StackRadar

CVE-2023-33953

High

Advisory

Published 9 Aug 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
40th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
46
of 17,781 indexed, latest versions
Container images
49
deployed by those charts
Fix available
2 of 3
affected packages

Excessive Iteration in gRPC

Carried by container images the latest versions of 46 of 17,781 indexed charts deploy, on 49 images.

Affected packageAffected versionsFixed inImages
grpciopypi1.1.3, 1.9.1, 1.12.0, 1.16.0+17 more1.53.242
grpcgem1.24.0, 1.52.0, 1.54.01.53.2, 1.54.36
grpcdeb1.16.1-1ubuntu5, 1.51.1-4.1build5no fix listed3
OSV records
GHSA-496j-2rq6-j6ccUBUNTU-CVE-2023-33953
Also known as
PYSEC-2026-1424

Charts affected

46 by stars
ChartLatestAffected imagesRadar Score
rook-cephrookOfficialVerified publisher1.20.71 of 2See more

rook-ceph rook 1.20.7

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
rook/ceph:v1.20.72f970c425617
grpcio@1.46.7
1.53.2

Open the chart page →

1,447
ceph-csi-cephfsceph-csiOfficialVerified publisher3.17.11 of 6See more

ceph-csi-cephfs ceph-csi 3.17.1

1 of the 6 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.17.10b62db8afc9b
grpcio@1.46.7
1.53.2

Open the chart page →

4,061
ceph-csi-rbdceph-csiOfficialVerified publisher3.17.11 of 6See more

ceph-csi-rbd ceph-csi 3.17.1

1 of the 6 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.17.10b62db8afc9b
grpcio@1.46.7
1.53.2

Open the chart page →

4,061
milvusmilvus4.0.311 of 5See more

milvus milvus 4.0.31

1 of the 5 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
grpcio@1.27.2
1.53.2

Open the chart page →

32,259
home-assistantgeek-cookbookVerified publisher13.5.01 of 1See more

home-assistant geek-cookbook 13.5.0

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
grpcio@1.45.0
1.53.2

Open the chart page →

7,705
kubeflowkubeflow1.6.21 of 45See more

kubeflow kubeflow 1.6.2

1 of the 45 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
grpcio@1.43.0
1.53.2

Open the chart page →

96,941
alerta-webalerta-webVerified publisher0.1.121 of 2See more

alerta-web alerta-web 0.1.12

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
hayk96/alerta-web:9.0.486377705e9e3
grpcio@1.30.0
1.53.2

Open the chart page →

3,569
clearml-servingallegroaiVerified publisher1.6.21 of 9See more

clearml-serving allegroai 1.6.2

1 of the 9 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
allegroai/clearml-serving-inference:1.3.0fca885e8cfc6
grpcio@1.53.0
1.53.2

Open the chart page →

17,877
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
grpcio@1.38.1
1.53.2

Open the chart page →

10,730
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
grpcio@1.9.1
1.53.2

Open the chart page →

36,094
weblatedeliveryheroVerified publisher0.3.21 of 3See more

weblate deliveryhero 0.3.2

1 of the 3 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
grpcio@1.31.0
1.53.2

Open the chart page →

7,984
chatwootmaxcrm-chartsVerified publisher1.1.2011 of 4See more

chatwoot maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
grpc@1.54.0
1.54.3

Open the chart page →

5,940
iopsciencemeshVerified publisher0.4.01 of 2See more

iop sciencemesh 0.4.0

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
cs3org/wopiserver:v9.4.202a9e78757b4
grpcio@1.51.3
1.53.2

Open the chart page →

4,052
smarter-demosmarterOfficialVerified publisher0.1.52 of 7See more

smarter-demo smarter 0.1.5

2 of the 7 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
grpc@1.16.1-1ubuntu5
grpcio@1.41.0
no fix listed
1.53.2
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
grpc@1.16.1-1ubuntu5
grpcio@1.16.1
no fix listed
1.53.2

