StackRadar

CVE-2026-62985

High

Advisory

Published 22 Sept 2026In the index since 23 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
7
of 17,985 indexed, latest versions
Container images
6
deployed by those charts
Fix available
1 of 1
affected package

request-filtering-agent: Synchronous throw from createConnection() for literal private-IP hosts bypasses req.on('error'), crashing the Node.js process

Carried by container images the latest versions of 7 of 17,985 indexed charts deploy, on 6 images.

Affected packageAffected versionsFixed inImages
request-filtering-agentnpm1.0.7, 1.1.2, 3.2.03.2.16
OSV records
GHSA-r3r9-wp5j-pq5g

Charts affected

7 by stars
ChartLatestAffected imagesRadar Score
outlinekubitodevVerified publisher1.2.21 of 4See more

outline kubitodev 1.2.2

1 of the 4 container images this version deploys carry CVE-2026-62985.

Container imageDigestPackageFixed in
outlinewiki/outline:0.82.0494dfb9249a6
request-filtering-agent@1.1.2
3.2.1

Open the chart page →

6,295
outlineoutline0.0.91 of 4See more

outline outline 0.0.9

1 of the 4 container images this version deploys carry CVE-2026-62985.

Container imageDigestPackageFixed in
outlinewiki/outline:0.69.1d060dcd8f9aa
request-filtering-agent@1.1.2
3.2.1

Open the chart page →

5,289
kobotoolboxone-acre-fundVerified publisher0.7.41 of 9See more

kobotoolbox one-acre-fund 0.7.4

1 of the 9 container images this version deploys carry CVE-2026-62985.

Container imageDigestPackageFixed in
enketo/enketo-express:3.0.4dcad9c2273f6
request-filtering-agent@1.0.7
3.2.1

Open the chart page →

23,335
nocodbzekker6Verified publisher1.10.01 of 1See more

nocodb zekker6 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-62985.

Container imageDigestPackageFixed in
nocodb/nocodb:0.301.5d9516f0bf546
request-filtering-agent@3.2.0
3.2.1

Open the chart page →

5,005
activepiecesadnoctemVerified publisher0.6.01 of 1See more

activepieces adnoctem 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-62985.

Container imageDigestPackageFixed in
activepieces/activepieces:0.91.058414dfc94c4
request-filtering-agent@3.2.0
3.2.1

Open the chart page →

1,795
nocodbone-acre-fundVerified publisher0.4.61 of 3See more

nocodb one-acre-fund 0.4.6

1 of the 3 container images this version deploys carry CVE-2026-62985.

Container imageDigestPackageFixed in
nocodb/nocodb:0.258.06779a4ddedf2
request-filtering-agent@1.1.2
3.2.1

Open the chart page →

4,856
outlineschmitzis0.0.81 of 4See more

outline schmitzis 0.0.8

1 of the 4 container images this version deploys carry CVE-2026-62985.

Container imageDigestPackageFixed in
outlinewiki/outline:0.69.1d060dcd8f9aa
request-filtering-agent@1.1.2
3.2.1

Open the chart page →

5,289

Container images carrying it

6 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
outlinewiki/outline:0.69.1d060dcd8f9aa
request-filtering-agent@1.1.2
3.2.1
2
activepieces/activepieces:0.91.058414dfc94c4
request-filtering-agent@3.2.0
3.2.1
1
enketo/enketo-express:3.0.4dcad9c2273f6
request-filtering-agent@1.0.7
3.2.1
1
nocodb/nocodb:0.258.06779a4ddedf2
request-filtering-agent@1.1.2
3.2.1
1
nocodb/nocodb:0.301.5d9516f0bf546
request-filtering-agent@3.2.0
3.2.1
1
outlinewiki/outline:0.82.0494dfb9249a6
request-filtering-agent@1.1.2
3.2.1
1

syft 1.42.1 · advisories as of 3 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.