StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,345
of 17,790 indexed, latest versions
Container images
1,665
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,345 of 17,790 indexed charts deploy, on 1,665 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,665
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,345 by stars
ChartLatestAffected imagesRadar Score
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

6,989
webspacednetsocVerified publisher0.2.82 of 2See more

webspaced netsoc 0.2.8

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
google.golang.org/protobuf@v1.26.0
1.33.0
ghcr.io/netsoc/webspaced:0.5.1edc238a538a0
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

5,193
node-upgrade-channelnimbolus0.1.11 of 1See more

node-upgrade-channel nimbolus 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/nimbolus/k8s-openstack-node-upgrade-agent:0.1.0e0c7cf2415f0
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,062
airflownineinfra-charts1.12.11 of 4See more

airflow nineinfra-charts 1.12.1

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus/statsd-exporter:v0.22.8f53cca722a03
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,258
cloudnative-pgnineinfra-charts0.19.11 of 1See more

cloudnative-pg nineinfra-charts 0.19.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.21.19f707d91de1c
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,187
doris-operatornineinfra-charts1.3.11 of 1See more

doris-operator nineinfra-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
selectdb/doris.k8s-operator:1.3.1919210765cb8
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

869
hdfs-operatornineinfra-charts0.7.01 of 1See more

hdfs-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/hdfs-operator:v0.7.0debb1e3410e2
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

723
kyuubi-operatornineinfra-charts0.7.01 of 1See more

kyuubi-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/kyuubi-operator:v0.7.08d8ed87ef77c
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
metastore-operatornineinfra-charts0.7.01 of 1See more

metastore-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/metastore-operator:v0.7.011259032fb04
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
minio-directpvnineinfra-charts4.0.85 of 5See more

minio-directpv nineinfra-charts 4.0.8

5 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/csi-node-driver-registrardigest-pinnedc805fdc16676
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/csi-provisionerdigest-pinned7b5c070ec70d
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/minio/csi-resizerdigest-pinned819f68a4daf7
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/directpv:v4.0.84560083eb77d
google.golang.org/protobuf@v1.29.1
1.33.0
quay.io/minio/livenessprobedigest-pinnedf3bc9a84f149
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,067
minio-operatornineinfra-charts5.0.91 of 1See more

minio-operator nineinfra-charts 5.0.9

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/operator:v5.0.9170b154d2c61
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,425
nineinfranineinfra-charts0.7.01 of 1See more

nineinfra nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/nineinfra:v0.7.0d4aad414eccd
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,120
zookeeper-operatornineinfra-charts0.7.01 of 1See more

zookeeper-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/zookeeper-operator:v0.7.0af6eb2f37bfc
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

723
firehose-corenodeifyVerified publisher1.2.61 of 2See more

firehose-core nodeify 1.2.6

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

6,558
substreams-tier-2nodeifyVerified publisher1.1.31 of 1See more

substreams-tier-2 nodeify 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,735
grafananodepulse7.1.01 of 1See more

grafana nodepulse 7.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:10.2.36b5b37eb35bb
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,973
prometheusnodepulse25.0.06 of 6See more

prometheus nodepulse 25.0.0

6 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/prometheus/alertmanager:v0.26.0361db356b330
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/prometheus/pushgateway:v1.6.05111de00e969
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

7,746
ingress-helm-chartnotesprojectchart0.1.02 of 2See more

ingress-helm-chart notesprojectchart 0.1.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,956
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

4,558
vault-helm-chartnotesprojectchart0.1.01 of 1See more

vault-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
library/vault:1.13.3f98ac9dd97b0
google.golang.org/protobuf@v1.29.1
1.33.0

Open the chart page →

2,254
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

4,861
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

27,493
cnaos-pvc-populatornutanix-helm-releasesVerified publisher1.1.0-174-prod1 of 2See more

cnaos-pvc-populator nutanix-helm-releases 1.1.0-174-prod

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,838
nai-knative-istio-controllernutanix-helm-releasesVerified publisher1.13.12 of 2See more

nai-knative-istio-controller nutanix-helm-releases 1.13.1

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

1,566
nai-knative-servingnutanix-helm-releasesVerified publisher1.13.14 of 4See more

nai-knative-serving nutanix-helm-releases 1.13.1

4 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.13.121f8e11a44bf
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.13.134796e9f760b
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.13.153d9aa4d2c7a
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.13.1700c69915dc7
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

3,762
nutanix-flow-cninutanix-helm-releasesVerified publisher1.1.01 of 7See more

nutanix-flow-cni nutanix-helm-releases 1.1.0

1 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,996
lensoci-ai-incubations0.1.144 of 16See more

lens oci-ai-incubations 0.1.14

4 of the 16 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/jetstack/cert-manager-cainjector:v1.13.2858fee0c4af0
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/jetstack/cert-manager-controller:v1.13.29c67cf8c92d8
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/jetstack/cert-manager-webhook:v1.13.20a9470447ebf
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

