StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,330
of 17,781 indexed, latest versions
Container images
1,638
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,330 of 17,781 indexed charts deploy, on 1,638 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,638
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,330 by stars
ChartLatestAffected imagesRadar Score
evi-vaultintelVerified publisher3.0.32 of 2See more

evi-vault intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
google.golang.org/protobuf@v1.28.1
1.33.0
hashicorp/vault-k8s:1.1.0844337076b72
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,478
kesintelVerified publisher0.8.31 of 1See more

kes intel 0.8.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/kes:v0.22.255f3aef5803e
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,570
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization:3.03426deb77337
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

11,069
tcs-issuerintelVerified publisher0.5.01 of 2See more

tcs-issuer intel 0.5.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
intel/trusted-certificate-issuer:0.5.0591a9db4a427
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

5,958
vaultintelVerified publisher0.8.12 of 2See more

vault intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
google.golang.org/protobuf@v1.28.1
1.33.0
hashicorp/vault-k8s:1.1.0844337076b72
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

4,478
gravity-initinvisiblVerified publisher1.0.91 of 1See more

gravity-init invisibl 1.0.9

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
invisibl/gravity-init:v1.0.91a970f84178b
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,006
identity-managerinvisiblVerified publisher1.0.01 of 1See more

identity-manager invisibl 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
invisibl/identity-manager:1.0.01029f4fe20eb
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,162
karpenteriometeVerified publisher0.19.31 of 1See more

karpenter iomete 0.19.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
public.ecr.aws/karpenter/controller:v0.19.3f0e5ab60b2df
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,548
istio-aws-private-ingress-customizedistio-aws-private-ingress-customized1.0.01 of 1See more

istio-aws-private-ingress-customized istio-aws-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,530
istio-azure-private-ingress-customizedistio-azure-private-ingress-customized1.0.01 of 1See more

istio-azure-private-ingress-customized istio-azure-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,530
inlets-clientjacobcolvinVerified publisher0.1.21 of 1See more

inlets-client jacobcolvin 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

1,753
inlets-serverjacobcolvinVerified publisher0.1.11 of 1See more

inlets-server jacobcolvin 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

1,753
osrs-ge-exporterjacobcolvinVerified publisher0.4.01 of 1See more

osrs-ge-exporter jacobcolvin 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
macropower/osrs_ge_exporter:v0.3c77ab5ea955c
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

607
rclonejacobcolvinVerified publisher1.0.11 of 1See more

rclone jacobcolvin 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
rclone/rclone:1.63.008e1af3c8814
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

2,143
twitch-predictions-recorderjacobcolvinVerified publisher0.1.01 of 1See more

twitch-predictions-recorder jacobcolvin 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,669
wakatime-exporterjacobcolvinVerified publisher0.1.11 of 1See more

wakatime-exporter jacobcolvin 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
macropower/wakatime-exporter:0.1.0dbb05debb785
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

1,313
koptimizejaconiVerified publisher0.5.42 of 2See more

koptimize jaconi 0.5.4

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.27.321b24e6bf801
google.golang.org/protobuf@v1.30.0
1.33.0
ghcr.io/jaconi-io/koptimize:1.2.5aca1bbd609b6
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

5,713
mini-infrajaeki0.1.01 of 4See more

mini-infra jaeki 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.13.101b33357b3595
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

1,744
knative-servingjenkins-x0.19.124 of 4See more

knative-serving jenkins-x 0.19.12

4 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned1e3db4f2eeed
google.golang.org/protobuf@v1.25.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinneddb6ceff2aab4
google.golang.org/protobuf@v1.25.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedb2cd45b8a8a4
google.golang.org/protobuf@v1.25.0
1.33.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedd27b4495ccc3
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

9,699
ingress-nginxjfrog4.5.22 of 2See more

ingress-nginx jfrog 4.5.2

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
google.golang.org/protobuf@v1.28.1
1.33.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

