StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,345
of 17,790 indexed, latest versions
Container images
1,665
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,345 of 17,790 indexed charts deploy, on 1,665 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,665
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,345 by stars
ChartLatestAffected imagesRadar Score
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

6,989
webspacednetsocVerified publisher0.2.82 of 2See more

webspaced netsoc 0.2.8

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
google.golang.org/protobuf@v1.26.0
1.33.0
ghcr.io/netsoc/webspaced:0.5.1edc238a538a0
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

5,193
node-upgrade-channelnimbolus0.1.11 of 1See more

node-upgrade-channel nimbolus 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/nimbolus/k8s-openstack-node-upgrade-agent:0.1.0e0c7cf2415f0
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,062
airflownineinfra-charts1.12.11 of 4See more

airflow nineinfra-charts 1.12.1

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus/statsd-exporter:v0.22.8f53cca722a03
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,258
cloudnative-pgnineinfra-charts0.19.11 of 1See more

cloudnative-pg nineinfra-charts 0.19.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.21.19f707d91de1c
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,187
doris-operatornineinfra-charts1.3.11 of 1See more

doris-operator nineinfra-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
selectdb/doris.k8s-operator:1.3.1919210765cb8
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

869
hdfs-operatornineinfra-charts0.7.01 of 1See more

hdfs-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/hdfs-operator:v0.7.0debb1e3410e2
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

723
kyuubi-operatornineinfra-charts0.7.01 of 1See more

kyuubi-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/kyuubi-operator:v0.7.08d8ed87ef77c
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
metastore-operatornineinfra-charts0.7.01 of 1See more

metastore-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/metastore-operator:v0.7.011259032fb04
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
minio-directpvnineinfra-charts4.0.85 of 5See more

minio-directpv nineinfra-charts 4.0.8

5 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/csi-node-driver-registrardigest-pinnedc805fdc16676
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/csi-provisionerdigest-pinned7b5c070ec70d
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/minio/csi-resizerdigest-pinned819f68a4daf7
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/directpv:v4.0.84560083eb77d
google.golang.org/protobuf@v1.29.1
1.33.0
quay.io/minio/livenessprobedigest-pinnedf3bc9a84f149
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,067
minio-operatornineinfra-charts5.0.91 of 1See more

minio-operator nineinfra-charts 5.0.9

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/operator:v5.0.9170b154d2c61
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,425
nineinfranineinfra-charts0.7.01 of 1See more

nineinfra nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/nineinfra:v0.7.0d4aad414eccd
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,120
zookeeper-operatornineinfra-charts0.7.01 of 1See more

zookeeper-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/zookeeper-operator:v0.7.0af6eb2f37bfc
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

723
firehose-corenodeifyVerified publisher1.2.61 of 2See more

firehose-core nodeify 1.2.6

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

6,558
substreams-tier-2nodeifyVerified publisher1.1.31 of 1See more

substreams-tier-2 nodeify 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,735
grafananodepulse7.1.01 of 1See more

grafana nodepulse 7.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:10.2.36b5b37eb35bb
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,973
prometheusnodepulse25.0.06 of 6See more

prometheus nodepulse 25.0.0

6 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/prometheus/alertmanager:v0.26.0361db356b330
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/prometheus/pushgateway:v1.6.05111de00e969
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

7,746
ingress-helm-chartnotesprojectchart0.1.02 of 2See more

ingress-helm-chart notesprojectchart 0.1.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,956
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

4,558
vault-helm-chartnotesprojectchart0.1.01 of 1See more

vault-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
library/vault:1.13.3f98ac9dd97b0
google.golang.org/protobuf@v1.29.1
1.33.0

Open the chart page →

2,254
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

4,861
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

27,493
cnaos-pvc-populatornutanix-helm-releasesVerified publisher1.1.0-174-prod1 of 2See more

cnaos-pvc-populator nutanix-helm-releases 1.1.0-174-prod

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,838
nai-knative-istio-controllernutanix-helm-releasesVerified publisher1.13.12 of 2See more

nai-knative-istio-controller nutanix-helm-releases 1.13.1

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

1,566
nai-knative-servingnutanix-helm-releasesVerified publisher1.13.14 of 4See more

nai-knative-serving nutanix-helm-releases 1.13.1

4 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.13.121f8e11a44bf
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.13.134796e9f760b
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.13.153d9aa4d2c7a
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.13.1700c69915dc7
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

