StackRadar

CVE-2023-26115

Medium

Advisory

Published 22 Jun 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.017
76th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
120
of 17,781 indexed, latest versions
Container images
120
deployed by those charts
Fix available
1 of 1
affected package

word-wrap vulnerable to Regular Expression Denial of Service

Carried by container images the latest versions of 120 of 17,781 indexed charts deploy, on 120 images.

Affected packageAffected versionsFixed inImages
word-wrapnpm1.2.31.2.4120
OSV records
GHSA-j8xg-fqg3-53r7

Charts affected

120 by stars
ChartLatestAffected imagesRadar Score
outlineoutline0.0.91 of 4See more

outline outline 0.0.9

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
outlinewiki/outline:0.69.1d060dcd8f9aa
word-wrap@1.2.3
1.2.4

Open the chart page →

4,431
code-serverdeploy-code-server1.0.31 of 2See more

code-server deploy-code-server 1.0.3

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
codercom/code-server:3.10.247605610ad8d
word-wrap@1.2.3
1.2.4

Open the chart page →

4,577
redisinsightheywood8-helm-chartsVerified publisher0.4.51 of 1See more

redisinsight heywood8-helm-charts 0.4.5

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
heywood8/redisinsight:2.28.00bc9ab313d37
word-wrap@1.2.3
1.2.4

Open the chart page →

2,828
misskeyalytiVerified publisher1.0.01 of 1See more

misskey alyti 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
misskey/misskey:12.110.1e08b7c478093
word-wrap@1.2.3
1.2.4

Open the chart page →

5,251
carbonetes-analyzercarbonetes-analyzerVerified publisher1.0.61 of 1See more

carbonetes-analyzer carbonetes-analyzer 1.0.6

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
carbonetes/carbonetes-analyzer:1.0.31b9b93c9a37f
word-wrap@1.2.3
1.2.4

Open the chart page →

1,829
wikijsgeek-cookbookVerified publisher6.4.21 of 1See more

wikijs geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
word-wrap@1.2.3
1.2.4

Open the chart page →

5,946
klusterviewklusterviewVerified publisher0.1.01 of 4See more

klusterview klusterview 0.1.0

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
kyleslugg/klusterview:latestba8c36dfdfbd
word-wrap@1.2.3
1.2.4

Open the chart page →

3,795
kubeflowkubeflow1.6.21 of 45See more

kubeflow kubeflow 1.6.2

1 of the 45 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
kubeflownotebookswg/centraldashboard:v1.6.137300551dea6
word-wrap@1.2.3
1.2.4

Open the chart page →

96,941
code-serveralekcVerified publisher0.1.11 of 1See more

code-server alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
linuxserver/code-server:4.10.1a5e43a05ae79
word-wrap@1.2.3
1.2.4

Open the chart page →

8,212
nightscoutgabe565Verified publisher0.13.01 of 2See more

nightscout gabe565 0.13.0

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:15.0.2ad29ca7a4de6
word-wrap@1.2.3
1.2.4

Open the chart page →

2,521
mealiegeek-cookbookVerified publisher5.1.21 of 2See more

mealie geek-cookbook 5.1.2

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
word-wrap@1.2.3
1.2.4

Open the chart page →

7,579
zwavejs2mqttgeek-cookbookVerified publisher5.4.21 of 1See more

zwavejs2mqtt geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
word-wrap@1.2.3
1.2.4

Open the chart page →

3,476
kubeviouskubevious1.2.21 of 7See more

kubevious kubevious 1.2.2

1 of the 7 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
kubevious/guard:1.2.19bf567704de2
word-wrap@1.2.3
1.2.4

Open the chart page →

14,204
kobotoolboxone-acre-fundVerified publisher0.7.42 of 9See more

kobotoolbox one-acre-fund 0.7.4

2 of the 9 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
enketo/enketo-express:3.0.4dcad9c2273f6
word-wrap@1.2.3
1.2.4
kobotoolbox/kpi:2.022.24dbcacc01bccd4
word-wrap@1.2.3
1.2.4

