StackRadar

CVE-2024-12801

Low

Advisory

Published 19 Dec 2024In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
2.4
base score, highest
EPSS
0.002
13th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
409
of 17,781 indexed, latest versions
Container images
383
deployed by those charts
Fix available
1 of 1
affected package

QOS.CH logback-core Server-Side Request Forgery vulnerability

Carried by container images the latest versions of 409 of 17,781 indexed charts deploy, on 383 images.

Affected packageAffected versionsFixed inImages
logback-coremaven1.0.11, 1.0.13, 1.1.2, 1.1.3+30 more1.3.15, 1.5.13383
OSV records
GHSA-6v67-2wr5-gvf4

Charts affected

409 by stars
ChartLatestAffected imagesRadar Score
supertokensgraphql-hive-subcharts1.0.01 of 1See more

supertokens graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
supertokens/supertokens-postgresql:3.1418d34c781347
logback-core@1.2.3
1.3.15

Open the chart page →

2,709
gridgaingridgainOfficialVerified publisher1.0.61 of 1See more

gridgain gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
gridgain/community:8.9.11d32d182a0e6a
logback-core@1.2.3
1.3.15

Open the chart page →

4,679
hawkhawk1.1.51 of 4See more

hawk hawk 1.1.5

1 of the 4 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
logback-core@1.4.11
1.5.13

Open the chart page →

13,610
seata-serverheidaodageshiwoVerified publisher1.0.01 of 1See more

seata-server heidaodageshiwo 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
seataio/seata-server:1.5.1ee1ed55f4144
logback-core@1.2.7
1.3.15

Open the chart page →

5,624
traccarjeffrescVerified publisher0.2.01 of 2See more

traccar jeffresc 0.2.0

1 of the 2 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
traccar/traccar:6.7-alpine621c8d6d46fd
logback-core@1.2.13
1.3.15

Open the chart page →

1,341
jetic-operatorjetic-operatorVerified publisher2.0.21 of 1See more

jetic-operator jetic-operator 2.0.2

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
apache/camel-k:1.10.43bb13d14f64a
logback-core@1.2.11
1.3.15

Open the chart page →

9,318
hertzbeatkubesphere-testVerified publisher1.4.11 of 4See more

hertzbeat kubesphere-test 1.4.1

1 of the 4 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
apache/iotdb:0.13.3-nodeafa47bf1692a
logback-core@1.2.10
1.3.15

Open the chart page →

7,710
linstorkvaps1.14.02 of 11See more

linstor kvaps 1.14.0

2 of the 11 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-controller:v1.14.000ce11c31087
logback-core@1.2.3
1.3.15
ghcr.io/kvaps/linstor-satellite:v1.14.0a573fb9bc809
logback-core@1.2.3
1.3.15

Open the chart page →

15,547
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
logback-core@1.2.13
1.3.15

Open the chart page →

5,734
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
torrespro/mca-worker:2.0.06d3bd305a1ba
logback-core@1.2.3
1.3.15

Open the chart page →

19,187
glowrootnovum-rgi-charts1.0.101 of 2See more

glowroot novum-rgi-charts 1.0.10

1 of the 2 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
logback-core@1.2.11
1.3.15

Open the chart page →

2,308
data-prepperopensearch-project-helm-chartsVerified publisher0.3.11 of 1See more

data-prepper opensearch-project-helm-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
opensearchproject/data-prepper:2.8.057c25fa01d3c
logback-core@1.2.13
1.3.15

Open the chart page →

1,692
todo-apipavanelthepu0.1.01 of 2See more

todo-api pavanelthepu 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
pavanelthepu/todo-api:1.0.2f47658e3b24c
logback-core@1.2.3
1.3.15

Open the chart page →

2,544
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
logback-core@1.2.11
1.3.15

Open the chart page →

7,576
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
treskon/portrait:DEV-latest88e813f22347
logback-core@1.5.12
1.5.13

Open the chart page →

31,844
nifi-registryprofyu1.14.0-r0011 of 1See more

nifi-registry profyu 1.14.0-r001

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
apache/nifi-registry:1.14.0090b7f87ec7f
logback-core@1.2.3
1.3.15

