CVE-2021-22207

wikimedia-flink-session-cluster

Bokeh Plot Bokeh.set_log_level("info"); {"1037d923-0fcc-4410-a014-b04abf1074ed":{"defs":[],"roots":{"references":[{"attributes":{"background_fill_color":{"value":"white"},"source":{"id":"1118999"},"text":{"field":"name"},"x":{"field":"x"},"y":{"field":"y"}},"id":"1119037","type":"LabelSet"},{"attributes":{},"id":"1118970","type":"BasicTicker"},{"attributes":{},"id":"1119060","type":"UnionRenderers"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"1118983","type":"BoxAnnotation"},{"attributes":{"active_multi":null,"tools":[{"id":"1118977"},{"id":"1118978"},{"id":"1118979"},{"id":"1118980"},{"id":"1118981"},{"id":"1118982"},{"id":"1118991"},{"id":"1118992"},{"id":"1118993"}]},"id":"1118984","type":"Toolbar"},{"attributes":{"graph_layout":{"CKV_K8S_14":[0.6591406869595683,0.5796163339293581],"CKV_K8S_15":[0.723912821262072,0.4580088354157994],"CKV_K8S_20":[0.7541917183420177,0.4609320376247314],"CKV_K8S_22":[0.6726051700751458,0.4414513564922718],"CKV_K8S_23":[0.7507686647174245,0.5222554055960468],"CKV_K8S_28":[0.7358039102937813,0.5781918428164271],"CKV_K8S_29":[0.7628068995937866,0.49344673768862435],"CKV_K8S_30":[0.7069754680635484,0.4294418459100468],"CKV_K8S_31":[0.608158085666285,0.5334342347610872],"CKV_K8S_35":[0.6302090389203053,0.5640696056093344],"CKV_K8S_37":[0.7628025354484088,0.5506392205471995],"CKV_K8S_38":[0.6309716431042145,0.5139690781542939],"CKV_K8S_40":[0.7108768282978339,0.5580169396790465],"CKV_K8S_43":[0.6920747307491476,0.5897780710964251],"CKV_K8S_9":[0.6335824827431957,0.46533076616790614],"CVE-2016-10228":[-0.10622828089191258,-0.040066339636153143],"CVE-2016-2781":[-0.12440490844906532,-0.15113398091061728],"CVE-2016-9318":[-0.31690190850871863,-0.18140357878294988],"CVE-2017-16932":[-0.31172217912002814,-0.09796917683601938],"CVE-2018-12886":[-0.26058878705498273,-0.009557383204016374],"CVE-2018-7169":[-0.30998386416577034,-0.14459605255376218],"CVE-2019-12290":[-0.14925437907770422,-0.2482496584508312],"CVE-2019-13115":[-0.11114394920833004,-0.2333669162903745],"CVE-2019-13224":[-0.121537068537898,-0.09458359545194629],"CVE-2019-13225":[-0.06595882736307584,-0.16532722229570868],"CVE-2019-13627":[-0.0694126833904478,-0.04629983595714137],"CVE-2019-14855":[-0.2954715432332864,-0.21458707726053505],"CVE-2019-14889":[-0.09936868812129328,0.004959841040652568],"CVE-2019-15165":[-0.2839720118094948,-0.03339742223713084],"CVE-2019-15847":[-0.15827006894479412,0.04006998577378683],"CVE-2019-16163":[-0.35170227684872296,-0.18265028396667743],"CVE-2019-16167":[-0.042750235140353525,-0.06262088240914832],"CVE-2019-17498":[-0.04633214510062054,-0.19681135444013878],"CVE-2019-17543":[-0.3431775483727388,-0.1260116452329941],"CVE-2019-19012":[-0.36275834922480743,-0.14947273663357433],"CVE-2019-19203":[-0.28106703025324037,-0.26878627895599744],"CVE-2019-19204":[-0.26918627979876936,-0.17049433193787442],"CVE-2019-19246":[-0.08067316344203065,-0.08836670179646593],"CVE-2019-19603":[-0.27126769304703563,-0.11797307107397104],"CVE-2019-19645":[-0.17201026297209668,-0.19995209256293364],"CVE-2019-19924":[-0.23042268250273643,0.045320633632071776],"CVE-2019-20454":[-0.30038969075127525,0.008204960192118933],"CVE-2019-20907":[-0.038083716862581087,-0.09489071855540608],"CVE-2019-25013":[-0.2559386214435752,-0.25413762305891385],"CVE-2019-3843":[-0.126525591125468,-0.27502432429008455],"CVE-2019-3844":[-0.03167298010166546,-0.15739606508680767],"CVE-2019-6706":[-0.3433148