StackRadar

CVE-2024-2379

Medium

Advisory

Published 27 Mar 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.017
76th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
594
of 17,787 indexed, latest versions
Container images
589
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 594 of 17,787 indexed charts deploy, on 589 images.

Affected packageAffected versionsFixed inImages
curldeb7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4, 7.88.1-10+deb12u5+7 moreno fix listed403
curlapk7.86.0-r1, 7.87.0-r0, 7.87.0-r1, 7.87.0-r2+12 more8.7.1-r0186
OSV records
ALPINE-CVE-2024-2379DEBIAN-CVE-2024-2379

Charts affected

594 by stars
ChartLatestAffected imagesRadar Score
snmp-managersvtech-public-helm-charts1.1.01 of 1See more

snmp-manager svtech-public-helm-charts 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
svtechnmaa/svtech_snmp_manager:v1.0.18e8abe71a46d
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

761
syncthingsvtech-public-helm-charts1.0.01 of 2See more

syncthing svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
svtechnmaa/svtech_syncthing:v1.0.41a75d88031fe
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

2,336
synadia-serversynadiaVerified publisher1.1.101 of 2See more

synadia-server synadia 1.1.10

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
curl@8.4.0-r0
8.7.1-r0

Open the chart page →

1,970
cronjobt3n0.1.01 of 1See more

cronjob t3n 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
library/python:3.8d41127070014
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

11,199
super-mariotechpreta0.1.11 of 1See more

super-mario techpreta 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
nirmalnaveen/supermario:latest8541a39162f3
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,297
temporaltemporal0.28.93 of 13See more

temporal temporal 0.28.9

3 of the 13 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.22.0836af062af30
curl@8.2.0-r1
8.7.1-r0
temporalio/server:1.22.0ddeebf8bad8f
curl@8.2.0-r1
8.7.1-r0
temporalio/ui:2.16.2af9c9349708f
curl@8.1.2-r0
8.7.1-r0

Open the chart page →

21,005
supabaseteochenglim0.1.21 of 13See more

supabase teochenglim 0.1.2

1 of the 13 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
supabase/studio:latest94a2a9d2906e
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

9,556
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

11,648
chatqnatest-opea1.0.02 of 11See more

chatqna test-opea 1.0.0

2 of the 11 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
opea/chatqna:1.038c51b791efa
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

39,090
codegentest-opea1.0.03 of 5See more

codegen test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
opea/codegen:1.058f91683892d
curl@7.88.1-10+deb12u7
no fix listed
opea/codegen-ui:1.02bee4eb66f3e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

28,814
codetranstest-opea1.0.03 of 5See more

codetrans test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
opea/codetrans:1.0e2436483b73d
curl@7.88.1-10+deb12u7
no fix listed
opea/codetrans-ui:1.03ef121f34610
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

28,385
docsumtest-opea1.0.03 of 5See more

docsum test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
opea/docsum:1.03eaa91849512
curl@7.88.1-10+deb12u7
no fix listed
opea/docsum-ui:1.07f854e9bffaf
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

28,858
speecht5test-opea1.0.01 of 1See more

speecht5 test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
opea/speecht5:1.0249afad3d268
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

9,616
codeth-chartsVerified publisher0.1.01 of 1See more

code th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
collabora/code:24.04.13.2.101dc4ab83977
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

3,261
jellyfinth-chartsVerified publisher0.1.01 of 1See more

jellyfin th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.77ae36aab93ef
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

3,958
nextcloudth-chartsVerified publisher0.4.01 of 1See more

nextcloud th-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
library/nextcloud:31.0.6-apache588609d76b21
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

10,086
node-redthl-chartsVerified publisher0.1.01 of 1See more

node-red thl-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
nodered/node-red:3.0.2-18e2632a7a35dd
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

2,806
harbor-scanner-trivytrivy-operator0.31.21 of 1See more

harbor-scanner-trivy trivy-operator 0.31.2

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
aquasec/harbor-scanner-trivy:0.31.26e790e233872
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

2,477
posteetrivy-operator2.14.01 of 3See more

postee trivy-operator 2.14.0

1 of the 3 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
aquasec/postee:2.12.0-amd640795cba777e7
curl@8.1.2-r0
8.7.1-r0

Open the chart page →

4,815
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

17,323
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.301249fc292e84
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

