StackRadar

CVE-2023-42282

Critical

Advisory

Published 8 Feb 2024In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
495
of 17,781 indexed, latest versions
Container images
490
deployed by those charts
Fix available
2 of 2
affected packages

NPM IP package incorrectly identifies some private IP addresses as public

Carried by container images the latest versions of 495 of 17,781 indexed charts deploy, on 490 images.

Affected packageAffected versionsFixed inImages
node-ipdeb1.1.5-51.1.5-5ubuntu0.1~esm12
ipnpm1.0.1, 1.1.5, 1.1.6, 1.1.8+1 more1.1.9, 2.0.1490
OSV records
UBUNTU-CVE-2023-42282GHSA-78xj-cgh5-2h22
Also known as
USN-6643-1

Charts affected

495 by stars
ChartLatestAffected imagesRadar Score
predatorzooz1.7.01 of 1See more

predator zooz 1.7.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
zooz/predator:1.6f491d1f7a865
ip@1.1.5
1.1.9

Open the chart page →

2,851
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
ip@1.1.5
1.1.9

Open the chart page →

13,635
bredbandskollen-prometheus-exporteraolde0.2.31 of 1See more

bredbandskollen-prometheus-exporter aolde 0.2.3

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
aolde/bredbandskollen-prometheus-exporter:1.0.2dc61ee713720
ip@1.1.5
1.1.9

Open the chart page →

1,972
dltbrokerassist-iot-distributed-broker0.2.03 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

3 of the 9 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
assistiot/dlt_api:2.0.0e36a8922fa0c
ip@2.0.0
2.0.1
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
ip@1.1.5
1.1.9
hyperledger/fabric-couchdb:0.4.15f6c724592abf
ip@1.1.5
1.1.9

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.03 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

3 of the 9 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
assistiot/dlt_api:2.0.0e36a8922fa0c
ip@2.0.0
2.0.1
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
ip@1.1.5
1.1.9
hyperledger/fabric-couchdb:0.4.15f6c724592abf
ip@1.1.5
1.1.9

Open the chart page →

77,687
actualbeluga-cloudVerified publisher2.0.01 of 1See more

actual beluga-cloud 2.0.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/actual/actualserver:23.12.1c8a0d5ec5a12
ip@2.0.0
2.0.1

Open the chart page →

1,262
fluxcd-webuiccowleyVerified publisher0.0.21 of 2See more

fluxcd-webui ccowley 0.0.2

1 of the 2 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
adrianberger/fluxcd-webui:latest76848c0d2780
ip@1.1.5
1.1.9

Open the chart page →

3,509
skoonerchristianhuthVerified publisher0.4.01 of 1See more

skooner christianhuth 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
ghcr.io/skooner-k8s/skooner:stable60c1562e4d51
ip@2.0.0
2.0.1

Open the chart page →

1,341
squestchristianhuthVerified publisher6.6.71 of 4See more

squest christianhuth 6.6.7

1 of the 4 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
quay.io/hewlettpackardenterprise/squest:2.8.465694109877e
ip@1.1.5
1.1.9

Open the chart page →

9,971
data-fairdata354-helmVerified publisher1.1.27 of 12See more

data-fair data354-helm 1.1.2

7 of the 12 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
koumoul/capture:17108d47be3b2
ip@1.1.5
1.1.9
koumoul/openapi-viewer:18eeca2e8285b
ip@1.1.5
1.1.9
ghcr.io/data-fair/data-fair:3cc9498b64b5b
ip@1.1.8
1.1.9
ghcr.io/data-fair/metrics:0a8d40779eeae
ip@1.1.5
1.1.9
ghcr.io/data-fair/portals:18b621866ceb2
ip@2.0.0
2.0.1
ghcr.io/data-fair/processings:15a9216989707
ip@2.0.0
2.0.1
ghcr.io/data-fair/simple-directory:438a4f32fad82
ip@1.1.5
1.1.9

Open the chart page →

38,346
mastodondefault-ghVerified publisher0.3.11 of 3See more

mastodon default-gh 0.3.1

1 of the 3 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
ip@2.0.0
2.0.1

Open the chart page →

5,056
joplin-serverdjjudas21Verified publisher5.5.81 of 1See more

joplin-server djjudas21 5.5.8

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
joplin/server:2.14.2-betab87564ef34e9
ip@1.1.5
1.1.9

