StackRadar

CVE-2022-48174

Critical

Advisory

Published 22 Aug 2023In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.032
87th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
106
of 17,781 indexed, latest versions
Container images
88
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 106 of 17,781 indexed charts deploy, on 88 images.

Affected packageAffected versionsFixed inImages
busyboxapk1.36.0-r9, 1.36.1-r01.36.1-r173
busyboxdeb1:1.21.0-1ubuntu1, 1:1.21.0-1ubuntu1.4, 1:1.30.1-4ubuntu6.4, 1:1.30.1-7ubuntu3+2 more1:1.21.0-1ubuntu1.4+esm1, 1:1.30.1-4ubuntu6.5, 1:1.30.1-7ubuntu3.1, 1:1.35.0-4+deb12u115
OSV records
ALPINE-CVE-2022-48174DEBIAN-CVE-2022-48174UBUNTU-CVE-2022-48174
Also known as
USN-6335-1, USN-6961-1

Charts affected

106 by stars
ChartLatestAffected imagesRadar Score
temporaltemporal0.28.93 of 13See more

temporal temporal 0.28.9

3 of the 13 container images this version deploys carry CVE-2022-48174.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.22.0836af062af30
busybox@1.36.1-r0
1.36.1-r1
temporalio/server:1.22.0ddeebf8bad8f
busybox@1.36.1-r0
1.36.1-r1
temporalio/ui:2.16.2af9c9349708f
busybox@1.36.1-r0
1.36.1-r1

Open the chart page →

21,005
nextcloudth-chartsVerified publisher0.4.01 of 1See more

nextcloud th-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-48174.

Container imageDigestPackageFixed in
library/nextcloud:31.0.6-apache588609d76b21
busybox@1:1.35.0-4+b4
1:1.35.0-4+deb12u1

Open the chart page →

10,086
posteetrivy-operator2.14.02 of 3See more

postee trivy-operator 2.14.0

2 of the 3 container images this version deploys carry CVE-2022-48174.

Container imageDigestPackageFixed in
aquasec/postee:2.12.0-amd640795cba777e7
busybox@1.36.1-r0
1.36.1-r1
aquasec/postee-ui:2.12.0-amd64c0467c3941dc
busybox@1.36.1-r0
1.36.1-r1

Open the chart page →

4,815
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2022-48174.

Container imageDigestPackageFixed in
natsio/nats-server-config-reloader:0.14.08c28b75bc416
busybox@1.36.1-r0
1.36.1-r1

Open the chart page →

17,323
wiremind-baremetalwiremindVerified publisher2.0.21 of 1See more

wiremind-baremetal wiremind 2.0.2

1 of the 1 container images this version deploys carry CVE-2022-48174.

Container imageDigestPackageFixed in
library/alpine:3.18.002bb6f428431
busybox@1.36.0-r9
1.36.1-r1

Open the chart page →

487
zahori-processzahoriVerified publisher1.0.11 of 1See more

zahori-process zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-48174.

Container imageDigestPackageFixed in
zahoriaut/zahori-process:0.1.13351f8a220ed7
busybox@1.36.1-r0
1.36.1-r1

