StackRadar

CVE-2023-49468

High

Advisory

Published 7 Dec 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
56
of 17,781 indexed, latest versions
Container images
56
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 56 of 17,781 indexed charts deploy, on 56 images.

Affected packageAffected versionsFixed inImages
libde265deb1.0.4-1build1, 1.0.8-1, 1.0.8-1ubuntu0.1, 1.0.11-1+1 more1.0.4-1ubuntu0.4, 1.0.8-1ubuntu0.3, 1.0.11-1+deb12u248
libde265apk1.0.8-r2, 1.0.11-r0, 1.0.11-r2, 1.0.12-r01.0.15-r08
OSV records
ALPINE-CVE-2023-49468DEBIAN-CVE-2023-49468UBUNTU-CVE-2023-49468
Also known as
USN-6677-1

Charts affected

56 by stars
ChartLatestAffected imagesRadar Score
evsantisbon0.2.02 of 5See more

ev santisbon 0.2.0

2 of the 5 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
santisbon/evwatcher:latestc4e994ca4540
libde265@1.0.11-1
1.0.11-1+deb12u2
santisbon/evworker:lateste807283f8d69
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

14,179
speedtestsantisbon0.1.01 of 3See more

speedtest santisbon 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
santisbon/speedtest:latest8ee3a1697227
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

12,668
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

20,223
super-mariotechpreta0.1.11 of 1See more

super-mario techpreta 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
nirmalnaveen/supermario:latest8541a39162f3
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

6,297
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libde265@1.0.11-1+deb12u1
1.0.11-1+deb12u2

Open the chart page →

17,323
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

14,358

Container images carrying it

56 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
libde265@1.0.11-1
1.0.11-1+deb12u2
3
chatwoot/chatwoot:v3.1.0d530ab8c1753
libde265@1.0.12-r0
1.0.15-r0
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
libde265@1.0.11-1
1.0.11-1+deb12u2
2
library/python:3.7eedf63967cdb
libde265@1.0.11-1
1.0.11-1+deb12u2
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
libde265@1.0.11-1
1.0.11-1+deb12u2
2
moreillon/user-manager-front:v5.0.3b067dbbbb6af
libde265@1.0.11-1
1.0.11-1+deb12u2
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
libde265@1.0.8-1
1.0.8-1ubuntu0.3
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
libde265@1.0.8-1
1.0.8-1ubuntu0.3
2
akaunting/akaunting:3.0.1552811b36ec3a
libde265@1.0.11-1
1.0.11-1+deb12u2
1
anonaddy/anonaddy:0.12.3957a95565166
libde265@1.0.8-r2
1.0.15-r0
1
asonix/pictrs:0.4.0-beta.19480d36cd97e5
libde265@1.0.11-r0
1.0.15-r0
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
libde265@1.0.11-1
1.0.11-1+deb12u2
1
avinash263/pyredis263:latestaa2b8727f1a6
libde265@1.0.11-1
1.0.11-1+deb12u2
1
avzini/web-app:latestf40b30210ed0
libde265@1.0.11-1
1.0.11-1+deb12u2
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
libde265@1.0.11-1
1.0.11-1+deb12u2
1
firefart/requesttracker:5.0.40d6249906d8c
libde265@1.0.11-1
1.0.11-1+deb12u2
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
libde265@1.0.11-1
1.0.11-1+deb12u2
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
libde265@1.0.4-1build1
1.0.4-1ubuntu0.4
1
intelowlproject/intelowl:v6.6.10b22e547ea6b
libde265@1.0.11-1+deb12u1
1.0.11-1+deb12u2
1
library/nginx:1.25.167f9a4f10d14
libde265@1.0.11-1
1.0.11-1+deb12u2
1
livekit/ingress:v1.2.21ab01641b366
libde265@1.0.8-1
1.0.8-1ubuntu0.3
1
mediagis/nominatim:4.2d0eae7b51374
libde265@1.0.8-1ubuntu0.1
1.0.8-1ubuntu0.3
1
mintproject/data-catalog-db:9be70359feabe03ed55bfdbf92c20a7e43ab928b9bf26fedd848
libde265@1.0.8-r2
1.0.15-r0
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
libde265@1.0.11-1
1.0.11-1+deb12u2
1
n8nio/n8n:0.212.0a9195bc499a3
libde265@1.0.8-r2
1.0.15-r0
1
nirmalnaveen/supermario:latest8541a39162f3
libde265@1.0.11-1
1.0.11-1+deb12u2
1
photoprism/photoprism:220629-jammy2954334adbda
libde265@1.0.8-1
1.0.8-1ubuntu0.3
1
postgis/postgis:10-3.2-alpine7e3e68a36d53
libde265@1.0.8-r2
1.0.15-r0
1
praravind1801/helmimages:3.0.0f29d637b9ce1
libde265@1.0.11-1+deb12u1
1.0.11-1+deb12u2
1
santisbon/evwatcher:latestc4e994ca4540
libde265@1.0.11-1
1.0.11-1+deb12u2
1
santisbon/evworker:lateste807283f8d69
libde265@1.0.11-1
1.0.11-1+deb12u2
1
santisbon/speedtest:latest8ee3a1697227
libde265@1.0.11-1
1.0.11-1+deb12u2
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
libde265@1.0.11-1
1.0.11-1+deb12u2
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
libde265@1.0.11-1
1.0.11-1+deb12u2
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
libde265@1.0.11-1
1.0.11-1+deb12u2
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
libde265@1.0.11-1
1.0.11-1+deb12u2
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
libde265@1.0.11-1
1.0.11-1+deb12u2
1
theradius/loggia:0.463ba348546ec
libde265@1.0.11-1+deb12u1
1.0.11-1+deb12u2
1
thirtythreeforty/neolink:latestf564c4f538de
libde265@1.0.11-r2
1.0.15-r0
1
thongngo3301/stakefish:latesta341af5976e3
libde265@1.0.11-1
1.0.11-1+deb12u2
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
libde265@1.0.8-1
1.0.8-1ubuntu0.3
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
libde265@1.0.8-1
1.0.8-1ubuntu0.3
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
libde265@1.0.8-1
1.0.8-1ubuntu0.3
1
vlebediantsev/notes-admin-front:latest007c6670ff48
libde265@1.0.11-1
1.0.11-1+deb12u2
1
vlebediantsev/notes-project-front:latest945675fd2636
libde265@1.0.11-1
1.0.11-1+deb12u2
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
libde265@1.0.11-1
1.0.11-1+deb12u2
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
libde265@1.0.11-1+deb12u1
1.0.11-1+deb12u2
1
ghcr.io/mjohnson9/docker-pleroma:v0.1.44f08e2823756
libde265@1.0.8-r2
1.0.15-r0
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
libde265@1.0.11-1
1.0.11-1+deb12u2
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
libde265@1.0.4-1build1
1.0.4-1ubuntu0.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.