Open the chart page →

3,925
atlas-cmmsf3k-techVerified publisher0.151.51 of 4See more

atlas-cmms f3k-tech 0.151.5

1 of the 4 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
intelloop/atlas-cmms-frontend:v1.5.12409c2a00ab6
ip@2.0.0
2.0.1

Open the chart page →

5,291
taigafermosit0.0.111 of 7See more

taiga fermosit 0.0.11

1 of the 7 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
taigaio/taiga-events:latest92fc0822564f
ip@2.0.0
2.0.1

Open the chart page →

8,496
ranetogabisonfire0.1.21 of 1See more

raneto gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
ip@1.1.5
1.1.9

Open the chart page →

2,519
foundryvttgeek-cookbookVerified publisher3.4.21 of 1See more

foundryvtt geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
felddy/foundryvtt:0.8.36c5d90b90349
ip@1.1.5
1.1.9

Open the chart page →

2,042
ghostgeek-cookbookVerified publisher2.2.01 of 1See more

ghost geek-cookbook 2.2.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
library/ghost:4.37.0767230c0f263
ip@1.1.5
1.1.9

Open the chart page →

4,260
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
ip@1.1.8
1.1.9

Open the chart page →

15,653
magic-mirrorgeek-cookbookVerified publisher4.4.21 of 1See more

magic-mirror geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
ip@1.1.5
1.1.9

Open the chart page →

4,405
overseerrgeek-cookbookVerified publisher5.4.21 of 1See more

overseerr geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
ghcr.io/sct/overseerr:1.26.1254d16af8f71
ip@1.1.5
1.1.9

Open the chart page →

3,444
recipesgeek-cookbookVerified publisher6.6.21 of 2See more

recipes geek-cookbook 6.6.2

1 of the 2 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
vabene1111/recipes:1.0.5.2ec4e9e2905b0
ip@1.1.5
1.1.9

Open the chart page →

7,801
sendgeek-cookbookVerified publisher1.2.21 of 1See more

send geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
registry.gitlab.com/timvisee/send:v3.4.2047986cf6ef69
ip@1.1.5
1.1.9

Open the chart page →

1,148
tdarrgeek-cookbookVerified publisher4.6.21 of 2See more

tdarr geek-cookbook 4.6.2

1 of the 2 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.00.101e3f9328327d
ip@1.1.5
1.1.9

Open the chart page →

31,000
uptime-kumageek-cookbookVerified publisher1.4.21 of 1See more

uptime-kuma geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.17.1a4eab252e5a2
ip@1.1.5
1.1.9

Open the chart page →

5,079
uptimerobotgeek-cookbookVerified publisher3.0.41 of 1See more

uptimerobot geek-cookbook 3.0.4

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
billimek/node-influx-uptimerobot:latest5814f0bcf5ba
ip@1.1.5
1.1.9

Open the chart page →

1,669
youtubedl-materialgeek-cookbookVerified publisher4.4.21 of 1See more

youtubedl-material geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.23720b856bd2f
ip@1.1.5
1.1.9

Open the chart page →

4,410
zigbee2mqttgeek-cookbookVerified publisher9.4.21 of 1See more

zigbee2mqtt geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
ip@1.1.5
1.1.9

Open the chart page →

2,173
openprojecthomeenterpriseinc0.5.01 of 1See more

openproject homeenterpriseinc 0.5.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
openproject/community:12.0.2734743d11094
ip@1.1.5
1.1.9

Open the chart page →

6,810
pdc-portali4trustVerified publisher2.3.21 of 1See more

pdc-portal i4trust 2.3.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
i4trust/pdc-portal:2.0.03e77858e1219
ip@1.1.5
1.1.9

Open the chart page →

2,723
elasticinseefrlab2.2.01 of 2See more

elastic inseefrlab 2.2.0

1 of the 2 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
library/kibana:7.17.3e2e2031c15be
ip@1.1.5
1.1.9

Open the chart page →

17,284
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
ip@1.1.5
1.1.9

Open the chart page →

3,369
dashykrzwiatrzyk1.0.01 of 1See more

dashy krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
ip@1.1.5
1.1.9

Open the chart page →

3,143
difykubeblocksVerified publisher0.5.12 of 5See more

dify kubeblocks 0.5.1

2 of the 5 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
langgenius/dify-sandbox:0.2.009b7e8705673
ip@2.0.0
2.0.1
langgenius/dify-web:0.6.11a2a294743634
ip@2.0.0
2.0.1

