StackRadar

CVE-2023-37920

Critical

Advisory

Published 25 Jul 2023In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
610
of 17,787 indexed, latest versions
Container images
651
deployed by those charts
Fix available
3 of 5
affected packages

Red Hat Bug Fix Advisory: ca-certificates bug fix and enhancement update

Carried by container images the latest versions of 610 of 17,787 indexed charts deploy, on 651 images.

Affected packageAffected versionsFixed inImages
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+19 moreno fix listed83
python-certifideb2018.1.18-2, 2019.11.28-1, 2020.6.20-1, 2022.9.24-1no fix listed57
py3-certifiapk2023.5.7-r02023.7.22-r01
ca-certificatesrpm2018.2.24-6.el8, 2019.2.32-80.0.el8_1, 2020.2.41-80.0.el8_2, 2021.2.50-80.0.el8_4+8 more0:2024.2.69_v8.0.303-80.0.el8_10, 0:2024.2.69_v8.0.303-91.4.el9_4203
certifipypi2017.11.05, 2017.11.5, 2018.1.18, 2018.4.16+21 more2023.7.22427
OSV records
ALPINE-CVE-2023-37920DEBIAN-CVE-2023-37920RHBA-2024:5691RHBA-2024:5736UBUNTU-CVE-2023-37920GHSA-xqr8-7jwr-rhp7
Also known as
PYSEC-2023-135

Charts affected

610 by stars
ChartLatestAffected imagesRadar Score
Practica_4_helmmy-heml-appVerified publisher0.1.02 of 7See more

Practica_4_helm my-heml-app 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
codeurjc/weatherservice:v1.0b9e2f7234349
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

27,812
mysql2s3bkmysql2s3bk0.1.01 of 1See more

mysql2s3bk mysql2s3bk 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
pyaephyohein/mysql2s3bk:alphafdee05f2d441
py3-certifi@2023.5.7-r0
certifi@2023.5.7
2023.7.22-r0
2023.7.22

Open the chart page →

1,207
elasticsearch2ncsaVerified publisher0.2.21 of 2See more

elasticsearch2 ncsa 0.2.2

1 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
elastichq/elasticsearch-hq:latestbb3bd22c2b87
certifi@2019.9.11
2023.7.22

Open the chart page →

4,913
mlflowncsaVerified publisher1.2.11 of 4See more

mlflow ncsa 1.2.1

1 of the 4 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
evk02/mlflow:2.2.1ef6ff257ef35
certifi@2022.12.7
2023.7.22

Open the chart page →

5,456
pecanncsaVerified publisher0.6.21 of 15See more

pecan ncsa 0.6.2

1 of the 15 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
pecan/monitor:1.7.273b2074f3fec
certifi@2021.10.8
2023.7.22

Open the chart page →

14,154
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
certifi@2020.11.8
2023.7.22

Open the chart page →

55,715
smilencsaVerified publisher1.1.012 of 23See more

smile ncsa 1.1.0

12 of the 23 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
python-pip@20.0.2-5ubuntu1.9
no fix listed
socialmediamacroscope/classification_predict:0.1.24fb86885d64d
certifi@2022.12.7
2023.7.22
socialmediamacroscope/classification_split:0.1.24bfda60829fe
certifi@2022.12.7
2023.7.22
socialmediamacroscope/classification_train:0.1.207477060bba8
certifi@2022.12.7
2023.7.22
socialmediamacroscope/clowder_create_collection:0.1.0c969f7677983
certifi@2022.12.7
2023.7.22
socialmediamacroscope/clowder_create_dataset:0.1.09b4211832429
certifi@2022.12.7
2023.7.22
socialmediamacroscope/clowder_create_space:0.1.0999f2ff2c128
certifi@2022.12.7
2023.7.22
socialmediamacroscope/clowder_list:0.1.051cb17626519
certifi@2023.5.7
2023.7.22
socialmediamacroscope/clowder_upload_file:0.1.274e35f64db68
certifi@2023.5.7
2023.7.22
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
python-pip@9.0.1-2.3~ubuntu1.18.04.8
certifi@2022.12.7
no fix listed
2023.7.22
socialmediamacroscope/image_crawler:0.1.2f508216be63c
python-pip@9.0.1-2.3~ubuntu1.18.04.8
certifi@2022.12.7
no fix listed
2023.7.22
socialmediamacroscope/screen_name_prompt:0.1.2724f3f5702e0
certifi@2022.12.7
2023.7.22

Open the chart page →

109,485
uptime-kumancsaVerified publisher1.7.21 of 1See more

uptime-kuma ncsa 1.7.2

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
certifi@2022.9.24
python-certifi@2022.9.24-1
2023.7.22
no fix listed

Open the chart page →

29,687
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
ca-certificates@2021.2.50-80.0.el8_4
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

6,982
netbirdnetbird1.9.01 of 4See more

netbird netbird 1.9.0

1 of the 4 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
netbirdio/dashboard:v2.13.188b5fb704a8c
certifi@2020.12.5
2023.7.22

