StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,330
of 17,787 indexed, latest versions
Container images
1,638
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,330 of 17,787 indexed charts deploy, on 1,638 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,638
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,330 by stars
ChartLatestAffected imagesRadar Score
evi-vaultintelVerified publisher3.0.32 of 2See more

evi-vault intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
google.golang.org/protobuf@v1.28.1
1.33.0
hashicorp/vault-k8s:1.1.0844337076b72
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,478
kesintelVerified publisher0.8.31 of 1See more

kes intel 0.8.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/kes:v0.22.255f3aef5803e
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,570
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization:3.03426deb77337
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

11,069
tcs-issuerintelVerified publisher0.5.01 of 2See more

tcs-issuer intel 0.5.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
intel/trusted-certificate-issuer:0.5.0591a9db4a427
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

5,958
vaultintelVerified publisher0.8.12 of 2See more

vault intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
google.golang.org/protobuf@v1.28.1
1.33.0
hashicorp/vault-k8s:1.1.0844337076b72
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,478
gravity-initinvisiblVerified publisher1.0.91 of 1See more

gravity-init invisibl 1.0.9

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
invisibl/gravity-init:v1.0.91a970f84178b
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,006
identity-managerinvisiblVerified publisher1.0.01 of 1See more

identity-manager invisibl 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
invisibl/identity-manager:1.0.01029f4fe20eb
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,162
karpenteriometeVerified publisher0.19.31 of 1See more

karpenter iomete 0.19.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
public.ecr.aws/karpenter/controller:v0.19.3f0e5ab60b2df
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,548
istio-aws-private-ingress-customizedistio-aws-private-ingress-customized1.0.01 of 1See more

istio-aws-private-ingress-customized istio-aws-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,530
istio-azure-private-ingress-customizedistio-azure-private-ingress-customized1.0.01 of 1See more

istio-azure-private-ingress-customized istio-azure-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,530
inlets-clientjacobcolvinVerified publisher0.1.21 of 1See more

inlets-client jacobcolvin 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

1,753
inlets-serverjacobcolvinVerified publisher0.1.11 of 1See more

inlets-server jacobcolvin 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

1,753
osrs-ge-exporterjacobcolvinVerified publisher0.4.01 of 1See more

osrs-ge-exporter jacobcolvin 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
macropower/osrs_ge_exporter:v0.3c77ab5ea955c
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

607
rclonejacobcolvinVerified publisher1.0.11 of 1See more

rclone jacobcolvin 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
rclone/rclone:1.63.008e1af3c8814
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

2,143
twitch-predictions-recorderjacobcolvinVerified publisher0.1.01 of 1See more

twitch-predictions-recorder jacobcolvin 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,669
wakatime-exporterjacobcolvinVerified publisher0.1.11 of 1See more

wakatime-exporter jacobcolvin 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
macropower/wakatime-exporter:0.1.0dbb05debb785
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

1,313
koptimizejaconiVerified publisher0.5.42 of 2See more

koptimize jaconi 0.5.4

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.27.321b24e6bf801
google.golang.org/protobuf@v1.30.0
1.33.0
ghcr.io/jaconi-io/koptimize:1.2.5aca1bbd609b6
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,713
mini-infrajaeki0.1.01 of 4See more

mini-infra jaeki 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.13.101b33357b3595
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

1,744
knative-servingjenkins-x0.19.124 of 4See more

knative-serving jenkins-x 0.19.12

4 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned1e3db4f2eeed
google.golang.org/protobuf@v1.25.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinneddb6ceff2aab4
google.golang.org/protobuf@v1.25.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedb2cd45b8a8a4
google.golang.org/protobuf@v1.25.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedd27b4495ccc3
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

9,699
ingress-nginxjfrog4.5.22 of 2See more

ingress-nginx jfrog 4.5.2

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
google.golang.org/protobuf@v1.28.1
1.33.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

