StackRadar

CVE-2022-48554

Medium

Advisory

Published 22 Aug 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
78
of 17,781 indexed, latest versions
Container images
104
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: file security update

Carried by container images the latest versions of 78 of 17,781 indexed charts deploy, on 104 images.

Affected packageAffected versionsFixed inImages
filedeb1:5.39-3, 1:5.41-31:5.39-3+deb11u1, 1:5.41-3ubuntu0.179
filerpm5.39-10.el9, 5.39-12.1.el9_2, 5.39-12.el9, 5.39-14.el90:5.39-16.el925
OSV records
RHSA-2024:2512RLSA-2024:2512UBUNTU-CVE-2022-48554DSA-5489-1
Also known as
USN-6359-1

Charts affected

78 by stars
ChartLatestAffected imagesRadar Score
sample-appkubeuest0.1.31 of 1See more

sample-app kubeuest 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
michaelepitech/sample-app:latestaf51d61c19f5
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,427
large-systems-djangolarge-systems-djangoVerified publisher1.0.01 of 1See more

large-systems-django large-systems-django 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ha33ona/python:test6affdfc644d0
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,891
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-ui-react:latestba6853e35c60
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

5,905
face-recognitionmoreillonVerified publisher0.2.41 of 3See more

face-recognition moreillon 0.2.4

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
moreillon/face-recognition-fastapi:x86bacb2ddd8394
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

8,556
betydbncsaVerified publisher0.6.11 of 4See more

betydb ncsa 0.6.1

1 of the 4 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
pecan/bety:5.4.1f825d480cd62
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

9,542
pecanncsaVerified publisher0.6.22 of 15See more

pecan ncsa 0.6.2

2 of the 15 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
pecan/bety:5.4.1f825d480cd62
file@1:5.39-3
1:5.39-3+deb11u1
pecan/web:1.7.2814d678c5550
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

14,154
smilencsaVerified publisher1.1.09 of 23See more

smile ncsa 1.1.0

9 of the 23 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
socialmediamacroscope/classification_predict:0.1.24fb86885d64d
file@1:5.39-3
1:5.39-3+deb11u1
socialmediamacroscope/classification_split:0.1.24bfda60829fe
file@1:5.39-3
1:5.39-3+deb11u1
socialmediamacroscope/classification_train:0.1.207477060bba8
file@1:5.39-3
1:5.39-3+deb11u1
socialmediamacroscope/clowder_create_collection:0.1.0c969f7677983
file@1:5.39-3
1:5.39-3+deb11u1
socialmediamacroscope/clowder_create_dataset:0.1.09b4211832429
file@1:5.39-3
1:5.39-3+deb11u1
socialmediamacroscope/clowder_create_space:0.1.0999f2ff2c128
file@1:5.39-3
1:5.39-3+deb11u1
socialmediamacroscope/clowder_list:0.1.051cb17626519
file@1:5.39-3
1:5.39-3+deb11u1
socialmediamacroscope/clowder_upload_file:0.1.274e35f64db68
file@1:5.39-3
1:5.39-3+deb11u1
socialmediamacroscope/screen_name_prompt:0.1.2724f3f5702e0
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

109,294
servernodejs0.0.21 of 1See more

server nodejs 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
maissacrement/pock8snodejs:0.0.16da0db1159da
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,902
liquidsoapnorth141.0.01 of 1See more

liquidsoap north14 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,954
openldapopenldap0.1.11 of 2See more

openldap openldap 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ldapaccountmanager/lam:8.0.1d46cf25d1dda
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

5,293
bpjstk-serviceopenshift1.0.02 of 6See more

bpjstk-service openshift 1.0.0

2 of the 6 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
andrianrf/backoffice-be:latest6036614803d4
file@5.39-12.el9
0:5.39-16.el9
andrianrf/iso-server:latest7da47f525c7d
file@5.39-12.el9
0:5.39-16.el9

Open the chart page →

34,671
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
file@5.39-12.1.el9_2
0:5.39-16.el9

