StackRadar

CVE-2024-24784

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.011
63rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,114
of 17,813 indexed, latest versions
Container images
2,466
deployed by those charts
Fix available
1 of 2
affected packages

Comments in display names are incorrectly handled in net/mail

Carried by container images the latest versions of 2,114 of 17,813 indexed charts deploy, on 2,466 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+122 more1.21.82,466
OSV records
DEBIAN-CVE-2024-24784GO-2024-2609
Also known as
BIT-golang-2024-24784

Charts affected

2,114 by stars
ChartLatestAffected imagesRadar Score
open-webconceptopen-webconcept0.1.01 of 3See more

open-webconcept open-webconcept 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.21.8

Open the chart page →

3,424
gitlab-proxyopslevelVerified publisher0.0.81 of 1See more

gitlab-proxy opslevel 0.0.8

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/caddy:2.660fb54d36b4b
stdlib@go1.20
1.21.8

Open the chart page →

1,892
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2023-02-28T00-12-59Zc631532a394e
stdlib@go1.19.6
1.21.8

Open the chart page →

5,661
agentoptimizely-agentVerified publisher1.4.01 of 1See more

agent optimizely-agent 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
optimizely/agent:4.0.09d0096cabd63
stdlib@go1.21.6
1.21.8

Open the chart page →

1,230
orderregistratiecomponentorderregistratiecomponent1.0.01 of 3See more

orderregistratiecomponent orderregistratiecomponent 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/orderregistratiecomponent-php:latestd17257e4fa27
stdlib@go1.13.10
1.21.8

Open the chart page →

7,504
prometheusosc0.26.22 of 12See more

prometheus osc 0.26.2

2 of the 12 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.24.03af31f8bd1ad
stdlib@go1.20.4
1.21.8
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.2ec5732e28f15
stdlib@go1.19.7
1.21.8

Open the chart page →

3,382
grrosdfir-infrastructureVerified publisher1.0.31 of 5See more

grr osdfir-infrastructure 1.0.3

1 of the 5 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/mariadb:11.3.2e101f9db3191
stdlib@go1.18.2
1.21.8

Open the chart page →

11,074
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.06 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

6 of the 40 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/arangodb:3.11.81e75d74954a4
stdlib@go1.21.5
1.21.8
library/mariadb:11.3.2e101f9db3191
stdlib@go1.18.2
1.21.8
library/postgres:17.5-alpine6567bca8d7bc
stdlib@go1.18.2
1.21.8
library/postgres:17.2-alpine7e5df973a748
stdlib@go1.18.2
1.21.8
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.21.8
registry.k8s.io/e2e-test-images/agnhost:2.40af7e3857d877
stdlib@go1.18.3
1.21.8

Open the chart page →

203,579
yetiosdfir-infrastructureVerified publisher1.0.51 of 4See more

yeti osdfir-infrastructure 1.0.5

1 of the 4 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/arangodb:3.11.81e75d74954a4
stdlib@go1.21.5
1.21.8

Open the chart page →

6,874
osm-edgeosm-edgeVerified publisher1.3.94 of 7See more

osm-edge osm-edge 1.3.9

4 of the 7 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
flomesh/osm-edge-bootstrap:1.3.9b188e128cbfe
stdlib@go1.19.13
1.21.8
flomesh/osm-edge-controller:1.3.9add7a4da4622
stdlib@go1.19.13
1.21.8
flomesh/osm-edge-injector:1.3.947287e3ad324
stdlib@go1.19.13
1.21.8
flomesh/osm-edge-preinstall:1.3.9bd224d55ed0f
stdlib@go1.19.13
1.21.8

Open the chart page →

5,611
logging-operatorot-container-kit0.4.01 of 1See more

logging-operator ot-container-kit 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/opstree/logging-operator:v0.4.0fd8bb57ef3cf
stdlib@go1.17.10
1.21.8

Open the chart page →

1,803
lokiot-container-kit1.0.11 of 5See more

loki ot-container-kit 1.0.1

1 of the 5 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
prom/memcached-exporter:v0.14.2d8a61419b841
stdlib@go1.21.5
1.21.8

Open the chart page →

4,846
mongodb-operatorot-container-kit0.3.11 of 1See more

mongodb-operator ot-container-kit 0.3.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/opstree/mongodb-operator:v0.3.0879b9bead838
stdlib@go1.17.8
1.21.8