Open the chart page →

45,832
alertasomeblackmagic0.2.31 of 2See more

alerta someblackmagic 0.2.3

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
alerta/alerta-web:8.5.04786b9eaa606
grpcio@1.30.0
1.53.2

Open the chart page →

3,162
fllocaloperationsassist-iot-fl-local-operations1.1.01 of 3See more

fllocaloperations assist-iot-fl-local-operations 1.1.0

1 of the 3 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
assistiot/fl_local_operations_inference:latest0518b63a2e69
grpcio@1.53.0
1.53.2

Open the chart page →

3,786
trainingcollectorassist-iot-fl-training-collector1.1.01 of 1See more

trainingcollector assist-iot-fl-training-collector 1.1.0

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
assistiot/fl_training_collector:latest792715dd3084
grpcio@1.43.0
1.53.2

Open the chart page →

1,719
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
grpcio@1.51.3
1.53.2

Open the chart page →

13,913
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
grpcio@1.38.0
1.53.2

Open the chart page →

22,891
syncserverchristianhuthVerified publisher1.3.01 of 1See more

syncserver christianhuth 1.3.0

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
mozilla/syncserver:latest016162bf39d8
grpcio@1.41.1
1.53.2

Open the chart page →

1,382
distributed-tensorflowcloudnativeapp0.1.11 of 1See more

distributed-tensorflow cloudnativeapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
cheyang/distributed-tf:1.6.046cc34755493
grpcio@1.9.1
1.53.2

Open the chart page →

36,094
pulsarcnieg1.0.81 of 2See more

pulsar cnieg 1.0.8

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.6.14db6ff0b4045
grpcio@1.31.0
1.53.2

Open the chart page →

16,860
wopiservercs3orgOfficialVerified publisher0.9.21 of 1See more

wopiserver cs3org 0.9.2

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
cs3org/wopiserver:v9.4.202a9e78757b4
grpcio@1.51.3
1.53.2

Open the chart page →

2,348
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.4.121994f40e0da
grpcio@1.38.1
1.53.2

Open the chart page →

13,852
rook-cephdtrdnk-helm-chartsVerified publisher0.0.11 of 2See more

rook-ceph dtrdnk-helm-charts 0.0.1

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
rook/ceph:v1.19.2944a1dd70496
grpcio@1.46.7
1.53.2

Open the chart page →

1,990
extended-ceph-exporterextended-ceph-exporterVerified publisher1.10.01 of 2See more

extended-ceph-exporter extended-ceph-exporter 1.10.0

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
quay.io/ceph/ceph:v21.1.05ff3692d2f3f
grpcio@1.48.4
1.53.2

Open the chart page →

2,885
ldap-backupgluuVerified publisher1.6.111 of 1See more

ldap-backup gluu 1.6.11

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
gluufederation/opendj:4.3.0_011a1128b28b95
grpcio@1.30.0
1.53.2

Open the chart page →

3,064
weblatehelm-charts-nr0.3.21 of 3See more

weblate helm-charts-nr 0.3.2

1 of the 3 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
grpcio@1.31.0
1.53.2

Open the chart page →

7,984
redashinseefrlab2.1.01 of 3See more

redash inseefrlab 2.1.0

1 of the 3 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
redash/redash:10.0.0.b503639392753c0376
grpcio@1.41.0
1.53.2

Open the chart page →

3,314
gitlabkubesphereVerified publisher4.2.34 of 17See more

gitlab kubesphere 4.2.3

4 of the 17 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
mirrorgitlabcontainers/gitaly:v13.2.283599461ef8b
grpc@1.24.0
1.53.2
mirrorgitlabcontainers/gitlab-sidekiq-ce:v13.2.294d1431683fa
grpc@1.24.0
1.53.2
mirrorgitlabcontainers/gitlab-task-runner-ce:v13.2.29efd73993c34
grpc@1.24.0
1.53.2
mirrorgitlabcontainers/gitlab-webservice-ce:v13.2.230393f990f5c
grpc@1.24.0
1.53.2

