StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,345
of 17,790 indexed, latest versions
Container images
1,665
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,345 of 17,790 indexed charts deploy, on 1,665 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,665
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,345 by stars
ChartLatestAffected imagesRadar Score
op-scim-bridgelifen1.0.31 of 2See more

op-scim-bridge lifen 1.0.3

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
1password/scim:v2.3.129d0c6cb67eb
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0

Open the chart page →

2,777
op-scim-bridgelifen-chartsVerified publisher1.0.31 of 2See more

op-scim-bridge lifen-charts 1.0.3

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
1password/scim:v2.3.129d0c6cb67eb
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0

Open the chart page →

2,777
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

10,780
livekit-recorderlivekit-server0.3.131 of 1See more

livekit-recorder livekit-server 0.3.13

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
livekit/livekit-recorder:v0.3.13ecf1409c75e0
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,135
patch-operatorloafoe0.11.31 of 2See more

patch-operator loafoe 0.11.3

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
google.golang.org/protobuf@v1.24.0
1.33.0

Open the chart page →

4,911
solgateloafoe0.0.121 of 1See more

solgate loafoe 0.0.12

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/loafoe/solgate:v0.0.12b3256cbc7b68
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,108
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-auth-go:latest6597b26959d2
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,905
devpod-proloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

devpod-pro loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,234
kioskloftVerified publisher0.2.111 of 1See more

kiosk loft 0.2.11

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kiosksh/kiosk:0.2.11501725ba2025
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,094
license-serverloftVerified publisher0.6.01 of 1See more

license-server loft 0.6.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/license-server:0.6.069ce001bb4b0
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

804
loft-agentloftVerified publisher3.2.41 of 1See more

loft-agent loft 3.2.4

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/agent:3.2.45c109914ff73
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,453
loft-direct-cluster-endpointloftVerified publisher1.14.01 of 1See more

loft-direct-cluster-endpoint loft 1.14.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
loftsh/directclusterendpoint:1.14.0310cc7d690f5
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

3,119
vcluster-control-planeloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

vcluster-control-plane loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,234
vcluster-proloftVerified publisher0.0.0-ci-run.102 of 2See more

vcluster-pro loft 0.0.0-ci-run.10

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
rancher/k3s:v1.26.0-k3s19380f5dbae9a
google.golang.org/protobuf@v1.28.1
1.33.0
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,101
vcluster-pro-eksloftVerified publisher0.0.0-ci-run.102 of 4See more

vcluster-pro-eks loft 0.0.0-ci-run.10

2 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
google.golang.org/protobuf@v1.30.0
1.33.0
public.ecr.aws/eks-distro/etcd-io/etcd:v3.5.6-eks-1-24-7efa6dee17ed2
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

5,951
vcluster-pro-k0sloftVerified publisher0.0.0-ci-run.102 of 2See more

vcluster-pro-k0s loft 0.0.0-ci-run.10

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
google.golang.org/protobuf@v1.28.1
1.33.0
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,786
vcluster-pro-k8sloftVerified publisher0.0.0-ci-run.104 of 4See more

vcluster-pro-k8s loft 0.0.0-ci-run.10

4 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/etcd:3.5.6-0dd75ec974b0a
google.golang.org/protobuf@v1.27.1
1.33.0
registry.k8s.io/kube-apiserver:v1.26.199e1ed9fbc8a
google.golang.org/protobuf@v1.28.1
1.33.0
registry.k8s.io/kube-controller-manager:v1.26.140adecbe3a40
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

8,235
virtualclusterloftVerified publisher0.0.281 of 2See more

virtualcluster loft 0.0.28

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
loftsh/virtual-cluster:0.0.28023b13bf5898
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

2,993
apica-ascentlogiqai2.0.45 of 19See more

apica-ascent logiqai 2.0.4

5 of the 19 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
logiqai/flash-discovery:v2.0.3f5b551bca98e
google.golang.org/protobuf@v1.25.0
1.33.0
logiqai/logiqctl:2.0.4798306811f2d
google.golang.org/protobuf@v1.25.0
1.33.0
logiqai/tracing:v1.35.2-lq1-c3e149f6781b8
google.golang.org/protobuf@v1.28.0
1.33.0
logiqai/tracing:v1.35.2-lq1-q4a746ff04d6a
google.golang.org/protobuf@v1.28.0
1.33.0
minio/minio:RELEASE.2020-09-17T04-49-20Ze2b7b633c250
google.golang.org/protobuf@v1.22.0
1.33.0

Open the chart page →

23,689
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-resizer:v1.9.0f1f352df9787
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,074
chronograflsst-sqre1.3.51 of 1See more

chronograf lsst-sqre 1.3.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/influxdb/chronograf:1.9.4bb0a980bc2bf
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,349
sasquatchlsst-sqre0.1.132 of 6See more

sasquatch lsst-sqre 0.1.13

2 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
library/kapacitor:1.6.37232f6388a4d
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/influxdb/chronograf:1.9.3c2ed16080689
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

