StackRadar

CVE-2023-4863

CriticalKEV

Advisory

Published 12 Sept 2023In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.6
base score, highest
EPSS
1.000
100th percentile
CISA KEV
Listed
since 13 Sept 2023
Charts affected
454
of 17,781 indexed, latest versions
Container images
416
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: libwebp security update

Carried by container images the latest versions of 454 of 17,781 indexed charts deploy, on 416 images.

Affected packageAffected versionsFixed inImages
libwebprpm1.0.0-3.el8_40:1.0.0-7.el8_4.11
libwebpdeb0.6.1-2, 0.6.1-2.1, 0.6.1-2.1+deb11u1, 0.6.1-2+deb10u1+6 more0.6.1-2.1+deb11u2, 0.6.1-2+deb10u3, 0.6.1-2ubuntu0.18.04.2+esm1, 0.6.1-2ubuntu0.20.04.3+2 more300
libwebpapk1.2.2-r0, 1.2.3-r0, 1.2.3-r1, 1.2.4-r1+2 more1.2.2-r2, 1.2.3-r2, 1.2.4-r3, 1.3.1-r173
pillowpypi2.6.1, 4.3.0, 5.0.0, 5.1.0+21 more10.0.168
SkiaSharpnuget2.80.2, 2.88.1-preview.71, 2.88.2, 2.88.32.88.66
OSV records
RHSA-2023:5222ALPINE-CVE-2023-4863DEBIAN-CVE-2023-4863GHSA-j7hp-h8jx-5pprPYSEC-2026-1794UBUNTU-CVE-2023-4863DLA-3570-1DSA-5497-2
Also known as
A-299477569, ASB-A-299477569, CVE-2023-5129, DSA-5497-1, RUSTSEC-2023-0060, RUSTSEC-2023-0061, USN-6369-1, USN-6369-2

Charts affected

454 by stars
ChartLatestAffected imagesRadar Score
weblatehelm-charts-nr0.3.21 of 3See more

weblate helm-charts-nr 0.3.2

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
pillow@7.2.0
libwebp@0.6.1-2
10.0.1
0.6.1-2+deb10u3

Open the chart page →

7,984
myfirstcharthelm-charts-repo-rahul0.2.01 of 1See more

myfirstchart helm-charts-repo-rahul 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138
myfirstcharthelm-charts-repo-test0.2.01 of 1See more

myfirstchart helm-charts-repo-test 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138
myfirstcharthelmcharttest0.2.01 of 1See more

myfirstchart helmcharttest 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138
myfirstcharthelm-deployment-010.2.01 of 1See more

myfirstchart helm-deployment-01 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138
myfirstcharthoang0.2.01 of 1See more

myfirstchart hoang 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138
privatebinhomelabcihelmchartstestVerified publisher2.1.71 of 1See more

privatebin homelabcihelmchartstest 2.1.7

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
privatebin/pdo:1.3.500466418121c
libwebp@1.2.2-r0
1.2.2-r2

Open the chart page →

1,159
erpnextimprowisedVerified publisher3.3.01 of 3See more

erpnext improwised 3.3.0

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
improwised/erpnext-worker:v13.4.197280b55cbd4
pillow@8.2.0
10.0.1

Open the chart page →

6,501
ingress-dashboardingress-dashboard0.1.11 of 3See more

ingress-dashboard ingress-dashboard 0.1.1

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
taemon1337/ingress-dashboard:0.0.10e8f5096c66bb
libwebp@1.2.2-r0
1.2.2-r2

Open the chart page →

4,542
instemmingserviceinstemmingservice1.0.01 of 3See more

instemmingservice instemmingservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/instemmingservice-nginx:latesteeeb4e9f0485
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

7,510
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
libwebp@0.6.1-2ubuntu0.20.04.1
0.6.1-2ubuntu0.20.04.3

Open the chart page →

18,066
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization-streaming:3.01a89327e499b
libwebp@0.6.1-2ubuntu0.20.04.1
0.6.1-2ubuntu0.20.04.3

Open the chart page →

11,069
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

7,232
twitch-channel-points-minerjacobcolvinVerified publisher0.1.01 of 1See more

twitch-channel-points-miner jacobcolvin 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
rdavidoff/twitch-channel-points-miner-v2:1.8.67ae4c5135771
pillow@10.0.0
10.0.1

Open the chart page →

1,088
deconzjanip81-helm-chartsVerified publisher0.1.11 of 1See more

deconz janip81-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
deconzcommunity/deconz:2.29.2062de2362641
pillow@9.4.0
10.0.1

