StackRadar

CVE-2023-44487

HighKEV

Advisory

Published 10 Oct 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
1.000
100th percentile
CISA KEV
Listed
since 10 Oct 2023
Charts affected
2,107
of 17,790 indexed, latest versions
Container images
2,471
deployed by those charts
Fix available
19 of 21
affected packages

Red Hat Enhancement Advisory: nginx:1.22 bug fix and enhancement update

Carried by container images the latest versions of 2,107 of 17,790 indexed charts deploy, on 2,471 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.43.0-1+2 more1.30.0-1ubuntu1+esm2, 1.40.0-1ubuntu0.2, 1.43.0-1+deb11u1, 1.43.0-1ubuntu0.1+1 more551
nghttp2apk1.46.0-r0, 1.46.0-r1, 1.47.0-r0, 1.47.0-r1+5 more1.46.0-r2, 1.47.0-r2, 1.51.0-r2, 1.57.0-r0213
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+7 more0:1.33.0-3.el8_1.2, 0:1.33.0-3.el8_2.2, 0:1.33.0-4.el8_4.1, 0:1.33.0-4.el8_6.1+6 more177
nginxdeb1.22.1-9, 1.22.1-9+deb12u2, 1.22.1-9+deb12u3, 1.22.1-9+deb12u4+14 moreno fix listed53
nginxapk1.20.2-r0, 1.22.0-r1, 1.22.1-r0, 1.24.0-r1+1 more1.20.2-r2, 1.22.1-r1, 1.24.0-r713
nodejsrpm1:12.18.2-1.module+el8.2.0+7233+61d664c1, 1:14.16.0-2.module+el8.3.0+10180+b92e1eb6, 1:14.17.3-2.module+el8.4.0+11738+3bd427621:16.20.2-3.module+el8.8.0+20386+0b1f30938
nodejs-packagingrpm23-3.module+el8.3.0+6519+9f98ed830:26-1.module+el8.8.0+19857+6d2a104d6
nodejsdeb8.10.0~dfsg-2ubuntu0.4, 10.19.0~dfsg-3ubuntu1, 10.19.0~dfsg-3ubuntu1.38.10.0~dfsg-2ubuntu0.4+esm6, 10.19.0~dfsg-3ubuntu1.6+esm24
nginxrpm1:1.14.1-9.module+el8.0.0+4108+af250afe, 1:1.20.1-1.module+el8.8.0+20359+9bd89172.1, 1:1.20.1-13.el91:1.20.1-1.module+el8.8.0+20359+9bd89172.1, 1:1.22.1-1.module+el8.8.0+20355+6d9c8a63.1, 1:1.22.1-5.module+el9.3.0.z+20438+032561a03
nodejs-nodemonrpm1.18.3-1.module+el8.1.0+3369+37ae6a45, 2.0.3-1.module+el8.3.0+6519+9f98ed83, 3.0.1-1.module+el8.8.0+19757+8ca870340:3.0.1-1.module+el8.8.0+19764+7eed1ca33
lighttpdapk1.4.64-r01.4.73-r02
varnishdeb7.5.0, 7.6.3-1~bookwormno fix listed2
Apache Tomcatbitnami9.0.808.5.941
tomcatbitnami9.0.80-18.5.941
varnishapk7.3.1-r17.4.2-r01
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+183 more0.17.01,572
tomcat-embed-coremaven8.5.4, 8.5.11, 8.5.14, 8.5.15+50 more8.5.94, 9.0.81, 10.1.14162
http2-commonmaven9.4.8.v20171121, 9.4.11.v20180605, 9.4.20.v20190813, 9.4.27.v20200227+10 more9.4.53, 11.0.1720
http2-servermaven9.4.8.v20171121, 9.4.11.v20180605, 9.4.20.v20190813, 9.4.27.v20200227+9 more9.4.53, 11.0.1716
tomcat-coyotemaven8.5.38, 8.5.41, 8.5.43, 8.5.57+7 more8.5.94, 9.0.8112
akka-http-core_2.12maven10.1.1110.5.31
OSV records
ALPINE-CVE-2023-44487BIT-tomcat-2023-44487DEBIAN-CVE-2023-44487RHEA-2023:6562RHSA-2023:5712RHSA-2023:5713RHSA-2023:5766RHSA-2023:5767RHSA-2023:5768RHSA-2023:5769RHSA-2023:5837RHSA-2023:5838RHSA-2023:5850RHSA-2023:6746RLSA-2023:5837UBUNTU-CVE-2023-44487GHSA-qppj-fm5r-hxr3DSA-5570-1openSUSE-SU-2024:13336-1SUSE-SU-2023:4200-1SUSE-SU-2023:4492-1
Also known as
BIT-apisix-2023-44487, BIT-aspnet-core-2023-44487, BIT-contour-2023-44487, BIT-dotnet-2023-44487, BIT-dotnet-sdk-2023-44487, BIT-envoy-2023-44487, BIT-golang-2023-44487, BIT-jenkins-2023-44487, BIT-kong-2023-44487, BIT-nginx-2023-44487, BIT-nginx-gateway-2023-44487, BIT-node-2023-44487, BIT-node-min-2023-44487, BIT-solr-2023-44487, BIT-varnish-2023-44487, RHSA-2023:5711, RHSA-2023:6120, USN-6505-1, USN-6754-1, USN-7469-3

