StackRadar

CVE-2024-24786

High

Advisory

Published 5 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,344
of 17,787 indexed, latest versions
Container images
1,663
deployed by those charts
Fix available
8 of 8
affected packages

Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON

Carried by container images the latest versions of 1,344 of 17,787 indexed charts deploy, on 1,663 images.

Affected packageAffected versionsFixed inImages
google.golang.org/protobufgolangv1.21.0, v1.22.0, v1.23.0, v1.24.0+14 more1.33.01,663
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-81.module+el8.10.0+21962+8143777b1
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+21962+8143777b1
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+21962+8143777b1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+21962+8143777b1
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.10.0+21974+acd2159c1
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.4-1.module+el8.10.0+21995+81e8507c1
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+21962+8143777b1
OSV records
GHSA-8r3f-844c-mc37RHSA-2024:4246
Also known as
GO-2024-2611

Charts affected

1,344 by stars
ChartLatestAffected imagesRadar Score
shopwareshopware-storeVerified publisher2.1.11 of 5See more

shopware shopware-store 2.1.1

1 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.14.03232ae01d0ff
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

4,890
alertmanagersignoz0.5.21 of 1See more

alertmanager signoz 0.5.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
signoz/alertmanager:0.5.07bc7de2e33c2
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0

Open the chart page →

2,181
counter-dhlsikademo0.3.01 of 3See more

counter-dhl sikademo 0.3.0

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ondrejsika/counter:latestd95eaeee2172
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

4,857
test-hello-worldsikademo0.1.01 of 1See more

test-hello-world sikademo 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,164
hello-worldsikalabs0.17.01 of 1See more

hello-world sikalabs 0.17.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/sikalabs/hello-world-server:latestcf8538bf6489
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,164
hello-world-examplesikalabs0.1.31 of 1See more

hello-world-example sikalabs 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

1,164
keycloak-configuratorsikalabs0.2.01 of 1See more

keycloak-configurator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/terraform:1.44dcb45513699
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

2,863
loggensikalabs0.1.01 of 1See more

loggen sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
sikalabs/slu:v0.72.07bd267f30247
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,316
metrics-generatorsikalabs0.2.01 of 1See more

metrics-generator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
sikalabs/slu:v0.34.0fdc0c6711add
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

2,381
bytesafe-cesimcube1.0.41 of 3See more

bytesafe-ce simcube 1.0.4

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
bytesafe/bytesafe-ce:v1.0.4ee287384c005
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

1,494
keydbsinextraVerified publisher0.31.01 of 1See more

keydb sinextra 0.31.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,165
mimirskyloud-helm-chartsVerified publisher5.5.13 of 5See more

mimir skyloud-helm-charts 5.5.1

3 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/rollout-operator:v0.14.03409edfb45c7
google.golang.org/protobuf@v1.32.0
1.33.0
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
google.golang.org/protobuf@v1.31.0
1.33.0
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

10,650
config-connector-templaterslamdev0.0.51 of 1See more

config-connector-templater slamdev 0.0.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
slamdev/config-connector-templater:0.0.3a234541c9fa8
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

2,110
flux-notifierslamdev0.0.71 of 1See more

flux-notifier slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
slamdev/flux-notifier:v0.0.8b173d809132d
google.golang.org/protobuf@v1.21.0
1.33.0

Open the chart page →

2,015
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

9,235
gke-preemptible-notifierslamdev0.0.61 of 1See more

gke-preemptible-notifier slamdev 0.0.6

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
slamdev/gke-preemptible-notifier:v0.0.3d5d6430108a3
google.golang.org/protobuf@v1.21.0
1.33.0

Open the chart page →

2,860
octavia-ingress-controllerslamdev0.0.71 of 1See more

octavia-ingress-controller slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
k8scloudprovider/octavia-ingress-controller:v1.20.26ddf80b34265
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