17,134
cluster-gateway-addon-managerocm-helm-chartsVerified publisher1.4.01 of 1See more

cluster-gateway-addon-manager ocm-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
oamdev/cluster-gateway-addon-manager:v1.4.01bcae00bd7b0
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,607
multicluster-meshocm-helm-chartsVerified publisher0.0.21 of 1See more

multicluster-mesh ocm-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,131
nocodbone-acre-fundVerified publisher0.4.61 of 3See more

nocodb one-acre-fund 0.4.6

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nocodb/nocodb:0.258.06779a4ddedf2
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,226
one-green-coreone-green-coreVerified publisher0.0.72 of 8See more

one-green-core one-green-core 0.0.7

2 of the 8 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:8.5.3ecc1b80b8ca2
google.golang.org/protobuf@v1.27.1
1.33.0
library/telegraf:1.20.428e98eece020
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

9,581
opa-nginxopa-nginx0.0.31 of 2See more

opa-nginx opa-nginx 0.0.3

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openpolicyagent/opa:0.53.16a58dea59933
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

2,175
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
google.golang.org/protobuf@v1.24.0
1.33.0

Open the chart page →

18,032
bbsimopencord4.8.111 of 1See more

bbsim opencord 4.8.11

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/bbsim:1.16.7d90403d58016
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,908
bbsim-sadis-serveropencord0.3.51 of 1See more

bbsim-sadis-server opencord 0.3.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/bbsim-sadis-server:0.4.0762b272d439e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,722
volthaopencord2.14.02 of 2See more

voltha opencord 2.14.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-ofagent-go:2.1.68feb9ef89e97
google.golang.org/protobuf@v1.27.1
1.33.0
voltha/voltha-rw-core:3.4.87a325316fe59
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,824
voltha-adapter-openoltopencord2.14.01 of 1See more

voltha-adapter-openolt opencord 2.14.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-openolt-adapter:4.5.16d6d79c08350a
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

898
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
opencord/onos-classic-helm-utils:0.1.00d693ba85fd6
google.golang.org/protobuf@v1.25.0
1.33.0
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

41,101
voltha-stackopencord2.14.03 of 4See more

voltha-stack opencord 2.14.0

3 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-ofagent-go:2.1.68feb9ef89e97
google.golang.org/protobuf@v1.27.1
1.33.0
voltha/voltha-openolt-adapter:4.5.16d6d79c08350a
google.golang.org/protobuf@v1.31.0
1.33.0
voltha/voltha-rw-core:3.4.87a325316fe59
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

5,566
probuilderopenfaas0.2.01 of 2See more

probuilder openfaas 0.2.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
moby/buildkit:v0.10.0c2aeafaed434
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

4,760
kruise-rolloutopenkruise0.6.21 of 1See more

kruise-rollout openkruise 0.6.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openkruise/kruise-rollout:v0.6.2a75e6739ea7d
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,034
kruise-state-metricsopenkruise0.2.01 of 1See more

kruise-state-metrics openkruise 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openkruise/kruise-state-metrics:v0.2.0a8108f771287
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,929
minioopenobserve5.0.72 of 2See more

minio openobserve 5.0.7

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,471
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

12,185
exporteropenshift1.0.471 of 3See more

exporter openshift 1.0.47

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

13,041
fsmopenshift0.1.8-ubi.63 of 6See more

fsm openshift 0.1.8-ubi.6

3 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

16,563
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,170
opscruiseopenshift0.35.1003 of 11See more

opscruise openshift 0.35.100

3 of the 11 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/loki:2.0.077e138f81a8e
google.golang.org/protobuf@v1.25.0
1.33.0
grafana/promtail:2.0.05fd12edcc694
google.golang.org/protobuf@v1.25.0
1.33.0
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

