StackRadar

CVE-2023-50298

High

Advisory

Published 9 Feb 2024In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
11
of 17,781 indexed, latest versions
Container images
9
deployed by those charts
Fix available
1 of 1
affected package

Apache Solr's Streaming Expressions allow users to extract data from other Solr Clouds

Carried by container images the latest versions of 11 of 17,781 indexed charts deploy, on 9 images.

Affected packageAffected versionsFixed inImages
solr-solrjmaven7.7.0, 7.7.1, 8.7.0, 8.8.2+1 more8.11.39
OSV records
GHSA-xrj7-x7gp-wwqr
Also known as
BIT-solr-2023-50298

Charts affected

11 by stars
ChartLatestAffected imagesRadar Score
solrpreferred-aiVerified publisher3.2.01 of 3See more

solr preferred-ai 3.2.0

1 of the 3 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
library/solr:8.7.0d124efd81fbb
solr-solrj@8.7.0
8.11.3

Open the chart page →

6,048
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
solr-solrj@8.8.2
8.11.3

Open the chart page →

12,111
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
apache/druid:29.0.10cef139b6bf1
solr-solrj@7.7.1
8.11.3

Open the chart page →

7,930
kokukokuVerified publisher1.0.01 of 7See more

koku koku 1.0.0

1 of the 7 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
solr-solrj@8.8.2
8.11.3

Open the chart page →

12,019
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
solr-solrj@8.11.1
8.11.3

Open the chart page →

24,930
apache-ranger-admindata-platform-stableVerified publisher0.2.01 of 2See more

apache-ranger-admin data-platform-stable 0.2.0

1 of the 2 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
egdsandaru/apache-ranger-admin:1.0.0681baa1926f4
solr-solrj@7.7.1
8.11.3

Open the chart page →

8,245
hbasehbase0.1.71 of 4See more

hbase hbase 0.1.7

1 of the 4 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
solr-solrj@8.8.2
8.11.3

Open the chart page →

10,540
hive-metastoreolehrgfVerified publisher0.1.01 of 1See more

hive-metastore olehrgf 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
solr-solrj@7.7.0
8.11.3

Open the chart page →

8,540
fdi-dotstatsuite-sfs-solrstatcan1.0.21 of 4See more

fdi-dotstatsuite-sfs-solr statcan 1.0.2

1 of the 4 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
solr-solrj@8.11.1
8.11.3

Open the chart page →

6,065
solrstatcan1.5.101 of 3See more

solr statcan 1.5.10

1 of the 3 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
solr-solrj@8.11.1
8.11.3

Open the chart page →

8,806
hadoop-deploymenttejaswita-hadoop-helmchart1.0.01 of 1See more

hadoop-deployment tejaswita-hadoop-helmchart 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-50298.

Container imageDigestPackageFixed in
apache/hadoop:3af361b20bec0
solr-solrj@8.8.2
8.11.3

Open the chart page →

4,240

Container images carrying it

9 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
library/solr:8.11.18c5f7881cebb
solr-solrj@8.11.1
8.11.3
3
5200710/hadoop:3.2.3-java8092d3088a5fb
solr-solrj@8.8.2
8.11.3
1
apache/druid:29.0.10cef139b6bf1
solr-solrj@7.7.1
8.11.3
1
apache/hadoop:3af361b20bec0
solr-solrj@8.8.2
8.11.3
1
egdsandaru/apache-ranger-admin:1.0.0681baa1926f4
solr-solrj@7.7.1
8.11.3
1
library/solr:8.7.0d124efd81fbb
solr-solrj@8.7.0
8.11.3
1
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
solr-solrj@8.8.2
8.11.3
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
solr-solrj@7.7.0
8.11.3
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
solr-solrj@8.8.2
8.11.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.