StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,345
of 17,790 indexed, latest versions
Container images
1,665
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,345 of 17,790 indexed charts deploy, on 1,665 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,665
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,345 by stars
ChartLatestAffected imagesRadar Score
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

6,989
webspacednetsocVerified publisher0.2.82 of 2See more

webspaced netsoc 0.2.8

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
google.golang.org/protobuf@v1.26.0
1.33.0
ghcr.io/netsoc/webspaced:0.5.1edc238a538a0
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

5,193
node-upgrade-channelnimbolus0.1.11 of 1See more

node-upgrade-channel nimbolus 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/nimbolus/k8s-openstack-node-upgrade-agent:0.1.0e0c7cf2415f0
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,062
airflownineinfra-charts1.12.11 of 4See more

airflow nineinfra-charts 1.12.1

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus/statsd-exporter:v0.22.8f53cca722a03
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,258
cloudnative-pgnineinfra-charts0.19.11 of 1See more

cloudnative-pg nineinfra-charts 0.19.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.21.19f707d91de1c
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,187
doris-operatornineinfra-charts1.3.11 of 1See more

doris-operator nineinfra-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
selectdb/doris.k8s-operator:1.3.1919210765cb8
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

869
hdfs-operatornineinfra-charts0.7.01 of 1See more

hdfs-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/hdfs-operator:v0.7.0debb1e3410e2
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

723
kyuubi-operatornineinfra-charts0.7.01 of 1See more

kyuubi-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/kyuubi-operator:v0.7.08d8ed87ef77c
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
metastore-operatornineinfra-charts0.7.01 of 1See more

metastore-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/metastore-operator:v0.7.011259032fb04
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
minio-directpvnineinfra-charts4.0.85 of 5See more

minio-directpv nineinfra-charts 4.0.8

5 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/csi-node-driver-registrardigest-pinnedc805fdc16676
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/csi-provisionerdigest-pinned7b5c070ec70d
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/minio/csi-resizerdigest-pinned819f68a4daf7
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/directpv:v4.0.84560083eb77d
google.golang.org/protobuf@v1.29.1
1.33.0
quay.io/minio/livenessprobedigest-pinnedf3bc9a84f149
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,067
minio-operatornineinfra-charts5.0.91 of 1See more

minio-operator nineinfra-charts 5.0.9

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/operator:v5.0.9170b154d2c61
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,425
nineinfranineinfra-charts0.7.01 of 1See more

nineinfra nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/nineinfra:v0.7.0d4aad414eccd
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,120
zookeeper-operatornineinfra-charts0.7.01 of 1See more

zookeeper-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nineinfra/zookeeper-operator:v0.7.0af6eb2f37bfc
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

723
firehose-corenodeifyVerified publisher1.2.61 of 2See more

firehose-core nodeify 1.2.6

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

6,558
substreams-tier-2nodeifyVerified publisher1.1.31 of 1See more

substreams-tier-2 nodeify 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,735
grafananodepulse7.1.01 of 1See more

grafana nodepulse 7.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:10.2.36b5b37eb35bb
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,973
prometheusnodepulse25.0.06 of 6See more

prometheus nodepulse 25.0.0

6 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/prometheus/alertmanager:v0.26.0361db356b330
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
google.golang.org/protobuf@v1.30.0
1.33.0
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/prometheus/pushgateway:v1.6.05111de00e969
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

7,746
ingress-helm-chartnotesprojectchart0.1.02 of 2See more

ingress-helm-chart notesprojectchart 0.1.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
google.golang.org/protobuf@v1.30.0
1.33.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,956
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

4,558
vault-helm-chartnotesprojectchart0.1.01 of 1See more

vault-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
library/vault:1.13.3f98ac9dd97b0
google.golang.org/protobuf@v1.29.1
1.33.0

Open the chart page →

2,254
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

4,861
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

27,493
cnaos-pvc-populatornutanix-helm-releasesVerified publisher1.1.0-174-prod1 of 2See more

cnaos-pvc-populator nutanix-helm-releases 1.1.0-174-prod

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,838
nai-knative-istio-controllernutanix-helm-releasesVerified publisher1.13.12 of 2See more

nai-knative-istio-controller nutanix-helm-releases 1.13.1

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

1,566
nai-knative-servingnutanix-helm-releasesVerified publisher1.13.14 of 4See more

nai-knative-serving nutanix-helm-releases 1.13.1

4 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.13.121f8e11a44bf
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.13.134796e9f760b
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.13.153d9aa4d2c7a
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.13.1700c69915dc7
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