Open the chart page →

18,517
n8none-acre-fundVerified publisher0.1.521 of 3See more

n8n one-acre-fund 0.1.52

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
n8nio/n8n:0.212.0a9195bc499a3
word-wrap@1.2.3
1.2.4

Open the chart page →

7,776
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
word-wrap@1.2.3
1.2.4

Open the chart page →

24,488
predatorzooz1.7.01 of 1See more

predator zooz 1.7.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
zooz/predator:1.6f491d1f7a865
word-wrap@1.2.3
1.2.4

Open the chart page →

2,851
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-kbn:latest0570b27bb7c2
word-wrap@1.2.3
1.2.4

Open the chart page →

17,896
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
word-wrap@1.2.3
1.2.4

Open the chart page →

10,730
mastodondefault-ghVerified publisher0.3.11 of 3See more

mastodon default-gh 0.3.1

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
word-wrap@1.2.3
1.2.4

Open the chart page →

5,056
joplin-serverdjjudas21Verified publisher5.5.81 of 1See more

joplin-server djjudas21 5.5.8

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
joplin/server:2.14.2-betab87564ef34e9
word-wrap@1.2.3
1.2.4

Open the chart page →

3,925
ranetogabisonfire0.1.21 of 1See more

raneto gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
word-wrap@1.2.3
1.2.4

Open the chart page →

2,519
ghostgeek-cookbookVerified publisher2.2.01 of 1See more

ghost geek-cookbook 2.2.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
library/ghost:4.37.0767230c0f263
word-wrap@1.2.3
1.2.4

Open the chart page →

4,260
magic-mirrorgeek-cookbookVerified publisher4.4.21 of 1See more

magic-mirror geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
word-wrap@1.2.3
1.2.4

Open the chart page →

4,405
recipesgeek-cookbookVerified publisher6.6.21 of 2See more

recipes geek-cookbook 6.6.2

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
vabene1111/recipes:1.0.5.2ec4e9e2905b0
word-wrap@1.2.3
1.2.4

Open the chart page →

7,801
elasticinseefrlab2.2.01 of 2See more

elastic inseefrlab 2.2.0

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
library/kibana:7.17.3e2e2031c15be
word-wrap@1.2.3
1.2.4

Open the chart page →

17,284
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
word-wrap@1.2.3
1.2.4

Open the chart page →

3,369
dashykrzwiatrzyk1.0.01 of 1See more

dashy krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
word-wrap@1.2.3
1.2.4

Open the chart page →

3,143
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
word-wrap@1.2.3
1.2.4

Open the chart page →

20,403
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
word-wrap@1.2.3
1.2.4
treskon/portrait-ui:DEV-lateste7970783bc8d
word-wrap@1.2.3
1.2.4

Open the chart page →

31,844
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
word-wrap@1.2.3
1.2.4

Open the chart page →

6,879
testhubteshubVerified publisher0.1.41 of 3See more

testhub teshub 0.1.4

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
testhubio/testhub-frontend:on-preme86c2db53be8
word-wrap@1.2.3
1.2.4

Open the chart page →

7,517
scrapoxywiremindVerified publisher0.3.41 of 1See more

scrapoxy wiremind 0.3.4

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
wiremind/scrapoxy:lateste7048929a676
word-wrap@1.2.3
1.2.4

Open the chart page →

2,154
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
word-wrap@1.2.3
1.2.4

Open the chart page →

9,783
admin-portaladmin-web-portal1.2.11 of 2See more

admin-portal admin-web-portal 1.2.1

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
soulou2019/node-server:latest5e6ecfcc109e
word-wrap@1.2.3
1.2.4

