StackRadar

CVE-2023-44487

HighKEV

Advisory

Published 10 Oct 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
1.000
100th percentile
CISA KEV
Listed
since 10 Oct 2023
Charts affected
2,106
of 17,797 indexed, latest versions
Container images
2,470
deployed by those charts
Fix available
19 of 21
affected packages

Red Hat Enhancement Advisory: nginx:1.22 bug fix and enhancement update

Carried by container images the latest versions of 2,106 of 17,797 indexed charts deploy, on 2,470 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.43.0-1+2 more1.30.0-1ubuntu1+esm2, 1.40.0-1ubuntu0.2, 1.43.0-1+deb11u1, 1.43.0-1ubuntu0.1+1 more551
nghttp2apk1.46.0-r0, 1.46.0-r1, 1.47.0-r0, 1.47.0-r1+5 more1.46.0-r2, 1.47.0-r2, 1.51.0-r2, 1.57.0-r0213
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+7 more0:1.33.0-3.el8_1.2, 0:1.33.0-3.el8_2.2, 0:1.33.0-4.el8_4.1, 0:1.33.0-4.el8_6.1+6 more177
nginxdeb1.22.1-9, 1.22.1-9+deb12u2, 1.22.1-9+deb12u3, 1.22.1-9+deb12u4+14 moreno fix listed53
nginxapk1.20.2-r0, 1.22.0-r1, 1.22.1-r0, 1.24.0-r1+1 more1.20.2-r2, 1.22.1-r1, 1.24.0-r713
nodejsrpm1:12.18.2-1.module+el8.2.0+7233+61d664c1, 1:14.16.0-2.module+el8.3.0+10180+b92e1eb6, 1:14.17.3-2.module+el8.4.0+11738+3bd427621:16.20.2-3.module+el8.8.0+20386+0b1f30938
nodejs-packagingrpm23-3.module+el8.3.0+6519+9f98ed830:26-1.module+el8.8.0+19857+6d2a104d6
nodejsdeb8.10.0~dfsg-2ubuntu0.4, 10.19.0~dfsg-3ubuntu1, 10.19.0~dfsg-3ubuntu1.38.10.0~dfsg-2ubuntu0.4+esm6, 10.19.0~dfsg-3ubuntu1.6+esm24
nginxrpm1:1.14.1-9.module+el8.0.0+4108+af250afe, 1:1.20.1-1.module+el8.8.0+20359+9bd89172.1, 1:1.20.1-13.el91:1.20.1-1.module+el8.8.0+20359+9bd89172.1, 1:1.22.1-1.module+el8.8.0+20355+6d9c8a63.1, 1:1.22.1-5.module+el9.3.0.z+20438+032561a03
nodejs-nodemonrpm1.18.3-1.module+el8.1.0+3369+37ae6a45, 2.0.3-1.module+el8.3.0+6519+9f98ed83, 3.0.1-1.module+el8.8.0+19757+8ca870340:3.0.1-1.module+el8.8.0+19764+7eed1ca33
lighttpdapk1.4.64-r01.4.73-r02
varnishdeb7.5.0, 7.6.3-1~bookwormno fix listed2
Apache Tomcatbitnami9.0.808.5.941
tomcatbitnami9.0.80-18.5.941
varnishapk7.3.1-r17.4.2-r01
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+183 more0.17.01,571
tomcat-embed-coremaven8.5.4, 8.5.11, 8.5.14, 8.5.15+50 more8.5.94, 9.0.81, 10.1.14162
http2-commonmaven9.4.8.v20171121, 9.4.11.v20180605, 9.4.20.v20190813, 9.4.27.v20200227+10 more9.4.53, 11.0.1720
http2-servermaven9.4.8.v20171121, 9.4.11.v20180605, 9.4.20.v20190813, 9.4.27.v20200227+9 more9.4.53, 11.0.1716
tomcat-coyotemaven8.5.38, 8.5.41, 8.5.43, 8.5.57+7 more8.5.94, 9.0.8112
akka-http-core_2.12maven10.1.1110.5.31
OSV records
ALPINE-CVE-2023-44487BIT-tomcat-2023-44487DEBIAN-CVE-2023-44487RHEA-2023:6562RHSA-2023:5712RHSA-2023:5713RHSA-2023:5766RHSA-2023:5767RHSA-2023:5768RHSA-2023:5769RHSA-2023:5837RHSA-2023:5838RHSA-2023:5850RHSA-2023:6746RLSA-2023:5837UBUNTU-CVE-2023-44487GHSA-qppj-fm5r-hxr3DSA-5570-1openSUSE-SU-2024:13336-1SUSE-SU-2023:4200-1SUSE-SU-2023:4492-1
Also known as
BIT-apisix-2023-44487, BIT-aspnet-core-2023-44487, BIT-contour-2023-44487, BIT-dotnet-2023-44487, BIT-dotnet-sdk-2023-44487, BIT-envoy-2023-44487, BIT-golang-2023-44487, BIT-jenkins-2023-44487, BIT-kong-2023-44487, BIT-nginx-2023-44487, BIT-nginx-gateway-2023-44487, BIT-node-2023-44487, BIT-node-min-2023-44487, BIT-solr-2023-44487, BIT-varnish-2023-44487, RHSA-2023:5711, RHSA-2023:6120, USN-6505-1, USN-6754-1, USN-7469-3