2,761
smarter-k3s-edgesmarterVerified publisher0.0.121 of 2See more

smarter-k3s-edge smarter 0.0.12

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
rancher/k3s:v1.25.3-k3s1eaa270df79cc
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

3,462
smarter-device-managersmarter-device-manager0.0.101 of 1See more

smarter-device-manager smarter-device-manager 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/smarter-device-manager:v1.20.12228f7f44594a
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

1,144
csi-gcs-softonic-factorysoftonic0.9.31 of 4See more

csi-gcs-softonic-factory softonic 0.9.3

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ofekmeister/csi-gcs:v0.9.030d70fa9211b
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

1,842
harborsoftonic1.13.04 of 8See more

harbor softonic 1.13.0

4 of the 8 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
goharbor/harbor-core:v2.9.06412d679fdc3
google.golang.org/protobuf@v1.28.1
1.33.0
goharbor/harbor-jobservice:v2.9.039435daedd0c
google.golang.org/protobuf@v1.28.1
1.33.0
goharbor/harbor-registryctl:v2.9.0cce272836449
google.golang.org/protobuf@v1.28.1
1.33.0
goharbor/trivy-adapter-photon:v2.9.0dc5b882a7db4
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

7,672
pod-defaultersoftonic0.1.31 of 1See more

pod-defaulter softonic 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
softonic/pod-defaulter:0.1.072017aed5902
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

2,561
policy-reportersoftonic2.18.21 of 1See more

policy-reporter softonic 2.18.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/kyverno/policy-reporter:2.14.1e74c6bf33d1b
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

1,038
rate-limit-operatorsoftonic1.1.01 of 2See more

rate-limit-operator softonic 1.1.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
softonic/rate-limit-operator:0.1.1910f6de37763
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

2,219
sealed-secretssoftonic2.6.91 of 1See more

sealed-secrets softonic 2.6.9

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
bitnami/sealed-secrets-controller:v0.18.50516f987fae2
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,515
trivy-operatorsoftonic0.18.01 of 1See more

trivy-operator softonic 0.18.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

2,505
gloo-meshsolo-gloo-mesh1.1.21 of 1See more

gloo-mesh solo-gloo-mesh 1.1.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

3,259
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

30,759
spinnakerspinnakerVerified publisher2.2.131 of 4See more

spinnaker spinnaker 2.2.13

1 of the 4 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
google.golang.org/protobuf@v1.22.0
1.33.0

Open the chart page →

6,836
spotinst-ocean-network-clientspot1.0.01 of 1See more

spotinst-ocean-network-client spot 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

6,955
servicexssl-hep1.8.51 of 16See more

servicex ssl-hep 1.8.5

1 of the 16 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2022.12.12-debian-11-r90f7c8ac484ac
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

65,130
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

28,165
external-secretsstakaterVerified publisher0.3.12-40dbdfc1 of 1See more

external-secrets stakater 0.3.12-40dbdfc

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v0.3.1156a1ea4490ba
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

2,081
k8scostoptimizerstakaterVerified publisher0.0.51 of 1See more

k8scostoptimizer stakater 0.0.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
stakater/k8s-cost-optimizer:v0.0.5450415ce1b4e
google.golang.org/protobuf@v1.27.1
1.33.0

Open the chart page →

1,408
tronadorstakaterVerified publisher0.0.11 of 1See more

tronador stakater 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
stakater/tronador:v0.0.137ce9acf2722
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

2,173
vaultstakaterVerified publisher0.8.42 of 2See more

vault stakater 0.8.4

2 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.4dfc3500beb0e
google.golang.org/protobuf@v1.25.0
1.33.0
hashicorp/vault-k8s:0.14.0aff47b5ba39c
google.golang.org/protobuf@v1.26.0
1.33.0

Open the chart page →

5,864
workshop-operatorstakaterVerified publisher0.0.381 of 2See more

workshop-operator stakater 0.0.38

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
stakater/workshop-operator:v0.0.3897bf456cc97c
google.golang.org/protobuf@v1.24.0
1.33.0

