StackRadar

CVE-2023-26125

Medium

Advisory

Published 4 May 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.6
base score, highest
EPSS
0.009
58th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
65
of 17,781 indexed, latest versions
Container images
73
deployed by those charts
Fix available
1 of 1
affected package

Improper input validation in github.com/gin-gonic/gin

Carried by container images the latest versions of 65 of 17,781 indexed charts deploy, on 73 images.

Affected packageAffected versionsFixed inImages
github.com/gin-gonic/gingolangv1.4.0, v1.4.1-0.20190910091637-9aa870f108a1, v1.5.0, v1.6.3+8 more1.9.073
OSV records
GHSA-3vp4-m3rf-835h

Charts affected

65 by stars
ChartLatestAffected imagesRadar Score
karmamesosphere1.3.01 of 1See more

karma mesosphere 1.3.0

1 of the 1 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
lmierzwa/karma:v0.503751e5eed656
github.com/gin-gonic/gin@v1.4.1-0.20190910091637-9aa870f108a1
1.9.0

Open the chart page →

2,111
karmamesosphere-stable2.0.31 of 1See more

karma mesosphere-stable 2.0.3

1 of the 1 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
lmierzwa/karma:v0.70d417abe7ddb5
github.com/gin-gonic/gin@v1.6.3
1.9.0

Open the chart page →

1,966
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
mesosphere/karma:v0.55-d2iq-proxy4693bb4e0814
github.com/gin-gonic/gin@v1.5.0
1.9.0

Open the chart page →

68,284
replacermosquitto-helm-chart0.2.01 of 3See more

replacer mosquitto-helm-chart 0.2.0

1 of the 3 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/replacer:v1.1.00b2a41c2a43e
github.com/gin-gonic/gin@v1.7.4
1.9.0

Open the chart page →

3,929
fsmopenshift0.1.8-ubi.62 of 6See more

fsm openshift 0.1.8-ubi.6

2 of the 6 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
github.com/gin-gonic/gin@v1.7.7
1.9.0
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
github.com/gin-gonic/gin@v1.7.7
1.9.0

Open the chart page →

16,556
hammondpascaliskeVerified publisher2.0.01 of 2See more

hammond pascaliske 2.0.0

1 of the 2 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
github.com/gin-gonic/gin@v1.7.1
1.9.0

Open the chart page →

1,806
mindavphntom0.1.61 of 2See more

mindav phntom 0.1.6

1 of the 2 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
phntom/mindav:0.1.7-kix35695f546abbb
github.com/gin-gonic/gin@v1.4.0
1.9.0

Open the chart page →

4,158
npre-essentialsphntom0.1.601 of 22See more

npre-essentials phntom 0.1.60

1 of the 22 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
phntom/chartmuseum:v0.15.29242b4df9e65
github.com/gin-gonic/gin@v1.8.1
1.9.0

Open the chart page →

26,840
zincromholdings0.1.21 of 1See more

zinc romholdings 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
github.com/gin-gonic/gin@v1.8.1
1.9.0

Open the chart page →

1,507
unifi-protectschichtelVerified publisher0.10.11 of 1See more

unifi-protect schichtel 0.10.1

1 of the 1 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
github.com/gin-gonic/gin@v1.8.2
1.9.0

Open the chart page →

5,582
agentssynapse0.1.302 of 9See more

agents synapse 0.1.30

2 of the 9 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/agents:6e3887fc2a05aff0d159453cedbfbe5024b910bf81a9ebc899a4
github.com/gin-gonic/gin@v1.8.2
1.9.0
ghcr.io/synapsecns/sanguine/scribe:6e3887fc2a05aff0d159453cedbfbe5024b910bf5e0a3dfa9f96
github.com/gin-gonic/gin@v1.8.2
1.9.0

Open the chart page →

7,244
cctpsynapse0.3.01 of 4See more

cctp synapse 0.3.0

1 of the 4 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/cctp-relayer:b5a1dd5288f1a18eb05994e130d626fed45a56fc2f1408c94168
github.com/gin-gonic/gin@v1.8.2
1.9.0

Open the chart page →

1,815
trafficlight-apithecampagnards0.1.11 of 1See more

trafficlight-api thecampagnards 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
thecampagnards/trafficlight-api:main7dca9d973837
github.com/gin-gonic/gin@v1.7.2
1.9.0

Open the chart page →

4,357
twitter-apptwitter-helm0.1.122 of 8See more

twitter-app twitter-helm 0.1.12

2 of the 8 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
stakkato95/twitter-service-analytics:0.1.05d48906d66b3
github.com/gin-gonic/gin@v1.8.1
1.9.0
stakkato95/twitter-service-tweets:0.1.18412d8a8cac3
github.com/gin-gonic/gin@v1.7.7
1.9.0

Open the chart page →

6,132
scrutinyvhdirkVerified publisher0.1.31 of 1See more

scrutiny vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-26125.