Open the chart page →

10,780
myfirstchartjojrepo-repo0.2.01 of 1See more

myfirstchart jojrepo-repo 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138
annotation-tooljtektVerified publisher0.1.51 of 2See more

annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/annotation-tool:ef974ad9abd817eb6845
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2

Open the chart page →

2,315
polygonal-annotation-tooljtektVerified publisher0.1.51 of 2See more

polygonal-annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/polygonal-annotation-tool:a3fa936056efd38500d6
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2

Open the chart page →

2,231
http-url-playlistjulb-meVerified publisher1.0.01 of 1See more

http-url-playlist julb-me 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
julb/http-url-playlist:1.0.2782ef45279d5
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,244
k10appk10app0.2.12 of 11See more

k10app k10app 0.2.1

2 of the 11 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/k10app/frontend:latest066b5ac6b119
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2
ghcr.io/k10app/staticcache:lateste77805689a8e
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2

Open the chart page →

10,546
frigatek8s-home-lab-repo9.1.11 of 1See more

frigate k8s-home-lab-repo 9.1.1

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
blakeblackshear/frigate:0.11.18330b0a265b8
pillow@8.1.2
libwebp@0.6.1-2.1
10.0.1
0.6.1-2.1+deb11u2

Open the chart page →

2,370
shinobik8s-home-lab-repo2.1.11 of 1See more

shinobi k8s-home-lab-repo 2.1.1

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
shinobisystems/shinobi:latestc2f5ce2e1067
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

4,667
kingkfirfer0.1.01 of 1See more

king kfirfer 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
kfirfer/king:latestc05d9fc7ae77
libwebp@1.2.4-r2
1.2.4-r3

Open the chart page →

1,172
astralkronkltdVerified publisher0.1.01 of 1See more

astral kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
duck1123/astral:latestf4d5b6526c2a
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2

Open the chart page →

891
tooljetkrzwiatrzyk1.1.11 of 2See more

tooljet krzwiatrzyk 1.1.1

1 of the 2 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
tooljet/tooljet-ce:v1.18.0c85a4720e42e
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

5,410
hello-worldkubebb0.1.11 of 1See more

hello-world kubebb 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
kubebb/hello-world:0.1.0b746824819f3
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2

Open the chart page →

1,225
kusk-gateway-dashboardkubeshop0.1.191 of 1See more

kusk-gateway-dashboard kubeshop 0.1.19

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
kubeshop/kusk-gateway-dashboard:v1.2.6ff9b5aa1258d
libwebp@1.2.3-r0
1.2.3-r2

Open the chart page →

1,216
chaos-meshkubesphere-stable2.5.11 of 3See more

chaos-mesh kubesphere-stable 2.5.1

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

8,555
penpotkubitodevVerified publisher1.2.11 of 5See more

penpot kubitodev 1.2.1

1 of the 5 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
penpotapp/frontend:2.2.18974882a0542
libwebp@0.6.1-2.1+deb11u1
0.6.1-2.1+deb11u2

Open the chart page →

16,877
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
kvalitetsit/stakit-frontend:0.2.5fd5c4f60ef80
libwebp@1.2.4-r2
1.2.4-r3

Open the chart page →

7,802
jupyter-diffkyso1.0.01 of 1See more

jupyter-diff kyso 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
kyso/jupyter-diff:latest82299a9e5a86
libwebp@1.2.4-r2
1.2.4-r3

Open the chart page →

1,172
large-systems-djangolarge-systems-djangoVerified publisher1.0.01 of 1See more

large-systems-django large-systems-django 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ha33ona/python:test6affdfc644d0
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2

Open the chart page →

3,891
myfirstchartlawrencejews1-helm-charts-repos0.2.01 of 1See more

myfirstchart lawrencejews1-helm-charts-repos 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138
stremiolbenicio-communityVerified publisher0.1.11 of 2See more

stremio lbenicio-community 0.1.1

1 of the 2 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
stremio/server:latest3dc145603def
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

2,600
legendlegend0.1.21 of 1See more

legend legend 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/grofers/legend:0.1d6e901ad0ebd
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

4,067
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
libwebp@1.2.2-2ubuntu0.22.04.1
1.2.2-2ubuntu0.22.04.2

Open the chart page →

10,716
lnbitslnbits0.2.11 of 1See more

lnbits lnbits 0.2.1

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
lnbitsdocker/lnbits-legend:0.10.6a11aaa6d2b21
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2

