StackRadar

CVE-2023-42366

Medium

Advisory

Published 27 Nov 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
35th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
808
of 17,787 indexed, latest versions
Container images
845
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 808 of 17,787 indexed charts deploy, on 845 images.

Affected packageAffected versionsFixed inImages
busyboxapk1.35.0-r10, 1.35.0-r13, 1.35.0-r14, 1.35.0-r15+10 more1.35.0-r18, 1.35.0-r30, 1.36.1-r6, 1.36.1-r16+1 more820
busyboxdeb1:1.21.0-1ubuntu1, 1:1.21.0-1ubuntu1.4, 1:1.30.1-4ubuntu6.4, 1:1.30.1-7ubuntu3+6 moreno fix listed25
OSV records
ALPINE-CVE-2023-42366DEBIAN-CVE-2023-42366UBUNTU-CVE-2023-42366

Charts affected

808 by stars
ChartLatestAffected imagesRadar Score
pgbounceryasn77-pgbouncer0.0.81 of 1See more

pgbouncer yasn77-pgbouncer 0.0.8

1 of the 1 container images this version deploys carry CVE-2023-42366.

Container imageDigestPackageFixed in
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
busybox@1.35.0-r17
1.35.0-r18

Open the chart page →

1,152
prometheusalertygqygq2Verified publisher1.0.01 of 1See more

prometheusalert ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-42366.

Container imageDigestPackageFixed in
feiyu563/prometheus-alert:v4.9.1224cfa68cbd9
busybox@1.36.1-r5
1.36.1-r6

Open the chart page →

1,611
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2023-42366.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
busybox@1.35.0-r10
1.35.0-r18

Open the chart page →

7,972
zahori-consulzahoriVerified publisher1.0.12 of 2See more

zahori-consul zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-42366.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
busybox@1.35.0-r29
1.35.0-r30
hashicorp/consul-k8s-control-plane:1.1.262bed1bf8106
busybox@1.35.0-r29
1.35.0-r30

Open the chart page →

5,033
zahori-postgresqlzahoriVerified publisher1.0.11 of 1See more

zahori-postgresql zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-42366.

Container imageDigestPackageFixed in
library/postgres:12.15-alpine73ea9cdd4a9d
busybox@1.36.1-r2
1.36.1-r6

Open the chart page →

448
zahori-processzahoriVerified publisher1.0.11 of 1See more

zahori-process zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-42366.

Container imageDigestPackageFixed in
zahoriaut/zahori-process:0.1.13351f8a220ed7
busybox@1.36.1-r0
1.36.1-r6

Open the chart page →

3,480
zahori-serverzahoriVerified publisher1.0.12 of 2See more

zahori-server zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-42366.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
busybox@1.35.0-r29
1.35.0-r30
zahoriaut/zahori-server:0.1.17b2de13916f3e
busybox@1.35.0-r29
1.35.0-r30

Open the chart page →

5,846
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-42366.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latestf166a963b550
busybox@1.36.1-r5
1.36.1-r6