Open the chart page →

3,480

Container images carrying it

88 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/registry:2.8.1dbaa3e69f563
busybox@1.36.0-r9
1.36.1-r1
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
busybox@1.36.0-r9
1.36.1-r1
6
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
busybox@1.36.1-r0
1.36.1-r1
4
library/docker:20.10-dind:20-dindaf96c680a7e1
busybox@1.36.0-r9
1.36.1-r1
3
natsio/nats-server-config-reloader:0.13.0b3359eeb10bf
busybox@1.36.1-r0
1.36.1-r1
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
busybox@1:1.30.1-7ubuntu3
1:1.30.1-7ubuntu3.1
3
quay.io/metallb/controller:v0.13.101b33357b3595
busybox@1.36.0-r9
1.36.1-r1
3
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
busybox@1.36.1-r0
1.36.1-r1
3
library/nats:2.9.17-alpine1a7b320b2942
busybox@1.36.0-r9
1.36.1-r1
2
oryd/oathkeeper:v0.40.6e8cb9b79a89c
busybox@1.36.1-r0
1.36.1-r1
2
temporalio/ui:2.16.2af9c9349708f
busybox@1.36.1-r0
1.36.1-r1
2
wurstmeister/zookeeper:latest7a7fd44a7210
busybox@1:1.21.0-1ubuntu1
1:1.21.0-1ubuntu1.4+esm1
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
busybox@1:1.30.1-7ubuntu3
1:1.30.1-7ubuntu3.1
2
quay.io/metallb/speaker:v0.13.1000406ccb1fa0
busybox@1.36.0-r9
1.36.1-r1
2
alexvm6/generator:latestfb99ee4f760a
busybox@1.36.0-r9
1.36.1-r1
1
alexvm6/pythonalex:latest89a05786879c
busybox@1.36.0-r9
1.36.1-r1
1
alpine/k8s:1.27.321b24e6bf801
busybox@1.36.1-r0
1.36.1-r1
1
anguda/ant-media:2.5c435285fc241
busybox@1:1.30.1-4ubuntu6.4
1:1.30.1-4ubuntu6.5
1
aquasec/postee:2.12.0-amd640795cba777e7
busybox@1.36.1-r0
1.36.1-r1
1
aquasec/postee-ui:2.12.0-amd64c0467c3941dc
busybox@1.36.1-r0
1.36.1-r1
1
aquasec/trivy:0.43.1944a04445179
busybox@1.36.1-r0
1.36.1-r1
1
binwiederhier/ntfy:v2.6.283e2e43d9956
busybox@1.36.1-r0
1.36.1-r1
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
busybox@1:1.21.0-1ubuntu1.4
1:1.21.0-1ubuntu1.4+esm1
1
chriswells0/first-mate:1.0.5f3918ec8471c
busybox@1.36.1-r0
1.36.1-r1
1
crazymax/rrdcached:1.8.0841b10cdae76
busybox@1.36.0-r9
1.36.1-r1
1
deepflowce/deepflow-agent:v6.2.6.529332fee7fc2
busybox@1:1.30.1-7ubuntu3
1:1.30.1-7ubuntu3.1
1
deepflowce/deepflow-server:v6.2.6.534fcc526dd59
busybox@1.36.0-r9
1.36.1-r1
1
djjudas21/autonodelabel:0.0.6f17233350c4f
busybox@1.36.1-r0
1.36.1-r1
1
dongjiang1989/cpusets-controller:v1.1.1dc5bd483874c
busybox@1.36.1-r0
1.36.1-r1
1
dongjiang1989/cpusets-device-plugin:v1.1.1923085c65123
busybox@1.36.1-r0
1.36.1-r1
1
dongjiang1989/crane-scheduler-controller:mainf0055c05dbee
busybox@1.36.0-r9
1.36.1-r1
1
dpage/pgadmin4:7.537946e4f3e7b
busybox@1.36.1-r0
1.36.1-r1
1
flanksource/vcluster-sync-host-secrets:v0.1.6bd3294c20a60
busybox@1.36.1-r0
1.36.1-r1
1
galaxy/galaxy-init:v18.010267bad550e6
busybox@1:1.21.0-1ubuntu1
1:1.21.0-1ubuntu1.4+esm1
1
galaxy/galaxy-stable:v18.018e577a626dfd
busybox@1:1.21.0-1ubuntu1
1:1.21.0-1ubuntu1.4+esm1
1
glenndehaan/sunflare-tools:latesta5b3f1dd865d
busybox@1.36.1-r0
1.36.1-r1
1
haproxytech/haproxy-alpine:2.8.08951be4b4e1c
busybox@1.36.1-r0
1.36.1-r1
1
hetznercloud/hcloud-cloud-controller-manager:v1.16.08c07e6d7a76c
busybox@1.36.1-r0
1.36.1-r1
1
i4trust/activation-service:2.2.09f3719176893
busybox@1.36.1-r0
1.36.1-r1
1
invoiceninja/invoiceninja:5.6.241437916dee01
busybox@1.36.1-r0
1.36.1-r1
1
iomesh/prepare-csi:v1.0.3-rc0063b18afb6a1
busybox@1.36.1-r0
1.36.1-r1
1
iomesh/prepare-csi:v1.0.24206d42b92f1
busybox@1.36.1-r0
1.36.1-r1
1
kubebb/bff-server:v0.2.0-202312040fbb732379bc
busybox@1.36.1-r0
1.36.1-r1
1
kubebb/component-store:latestfd8ecbd73213
busybox@1.36.1-r0
1.36.1-r1
1
kubebb/mesh-operator:v5.7.0163ebbfc7a82
busybox@1.36.1-r0
1.36.1-r1
1
kubesuite/kubereport:latest0262424ee702
busybox@1.36.0-r9
1.36.1-r1
1
kubevious/collector:1.2.1f58226f9d84e
busybox@1.36.1-r0
1.36.1-r1
1
library/alpine:3.18.002bb6f428431
busybox@1.36.0-r9
1.36.1-r1
1
library/alpine:3.18.282d1e9d7ed48
busybox@1.36.1-r0
1.36.1-r1
1
library/docker:24.0.2-dind1d148deae16a
busybox@1.36.1-r0
1.36.1-r1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.