9,347
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/cloudsql-docker/gce-proxy:1.17a85176b8e7cc
google.golang.org/protobuf@v1.21.0
1.33.0

Open the chart page →

6,642
telegraf-dslsst-sqre1.0.231 of 1See more

telegraf-ds lsst-sqre 1.0.23

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
library/telegraf:1.19-alpineaddb86c0c520
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

3,773
m9sweeperm9sweeperVerified publisher1.6.02 of 6See more

m9sweeper m9sweeper 1.6.0

2 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kubesec/kubesec:v2.13.0c0f3b0673578
google.golang.org/protobuf@v1.28.1
1.33.0
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

9,805
magistralamagistrala-devopsVerified publisher0.16.23 of 42See more

magistrala magistrala-devops 0.16.2

3 of the 42 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
google.golang.org/protobuf@v1.32.0
1.33.0
jaegertracing/jaeger-collector:1.53.07f1269222903
google.golang.org/protobuf@v1.32.0
1.33.0
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

24,537
matrix-sliding-syncmatrix-sliding-sync0.2.31 of 1See more

matrix-sliding-sync matrix-sliding-sync 0.2.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,599
focalboardmattermostVerified publisher0.5.01 of 1See more

focalboard mattermost 0.5.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
mattermost/focalboard:0.6.7f2f987dada52
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

4,014
mattermost-calls-offloadermattermostVerified publisher0.2.11 of 1See more

mattermost-calls-offloader mattermost 0.2.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
mattermost/calls-offloader:v0.9.0b440b282599e
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,422
mattermost-chaos-enginemattermostVerified publisher0.2.01 of 1See more

mattermost-chaos-engine mattermost 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
mattermost/mattermost-app-chaosengine:c153e436268954edd67
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

4,074
mayastormayastorVerified publisher2.12.11 of 31See more

mayastor mayastor 2.12.1

1 of the 31 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
natsio/prometheus-nats-exporter:0.11.031c02aac089a
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

21,269
sabnzbdmedia-servarrVerified publisher1.6.21 of 3See more

sabnzbd media-servarr 1.6.2

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/onedr0p/exportarr:v1.6.160cf3d44aa0b
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

700
cameramedia-streaming-meshVerified publisher0.2.51 of 3See more

camera media-streaming-mesh 0.2.5

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

18,730
crdsmedia-streaming-meshVerified publisher0.0.11 of 2See more

crds media-streaming-mesh 0.0.1

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ciscolabs/msm-nc:0710202336d02faad958
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

3,716
ingressmedia-streaming-meshVerified publisher0.1.82 of 2See more

ingress media-streaming-mesh 0.1.8

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.7.07612338342a1
google.golang.org/protobuf@v1.28.1
1.33.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230312-helm-chart-4.5.2-28-g66a76079401d181618f27
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

3,301
msmmedia-streaming-meshVerified publisher0.1.171 of 6See more

msm media-streaming-mesh 0.1.17

1 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

11,528
msm-rtspmedia-streaming-meshVerified publisher0.0.21 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

18,730
rtspmedia-streaming-meshVerified publisher0.0.141 of 2See more

rtsp media-streaming-mesh 0.0.14

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

18,730
mediawiki-backupmediawiki-backupVerified publisher0.2.11 of 1See more

mediawiki-backup mediawiki-backup 0.2.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/fernferret/mediawiki-backup:v0.2.2bbef381294ed
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

1,919
gatekeepermesosphere0.6.111 of 2See more

gatekeeper mesosphere 0.6.11

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openpolicyagent/gatekeeper:v3.4.0-rc.1825370bdb3c3
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,041
istiomesosphere1.25.11 of 2See more

istio mesosphere 1.25.1

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

5,455
kafka-operatormesosphere0.20.21 of 2See more

kafka-operator mesosphere 0.20.2

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/kafka-operator:v0.20.2e341aefa9a90
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,884
kubeaddons-catalogmesosphere0.1.161 of 2See more

kubeaddons-catalog mesosphere 0.1.16

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
google.golang.org/protobuf@v1.24.0
1.33.0

Open the chart page →

12,052
kubefedmesosphere0.5.21 of 1See more

kubefed mesosphere 0.5.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
mesosphere/kubefed:proxyurl4fd8889195fe
google.golang.org/protobuf@v1.24.0
1.33.0

Open the chart page →

3,151
kube-prometheus-stackmesosphere87.16.01 of 7See more

kube-prometheus-stack mesosphere 87.16.0

1 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

7,452
nvidiamesosphere0.4.41 of 2See more

nvidia mesosphere 0.4.4

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nvidia/dcgm-exporter:2.2.9-2.4.1-ubuntu20.0491b20b66d1cd
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

10,490
prometheus-operatormesosphere12.11.133 of 8See more

prometheus-operator mesosphere 12.11.13

3 of the 8 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
jettech/kube-webhook-certgen:v1.5.0fb7c2cd46ccf
google.golang.org/protobuf@v1.24.0
1.33.0
quay.io/prometheus-operator/prometheus-operator:v0.44.0983627001c89
google.golang.org/protobuf@v1.25.0
1.33.0
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
google.golang.org/protobuf@v1.22.0
1.33.0

