StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,344
of 17,787 indexed, latest versions
Container images
1,663
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,344 of 17,787 indexed charts deploy, on 1,663 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,663
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,344 by stars
ChartLatestAffected imagesRadar Score
webspacednetsocVerified publisher0.2.82 of 2See more

webspaced netsoc 0.2.8

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
google.golang.org/protobuf@v1.26.0
1.33.0
ghcr.io/netsoc/webspaced:0.5.1edc238a538a0
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

5,193
node-upgrade-channelnimbolus0.1.11 of 1See more

node-upgrade-channel nimbolus 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/nimbolus/k8s-openstack-node-upgrade-agent:0.1.0e0c7cf2415f0
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,062
airflownineinfra-charts1.12.11 of 4See more

airflow nineinfra-charts 1.12.1

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus/statsd-exporter:v0.22.8f53cca722a03
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,258
cloudnative-pgnineinfra-charts0.19.11 of 1See more

cloudnative-pg nineinfra-charts 0.19.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.21.19f707d91de1c
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,187
doris-operatornineinfra-charts1.3.11 of 1See more

doris-operator nineinfra-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
selectdb/doris.k8s-operator:1.3.1919210765cb8
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

869
hdfs-operatornineinfra-charts0.7.01 of 1See more

hdfs-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/hdfs-operator:v0.7.0debb1e3410e2
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

723
kyuubi-operatornineinfra-charts0.7.01 of 1See more

kyuubi-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/kyuubi-operator:v0.7.08d8ed87ef77c
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
metastore-operatornineinfra-charts0.7.01 of 1See more

metastore-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/metastore-operator:v0.7.011259032fb04
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
minio-directpvnineinfra-charts4.0.85 of 5See more

minio-directpv nineinfra-charts 4.0.8

5 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/csi-node-driver-registrardigest-pinnedc805fdc16676
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/csi-provisionerdigest-pinned7b5c070ec70d
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/minio/csi-resizerdigest-pinned819f68a4daf7
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/directpv:v4.0.84560083eb77d
google.golang.org/protobuf@v1.29.1
1.33.0
quay.io/minio/livenessprobedigest-pinnedf3bc9a84f149
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,035
minio-operatornineinfra-charts5.0.91 of 1See more

minio-operator nineinfra-charts 5.0.9

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/operator:v5.0.9170b154d2c61
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,418
nineinfranineinfra-charts0.7.01 of 1See more

nineinfra nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/nineinfra:v0.7.0d4aad414eccd
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,120
zookeeper-operatornineinfra-charts0.7.01 of 1See more

zookeeper-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/zookeeper-operator:v0.7.0af6eb2f37bfc
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

723
firehose-corenodeifyVerified publisher1.2.61 of 2See more

firehose-core nodeify 1.2.6

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

6,542
substreams-tier-2nodeifyVerified publisher1.1.31 of 1See more

substreams-tier-2 nodeify 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,723
grafananodepulse7.1.01 of 1See more

grafana nodepulse 7.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:10.2.36b5b37eb35bb
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,966
prometheusnodepulse25.0.06 of 6See more

prometheus nodepulse 25.0.0

6 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/prometheus/alertmanager:v0.26.0361db356b330
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/prometheus/pushgateway:v1.6.05111de00e969
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

7,740
ingress-helm-chartnotesprojectchart0.1.02 of 2See more

ingress-helm-chart notesprojectchart 0.1.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,956
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

4,547
vault-helm-chartnotesprojectchart0.1.01 of 1See more

vault-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
library/vault:1.13.3f98ac9dd97b0
google.golang.org/protobuf@v1.29.1
1.33.0

