StackRadar

CVE-2023-32695

High

Advisory

Published 23 May 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.3
base score, highest
EPSS
0.011
63rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
55
of 17,781 indexed, latest versions
Container images
49
deployed by those charts
Fix available
1 of 1
affected package

Insufficient validation when decoding a Socket.IO packet

Carried by container images the latest versions of 55 of 17,781 indexed charts deploy, on 49 images.

Affected packageAffected versionsFixed inImages
socket.io-parsernpm2.2.0, 2.2.2, 2.2.6, 2.3.1+13 more3.3.4, 3.4.3, 4.2.349
OSV records
GHSA-cqmj-92xf-r6r9

Charts affected

55 by stars
ChartLatestAffected imagesRadar Score
hedgedocvista0.1.11 of 1See more

hedgedoc vista 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-32695.

Container imageDigestPackageFixed in
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
socket.io-parser@3.4.1
3.4.3

Open the chart page →

3,118
resultappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-32695.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
socket.io-parser@3.3.3
3.3.4

Open the chart page →

1,263
voteappvoting-app-helm-charts-repoVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

1 of the 5 container images this version deploys carry CVE-2023-32695.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
socket.io-parser@3.3.3
3.3.4

Open the chart page →

8,262
resultappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-32695.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
socket.io-parser@3.3.3
3.3.4

Open the chart page →

1,263
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2023-32695.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
socket.io-parser@3.3.3
3.3.4

Open the chart page →

8,262

Container images carrying it

49 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
kodekloud/examplevotingapp_result:v1e510023fdf38
socket.io-parser@3.3.3
3.3.4
4
pantsel/konga:latestc8172b75607d
socket.io-parser@2.2.2
3.3.4
3
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
socket.io-parser@3.2.0
3.3.4
3
outlinewiki/outline:0.69.1d060dcd8f9aa
socket.io-parser@4.2.1
4.2.3
2
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
socket.io-parser@3.4.1
3.4.3
2
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
socket.io-parser@4.0.4
4.2.3
1
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
socket.io-parser@4.2.1
4.2.3
1
catalysm/csmm:latestf003b35f54d9
socket.io-parser@3.4.1
3.4.3
1
cnieg/maildev:v1.1.998ee05668915
socket.io-parser@3.3.0
3.3.4
1
coderaiser/cloudcmd:16.6.1b34a9775c7ce
socket.io-parser@4.0.5
4.2.3
1
cryptexlabs/authf:0.12.11189c07411d7c
socket.io-parser@4.0.5
4.2.3
1
datarhei/restreamer:0.6.4655e12f9eeed
socket.io-parser@3.4.0
3.4.3
1
devkrishan001/backend:latestf1c3acadeabe
socket.io-parser@2.2.0
3.3.4
1
frappe/frappe-socketio:v13.4.12095767a9e82
socket.io-parser@3.4.1
3.4.3
1
heywood8/redisinsight:2.28.00bc9ab313d37
socket.io-parser@4.2.2
4.2.3
1
ianw/quickchart:v1.7.1dc49dd460c37
socket.io-parser@3.3.2
3.3.4
1
ibarreche/cloud-front-ci:latestc8970ac1c8dc
socket.io-parser@3.2.0
3.3.4
1
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
socket.io-parser@3.2.0
3.3.4
1
ibmcom/microclimate-portal:latested5505e5c7ec
socket.io-parser@3.2.0
3.3.4
1
inseefrlab/shelly:cloudshell31f04ca7436b
socket.io-parser@3.3.0
3.3.4
1
jakowenko/double-take:1.6.0b858bac9e32a
socket.io-parser@4.0.4
4.2.3
1
jayfong/yapi:1.10.2163e5d621910
socket.io-parser@2.3.1
3.3.4
1
konradkleine/docker-registry-frontend:v2181aad54ee64
socket.io-parser@2.3.1
3.3.4
1
kubevious/guard:1.2.19bf567704de2
socket.io-parser@4.0.4
4.2.3
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
socket.io-parser@4.0.4
4.2.3
1
linuxserver/codimd:latestb801bbcf6386
socket.io-parser@3.3.1
3.3.4
1
louislam/uptime-kuma:1.17.1a4eab252e5a2
socket.io-parser@4.0.4
4.2.3
1
louislam/uptime-kuma:1.18.5a84767d7934f
socket.io-parser@4.0.5
4.2.3
1
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
socket.io-parser@3.3.2
3.3.4
1
nightscout/cgm-remote-monitor:15.0.2ad29ca7a4de6
socket.io-parser@4.2.2
4.2.3
1
nightscout/cgm-remote-monitor:15.0.3f604dc4c03ca
socket.io-parser@4.2.2
4.2.3
1
openhab/openhab-cloud:a8138a329dd2bac8c4b
socket.io-parser@3.3.3
3.3.4
1
phntom/codimd:2.4.31b9aafbb62e6
socket.io-parser@3.3.3
3.3.4
1
polonel/trudesk:1.2.60cf6513f6fe3
socket.io-parser@4.2.1
4.2.3
1
samajh/alprbackend:latestea742b4372ad
socket.io-parser@3.3.2
3.3.4
1
samajh/alprfrontend:latest05ef4fddbb75
socket.io-parser@3.3.2
3.3.4
1
shinobisystems/shinobi:dev3ca746937856
socket.io-parser@3.4.1
3.4.3
1
shinobisystems/shinobi:latestc2f5ce2e1067
socket.io-parser@3.3.2
3.3.4
1
thelounge/thelounge:4.3.0-alpine0037aa258261
socket.io-parser@4.0.4
4.2.3
1
thelounge/thelounge:4.2.0-alpine639978459c3a
socket.io-parser@3.3.0
3.3.4
1
wiremind/scrapoxy:lateste7048929a676
socket.io-parser@3.1.3
3.3.4
1
zooz/predator:1.6f491d1f7a865
socket.io-parser@3.3.2
3.3.4
1
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
socket.io-parser@4.0.4
4.2.3
1
ghcr.io/advplyr/audiobookshelf:2.0.3140aed2752c3
socket.io-parser@4.0.4
4.2.3
1
ghcr.io/data-fair/simple-directory:438a4f32fad82
socket.io-parser@3.3.2
3.3.4
1
ghcr.io/mmontes11/iot-back:v3.11.096683c54ae65
socket.io-parser@3.4.2
3.4.3
1
ghcr.io/mmontes11/iot-thing:v3.11.0542e91e8499c
socket.io-parser@3.3.3
3.3.4
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
socket.io-parser@4.0.5
4.2.3
1
quay.io/t3n/dashkiosk:v2.7.8c973e166a5dc
socket.io-parser@2.2.6
3.3.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.