StackRadar

CVE-2024-29415

High

Advisory

Published 27 May 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.083
95th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
505
of 17,787 indexed, latest versions
Container images
501
deployed by those charts
Fix available
None
affected packages

ip SSRF improper categorization in isPublic

Carried by container images the latest versions of 505 of 17,787 indexed charts deploy, on 501 images.

Affected packageAffected versionsFixed inImages
ipnpm1.0.1, 1.1.5, 1.1.6, 1.1.8+3 moreno fix listed501
node-ipdeb1.1.5-5, 2.0.0+~1.1.0-1ubuntu1no fix listed3
OSV records
GHSA-2p57-rm9w-gvfpUBUNTU-CVE-2024-29415

Charts affected

505 by stars
ChartLatestAffected imagesRadar Score
workadventureworkadventure1.1.04 of 9See more

workadventure workadventure 1.1.0

4 of the 9 container images this version deploys carry CVE-2024-29415.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-back:v1.17.764001369dad5
ip@2.0.0
no fix listed
thecodingmachine/workadventure-map-storage:v1.17.75bdab56da2fa
ip@2.0.0
no fix listed
thecodingmachine/workadventure-play:v1.17.7d8f66979b9b4
ip@2.0.0
no fix listed
thecodingmachine/workadventure-uploader:v1.17.73ccd467543b3
ip@2.0.0
no fix listed

Open the chart page →

16,083
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-29415.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
ip@1.1.5
no fix listed

Open the chart page →

1,752
helloworldyotron-helm-charts0.1.01 of 1See more

helloworld yotron-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-29415.

Container imageDigestPackageFixed in
a5hut0sh/helloworld:1.02ae77620e616
ip@1.1.5
no fix listed

Open the chart page →

1,309
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-29415.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latestf166a963b550
ip@2.0.0
no fix listed

Open the chart page →

1,589
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2024-29415.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
ip@1.1.5
no fix listed

Open the chart page →

3,118

Container images carrying it

501 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
interlayhq/interbtc-hydra-processor:0.10.55b2c414307b9
ip@2.0.0
no fix listed
1
istio/examples-bookinfo-ratings-v1:1.17.0b6a6b88d3578
ip@1.1.5
no fix listed
1
jakowenko/double-take:1.6.0b858bac9e32a
ip@1.1.5
no fix listed
1
jayfong/yapi:1.10.2163e5d621910
ip@1.1.5
no fix listed
1
jedi132000/nextapp:latestdc2a81e92f23
ip@2.0.0
no fix listed
1
jesec/flood:4.7.03d1d0bec117a
ip@1.1.5
no fix listed
1
jesec/flood:4.6.060bd59cfb4eb
ip@1.1.5
no fix listed
1
jesec/rtorrent-flood:latestf0c894ec459e
ip@1.1.5
no fix listed
1
joplin/server:latest3f7b852959aa
ip@1.1.5
no fix listed
1
joplin/server:3.0-beta52af57880c0e
ip@2.0.0
no fix listed
1
joplin/server:2.14.2-betab87564ef34e9
ip@1.1.5
no fix listed
1
josepht05/nodejs-feb24:latest36cb0c618c94
ip@2.0.0
no fix listed
1
josepht05/titajo-docker:v1.0.0d94024965d78
ip@2.0.0
no fix listed
1
josh5/unmanic:0.2.64d49c4816260
ip@2.0.0
no fix listed
1
junktext/getting-started:1.0.5a70936c04aed
ip@1.1.5
no fix listed
1
junktext/getting-started:1.0.34d44adf5a4da2
ip@1.1.5
no fix listed
1
jupyterhub/jupyterhub:5.4.63974ba945e65
ip@2.0.0
node-ip@2.0.0+~1.1.0-1ubuntu1
no fix listed
no fix listed
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
ip@1.1.5
no fix listed
1
keyoxide/keyoxide:stable96f27a71269d
ip@1.1.5
no fix listed
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
ip@1.1.5
no fix listed
1
koumoul/capture:17108d47be3b2
ip@1.1.5
no fix listed
1
koumoul/openapi-viewer:18eeca2e8285b
ip@1.1.5
no fix listed
1
ktitilayo2/nodejswebapp:latest8bac28058688
ip@2.0.0
no fix listed
1
kubebb/bff-server:v0.2.0-202312040fbb732379bc
ip@1.1.8
no fix listed
1
kubebb/component-store:latestfd8ecbd73213
ip@2.0.0
no fix listed
1
kubebb/tamp-portal:v5.6.0fadac6d52470
ip@1.1.5
no fix listed
1
kubebb/tdsf-portal:v5.7.0258458311bc9
ip@1.1.5
no fix listed
1
kubeflownotebookswg/centraldashboard:v1.6.137300551dea6
ip@1.1.5
no fix listed
1
kubeflownotebookswg/centraldashboard:v1.9.2af55c22ef5de
ip@2.0.0
no fix listed
1
kubesphere/examples-bookinfo-ratings-v1:1.13.0f1b5bf878196
ip@1.1.5
no fix listed
1
kubevious/backend:1.2.22d9ba6eb46b6
ip@2.0.0
no fix listed
1
kubevious/collector:1.2.1f58226f9d84e
ip@2.0.0
no fix listed
1
kubevious/guard:1.2.19bf567704de2
ip@1.1.5
no fix listed
1
kubevious/parser:1.0.151acf1a1f0b47
ip@1.1.5
no fix listed
1
kubevious/parser:1.2.299ae7a5168c2
ip@2.0.0
no fix listed
1
kubevious/workload-operator:1.0.20b0f4c507eb6
ip@1.1.5
no fix listed
1
kvalitetsit/kithosting-networkpolicytests:0.0.12b99cfa3c5df
ip@1.1.5
no fix listed
1
kyleslugg/klusterview:latestba8c36dfdfbd
ip@2.0.0
no fix listed
1
kyso/kyso-front:lateste52595c5c16f
ip@1.1.8
no fix listed
1
laly9999/node-app-dockerized:latest75ae77a20c6c
ip@2.0.0
no fix listed
1
langgenius/dify-sandbox:0.2.124e65e8a351a2
ip@2.0.0
no fix listed
1
langgenius/dify-web:0.6.11a2a294743634
ip@2.0.0
no fix listed
1
lavandadelpatio/frontend:latest501c3f31e0bc
ip@1.1.5
no fix listed
1
leeyoongti/first-app:1.0.021d66cb76352
ip@1.1.5
no fix listed
1
library/ghost:6.25.12654b1e90413
ip@2.0.1
no fix listed
1
library/ghost:4.37.0767230c0f263
ip@1.1.5
no fix listed
1
library/ghost:5.79.083f7bf209844
ip@2.0.0
no fix listed
1
library/ghost:6.22.0-alpine3.23ac533a6988ee
ip@2.0.1
no fix listed
1
library/kibana:7.17.150172f1c538e7
ip@1.1.8
no fix listed
1
library/kibana:7.17.8c5781ba340ef
ip@1.1.5
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.