Open the chart page →

2,246
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

4,861
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

27,486
cnaos-pvc-populatornutanix-helm-releasesVerified publisher1.1.0-174-prod1 of 2See more

cnaos-pvc-populator nutanix-helm-releases 1.1.0-174-prod

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,838
nai-knative-istio-controllernutanix-helm-releasesVerified publisher1.13.12 of 2See more

nai-knative-istio-controller nutanix-helm-releases 1.13.1

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

1,552
nai-knative-servingnutanix-helm-releasesVerified publisher1.13.14 of 4See more

nai-knative-serving nutanix-helm-releases 1.13.1

4 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.13.121f8e11a44bf
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.13.134796e9f760b
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.13.153d9aa4d2c7a
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.13.1700c69915dc7
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

3,738
nutanix-flow-cninutanix-helm-releasesVerified publisher1.1.01 of 7See more

nutanix-flow-cni nutanix-helm-releases 1.1.0

1 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,989
lensoci-ai-incubations0.1.144 of 16See more

lens oci-ai-incubations 0.1.14

4 of the 16 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/jetstack/cert-manager-cainjector:v1.13.2858fee0c4af0
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/jetstack/cert-manager-controller:v1.13.29c67cf8c92d8
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/jetstack/cert-manager-webhook:v1.13.20a9470447ebf
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

17,085
cluster-gateway-addon-managerocm-helm-chartsVerified publisher1.4.01 of 1See more

cluster-gateway-addon-manager ocm-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
oamdev/cluster-gateway-addon-manager:v1.4.01bcae00bd7b0
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,600
multicluster-meshocm-helm-chartsVerified publisher0.0.21 of 1See more

multicluster-mesh ocm-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,124
nocodbone-acre-fundVerified publisher0.4.61 of 3See more

nocodb one-acre-fund 0.4.6

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nocodb/nocodb:0.258.06779a4ddedf2
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,219
one-green-coreone-green-coreVerified publisher0.0.72 of 8See more

one-green-core one-green-core 0.0.7

2 of the 8 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:8.5.3ecc1b80b8ca2
google.golang.org/protobuf@v1.27.1
1.33.0
library/telegraf:1.20.428e98eece020
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

9,558
opa-nginxopa-nginx0.0.31 of 2See more

opa-nginx opa-nginx 0.0.3

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openpolicyagent/opa:0.53.16a58dea59933
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

2,167
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
google.golang.org/protobuf@v1.24.0
1.33.0

Open the chart page →

18,023
bbsimopencord4.8.111 of 1See more

bbsim opencord 4.8.11

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/bbsim:1.16.7d90403d58016
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,906
bbsim-sadis-serveropencord0.3.51 of 1See more

bbsim-sadis-server opencord 0.3.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/bbsim-sadis-server:0.4.0762b272d439e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,720
volthaopencord2.14.02 of 2See more

voltha opencord 2.14.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-ofagent-go:2.1.68feb9ef89e97
google.golang.org/protobuf@v1.27.1
1.33.0
voltha/voltha-rw-core:3.4.87a325316fe59
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,811
voltha-adapter-openoltopencord2.14.01 of 1See more

voltha-adapter-openolt opencord 2.14.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-openolt-adapter:4.5.16d6d79c08350a
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

891
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
opencord/onos-classic-helm-utils:0.1.00d693ba85fd6
google.golang.org/protobuf@v1.25.0
1.33.0
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

41,088
voltha-stackopencord2.14.03 of 4See more

voltha-stack opencord 2.14.0

3 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-ofagent-go:2.1.68feb9ef89e97
google.golang.org/protobuf@v1.27.1
1.33.0
voltha/voltha-openolt-adapter:4.5.16d6d79c08350a
google.golang.org/protobuf@v1.31.0
1.33.0
voltha/voltha-rw-core:3.4.87a325316fe59
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

5,539
probuilderopenfaas0.2.01 of 2See more

probuilder openfaas 0.2.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
moby/buildkit:v0.10.0c2aeafaed434
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

4,752
kruise-rolloutopenkruise0.6.21 of 1See more

kruise-rollout openkruise 0.6.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openkruise/kruise-rollout:v0.6.2a75e6739ea7d
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,033
kruise-state-metricsopenkruise0.2.01 of 1See more

kruise-state-metrics openkruise 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openkruise/kruise-state-metrics:v0.2.0a8108f771287
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,928
minioopenobserve5.0.72 of 2See more

minio openobserve 5.0.7

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,457
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

