StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,344
of 17,787 indexed, latest versions
Container images
1,663
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,344 of 17,787 indexed charts deploy, on 1,663 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,663
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,344 by stars
ChartLatestAffected imagesRadar Score
backup-repository-serverriotkit-org4.0.01 of 1See more

backup-repository-server riotkit-org 4.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/riotkit-org/backup-repository:v4.0.0ab41ffa78f69
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

2,049
cloudflare-tunnelrlex0.8.01 of 1See more

cloudflare-tunnel rlex 0.8.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2023.10.0c18744ae1767
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,684
grafanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

grafana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:8.3.4cf81d2c753c8
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,835
jaeger-collectorromanow-helm-chartsVerified publisher1.5.01 of 1See more

jaeger-collector romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
jaegertracing/jaeger-collector:1.41.0ff81f0a9f63c
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,854
jaeger-queryromanow-helm-chartsVerified publisher1.5.01 of 1See more

jaeger-query romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
jaegertracing/jaeger-query:1.41.0b636f0f464bc
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,797
rabbitmq-operatorsagikazarmarkVerified publisher0.0.31 of 1See more

rabbitmq-operator sagikazarmark 0.0.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
rabbitmqoperator/cluster-operator:1.8.3231e7ce0e905
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,001
ntfysarab97Verified publisher0.1.71 of 1See more

ntfy sarab97 0.1.7

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
binwiederhier/ntfy:v2.6.283e2e43d9956
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,766
scienceboxsciencebox0.0.71 of 17See more

sciencebox sciencebox 0.0.7

1 of the 17 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
cs3org/revad:v1.19.03b57a34a7dfd
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

6,587
iopsciencemeshVerified publisher0.4.01 of 2See more

iop sciencemesh 0.4.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
cs3org/revad:v1.24.0e80a4d67b352
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,052
k8s-appliershlomibendavidOfficialVerified publisher1.0.11 of 1See more

k8s-applier shlomibendavid 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
shlomibendavid/k8s-applier:0311240529a22ffbe0f04e
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,206
clickhousesignoz24.1.182 of 3See more

clickhouse signoz 24.1.18

2 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.21.2cd9252644ce0
google.golang.org/protobuf@v1.26.0
1.33.0
altinity/metrics-exporter:0.21.2df3d57215356
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

4,697
cosignedsigstoreVerified publisher0.1.232 of 2See more

cosigned sigstore 0.1.23

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/projectsigstore/cosigneddigest-pinned784518ff3ee7
google.golang.org/protobuf@v1.28.0
1.33.0
gcr.io/projectsigstore/policy-webhookdigest-pinned82940e8c3e0d
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

5,118
altinity-clickhouse-operatorslamdev0.1.22 of 2See more

altinity-clickhouse-operator slamdev 0.1.2

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.20.08f0f582d41f0
google.golang.org/protobuf@v1.26.0
1.33.0
altinity/metrics-exporter:0.20.01a46d104406d
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

6,420
smallest-self-hostsmallest-self-hostVerified publisher0.2.21 of 12See more

smallest-self-host smallest-self-host 0.2.2

1 of the 12 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

7,684
smarter-edgesmarterOfficialVerified publisher0.0.151 of 1See more

smarter-edge smarter 0.0.15

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/smarter-device-manager:v1.20.12228f7f44594a
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

1,144
yopasssoftizyVerified publisher1.0.11 of 2See more

yopass softizy 1.0.1

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
jhaals/yopass:11.4.69516e3b3e88c
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,461
artifact-hubsoftonic1.19.01 of 8See more

artifact-hub softonic 1.19.0

1 of the 8 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
aquasec/trivy:0.43.1944a04445179
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

14,504
go-ratelimitsoftonic1.0.71 of 3See more

go-ratelimit softonic 1.0.7

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.9.04af75e9f16f6
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

5,098
redis-shardedsoftonic0.5.01 of 2See more

redis-sharded softonic 0.5.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.9.04af75e9f16f6
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

2,320
gloosolo-gloo-edge0.0.0-fork4 of 5See more

gloo solo-gloo-edge 0.0.0-fork

4 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/solo-io/certgen:0.0.0-forkb17a8c7d1f32
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/solo-io/discovery:0.0.0-fork5b62aaade3c9
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/solo-io/gloo:0.0.0-fork9a6c84560d44
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/solo-io/gloo-envoy-wrapper:0.0.0-fork26ae185e835a
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