Open the chart page →

20,403
lifecycle-jira-integrationlifecycle-jira-integration1.0.01 of 1See more

lifecycle-jira-integration lifecycle-jira-integration 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
anoopnair/lifecycle-jira-integration:latestd80c73a6089d
ip@1.1.5
1.1.9

Open the chart page →

927
jspolicyloftVerified publisher0.2.21 of 1See more

jspolicy loft 0.2.2

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
loftsh/jspolicy:0.2.225deb9bd2683
ip@2.0.0
2.0.1

Open the chart page →

2,309
chatwootmaxcrm-chartsVerified publisher1.1.2011 of 4See more

chatwoot maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
ip@1.1.5
1.1.9

Open the chart page →

5,940
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.12 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

2 of the 6 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
ip@1.1.5
1.1.9
fjvela/urjc-fjvela-server:1.0.53c840aebce22
ip@1.1.5
1.1.9

Open the chart page →

19,187
tristian-idnonkronk0.1.31 of 1See more

tristian-id nonkronk 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
nonkronk/tristian-id:latest0a3694d70647
ip@1.1.5
1.1.9

Open the chart page →

1,105
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
ip@2.0.0
2.0.1

Open the chart page →

5,300
open-api-discoveryopen-api-discoveryVerified publisher0.1.11 of 1See more

open-api-discovery open-api-discovery 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
lukasreining/open-api-schema-collector:0.1.050e021c42e33
ip@2.0.0
2.0.1

Open the chart page →

2,473
pdf-editor-helmpdf-editor-web1.0.01 of 4See more

pdf-editor-helm pdf-editor-web 1.0.0

1 of the 4 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
dipugodocker/pdf-editor:1.0-frontendd431c37fe1cd
ip@1.1.8
1.1.9

Open the chart page →

4,206
camophntom0.1.11 of 1See more

camo phntom 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
phntom/camo:2.3.1a9b1304d6c71
ip@1.1.5
1.1.9

Open the chart page →

1,217
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
ip@1.1.5
1.1.9

Open the chart page →

31,844
pumejwebapppumejnodejswebapp0.1.01 of 1See more

pumejwebapp pumejnodejswebapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
pumejlab/nodejs-webapp:latestf563eabcb819
ip@2.0.0
2.0.1

Open the chart page →

1,164
laravel-octanerenoki-co1.0.01 of 1See more

laravel-octane renoki-co 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
quay.io/renokico/laravel-helm-demo:octane-0.6.0cad83090c58f
ip@1.1.5
1.1.9

Open the chart page →

3,634
flamerlex0.3.01 of 1See more

flame rlex 0.3.0

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
pawelmalak/flame:2.1.193e7b0abb603
ip@1.1.5
1.1.9

Open the chart page →

2,449
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
ip@1.1.5
1.1.9

Open the chart page →

6,879
vuiseriohub1.0.61 of 3See more

vui seriohub 1.0.6

1 of the 3 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
dserio83/velero-ui:0.3.1b4e1ec6664d3
ip@2.0.0
2.0.1

Open the chart page →

11,532
statsdstatsd-airflow-smd0.1.191 of 1See more

statsd statsd-airflow-smd 0.1.19

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
statsd/statsd:v0.8.6dab129e74c25
ip@1.1.5
1.1.9

Open the chart page →

4,185
ackeesudaVerified publisher0.2.11 of 1See more

ackee suda 0.2.1

1 of the 1 container images this version deploys carry CVE-2023-42282.

Container imageDigestPackageFixed in
electerious/ackee:3.2.05e7173fa321c
ip@1.1.5
1.1.9