11,795
exporteropenshift1.0.471 of 3See more

exporter openshift 1.0.47

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

13,034
fsmopenshift0.1.8-ubi.63 of 6See more

fsm openshift 0.1.8-ubi.6

3 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

16,554
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,145
opscruiseopenshift0.35.1003 of 11See more

opscruise openshift 0.35.100

3 of the 11 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/loki:2.0.077e138f81a8e
google.golang.org/protobuf@v1.25.0
1.33.0
grafana/promtail:2.0.05fd12edcc694
google.golang.org/protobuf@v1.25.0
1.33.0
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

8,201
osm-edgeopenshift1.2.1-ubi84 of 7See more

osm-edge openshift 1.2.1-ubi8

4 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

19,449
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

8,634
openvscode-serveropenvscode-server-helmVerified publisher2.7.371 of 2See more

openvscode-server openvscode-server-helm 2.7.37

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
library/docker:23.0.1-dindd9a0fd8bdd15
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,284

Container images carrying it

1,663 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
ethereum/client-go:v1.10.186d6d12a40465
google.golang.org/protobuf@v1.23.0
1.33.0
1
ethereum/client-go:v1.10.23cce21b423165
google.golang.org/protobuf@v1.26.0
1.33.0
1
ethereum/client-go:v1.10.15d99fbb9585c7
google.golang.org/protobuf@v1.23.0
1.33.0
1
ethereumoptimism/l2geth:0.5.315577036dc36d
google.golang.org/protobuf@v1.27.1
1.33.0
1
ethersphere/ethproxy:latest3a8a3926caa2
google.golang.org/protobuf@v1.28.1
1.33.0
1
ethpandaops/dugtrio:1.0.0e261d1734e9f
google.golang.org/protobuf@v1.31.0
1.33.0
1
ethpandaops/ethereum-metrics-exporter:0.21.0d1780db2e286
google.golang.org/protobuf@v1.28.1
1.33.0
1
ethpandaops/ethereum-validator-metrics-exporter:latest38448e9d4aef
google.golang.org/protobuf@v1.30.0
1.33.0
1
ethpandaops/stubbies:latest9f1d6aec0d04
google.golang.org/protobuf@v1.28.1
1.33.0
1
everpcpc/channels:latestb378d137ae8b
google.golang.org/protobuf@v1.26.0
1.33.0
1
expediagroup/kubernetes-sidecar-injector:1.0.1193a00ec8dd4
google.golang.org/protobuf@v1.27.1
1.33.0
1
factly/dega-api:0.15.166fafc7b0a17
google.golang.org/protobuf@v1.26.0
1.33.0
1
factly/dega-server:0.15.194d21479382e
google.golang.org/protobuf@v1.26.0
1.33.0
1
factly/kavach-server:0.22.3be85ff1b9bd3
google.golang.org/protobuf@v1.26.0
1.33.0
1
factly/mande-server:0.34.1384d384310ef
google.golang.org/protobuf@v1.28.1
1.33.0
1
falcosecurity/falcosidekick:2.27.0828ee36cb13a
google.golang.org/protobuf@v1.28.1
1.33.0
1
fission/fission-bundle:1.14.13fcfd8a0fa5d
google.golang.org/protobuf@v1.26.0
1.33.0
1
fission/pre-upgrade-checks:1.14.1fa0f24cdb9cd
google.golang.org/protobuf@v1.26.0