Open the chart page →

1,874
kubernetes-taggeroxyno-zetaVerified publisher1.1.21 of 1See more

kubernetes-tagger oxyno-zeta 1.1.2

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
oxynozeta/kubernetes-tagger:1.3.0a153c386f5af
stdlib@go1.17
1.21.8

Open the chart page →

1,827
eigendap2p-avs0.1.12 of 3See more

eigenda p2p-avs 0.1.1

2 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/layr-labs/eigenda/opr-node:0.8.46650119a385f
stdlib@go1.21.1
1.21.8
ghcr.io/layr-labs/eigenda/opr-nodeplugin:0.8.4e459ad3ae758
stdlib@go1.21.1
1.21.8

Open the chart page →

2,336
p4p40.1.01 of 7See more

p4 p4 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
stdlib@go1.18.10
1.21.8

Open the chart page →

27,879
Parpar0.1.01 of 1See more

Par par 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/jmcgrath207/par:v0.1.09977511cb142
stdlib@go1.19.10
1.21.8

Open the chart page →

890
parcaparca4.19.02 of 2See more

parca parca 4.19.0

2 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
stdlib@go1.21.1
1.21.8
ghcr.io/parca-dev/parca-agent:v0.28.06d6794f45f3e
stdlib@go1.21.4
1.21.8

Open the chart page →

3,384
parcaparca-chart0.1.01 of 1See more

parca parca-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
stdlib@go1.21.1
1.21.8

Open the chart page →

1,995
scaleway-webhookparticuleio0.0.11 of 1See more

scaleway-webhook particuleio 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
stdlib@go1.15.2
1.21.8

Open the chart page →

2,354
hammondpascaliskeVerified publisher2.0.01 of 2See more

hammond pascaliske 2.0.0

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.21.8

Open the chart page →

1,807
plausible-exporterpascaliskeVerified publisher1.0.01 of 1See more

plausible-exporter pascaliske 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/riesinger/plausible-exporter:1.1.061112cda1be5
stdlib@go1.19.7
1.21.8

Open the chart page →

700
permission-managerpermission-manager1.0.0-seal1 of 1See more

permission-manager permission-manager 1.0.0-seal

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
stdlib@go1.16.8
1.21.8

Open the chart page →

2,267
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
stdlib@go1.16.12
1.21.8

Open the chart page →

15,479
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
stdlib@go1.16.12
1.21.8

Open the chart page →

15,479
whoamiphilippwaller1.0.31 of 1See more

whoami philippwaller 1.0.3

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
traefik/whoami:v1.8.08d0f943abdbf
stdlib@go1.17.7
1.21.8

Open the chart page →

1,007
codimdphntom0.1.121 of 3See more

codimd phntom 0.1.12

1 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
phntom/codimd:2.4.31b9aafbb62e6
stdlib@go1.16
1.21.8

Open the chart page →

6,532
container-agentphntom100.0.11 of 1See more

container-agent phntom 100.0.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
circleci/container-agent:34d8d0ae5efc3
stdlib@go1.19.7
1.21.8

Open the chart page →

1,975
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
stdlib@go1.19.2
1.21.8

Open the chart page →

4,650
goalertphntom0.0.291 of 1See more

goalert phntom 0.0.29

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
phntom/goalert:0.0.298ca4df55499b
stdlib@go1.21.5
1.21.8

Open the chart page →

1,050
kochiphntom1.1.41 of 1See more

kochi phntom 1.1.4

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
phntom/kochi:1.1.33b82358bd56e
stdlib@go1.15.5
1.21.8

Open the chart page →

2,965
loki-stackphntom2.10.22 of 2See more

loki-stack phntom 2.10.2

2 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
grafana/loki:2.4.2b3af8ead67d7
stdlib@go1.17.2
1.21.8
grafana/promtail:2.4.2626900031c4e
stdlib@go1.17.2
1.21.8

Open the chart page →

5,726
mindavphntom0.1.61 of 2See more

mindav phntom 0.1.6

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
phntom/mindav:0.1.7-kix35695f546abbb
stdlib@go1.16.2
1.21.8