558319519,-0.0419624208148241],"CVE-2020-10029":[-0.2709478037426661,0.029621702449088638],"CVE-2020-11080":[-0.250870178028,-0.06441423893028173],"CVE-2020-13631":[-0.09182113485552242,-0.19094655077257305],"CVE-2020-14155":[-0.17484651080604727,0.007126479644588052],"CVE-2020-16135":[-0.08118447822843339,-0.12983359023254298],"CVE-2020-1751":[-0.139449578657337,-0.009747858470400925],"CVE-2020-1752":[-0.3092211421588052,-0.24583602763268],"CVE-2020-19143":[-0.25611669561766387,-0.214955568908526],"CVE-2020-21913":[-0.36410267829555215,-0.10093041618205496],"CVE-2020-24370":[-0.2189265794159465,-0.24381700768813053],"CVE-2020-27618":[-0.089005687470203,-0.2549226326269175],"CVE-2020-6096":[-0.03888588647080147,-0.12539160853714876],"CVE-2020-8492":[-0.1945026548632814,0.04199436540769544],"CVE-2021-21300":[-0.334965582515696,-0.21689773035747012],"CVE-2021-22191":[-0.14891440848669765,-0.05147115244885516],"CVE-2021-22207":[-0.23528745705407958,-0.2835897598139726],"CVE-2021-22235":[-0.23420899858842464,0.014351754092505015],"CVE-2021-22946":[-0.1259971075537529,0.026187052092378104],"CVE-2021-22947":[-0.2006209590772024,-0.28662942922083406],"CVE-2021-23336":[-0.06854212026138705,-0.22403379651084707],"CVE-2021-30535":[-0.16464704650876438,-0.2860753313018485],"CVE-2021-3177":[-0.34757353758173665,-0.07344336975252753],"CVE-2021-31879":[-0.07081173027408336,-0.013665318777420212],"CVE-2021-3326":[-0.18452390914137182,-0.24987980880236468],"CVE-2021-33574":[-0.19871108346332356,-0.04916024416818375],"CVE-2021-3426":[-0.13168990261131347,-0.20149225085862585],"CVE-2021-35942":[-0.3054128256239056,-0.06161090017399496],"CVE-2021-40330":[-0.3225411799188497,-0.016576263137961993],"CVE-2021-40528":[-0.21846548771124902,-0.19240303918739735],"Deployment.default":[0.6828231407282912,0.5097294802135375],"Pod.default":[-0.20899929395987155,-0.010364268576527688],"deps":[0.7120366095320018,-1.0],"docker-registry.wikimedia.org/wmfdebug:latest":[-0.1951813747198069,-0.1208679232127189],"wikimedia/flink-session-cluster":[0.6787268498612189,0.49989629093878457]}},"id":"1119006","type":"StaticLayoutProvider"},{"attributes":{},"id":"1118980","type":"SaveTool"},{"attributes":{"fill_color":{"field":"nodeType","transform":{"id":"1119027"}},"size":{"value":20}},"id":"1119028","type":"Circle"},{"attributes":{},"id":"1119050","type":"NodesOnly"},{"attributes":{"source":{"id":"1119003"}},"id":"1119005","type":"CDSView"},{"attributes":{},"id":"1119061","type":"Selection"},{"attributes":{},"id":"1118981","type":"ResetTool"},{"attributes":{"axis":{"id":"1118973"},"dimension":1,"ticker":null},"id":"1118976","type":"Grid"},{"attributes":{"data":{"end":["CKV_K8S_38","CKV_K8S_40","CKV_K8S_29","CKV_K8S_23","CKV_K8S_31","CKV_K8S_43","CKV_K8S_30","CKV_K8S_22","CKV_K8S_28","CKV_K8S_20","CKV_K8S_35","CKV_K8S_37","CKV_K8S_15","CKV_K8S_14","CKV_K8S_9","Deployment.default","CKV_K8S_40","CKV_K8S_29","CKV_K8S_23","CKV_K8S_31","CKV_K8S_43","CKV_K8S_30","CKV_K8S_22","CKV_K8S_28","CKV_K8S_20","CKV_K8S_35","CKV_K8S_37","CKV_K8S_15","CKV_K8S_14","CKV_K8S_9","Pod.default","CVE-2021-30535","CVE-2018-12886","CVE-2020-11080","CVE-2020-19143","CVE-2020-21913","CVE-2021-33574","CVE-2021-3177","CVE-2019-19012","CVE-2019-13224","CVE-2021-35942","CVE-2021-22191","CVE-2020-6096","CVE-2019-17543","CVE-2019-17498","CVE-2019-13115","CVE-2019-14889","CVE-2019-3844","CVE-2019-3843","CVE-2021-40330","CVE-2021-3326","CVE-2021-22946","CVE-2021-22235","CVE-2021-21300","CVE-2019-6706","CVE-2019