3,798
vaultjfrog0.25.02 of 2See more

vault jfrog 0.25.0

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/vault:1.14.0b2177a8bfe85
google.golang.org/protobuf@v1.30.0
1.33.0
hashicorp/vault-k8s:1.2.14500e988b7ce
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

3,968
kafka-offset-lag-for-prometheusjhidalgo3-githubVerified publisher2.3.01 of 1See more

kafka-offset-lag-for-prometheus jhidalgo3-github 2.3.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
jhidalgo3/kafka-offset-lag-for-prometheus:latest0390e155c46d
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,470
missing-container-metricsjimdo-missing-container-metrics0.5.01 of 1See more

missing-container-metrics jimdo-missing-container-metrics 0.5.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

2,409
haven-complinacy-dashboardjolle-devVerified publisher1.0.01 of 2See more

haven-complinacy-dashboard jolle-dev 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
j0113/haven-compliancy-dashboard:1.3696cb8ca9f4e
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

3,840
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

16,600
alertmanager-irc-relayjuppi880.0.11 of 1See more

alertmanager-irc-relay juppi88 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
maldridge/alertmanager-irc-relay:v0.4.1391de2b76128
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

1,615
k10appk10app0.2.11 of 11See more

k10app k10app 0.2.1

1 of the 11 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/k10app/businit:latest94c9a3e799c2
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

10,546
influxdb-exporterk8s-home-lab-repo1.1.31 of 1See more

influxdb-exporter k8s-home-lab-repo 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
prom/influxdb-exporter:v0.11.427e33e18634a
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

624
photoprismk8s-home-lab-repo10.0.11 of 1See more

photoprism k8s-home-lab-repo 10.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
photoprism/photoprism:231128-ce284de9cc4f9c
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,140
k8s-ondemand-proxyk8s-ondemand-proxy0.0.61 of 1See more

k8s-ondemand-proxy k8s-ondemand-proxy 0.0.6

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/k8s-ondemand-proxy:0.0.2078b25d48cf7
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

815
librephotosk8sonlabVerified publisher1.1.61 of 7See more

librephotos k8sonlab 1.1.6

1 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
alpine/k8s:1.22.600ac10bcb759
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

14,801
k8s-pausek8s-pause0.1.41 of 1See more

k8s-pause k8s-pause 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/doodlescheduling/k8s-pause:v0.1.16b3215e37738
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,846
k8svault-controllerk8svault-controller0.1.21 of 1See more

k8svault-controller k8svault-controller 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/doodlescheduling/k8svault-controller:v0.2.0627e5e211766
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,885
kom-operatorkaisoVerified publisher1.3.01 of 2See more

kom-operator kaiso 1.3.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kaiso/kom-operator:v2.2.0e0e22b928bdd
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

710
keycloak-operator-legacykeycloak-operator-legacy1.0.01 of 1See more

keycloak-operator-legacy keycloak-operator-legacy 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

5,067
gogskeyporttech0.1.31 of 3See more

gogs keyporttech 0.1.3

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gogs/gogs:0.12.30195b095d0b2
google.golang.org/protobuf@v1.21.0
1.33.0

Open the chart page →

3,523
helm-mongodb-operatorkeyporttech0.1.01 of 1See more

helm-mongodb-operator keyporttech 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

8,811
connectkfirfer1.15.01 of 2See more

connect kfirfer 1.15.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
1password/connect-api:1.7.26aa94cf713f9
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,786
kubernetes-replicatorkfirfer2.9.11 of 1See more

kubernetes-replicator kfirfer 2.9.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/mittwald/kubernetes-replicator:v2.9.1baf5f784398b
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