3,762
nutanix-flow-cninutanix-helm-releasesVerified publisher1.1.01 of 7See more

nutanix-flow-cni nutanix-helm-releases 1.1.0

1 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,996
lensoci-ai-incubations0.1.144 of 16See more

lens oci-ai-incubations 0.1.14

4 of the 16 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/jetstack/cert-manager-cainjector:v1.13.2858fee0c4af0
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/jetstack/cert-manager-controller:v1.13.29c67cf8c92d8
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/jetstack/cert-manager-webhook:v1.13.20a9470447ebf
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

17,134
cluster-gateway-addon-managerocm-helm-chartsVerified publisher1.4.01 of 1See more

cluster-gateway-addon-manager ocm-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
oamdev/cluster-gateway-addon-manager:v1.4.01bcae00bd7b0
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,607
multicluster-meshocm-helm-chartsVerified publisher0.0.21 of 1See more

multicluster-mesh ocm-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,131
nocodbone-acre-fundVerified publisher0.4.61 of 3See more

nocodb one-acre-fund 0.4.6

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nocodb/nocodb:0.258.06779a4ddedf2
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,226
one-green-coreone-green-coreVerified publisher0.0.72 of 8See more

one-green-core one-green-core 0.0.7

2 of the 8 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:8.5.3ecc1b80b8ca2
google.golang.org/protobuf@v1.27.1
1.33.0
library/telegraf:1.20.428e98eece020
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

9,581
opa-nginxopa-nginx0.0.31 of 2See more

opa-nginx opa-nginx 0.0.3

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openpolicyagent/opa:0.53.16a58dea59933
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

2,175
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
google.golang.org/protobuf@v1.24.0
1.33.0

Open the chart page →

18,032
bbsimopencord4.8.111 of 1See more

bbsim opencord 4.8.11

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/bbsim:1.16.7d90403d58016
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,908
bbsim-sadis-serveropencord0.3.51 of 1See more

bbsim-sadis-server opencord 0.3.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/bbsim-sadis-server:0.4.0762b272d439e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,722
volthaopencord2.14.02 of 2See more

voltha opencord 2.14.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-ofagent-go:2.1.68feb9ef89e97
google.golang.org/protobuf@v1.27.1
1.33.0
voltha/voltha-rw-core:3.4.87a325316fe59
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,824
voltha-adapter-openoltopencord2.14.01 of 1See more

voltha-adapter-openolt opencord 2.14.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-openolt-adapter:4.5.16d6d79c08350a
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

898
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
opencord/onos-classic-helm-utils:0.1.00d693ba85fd6
google.golang.org/protobuf@v1.25.0
1.33.0
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

41,101
voltha-stackopencord2.14.03 of 4See more

voltha-stack opencord 2.14.0

3 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
voltha/voltha-ofagent-go:2.1.68feb9ef89e97
google.golang.org/protobuf@v1.27.1
1.33.0
voltha/voltha-openolt-adapter:4.5.16d6d79c08350a
google.golang.org/protobuf@v1.31.0
1.33.0
voltha/voltha-rw-core:3.4.87a325316fe59
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

5,566
probuilderopenfaas0.2.01 of 2See more

probuilder openfaas 0.2.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
moby/buildkit:v0.10.0c2aeafaed434
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

4,760
kruise-rolloutopenkruise0.6.21 of 1See more

kruise-rollout openkruise 0.6.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openkruise/kruise-rollout:v0.6.2a75e6739ea7d
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,034
kruise-state-metricsopenkruise0.2.01 of 1See more

kruise-state-metrics openkruise 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
openkruise/kruise-state-metrics:v0.2.0a8108f771287
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,929
minioopenobserve5.0.72 of 2See more

minio openobserve 5.0.7

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

7,471
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

12,185
exporteropenshift1.0.471 of 3See more

exporter openshift 1.0.47

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

13,041
fsmopenshift0.1.8-ubi.63 of 6See more

fsm openshift 0.1.8-ubi.6

3 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
google.golang.org/protobuf@v1.27.1
1.33.0
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