8,607
kenerunxwaresVerified publisher2026.2.51 of 1See more

kener unxwares 2026.2.5

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,228
opencloudunxwaresVerified publisher0.2.36 of 13See more

opencloud unxwares 0.2.3

6 of the 13 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

45,239
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

14,358
demo-frontendv2flyVerified publisher0.0.31 of 1See more

demo-frontend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
quay.io/yushiwho/sys-stats:e1f9d778c8d08b95c0b
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

753
scrutinyvhdirkVerified publisher0.1.31 of 1See more

scrutiny vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,382
maybe-financevicsuferVerified publisher0.2.71 of 3See more

maybe-finance vicsufer 0.2.7

1 of the 3 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

10,795
api-gatewaywallarmVerified publisher0.2.01 of 1See more

api-gateway wallarm 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
wallarm/api-gateway:0.2.0a3d4d2f780e8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

2,288
wallarm-ingress-rcwallarmVerified publisher4.8.41 of 2See more

wallarm-ingress-rc wallarm 4.8.4

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
curl@8.4.0-r0
8.7.1-r0

Open the chart page →

2,635
consulwarjiang1.3.01 of 2See more

consul warjiang 1.3.0

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
curl@8.4.0-r0
8.7.1-r0

Open the chart page →

4,060
sirenwateim1.0.21 of 1See more

siren wateim 1.0.2

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
sigp/siren:v3.0.42c219b04758e
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,984
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

7,085
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
curl@7.88.1-10
no fix listed

Open the chart page →

10,001
generic-webhookwebhooks0.1.11 of 1See more

generic-webhook webhooks 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
curl@7.87.0-r2
8.7.1-r0

Open the chart page →

2,030
giteawenerme12.7.01 of 4See more

gitea wenerme 12.7.0

1 of the 4 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

8,811
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

9,117
keycloakwiremindVerified publisher25.3.11 of 2See more

keycloak wiremind 25.3.1

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
ghcr.io/wiremind/bitnami/keycloak:26.5.0-debian-12-r38622ea9e43c0
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,624
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

5,542
rabbitmqwiremindVerified publisher16.0.171 of 1See more

rabbitmq wiremind 16.0.17

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
ghcr.io/wiremind/bitnami/rabbitmq:4.2.2-debian-12-r11572e12bc93c
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

2,473
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

7,673
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
murtazashah46/helmfile:latest4d11726cf803
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

13,677
prometheusalertygqygq2Verified publisher1.0.01 of 1See more

prometheusalert ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
feiyu563/prometheus-alert:v4.9.1224cfa68cbd9
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

1,611
zahori-consulzahoriVerified publisher1.0.11 of 2See more

zahori-consul zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
curl@8.1.2-r0
8.7.1-r0

Open the chart page →

5,033
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2379.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latestf166a963b550
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