Open the chart page →

1,602

Container images carrying it

490 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
jedi132000/nextapp:latestdc2a81e92f23
ip@2.0.0
2.0.1
1
jesec/flood:4.7.03d1d0bec117a
ip@1.1.5
1.1.9
1
jesec/flood:4.6.060bd59cfb4eb
ip@1.1.5
1.1.9
1
jesec/rtorrent-flood:latestf0c894ec459e
ip@1.1.5
1.1.9
1
joplin/server:latest3f7b852959aa
ip@1.1.5
1.1.9
1
joplin/server:3.0-beta52af57880c0e
ip@2.0.0
2.0.1
1
joplin/server:2.14.2-betab87564ef34e9
ip@1.1.5
1.1.9
1
josepht05/nodejs-feb24:latest36cb0c618c94
ip@2.0.0
2.0.1
1
josepht05/titajo-docker:v1.0.0d94024965d78
ip@2.0.0
2.0.1
1
josh5/unmanic:0.2.64d49c4816260
ip@2.0.0
2.0.1
1
junktext/getting-started:1.0.5a70936c04aed
ip@1.1.5
1.1.9
1
junktext/getting-started:1.0.34d44adf5a4da2
ip@1.1.5
1.1.9
1
jupyterhub/jupyterhub:5.4.63974ba945e65
ip@2.0.0
2.0.1
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
ip@1.1.5
1.1.9
1
keyoxide/keyoxide:stable96f27a71269d
ip@1.1.5
1.1.9
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
ip@1.1.5
1.1.9
1
koumoul/capture:17108d47be3b2
ip@1.1.5
1.1.9
1
koumoul/openapi-viewer:18eeca2e8285b
ip@1.1.5
1.1.9
1
ktitilayo2/nodejswebapp:latest8bac28058688
ip@2.0.0
2.0.1
1
kubebb/bff-server:v0.2.0-202312040fbb732379bc
ip@1.1.8
1.1.9
1
kubebb/component-store:latestfd8ecbd73213
ip@2.0.0
2.0.1
1
kubebb/tamp-portal:v5.6.0fadac6d52470
ip@1.1.5
1.1.9
1
kubebb/tdsf-portal:v5.7.0258458311bc9
ip@1.1.5
1.1.9
1
kubeflownotebookswg/centraldashboard:v1.6.137300551dea6
ip@1.1.5
1.1.9
1
kubeflownotebookswg/centraldashboard:v1.9.2af55c22ef5de
ip@2.0.0
2.0.1
1
kubesphere/examples-bookinfo-ratings-v1:1.13.0f1b5bf878196
ip@1.1.5
1.1.9
1
kubevious/backend:1.2.22d9ba6eb46b6
ip@2.0.0
2.0.1
1
kubevious/collector:1.2.1f58226f9d84e
ip@2.0.0
2.0.1
1
kubevious/guard:1.2.19bf567704de2
ip@1.1.5
1.1.9
1
kubevious/parser:1.0.151acf1a1f0b47
ip@1.1.5
1.1.9
1
kubevious/parser:1.2.299ae7a5168c2
ip@2.0.0
2.0.1
1
kubevious/workload-operator:1.0.20b0f4c507eb6
ip@1.1.5
1.1.9
1
kvalitetsit/kithosting-networkpolicytests:0.0.12b99cfa3c5df
ip@1.1.5
1.1.9
1
kyleslugg/klusterview:latestba8c36dfdfbd
ip@2.0.0
2.0.1
1
kyso/kyso-front:lateste52595c5c16f
ip@1.1.8
1.1.9
1
laly9999/node-app-dockerized:latest75ae77a20c6c
ip@2.0.0
2.0.1
1
langgenius/dify-sandbox:0.2.124e65e8a351a2
ip@2.0.0
2.0.1
1
langgenius/dify-web:0.6.11a2a294743634
ip@2.0.0
2.0.1
1
lavandadelpatio/frontend:latest501c3f31e0bc
ip@1.1.5
1.1.9
1
leeyoongti/first-app:1.0.021d66cb76352
ip@1.1.5
1.1.9
1
library/ghost:4.37.0767230c0f263
ip@1.1.5
1.1.9
1
library/ghost:5.79.083f7bf209844
ip@2.0.0
2.0.1
1
library/kibana:7.17.150172f1c538e7
ip@1.1.8
1.1.9
1
library/kibana:7.17.8c5781ba340ef
ip@1.1.5
1.1.9
1
library/kibana:7.17.3e2e2031c15be
ip@1.1.5
1.1.9
1
library/mongo-express:1.0.2-20-alpine3.191aae00775251
ip@2.0.0
2.0.1
1
library/node:16.13.0-alpine60ef0bed1dc2
ip@1.1.5
1.1.9
1
library/node:16.20f77a1aef2da8
ip@2.0.0
2.0.1
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
ip@1.1.5
1.1.9
1
linuxserver/code-server:4.10.1a5e43a05ae79
ip@1.1.5
1.1.9
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.