864
mysqldumpkfirfer2.8.01 of 1See more

mysqldump kfirfer 2.8.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

3,507
kiaekiae0.1.66 of 9See more

kiae kiae 0.1.6

6 of the 9 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/loki:2.6.11ee60f980950
google.golang.org/protobuf@v1.27.1
1.33.0
grafana/promtail:2.6.1072527b12cdf
google.golang.org/protobuf@v1.27.1
1.33.0
istio/pilot:1.15.2db08d6963975
google.golang.org/protobuf@v1.28.0
1.33.0
otel/opentelemetry-collector-contrib:0.63.1dfb3a55ea8c9
google.golang.org/protobuf@v1.28.1
1.33.0
ghcr.io/dexidp/dex:v2.35.313964b29d63e
google.golang.org/protobuf@v1.28.1
1.33.0
ghcr.io/kiaedev/kiae:latestebd03028ff6a
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

19,168
kloudlite-platformkloudlite1.1.51 of 3See more

kloudlite-platform kloudlite 1.1.5

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,970
kollektorkollektorVerified publisher1.0.51 of 1See more

kollektor kollektor 1.0.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
pannoi/kollektor:1.0.59559617788fc
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

717
komiserkomiser-eks3.1.101 of 1See more

komiser komiser-eks 3.1.10

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
tailwarden/komiser:3.1.103f68c8ae7993
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,265
cadvisorkrakazyabraVerified publisher1.0.11 of 1See more

cadvisor krakazyabra 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,176
kubeflowkromanow94-kubeflow0.5.110 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

10 of the 30 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
kubeflownotebookswg/kfam:v1.9.22060a2ede788
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
kubeflownotebookswg/notebook-controller:v1.9.20f14bd28fdd5
google.golang.org/protobuf@v1.27.1
1.33.0
kubeflownotebookswg/poddefaults-webhook:v1.9.2bde88d98ad74
google.golang.org/protobuf@v1.30.0
1.33.0
kubeflownotebookswg/profile-controller:v1.9.2f05a5538ae7e
google.golang.org/protobuf@v1.27.1
1.33.0
kubeflownotebookswg/tensorboard-controller:v1.9.26536a9f61193
google.golang.org/protobuf@v1.27.1
1.33.0
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/ml-pipeline/cache-server:2.3.0293941ee4f65
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/ml-pipeline/persistenceagent:2.3.0109ac1b38c41
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/ml-pipeline/scheduledworkflow:2.3.0f7e67e0bc071
google.golang.org/protobuf@v1.32.0
1.33.0
gcr.io/ml-pipeline/viewer-crd-controller:2.3.08cf8213d69e4
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

70,530
kron-aapm-sidecarkron-aapm-sidecar1.1.01 of 1See more

kron-aapm-sidecar kron-aapm-sidecar 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
krontechnology/aapm-sidecar-injector:1.1.0e078d54c1711
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,111
lndkronkltdVerified publisher0.3.91 of 4See more

lnd kronkltd 0.3.9

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.14.1-betad94c8dbf6dac
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

8,451
casdoorkrzwiatrzyk1.0.01 of 1See more

casdoor krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
casbin/casdoor:v1.224.066f836ef778b
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

3,649
nocodbkrzwiatrzyk0.0.11 of 1See more

nocodb krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
nocodb/nocodb:0.100.2b0b91ec2a2dd
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,313

