StackRadar

CVE-2022-48554

Medium

Advisory

Published 22 Aug 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
78
of 17,781 indexed, latest versions
Container images
104
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: file security update

Carried by container images the latest versions of 78 of 17,781 indexed charts deploy, on 104 images.

Affected packageAffected versionsFixed inImages
filedeb1:5.39-3, 1:5.41-31:5.39-3+deb11u1, 1:5.41-3ubuntu0.179
filerpm5.39-10.el9, 5.39-12.1.el9_2, 5.39-12.el9, 5.39-14.el90:5.39-16.el925
OSV records
RHSA-2024:2512RLSA-2024:2512UBUNTU-CVE-2022-48554DSA-5489-1
Also known as
USN-6359-1

Charts affected

78 by stars
ChartLatestAffected imagesRadar Score
zabbixcetic3.1.31 of 5See more

zabbix cetic 3.1.3

1 of the 5 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
file@1:5.41-3
1:5.41-3ubuntu0.1

Open the chart page →

33,725
docker-mailserverdocker-mailserver0.4.01 of 2See more

docker-mailserver docker-mailserver 0.4.0

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
mailserver/docker-mailserver:11.0.0e0809756dc96
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,382
mauticone-acre-fundVerified publisher0.1.71 of 3See more

mautic one-acre-fund 0.1.7

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
mautic/mautic:v4-apache94ea4acf4049
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,667
passboltcnieg1.1.171 of 2See more

passbolt cnieg 1.1.17

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,543
kubeflowkubeflow1.6.21 of 45See more

kubeflow kubeflow 1.6.2

1 of the 45 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

96,941
piholesavepointsamVerified publisher0.2.01 of 1See more

pihole savepointsam 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
pihole/pihole:2023.05.0b83258064f54
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,048
k8s-telegram-sendertelegram-senderVerified publisher0.0.11 of 1See more

k8s-telegram-sender telegram-sender 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
danuk/telegram-sender:0.0.1026560388070
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,048
roundcubevolker-raschekVerified publisher0.3.11 of 1See more

roundcube volker-raschek 0.3.1

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
roundcube/roundcubemail:1.5.3-apachea8ea6fd751dc
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,797
wombatwombatOfficialVerified publisher4.1.281 of 1See more

wombat wombat 4.1.28

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
erlangsolutions/wombatoam:4.1.284680c990147a
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,697
clearml-servingallegroaiVerified publisher1.6.22 of 9See more

clearml-serving allegroai 1.6.2

2 of the 9 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
allegroai/clearml-serving-inference:1.3.0fca885e8cfc6
file@1:5.39-3
1:5.39-3+deb11u1
allegroai/clearml-serving-statistics:1.3.0c58d9da7bdf8
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

17,877
block-buster-helm-appblock-buster-app7.6.01 of 1See more

block-buster-helm-app block-buster-app 7.6.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
siddharth67/block-buster-dev:7.6.04e1151ea5774
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

977
passbolt-hachristianhuthVerified publisher6.0.11 of 4See more

passbolt-ha christianhuth 6.0.1

1 of the 4 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

10,817
mastodondefault-ghVerified publisher0.3.11 of 3See more

mastodon default-gh 0.3.1

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

5,056
frontenddemo-application0.1.01 of 1See more

frontend demo-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
azhar008/flaskapplication:latesta1e827b0adea
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,558
deepstackgeek-cookbookVerified publisher1.5.21 of 2See more

deepstack geek-cookbook 1.5.2

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
robmarkcole/deepstack-ui:latest410275726459
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

5,305
monicageek-cookbookVerified publisher8.2.01 of 1See more

monica geek-cookbook 8.2.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
library/monica:3.7.0-apacheceb1ba4196ab
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,096
paperlessgeek-cookbookVerified publisher9.2.01 of 1See more

paperless geek-cookbook 9.2.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,924
webtreesgeek-cookbookVerified publisher2.2.01 of 1See more

webtrees geek-cookbook 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,646
supersetinseefrlab1.4.01 of 4See more

superset inseefrlab 1.4.0

1 of the 4 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

7,129
mlflow-servermlflowserver0.1.91 of 3See more

mlflow-server mlflowserver 0.1.9

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
buntha/mlflow:2.1.1154542cc3083
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

5,804
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
file@5.39-14.el9
0:5.39-16.el9

Open the chart page →

2,097
pritunl-slack-apppritunl-slack-appVerified publisher0.1.71 of 1See more

pritunl-slack-app pritunl-slack-app 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,871
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
rm3l/dev-feed-api:latest9a7f732245a3
file@5.39-12.1.el9_2
0:5.39-16.el9

Open the chart page →

9,837
postfixadminvolker-raschekVerified publisher0.3.11 of 1See more

postfixadmin volker-raschek 0.3.1

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
volkerraschek/postfixadmin:3.3.13c4f10aebf87b
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,083
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
assistiot/resource-provisioning_prc:1.0.08b5d118bdf0e
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

8,032
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
adolfintel/speedtest:latest1f828fe83374
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

7,152
block-buster-helm-appbb-app-helm-chartsVerified publisher7.6.21 of 1See more

block-buster-helm-app bb-app-helm-charts 7.6.2

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
siddharth67/block-buster-dev:7.6.04e1151ea5774
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