9,224
sp-otel-collectorsp-otel-collectorVerified publisher1.1.61 of 1See more

sp-otel-collector sp-otel-collector 1.1.6

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/geored/spmm-collector-contrib:1.0.063baf86a49ac
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,022
sql-operatorsql-operatorOfficialVerified publisher0.11.21 of 1See more

sql-operator sql-operator 0.11.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/stenic/sql-operator:1.13.2f4324baa2aad
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,594
splunk-operatorstakaterVerified publisher0.0.61 of 2See more

splunk-operator stakater 0.0.6

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
splunk/splunk-operator:2.0.0c4e0d3146226
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

11,459
graph-nodestakewise3.1.01 of 3See more

graph-node stakewise 3.1.0

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ipfs/kubo:v0.24.0e3de33bd746b
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,673
mayastorstartechnicaVerified publisher0.2.03 of 13See more

mayastor startechnica 0.2.0

3 of the 13 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.0.09a685020911e
google.golang.org/protobuf@v1.28.0
1.33.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.6.0f1c25991bac2
google.golang.org/protobuf@v1.28.0
1.33.0
registry.k8s.io/sig-storage/livenessprobe:v2.8.0cacee2b5c36d
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,348
statpingstatping0.1.141 of 1See more

statping statping 0.1.14

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,371
hlf-k8ssubstraVerified publisher10.2.42 of 7See more

hlf-k8s substra 10.2.4

2 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:1.5.0f270dfeee91d
google.golang.org/protobuf@v1.23.0
1.33.0
ghcr.io/substra/fabric-tools:0.2.43491a0f31c4a
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

12,006
hello-appsysintelligentVerified publisher2.0.11 of 1See more

hello-app sysintelligent 2.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
sysintelligent/hello-app:2.0.177fb30df847d
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,880
terraform-controllerterraform-controller0.0.201 of 1See more

terraform-controller terraform-controller 0.0.20

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
absaoss/terraform-controller:v0.0.20ad538a1285a0
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,538
goalerttokens-studioVerified publisher0.0.51 of 2See more

goalert tokens-studio 0.0.5

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
goalert/goalert:v0.32.008d57388b0cb
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

1,469
spa-reloadertoucanVerified publisher0.1.01 of 1See more

spa-reloader toucan 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
toucansoftware/spa-reloader:latestc187b1fba501
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

2,245
traefik-hubtraefikOfficialVerified publisher4.2.01 of 1See more

traefik-hub traefik 4.2.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/traefik/traefik-hub:v2.11.0322f5f8cc105
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

3,165
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

5,280
boundaryundergridVerified publisher0.1.01 of 3See more

boundary undergrid 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/boundary:0.8.1fb70bd9210ff
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

4,957
upbot-operatorupbot-operator0.0.201 of 2See more

upbot-operator upbot-operator 0.0.20

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.28.13e5c0b053fed7
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,461
v2ray-proxyv2ray-proxy0.2.41 of 1See more

v2ray-proxy v2ray-proxy 0.2.4

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
pinclr/v2ray-proxy:latestf37f250b7091
google.golang.org/protobuf@v1.28.2-0.20220831092852-f930b1dc76e8
1.33.0

Open the chart page →

1,954
vearchvearch3.3.41 of 4See more

vearch vearch 3.3.4

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
vearch/vearch:3.3.40768af33f9d9
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,008
vultr-ccmvultrVerified publisher1.3.01 of 1See more

vultr-ccm vultr 1.3.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,034
frpswenerme1.0.11 of 1See more

frps wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
wener/frps:v0.37.05c92cc9e8597
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

3,359
wharf-ainowharf-helmVerified publisher0.1.55 of 7See more

wharf-aino wharf-helm 0.1.5

5 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
google.golang.org/protobuf@v1.28.0
1.33.0
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
google.golang.org/protobuf@v1.28.0
1.33.0
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
google.golang.org/protobuf@v1.28.0
1.33.0
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

13,461
wharf-cmdwharf-helmVerified publisher0.3.31 of 1See more

wharf-cmd wharf-helm 0.3.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

3,428
external-monitoringwiremindVerified publisher0.3.01 of 1See more

external-monitoring wiremind 0.3.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.24.03af31f8bd1ad
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

1,293
kubemodwiremindVerified publisher0.1.51 of 2See more

kubemod wiremind 0.1.5

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.13.0cadca39288ad
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