16,563
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,170
opscruiseopenshift0.35.1003 of 11See more

opscruise openshift 0.35.100

3 of the 11 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/loki:2.0.077e138f81a8e
google.golang.org/protobuf@v1.25.0
1.33.0
grafana/promtail:2.0.05fd12edcc694
google.golang.org/protobuf@v1.25.0
1.33.0
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

8,224
osm-edgeopenshift1.2.1-ubi84 of 7See more

osm-edge openshift 1.2.1-ubi8

4 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

19,471
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

8,643

Container images carrying it

1,665 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/keptn/metrics-operator:v0.8.2acf22310e9dd
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/keptn/scheduler:v0.8.20f7d277bb2b2
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/kiaedev/kiae:latestebd03028ff6a
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/kluster-manager/cluster-proxy:latest27a5c64b7ea8
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/kore3lab/kore-board.backend:v0.5.5455f6e7a26fd
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/kore3lab/kore-board.metrics-scraper:v0.5.547f88b18fb7c
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/kubedb/kubedb-autoscaler:v0.25.0df6b11907d33
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/kubedb/kubedb-dashboard:v0.16.07bfe1c07bd9b
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/kubedb/kubedb-ops-manager:v0.27.1ec36422b09af
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/kubedb/kubedb-provisioner:v0.40.242574f512837
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/kubedb/kubedb-schema-manager:v0.16.09518de37eed5
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/kubedb/kubedb-webhook-server:v0.16.2e24894e32cbc
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/kubedb/provider-aws:v0.27.049b1c312e342
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/kubedb/provider-azure:v0.27.0aa0c8526ae5e
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/kubedb/provider-gcp:v0.27.0a1d4cf8b8fe1
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/kubeform/provider-aws:v0.0.1e3d1f1302e49
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/kubeform/provider-azure:v0.0.1ac8459f70f85
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/kubeform/provider-gcp:v0.0.1af77073c184f
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/kube-logging/log-generator:v0.4.105aa441b20aa
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/kube-logging/log-generator:v0.6.08324bbc0ec08
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/kube-logging/logging-operator:4.2.20dd85dcb1f73
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/kubeshop/botkube:v1.0.0669e27a5d1af
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/kvaps/kube-fencing-controller:v2.4.0313edfec2fca
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/kvaps/linstor-ha-controller:v1.14.08e7b44bbd123
google.golang.org/protobuf@v1.24.0
1.33.0
1
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
google.golang.org/protobuf@v1.25.0
1.33.0
1
ghcr.io/kyverno/kyverno:v1.7.19c73f1841ebc
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/kyverno/kyvernopre:v1.7.1185d2eebc60c
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/kyverno/policy-reporter:2.14.1e74c6bf33d1b
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/leoquote/tencentcloud-exporter:masterca51b6bb15dd
google.golang.org/protobuf@v1.28.0
1.33.0
1
ghcr.io/leoquote/tencentcloud-info-exporter:maind523c2c010cd
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/liangyuanpeng/chirpstack-event-forward:v0.1.223dc6274cc4b
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/liangyuanpeng/waitfor:v1.0.0ca5a98cbed32
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/loafoe/solgate:v0.0.12b3256cbc7b68
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/loft-sh/agent:3.2.45c109914ff73
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/loft-sh/license-server:0.6.069ce001bb4b0
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/loft-sh/loft:0.0.0-ci.14b69bcdaa8492
google.golang.org/protobuf@v1.30.0
1.33.0
1
ghcr.io/loft-sh/vcluster:0.16.484f70425f4dd
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/luisico/cert-manager-webhook-infoblox-wapi:1.5ded797477896
google.golang.org/protobuf@v1.26.0
1.33.0
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
google.golang.org/protobuf@v1.32.0
1.33.0
1
ghcr.io/matrix-org/dendrite-monolith:v0.9.43267d27d392f
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/middleware-labs/agent-kube-go:dev17369c4cd390
google.golang.org/protobuf@v1.28.1
1.33.0
1
ghcr.io/middleware-labs/mw-kube-agent:master056f0953763d
google.golang.org/protobuf@v1.31.0
1.33.0
1
ghcr.io/middleware-labs/odigos-autoscaler:middleware-test-0.0.14aac0389614e4
google.golang.org/protobuf@v1.27.1
1.33.0
1
ghcr.io/middleware-labs/odigos-instrumentor:middleware-test-0.0.104ae1fc698a5
google.golang.org/protobuf@v1.27.1
1.33.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.