Charts affected

2,107 by stars
ChartLatestAffected imagesRadar Score
pagespighosh-pages1.0.02 of 3See more

pages pighosh-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
tomcat-embed-core@9.0.36
1.40.0-1ubuntu0.2
9.0.81
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

20,242
firehose-corepinaxVerified publisher0.1.11 of 2See more

firehose-core pinax 0.1.1

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.10.222f84e3615c8
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
0.17.0

Open the chart page →

3,536
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
0.17.0

Open the chart page →

7,165
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
0.17.0

Open the chart page →

4,950
spring-boot-openshiftpiominVerified publisher0.3.111 of 1See more

spring-boot-openshift piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
nghttp2@1.43.0-1build3
tomcat-embed-core@9.0.65
1.43.0-1ubuntu0.1
9.0.81

Open the chart page →

7,622
pixie-operator-chartpixie0.1.71 of 3See more

pixie-operator-chart pixie 0.1.7

1 of the 3 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
curlimages/curl:multiarch-7.87.0f7f265d5c64e
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,907
pixie-operator-helm2-chartpixie0.1.21 of 2See more

pixie-operator-helm2-chart pixie 0.1.2

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinnedf9ea8cef95ac
golang.org/x/net@v0.7.0
0.17.0

Open the chart page →

1,761
planectlplanectlVerified publisher0.7.01 of 10See more

planectl planectl 0.7.0

1 of the 10 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
alpine/k8s:1.30.2cd560fce90f7
golang.org/x/net@v0.9.0
0.17.0

Open the chart page →

26,118
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
nghttp2@1.33.0-1.el8_0.1
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0:1.33.0-3.el8_1.2
0.17.0

Open the chart page →

11,162
k8s-node-image-1-15pnnl-miscscripts0.2.611 of 2See more

k8s-node-image-1-15 pnnl-miscscripts 0.2.61

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,786
k8s-node-image-1-16pnnl-miscscripts0.2.711 of 2See more

k8s-node-image-1-16 pnnl-miscscripts 0.2.71

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

2,343
k8s-node-image-1-17pnnl-miscscripts0.2.721 of 2See more

k8s-node-image-1-17 pnnl-miscscripts 0.2.72

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,578
k8s-node-image-1-18pnnl-miscscripts0.2.751 of 2See more

k8s-node-image-1-18 pnnl-miscscripts 0.2.75

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,578
k8s-node-image-1-19pnnl-miscscripts0.2.601 of 2See more

k8s-node-image-1-19 pnnl-miscscripts 0.2.60

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,578
k8s-node-image-1-20pnnl-miscscripts0.2.652 of 2See more

k8s-node-image-1-20 pnnl-miscscripts 0.2.65

2 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2
pnnlmiscscripts/k8s-node-image:1.20.15-nginx-18bbc7a777f9f7
nghttp2@1.47.0-r0
nginx@1.22.0-r1
1.47.0-r2
1.22.1-r1

Open the chart page →

2,208
k8s-node-image-1-21pnnl-miscscripts0.2.1491 of 2See more

k8s-node-image-1-21 pnnl-miscscripts 0.2.149

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,403
k8s-node-image-1-22pnnl-miscscripts0.2.1171 of 2See more

k8s-node-image-1-22 pnnl-miscscripts 0.2.117

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,403
k8s-node-image-1-23pnnl-miscscripts0.2.1231 of 2See more

k8s-node-image-1-23 pnnl-miscscripts 0.2.123

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,403
k8s-node-image-1-24pnnl-miscscripts0.2.1281 of 2See more

k8s-node-image-1-24 pnnl-miscscripts 0.2.128

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,403
k8s-node-image9-1-21pnnl-miscscripts0.2.382 of 2See more

k8s-node-image9-1-21 pnnl-miscscripts 0.2.38

2 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
nghttp2@1.51.0-r0
1.51.0-r2
pnnlmiscscripts/k8s-node-image9:1.21.14-nginx-33fa8f5906d36a
nghttp2@1.51.0-r1
1.51.0-r2

