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

29,600
eolo-plannereolo-planner-repo0.1.01 of 7See more

eolo-planner eolo-planner-repo 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,353
eoloplanteoloplant1.0.01 of 7See more

eoloplant eoloplant 1.0.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,983
eoloplantseoloplants-urjcVerified publisher0.1.01 of 7See more

eoloplants eoloplants-urjc 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,869
servereoloserverVerified publisher0.1.01 of 7See more

server eoloserver 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

33,644
eoloplanthttpd-eoloplant0.1.01 of 7See more

eoloplant httpd-eoloplant 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

33,644
eoloserverihuertas2021-vmartinp2021-helm0.1.01 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,869
Practica_4_helmmy-heml-appVerified publisher0.1.01 of 7See more

Practica_4_helm my-heml-app 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,869
p4p40.1.01 of 7See more

p4 p4 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,983
Practica_4_helmpr04helm0.1.01 of 7See more

Practica_4_helm pr04helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-41915.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final

Open the chart page →

28,706

Container images carrying it

2 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
codeurjc/toposervice:v1.0:v1.239fb4c11e6a49
netty-codec-http@4.1.85.Final
4.1.86.Final
13
library/sonarqube:10.0.0-communityef9723cf4fe4
netty-codec-http@4.1.84.Final
4.1.86.Final
1

syft 1.42.1 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.