StackRadar

CVE-2024-24784

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.011
63rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,051
of 17,803 indexed, latest versions
Container images
2,420
deployed by those charts
Fix available
1 of 2
affected packages

Comments in display names are incorrectly handled in net/mail

Carried by container images the latest versions of 2,051 of 17,803 indexed charts deploy, on 2,420 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+121 more1.21.82,420
OSV records
DEBIAN-CVE-2024-24784GO-2024-2609
Also known as
BIT-golang-2024-24784

Charts affected

2,051 by stars
ChartLatestAffected imagesRadar Score
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
stdlib@go1.19.8
1.21.8

Open the chart page →

16,468
honeydipperhoneydipperVerified publisher0.1.111 of 2See more

honeydipper honeydipper 0.1.11

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/redis:5fc5ecd863862
stdlib@go1.16.7
1.21.8

Open the chart page →

1,731
eoloplanthttpd-eoloplant0.1.03 of 7See more

eoloplant httpd-eoloplant 0.1.0

3 of the 7 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.21.8
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.21.8
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.21.8

Open the chart page →

32,506
http-headershttp-headers1.2.11 of 1See more

http-headers http-headers 1.2.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
stdlib@go1.19.2
1.21.8

Open the chart page →

2,009
cac-systemhuangchengwu-helm-chart0.1.07 of 9See more

cac-system huangchengwu-helm-chart 0.1.0

7 of the 9 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
huangchengwu6904/hi-app:cac-16910478061b932f8221a9
stdlib@go1.20.4
1.21.8
quay.io/jetstack/cert-manager-cainjector:v1.12.0e0a5b06b231c
stdlib@go1.20.4
1.21.8
quay.io/jetstack/cert-manager-controller:v1.12.04a9d0264055b
stdlib@go1.20.4
1.21.8
quay.io/jetstack/cert-manager-ctl:v1.12.08d54fe9d0c0d
stdlib@go1.20.4
1.21.8
quay.io/jetstack/cert-manager-webhook:v1.12.0ec4306b243d9
stdlib@go1.20.4
1.21.8
quay.io/metallb/controller:v0.13.101b33357b3595
stdlib@go1.19.5
1.21.8
quay.io/metallb/speaker:v0.13.1000406ccb1fa0
stdlib@go1.19.5
1.21.8

Open the chart page →

11,264
prometheushuangchengwu-helm-chart0.1.01 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
stdlib@go1.16.9
1.21.8

Open the chart page →

16,525
skywalking-v1huangchengwu-helm-chart0.1.01 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.9.1b4ec8c18d079
stdlib@go1.16.9
1.21.8

Open the chart page →

20,773
tdenginehuangchengwu-helm-chart3.0.21 of 1See more

tdengine huangchengwu-helm-chart 3.0.2

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
tdengine/tdengine:3.0.2.24140a4021ddb
stdlib@go1.17.6
1.21.8

Open the chart page →

3,766
mocktailhuseyinnurbaki0.2.11 of 1See more

mocktail huseyinnurbaki 0.2.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
hhaluk/mocktail:2.0.3350d19360038
stdlib@go1.17.7
1.21.8

Open the chart page →

1,606
vcbackendi4trustVerified publisher0.0.81 of 1See more

vcbackend i4trust 0.0.8

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
wistefan/vcbackend:0.0.13bd436164b51
stdlib@go1.18.3
1.21.8

Open the chart page →

1,848
vcverifieri4trustVerified publisher1.0.231 of 1See more

vcverifier i4trust 1.0.23

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/fiware/vcverifier:2.0.1cd36290dc849
stdlib@go1.19.9
1.21.8

Open the chart page →

1,784
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
stdlib@go1.20.2
1.21.8

Open the chart page →

8,021
stoloniamalryz0.10.01 of 2See more

stolon iamalryz 0.10.0

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
sorintlab/stolon:v0.16.0-pg1236b45c0f97fc
stdlib@go1.13.8
1.21.8