Open the chart page →

2,614
k8s-node-image9-1-22pnnl-miscscripts0.2.312 of 2See more

k8s-node-image9-1-22 pnnl-miscscripts 0.2.31

2 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
nghttp2@1.51.0-r0
1.51.0-r2
pnnlmiscscripts/k8s-node-image9:1.22.17-nginx-34b85e437ae261
nghttp2@1.51.0-r1
1.51.0-r2

Open the chart page →

2,614
k8s-node-image9-1-23pnnl-miscscripts0.2.272 of 2See more

k8s-node-image9-1-23 pnnl-miscscripts 0.2.27

2 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
nghttp2@1.51.0-r0
1.51.0-r2
pnnlmiscscripts/k8s-node-image9:1.23.17-nginx-3479ada675515f
nghttp2@1.51.0-r1
1.51.0-r2

Open the chart page →

2,614
pixiecorepnnl-miscscripts0.0.161 of 1See more

pixiecore pnnl-miscscripts 0.0.16

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/pixiecore:1.0.1-1c6f17741a0d7
golang.org/x/net@v0.7.0
0.17.0

Open the chart page →

943
tenant-namespacepnnl-miscscripts0.6.231 of 1See more

tenant-namespace pnnl-miscscripts 0.6.23

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
nghttp2@1.47.0-r0
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
1.47.0-r2
0.17.0

Open the chart page →

2,578
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
nghttp2@1.33.0-3.el8_2.1
golang.org/x/net@v0.10.0
0:1.33.0-5.el8_8
0.17.0

Open the chart page →

13,089
podnat-controllerpodnat-controller0.5.21 of 1See more

podnat-controller podnat-controller 0.5.2

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
gutmensch/podnat-controller:0.5.2566979793fc4
golang.org/x/net@v0.4.0
0.17.0

Open the chart page →

984
podnat-state-storepodnat-controller0.3.21 of 1See more

podnat-state-store podnat-controller 0.3.2

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.2

Open the chart page →

9,216
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/libretime/libretime-legacy:latest35b4531189c2
nghttp2@1.43.0-1
1.43.0-1+deb11u1

Open the chart page →

11,213
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
nghttp2@1.52.0-1
1.52.0-1+deb12u1

Open the chart page →

6,586
pollstrpollstr0.1.01 of 1See more

pollstr pollstr 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/mroxso/pollstr:latest0b4f97faa3d0
nghttp2@1.43.0-1
1.43.0-1+deb11u1

Open the chart page →

813
prometheus-bbox-exporterportefaix-hub0.4.11 of 1See more

prometheus-bbox-exporter portefaix-hub 0.4.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/nlamirault/bbox_exporter:1.0.0f5dd1f7794c6
golang.org/x/net@v0.0.0-20210917221730-978cfadd31cf
0.17.0

Open the chart page →

2,013
prometheus-freebox-exporterportefaix-hub0.1.11 of 1See more

prometheus-freebox-exporter portefaix-hub 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/nlamirault/freebox-exporter:1.0.02d522b664e12
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
0.17.0

Open the chart page →

1,755
keydbpozetron0.5.31 of 1See more

keydb pozetron 0.5.3

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pozetroninc/keydb:v6.0.1653ae64f29da8
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

7,017
liftbridgepozetron0.1.11 of 1See more

liftbridge pozetron 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pozetroninc/liftbridge:v1.1.079fd6b9d93e6
golang.org/x/net@v0.0.0-20191021144547-ec77196f6094
0.17.0

Open the chart page →

3,174
Practica_4_helmpr04helm0.1.04 of 7See more

Practica_4_helm pr04helm 0.1.0

4 of the 7 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-5.el8_8
codeurjc/toposervice:v1.09fb4c11e6a49
golang.org/x/net@v0.7.0
0.17.0
codeurjc/weatherservice:v1.0b9e2f7234349
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-4.el8_6.1
library/mongo:5.0.6-focal8e70544b6c76
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.2

Open the chart page →

27,659
practica-helmpractica-helm0.1.02 of 7See more

practica-helm practica-helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
library/mongo:4.4-bionic3d0e6df9fd5b
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
slagattollas/weatherservice-practica:latest68e7f56393fc
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