3,798
vaultjfrog0.25.02 of 2See more

vault jfrog 0.25.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/vault:1.14.0b2177a8bfe85
google.golang.org/protobuf@v1.30.0
1.33.0
hashicorp/vault-k8s:1.2.14500e988b7ce
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,968
kafka-offset-lag-for-prometheusjhidalgo3-githubVerified publisher2.3.01 of 1See more

kafka-offset-lag-for-prometheus jhidalgo3-github 2.3.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
jhidalgo3/kafka-offset-lag-for-prometheus:latest0390e155c46d
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,470
missing-container-metricsjimdo-missing-container-metrics0.5.01 of 1See more

missing-container-metrics jimdo-missing-container-metrics 0.5.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

2,409
haven-complinacy-dashboardjolle-devVerified publisher1.0.01 of 2See more

haven-complinacy-dashboard jolle-dev 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
j0113/haven-compliancy-dashboard:1.3696cb8ca9f4e
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

3,840
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

16,600
alertmanager-irc-relayjuppi880.0.11 of 1See more

alertmanager-irc-relay juppi88 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
maldridge/alertmanager-irc-relay:v0.4.1391de2b76128
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

1,615
k10appk10app0.2.11 of 11See more

k10app k10app 0.2.1

1 of the 11 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/k10app/businit:latest94c9a3e799c2
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

10,546
influxdb-exporterk8s-home-lab-repo1.1.31 of 1See more

influxdb-exporter k8s-home-lab-repo 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
prom/influxdb-exporter:v0.11.427e33e18634a
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

624
photoprismk8s-home-lab-repo10.0.11 of 1See more

photoprism k8s-home-lab-repo 10.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
photoprism/photoprism:231128-ce284de9cc4f9c
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,140
k8s-ondemand-proxyk8s-ondemand-proxy0.0.61 of 1See more

k8s-ondemand-proxy k8s-ondemand-proxy 0.0.6

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/k8s-ondemand-proxy:0.0.2078b25d48cf7
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
librephotosk8sonlabVerified publisher1.1.61 of 7See more

librephotos k8sonlab 1.1.6

1 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.22.600ac10bcb759
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

14,801
k8s-pausek8s-pause0.1.41 of 1See more

k8s-pause k8s-pause 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/doodlescheduling/k8s-pause:v0.1.16b3215e37738
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,846
k8svault-controllerk8svault-controller0.1.21 of 1See more

k8svault-controller k8svault-controller 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/doodlescheduling/k8svault-controller:v0.2.0627e5e211766
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,885
kom-operatorkaisoVerified publisher1.3.01 of 2See more

kom-operator kaiso 1.3.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kaiso/kom-operator:v2.2.0e0e22b928bdd
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

710
keycloak-operator-legacykeycloak-operator-legacy1.0.01 of 1See more

keycloak-operator-legacy keycloak-operator-legacy 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

5,067
gogskeyporttech0.1.31 of 3See more

gogs keyporttech 0.1.3

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gogs/gogs:0.12.30195b095d0b2
google.golang.org/protobuf@v1.21.0
1.33.0

Open the chart page →

3,523
helm-mongodb-operatorkeyporttech0.1.01 of 1See more

helm-mongodb-operator keyporttech 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

8,811
connectkfirfer1.15.01 of 2See more

connect kfirfer 1.15.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
1password/connect-api:1.7.26aa94cf713f9
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,786
kubernetes-replicatorkfirfer2.9.11 of 1See more

kubernetes-replicator kfirfer 2.9.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/mittwald/kubernetes-replicator:v2.9.1baf5f784398b
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