Charts affected

2,106 by stars
ChartLatestAffected imagesRadar Score
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
0.17.0

Open the chart page →

7,193
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
0.17.0

Open the chart page →

4,971
spring-boot-openshiftpiominVerified publisher0.3.111 of 1See more

spring-boot-openshift piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
nghttp2@1.43.0-1build3
tomcat-embed-core@9.0.65
1.43.0-1ubuntu0.1
9.0.81

Open the chart page →

7,632
pixie-operator-chartpixie0.1.71 of 3See more

pixie-operator-chart pixie 0.1.7

1 of the 3 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
curlimages/curl:multiarch-7.87.0f7f265d5c64e
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,907
pixie-operator-helm2-chartpixie0.1.21 of 2See more

pixie-operator-helm2-chart pixie 0.1.2

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinnedf9ea8cef95ac
golang.org/x/net@v0.7.0
0.17.0

Open the chart page →

1,762
planectlplanectlVerified publisher0.7.01 of 10See more

planectl planectl 0.7.0

1 of the 10 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
alpine/k8s:1.30.2cd560fce90f7
golang.org/x/net@v0.9.0
0.17.0

Open the chart page →

26,158
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
nghttp2@1.33.0-1.el8_0.1
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0:1.33.0-3.el8_1.2
0.17.0

Open the chart page →

11,162
k8s-node-image-1-15pnnl-miscscripts0.2.611 of 2See more

k8s-node-image-1-15 pnnl-miscscripts 0.2.61

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,786
k8s-node-image-1-16pnnl-miscscripts0.2.711 of 2See more

k8s-node-image-1-16 pnnl-miscscripts 0.2.71

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

2,343
k8s-node-image-1-17pnnl-miscscripts0.2.721 of 2See more

k8s-node-image-1-17 pnnl-miscscripts 0.2.72

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,578
k8s-node-image-1-18pnnl-miscscripts0.2.751 of 2See more

k8s-node-image-1-18 pnnl-miscscripts 0.2.75

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,578
k8s-node-image-1-19pnnl-miscscripts0.2.601 of 2See more

k8s-node-image-1-19 pnnl-miscscripts 0.2.60

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,578
k8s-node-image-1-20pnnl-miscscripts0.2.652 of 2See more

k8s-node-image-1-20 pnnl-miscscripts 0.2.65

2 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2
pnnlmiscscripts/k8s-node-image:1.20.15-nginx-18bbc7a777f9f7
nghttp2@1.47.0-r0
nginx@1.22.0-r1
1.47.0-r2
1.22.1-r1

Open the chart page →

2,208
k8s-node-image-1-21pnnl-miscscripts0.2.1491 of 2See more

k8s-node-image-1-21 pnnl-miscscripts 0.2.149

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,403
k8s-node-image-1-22pnnl-miscscripts0.2.1171 of 2See more

k8s-node-image-1-22 pnnl-miscscripts 0.2.117

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,403
k8s-node-image-1-23pnnl-miscscripts0.2.1231 of 2See more

k8s-node-image-1-23 pnnl-miscscripts 0.2.123

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,403
k8s-node-image-1-24pnnl-miscscripts0.2.1281 of 2See more

k8s-node-image-1-24 pnnl-miscscripts 0.2.128

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
nghttp2@1.47.0-r0
1.47.0-r2

Open the chart page →

1,403
k8s-node-image9-1-21pnnl-miscscripts0.2.382 of 2See more

k8s-node-image9-1-21 pnnl-miscscripts 0.2.38

2 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
nghttp2@1.51.0-r0
1.51.0-r2
pnnlmiscscripts/k8s-node-image9:1.21.14-nginx-33fa8f5906d36a
nghttp2@1.51.0-r1
1.51.0-r2