Open the chart page →

4,053
ibexaibexaVerified publisher3.11.11 of 10See more

ibexa ibexa 3.11.1

1 of the 10 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/mysql:8.0.41bf577825b52a
stdlib@go1.18.2
1.21.8

Open the chart page →

6,072
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/postgres:9.6caddd35b05cd
stdlib@go1.16.7
1.21.8

Open the chart page →

113,436
eoloserverihuertas2021-vmartinp2021-helm0.1.03 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.21.8
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.21.8
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.21.8

Open the chart page →

27,906
ikigaiikigai-chartVerified publisher0.0.93 of 58See more

ikigai ikigai-chart 0.0.9

3 of the 58 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
kuberay/operator:v1.0.04e6ac8a3a2c4
stdlib@go1.19.13
1.21.8
rabbitmqoperator/cluster-operator:2.6.08651dd3cec51
stdlib@go1.20.11
1.21.8
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
stdlib@go1.17.3
1.21.8

Open the chart page →

108,761
apexkube-agentimprowisedVerified publisher1.4.01 of 2See more

apexkube-agent improwised 1.4.0

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
masipcat/wireguard-go:0.0.20230223769f7bb64694
stdlib@go1.20.14
1.21.8

Open the chart page →

3,365
frigateimprowisedVerified publisher1.1.01 of 1See more

frigate improwised 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/blakeblackshear/frigate:0.13.07a5244e4c8dc
stdlib@go1.20.3
1.21.8

Open the chart page →

2,160
kore-boardimprowisedVerified publisher0.5.83 of 4See more

kore-board improwised 0.5.8

3 of the 4 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.backend:v0.5.5455f6e7a26fd
stdlib@go1.19.4
1.21.8
ghcr.io/kore3lab/kore-board.metrics-scraper:v0.5.547f88b18fb7c
stdlib@go1.19.4
1.21.8
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
stdlib@go1.18.9
1.21.8

Open the chart page →

16,377
fpga-cloudinaccelVerified publisher1.2.22 of 3See more

fpga-cloud inaccel 1.2.2

2 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
inaccel/cloud-init:latesta5d3d0af05c1
stdlib@go1.21.6
1.21.8
inaccel/kubevirt-hack:latestbdfd61803a70
stdlib@go1.21.7
1.21.8

Open the chart page →

3,166
fpga-operatorinaccelVerified publisher2.8.23 of 7See more

fpga-operator inaccel 2.8.2

3 of the 7 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
inaccel/daemon:latest093e1ea90ab8
stdlib@go1.21.6
1.21.8
inaccel/mkrt:latest187fd448b6f2
stdlib@go1.21.5
1.21.8
inaccel/reef:latestc967218739f3
stdlib@go1.21.6
1.21.8

Open the chart page →

5,759
chronografinfluxdata1.2.61 of 1See more

chronograf influxdata 1.2.6

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/chronograf:1.9.496d8a3f65a4f
stdlib@go1.16.4
1.21.8

Open the chart page →

2,205
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
stdlib@go1.19.3
1.21.8

Open the chart page →

4,946
l2gethinfradao0.0.11 of 1See more

l2geth infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ethereumoptimism/l2geth:0.5.315577036dc36d
stdlib@go1.18
1.21.8

Open the chart page →

2,660
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
stdlib@go1.15.7
1.21.8

Open the chart page →

10,583
lakefsinseefrlab0.0.61 of 2See more

lakefs inseefrlab 0.0.6

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
treeverse/lakefs:0.69.0478f37a6cffc
stdlib@go1.17.8
1.21.8

Open the chart page →

2,652
instemmingserviceinstemmingservice1.0.01 of 3See more

instemmingservice instemmingservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/instemmingservice-php:latest4ffe222b3e3a
stdlib@go1.13.10
1.21.8