Open the chart page →

1,949
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-ui-react:latestba6853e35c60
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2

Open the chart page →

5,905
ocatiecataloguslocatiecatalogus1.0.01 of 3See more

ocatiecatalogus locatiecatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/ocatiecatalogus-nginx:latestc46374fc8f32
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

7,510
loggingcomponentloggingcomponent1.0.01 of 3See more

loggingcomponent loggingcomponent 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/loggingcomponent-nginx:latestcee37e9cef09
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

7,492
logicservicelogicservice1.0.01 of 4See more

logicservice logicservice 1.0.0

1 of the 4 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/logicservice-nginx:latest7c8ee08c591c
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

7,499
alert-stream-schema-registrylsst-sqre2.1.01 of 1See more

alert-stream-schema-registry lsst-sqre 2.1.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
lsstdm/lsst_alert_packet:tickets-DM-3274374c97a490940
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

2,293
alert-stream-simulatorlsst-sqre1.6.21 of 1See more

alert-stream-simulator lsst-sqre 1.6.2

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
lsstdm/alert-stream-simulator:v1.2.1973df082d006
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3

Open the chart page →

2,089
exposureloglsst-sqre0.2.11 of 1See more

exposurelog lsst-sqre 0.2.1

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
lsstsqre/exposurelog:0.8.079b00fb67a65
pillow@9.0.1
10.0.1

Open the chart page →

2,078
kafka-aggregatorlsst-sqre0.1.21 of 1See more

kafka-aggregator lsst-sqre 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
lsstsqre/kafkaaggregator:masterbe1b21060854
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

3,052
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
lsstsqre/squash-api:0.5.34879415ec6ac
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

6,611
elastictranscoderluiscajl0.46.02 of 4See more

elastictranscoder luiscajl 0.46.0

2 of the 4 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
elastictranscoder/transcoder:627e21dcb4a0327029e6
libwebp@0.6.1-2ubuntu0.18.04.1
0.6.1-2ubuntu0.18.04.2+esm1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
libwebp@0.6.1-2ubuntu0.18.04.1
0.6.1-2ubuntu0.18.04.2+esm1

Open the chart page →

58,160
xteveluiscajl0.1.61 of 1See more

xteve luiscajl 0.1.6

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
dnsforge/xteve:latest4d9a685c8c28
libwebp@1.2.4-r1
1.2.4-r3

Open the chart page →

4,314
myfirstchartmadjava-helm-charts-repo0.2.01 of 1See more

myfirstchart madjava-helm-charts-repo 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138
myfirstchartmansuralamkhan-helm-charts0.2.01 of 1See more

myfirstchart mansuralamkhan-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-4863.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libwebp@0.6.1-2
0.6.1-2+deb10u3

Open the chart page →

1,138

Container images carrying it

416 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
libwebp@0.6.1-2ubuntu0.20.04.1
0.6.1-2ubuntu0.20.04.3
1
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
libwebp@0.6.1-2+deb10u2
0.6.1-2+deb10u3
1
ghcr.io/volosoft/eshoponabp/app-web:1.0.0056bb4271626
libwebp@1.2.3-r0
1.2.3-r2
1
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2
1
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2
1
ghcr.io/wbstack/queryservice-ui:1.4bc79fbb50230
libwebp@1.2.2-r0
1.2.2-r2
1
ghcr.io/wbstack/ui:3.94b01f67faadf1
libwebp@1.2.2-r0
1.2.2-r2
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
pillow@9.4.0
10.0.1
1
public.ecr.aws/jtekt-corporation/annotation-tool:ef974ad9abd817eb6845
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2
1
public.ecr.aws/jtekt-corporation/polygonal-annotation-tool:a3fa936056efd38500d6
libwebp@0.6.1-2.1
0.6.1-2.1+deb11u2
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
libwebp@0.6.1-2ubuntu0.20.04.1
0.6.1-2ubuntu0.20.04.3
1
quay.io/fairwinds/yelb-appserver:v0.6.0fae21f06131f
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3
1
quay.io/fairwinds/yelb-ui:v0.1.05ac114e567ed
libwebp@0.6.1-2
0.6.1-2+deb10u3
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
libwebp@0.6.1-2+deb10u1
0.6.1-2+deb10u3
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
libwebp@1.2.4-0.2
1.2.4-0.2+deb12u1
1
registry.gitlab.com/open-forms/design-catalogue:latestf21f19346b29
libwebp@0.6.1-2
0.6.1-2+deb10u3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.