StackRadar

CVE-2023-26115

Medium

Advisory

Published 22 Jun 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.017
76th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
120
of 17,781 indexed, latest versions
Container images
120
deployed by those charts
Fix available
1 of 1
affected package

word-wrap vulnerable to Regular Expression Denial of Service

Carried by container images the latest versions of 120 of 17,781 indexed charts deploy, on 120 images.

Affected packageAffected versionsFixed inImages
word-wrapnpm1.2.31.2.4120
OSV records
GHSA-j8xg-fqg3-53r7

Charts affected

120 by stars
ChartLatestAffected imagesRadar Score
dashynas-helm-chartsVerified publisher1.0.41 of 1See more

dashy nas-helm-charts 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
lissy93/dashy:2.0.51991f7be5ed0
word-wrap@1.2.3
1.2.4

Open the chart page →

3,269
indexer-toolsnodeifyVerified publisher2.1.11 of 1See more

indexer-tools nodeify 2.1.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
word-wrap@1.2.3
1.2.4

Open the chart page →

2,919
registration-ms-front-helm-chartnotesprojectchart0.1.01 of 1See more

registration-ms-front-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
word-wrap@1.2.3
1.2.4

Open the chart page →

15,187
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
linuxserver/codimd:latestb801bbcf6386
word-wrap@1.2.3
1.2.4

Open the chart page →

27,465
powerdnspuckpuck2.0.01 of 4See more

powerdns puckpuck 2.0.0

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
pschiffe/pdns-admin:0.4.137ebba8c2b8f
word-wrap@1.2.3
1.2.4

Open the chart page →

4,616
mastodonrivals-spaceVerified publisher3.1.21 of 3See more

mastodon rivals-space 3.1.2

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
word-wrap@1.2.3
1.2.4

Open the chart page →

6,026
joplinrubxkubeVerified publisher1.3.11 of 2See more

joplin rubxkube 1.3.1

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
joplin/server:3.0-beta52af57880c0e
word-wrap@1.2.3
1.2.4

Open the chart page →

7,413
outlineschmitzis0.0.81 of 4See more

outline schmitzis 0.0.8

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
outlinewiki/outline:0.69.1d060dcd8f9aa
word-wrap@1.2.3
1.2.4

Open the chart page →

4,431
dashysergiotocaliniVerified publisher1.0.01 of 1See more

dashy sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
word-wrap@1.2.3
1.2.4

Open the chart page →

3,143
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
helga09/shoes_ukr:v1.1.17999bc8b77c0
word-wrap@1.2.3
1.2.4

Open the chart page →

7,574
pwssoketi0.2.41 of 1See more

pws soketi 0.2.4

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
word-wrap@1.2.3
1.2.4

Open the chart page →

3,228
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
word-wrap@1.2.3
1.2.4

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
word-wrap@1.2.3
1.2.4

Open the chart page →

11,554
fdi-dotstatsuite-dlmstatcan0.3.11 of 1See more

fdi-dotstatsuite-dlm statcan 0.3.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
word-wrap@1.2.3
1.2.4

Open the chart page →

3,881
vehicle-dashboardtest-vehi-dash0.1.01 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
samajh/alprfrontend:latest05ef4fddbb75
word-wrap@1.2.3
1.2.4

Open the chart page →

20,270
csmmth-chartsVerified publisher0.1.01 of 3See more

csmm th-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
catalysm/csmm:latestf003b35f54d9
word-wrap@1.2.3
1.2.4

Open the chart page →

3,576
kubernetes-external-secretstrozz6.3.01 of 1See more

kubernetes-external-secrets trozz 6.3.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
word-wrap@1.2.3
1.2.4

Open the chart page →

2,838
genievhdirkVerified publisher0.1.31 of 1See more

genie vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
stanfordoval/almond-server:latest1a63cdccedaf
word-wrap@1.2.3
1.2.4

Open the chart page →

3,129
websitewaldo-visionVerified publisher0.33.01 of 2See more

website waldo-vision 0.33.0

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
word-wrap@1.2.3
1.2.4

Open the chart page →

3,474
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
word-wrap@1.2.3
1.2.4