3,762
nutanix-flow-cninutanix-helm-releasesVerified publisher1.1.01 of 7See more

nutanix-flow-cni nutanix-helm-releases 1.1.0

1 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,996
lensoci-ai-incubations0.1.144 of 16See more

lens oci-ai-incubations 0.1.14

4 of the 16 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/jetstack/cert-manager-cainjector:v1.13.2858fee0c4af0
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/jetstack/cert-manager-controller:v1.13.29c67cf8c92d8
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/jetstack/cert-manager-webhook:v1.13.20a9470447ebf
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

17,134
cluster-gateway-addon-managerocm-helm-chartsVerified publisher1.4.01 of 1See more

cluster-gateway-addon-manager ocm-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
oamdev/cluster-gateway-addon-manager:v1.4.01bcae00bd7b0
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,607
multicluster-meshocm-helm-chartsVerified publisher0.0.21 of 1See more

multicluster-mesh ocm-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,131
nocodbone-acre-fundVerified publisher0.4.61 of 3See more

nocodb one-acre-fund 0.4.6

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nocodb/nocodb:0.258.06779a4ddedf2
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,226
one-green-coreone-green-coreVerified publisher0.0.72 of 8See more

one-green-core one-green-core 0.0.7

2 of the 8 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:8.5.3ecc1b80b8ca2
google.golang.org/protobuf@v1.27.1
1.33.0
library/telegraf:1.20.428e98eece020
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

9,581
opa-nginxopa-nginx0.0.31 of 2See more

opa-nginx opa-nginx 0.0.3

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openpolicyagent/opa:0.53.16a58dea59933
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

2,175
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
google.golang.org/protobuf@v1.24.0
1.33.0

Open the chart page →

18,032
bbsimopencord4.8.111 of 1See more

bbsim opencord 4.8.11

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/bbsim:1.16.7d90403d58016
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,908
bbsim-sadis-serveropencord0.3.51 of 1See more

bbsim-sadis-server opencord 0.3.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/bbsim-sadis-server:0.4.0762b272d439e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,722
volthaopencord2.14.02 of 2See more

voltha opencord 2.14.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-ofagent-go:2.1.68feb9ef89e97
google.golang.org/protobuf@v1.27.1
1.33.0
voltha/voltha-rw-core:3.4.87a325316fe59
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,824
voltha-adapter-openoltopencord2.14.01 of 1See more

voltha-adapter-openolt opencord 2.14.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-openolt-adapter:4.5.16d6d79c08350a
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

898
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
opencord/onos-classic-helm-utils:0.1.00d693ba85fd6
google.golang.org/protobuf@v1.25.0
1.33.0
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

41,101
voltha-stackopencord2.14.03 of 4See more

voltha-stack opencord 2.14.0

3 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-ofagent-go:2.1.68feb9ef89e97
google.golang.org/protobuf@v1.27.1
1.33.0
voltha/voltha-openolt-adapter:4.5.16d6d79c08350a
google.golang.org/protobuf@v1.31.0
1.33.0
voltha/voltha-rw-core:3.4.87a325316fe59
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

5,566
probuilderopenfaas0.2.01 of 2See more

probuilder openfaas 0.2.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
moby/buildkit:v0.10.0c2aeafaed434
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

4,760
kruise-rolloutopenkruise0.6.21 of 1See more

kruise-rollout openkruise 0.6.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openkruise/kruise-rollout:v0.6.2a75e6739ea7d
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,034
kruise-state-metricsopenkruise0.2.01 of 1See more

kruise-state-metrics openkruise 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openkruise/kruise-state-metrics:v0.2.0a8108f771287
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,929
minioopenobserve5.0.72 of 2See more

minio openobserve 5.0.7

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,471
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