1.33.0
1
flanksource/apm-hub:v0.0.471dacc3195bf9
google.golang.org/protobuf@v1.30.0
1.33.0
1
flanksource/batch-runner:v1.0.44689687a7cf95
google.golang.org/protobuf@v1.28.0
1.33.0
1
flanksource/vcluster-sync-host-secrets:v0.1.6bd3294c20a60
google.golang.org/protobuf@v1.27.1
1.33.0
1
flomesh/fsm-ingress-pipy:0.2.11cc39c96711c4
google.golang.org/protobuf@v1.30.0
1.33.0
1
flomesh/fsm-manager:0.2.1122f849c70b25
google.golang.org/protobuf@v1.30.0
1.33.0
1
flomesh/osm-edge-bootstrap:1.3.9b188e128cbfe
google.golang.org/protobuf@v1.28.1
1.33.0
1
flomesh/osm-edge-controller:1.3.9add7a4da4622
google.golang.org/protobuf@v1.28.1
1.33.0
1
flomesh/osm-edge-injector:1.3.947287e3ad324
google.golang.org/protobuf@v1.28.1
1.33.0
1
flomesh/osm-edge-preinstall:1.3.9bd224d55ed0f
google.golang.org/protobuf@v1.28.1
1.33.0
1
fluxcd/helm-controller:v0.9.092b891e495d8
google.golang.org/protobuf@v1.25.0
1.33.0
1
fluxcd/source-controller:v0.10.031a8c79a6803
google.golang.org/protobuf@v1.25.0
1.33.0
1
fluxninja/aperture-operator:2.34.0356d7aa86632
google.golang.org/protobuf@v1.32.0
1.33.0
1
foomo/csp-reporter:1.3.0e436da524785
google.golang.org/protobuf@v1.26.0
1.33.0
1
foxcpp/maddy:0.7.16ab538e2f28b
google.golang.org/protobuf@v1.32.0
1.33.0
1
foxcpp/maddy:v0.5.28fa2bd8f6830
google.golang.org/protobuf@v1.27.1
1.33.0
1
galaxy/cloudman-server:lateste5c265fe9fcd
google.golang.org/protobuf@v1.27.1
1.33.0
1
garugaru/presto-exporter:cb666560e9e82d5ae36aef1e663c3d7f51cca9fc5201314c28f3
google.golang.org/protobuf@v1.24.0
1.33.0
1
gboxproxy/gbox:v1.0.63a9f4a711d5c
google.golang.org/protobuf@v1.28.0
1.33.0
1
gitea/gitea:1.12.485416d6f65fe
google.golang.org/protobuf@v1.22.0
1.33.0
1
gitea/gitea:1.21.6ac73e0da341f
google.golang.org/protobuf@v1.31.0
1.33.0
1
gitea/gitea:1.16.8b0bdf102b485
google.golang.org/protobuf@v1.27.1
1.33.0
1
gitea/gitea:1.13.0d5ab14cd29af
google.golang.org/protobuf@v1.25.0
1.33.0
1
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
google.golang.org/protobuf@v1.27.1
1.33.0
1
gkarthics/container-resource-exporter:latest6799af333e8a
google.golang.org/protobuf@v1.23.0
1.33.0
1
goalert/goalert:v0.32.008d57388b0cb
google.golang.org/protobuf@v1.32.0
1.33.0
1
gocrane/craned:v0.5.1a1400909118c
google.golang.org/protobuf@v1.27.1
1.33.0
1
gocrane/crane-scheduler:0.0.239ba6d11b2079
google.golang.org/protobuf@v1.27.1
1.33.0
1
gocrane/crane-scheduler-controller:0.1.23a2d7e60576f9
google.golang.org/protobuf@v1.27.1
1.33.0
1
gogs/gogs:0.12.30195b095d0b2
google.golang.org/protobuf@v1.21.0
1.33.0
1
gogs/gogs:0.12.1420d53bb7277
google.golang.org/protobuf@v1.21.0
1.33.0
1
goharbor/chartmuseum-photon:v2.5.36ab3ca28e9e5
google.golang.org/protobuf@v1.27.1
1.33.0
1
goharbor/harbor-acceld:0.2.13451103a6c8d8
google.golang.org/protobuf@v1.31.0
1.33.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.