Open the chart page →

11,704
traefik2mesosphere9.18.01 of 1See more

traefik2 mesosphere 9.18.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
library/traefik:2.4.8eda951fd29a8
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,349
azuredisk-csi-drivermesosphere-stable0.8.14 of 6See more

azuredisk-csi-driver mesosphere-stable 0.8.1

4 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
mcr.microsoft.com/k8s/csi/azuredisk-csi:v1.1.1ec1803037ed9
google.golang.org/protobuf@v1.25.0
1.33.0
mcr.microsoft.com/oss/kubernetes-csi/csi-node-driver-registrar:v2.0.1fc5d14e9f26f
google.golang.org/protobuf@v1.24.0
1.33.0
mcr.microsoft.com/oss/kubernetes-csi/csi-resizer:v1.1.07997e0f236bc
google.golang.org/protobuf@v1.25.0
1.33.0
mcr.microsoft.com/oss/kubernetes-csi/livenessprobe:v2.2.0b7d82802cca8
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

14,107
cert-manager-setupmesosphere-stable0.2.104 of 5See more

cert-manager-setup mesosphere-stable 0.2.10

4 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.11.05c3eb25b0854
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/jetstack/cert-manager-controller:v1.11.0d429b6d696e0
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/jetstack/cert-manager-ctl:v1.11.074611761f052
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/jetstack/cert-manager-webhook:v1.11.06730d96fc382
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,201

Container images carrying it

1,665 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/cmacrae/kove:v0.2.0185bfaae750c
google.golang.org/protobuf@v1.25.0
1.33.0
1
ghcr.io/cmacrae/kove:v0.1.0db1244edefc8
google.golang.org/protobuf@v1.25.0
1.33.0
1
ghcr.io/cosmo-workspace/cosmo-controller-manager:v0.9.08c7fa5552028
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/cosmo-workspace/cosmo-dashboard:v0.9.16a1c4a81a924
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/ctron/kubectl:1.25e37d61b5277c
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/cubefs/cfs-csi-driver:3.2.0.150.08723616a976a
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/daocloud/crproxy/crproxy:v0.8.0ee1eb3c9c9a1
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/decayofmind/kube-better-node:masterccd2ce03b682
google.golang.org/protobuf@v1.25.0
1.33.0
1
ghcr.io/deepch/rtsptoweb:v2.2.0f9de3a1a5deb
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/dexidp/dex:v2.35.313964b29d63e
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/dexidp/dex:v2.37.0f579d00721b0
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/djcass44/gitlab-goproxy:v0.1.8a43323732181
google.golang.org/protobuf@v1.29.1
1.33.0
1
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/doodlescheduling/k8s-pause:v0.1.16b3215e37738
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/doodlescheduling/k8svault-controller:v0.2.0627e5e211766
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/douban/aliyun-exporter:mainb7c694331362
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/douban/qiniu-exporter:maind1da3bcfad7d
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/douban/ucloud-exporter:mainb4bb8a9021a2
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/einstack/glide:0.0.1-alpineab3f7d0a1d50
google.golang.org/protobuf@v1.32.0
1.33.0
1
ghcr.io/estahn/k8s-image-swapper:1.5.102f5be9cde5f9
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/external-secrets/external-secrets:v0.3.1156a1ea4490ba
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/extrality/cert-manager-webhook-namecheap:lateste3552fa0c68a
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/fernferret/mediawiki-backup:v0.2.2bbef381294ed
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/fikaworks/grgate:v0.6.37104f60d8972
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/flatcar/flatcar-linux-update-operator:v0.10.0-rc1f9063e20b1f6
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/geek-cookbook/webhook-receiver:2.8.172e7e77f8091
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/glauth/glauth:v2.5.209c782ca5984
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/gotway/gotway:v0.0.137ed73c1979ee
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
1
ghcr.io/grafana/tempo-operator/tempo-operator:v0.4.02627be646391
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/heimops/mimir-operator:latest4e1a3ef1fe82
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/helm/chartmuseum:v0.16.071d1f1c0179e
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/helm/chartmuseum:v0.14.0878ef6a31fa0
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/honeycombio/kspan/kspan:0.2c966a4f8a4b7
google.golang.org/protobuf@v1.25.0
1.33.0
1
ghcr.io/itakurah/kubernetes-event-exporter:v1.78abb52b66557
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/jaconi-io/koptimize:1.2.5aca1bbd609b6
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/jlclx/runtimeclass-controller:latestb3a87f92a963
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/jmcgrath207/par:v0.1.09977511cb142
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/k10app/businit:latest94c9a3e799c2
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/k8up-io/k8up:v2.3.257419b6d3830
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/kalgurn/grl-exporter:v3.2.0bd109b2bda38
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/keptn/certificate-operator:v1.1.08fdd311a6d33
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/keptn/lifecycle-operator:v0.8.2487bfc37c4b4
google.golang.org/protobuf@v1.31.0
1.33.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.