Open the chart page →

4,621
kafka-managerradar-baseVerified publisher2.3.11 of 1See more

kafka-manager radar-base 2.3.1

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
radarbase/kafka-manager:1.3.3.181d2af7dd5a4e
logback-core@1.1.3
1.3.15

Open the chart page →

4,000
shinyproxyremche0.6.61 of 2See more

shinyproxy remche 0.6.6

1 of the 2 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
remche/shinyproxy:2.6.18bcda8a04d3b
logback-core@1.2.11
1.3.15

Open the chart page →

3,958
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
zbalogh/reservation-api-server:1.0.97c247e399a1f
logback-core@1.2.11
1.3.15

Open the chart page →

6,639
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
rm3l/dev-feed-api:latest9a7f732245a3
logback-core@1.2.11
1.3.15

Open the chart page →

9,837
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
logback-core@1.2.7
1.3.15

Open the chart page →

10,120
seldon-coreseldon0.2.72 of 3See more

seldon-core seldon 0.2.7

2 of the 3 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
seldonio/apife:0.2.7ba81b17f00eb
logback-core@1.1.11
1.3.15
seldonio/cluster-manager:0.2.729e362bb1ba2
logback-core@1.1.11
1.3.15

Open the chart page →

13,798
sentinel-dashboardsentinel-dashboardVerified publisher0.1.01 of 1See more

sentinel-dashboard sentinel-dashboard 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
royalwang/sentinel-dashboard:1.8.4df99e2499f91
logback-core@1.2.11
1.3.15

Open the chart page →

4,287
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
logback-core@1.2.11
1.3.15

Open the chart page →

13,486
accountaccount-serviceVerified publisher0.4.21 of 1See more

account account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
vitalii1992/account-service:latest0e694d94551d
logback-core@1.4.7
1.5.13

Open the chart page →

2,168
analyticsaccount-serviceVerified publisher0.4.21 of 1See more

analytics account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
vitalii1992/analytics-service:latest8e798836ecea
logback-core@1.4.7
1.5.13

Open the chart page →

2,326
gatewayaccount-serviceVerified publisher0.4.21 of 1See more

gateway account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
vitalii1992/api-gateway-service:latestaabe6ac39356
logback-core@1.4.7
1.5.13

Open the chart page →

2,853
orderaccount-serviceVerified publisher0.4.21 of 1See more

order account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
vitalii1992/order-service:latest07c4a8833ce4
logback-core@1.4.7
1.5.13

Open the chart page →

2,221
quotes-provideraccount-serviceVerified publisher0.4.21 of 1See more

quotes-provider account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
vitalii1992/quotes-provider-service:latest44d2d6e00ab3
logback-core@1.4.7
1.5.13

Open the chart page →

2,205
airports-apiairports-api0.1.01 of 1See more

airports-api airports-api 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
dina1993/airports-api:latestac731244aed1
logback-core@1.4.6
1.5.13

Open the chart page →

1,958
airports-consumerairports-consumer0.1.01 of 1See more

airports-consumer airports-consumer 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
dina1993/airports-consumer:latest669d146a5e63
logback-core@1.4.6
1.5.13

Open the chart page →

1,947
airports-producerairports-producer0.1.01 of 1See more

airports-producer airports-producer 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
dina1993/airports-producer:latest3d6b0dac1cb4
logback-core@1.4.6
1.5.13

Open the chart page →

1,947
airsonic-advancedairsonic-advancedVerified publisher0.3.11 of 1See more

airsonic-advanced airsonic-advanced 0.3.1

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
linuxserver/airsonic-advanced:11.1.4d286a7f55a59
logback-core@1.5.8
1.5.13

Open the chart page →

1,748
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
hotavneesh/eclipse-jdtls:latesta4579b163414
logback-core@1.5.0
1.5.13

Open the chart page →

4,880
pagesalstom-pages-app1.0.01 of 3See more

pages alstom-pages-app 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
logback-core@1.2.3
1.3.15