Open the chart page →

6,367
minio-directpvnineinfra-charts4.0.81 of 5See more

minio-directpv nineinfra-charts 4.0.8

1 of the 5 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/minio/directpv:v4.0.84560083eb77d
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

7,035
minio-operatornineinfra-charts5.0.91 of 1See more

minio-operator nineinfra-charts 5.0.9

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
minio/operator:v5.0.9170b154d2c61
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

3,418
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
python-pip@20.0.2-5ubuntu1.6
certifi@2022.6.15
no fix listed
2023.7.22

Open the chart page →

22,713
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
python-pip@9.0.1-2.3~ubuntu1.18.04.1
no fix listed

Open the chart page →

27,667
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
python-pip@22.0.2+dfsg-1ubuntu0.3
no fix listed

Open the chart page →

9,059
apicurioone-acre-fundVerified publisher2.3.03 of 5See more

apicurio one-acre-fund 2.3.0

3 of the 5 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

18,666
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
ca-certificates@2020.2.41-80.0.el8_2
certifi@2021.5.30
0:2024.2.69_v8.0.303-80.0.el8_10
2023.7.22

Open the chart page →

18,023
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
certifi@2019.6.16
2023.7.22
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
python-pip@8.1.1-2ubuntu0.4
certifi@2018.8.24
no fix listed
2023.7.22
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
python-pip@8.1.1-2ubuntu0.4
certifi@2018.8.24
no fix listed
2023.7.22

Open the chart page →

88,616
comac-platformopencord0.0.172 of 11See more

comac-platform opencord 0.0.17

2 of the 11 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
certifi@2019.6.16
2023.7.22
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
python-pip@8.1.1-2ubuntu0.4
certifi@2018.8.24
no fix listed
2023.7.22

Open the chart page →

26,234
nem-monitoringopencord1.3.221 of 9See more

nem-monitoring opencord 1.3.22

1 of the 9 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.20af151f677a63
certifi@2019.6.16
2023.7.22

Open the chart page →

4,612
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
omecproject/mme-exporter:paging-latestbcc5f19fd676
python-pip@9.0.1-2.3~ubuntu1.18.04.1
no fix listed

Open the chart page →

40,795
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
python-pip@8.1.1-2ubuntu0.4
certifi@2019.6.16
no fix listed
2023.7.22

Open the chart page →

12,631
sebaopencord1.0.04 of 17See more

seba opencord 1.0.0

4 of the 17 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
voltha/voltha-cli:1.6.0c4e41e92f046
python-pip@8.1.1-2ubuntu0.4
certifi@2018.10.15
no fix listed
2023.7.22
voltha/voltha-netconf:1.6.037f80524c207
python-pip@8.1.1-2ubuntu0.4
certifi@2018.10.15
no fix listed
2023.7.22
voltha/voltha-ofagent:1.6.09ee8c1f4428c
python-pip@8.1.1-2ubuntu0.4
certifi@2018.10.15
no fix listed
2023.7.22
voltha/voltha-voltha:1.6.0ff596b62de59
python-pip@8.1.1-2ubuntu0.4
certifi@2018.10.15
no fix listed
2023.7.22

Open the chart page →

93,965
minioopenobserve5.0.72 of 2See more

minio openobserve 5.0.7

2 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

7,457
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

11,795
bpjstk-serviceopenshift1.0.03 of 6See more

bpjstk-service openshift 1.0.0

3 of the 6 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10
andrianrf/backoffice-be:latest6036614803d4
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
andrianrf/iso-server:latest7da47f525c7d
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4

Open the chart page →

34,721
chatbot-ai-sampleopenshift0.1.61 of 4See more

chatbot-ai-sample openshift 0.1.6

1 of the 4 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
ca-certificates@2023.2.60_v7.0.306-90.1.el9_2
0:2024.2.69_v8.0.303-91.4.el9_4

Open the chart page →

18,991
flomesh-consoleopenshift0.70.0-30-ubi82 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

2 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

9,968
fsmopenshift0.1.8-ubi.66 of 6See more

fsm openshift 0.1.8-ubi.6

6 of the 6 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

16,554
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
ca-certificates@2021.2.50-80.0.el8_4
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
ca-certificates@2020.2.41-80.0.el8_2
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

14,727
osm-edgeopenshift1.2.1-ubi87 of 7See more

osm-edge openshift 1.2.1-ubi8

7 of the 7 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

19,449
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
ca-certificates@2023.2.60_v7.0.306-90.1.el9_2
0:2024.2.69_v8.0.303-91.4.el9_4

Open the chart page →

8,634
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

13,608
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

11,740
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

13,570
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

13,553
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

13,457
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

13,101
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
python-pip@9.0.1-2.3~ubuntu1.18.04.4
certifi@2020.6.20
no fix listed
2023.7.22

Open the chart page →

36,230
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2023-02-28T00-12-59Zc631532a394e
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

