StackRadar

CVE-2022-45787

Medium

Advisory

Published 6 Jan 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.003
20th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
10
of 17,781 indexed, latest versions
Container images
8
deployed by those charts
Fix available
1 of 1
affected package

Apache James MIME4J vulnerable to information disclosure to local users

Carried by container images the latest versions of 10 of 17,781 indexed charts deploy, on 8 images.

Affected packageAffected versionsFixed inImages
apache-mime4j-storagemaven0.8.3, 0.8.4, 0.8.70.8.98
OSV records
GHSA-q84x-3476-8ff2

Charts affected

10 by stars
ChartLatestAffected imagesRadar Score
keycloakcodecentricVerified publisher18.10.01 of 3See more

keycloak codecentric 18.10.0

1 of the 3 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
apache-mime4j-storage@0.8.4
0.8.9

Open the chart page →

7,713
clowder2ncsaVerified publisher1.9.71 of 12See more

clowder2 ncsa 1.9.7

1 of the 12 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:20.0.5cb04e49e6eb1
apache-mime4j-storage@0.8.3
0.8.9

Open the chart page →

37,373
keycloakaccount-serviceVerified publisher18.4.51 of 2See more

keycloak account-service 18.4.5

1 of the 2 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
apache-mime4j-storage@0.8.4
0.8.9

Open the chart page →

7,713
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
assistiot/identity-manager_kc:latest0df4b4fa899a
apache-mime4j-storage@0.8.7
0.8.9

Open the chart page →

13,352
axelor-open-suiteaxelor-open-suiteVerified publisher7.2.581 of 2See more

axelor-open-suite axelor-open-suite 7.2.58

1 of the 2 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
apache-mime4j-storage@0.8.3
0.8.9

Open the chart page →

9,722
drogue-cloud-coredrogue-iotVerified publisher0.7.111 of 22See more

drogue-cloud-core drogue-iot 0.7.11

1 of the 22 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0054ef67eb7da
apache-mime4j-storage@0.8.3
0.8.9

Open the chart page →

55,666
drogue-cloud-twindrogue-iotVerified publisher0.7.111 of 8See more

drogue-cloud-twin drogue-iot 0.7.11

1 of the 8 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0054ef67eb7da
apache-mime4j-storage@0.8.3
0.8.9

Open the chart page →

6,915
simple-keycloaksikalabs0.1.01 of 1See more

simple-keycloak sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.18830f76112b6
apache-mime4j-storage@0.8.3
0.8.9

Open the chart page →

6,443
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
apache-mime4j-storage@0.8.3
0.8.9

Open the chart page →

12,455
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-45787.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
apache-mime4j-storage@0.8.3
0.8.9

Open the chart page →

6,016

Container images carrying it

8 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/keycloak/keycloak:20.0054ef67eb7da
apache-mime4j-storage@0.8.3
0.8.9
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
apache-mime4j-storage@0.8.4
0.8.9
2
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
apache-mime4j-storage@0.8.3
0.8.9
1
assistiot/identity-manager_kc:latest0df4b4fa899a
apache-mime4j-storage@0.8.7
0.8.9
1
bitnamilegacy/keycloak:20.0.5cb04e49e6eb1
apache-mime4j-storage@0.8.3
0.8.9
1
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
apache-mime4j-storage@0.8.3
0.8.9
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
apache-mime4j-storage@0.8.3
0.8.9
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
apache-mime4j-storage@0.8.3
0.8.9
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.