Open the chart page →

20,190
amorphieamorphie0.1.21 of 18See more

amorphie amorphie 0.1.2

1 of the 18 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
logback-core@1.4.14
1.5.13

Open the chart page →

28,131
pagesandrei-pages1.0.01 of 3See more

pages andrei-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
logback-core@1.2.3
1.3.15

Open the chart page →

20,190
apache-iotdbapache-iotdb-single-nodeVerified publisher0.1.01 of 1See more

apache-iotdb apache-iotdb-single-node 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
apache/iotdb:0.11.28647309f95d1
logback-core@1.1.11
1.3.15

Open the chart page →

5,277
apimap-apiapimapOfficialVerified publisher1.8.111 of 1See more

apimap-api apimap 1.8.11

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
apimap/api:v1.8.11ae2b3ab00177
logback-core@1.2.11
1.3.15

Open the chart page →

2,231
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
logback-core@1.4.11
1.5.13

Open the chart page →

6,187
d.vazquezm.2021_helmapphelmVerified publisher1.0.01 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

1 of the 6 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-worker:1.0.10d221e834a21
logback-core@1.2.3
1.3.15

Open the chart page →

19,745
inbox-server-distributedappscodeVerified publisher2025.12.251 of 4See more

inbox-server-distributed appscode 2025.12.25

1 of the 4 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
logback-core@1.2.9
1.3.15

Open the chart page →

15,573
james-komposeappscodeVerified publisher0.1.02 of 4See more

james-kompose appscode 0.1.0

2 of the 4 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
logback-core@1.2.9
1.3.15
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
logback-core@1.4.8
1.5.13

Open the chart page →

16,975
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
fimperato/sparkvid-api:1.0.5-RELEASE604012b77841
logback-core@1.2.3
1.3.15

Open the chart page →

8,866
automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
assistiot/automated_configuration:latest23f195a7a26a
logback-core@1.2.11
1.3.15
provectuslabs/kafka-ui:latest8f2ff02d64b0
logback-core@1.4.11
1.5.13

Open the chart page →

14,728
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
logback-core@1.3.0
1.3.15

Open the chart page →

9,412
axelor-open-suiteaxelor-open-suiteVerified publisher7.2.581 of 2See more

axelor-open-suite axelor-open-suite 7.2.58

1 of the 2 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
logback-core@1.4.5
1.5.13

Open the chart page →

9,722
url-shortenerbeastob1.0.21 of 3See more

url-shortener beastob 1.0.2

1 of the 3 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
beastob/url-shortener:1.0.299a49885ab33
logback-core@1.2.6
1.3.15

Open the chart page →

3,607
pagesberrutig-pages1.0.01 of 3See more

pages berrutig-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
logback-core@1.2.3
1.3.15

Open the chart page →

20,190
colosseumbook-k8sinfra-v21.0.181 of 5See more

colosseum book-k8sinfra-v2 1.0.18

1 of the 5 container images this version deploys carry CVE-2024-12801.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-agg:logbc25b152d88e
logback-core@1.5.12
1.5.13

Open the chart page →

26,996

Container images carrying it

383 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
logback-core@1.2.3
1.3.15
1
quay.io/fiware/contract-management:3.3.122bcfcf874451
logback-core@1.5.9
1.5.13
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
logback-core@1.2.3
1.3.15
1
quay.io/fiware/tmforum-account:1.18.06b25aac03414
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
logback-core@1.2.11
1.3.15
1
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
logback-core@1.2.11
1.3.15
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
logback-core@1.2.11
1.3.15
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
logback-core@1.4.11
1.5.13
1
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
logback-core@1.2.3
1.3.15
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
logback-core@1.4.14
1.5.13
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
logback-core@1.4.14
1.5.13
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
logback-core@1.4.14
1.5.13
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
logback-core@1.4.14
1.5.13
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
logback-core@1.5.9
1.5.13
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
logback-core@1.2.12
1.3.15
1
quay.io/srcmaxim/gradle-example-app:1.1.37c3fc28746ef
logback-core@1.2.3
1.3.15
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
logback-core@1.5.9
1.5.13
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.