Open the chart page →

7,520
consulintelVerified publisher0.8.12 of 2See more

consul intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
hashicorp/consul:1.14.2e38576edcdfd
stdlib@go1.19.2
1.21.8
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
stdlib@go1.19.2
1.21.8

Open the chart page →

5,429
evi-consulintelVerified publisher3.0.32 of 2See more

evi-consul intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
hashicorp/consul:1.14.2e38576edcdfd
stdlib@go1.19.2
1.21.8
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
stdlib@go1.19.2
1.21.8

Open the chart page →

5,429
evi-kesintelVerified publisher3.0.31 of 1See more

evi-kes intel 3.0.3

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
minio/kes:2023-04-03T16-41-28Zf93c2d9088df
stdlib@go1.20.2
1.21.8

Open the chart page →

1,766
evi-miniointelVerified publisher3.0.32 of 2See more

evi-minio intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
stdlib@go1.19.4
1.21.8
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
stdlib@go1.19.4
1.21.8

Open the chart page →

7,613
evi-vaultintelVerified publisher3.0.32 of 2See more

evi-vault intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
stdlib@go1.19.2
1.21.8
hashicorp/vault-k8s:1.1.0844337076b72
stdlib@go1.19.3
1.21.8

Open the chart page →

4,487
kesintelVerified publisher0.8.31 of 1See more

kes intel 0.8.3

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
minio/kes:v0.22.255f3aef5803e
stdlib@go1.19.3
1.21.8

Open the chart page →

3,578
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization:3.03426deb77337
stdlib@go1.17.11
1.21.8

Open the chart page →

77,320
tcs-issuerintelVerified publisher0.5.01 of 2See more

tcs-issuer intel 0.5.0

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
intel/trusted-certificate-issuer:0.5.0591a9db4a427
stdlib@go1.19.3
1.21.8

Open the chart page →

6,010
vaultintelVerified publisher0.8.12 of 2See more

vault intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
stdlib@go1.19.2
1.21.8
hashicorp/vault-k8s:1.1.0844337076b72
stdlib@go1.19.3
1.21.8

Open the chart page →

4,487
gravity-initinvisiblVerified publisher1.0.91 of 1See more

gravity-init invisibl 1.0.9

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
invisibl/gravity-init:v1.0.91a970f84178b
stdlib@go1.17.12
1.21.8

Open the chart page →

2,007
identity-managerinvisiblVerified publisher1.0.01 of 1See more

identity-manager invisibl 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
invisibl/identity-manager:1.0.01029f4fe20eb
stdlib@go1.17.11
1.21.8

Open the chart page →

2,163
identity-manager-demoinvisiblVerified publisher0.1.11 of 1See more

identity-manager-demo invisibl 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
invisibl/identity-manager-demo:v1.0.0cf5400cb935a
stdlib@go1.19.2
1.21.8

Open the chart page →

1,006
karpenteriometeVerified publisher0.19.31 of 1See more

karpenter iomete 0.19.3

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
public.ecr.aws/karpenter/controller:v0.19.3f0e5ab60b2df
stdlib@go1.19.3
1.21.8

Open the chart page →

1,556
istio-aws-private-ingress-customizedistio-aws-private-ingress-customized1.0.01 of 1See more

istio-aws-private-ingress-customized istio-aws-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
stdlib@go1.20.4
1.21.8

Open the chart page →

5,590
istio-azure-private-ingress-customizedistio-azure-private-ingress-customized1.0.01 of 1See more

istio-azure-private-ingress-customized istio-azure-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
stdlib@go1.20.4
1.21.8

Open the chart page →

5,590
istio-ratelimit-operatoristio-ratelimit-operator2.16.11 of 1See more

istio-ratelimit-operator istio-ratelimit-operator 2.16.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
zufardhiyaulhaq/istio-ratelimit-operator:v2.15.0692cfc9d6614
stdlib@go1.19.13
1.21.8

Open the chart page →

746
adguard-homejacobcolvinVerified publisher0.4.01 of 2See more

adguard-home jacobcolvin 0.4.0

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.3843ec119419a9
stdlib@go1.20.8
1.21.8

