StackRadar

GHSA-8r99-h8j2-rw64

Medium

Advisory

Published 7 Oct 2022In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
7
of 17,781 indexed, latest versions
Container images
11
deployed by those charts
Fix available
1 of 1
affected package

Twisted vulnerable to HTTP Request Smuggling Attacks

Carried by container images the latest versions of 7 of 17,781 indexed charts deploy, on 11 images.

Affected packageAffected versionsFixed inImages
twistedpypi16.6.0, 17.9.0, 18.9.0, 19.7.020.3.011
OSV records
GHSA-8r99-h8j2-rw64

Charts affected

7 by stars
ChartLatestAffected imagesRadar Score
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry GHSA-8r99-h8j2-rw64.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
twisted@17.9.0
20.3.0

Open the chart page →

13,541
delugegeek-cookbookVerified publisher5.4.21 of 1See more

deluge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry GHSA-8r99-h8j2-rw64.

Container imageDigestPackageFixed in
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
twisted@17.9.0
20.3.0

Open the chart page →

13,551
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry GHSA-8r99-h8j2-rw64.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
twisted@19.7.0
20.3.0

Open the chart page →

27,633
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry GHSA-8r99-h8j2-rw64.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
twisted@18.9.0
20.3.0
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
twisted@16.6.0
20.3.0
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
twisted@16.6.0
20.3.0

Open the chart page →

88,546
comac-platformopencord0.0.172 of 11See more

comac-platform opencord 0.0.17

2 of the 11 container images this version deploys carry GHSA-8r99-h8j2-rw64.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
twisted@18.9.0
20.3.0
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
twisted@16.6.0
20.3.0

Open the chart page →

26,211
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry GHSA-8r99-h8j2-rw64.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
twisted@17.9.0
20.3.0

Open the chart page →

12,609
sebaopencord1.0.04 of 17See more

seba opencord 1.0.0

4 of the 17 container images this version deploys carry GHSA-8r99-h8j2-rw64.

Container imageDigestPackageFixed in
voltha/voltha-cli:1.6.0c4e41e92f046
twisted@17.9.0
20.3.0
voltha/voltha-netconf:1.6.037f80524c207
twisted@17.9.0
20.3.0
voltha/voltha-ofagent:1.6.09ee8c1f4428c
twisted@17.9.0
20.3.0
voltha/voltha-voltha:1.6.0ff596b62de59
twisted@17.9.0
20.3.0

Open the chart page →

93,855

Container images carrying it

11 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
twisted@18.9.0
20.3.0
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
twisted@16.6.0
20.3.0
2
linuxserver/deluge:18.04.10ac871624394
twisted@17.9.0
20.3.0
1
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
twisted@17.9.0
20.3.0
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
twisted@16.6.0
20.3.0
1
scrapinghub/splash:3.4.1a5f89bc84606
twisted@19.7.0
20.3.0
1
voltha/voltha-cli:1.6.0c4e41e92f046
twisted@17.9.0
20.3.0
1
voltha/voltha-netconf:1.6.037f80524c207
twisted@17.9.0
20.3.0
1
voltha/voltha-ofagent:1.6.09ee8c1f4428c
twisted@17.9.0
20.3.0
1
voltha/voltha-tester:1.7.0655c3048a602
twisted@17.9.0
20.3.0
1
voltha/voltha-voltha:1.6.0ff596b62de59
twisted@17.9.0
20.3.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.