Open the chart page →

3,419
openhab-cloudandibraeuVerified publisher1.2.61 of 1See more

openhab-cloud andibraeu 1.2.6

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
openhab/openhab-cloud:a8138a329dd2bac8c4b
word-wrap@1.2.3
1.2.4

Open the chart page →

3,437
angular-chartangular-application0.1.01 of 1See more

angular-chart angular-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ibarreche/cloud-front-ci:latestc8970ac1c8dc
word-wrap@1.2.3
1.2.4

Open the chart page →

3,237
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
assistiot/open_api_frontend:1.0.1f11d82defc70
word-wrap@1.2.3
1.2.4

Open the chart page →

18,277
shynetatrox0.1.11 of 1See more

shynet atrox 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.12.0e821e31140f7
word-wrap@1.2.3
1.2.4

Open the chart page →

5,507
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ltdstudio/terraforming-mars:latest0e76c6f4eac0
word-wrap@1.2.3
1.2.4

Open the chart page →

7,152
opendistro-esbeeinventor1.15.11 of 3See more

opendistro-es beeinventor 1.15.1

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
word-wrap@1.2.3
1.2.4

Open the chart page →

5,806
mx-apibicarus-labs0.1.01 of 4See more

mx-api bicarus-labs 0.1.0

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
word-wrap@1.2.3
1.2.4

Open the chart page →

4,455
developer-dashboardcloud-native-toolkit1.4.11 of 1See more

developer-dashboard cloud-native-toolkit 1.4.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
word-wrap@1.2.3
1.2.4

Open the chart page →

25,456
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
jupyterhub/jupyterhub:5.4.63974ba945e65
word-wrap@1.2.3
1.2.4

Open the chart page →

13,220
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
conduction/conduction-ui-app:devd591f5e6f2a9
word-wrap@1.2.3
1.2.4

Open the chart page →

12,907
containers-security-chartscontainers-security0.1.01 of 7See more

containers-security-charts containers-security 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
coldatom/containers-security-front:latest7c2fbbb41bcf
word-wrap@1.2.3
1.2.4

Open the chart page →

9,146
quickchartcowboysysopVerified publisher5.0.01 of 1See more

quickchart cowboysysop 5.0.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ianw/quickchart:v1.7.1dc49dd460c37
word-wrap@1.2.3
1.2.4

Open the chart page →

5,488
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
wazuh/wazuh-dashboard:4.4.11787550d2358
word-wrap@1.2.3
1.2.4

Open the chart page →

13,852
difydify1.0.01 of 4See more

dify dify 1.0.0

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
word-wrap@1.2.3
1.2.4

Open the chart page →

19,224
frontend-charteks-3-tier-app-chart0.1.01 of 1See more

frontend-chart eks-3-tier-app-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
arfath29/3-tier-app-frontend:latest384b3e377f47
word-wrap@1.2.3
1.2.4