3,030
workflows-informerworkflows-informerVerified publisher0.4.41 of 1See more

workflows-informer workflows-informer 0.4.4

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

1,154
wraftwraft0.1.121 of 9See more

wraft wraft 0.1.12

1 of the 9 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

10,131
redis-db-assignment-operatorwyrihaximusnetVerified publisher1.0.61 of 1See more

redis-db-assignment-operator wyrihaximusnet 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/kubernetes-redis-db-assignment-operator:v1.0.831060be60bec
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,235
gobackupadnoctemVerified publisher0.4.01 of 1See more

gobackup adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
huacnlee/gobackup:v3.1.1560be93229a5
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,829
bootaerokube1.0.11 of 4See more

boot aerokube 1.0.1

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/aerokube/keygen:1.0.1578934444f04
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,915
msockperfaetrius2.0.81 of 2See more

msockperf aetrius 2.0.8

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

4,237
agentkube-operatoragentkube-operator0.3.01 of 1See more

agentkube-operator agentkube-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
google.golang.org/protobuf@v1.29.0
1.33.0

Open the chart page →

1,716

Container images carrying it

1,663 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/k8s-staging-multitenancy/hnc-manager:v1.1.08ab8229f6a89
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/k8s-staging-sig-storage/objectstorage-controller:v20221027-v0.1.1-8-g300019fa84b574e8027
google.golang.org/protobuf@v1.28.0
1.33.0
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.2.0f253b82941c2
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.2.0a705c1ea8e9e
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourier197fbb71d1f1
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/operator/cmd/webhook6c5c90cdf707
google.golang.org/protobuf@v1.28.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator08315309da4b
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator1e3db4f2eeed
google.golang.org/protobuf@v1.25.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.13.121f8e11a44bf
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.2.593ff6e693577
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.10.2c2994c2b6c2c
google.golang.org/protobuf@v1.28.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.2.5007820fdb75b
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler105bdd14ecaa
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.13.134796e9f760b
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.10.28319aa662b49
google.golang.org/protobuf@v1.28.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdb6ceff2aab4
google.golang.org/protobuf@v1.25.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler-hpa:v1.10.2eb612b929eaa
google.golang.org/protobuf@v1.28.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.13.153d9aa4d2c7a
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.2.575cfdcfa050a
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.10.298a2cc7fd62e
google.golang.org/protobuf@v1.28.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controllerb2cd45b8a8a4
google.golang.org/protobuf@v1.25.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controllerbac158dfb0c7
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/default-domain5e0429b70299
google.golang.org/protobuf@v1.28.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping:v1.2.523baa1932232
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mappinge384a295069b
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping:v1.10.2f66c41ad7a73
google.golang.org/protobuf@v1.28.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook15f1ce7f35b4
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook:v1.10.27368aaddf2be
google.golang.org/protobuf@v1.28.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook:v1.2.5847bb97e3844
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook1282a399cbb9
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.10.24305209ce498
google.golang.org/protobuf@v1.28.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.13.1700c69915dc7
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.2.59084ea8498ea
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookd27b4495ccc3
google.golang.org/protobuf@v1.25.0
1.33.0
1
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
google.golang.org/protobuf@v1.25.0
1.33.0
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
google.golang.org/protobuf@v1.31.0
1.33.0
1
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
google.golang.org/protobuf@v1.25.0
1.33.0
1
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/ml-pipeline/cache-server:2.3.0293941ee4f65
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/ml-pipeline/cache-server:2.0.0-alpha.583e79c709df3
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/ml-pipeline/persistenceagent:2.0.0-alpha.500db9796a37b
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/ml-pipeline/persistenceagent:2.3.0109ac1b38c41
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/ml-pipeline/scheduledworkflow:2.0.0-alpha.5795a0c8a0e13
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/ml-pipeline/scheduledworkflow:2.3.0f7e67e0bc071
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/ml-pipeline/viewer-crd-controller:2.0.0-alpha.534403f9f94be
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/ml-pipeline/viewer-crd-controller:2.3.08cf8213d69e4
google.golang.org/protobuf@v1.32.0
1.33.0
1
gcr.io/ml-pipeline/workflow-controller:v3.3.8-license-compliance6c8e4e2a6443
google.golang.org/protobuf@v1.27.1
1.33.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.