8,224
osm-edgeopenshift1.2.1-ubi84 of 7See more

osm-edge openshift 1.2.1-ubi8

4 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

19,471
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

8,643

Container images carrying it

1,665 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
otel/opentelemetry-collector-contrib:0.89.0995f17004231
google.golang.org/protobuf@v1.31.0
1.33.0
1
otel/opentelemetry-collector-contrib:0.46.0ba173aa85f3f
google.golang.org/protobuf@v1.27.1
1.33.0
1
otel/opentelemetry-collector-contrib:0.81.0c6671841470b
google.golang.org/protobuf@v1.31.0
1.33.0
1
otel/opentelemetry-collector-contrib:0.63.1dfb3a55ea8c9
google.golang.org/protobuf@v1.28.1
1.33.0
1
otel/opentelemetry-ebpf-k8s-watcher:v0.10.263a0d1dd2cac
google.golang.org/protobuf@v1.28.1
1.33.0
1
owncloud/ocis:1.7.0d2efcae92c84
google.golang.org/protobuf@v1.26.0
1.33.0
1
oxynozeta/kubernetes-tagger:1.3.0a153c386f5af
google.golang.org/protobuf@v1.27.1
1.33.0
1
pactfoundation/pact-broker:2.79.1.112861b0bd4d9
google.golang.org/protobuf@v1.21.0
1.33.0
1
pactfoundation/pact-broker:2.101.0.0a3021fc42834
google.golang.org/protobuf@v1.21.0
1.33.0
1
pannoi/kollektor:1.0.59559617788fc
google.golang.org/protobuf@v1.30.0
1.33.0
1
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
google.golang.org/protobuf@v1.21.0
1.33.0
1
percona/percona-xtradb-cluster-operator:1.14.03232ae01d0ff
google.golang.org/protobuf@v1.32.0
1.33.0
1
phntom/chartmuseum:v0.16.053883b65d9b7
google.golang.org/protobuf@v1.30.0
1.33.0
1
phntom/chartmuseum:v0.15.29242b4df9e65
google.golang.org/protobuf@v1.28.1
1.33.0
1
phntom/external-dns-host-network:0.0.123adadbac8443
google.golang.org/protobuf@v1.28.0
1.33.0
1
phntom/goalert:0.0.298ca4df55499b
google.golang.org/protobuf@v1.31.0
1.33.0
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
google.golang.org/protobuf@v1.31.0
1.33.0
1
phntom/mindav:0.1.7-kix35695f546abbb
google.golang.org/protobuf@v1.25.0
1.33.0
1
phntom/oauth2-proxy:v7.3.48ea656a2a895
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
1
photoprism/photoprism:231128-ce284de9cc4f9c
google.golang.org/protobuf@v1.31.0
1.33.0
1
photoprism/photoprism:220629-jammy2954334adbda
google.golang.org/protobuf@v1.28.0
1.33.0
1
piblokto/backlokto-operator:v0.0.20963cda71e393
google.golang.org/protobuf@v1.30.0
1.33.0
1
pinclr/v2ray-proxy:latestf37f250b7091
google.golang.org/protobuf@v1.28.2-0.20220831092852-f930b1dc76e8
1.33.0
1
pnnlmiscscripts/ipmi-exporter:1.2.0-181e18992d8e3
google.golang.org/protobuf@v1.21.0
1.33.0
1
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
google.golang.org/protobuf@v1.29.1
1.33.0
1
polyaxon/training-operator:2.1.0b5b29deaec9a
google.golang.org/protobuf@v1.30.0
1.33.0
1
pomerium/pomerium:v0.22.19c69b10a2126
google.golang.org/protobuf@v1.30.0
1.33.0
1
portainer/portainer-ce:2.18.4-alpine3e61aaee1341
google.golang.org/protobuf@v1.28.1
1.33.0
1
pozetroninc/liftbridge:v1.1.079fd6b9d93e6
google.golang.org/protobuf@v1.21.0
1.33.0
1
pravega/zookeeper-operator:0.2.15b2bc4042fdd8
google.golang.org/protobuf@v1.28.0
1.33.0
1
prom/blackbox-exporter:v0.22.0608acee5704a
google.golang.org/protobuf@v1.27.1
1.33.0
1
prom/blackbox-exporter:v0.23.0ca04aa9d9093
google.golang.org/protobuf@v1.28.1
1.33.0
1
prometheuscommunity/elasticsearch-exporter:v1.3.0fe735268fbdc
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
1
prom/influxdb-exporter:v0.11.427e33e18634a
google.golang.org/protobuf@v1.30.0
1.33.0
1
prom/influxdb-exporter:v0.9.0f63fd77c05ee
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
1
prom/memcached-exporter:v0.9.001267317c95d
google.golang.org/protobuf@v1.23.0
1.33.0
1
prom/node-exporter:v1.6.0d2e48098c364
google.golang.org/protobuf@v1.30.0
1.33.0
1
prom/prometheus:v2.51.24f6c47e39a90
google.golang.org/protobuf@v1.32.0
1.33.0
1
prom/prometheus:v2.18.15880ec936055
google.golang.org/protobuf@v1.21.0
1.33.0
1
prom/prometheus:v2.48.0b440bc0e8aa5
google.golang.org/protobuf@v1.31.0
1.33.0
1
prom/prometheus:v2.19.2cd134bd4fca0
google.golang.org/protobuf@v1.24.0
1.33.0
1
prom/prometheus:v2.22.2f7ffebdd428b
google.golang.org/protobuf@v1.24.0
1.33.0
1
prom/pushgateway:v1.5.128fe26c8b8b1
google.golang.org/protobuf@v1.28.1
1.33.0
1
prom/pushgateway:v1.4.33496e0f85943
google.golang.org/protobuf@v1.26.0
1.33.0
1
prom/snmp-exporter:v0.20.09d226d7de223
google.golang.org/protobuf@v1.23.0
1.33.0
1
prom/statsd-exporter:v0.24.061d866e93b56
google.golang.org/protobuf@v1.30.0
1.33.0
1
prom/statsd-exporter:v0.22.48be660470961
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
1
qoveryrd/digital-mobius:0.1.4b30a9398a83c
google.golang.org/protobuf@v1.25.0
1.33.0
1
qumine/ingress-controller:v0.8.5f2c8a2148381
google.golang.org/protobuf@v1.28.1
1.33.0
1
qumine/minecraft-server:v0.1.15c0b650d51132
google.golang.org/protobuf@v1.28.1
1.33.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.