28,503
pagesprasanthi1.0.02 of 3See more

pages prasanthi 1.0.0

2 of the 3 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
tomcat-embed-core@9.0.36
1.40.0-1ubuntu0.2
9.0.81
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

20,242
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
golang.org/x/net@v0.0.0-20191112182307-2180aed22343
nghttp2@1.43.0-1
0.17.0
1.43.0-1+deb11u1

Open the chart page →

9,613
oauth2-proxypresto-loadbalancer4.3.181 of 2See more

oauth2-proxy presto-loadbalancer 4.3.18

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.17.0

Open the chart page →

3,964
presto-exporterpresto-loadbalancer0.0.91 of 1See more

presto-exporter presto-loadbalancer 0.0.9

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
garugaru/presto-exporter:cb666560e9e82d5ae36aef1e663c3d7f51cca9fc5201314c28f3
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.17.0

Open the chart page →

2,190
trino-exporterpresto-loadbalancer0.0.121 of 1See more

trino-exporter presto-loadbalancer 0.0.12

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
datappeal/trino-exporter:latest325b91c2b09e
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.17.0

Open the chart page →

1,969
trino-loadbalancerpresto-loadbalancer0.3.11 of 1See more

trino-loadbalancer presto-loadbalancer 0.3.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
datappeal/trino-loadbalancer:sha-950abbae6b5b9fdb2e6d
golang.org/x/net@v0.0.0-20220617184016-355a448f1bc9
0.17.0

Open the chart page →

2,357
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
nghttp2@1.52.0-1
1.52.0-1+deb12u1

Open the chart page →

8,241
primeprime1.0.01 of 1See more

prime prime 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
udhos/prime:1.0.0e432012dd34a
nghttp2@1.51.0-r0
1.51.0-r2

Open the chart page →

1,682
procestypecatalogusprocestypecatalogus1.1.01 of 4See more

procestypecatalogus procestypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/procestypecatalogus-php:latest956c4fb64796
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.17.0

Open the chart page →

7,438
producer-helmproducer-app-helm-chart0.1.01 of 1See more

producer-helm producer-app-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
j4ckhunter/producer:1.006ba447609b12
tomcat-embed-core@9.0.65
9.0.81

Open the chart page →

2,567
productenendienstencatalogusproductenendienstencatalogus1.0.01 of 3See more

productenendienstencatalogus productenendienstencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/productenendienstencatalogus-php:latest7242da105081
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.17.0

Open the chart page →

7,519
prometheus-modbus-exporterprometheus-communityVerified publisher0.1.41 of 1See more

prometheus-modbus-exporter prometheus-community 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
openenergyprojects/modbus_exporter:20230617_a14455158990f24fb25
golang.org/x/net@v0.8.0
0.17.0

Open the chart page →

1,209
alertmanagerprometheus-worawutchan0.3.01 of 1See more

alertmanager prometheus-worawutchan 0.3.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
0.17.0

Open the chart page →

2,305
prometheus-blackbox-exporterprometheus-worawutchan4.10.11 of 1See more

prometheus-blackbox-exporter prometheus-worawutchan 4.10.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.18.01ffc3f109eb3
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
0.17.0

Open the chart page →

2,250

Container images carrying it

2,471 by charts deploying them

A fixed version is listed for 19 of the 21 affected packages.