Open the chart page →

2,614
k8s-node-image9-1-22pnnl-miscscripts0.2.312 of 2See more

k8s-node-image9-1-22 pnnl-miscscripts 0.2.31

2 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
nghttp2@1.51.0-r0
1.51.0-r2
pnnlmiscscripts/k8s-node-image9:1.22.17-nginx-34b85e437ae261
nghttp2@1.51.0-r1
1.51.0-r2

Open the chart page →

2,614
k8s-node-image9-1-23pnnl-miscscripts0.2.272 of 2See more

k8s-node-image9-1-23 pnnl-miscscripts 0.2.27

2 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
nghttp2@1.51.0-r0
1.51.0-r2
pnnlmiscscripts/k8s-node-image9:1.23.17-nginx-3479ada675515f
nghttp2@1.51.0-r1
1.51.0-r2

Open the chart page →

2,614
pixiecorepnnl-miscscripts0.0.161 of 1See more

pixiecore pnnl-miscscripts 0.0.16

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/pixiecore:1.0.1-1c6f17741a0d7
golang.org/x/net@v0.7.0
0.17.0

Open the chart page →

943
tenant-namespacepnnl-miscscripts0.6.231 of 1See more

tenant-namespace pnnl-miscscripts 0.6.23

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
nghttp2@1.47.0-r0
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
1.47.0-r2
0.17.0

Open the chart page →

2,578
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
nghttp2@1.33.0-3.el8_2.1
golang.org/x/net@v0.10.0
0:1.33.0-5.el8_8
0.17.0

Open the chart page →

13,089
podnat-controllerpodnat-controller0.5.21 of 1See more

podnat-controller podnat-controller 0.5.2

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
gutmensch/podnat-controller:0.5.2566979793fc4
golang.org/x/net@v0.4.0
0.17.0

Open the chart page →

984
podnat-state-storepodnat-controller0.3.21 of 1See more

podnat-state-store podnat-controller 0.3.2

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.2

Open the chart page →

9,227
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/libretime/libretime-legacy:latest35b4531189c2
nghttp2@1.43.0-1
1.43.0-1+deb11u1

Open the chart page →

11,255
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
nghttp2@1.52.0-1
1.52.0-1+deb12u1

Open the chart page →

6,587
pollstrpollstr0.1.01 of 1See more

pollstr pollstr 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/mroxso/pollstr:latest0b4f97faa3d0
nghttp2@1.43.0-1
1.43.0-1+deb11u1

Open the chart page →

813
prometheus-bbox-exporterportefaix-hub0.4.11 of 1See more

prometheus-bbox-exporter portefaix-hub 0.4.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/nlamirault/bbox_exporter:1.0.0f5dd1f7794c6
golang.org/x/net@v0.0.0-20210917221730-978cfadd31cf
0.17.0

Open the chart page →

2,014
prometheus-freebox-exporterportefaix-hub0.1.11 of 1See more

prometheus-freebox-exporter portefaix-hub 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/nlamirault/freebox-exporter:1.0.02d522b664e12
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
0.17.0

Open the chart page →

1,755
keydbpozetron0.5.31 of 1See more

keydb pozetron 0.5.3

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pozetroninc/keydb:v6.0.1653ae64f29da8
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

7,025
liftbridgepozetron0.1.11 of 1See more

liftbridge pozetron 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
pozetroninc/liftbridge:v1.1.079fd6b9d93e6
golang.org/x/net@v0.0.0-20191021144547-ec77196f6094
0.17.0

Open the chart page →

3,174
Practica_4_helmpr04helm0.1.04 of 7See more

Practica_4_helm pr04helm 0.1.0

4 of the 7 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-5.el8_8
codeurjc/toposervice:v1.09fb4c11e6a49
golang.org/x/net@v0.7.0
0.17.0
codeurjc/weatherservice:v1.0b9e2f7234349
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-4.el8_6.1
library/mongo:5.0.6-focal8e70544b6c76
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.2

Open the chart page →

27,697
practica-helmpractica-helm0.1.02 of 7See more

practica-helm practica-helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
library/mongo:4.4-bionic3d0e6df9fd5b
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
slagattollas/weatherservice-practica:latest68e7f56393fc
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

28,537
pagesprasanthi1.0.02 of 3See more

pages prasanthi 1.0.0

2 of the 3 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
tomcat-embed-core@9.0.36
1.40.0-1ubuntu0.2
9.0.81
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

20,262
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
golang.org/x/net@v0.0.0-20191112182307-2180aed22343
nghttp2@1.43.0-1
0.17.0
1.43.0-1+deb11u1