Container imageDigestPackageFixed in
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
github.com/gin-gonic/gin@v1.6.3
1.9.0

Open the chart page →

4,382

Container images carrying it

73 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
alfhou/hammond:v0.0.24c85dc0293aa1
github.com/gin-gonic/gin@v1.7.1
1.9.0
3
ciscolabs/rtsp-server:latestb59fc10bb821
github.com/gin-gonic/gin@v1.8.1
1.9.0
3
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
github.com/gin-gonic/gin@v1.8.1
1.9.0
3
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
github.com/gin-gonic/gin@v1.7.7
1.9.0
2
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
github.com/gin-gonic/gin@v1.7.7
1.9.0
2
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
github.com/gin-gonic/gin@v1.7.7
1.9.0
2
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
github.com/gin-gonic/gin@v1.7.7
1.9.0
2
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
github.com/gin-gonic/gin@v1.7.7
1.9.0
2
apache/apisix-dashboard:2.9.0c010ea7d1694
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
apache/apisix-ingress-controller:1.3.0412f92cde0b3
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
github.com/gin-gonic/gin@v1.7.0
1.9.0
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
github.com/gin-gonic/gin@v1.8.1
1.9.0
1
bicarus/mx-notifier:1.1.8bed688d16762
github.com/gin-gonic/gin@v1.8.1
1.9.0
1
chaosnative/cle-auth-server:2.7.072ee352bc333
github.com/gin-gonic/gin@v1.7.7
1.9.0
1
chaosnative/cle-license-module:2.7.062cf6adc355e
github.com/gin-gonic/gin@v1.7.7
1.9.0
1
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
deepflowce/deepflow-server:v6.2.6.534fcc526dd59
github.com/gin-gonic/gin@v1.8.1
1.9.0
1
douz/overlord:latestf2bc7fc068c1
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
everpcpc/channels:latestb378d137ae8b
github.com/gin-gonic/gin@v1.7.4
1.9.0
1
gocrane/craned:v0.5.1a1400909118c
github.com/gin-gonic/gin@v1.7.7
1.9.0
1
goharbor/chartmuseum-photon:v2.5.36ab3ca28e9e5
github.com/gin-gonic/gin@v1.7.7
1.9.0
1
gotify/server:2.1.409c79bc1e403
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
iomesh/operator:v1.1.060081c9b2f52
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
iomesh/operator:v1.2.0ba4dd6be7e59
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
iotaledger/goshimmer:v0.8.6b02a8f77474f
github.com/gin-gonic/gin@v1.7.0
1.9.0
1
kubebb/iam-provider:v0.2.0-202401280ba03fcee3a7
github.com/gin-gonic/gin@v1.7.7
1.9.0
1
kubemod/kubemod:v0.19.11f8154f7e80c
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
kubemod/kubemod:v0.13.0cadca39288ad
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
lmierzwa/karma:v0.503751e5eed656
github.com/gin-gonic/gin@v1.4.1-0.20190910091637-9aa870f108a1
1.9.0
1
lmierzwa/karma:v0.70d417abe7ddb5
github.com/gin-gonic/gin@v1.6.3
1.9.0
1
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
github.com/gin-gonic/gin@v1.8.2
1.9.0
1
mesosphere/karma:v0.55-d2iq-proxy4693bb4e0814
github.com/gin-gonic/gin@v1.5.0
1.9.0
1
oxynozeta/prometheus-cachethq:1.1.131f11669d597
github.com/gin-gonic/gin@v1.4.0
1.9.0
1
phntom/chartmuseum:v0.15.29242b4df9e65
github.com/gin-gonic/gin@v1.8.1
1.9.0
1
phntom/mindav:0.1.7-kix35695f546abbb
github.com/gin-gonic/gin@v1.4.0
1.9.0
1
photoprism/photoprism:220629-jammy2954334adbda
github.com/gin-gonic/gin@v1.8.1
1.9.0
1
samcm/checkpointz:latesta66b24a87766
github.com/gin-gonic/gin@v1.7.4
1.9.0
1
smailkoz/torrserver:1.0.1117b52d15de8f0
github.com/gin-gonic/gin@v1.7.7
1.9.0
1
stakkato95/twitter-service-analytics:0.1.05d48906d66b3
github.com/gin-gonic/gin@v1.8.1
1.9.0
1
stakkato95/twitter-service-tweets:0.1.18412d8a8cac3
github.com/gin-gonic/gin@v1.7.7
1.9.0
1
tdengine/tdengine:3.0.2.24140a4021ddb
github.com/gin-gonic/gin@v1.7.4
1.9.0
1
thecampagnards/trafficlight-api:main7dca9d973837
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
voidxmh/xmh-auther:v193e42a569ca8
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
voidxmh/xmh-cacher:v11b7397412320
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
voidxmh/xmh-ui:v12ff3f2146547
github.com/gin-gonic/gin@v1.7.2
1.9.0
1
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
github.com/gin-gonic/gin@v1.7.2
1.9.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.