Open the chart page →

8,599
binaryvision-tlophntom0.0.41 of 1See more

binaryvision-tlo phntom 0.0.4

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
phntom/binaryvision-tlo-static:0.0.4e8b9ac93a3dd
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,277
email-managerphntom0.1.221 of 2See more

email-manager phntom 0.1.22

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
phntom/email-manager:0.1.22d8e2a9f2f085
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,565
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

4,642
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/libretime/libretime-legacy:latest35b4531189c2
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

11,149
python-apppython-app-chart0.1.01 of 2See more

python-app python-app-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
mnaggar3396/python-app:latest371d8ed84b15
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,382
python-fastapi-postgrespython-fastapi-postgres0.1.01 of 1See more

python-fastapi-postgres python-fastapi-postgres 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
archish27/python-fastapi-postgres:latest6610071a2101
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,983
remla23-team17remla23-team171.0.02 of 2See more

remla23-team17 remla23-team17 1.0.0

2 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
file@1:5.39-3
1:5.39-3+deb11u1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

4,447
mastodonrivals-spaceVerified publisher3.1.21 of 3See more

mastodon rivals-space 3.1.2

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

6,026
shopwareshopware-storeVerified publisher2.1.11 of 5See more

shopware shopware-store 2.1.1

1 of the 5 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.14.03232ae01d0ff
file@5.39-14.el9
0:5.39-16.el9

Open the chart page →

4,876
phpmyadminsitepilot1.0.11 of 1See more

phpmyadmin sitepilot 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.138437e021deb
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,724
sneakerssneakers1.0.02 of 4See more

sneakers sneakers 1.0.0

2 of the 4 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
helga09/php_shoes_ukr:v1.1.1e283539bcb8c
file@1:5.39-3
1:5.39-3+deb11u1
helga09/shoes_ukr:v1.1.17999bc8b77c0
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

7,574
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,392
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,019
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,132
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,021
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,838

Container images carrying it

104 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
robotshop/rs-ratings:latest4899c686c249
file@1:5.39-3
1:5.39-3+deb11u1
1
roundcube/roundcubemail:1.5.3-apachea8ea6fd751dc
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/classification_predict:0.1.24fb86885d64d
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/classification_split:0.1.24bfda60829fe
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/classification_train:0.1.207477060bba8
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/clowder_create_collection:0.1.0c969f7677983
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/clowder_create_dataset:0.1.09b4211832429
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/clowder_create_space:0.1.0999f2ff2c128
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/clowder_list:0.1.051cb17626519
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/clowder_upload_file:0.1.274e35f64db68
file@1:5.39-3
1:5.39-3+deb11u1
1
socialmediamacroscope/screen_name_prompt:0.1.2724f3f5702e0
file@1:5.39-3
1:5.39-3+deb11u1
1
stratospire/activityrelay:0.2.3a4c34cb01117
file@1:5.39-3
1:5.39-3+deb11u1
1
swisscomcloud/esc-vm-scheduler-web:latestb6639d1a922e
file@1:5.39-3
1:5.39-3+deb11u1
1
thehiveproject/cortex:3.1.7f4bc64fb8844
file@1:5.39-3
1:5.39-3+deb11u1
1
volkerraschek/postfixadmin:3.3.13c4f10aebf87b
file@1:5.39-3
1:5.39-3+deb11u1
1
xtrendence/cryptofolio:V.2.2.0e6e6612bb94c
file@1:5.39-3
1:5.39-3+deb11u1
1
youssef11gaber10/deployment-ui-react:latestba6853e35c60
file@1:5.39-3
1:5.39-3+deb11u1
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
file@1:5.41-3
1:5.41-3ubuntu0.1
1
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/0xemma/reddark:main2a115e991894
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/codingducksrl/wordpress:6.0.23113c0960507
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
file@5.39-10.el9
0:5.39-16.el9
1
ghcr.io/ducksify/pgdump-to-s3:latestc42c0946bd0f
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/it-at-m/wjh-rechner:1.0.0bc70cdb5a01a
file@5.39-14.el9
0:5.39-16.el9
1
ghcr.io/leoquote/tinyproxy_exporter:master6b4103d88dbb
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/libretime/libretime-legacy:latest35b4531189c2
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
file@1:5.39-3
1:5.39-3+deb11u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.