Open the chart page →

9,614
oauth2-proxypresto-loadbalancer4.3.181 of 2See more

oauth2-proxy presto-loadbalancer 4.3.18

1 of the 2 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.17.0

Open the chart page →

3,965
presto-exporterpresto-loadbalancer0.0.91 of 1See more

presto-exporter presto-loadbalancer 0.0.9

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
garugaru/presto-exporter:cb666560e9e82d5ae36aef1e663c3d7f51cca9fc5201314c28f3
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.17.0

Open the chart page →

2,191
trino-exporterpresto-loadbalancer0.0.121 of 1See more

trino-exporter presto-loadbalancer 0.0.12

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
datappeal/trino-exporter:latest325b91c2b09e
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.17.0

Open the chart page →

1,969
trino-loadbalancerpresto-loadbalancer0.3.11 of 1See more

trino-loadbalancer presto-loadbalancer 0.3.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
datappeal/trino-loadbalancer:sha-950abbae6b5b9fdb2e6d
golang.org/x/net@v0.0.0-20220617184016-355a448f1bc9
0.17.0

Open the chart page →

2,358
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
nghttp2@1.52.0-1
1.52.0-1+deb12u1

Open the chart page →

8,233
primeprime1.0.01 of 1See more

prime prime 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
udhos/prime:1.0.0e432012dd34a
nghttp2@1.51.0-r0
1.51.0-r2

Open the chart page →

1,682
procestypecatalogusprocestypecatalogus1.1.01 of 4See more

procestypecatalogus procestypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/procestypecatalogus-php:latest956c4fb64796
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.17.0

Open the chart page →

7,439
producer-helmproducer-app-helm-chart0.1.01 of 1See more

producer-helm producer-app-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
j4ckhunter/producer:1.006ba447609b12
tomcat-embed-core@9.0.65
9.0.81

Open the chart page →

2,567
productenendienstencatalogusproductenendienstencatalogus1.0.01 of 3See more

productenendienstencatalogus productenendienstencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/productenendienstencatalogus-php:latest7242da105081
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.17.0

Open the chart page →

7,519
prometheus-modbus-exporterprometheus-communityVerified publisher0.1.41 of 1See more

prometheus-modbus-exporter prometheus-community 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
openenergyprojects/modbus_exporter:20230617_a14455158990f24fb25
golang.org/x/net@v0.8.0
0.17.0

Open the chart page →

1,209
alertmanagerprometheus-worawutchan0.3.01 of 1See more

alertmanager prometheus-worawutchan 0.3.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
0.17.0

Open the chart page →

2,305
prometheus-blackbox-exporterprometheus-worawutchan4.10.11 of 1See more

prometheus-blackbox-exporter prometheus-worawutchan 4.10.1

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.18.01ffc3f109eb3
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
0.17.0

Open the chart page →

2,250
prometheus-node-exporterprometheus-worawutchan1.12.01 of 1See more

prometheus-node-exporter prometheus-worawutchan 1.12.0

1 of the 1 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
0.17.0

Open the chart page →

2,188
panproto-application-nldesign0.1.01 of 5See more

pan proto-application-nldesign 0.1.0

1 of the 5 container images this version deploys carry CVE-2023-44487.

Container imageDigestPackageFixed in
conduction/pan-php:dev24f03c57568f
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.17.0

Open the chart page →

8,734

Container images carrying it

2,470 by charts deploying them

A fixed version is listed for 19 of the 21 affected packages.