Container imageDigestPackageFixed inUsed by
crossplane/oam-kubernetes-runtime:v0.0.3-71.g0f235900112171c45e3
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
0.17.0
1
crossplane/oam-kubernetes-runtime:v0.3.1-5.g11e189407b8b410dc76
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.17.0
1
crowdfox/external-service-operator:v1.1.06fa7e8063d27
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
0.17.0
1
csepulvedab/secret-sync:0.5227a6f2b0ff8
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.17.0
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
golang.org/x/net@v0.0.0-20191112182307-2180aed22343
0.17.0
1
csiplugin/snapshot-controller:v4.0.000fcc441ea9f
golang.org/x/net@v0.0.0-20201209123823-ac852fbbde11
0.17.0
1
ctron/hawkbit-operator:0.1.48fdea8f76499
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-3.el8_2.2
1
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
0.17.0
1
curlimages/curl:8.1.15af13420d29b
nghttp2@1.51.0-r0
1.51.0-r2
1
curlimages/curl:8.00.19e886c104cae
nghttp2@1.47.0-r0
1.47.0-r2
1
curlimages/curl:8.00.0d1658d9c8ef9
nghttp2@1.47.0-r0
1.47.0-r2
1
curlimages/curl:7.83.1e83fef2d5a03
nghttp2@1.46.0-r0
1.46.0-r2
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
nghttp2@1.52.0-1
nginx@1.25.3-1~bookworm
1.52.0-1+deb12u1
no fix listed
1
dalf/morty:latest248a4849c350
golang.org/x/net@v0.0.0-20220421235706-1d1ef9303861
0.17.0
1
danielfm/kube-ecr-cleanup-controller:0.1.1012485563b1d0
golang.org/x/net@v0.7.0
0.17.0
1
danielqsj/kafka-exporter:v1.7.0e90b7ba06d97
golang.org/x/net@v0.10.0
0.17.0
1
dannielkil/book-backend:lateste3b479a55a69
tomcat-embed-core@9.0.65
9.0.81
1
dannielkil/book-frontend:latest937993927694
nginx@1.27.1-1~bookworm
no fix listed
1
danuk/k8s-sftp-gcs:latestdd0e6585c44f
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
danuk/telegram-sender:0.0.1026560388070
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
daprio/dashboard:0.14.07ba5d51e5b97
golang.org/x/net@v0.6.0
0.17.0
1
daprio/injector:1.11.2763b9b70b0c8
golang.org/x/net@v0.12.0
0.17.0
1
daprio/operator:1.11.2c584428aa12d
golang.org/x/net@v0.12.0
0.17.0
1
daprio/placement:1.11.2d8e1446da996
golang.org/x/net@v0.12.0
0.17.0
1
daprio/sentry:1.11.21f507c1a181b
golang.org/x/net@v0.12.0
0.17.0
1
darkobas/ethexporter:latest62e6464491ba
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
darkobas/tokenexporter:latesta0349a0eedf0
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
darthsim/imgproxy:v3.15.040f6eb807444
golang.org/x/net@v0.7.0
0.17.0
1
daskdev/dask-notebook:1.1.0052630f5ca04
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
1
datadog/agent:7.22.08f20e56b5311
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
0.17.0
1
datadog/extendeddaemonset:v0.8.0513a4377aed5
nghttp2@1.33.0-3.el8_2.1
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0:1.33.0-5.el8_8
0.17.0
1
datadog/operator:0.3.117f08a860090
golang.org/x/net@v0.0.0-20200301022130-244492dfa37a
0.17.0
1
datamate/seafile-professional:11.0.202dd66b722464
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
0.17.0
1
datappeal/hive-metastore:lateste38c085a3567
golang.org/x/net@v0.0.0-20191112182307-2180aed22343
nghttp2@1.43.0-1
0.17.0
1.43.0-1+deb11u1
1
datappeal/trino-exporter:latest325b91c2b09e
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.17.0
1
datappeal/trino-loadbalancer:sha-950abbae6b5b9fdb2e6d
golang.org/x/net@v0.0.0-20220617184016-355a448f1bc9
0.17.0
1
datasaker/dsk-process-agent:latest2f38720a637d
golang.org/x/net@v0.15.0
0.17.0
1
datawire/aes:2.0.3-ea07f8fe4f4f8e
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.17.0
1
datawire/aes:1.13.62beb65062c8b
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.17.0
1
datawire/ambassador-operator:v1.3.0f95ae710d75c
nghttp2@1.33.0-3.el8_2.1
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
0:1.33.0-4.el8_4.1
0.17.0
1
datawire/emissary:2.0.2-ea9716efbdd24b
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.17.0
1
davidvmar/urjc-davidvmar-worker:1.0.10d221e834a21
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.1
1
ddosify/selfhosted_hammer:2.0.0181965edb12e
golang.org/x/net@v0.8.0
0.17.0
1
ddosify/selfhosted_hammer:1.4.2a97a1b8a66af
golang.org/x/net@v0.8.0
0.17.0
1
deepflowce/deepflowio-init-grafana:v6.2.6.56b51a0206b04
golang.org/x/net@v0.8.0
0.17.0
1
deepflowce/deepflow-server:v6.2.6.534fcc526dd59
golang.org/x/net@v0.7.0
0.17.0
1
dellcloud/category:distributed02fc234353a9
nghttp2@1.40.0-1build1
tomcat-embed-core@9.0.36
1.40.0-1ubuntu0.2
9.0.81
1
dellcloud/pages:1.04d2eb25b9225
nghttp2@1.40.0-1build1
tomcat-embed-core@9.0.43
1.40.0-1ubuntu0.2
9.0.81
1
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
nghttp2@1.33.0-3.el8_2.1
golang.org/x/net@v0.0.0-20220822230855-b0a4917ee28c
0:1.33.0-4.el8_6.1
0.17.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.