Open the chart page →

5,806

Container images carrying it

120 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
junktext/getting-started:1.0.34d44adf5a4da2
word-wrap@1.2.3
1.2.4
1
jupyterhub/jupyterhub:5.4.63974ba945e65
word-wrap@1.2.3
1.2.4
1
keyoxide/keyoxide:stable96f27a71269d
word-wrap@1.2.3
1.2.4
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
word-wrap@1.2.3
1.2.4
1
kubebb/bff-server:v0.2.0-202312040fbb732379bc
word-wrap@1.2.3
1.2.4
1
kubeflownotebookswg/centraldashboard:v1.6.137300551dea6
word-wrap@1.2.3
1.2.4
1
kubeflownotebookswg/centraldashboard:v1.9.2af55c22ef5de
word-wrap@1.2.3
1.2.4
1
kubevious/guard:1.2.19bf567704de2
word-wrap@1.2.3
1.2.4
1
kubevious/parser:1.0.151acf1a1f0b47
word-wrap@1.2.3
1.2.4
1
kubevious/workload-operator:1.0.20b0f4c507eb6
word-wrap@1.2.3
1.2.4
1
kvalitetsit/kithosting-networkpolicytests:0.0.12b99cfa3c5df
word-wrap@1.2.3
1.2.4
1
kyleslugg/klusterview:latestba8c36dfdfbd
word-wrap@1.2.3
1.2.4
1
langgenius/dify-api:1.0.0066035f93856
word-wrap@1.2.3
1.2.4
1
langgenius/dify-api:0.6.11fca918260dd6
word-wrap@1.2.3
1.2.4
1
library/ghost:4.37.0767230c0f263
word-wrap@1.2.3
1.2.4
1
library/ghost:5.79.083f7bf209844
word-wrap@1.2.3
1.2.4
1
library/kibana:7.17.8c5781ba340ef
word-wrap@1.2.3
1.2.4
1
library/kibana:7.17.3e2e2031c15be
word-wrap@1.2.3
1.2.4
1
linuxserver/code-server:4.10.1a5e43a05ae79
word-wrap@1.2.3
1.2.4
1
linuxserver/codimd:latestb801bbcf6386
word-wrap@1.2.3
1.2.4
1
lissy93/dashy:2.0.51991f7be5ed0
word-wrap@1.2.3
1.2.4
1
lsstsqre/squareone:0.4.09ded78e7fe03
word-wrap@1.2.3
1.2.4
1
ltdstudio/terraforming-mars:latest0e76c6f4eac0
word-wrap@1.2.3
1.2.4
1
milesmcc/shynet:v0.13.1ba54f7797a6b
word-wrap@1.2.3
1.2.4
1
milesmcc/shynet:v0.12.0e821e31140f7
word-wrap@1.2.3
1.2.4
1
misskey/misskey:12.110.1e08b7c478093
word-wrap@1.2.3
1.2.4
1
mitchxxx/amazon:214e72480ec63a
word-wrap@1.2.3
1.2.4
1
mozilla/sentencecollector:2.0.91da6ff5c4895
word-wrap@1.2.3
1.2.4
1
n8nio/n8n:0.212.0a9195bc499a3
word-wrap@1.2.3
1.2.4
1
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
word-wrap@1.2.3
1.2.4
1
nightscout/cgm-remote-monitor:15.0.2ad29ca7a4de6
word-wrap@1.2.3
1.2.4
1
nightscout/cgm-remote-monitor:15.0.3f604dc4c03ca
word-wrap@1.2.3
1.2.4
1
ohmyform/ohmyform:1.0.3afe53f4acdb1
word-wrap@1.2.3
1.2.4
1
ooghenekaro/amazon:latest03394ba1d6d8
word-wrap@1.2.3
1.2.4
1
openbas/caldera-server:5.1.0a277796d9724
word-wrap@1.2.3
1.2.4
1
openhab/openhab-cloud:a8138a329dd2bac8c4b
word-wrap@1.2.3
1.2.4
1
pschiffe/pdns-admin:0.4.137ebba8c2b8f
word-wrap@1.2.3
1.2.4
1
requarks/wiki:canary-2.5.2438b5865a7386c
word-wrap@1.2.3
1.2.4
1
roadiehq/community-backstage-image:latestef355bf5b639
word-wrap@1.2.3
1.2.4
1
samajh/alprfrontend:latest05ef4fddbb75
word-wrap@1.2.3
1.2.4
1
shinobisystems/shinobi:dev3ca746937856
word-wrap@1.2.3
1.2.4
1
shinobisystems/shinobi:latestc2f5ce2e1067
word-wrap@1.2.3
1.2.4
1
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
word-wrap@1.2.3
1.2.4
1
soulou2019/node-server:latest5e6ecfcc109e
word-wrap@1.2.3
1.2.4
1
stanfordoval/almond-server:latest1a63cdccedaf
word-wrap@1.2.3
1.2.4
1
testhubio/testhub-frontend:on-preme86c2db53be8
word-wrap@1.2.3
1.2.4
1
tooljet/tooljet-ce:v1.18.0c85a4720e42e
word-wrap@1.2.3
1.2.4
1
treskon/portrait-ui:DEV-lateste7970783bc8d
word-wrap@1.2.3
1.2.4
1
vabene1111/recipes:1.0.5.2ec4e9e2905b0
word-wrap@1.2.3
1.2.4
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
word-wrap@1.2.3
1.2.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.