Open the chart page →

3,744

Container images carrying it

120 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
mojaloop/event-sidecar:v11.0.189b8ab71b74b
word-wrap@1.2.3
1.2.4
5
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
word-wrap@1.2.3
1.2.4
3
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
word-wrap@1.2.3
1.2.4
2
governify/assets-manager:v1.4.12987672448c7
word-wrap@1.2.3
1.2.4
2
governify/director:v1.4.0608c6940bb98
word-wrap@1.2.3
1.2.4
2
governify/registry:v3.4.0d3f37f4f8168
word-wrap@1.2.3
1.2.4
2
governify/render:v2.2.0daeca1ce28e6
word-wrap@1.2.3
1.2.4
2
governify/reporter:v2.2.038595913458f
word-wrap@1.2.3
1.2.4
2
mojaloop/central-ledger:v13.14.01abc8a7aa71c
word-wrap@1.2.3
1.2.4
2
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
word-wrap@1.2.3
1.2.4
2
opensearchproject/opensearch-dashboards:1.0.039695180364b
word-wrap@1.2.3
1.2.4
2
outlinewiki/outline:0.69.1d060dcd8f9aa
word-wrap@1.2.3
1.2.4
2
shahanafarooqui/rtl:0.13.3e2195188a451
word-wrap@1.2.3
1.2.4
2
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
word-wrap@1.2.3
1.2.4
2
tzahi12345/youtubedl-material:4.3.2:latest2f943d584711
word-wrap@1.2.3
1.2.4
2
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
word-wrap@1.2.3
1.2.4
2
arfath29/3-tier-app-frontend:latest384b3e377f47
word-wrap@1.2.3
1.2.4
1
arturisimo/server-urjc:v1.0d8dc4430531e
word-wrap@1.2.3
1.2.4
1
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
word-wrap@1.2.3
1.2.4
1
assistiot/cybersecurity-monitoring_ir-kbn:latest0570b27bb7c2
word-wrap@1.2.3
1.2.4
1
assistiot/open_api_frontend:1.0.1f11d82defc70
word-wrap@1.2.3
1.2.4
1
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
word-wrap@1.2.3
1.2.4
1
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
word-wrap@1.2.3
1.2.4
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
word-wrap@1.2.3
1.2.4
1
carbonetes/carbonetes-analyzer:1.0.31b9b93c9a37f
word-wrap@1.2.3
1.2.4
1
catalysm/csmm:latestf003b35f54d9
word-wrap@1.2.3
1.2.4
1
ccjacobs14/amazon:59a9b14a6f09e
word-wrap@1.2.3
1.2.4
1
coderaiser/cloudcmd:16.6.1b34a9775c7ce
word-wrap@1.2.3
1.2.4
1
codercom/code-server:4.11.0-debian1e2cc688008e
word-wrap@1.2.3
1.2.4
1
codercom/code-server:3.10.247605610ad8d
word-wrap@1.2.3
1.2.4
1
coldatom/containers-security-front:latest7c2fbbb41bcf
word-wrap@1.2.3
1.2.4
1
conduction/conduction-ui-app:devd591f5e6f2a9
word-wrap@1.2.3
1.2.4
1
enketo/enketo-express:3.0.4dcad9c2273f6
word-wrap@1.2.3
1.2.4
1
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
word-wrap@1.2.3
1.2.4
1
ethersphere/onboarding-faucet:0.3.0513154aab230
word-wrap@1.2.3
1.2.4
1
fiware/idm:8.3.3a1b6ed4ae84f
word-wrap@1.2.3
1.2.4
1
fiware/iotagent-ul:1.14.0fe11f55a926d
word-wrap@1.2.3
1.2.4
1
hecrom/myweatherprocessingreactclient:1.3.115454b54d5b28
word-wrap@1.2.3
1.2.4
1
helga09/shoes_ukr:v1.1.17999bc8b77c0
word-wrap@1.2.3
1.2.4
1
heywood8/redisinsight:2.28.00bc9ab313d37
word-wrap@1.2.3
1.2.4
1
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
word-wrap@1.2.3
1.2.4
1
hugohg34/server:0.0.2503e5d8960ff
word-wrap@1.2.3
1.2.4
1
ianw/quickchart:v1.7.1dc49dd460c37
word-wrap@1.2.3
1.2.4
1
ibarreche/cloud-front-ci:latestc8970ac1c8dc
word-wrap@1.2.3
1.2.4
1
ibarreche/cloud-indexer-ci:latestb7a08274e69f
word-wrap@1.2.3
1.2.4
1
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
word-wrap@1.2.3
1.2.4
1
jayfong/yapi:1.10.2163e5d621910
word-wrap@1.2.3
1.2.4
1
joplin/server:3.0-beta52af57880c0e
word-wrap@1.2.3
1.2.4
1
joplin/server:2.14.2-betab87564ef34e9
word-wrap@1.2.3
1.2.4
1
junktext/getting-started:1.0.5a70936c04aed
word-wrap@1.2.3
1.2.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.