Open the chart page →

6,671
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
google.golang.org/protobuf@v1.32.0
1.33.0

Open the chart page →

18,426
operatorstakewise2.1.11 of 5See more

operator stakewise 2.1.1

1 of the 5 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.15d99fbb9585c7
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

6,584
argocd-operatorstatcan0.5.01 of 1See more

argocd-operator statcan 0.5.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/argocd-operator:v0.4.0cf8faa986789
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

1,985
cost-analyzerstatcan1.82.23 of 9See more

cost-analyzer statcan 1.82.2

3 of the 9 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
grafana/grafana:7.5.609bb407e26ab
google.golang.org/protobuf@v1.25.0
1.33.0
prom/prometheus:v2.22.2f7ffebdd428b
google.golang.org/protobuf@v1.24.0
1.33.0
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

16,508
fluentd-operatorstatcan0.5.11 of 1See more

fluentd-operator statcan 0.5.1

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
vmware/kube-fluentd-operator:latestf028c138a5f4
google.golang.org/protobuf@v1.30.0
1.33.0

Open the chart page →

1,955
ingress-istio-controllerstatcan1.4.01 of 1See more

ingress-istio-controller statcan 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
statcan/ingress-istio-controller:1.4.0d7d6bd180c46
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

1,583
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
google.golang.org/protobuf@v1.25.0
1.33.0

Open the chart page →

6,595
prometheus-operatorstatcan0.2.21 of 7See more

prometheus-operator statcan 0.2.2

1 of the 7 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
quay.io/prometheus/node-exporter:v1.0.08a3a33cad0bd
google.golang.org/protobuf@v1.22.0
1.33.0

Open the chart page →

12,237
sidecar-terminatorstatcan1.3.51 of 1See more

sidecar-terminator statcan 1.3.5

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
statcan/kubernetes-sidecar-terminator:2.0.2bc361ee7748f
google.golang.org/protobuf@v1.28.1
1.33.0

Open the chart page →

1,315
starboard-operatorstatcan0.10.41 of 1See more

starboard-operator statcan 0.10.4

1 of the 1 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
aquasec/starboard-operator:0.15.4be34f709e1ce
google.golang.org/protobuf@v1.28.0
1.33.0

Open the chart page →

1,827
vaultstatcan0.1.81 of 2See more

vault statcan 0.1.8

1 of the 2 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
hashicorp/vault-k8s:0.6.05697b85bc69a
google.golang.org/protobuf@v1.23.0
1.33.0

Open the chart page →

4,222
sn-platform-slimstreamnative1.11.443 of 6See more

sn-platform-slim streamnative 1.11.44

3 of the 6 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.8.05af9d3041d12
google.golang.org/protobuf@v1.28.1
1.33.0
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
google.golang.org/protobuf@v1.28.1
1.33.0
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
google.golang.org/protobuf@v1.29.0
1.33.0

Open the chart page →

10,182
orchestratorsubstraVerified publisher8.8.01 of 3See more

orchestrator substra 8.8.0

1 of the 3 container images this version deploys carry CVE-2024-24786.

Container imageDigestPackageFixed in
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
google.golang.org/protobuf@v1.31.0
1.33.0