864
mysqldumpkfirfer2.8.01 of 1See more

mysqldump kfirfer 2.8.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

3,507
kiaekiae0.1.66 of 9See more

kiae kiae 0.1.6

6 of the 9 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/loki:2.6.11ee60f980950
google.golang.org/protobuf@v1.27.1
1.33.0
grafana/promtail:2.6.1072527b12cdf
google.golang.org/protobuf@v1.27.1
1.33.0
istio/pilot:1.15.2db08d6963975
google.golang.org/protobuf@v1.28.0
1.33.0
otel/opentelemetry-collector-contrib:0.63.1dfb3a55ea8c9
google.golang.org/protobuf@v1.28.1
1.33.0
ghcr.io/dexidp/dex:v2.35.313964b29d63e
google.golang.org/protobuf@v1.28.1
1.33.0
ghcr.io/kiaedev/kiae:latestebd03028ff6a
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

19,168
kloudlite-platformkloudlite1.1.51 of 3See more

kloudlite-platform kloudlite 1.1.5

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,970
kollektorkollektorVerified publisher1.0.51 of 1See more

kollektor kollektor 1.0.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
pannoi/kollektor:1.0.59559617788fc
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

717
komiserkomiser-eks3.1.101 of 1See more

komiser komiser-eks 3.1.10

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
tailwarden/komiser:3.1.103f68c8ae7993
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,265
cadvisorkrakazyabraVerified publisher1.0.11 of 1See more

cadvisor krakazyabra 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,176
kubeflowkromanow94-kubeflow0.5.110 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

10 of the 30 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kubeflownotebookswg/kfam:v1.9.22060a2ede788
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
kubeflownotebookswg/notebook-controller:v1.9.20f14bd28fdd5
google.golang.org/protobuf@v1.27.1
1.33.0
kubeflownotebookswg/poddefaults-webhook:v1.9.2bde88d98ad74
google.golang.org/protobuf@v1.30.0
1.33.0
kubeflownotebookswg/profile-controller:v1.9.2f05a5538ae7e
google.golang.org/protobuf@v1.27.1
1.33.0
kubeflownotebookswg/tensorboard-controller:v1.9.26536a9f61193
google.golang.org/protobuf@v1.27.1
1.33.0
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/ml-pipeline/cache-server:2.3.0293941ee4f65
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/ml-pipeline/persistenceagent:2.3.0109ac1b38c41
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/ml-pipeline/scheduledworkflow:2.3.0f7e67e0bc071
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/ml-pipeline/viewer-crd-controller:2.3.08cf8213d69e4
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

70,530
kron-aapm-sidecarkron-aapm-sidecar1.1.01 of 1See more

kron-aapm-sidecar kron-aapm-sidecar 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
krontechnology/aapm-sidecar-injector:1.1.0e078d54c1711
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,111
lndkronkltdVerified publisher0.3.91 of 4See more

lnd kronkltd 0.3.9

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.14.1-betad94c8dbf6dac
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

8,451
casdoorkrzwiatrzyk1.0.01 of 1See more

casdoor krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
casbin/casdoor:v1.224.066f836ef778b
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,649
nocodbkrzwiatrzyk0.0.11 of 1See more

nocodb krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nocodb/nocodb:0.100.2b0b91ec2a2dd
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,313