Open the chart page →

38,133
online-boutiquekubesphere-testVerified publisher0.1.01 of 11See more

online-boutique kubesphere-test 0.1.0

1 of the 11 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
grpcio@1.33.2
1.53.2

Open the chart page →

26,018
lnbitslnbits0.2.11 of 1See more

lnbits lnbits 0.2.1

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
lnbitsdocker/lnbits-legend:0.10.6a11aaa6d2b21
grpcio@1.51.1
1.53.2

Open the chart page →

1,949
maxcrm-chartsmaxcrm-chartsVerified publisher1.1.2011 of 4See more

maxcrm-charts maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
grpc@1.54.0
1.54.3

Open the chart page →

5,940
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
grpcio@1.27.2
1.53.2

Open the chart page →

25,933
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
grpcio@1.27.2
1.53.2

Open the chart page →

15,675
mlflowncsaVerified publisher1.2.11 of 4See more

mlflow ncsa 1.2.1

1 of the 4 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
evk02/mlflow:2.2.1ef6ff257ef35
grpcio@1.51.3
1.53.2

Open the chart page →

5,456
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
grpcio@1.19.0
1.53.2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
grpcio@1.12.0
1.53.2
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
grpcio@1.12.0
1.53.2

Open the chart page →

88,546
comac-platformopencord0.0.172 of 11See more

comac-platform opencord 0.0.17

2 of the 11 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
grpcio@1.19.0
1.53.2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
grpcio@1.12.0
1.53.2

Open the chart page →

26,211
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
grpcio@1.16.0
1.53.2

Open the chart page →

12,609
sebaopencord1.0.04 of 17See more

seba opencord 1.0.0

4 of the 17 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
voltha/voltha-cli:1.6.0c4e41e92f046
grpcio@1.16.0
1.53.2
voltha/voltha-netconf:1.6.037f80524c207
grpcio@1.16.0
1.53.2
voltha/voltha-ofagent:1.6.09ee8c1f4428c
grpcio@1.16.0
1.53.2
voltha/voltha-voltha:1.6.0ff596b62de59
grpcio@1.16.0
1.53.2

Open the chart page →

93,855
seldon-core-loadtestingseldon0.2.01 of 1See more

seldon-core-loadtesting seldon 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
seldonio/locust-core:0.81d0da98a2d76
grpcio@1.1.3
1.53.2

Open the chart page →

23,007
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
grpcio@1.41.0
1.53.2

Open the chart page →

21,997
fluentd-operatorstatcan0.5.11 of 1See more

fluentd-operator statcan 0.5.1

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
vmware/kube-fluentd-operator:latestf028c138a5f4
grpc@1.52.0
1.53.2

Open the chart page →

1,955
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
grpc@1.51.1-4.1build5
no fix listed

Open the chart page →

12,460
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
grpc@1.51.1-4.1build5
no fix listed

Open the chart page →

12,460
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2023-33953.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
grpcio@1.38.1
1.53.2