Open the chart page →

1,605
inlets-clientjacobcolvinVerified publisher0.1.21 of 1See more

inlets-client jacobcolvin 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
stdlib@go1.13.15
1.21.8

Open the chart page →

1,754
inlets-serverjacobcolvinVerified publisher0.1.11 of 1See more

inlets-server jacobcolvin 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
stdlib@go1.13.15
1.21.8

Open the chart page →

1,754
osrs-ge-exporterjacobcolvinVerified publisher0.4.01 of 1See more

osrs-ge-exporter jacobcolvin 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
macropower/osrs_ge_exporter:v0.3c77ab5ea955c
stdlib@go1.21.0
1.21.8

Open the chart page →

608
rclonejacobcolvinVerified publisher1.0.11 of 1See more

rclone jacobcolvin 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
rclone/rclone:1.63.008e1af3c8814
stdlib@go1.20.5
1.21.8

Open the chart page →

2,150
twitch-predictions-recorderjacobcolvinVerified publisher0.1.01 of 1See more

twitch-predictions-recorder jacobcolvin 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
stdlib@go1.19.2
1.21.8

Open the chart page →

2,670

Container images carrying it

2,420 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.9.0cd21e19cd8bb
stdlib@go1.20.5
1.21.8
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.0.1e07f914c32f0
stdlib@go1.15
1.21.8
1
registry.k8s.io/sig-storage/csi-provisioner:v3.4.0e468dddcd275
stdlib@go1.19
1.21.8
1
registry.k8s.io/sig-storage/csi-provisioner:v3.3.0ee3b525d5b89
stdlib@go1.18
1.21.8
1
registry.k8s.io/sig-storage/csi-resizer:v1.7.03a7bdf5d1057
stdlib@go1.19
1.21.8
1
registry.k8s.io/sig-storage/csi-resizer:v1.6.0425d8f1b7693
stdlib@go1.18
1.21.8
1
registry.k8s.io/sig-storage/csi-resizer:v1.10.14ecda2818f6d
stdlib@go1.21.5
1.21.8
1
registry.k8s.io/sig-storage/csi-resizer:v1.3.06e0546563b18
stdlib@go1.16.2
1.21.8
1
registry.k8s.io/sig-storage/csi-snapshotter:v6.1.0291334908ddf
stdlib@go1.18
1.21.8
1
registry.k8s.io/sig-storage/csi-snapshotter:v4.2.1818f35653f2e
stdlib@go1.16.2
1.21.8
1
registry.k8s.io/sig-storage/csi-snapshotter:v5.0.189e900a160a9
stdlib@go1.17.3
1.21.8
1
registry.k8s.io/sig-storage/hostpathplugin:v1.9.092257881c1d6
stdlib@go1.18
1.21.8
1
registry.k8s.io/sig-storage/livenessprobe:v2.9.02b10b24dafdc
stdlib@go1.19
1.21.8
1
registry.k8s.io/sig-storage/livenessprobe:v2.12.05baeb4a6d7d5
stdlib@go1.21.5
1.21.8
1
registry.k8s.io/sig-storage/livenessprobe:v2.11.082adbebdf5d5
stdlib@go1.20.5
1.21.8
1
registry.k8s.io/sig-storage/nfs-subdir-external-provisioner:v4.0.03ce0fdba4d8e
stdlib@go1.15
1.21.8
1
registry.k8s.io/sig-storage/snapshot-controller:v4.2.195587f8777d7
stdlib@go1.16.2
1.21.8
1
registry.k8s.io/sig-storage/snapshot-controller:v6.2.198bab4eaf23c
stdlib@go1.19
1.21.8
1
registry.k8s.io/sig-storage/snapshot-controller:v6.3.1ce6ca3c0e30b
stdlib@go1.20.5
1.21.8
1
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
stdlib@go1.17.3
1.21.8
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.