StackRadar

CVE-2023-6481

High

Advisory

Published 4 Dec 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.1
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
10
of 17,781 indexed, latest versions
Container images
10
deployed by those charts
Fix available
1 of 1
affected package

Logback is vulnerable to an attacker mounting a Denial-Of-Service attack by sending poisoned data

Carried by container images the latest versions of 10 of 17,781 indexed charts deploy, on 10 images.

Affected packageAffected versionsFixed inImages
logback-coremaven1.2.121.2.1310
OSV records
GHSA-gm62-rw4g-vrc4

Charts affected

10 by stars
ChartLatestAffected imagesRadar Score
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
thmmniii/fbs-core:v1.27.15438517d9fc2
logback-core@1.2.12
1.2.13

Open the chart page →

28,534
vrijbrpvrijbrpVerified publisher0.1.51 of 5See more

vrijbrp vrijbrp 0.1.5

1 of the 5 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
vrijbrp/haal-centraal-brp-bevragen:develop5c770c2ae48c
logback-core@1.2.12
1.2.13

Open the chart page →

8,811
rpc-routerchronicleVerified publisher0.2.91 of 1See more

rpc-router chronicle 0.2.9

1 of the 1 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
drpcorg/dshackle:0.54.08858fae1859d
logback-core@1.2.12
1.2.13

Open the chart page →

6,447
base-depflofree-chartVerified publisher1.0.11 of 1See more

base-dep flofree-chart 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
flofree/base-project:2.1.16b6486c5f81e
logback-core@1.2.12
1.2.13

Open the chart page →

2,797
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
logback-core@1.2.12
1.2.13

Open the chart page →

6,634
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
andrianrf/backoffice-be:latest6036614803d4
logback-core@1.2.12
1.2.13

Open the chart page →

34,671
redhat-springboot-restopenshift0.0.11 of 1See more

redhat-springboot-rest openshift 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
logback-core@1.2.12
1.2.13

Open the chart page →

3,063
smartquerysearchhub0.1.01 of 1See more

smartquery searchhub 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
commerceexperts/smartquery-service:2.2.09e33ad89baf6
logback-core@1.2.12
1.2.13

Open the chart page →

1,528
seataseataVerified publisher0.1.01 of 1See more

seata seata 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
seataio/seata-server:latest703b5de7f1a6
logback-core@1.2.12
1.2.13

Open the chart page →

4,245
student-producerstudentproducerVerified publisher2.0.01 of 1See more

student-producer studentproducer 2.0.0

1 of the 1 container images this version deploys carry CVE-2023-6481.

Container imageDigestPackageFixed in
aroralalit/student-producer:1.0.02a094f597b36
logback-core@1.2.12
1.2.13

Open the chart page →

3,018

Container images carrying it

10 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
andrianrf/backoffice-be:latest6036614803d4
logback-core@1.2.12
1.2.13
1
apache/rocketmq-exporter:0.0.2c8fb51195444
logback-core@1.2.12
1.2.13
1
aroralalit/student-producer:1.0.02a094f597b36
logback-core@1.2.12
1.2.13
1
commerceexperts/smartquery-service:2.2.09e33ad89baf6
logback-core@1.2.12
1.2.13
1
drpcorg/dshackle:0.54.08858fae1859d
logback-core@1.2.12
1.2.13
1
flofree/base-project:2.1.16b6486c5f81e
logback-core@1.2.12
1.2.13
1
seataio/seata-server:latest703b5de7f1a6
logback-core@1.2.12
1.2.13
1
thmmniii/fbs-core:v1.27.15438517d9fc2
logback-core@1.2.12
1.2.13
1
vrijbrp/haal-centraal-brp-bevragen:develop5c770c2ae48c
logback-core@1.2.12
1.2.13
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
logback-core@1.2.12
1.2.13
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.