StackRadar

CVE-2023-40889

Critical

Advisory

Published 29 Aug 2023In the index since 6 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.017
77th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
6
of 17,781 indexed, latest versions
Container images
7
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 6 of 17,781 indexed charts deploy, on 7 images.

Affected packageAffected versionsFixed inImages
zbardeb0.23-1.3, 0.23.92-4build2, 0.23.92-70.23-1.3ubuntu0.1~esm1, 0.23.92-4ubuntu0.1~esm1, 0.23.92-7+deb12u17
OSV records
DEBIAN-CVE-2023-40889UBUNTU-CVE-2023-40889
Also known as
USN-7118-1

Charts affected

6 by stars
ChartLatestAffected imagesRadar Score
smarter-demosmarterOfficialVerified publisher0.1.52 of 7See more

smarter-demo smarter 0.1.5

2 of the 7 container images this version deploys carry CVE-2023-40889.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
zbar@0.23-1.3
0.23-1.3ubuntu0.1~esm1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
zbar@0.23-1.3
0.23-1.3ubuntu0.1~esm1

Open the chart page →

45,832
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2023-40889.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
zbar@0.23-1.3
0.23-1.3ubuntu0.1~esm1

Open the chart page →

27,949
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2023-40889.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
zbar@0.23.92-7
0.23.92-7+deb12u1

Open the chart page →

16,384
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2023-40889.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
zbar@0.23-1.3
0.23-1.3ubuntu0.1~esm1

Open the chart page →

18,066
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2023-40889.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
zbar@0.23.92-4build2
0.23.92-4ubuntu0.1~esm1

Open the chart page →

10,716
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-40889.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
zbar@0.23.92-4build2
0.23.92-4ubuntu0.1~esm1

Open the chart page →

14,100

Container images carrying it

7 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
zbar@0.23-1.3
0.23-1.3ubuntu0.1~esm1
1
livekit/ingress:v1.2.21ab01641b366
zbar@0.23.92-4build2
0.23.92-4ubuntu0.1~esm1
1
openkm/openkm-ce:6.3.113bc465a7461b
zbar@0.23-1.3
0.23-1.3ubuntu0.1~esm1
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
zbar@0.23.92-4build2
0.23.92-4ubuntu0.1~esm1
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
zbar@0.23.92-7
0.23.92-7+deb12u1
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
zbar@0.23-1.3
0.23-1.3ubuntu0.1~esm1
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
zbar@0.23-1.3
0.23-1.3ubuntu0.1~esm1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.