Container images carrying it

1,638 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
oryd/hydra:v2.2.02c93beb5e5f2
google.golang.org/protobuf@v1.31.0
1.33.0
3
prom/prometheus:v2.19.0bfad037f95e5
google.golang.org/protobuf@v1.24.0
1.33.0
3
prom/pushgateway:v1.3.18305a33fb80a
google.golang.org/protobuf@v1.23.0
1.33.0
3
prom/statsd-exporter:v0.18.0d23aca343b86
google.golang.org/protobuf@v1.24.0
1.33.0
3
rss3/op-node:d2c5ced00901227473fc196fda838191f0cb4e02d1d2ae6efd05
google.golang.org/protobuf@v1.31.0
1.33.0
3
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
google.golang.org/protobuf@v1.26.0
1.33.0
3
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
google.golang.org/protobuf@v1.28.1
1.33.0
3
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
google.golang.org/protobuf@v1.25.0
1.33.0
3
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
google.golang.org/protobuf@v1.29.1
1.33.0
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
google.golang.org/protobuf@v1.28.0
1.33.0
3
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
google.golang.org/protobuf@v1.25.0
1.33.0
3
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
google.golang.org/protobuf@v1.25.0
1.33.0
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
google.golang.org/protobuf@v1.25.0
1.33.0
3
quay.io/devtron/clair:4.3.675fb847ac045
google.golang.org/protobuf@v1.26.0
1.33.0
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
3
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
google.golang.org/protobuf@v1.27.1
1.33.0
3
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
google.golang.org/protobuf@v1.31.0
1.33.0
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
google.golang.org/protobuf@v1.25.0
1.33.0
3
quay.io/devtron/jcmhproxy-ingress:v0.14.64286bcccda3e
google.golang.org/protobuf@v1.31.0
1.33.0
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
google.golang.org/protobuf@v1.28.1
1.33.0
3
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
google.golang.org/protobuf@v1.29.1
1.33.0
3
quay.io/devtron/nats-box:latest48cdd3054b20
google.golang.org/protobuf@v1.28.1
1.33.0
3
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
google.golang.org/protobuf@v1.25.0
1.33.0
3
quay.io/devtron/winter-soldier:abf5a822-196-14744093844c46c19
google.golang.org/protobuf@v1.27.1
1.33.0
3
quay.io/metallb/controller:v0.13.101b33357b3595
google.golang.org/protobuf@v1.30.0
1.33.0
3
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
google.golang.org/protobuf@v1.26.0
1.33.0
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
google.golang.org/protobuf@v1.28.1
1.33.0
3
quay.io/prometheus/alertmanager:v0.26.0361db356b330
google.golang.org/protobuf@v1.30.0
1.33.0
3
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
google.golang.org/protobuf@v1.23.0
1.33.0
3
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
google.golang.org/protobuf@v1.30.0
1.33.0
3
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
3
quay.io/prometheus-operator/prometheus-operator:v0.50.0ab4f480f2cc6
google.golang.org/protobuf@v1.26.0
1.33.0
3
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
google.golang.org/protobuf@v1.28.1
1.33.0
3
quay.io/prometheus/prometheus:v2.26.038d40a760569
google.golang.org/protobuf@v1.25.0
1.33.0
3
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
google.golang.org/protobuf@v1.27.1
1.33.0
3
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
google.golang.org/protobuf@v1.29.0
1.33.0
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
google.golang.org/protobuf@v1.24.0
1.33.0
3
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
google.golang.org/protobuf@v1.28.1
1.33.0
3
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
google.golang.org/protobuf@v1.30.0
1.33.0
3
registry.k8s.io/sig-storage/csi-attacher:v4.3.04eb73137b663
google.golang.org/protobuf@v1.28.1
1.33.0
3
registry.k8s.io/sig-storage/csi-resizer:v1.8.02e2b44393539
google.golang.org/protobuf@v1.28.1
1.33.0
3
registry.k8s.io/sig-storage/livenessprobe:v2.10.04dc0b87ccd69
google.golang.org/protobuf@v1.28.1
1.33.0
3
1password/scim:v2.3.129d0c6cb67eb
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
2
altinity/clickhouse-operator:0.21.2cd9252644ce0
google.golang.org/protobuf@v1.26.0
1.33.0
2
altinity/metrics-exporter:0.21.2df3d57215356
google.golang.org/protobuf@v1.26.0
1.33.0
2
aquasec/kube-bench:v0.8.0ea3e33bc3c4e
google.golang.org/protobuf@v1.31.0
1.33.0
2
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
google.golang.org/protobuf@v1.28.0
1.33.0
2
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
google.golang.org/protobuf@v1.27.1
1.33.0
2
bitnamilegacy/kubectl:1.26.4a0a972324d93
google.golang.org/protobuf@v1.28.1
1.33.0
2
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
google.golang.org/protobuf@v1.26.0
1.33.0
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.