StackRadar

CVE-2023-41900

Low

Advisory

Published 15 Sept 2023In the index since 8 Sept 2026
Severity
Low
worst across findings
CVSS
3.5
base score, highest
EPSS
0.008
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4
of 17,781 indexed, latest versions
Container images
4
deployed by those charts
Fix available
1 of 1
affected package

Jetty's OpenId Revoked authentication allows one request

Carried by container images the latest versions of 4 of 17,781 indexed charts deploy, on 4 images.

Affected packageAffected versionsFixed inImages
jetty-openidmaven9.4.32.v20200930, 9.4.36.v20210114, 9.4.45.v20220203, 9.4.48.v202206229.4.52.v202308234
OSV records
GHSA-pwh8-58vv-vw48

Charts affected

4 by stars
ChartLatestAffected imagesRadar Score
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2023-41900.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
jetty-openid@9.4.36.v20210114
9.4.52.v20230823

Open the chart page →

26,944
dynamo-dbk8s-home-lab-repo0.0.31 of 1See more

dynamo-db k8s-home-lab-repo 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-41900.

Container imageDigestPackageFixed in
amazon/dynamodb-local:1.20.01ed00881c937
jetty-openid@9.4.48.v20220622
9.4.52.v20230823

Open the chart page →

444
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2023-41900.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
jetty-openid@9.4.32.v20200930
9.4.52.v20230823

Open the chart page →

55,726
bastillion-upstreamrock8sVerified publisher0.1.01 of 1See more

bastillion-upstream rock8s 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-41900.

Container imageDigestPackageFixed in
iamdorsah/bastillion:v0.1db83a0254d81
jetty-openid@9.4.45.v20220203
9.4.52.v20230823

Open the chart page →

3,051

Container images carrying it

4 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
amazon/dynamodb-local:1.20.01ed00881c937
jetty-openid@9.4.48.v20220622
9.4.52.v20230823
1
craigwillis/c2metadata-bd:latestae317d7e4724
jetty-openid@9.4.32.v20200930
9.4.52.v20230823
1
iamdorsah/bastillion:v0.1db83a0254d81
jetty-openid@9.4.45.v20220203
9.4.52.v20230823
1
sismics/docs:v1.10f4b0ef019cf1
jetty-openid@9.4.36.v20210114
9.4.52.v20230823
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.