5,609
p4p40.1.02 of 7See more

p4 p4 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
mastercloudapps/server:v2.23f3d24dfe2686
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
mastercloudapps/weatherservice:v1.23de859d29c116
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

27,667
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
ca-certificates@2022.2.54-80.2.el8_4
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
ca-certificates@2022.2.54-80.2.el8_4
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

15,466
email-managerphntom0.1.221 of 2See more

email-manager phntom 0.1.22

1 of the 2 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
phntom/email-manager:0.1.22d8e2a9f2f085
certifi@2022.12.7
2023.7.22

Open the chart page →

2,565
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
certifi@2022.9.24
2023.7.22

Open the chart page →

4,644
npre-essentialsphntom0.1.601 of 22See more

npre-essentials phntom 0.1.60

1 of the 22 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.21.0710e23b489c5
certifi@2022.9.24
2023.7.22

Open the chart page →

26,840
stocks-nasdaq-crawlerphntom0.0.361 of 1See more

stocks-nasdaq-crawler phntom 0.0.36

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
phntom/stocks-nasdaq-crawler:0.0.28d2b844700b57
certifi@2020.6.20
2023.7.22

Open the chart page →

1,845
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
python-certifi@2019.11.28-1
python-pip@20.0.2-5ubuntu1.6
certifi@2019.11.28
no fix listed
no fix listed
2023.7.22

Open the chart page →

22,146
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
ca-certificates@2019.2.32-80.0.el8_1
certifi@2019.11.28
0:2024.2.69_v8.0.303-80.0.el8_10
2023.7.22

Open the chart page →

11,153
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2023-37920.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10

Open the chart page →

12,754

Container images carrying it

651 by charts deploying them

A fixed version is listed for 3 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
voltha/voltha-tester:1.7.0655c3048a602
python-pip@8.1.1-2ubuntu0.4
certifi@2019.6.16
no fix listed
2023.7.22
1
voltha/voltha-voltha:1.6.0ff596b62de59
python-pip@8.1.1-2ubuntu0.4
certifi@2018.10.15
no fix listed
2023.7.22
1
wallarm/ingress-python:4.6.0-15cb2ae08b40f
certifi@2018.8.24
2023.7.22
1
wazuh/wazuh-manager:4.4.121994f40e0da
certifi@2022.12.7
2023.7.22
1
weblate/weblate:3.11.3-182848df56ecd
certifi@2019.11.28
2023.7.22
1
wiremind/pghoard:12-2019-11-264dea42c8166c
certifi@2019.9.11
2023.7.22
1
witcherek7/pav:0.0.342a744f29ac0
certifi@2022.12.7
2023.7.22
1
xeladock/mysql_dns:latest4baf531453f1
python-pip@22.0.2+dfsg-1
no fix listed
1
zohardocker12/weather_app_flask:latestb86d60dbb68d
certifi@2021.10.8
2023.7.22
1
gcr.io/google-samples/microservices-demo/loadgenerator:v0.2.3360130ab5850
certifi@2020.12.5
2023.7.22
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
certifi@2020.12.5
2023.7.22
1
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
certifi@2021.10.8
2023.7.22
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
python-certifi@2022.9.24-1
certifi@2022.9.24
no fix listed
2023.7.22
1
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
certifi@2020.12.5
2023.7.22
1
ghcr.io/aws-exporters/prometheus-inspector-exporter:0.0.29c7c11293b3c
certifi@2020.12.5
2023.7.22
1
ghcr.io/blakeblackshear/frigate:0.12.0c862771e38e8
certifi@2022.12.7
2023.7.22
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
python-certifi@2019.11.28-1
certifi@2019.11.28
no fix listed
2023.7.22
1
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
certifi@2022.9.24
2023.7.22
1
ghcr.io/ctron/ditto-operator:0.4.061a9bb81b85c
ca-certificates@2021.2.50-80.0.el8_4
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/ctron/kubectl:1.25e37d61b5277c
ca-certificates@2023.2.60_v7.0.306-80.0.el8_8
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
ca-certificates@2020.2.41-80.0.el8_2
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
ca-certificates@2020.2.41-80.0.el8_2
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
ca-certificates@2020.2.41-80.0.el8_2
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
ca-certificates@2020.2.41-80.0.el8_2
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
ca-certificates@2020.2.41-80.0.el8_2
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/cunningpike/fediblockhole:0.4.22abc5f0350dc
certifi@2022.12.7
2023.7.22
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
certifi@2021.10.8
2023.7.22
1
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
certifi@2021.10.8
2023.7.22
1
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
ca-certificates@2021.2.50-80.0.el8_4
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
ca-certificates@2021.2.50-80.0.el8_4
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
ca-certificates@2022.2.54-80.2.el8_6
0:2024.2.69_v8.0.303-80.0.el8_10
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
ca-certificates@2022.2.54-90.2.el9_0
0:2024.2.69_v8.0.303-91.4.el9_4
1
ghcr.io/grofers/legend:0.1d6e901ad0ebd
certifi@2020.6.20
2023.7.22
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.