Open the chart page →

11,119

Container images carrying it

49 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
chatwoot/chatwoot:v3.1.0d530ab8c1753
grpc@1.54.0
1.54.3
2
cs3org/wopiserver:v9.4.202a9e78757b4
grpcio@1.51.3
1.53.2
2
kurento/kurento-media-server:latest03c0d34d0828
grpc@1.51.1-4.1build5
no fix listed
2
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
grpcio@1.19.0
1.53.2
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
grpcio@1.12.0
1.53.2
2
weblate/weblate:4.2.2-169c160d37a3c
grpcio@1.31.0
1.53.2
2
quay.io/cephcsi/cephcsi:v3.17.10b62db8afc9b
grpcio@1.46.7
1.53.2
2
alerta/alerta-web:8.5.04786b9eaa606
grpcio@1.30.0
1.53.2
1
allegroai/clearml-serving-inference:1.3.0fca885e8cfc6
grpcio@1.53.0
1.53.2
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
grpcio@1.27.2
1.53.2
1
apachepulsar/pulsar:2.6.14db6ff0b4045
grpcio@1.31.0
1.53.2
1
apachepulsar/pulsar:2.9.0d056c89b7131
grpcio@1.27.2
1.53.2
1
apachepulsar/pulsar:2.8.2d538416d5afe
grpcio@1.27.2
1.53.2
1
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
grpcio@1.38.1
1.53.2
1
assistiot/fl_local_operations_inference:latest0518b63a2e69
grpcio@1.53.0
1.53.2
1
assistiot/fl_training_collector:latest792715dd3084
grpcio@1.43.0
1.53.2
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
grpcio@1.51.3
1.53.2
1
cheyang/distributed-tf:1.6.046cc34755493
grpcio@1.9.1
1.53.2
1
evk02/mlflow:2.2.1ef6ff257ef35
grpcio@1.51.3
1.53.2
1
gethue/hue:4.10.05702b2c37ff9
grpcio@1.38.0
1.53.2
1
gluufederation/opendj:4.3.0_011a1128b28b95
grpcio@1.30.0
1.53.2
1
hayk96/alerta-web:9.0.486377705e9e3
grpcio@1.30.0
1.53.2
1
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
grpcio@1.38.1
1.53.2
1
lnbitsdocker/lnbits-legend:0.10.6a11aaa6d2b21
grpcio@1.51.1
1.53.2
1
mirrorgitlabcontainers/gitaly:v13.2.283599461ef8b
grpc@1.24.0
1.53.2
1
mirrorgitlabcontainers/gitlab-sidekiq-ce:v13.2.294d1431683fa
grpc@1.24.0
1.53.2
1
mirrorgitlabcontainers/gitlab-task-runner-ce:v13.2.29efd73993c34
grpc@1.24.0
1.53.2
1
mirrorgitlabcontainers/gitlab-webservice-ce:v13.2.230393f990f5c
grpc@1.24.0
1.53.2
1
mozilla/syncserver:latest016162bf39d8
grpcio@1.41.1
1.53.2
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
grpcio@1.12.0
1.53.2
1
redash/redash:10.0.0.b503639392753c0376
grpcio@1.41.0
1.53.2
1
rook/ceph:v1.20.72f970c425617
grpcio@1.46.7
1.53.2
1
rook/ceph:v1.19.2944a1dd70496
grpcio@1.46.7
1.53.2
1
seldonio/locust-core:0.81d0da98a2d76
grpcio@1.1.3
1.53.2
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
grpcio@1.41.0
1.53.2
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
grpcio@1.9.1
1.53.2
1
vmware/kube-fluentd-operator:latestf028c138a5f4
grpc@1.52.0
1.53.2
1
voltha/voltha-cli:1.6.0c4e41e92f046
grpcio@1.16.0
1.53.2
1
voltha/voltha-netconf:1.6.037f80524c207
grpcio@1.16.0
1.53.2
1
voltha/voltha-ofagent:1.6.09ee8c1f4428c
grpcio@1.16.0
1.53.2
1
voltha/voltha-tester:1.7.0655c3048a602
grpcio@1.16.0
1.53.2
1
voltha/voltha-voltha:1.6.0ff596b62de59
grpcio@1.16.0
1.53.2
1
wazuh/wazuh-manager:4.4.121994f40e0da
grpcio@1.38.1
1.53.2
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
grpcio@1.33.2
1.53.2
1
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
grpcio@1.43.0
1.53.2
1
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
grpcio@1.45.0
1.53.2
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
grpc@1.16.1-1ubuntu5
grpcio@1.41.0
no fix listed
1.53.2
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
grpc@1.16.1-1ubuntu5
grpcio@1.16.1
no fix listed
1.53.2
1
quay.io/ceph/ceph:v21.1.05ff3692d2f3f
grpcio@1.48.4
1.53.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.