-20907","CVE-2019-20454","CVE-2019-19603","CVE-2019-19246","CVE-2019-19204","CVE-2019-19203","CVE-2019-16163","CVE-2019-15847","CVE-2019-14855","CVE-2019-12290","CVE-2017-16932","CVE-2020-1752","CVE-2020-1751","CVE-2021-22207","CVE-2020-8492","CVE-2019-13225","CVE-2016-2781","CVE-2019-13627","CVE-2021-31879","CVE-2021-40528","CVE-2021-23336","CVE-2021-22947","CVE-2020-16135","CVE-2019-25013","CVE-2016-10228","CVE-2021-3426","CVE-2020-27618","CVE-2020-13631","CVE-2020-10029","CVE-2019-19645","CVE-2019-16167","CVE-2016-9318","CVE-2020-24370","CVE-2020-14155","CVE-2019-19924","CVE-2019-15165","CVE-2018-7169"],"start":["wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","wikimedia/flink-session-cluster","CKV_K8S_38","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest","docker-registry.wikimedia.org/wmfdebug:latest"]},"selected":{"id":"1119061"},"selection_policy":{"id":"1119060"}},"id":"1119003","type":"ColumnDataSource"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"1119057","type":"BoxAnnotation"},{"attributes":{"source":{"id":"1118999"}},"id":"1119001","type":"CDSView"},{"attributes":{},"id":"1118967","type":"LinearScale"},{"attributes":{},"id":"1118974","type":"BasicTicker"},{"attributes":{"data_source":{"id":"1119003"},"glyph":{"id":"1119002"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"1119005"}},"id":"1119004","type":"GlyphRenderer"},{"attributes":{},"id":"1118978","type":"WheelZoomTool"},{"attributes":{},"id":"1119002","type":"MultiLine"},{"attributes":{"overlay":{"id":"1119057"}},"id":"1118993","type":"BoxSelectTool"},{"attributes":{},"id":"1118961","type":"DataRange1d"},{"attributes":{"callback":null,"tooltips":[["Name","@name"],["NodeType","@nodeType"],["Description","@description"]]},"id":"1118991","type":"HoverTool"},{"attributes":{"callback":null},"id":"1118992","type":"TapTool"},{"attributes":{},"id":"1119059","type":"Selection"},{"attributes":{},"id":"1119058","type":"UnionRenderers"},{"attributes":{},"id":"1119055","type":"NodesOnly"},{"attributes":{"axis":{"id":"1118969"},"ticker":null},"id":"1118972","type":"Grid"},{"attributes":{"formatter":{"id":"1119042"},"major_label_policy":{"id":"1119040"},"ticker":{"id":"1118970"}},"id":"1118969","type":"LinearAxis"},{"attributes":{},"id":"1119040","type":"AllLabels"},{"attributes":{"data_source":{"id":"1118999"},"glyph":{"id":"1119028"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"1119001"}},"id":"1119000","type":"GlyphRenderer"},{"attributes":{},"id":"1118965","type":"LinearScale"},{"attributes":{"factors":["root","checkov","chart","helmResource","CVE","image"],"palette":["#3288bd","#66c2a5","#abdda4","#e6f598","#fee08b","#fdae61","#f46d43","#d53e4f"]},"id":"1119027","type":"CategoricalColorMapper"},{"attributes":{},"id":"1119045","type":"BasicTickFormatter"},{"attributes":{"text":"wikimedia-flink-session-cluster"},"id":"1118959","type":"Title"},{"attributes":{},"id":"1118982","type":"HelpTool"},{"attributes":{"formatter":{"id":"1119045"},"major_label_policy":{"id":"1119043"},"ticker":{"id":"1118974"}},"id":"1118973","type":"LinearAxis"},{"attributes":{},"id":"1118977","type":"PanTool"},{"attributes":{},"id":"1119042","type":"BasicTickFormatter"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,8.8,8.1,7.5,6.5,5.5,9.8,9.8,9.8,9.8,9.1,8.8,8.1,8.1,8.1,8.1,8,7.8,7.8,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7,7,6.5,6.5,6.5,6.5,6.3,6.1,5.9,5.9,5.9,5.9,5.9,5.9,5.7,5.5,5.5,5.5,5.5,5.5,5.5,5.3,5.3,5.3,5.3,5.3],"description":["wikimedia/flink-session-cluster",null,"Ensure