1,589

Container images carrying it

589 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
opea/docsum-ui:1.07f854e9bffaf
curl@7.88.1-10+deb12u5
no fix listed
1
opea/speecht5:1.0249afad3d268
curl@7.88.1-10+deb12u7
no fix listed
1
openbas/caldera-server:5.1.0a277796d9724
curl@7.88.1-10+deb12u8
no fix listed
1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
curl@7.88.1-10+deb12u14
no fix listed
1
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
curl@7.88.1-10+deb12u14
no fix listed
1
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
curl@7.88.1-10+deb12u14
no fix listed
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
curl@7.88.1-10+deb12u7
no fix listed
1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
curl@7.88.1-10+deb12u7
no fix listed
1
opencsghq/kubectl:latestb6d87e1048c2
curl@7.88.1-10+deb12u12
no fix listed
1
openmined/syft-seaweedfs:0.9.53a4144c0bb82
curl@8.5.0-r0
8.7.1-r0
1
openproject/hocuspocus:release-338001b288dc1359dfb5
curl@7.88.1-10+deb12u12
no fix listed
1
openspeedtest/latest:v2.0.0d4d62f4b7d85
curl@8.1.2-r0
8.7.1-r0
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
curl@7.88.1-10+deb12u12
no fix listed
1
phntom/chartmuseum:v0.16.053883b65d9b7
curl@8.2.0-r1
8.7.1-r0
1
phntom/postgresql-backup-s3:1.0.2249b6488f618b
curl@7.86.0-r1
8.7.1-r0
1
pk910/powfaucet:v2-stable3dcae6a62896
curl@7.88.1-10+deb12u12
no fix listed
1
pnnlmiscscripts/k8s-node-image:1.22.17-nginx-362b3ae9b5ec25
curl@8.5.0-r0
8.7.1-r0
1
pnnlmiscscripts/k8s-node-image:1.24.17-nginx-23952d87cca3d2
curl@8.5.0-r0
8.7.1-r0
1
pnnlmiscscripts/k8s-node-image:1.23.17-nginx-36a5ee1dea30e4
curl@8.5.0-r0
8.7.1-r0
1
pnnlmiscscripts/k8s-node-image:1.21.14-nginx-36c19a40d7435d
curl@8.5.0-r0
8.7.1-r0
1
pnnlmiscscripts/k8s-node-image9:1.23.17-nginx-3479ada675515f
curl@8.2.1-r0
8.7.1-r0
1
pnnlmiscscripts/k8s-node-image9:1.22.17-nginx-34b85e437ae261
curl@8.2.1-r0
8.7.1-r0
1
pnnlmiscscripts/k8s-node-image9:1.21.14-nginx-33fa8f5906d36a
curl@8.2.1-r0
8.7.1-r0
1
postgis/postgis:15-3.3-alpine4738bee21eb6
curl@8.2.1-r0
8.7.1-r0
1
praravind1801/helmimages:3.0.0f29d637b9ce1
curl@7.88.1-10+deb12u5
no fix listed
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
curl@7.88.1-10+deb12u6
no fix listed
1
prodrigestivill/postgres-backup-local:12-alpine-8d72d2d6ed2afadc326
curl@7.88.1-r1
8.7.1-r0
1
prowlercloud/prowler-api:5.31.14f252d579be2
curl@7.88.1-10+deb12u14
no fix listed
1
qbittorrentofficial/qbittorrent-nox:4.6.3-12b86d9c356ae
curl@8.5.0-r0
8.7.1-r0
1
quickwit/quickwit:v0.8.1d29332bdadcc
curl@7.88.1-10+deb12u5
no fix listed
1
redash/redash:25.8.000d813437db5
curl@7.88.1-10+deb12u12
no fix listed
1
redash/redash:26.3.0c5c9148f5c38
curl@7.88.1-10+deb12u14
no fix listed
1
redimp/otterwiki:2778bf30da3da
curl@7.88.1-10+deb12u15
no fix listed
1
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
curl@7.88.1-10+deb12u14
no fix listed
1
rocketchat/freeswitch:stablecfba5c20a5cc
curl@7.88.1-10+deb12u12
no fix listed
1
rss3/proxyd:6edce9ddfeee0b00a2d98f24c3ce67885653651b865a0a6bdf4c
curl@8.5.0-r0
8.7.1-r0
1
rss3/proxyd:d2c5ced00901227473fc196fda838191f0cb4e028d9a44c650fa
curl@8.5.0-r0
8.7.1-r0
1
santisbon/speedtest:latest8ee3a1697227
curl@7.88.1-10+deb12u1
no fix listed
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
curl@7.88.1-10+deb12u7
no fix listed
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
curl@7.88.1-10+deb12u4
no fix listed
1
sealio/hermitcrab:v0.1.4a326a2f03660
curl@8.5.0-r0
8.7.1-r0
1
sealio/terraform-deployer:v1.5.7-seal.1b0389d9848a5
curl@8.5.0-r0
8.7.1-r0
1
semaphoreui/semaphore:v2.9.645b50bc11833f
curl@8.5.0-r0
8.7.1-r0
1
shamimkuet/nginx:1.0.2b82902a76a04
curl@7.88.1-10+deb12u6
no fix listed
1
signalen/backend:2.50.14760256000738
curl@7.88.1-10+deb12u15
no fix listed
1
sigp/siren:v3.0.42c219b04758e
curl@7.88.1-10+deb12u12
no fix listed
1
sigscale/cse:latest67d0c886516b
curl@7.88.1-10+deb12u15
no fix listed
1
sigscale/ocs:latest3c1bdc9732e2
curl@7.88.1-10+deb12u15
no fix listed
1
sirrend/helmup-engine:0.1.13699e79e3d4e2
curl@7.88.1-10+deb12u6
no fix listed
1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
curl@7.88.1-10+deb12u6
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.