Container images carrying it

1,638 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
jimmidyson/configmap-reload:v0.5.0904d08e9f701
google.golang.org/protobuf@v1.23.0
1.33.0
14
prom/pushgateway:v1.4.2a684e7c830a4
google.golang.org/protobuf@v1.26.0
1.33.0
8
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
google.golang.org/protobuf@v1.32.0
1.33.0
8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
google.golang.org/protobuf@v1.22.0
1.33.0
8
wurstmeister/kafka:latest2d4bbf9cc83d
google.golang.org/protobuf@v1.27.1
1.33.0
7
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
google.golang.org/protobuf@v1.27.1
1.33.0
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
google.golang.org/protobuf@v1.25.0
1.33.0
6
quay.io/devtron/kubectl:latest2ad610626658
google.golang.org/protobuf@v1.28.0
1.33.0
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
google.golang.org/protobuf@v1.28.1
1.33.0
6
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
6
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
google.golang.org/protobuf@v1.21.0
1.33.0
6
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0:v2.8.1f6717ce72a26
google.golang.org/protobuf@v1.28.1
1.33.0
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
google.golang.org/protobuf@v1.31.0
1.33.0
5
natsio/nats-box:0.14.1a67913df95f1
google.golang.org/protobuf@v1.31.0
1.33.0
5
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
google.golang.org/protobuf@v1.28.1
1.33.0
5
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
5
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
google.golang.org/protobuf@v1.26.0
1.33.0
5
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20231011-8b53cabe0a7943503b45d
google.golang.org/protobuf@v1.31.0
1.33.0
5
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
google.golang.org/protobuf@v1.26.0
1.33.0
5
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
google.golang.org/protobuf@v1.30.0
1.33.0
5
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
google.golang.org/protobuf@v1.26.0
1.33.0
4
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
google.golang.org/protobuf@v1.26.0
1.33.0
4
grafana/loki:2.6.11ee60f980950
google.golang.org/protobuf@v1.27.1
1.33.0
4
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
google.golang.org/protobuf@v1.32.0
1.33.0
4
jaegertracing/jaeger-collector:1.53.07f1269222903
google.golang.org/protobuf@v1.32.0
1.33.0
4
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
google.golang.org/protobuf@v1.32.0
1.33.0
4
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
google.golang.org/protobuf@v1.23.0
1.33.0
4
jimmidyson/configmap-reload:v0.8.05af9d3041d12
google.golang.org/protobuf@v1.28.1
1.33.0
4
rss3/op-geth:rss3-main-1ecad3026148aa1bc52
google.golang.org/protobuf@v1.27.1
1.33.0
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
google.golang.org/protobuf@v1.30.0
1.33.0
4
quay.io/jetstack/cert-manager-cainjector:v1.13.172072d492b43
google.golang.org/protobuf@v1.31.0
1.33.0
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
google.golang.org/protobuf@v1.31.0
1.33.0
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
google.golang.org/protobuf@v1.31.0
1.33.0
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
google.golang.org/protobuf@v1.31.0
1.33.0
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
google.golang.org/protobuf@v1.28.1
1.33.0
4
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
google.golang.org/protobuf@v1.28.1
1.33.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
google.golang.org/protobuf@v1.26.0
1.33.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
google.golang.org/protobuf@v1.26.0
1.33.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
google.golang.org/protobuf@v1.26.0
1.33.0
4
argoproj/argocd:v1.8.1830e86cacefd
google.golang.org/protobuf@v1.25.0
1.33.0
3
caddy/ingress:v0.2.118d1366fc0e9
google.golang.org/protobuf@v1.31.0
1.33.0
3
ciscolabs/rtsp-server:latestb59fc10bb821
google.golang.org/protobuf@v1.28.0
1.33.0
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
google.golang.org/protobuf@v1.26.0
1.33.0
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
google.golang.org/protobuf@v1.25.0
1.33.0
3
dgraph/dgraph:v21.12.03b55ea83fffe
google.golang.org/protobuf@v1.26.0
1.33.0
3
grafana/grafana:8.2.500568d89c4f8
google.golang.org/protobuf@v1.27.1
1.33.0
3
grafana/promtail:2.4.2626900031c4e
google.golang.org/protobuf@v1.27.1
1.33.0
3
groundnuty/k8s-wait-for:v2.0c14d7271e401
google.golang.org/protobuf@v1.28.0
1.33.0
3
library/docker:20.10-dind:20-dindaf96c680a7e1
google.golang.org/protobuf@v1.28.1
1.33.0
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
google.golang.org/protobuf@v1.23.0
1.33.0
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.