that Service Account Tokens are only mounted where necessary","Deployment.flink-session-cluster-RELEASE-NAME.default (container 0) - flink-session-cluster-RELEASE-NAME","Containers should run as a high UID to avoid host conflict","Apply security context to your pods and containers","Minimize the admission of root containers","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Apply security context to your pods and containers","Use read-only filesystem for containers where possible"

View BlastRadius Graph

wikimedia-rdf-streaming-updater

Bokeh Plot Bokeh.set_log_level("info"); {"b1759a1c-63ee-444b-870d-cf8632be021a":{"defs":[],"roots":{"references":[{"attributes":{},"id":"1128081","type":"DataRange1d"},{"attributes":{"fill_color":{"field":"nodeType","transform":{"id":"1128147"}},"size":{"value":20}},"id":"1128148","type":"Circle"},{"attributes":{"background_fill_color":{"value":"white"},"source":{"id":"1128119"},"text":{"field":"name"},"x":{"field":"x"},"y":{"field":"y"}},"id":"1128157","type":"LabelSet"},{"attributes":{"formatter":{"id":"1128162"},"major_label_policy":{"id":"1128160"},"ticker":{"id":"1128090"}},"id":"1128089","type":"LinearAxis"},{"attributes":{},"id":"1128087","type":"LinearScale"},{"attributes":{},"id":"1128162","type":"BasicTickFormatter"},{"attributes":{"formatter":{"id":"1128165"},"major_label_policy":{"id":"1128163"},"ticker":{"id":"1128094"}},"id":"1128093","type":"LinearAxis"},{"attributes":{},"id":"1128083","type":"DataRange1d"},{"attributes":{"callback":null},"id":"1128112","type":"TapTool"},{"attributes":{},"id":"1128179","type":"Selection"},{"attributes":{},"id":"1128180","type":"UnionRenderers"},{"attributes":{},"id":"1128170","type":"NodesOnly"},{"attributes":{"data_source":{"id":"1128119"},"glyph":{"id":"1128148"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"1128121"}},"id":"1128120","type":"GlyphRenderer"},{"attributes":{"source":{"id":"1128123"}},"id":"1128125","type":"CDSView"},{"attributes":{},"id":"1128178","type":"UnionRenderers"},{"attributes":{},"id":"1128181","type":"Selection"},{"attributes":{"edge_renderer":{"id":"1128124"},"inspection_policy":{"id":"1128170"},"layout_provider":{"id":"1128126"},"node_renderer":{"id":"1128120"},"selection_policy":{"id":"1128175"}},"id":"1128117","type":"GraphRenderer"},{"attributes":{},"id":"1128165","type":"BasicTickFormatter"},{"attributes":{"text":"wikimedia-rdf-streaming-updater"},"id":"1128079","type":"Title"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"1128103","type":"BoxAnnotation"},{"attributes":{},"id":"1128098","type":"WheelZoomTool"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,8.8,8.1,7.5,6.5,5.5,9.8,9.8,9.8,9.8,9.1,8.8,8.1,8.1,8.1,8.1,8,7.8,7.8,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7,7,6.5,6.5,6.5,6.5,6.3,6.1,5.9,5.9,5.9,5.9,5.9,5.9,5.7,5.5,5.5,5.5,5.5,5.5,5.5,5.3,5.3,5.3,5.3,5.3],"description":["wikimedia/rdf-streaming-updater",null,"Ensure that Service Account Tokens are only mounted where necessary","Deployment.rdf-streaming-updater-RELEASE-NAME-jobmanager.default (container 0) - rdf-streaming-updater-RELEASE-NAME-jobmanager","Containers should run as a high UID to avoid host conflict","Apply security context to your pods and containers","Minimize the admission of root containers","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Apply security context to your pods and containers","Use read-only filesystem for containers where possible"

View BlastRadius Graph