12,185
exporteropenshift1.0.471 of 3See more

exporter openshift 1.0.47

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

13,041
fsmopenshift0.1.8-ubi.63 of 6See more

fsm openshift 0.1.8-ubi.6

3 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

16,563
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,170
opscruiseopenshift0.35.1003 of 11See more

opscruise openshift 0.35.100

3 of the 11 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/loki:2.0.077e138f81a8e
google.golang.org/protobuf@v1.25.0
1.33.0
grafana/promtail:2.0.05fd12edcc694
google.golang.org/protobuf@v1.25.0
1.33.0
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

8,224
osm-edgeopenshift1.2.1-ubi84 of 7See more

osm-edge openshift 1.2.1-ubi8

4 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

19,471
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

8,643

Container images carrying it

1,665 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/ml-pipeline/workflow-controller:v3.3.8-license-compliance6c8e4e2a6443
google.golang.org/protobuf@v1.27.1
1.33.0
1
gcr.io/pingcap-public/deadmansswitch:1.04861d81aa528
google.golang.org/protobuf@v1.23.0
1.33.0
1
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
google.golang.org/protobuf@v1.30.0
1.33.0
1
gcr.io/projectsigstore/cosigned784518ff3ee7
google.golang.org/protobuf@v1.28.0
1.33.0
1
gcr.io/projectsigstore/policy-webhook82940e8c3e0d
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
google.golang.org/protobuf@v1.32.0
1.33.0
1
ghcr.io/alekc/kpubber:v0.0.2a462d5797e14
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/alex123012/annotations-exporter:v0.5.04c2b8dbc798e
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/alexellis/registry-creds:0.3.2-rc1f5c72501e559
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/aplulu/hakoniwa:0.1.0accf0b921388
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/appscode/auditor:v0.0.1c62c89ee706d
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/appscode/capa-vpc-peering-operator:v0.0.4b1557553a2b3
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/appscode/docker-machine-operator:v0.0.481f6007abb4e
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/appscode/grafana:v2025.2.367d18880448c
google.golang.org/protobuf@v1.25.0
1.33.0
1
ghcr.io/appscode/kube-rbac-proxy:v0.15.0d8cc6ffb9819
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/banzaicloud/kafka-operator:v0.25.113dcbc7ebfc6
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/banzaicloud/kafka-operator:v0.20.2e341aefa9a90
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/banzaicloud/logging-operator:3.17.101b530cf7c07f
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/banzaicloud/logging-operator:3.17.623c2d4d54a64
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/banzaicloud/log-socket:latesta514736d2d4d
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/beezlabs-org/cloudflare-tunnel-operator:v0.1.09afcd070940f
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/behappy-project/behappy-tencentcloud-exporter:0.1.3a0ba56e1501b
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/beluga-cloud/helm-dashboard/dashboard:1.3.39ab9a675c405
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/benc-uk/kubeview:0.1.31f8e7cd7325a3
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
google.golang.org/protobuf@v1.32.0
1.33.0
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/caarlos0/domain_exporter:v1.18.0-arm64c852606428cf
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/camptocamp/terraboard:v2.3.0df53e2c8998c
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.5.1448cb346b12c
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/chaos-mesh/chaos-mesh:v2.5.1700bb42ac21d
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/chaos-mesh/chaos-mesh:v2.7.28bc853c7414c
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/chronicleprotocol/oracles-updates-exporter:0.0.4992d0e793af6
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/cisco-open/cluster-registry-controller:v0.2.12937eff91df1e
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/ckotzbauer/chekrf299baf467b5
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/cloudflare/ebpf_exporter:v2.3.075370b2ec2bb
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
google.golang.org/protobuf@v1.23.0
1.33.0
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
google.golang.org/protobuf@v1.23.0
1.33.0
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
google.golang.org/protobuf@v1.23.0
1.33.0
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
google.golang.org/protobuf@v1.23.0
1.33.0
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
google.golang.org/protobuf@v1.23.0
1.33.0
1
ghcr.io/cloudnative-pg/cloudnative-pg:1.17.14dd365800b62
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/cloudnative-pg/cloudnative-pg:1.21.19f707d91de1c
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/cloudtty/cloudshell-operator:v0.8.9e43ad91f0684
google.golang.org/protobuf@v1.31.0
1.33.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.