Open the chart page →

1,589

Container images carrying it

845 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
alpine/socat:1.7.4.493efcf633c54
busybox@1.36.1-r5
1.36.1-r6
1
amagdi888/my-repo:hello-appd8a10fc8faf6
busybox@1.35.0-r15
1.35.0-r18
1
andrcuns/smocker:0.18.5b4a8eb20581a
busybox@1.36.1-r2
1.36.1-r6
1
anguda/ant-media:2.5c435285fc241
busybox@1:1.30.1-4ubuntu6.4
no fix listed
1
anonaddy/anonaddy:0.12.3957a95565166
busybox@1.35.0-r13
1.35.0-r18
1
anujarosha/hello-go:v1.0.1ed60e46870b6
busybox@1.35.0-r13
1.35.0-r18
1
apecloud/kubeblocks-csi-driver:0.1.3c93655ccb2d7
busybox@1.36.1-r5
1.36.1-r6
1
apecloud/pyroscope:0.37.2dbca95a15bc1
busybox@1.35.0-r17
1.35.0-r18
1
aquasec/harbor-scanner-trivy:0.31.26e790e233872
busybox@1.36.1-r15
1.36.1-r16
1
aquasec/kube-bench:v0.6.176672264accce
busybox@1.36.1-r1
1.36.1-r6
1
aquasec/kube-bench:v0.6.9c329d73fea58
busybox@1.35.0-r17
1.35.0-r18
1
aquasec/postee:2.12.0-amd640795cba777e7
busybox@1.36.1-r0
1.36.1-r6
1
aquasec/postee-ui:2.12.0-amd64c0467c3941dc
busybox@1.36.1-r0
1.36.1-r6
1
aquasec/trivy:0.43.1944a04445179
busybox@1.36.1-r0
1.36.1-r6
1
aquasec/trivy:0.32.0973d0df16189
busybox@1.35.0-r17
1.35.0-r18
1
asonix/pictrs:0.4.0-beta.19480d36cd97e5
busybox@1.35.0-r17
1.35.0-r18
1
asonix/relay:0.3.82779e10f6f5bb
busybox@1.35.0-r17
1.35.0-r18
1
assistiot/composite-services-manager_agent-http-mqtt:latest16d21bc5e42e
busybox@1.36.1-r2
1.36.1-r6
1
assistiot/composite-services-manager_agent-mqtt-http:latest27d58b8911cd
busybox@1.36.1-r2
1.36.1-r6
1
assistiot/fl_orchestrator:ui-latest20338b353aaf
busybox@1.35.0-r17
1.35.0-r18
1
assistiot/monitoring_notifying:2.0.068324d0fa5bb
busybox@1.35.0-r29
1.35.0-r30
1
assistiot/open_api_kong:1.0.03fe850384689
busybox@1.35.0-r17
1.35.0-r18
1
assistiot/resource-provisioning_api:1.0.044a37b00d4f8
busybox@1.36.1-r2
1.36.1-r6
1
assistiot/resource-provisioning_im:1.0.0a942dc14030a
busybox@1.36.1-r15
1.36.1-r16
1
assistiot/semantic_translation:latest2a2587804717
busybox@1.36.1-r2
1.36.1-r6
1
assistiot/smart-orchestrator_cluster:latest4f41e1defe99
busybox@1.35.0-r29
1.35.0-r30
1
assistiot/smart-orchestrator_enabler:latest89f37e88c871
busybox@1.35.0-r29
1.35.0-r30
1
assistiot/smart-orchestrator_helm:latest9bb46ea14e8e
busybox@1.36.1-r15
1.36.1-r16
1
assistiot/smart-orchestrator_repository:latesta8b8dbed04a4
busybox@1.35.0-r29
1.35.0-r30
1
assistiot/tacticle_dashboard:db-latest02bc92348156
busybox@1.35.0-r17
1.35.0-r18
1
assistiot/tacticle_dashboard:web-latest25fc9f373524
busybox@1.35.0-r17
1.35.0-r18
1
assistiot/traffic-classification_api:2.0.0e32b87786142
busybox@1.36.1-r15
1.36.1-r16
1
b4bz/homer:v22.07.248a81e130470
busybox@1.35.0-r13
1.35.0-r18
1
b4bz/homer:v22.11.1678ac390d7c9
busybox@1.35.0-r17
1.35.0-r18
1
belirta/beli-docker:v1.0.0f65ad0e23b4d
busybox@1.35.0-r29
1.35.0-r30
1
beopenit/door-agent:v3.0.5d24c323fe7c3
busybox@1.36.1-r15
1.36.1-r16
1
bicarus/http-https-echo:2785dd6a7e805e
busybox@1.35.0-r17
1.35.0-r18
1
bicarus/wg-access-server:v0.8.206cab48e9334
busybox@1.35.0-r17
1.35.0-r18
1
binwiederhier/ntfy:v1.27.219eeaec60fda
busybox@1.35.0-r13
1.35.0-r18
1
binwiederhier/ntfy:v2.11.04a7d0f0adc6d
busybox@1.36.1-r15
1.36.1-r16
1
binwiederhier/ntfy:v2.6.283e2e43d9956
busybox@1.36.1-r0
1.36.1-r6
1
blipai/deckard:0.0.28737d5d19a312
busybox@1.36.1-r15
1.36.1-r16
1
blockscout/blockscout:5.1.5c365a8f2dc12
busybox@1.35.0-r17
1.35.0-r18
1
bnwokoye/nodejswebapp:latest74de7dc7ebfb
busybox@1.35.0-r29
1.35.0-r30
1
btungut/azure-keyvault-secret-operator:1.7.04a072e2edf71
busybox@1.36.1-r2
1.36.1-r6
1
caarlos0/domain_exporter:v1.23.0d11dec138900
busybox@1.36.1-r15
1.36.1-r16
1
casbin/casdoor:v1.224.066f836ef778b
busybox@1.35.0-r29
1.35.0-r30
1
catalysm/csmm:latestf003b35f54d9
busybox@1.36.1-r2
1.36.1-r6
1
chandanteekinavar/findery-market-payment-service:1.0c96f759b6ce4
busybox@1.36.1-r2
1.36.1-r6
1
chandanteekinavar/findery-market-user-service:1.049e164a9a439
busybox@1.35.0-r17
1.35.0-r18
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.