Container imageDigestPackageFixed inUsed by
lumenvox/cloud-license:2.0.09a69862e1248
golang.org/x/net@v0.0.0-20210805182204-aaa1db679c0d
0.17.0
1
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
golang.org/x/net@v0.1.0
nghttp2@1.43.0-1
0.17.0
1.43.0-1+deb11u1
1
mailserver/docker-mailserver:11.0.0e0809756dc96
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
maissacrement/pock8snodejs:0.0.16da0db1159da
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
maksimkavalenka/microservices-learning.resource-processor:latest64a25afb8748
tomcat-embed-core@10.1.13
10.1.14
1
maksimkavalenka/microservices-learning.resource-service:latest13ad9bb170a0
tomcat-embed-core@10.1.13
10.1.14
1
maksimkavalenka/microservices-learning.song-service:latest2bcdac368b07
tomcat-embed-core@10.1.13
10.1.14
1
maldridge/alertmanager-irc-relay:v0.4.1391de2b76128
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.17.0
1
manojchaulagain/go-k8s:0.1.0f237b5f637ae
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
mantlenetworkio/l2geth:v0.4.36bf383d14291
nghttp2@1.46.0-r1
golang.org/x/net@v0.10.0
1.46.0-r2
0.17.0
1
mariadb/maxscale:23.02.256c5e0908148
nghttp2@1.33.0-3.el8_3.1
0:1.33.0-5.el8_8
1
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
golang.org/x/net@v0.4.0
nghttp2@1.43.0-1
0.17.0
1.43.0-1+deb11u1
1
masipcat/wireguard-go:latest696206e5954d
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.17.0
1
masipcat/wireguard-go:0.0.20230223769f7bb64694
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.17.0
1
matrixdb/custom-external-provisioner:4622a07d7-202204247e9ffe249a51
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.17.0
1
matrixdb/kubebuilder_kube-rbac-proxy:v0.12.0ed3c7e6291e8
golang.org/x/net@v0.0.0-20220325170049-de3da57026de
0.17.0
1
matrixdb/rawfile-csi:v0.2.195b2e38e913d
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.17.0
1
matrixdb/sig-storage_csi-node-driver-registrar:v2.2.0ba763bb01ddc
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
0.17.0
1
matrixdb/sig-storage_livenessprobe:v2.3.07ab06fe3d8a7
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
0.17.0
1
matrixdotorg/synapse:v1.53.0cb89c0f17ba1
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
matrixdotorg/synapse:v1.78.0def97fd537d8
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
mattermost/focalboard:0.9.031078df7a3c8
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
0.17.0
1
mattermost/focalboard:0.6.7f2f987dada52
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.17.0
1
mattermost/mattermost-app-chaosengine:c153e436268954edd67
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
0.17.0
1
matthiasluedtke/iconserver:v3.16.0661d607b0fbc
golang.org/x/net@v0.7.0
0.17.0
1
mautic/mautic:v4-apache94ea4acf4049
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
mavrick1/kubestellar-b:latest45ca0429a1d4
golang.org/x/net@v0.8.0
0.17.0
1
maxrocketinternet/k8s-event-logger:2.111224534789d
golang.org/x/net@v0.8.0
0.17.0
1
mediagis/nominatim:3.7c15e941485ef
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.2
1
mesosphere/dex:v2.37.0-d2iq.1b093d78a21ed
golang.org/x/net@v0.11.0
0.17.0
1
mesosphere/dex-k8s-authenticator:v1.4.1-d2iqf3d9982cc2fd
golang.org/x/net@v0.13.0
0.17.0
1
mesosphere/karma:v0.55-d2iq-proxy4693bb4e0814
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
0.17.0
1
mesosphere/kommander-federation-authorizedlister:v0.21.263bc411b930b
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.17.0
1
mesosphere/kommander-federation-controller-manager:v0.21.2b036785a8862
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.17.0
1
mesosphere/kommander-federation-utility-apiserver:v0.21.2f9b769c65e24
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.17.0
1
mesosphere/kommander-federation-webhook:v0.21.294af41b6dd9a
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.17.0
1
mesosphere/kommander-licensing-controller-manager:v0.21.28e18bbe407f7
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
0.17.0
1
mesosphere/kommander-licensing-webhook:v0.21.2265edcd2a1ca
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
0.17.0
1
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.17.0
1
mesosphere/kubeaddons-addon-initializer:v0.2.09f863160127b
golang.org/x/net@v0.0.0-20190613194153-d28f0bde5980
0.17.0
1
mesosphere/kubeaddons-addon-initializer:v0.2.8c10011f866f2
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
0.17.0
1
mesosphere/kubefed:proxyurl4fd8889195fe
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
0.17.0
1
mesosphere/traefik-forward-auth:3.1.05456581d7b76
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.17.0
1
metabase/metabase:v0.46.09ebdc664a6b2
nghttp2@1.51.0-r0
http2-common@11.0.14
http2-server@11.0.14
1.51.0-r2
11.0.17
11.0.17
1
metacontrollerio/metacontroller:v2.1.10336993b88e4
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
0.17.0
1
metacontrollerio/metacontroller:v2.0.4897c9601d2cc
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
0.17.0
1
metalmatze/alertmanager-bot:0.4.3426bc2ca7586
golang.org/x/net@v0.0.0-20181213202711-891ebc4b82d6
0.17.0
1
mezmohq/vector:1.17.3ad5794b112af
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
michaelepitech/sample-app:latestaf51d61c19f5
nghttp2@1.43.0-1
1.43.0-1+deb11u1
1
microcks/microcks:0.8.0e3a3e0c67b09
tomcat-embed-core@8.5.34
8.5.94
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.