977
block-buster-helm-appblockbaster-helmapp7.6.01 of 1See more

block-buster-helm-app blockbaster-helmapp 7.6.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
siddharth67/block-buster-dev:7.6.04e1151ea5774
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

977
camerahubcamerahub0.10.211 of 2See more

camerahub camerahub 0.10.21

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
camerahub/camerahub:0.36.23a5af37dd6e1b
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

2,507
phpcamptocamp31.0.01 of 1See more

php camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
library/php:7.3-apacheb9872cd287ef
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,309
chart-appchart-app0.3.01 of 2See more

chart-app chart-app 0.3.0

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
n22107670/sample-app:0.4.08f3072db7aeb
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,775
robot-shopcloud-native-toolkit1.1.12 of 12See more

robot-shop cloud-native-toolkit 1.1.1

2 of the 12 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
robotshop/rs-payment:latest774b52c6180d
file@1:5.39-3
1:5.39-3+deb11u1
robotshop/rs-ratings:latest4899c686c249
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

29,555
openldapcsic-charts0.1.11 of 2See more

openldap csic-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ldapaccountmanager/lam:8.0.1d46cf25d1dda
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

5,293
apachedevops0.1.02 of 4See more

apache devops 0.1.0

2 of the 4 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
file@1:5.39-3
1:5.39-3+deb11u1
ghcr.io/codingducksrl/laravel:8.15be52524664c
file@1:5.41-3
1:5.41-3ubuntu0.1

Open the chart page →

30,031
laraveldevops0.10.32 of 4See more

laravel devops 0.10.3

2 of the 4 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
file@1:5.39-3
1:5.39-3+deb11u1
ghcr.io/codingducksrl/laravel:8.15be52524664c
file@1:5.41-3
1:5.41-3ubuntu0.1

Open the chart page →

29,033
wordpressdevops0.12.02 of 4See more

wordpress devops 0.12.0

2 of the 4 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
file@1:5.39-3
1:5.39-3+deb11u1
ghcr.io/codingducksrl/wordpress:6.0.23113c0960507
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

12,992
helpdeskdoubanVerified publisher0.3.31 of 2See more

helpdesk douban 0.3.3

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
douz/helpdesk:latest4384103d0219
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

4,550
tinyproxy-exporterdoubanVerified publisher0.1.21 of 1See more

tinyproxy-exporter douban 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/leoquote/tinyproxy_exporter:master6b4103d88dbb
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

3,421
drogue-cloud-coredrogue-iotVerified publisher0.7.1118 of 22See more

drogue-cloud-core drogue-iot 0.7.11

18 of the 22 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
file@5.39-10.el9
0:5.39-16.el9
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
file@5.39-10.el9
0:5.39-16.el9

Open the chart page →

55,666
pgdump-to-s3duck-helm0.1.41 of 1See more

pgdump-to-s3 duck-helm 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/ducksify/pgdump-to-s3:latestc42c0946bd0f
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,362
reddarkemmas-chartsVerified publisher0.0.21 of 1See more

reddark emmas-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/0xemma/reddark:main2a115e991894
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,998
escvmschedulerescvmscheduler1.0.71 of 3See more

escvmscheduler escvmscheduler 1.0.7

1 of the 3 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
swisscomcloud/esc-vm-scheduler-web:latestb6639d1a922e
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

4,678
huntingfactlyVerified publisher0.4.141 of 1See more

hunting factly 0.4.14

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
factly/hunting:0.2.0-stagv1.2ca5bc71d1d5c
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

4,085
smeejasfanzynoodle0.0.11 of 1See more

smeejas fanzynoodle 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
fanzynoodle/smeejas:0.0.15f9916c1a287
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

4,127
activityrelayfedihost0.1.41 of 2See more

activityrelay fedihost 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
stratospire/activityrelay:0.2.3a4c34cb01117
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

13,450
icinga2g0dscookie0.2.01 of 1See more

icinga2 g0dscookie 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

4,428
passboltg0dscookie0.5.21 of 2See more

passbolt g0dscookie 0.5.2

1 of the 2 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

7,940
cryptofoliogeek-cookbookVerified publisher1.4.21 of 1See more

cryptofolio geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
xtrendence/cryptofolio:V.2.2.0e6e6612bb94c
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

1,493
wjh-rechnerit-at-mOfficialVerified publisher1.0.41 of 1See more

wjh-rechner it-at-m 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/wjh-rechner:1.0.0bc70cdb5a01a
file@5.39-14.el9
0:5.39-16.el9

Open the chart page →

3,460
thehiveittrident-oss0.1.01 of 6See more

thehive ittrident-oss 0.1.0

1 of the 6 container images this version deploys carry CVE-2022-48554.

Container imageDigestPackageFixed in
thehiveproject/cortex:3.1.7f4bc64fb8844
file@1:5.39-3
1:5.39-3+deb11u1

Open the chart page →

6,122

Container images carrying it

104 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
file@1:5.39-3
1:5.39-3+deb11u1
1
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
file@1:5.39-3
1:5.39-3+deb11u1
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
file@5.39-12.1.el9_2
0:5.39-16.el9
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.