StackRadar

CVE-2023-26115

Medium

Advisory

Published 22 Jun 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.017
76th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
120
of 17,781 indexed, latest versions
Container images
120
deployed by those charts
Fix available
1 of 1
affected package

word-wrap vulnerable to Regular Expression Denial of Service

Carried by container images the latest versions of 120 of 17,781 indexed charts deploy, on 120 images.

Affected packageAffected versionsFixed inImages
word-wrapnpm1.2.31.2.4120
OSV records
GHSA-j8xg-fqg3-53r7

Charts affected

120 by stars
ChartLatestAffected imagesRadar Score
dashynas-helm-chartsVerified publisher1.0.41 of 1See more

dashy nas-helm-charts 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
lissy93/dashy:2.0.51991f7be5ed0
word-wrap@1.2.3
1.2.4

Open the chart page →

3,269
indexer-toolsnodeifyVerified publisher2.1.11 of 1See more

indexer-tools nodeify 2.1.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
word-wrap@1.2.3
1.2.4

Open the chart page →

2,919
registration-ms-front-helm-chartnotesprojectchart0.1.01 of 1See more

registration-ms-front-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
word-wrap@1.2.3
1.2.4

Open the chart page →

15,187
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
linuxserver/codimd:latestb801bbcf6386
word-wrap@1.2.3
1.2.4

Open the chart page →

27,465
powerdnspuckpuck2.0.01 of 4See more

powerdns puckpuck 2.0.0

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
pschiffe/pdns-admin:0.4.137ebba8c2b8f
word-wrap@1.2.3
1.2.4

Open the chart page →

4,616
mastodonrivals-spaceVerified publisher3.1.21 of 3See more

mastodon rivals-space 3.1.2

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
word-wrap@1.2.3
1.2.4

Open the chart page →

6,026
joplinrubxkubeVerified publisher1.3.11 of 2See more

joplin rubxkube 1.3.1

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
joplin/server:3.0-beta52af57880c0e
word-wrap@1.2.3
1.2.4

Open the chart page →

7,413
outlineschmitzis0.0.81 of 4See more

outline schmitzis 0.0.8

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
outlinewiki/outline:0.69.1d060dcd8f9aa
word-wrap@1.2.3
1.2.4

Open the chart page →

4,431
dashysergiotocaliniVerified publisher1.0.01 of 1See more

dashy sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
word-wrap@1.2.3
1.2.4

Open the chart page →

3,143
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
helga09/shoes_ukr:v1.1.17999bc8b77c0
word-wrap@1.2.3
1.2.4

Open the chart page →

7,574
pwssoketi0.2.41 of 1See more

pws soketi 0.2.4

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
word-wrap@1.2.3
1.2.4

Open the chart page →

3,228
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
word-wrap@1.2.3
1.2.4

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
word-wrap@1.2.3
1.2.4

Open the chart page →

11,554
fdi-dotstatsuite-dlmstatcan0.3.11 of 1See more

fdi-dotstatsuite-dlm statcan 0.3.1

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
word-wrap@1.2.3
1.2.4

Open the chart page →

3,881
vehicle-dashboardtest-vehi-dash0.1.01 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
samajh/alprfrontend:latest05ef4fddbb75
word-wrap@1.2.3
1.2.4

Open the chart page →

20,270
csmmth-chartsVerified publisher0.1.01 of 3See more

csmm th-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
catalysm/csmm:latestf003b35f54d9
word-wrap@1.2.3
1.2.4

Open the chart page →

3,576
kubernetes-external-secretstrozz6.3.01 of 1See more

kubernetes-external-secrets trozz 6.3.0

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
word-wrap@1.2.3
1.2.4

Open the chart page →

2,838
genievhdirkVerified publisher0.1.31 of 1See more

genie vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
stanfordoval/almond-server:latest1a63cdccedaf
word-wrap@1.2.3
1.2.4

Open the chart page →

3,129
websitewaldo-visionVerified publisher0.33.01 of 2See more

website waldo-vision 0.33.0

1 of the 2 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
word-wrap@1.2.3
1.2.4

Open the chart page →

3,474
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2023-26115.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
word-wrap@1.2.3
1.2.4

Open the chart page →

5,806

Container images carrying it

120 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
wazuh/wazuh-dashboard:4.4.11787550d2358
word-wrap@1.2.3
1.2.4
1
winfred008/amazon:910a68de5b398
word-wrap@1.2.3
1.2.4
1
wiremind/scrapoxy:lateste7048929a676
word-wrap@1.2.3
1.2.4
1
zooz/predator:1.6f491d1f7a865
word-wrap@1.2.3
1.2.4
1
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
word-wrap@1.2.3
1.2.4
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
word-wrap@1.2.3
1.2.4
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
word-wrap@1.2.3
1.2.4
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
word-wrap@1.2.3
1.2.4
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
word-wrap@1.2.3
1.2.4
1
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
word-wrap@1.2.3
1.2.4
1
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
word-wrap@1.2.3
1.2.4
1
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
word-wrap@1.2.3
1.2.4
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
word-wrap@1.2.3
1.2.4
1
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
word-wrap@1.2.3
1.2.4
1
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
word-wrap@1.2.3
1.2.4
1
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
word-wrap@1.2.3
1.2.4
1
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
word-wrap@1.2.3
1.2.4
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
word-wrap@1.2.3
1.2.4
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
word-wrap@1.2.3
1.2.4
1
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
word-wrap@1.2.3
1.2.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.