Open the chart page →

3,003

Container images carrying it

1,663 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
jimmidyson/configmap-reload:v0.5.0904d08e9f701
google.golang.org/protobuf@v1.23.0
1.33.0
14
prom/pushgateway:v1.4.2a684e7c830a4
google.golang.org/protobuf@v1.26.0
1.33.0
8
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
google.golang.org/protobuf@v1.32.0
1.33.0
8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
google.golang.org/protobuf@v1.22.0
1.33.0
8
wurstmeister/kafka:latest2d4bbf9cc83d
google.golang.org/protobuf@v1.27.1
1.33.0
7
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
google.golang.org/protobuf@v1.27.1
1.33.0
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
google.golang.org/protobuf@v1.25.0
1.33.0
6
quay.io/devtron/kubectl:latest2ad610626658
google.golang.org/protobuf@v1.28.0
1.33.0
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
google.golang.org/protobuf@v1.28.1
1.33.0
6
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
6
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
google.golang.org/protobuf@v1.21.0
1.33.0
6
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0:v2.8.1f6717ce72a26
google.golang.org/protobuf@v1.28.1
1.33.0
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
google.golang.org/protobuf@v1.31.0
1.33.0
5
natsio/nats-box:0.14.1a67913df95f1
google.golang.org/protobuf@v1.31.0
1.33.0
5
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
google.golang.org/protobuf@v1.28.1
1.33.0
5
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
google.golang.org/protobuf@v1.26.0-rc.1
1.33.0
5
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
google.golang.org/protobuf@v1.26.0
1.33.0
5
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20231011-8b53cabe0a7943503b45d
google.golang.org/protobuf@v1.31.0
1.33.0
5
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
google.golang.org/protobuf@v1.26.0
1.33.0
5
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
google.golang.org/protobuf@v1.30.0
1.33.0
5
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
google.golang.org/protobuf@v1.26.0
1.33.0
4
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
google.golang.org/protobuf@v1.26.0
1.33.0
4
grafana/loki:2.6.11ee60f980950
google.golang.org/protobuf@v1.27.1
1.33.0
4
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
google.golang.org/protobuf@v1.32.0
1.33.0
4
jaegertracing/jaeger-collector:1.53.07f1269222903
google.golang.org/protobuf@v1.32.0
1.33.0
4
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
google.golang.org/protobuf@v1.32.0
1.33.0
4
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
google.golang.org/protobuf@v1.23.0
1.33.0
4
jimmidyson/configmap-reload:v0.8.05af9d3041d12
google.golang.org/protobuf@v1.28.1
1.33.0
4
rss3/op-geth:rss3-main-1ecad3026148aa1bc52
google.golang.org/protobuf@v1.27.1
1.33.0
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
google.golang.org/protobuf@v1.30.0
1.33.0
4
quay.io/jetstack/cert-manager-cainjector:v1.13.172072d492b43
google.golang.org/protobuf@v1.31.0
1.33.0
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
google.golang.org/protobuf@v1.31.0
1.33.0
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
google.golang.org/protobuf@v1.31.0
1.33.0
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
google.golang.org/protobuf@v1.31.0
1.33.0
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
google.golang.org/protobuf@v1.28.1
1.33.0
4
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
google.golang.org/protobuf@v1.28.1
1.33.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
google.golang.org/protobuf@v1.26.0
1.33.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
google.golang.org/protobuf@v1.26.0
1.33.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
google.golang.org/protobuf@v1.26.0
1.33.0
4
argoproj/argocd:v1.8.1830e86cacefd
google.golang.org/protobuf@v1.25.0
1.33.0
3
caddy/ingress:v0.2.118d1366fc0e9
google.golang.org/protobuf@v1.31.0
1.33.0
3
ciscolabs/rtsp-server:latestb59fc10bb821
google.golang.org/protobuf@v1.28.0
1.33.0
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
google.golang.org/protobuf@v1.26.0
1.33.0
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
google.golang.org/protobuf@v1.25.0
1.33.0
3
dgraph/dgraph:v21.12.03b55ea83fffe
google.golang.org/protobuf@v1.26.0
1.33.0
3
grafana/grafana:8.2.500568d89c4f8
google.golang.org/protobuf@v1.27.1
1.33.0
3
grafana/promtail:2.4.2626900031c4e
google.golang.org/protobuf@v1.27.1
1.33.0
3
groundnuty/k8s-wait-for:v2.0c14d7271e401
google.golang.org/protobuf@v1.28.0
1.33.0
3
kubegems/kubegems:v1.24.10a730bcf9322a
google.golang.org/protobuf@v1.31.0
1.33.0
3
library/docker:20.10-dind:20-dindaf96c680a7e1
google.golang.org/protobuf@v1.28.1
1.33.0
3

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.