Open the chart page →

4,161
npre-essentialsphntom0.1.6013 of 22See more

npre-essentials phntom 0.1.60

13 of the 22 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.21.8
grafana/loki:2.6.11ee60f980950
stdlib@go1.17.9
1.21.8
grafana/promtail:2.7.0c16c710f7333
stdlib@go1.19.2
1.21.8
phntom/chartmuseum:v0.15.29242b4df9e65
stdlib@go1.18.5
1.21.8
phntom/kochi:1.1.33b82358bd56e
stdlib@go1.15.5
1.21.8
phntom/oauth2-proxy:v7.3.48ea656a2a895
stdlib@go1.19.2
1.21.8
quay.io/groundcover/grafana:9.3.18c65b333a3d3
stdlib@go1.19.3
1.21.8
quay.io/prometheus-operator/prometheus-operator:v0.61.1cd7d1a82ef00
stdlib@go1.19.3
1.21.8
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.21.8
quay.io/prometheuscommunity/elasticsearch-exporter:v1.5.013a41e8ac836
stdlib@go1.18.4
1.21.8
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
stdlib@go1.19.2
1.21.8
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.21.8
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.7.0a15ca437f230
stdlib@go1.19.3
1.21.8

Open the chart page →

26,907
prometheus-elasticsearch-exporterphntom4.5.11 of 2See more

prometheus-elasticsearch-exporter phntom 4.5.1

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.21.8

Open the chart page →

2,030
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
stdlib@go1.19
1.21.8

Open the chart page →

92,617
firehose-corepinaxVerified publisher0.1.11 of 2See more

firehose-core pinax 0.1.1

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.10.222f84e3615c8
stdlib@go1.18.5
1.21.8

Open the chart page →

3,562
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
stdlib@go1.18.5
1.21.8

Open the chart page →

7,237
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
stdlib@go1.18.5
1.21.8

Open the chart page →

5,001
pixie-operator-chartpixie0.1.71 of 3See more

pixie-operator-chart pixie 0.1.7

1 of the 3 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned1b6002156f56
stdlib@go1.21.7
1.21.8

Open the chart page →

1,915
pixie-operator-helm2-chartpixie0.1.21 of 2See more

pixie-operator-helm2-chart pixie 0.1.2

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinnedf9ea8cef95ac
stdlib@go1.19.6
1.21.8

Open the chart page →

1,769
planectlplanectlVerified publisher0.7.02 of 10See more

planectl planectl 0.7.0

2 of the 10 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
alpine/k8s:1.30.2cd560fce90f7
stdlib@go1.20.5
1.21.8
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.21.8

Open the chart page →

26,565
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
stdlib@go1.13.12
1.21.8

Open the chart page →

11,165
tenant-namespacepnnl-miscscripts0.6.231 of 1See more

tenant-namespace pnnl-miscscripts 0.6.23

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
stdlib@go1.18.2
1.21.8

Open the chart page →

2,579
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
stdlib@go1.19.13
1.21.8

Open the chart page →

13,114
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
library/postgres:16.24aea012537ed
stdlib@go1.18.2
1.21.8

Open the chart page →

11,435
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
stdlib@go1.20.10
1.21.8

Open the chart page →

6,614
trainingjobspolyaxon2.1.01 of 1See more

trainingjobs polyaxon 2.1.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
polyaxon/training-operator:2.1.0b5b29deaec9a
stdlib@go1.20.13
1.21.8

Open the chart page →

726
beylaportefaix-hub0.1.01 of 1See more

beyla portefaix-hub 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
grafana/beyla:1.3.336d07f8d276e
stdlib@go1.21.7
1.21.8

Open the chart page →

2,736
podtato-headportefaix-hub0.3.06 of 6See more

podtato-head portefaix-hub 0.3.0

6 of the 6 container images this version deploys carry CVE-2024-24784.

Container imageDigestPackageFixed in
ghcr.io/podtato-head/entry:latestc3d9d9c98be7
stdlib@go1.19
1.21.8
ghcr.io/podtato-head/hat:latestde37ff39a4c0
stdlib@go1.19
1.21.8
ghcr.io/podtato-head/left-arm:latest97596c95276a
stdlib@go1.19
1.21.8
ghcr.io/podtato-head/left-leg:latest00bb31622b1e
stdlib@go1.19
1.21.8
ghcr.io/podtato-head/right-arm:latest5f8f97a60558
stdlib@go1.19
1.21.8
ghcr.io/podtato-head/right-leg:latest03e125b9279e
stdlib@go1.19
1.21.8

Open the chart page →

5,285

Container images carrying it

2,466 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.