StackRadar

CVE-2024-38428

Critical

Advisory

Published 16 Jun 2024In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
415
of 17,787 indexed, latest versions
Container images
398
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: wget security update

Carried by container images the latest versions of 415 of 17,787 indexed charts deploy, on 398 images.

Affected packageAffected versionsFixed inImages
wgetdeb1.15-1ubuntu1, 1.15-1ubuntu1.14.04.1, 1.15-1ubuntu1.14.04.4, 1.17.1-1ubuntu1.3+12 more1.15-1ubuntu1.14.04.5+esm2, 1.17.1-1ubuntu1.5+esm1, 1.19.4-1ubuntu2.2+esm1, 1.20.3-1ubuntu2.1+4 more370
wgetrpm1.19.5-8.el8_1.1, 1.19.5-10.el8, 1.19.5-11.el8, 1.21.1-7.el90:1.19.5-10.el8_6.2, 0:1.19.5-12.el8_10, 0:1.21.1-8.el9_428
OSV records
DEBIAN-CVE-2024-38428UBUNTU-CVE-2024-38428RHSA-2024:4998RHSA-2024:5299RHSA-2024:6192RLSA-2024:5299DLA-4133-1
Also known as
RHSA-2024:6208, USN-6852-1, USN-6852-2, USN-8543-1

Charts affected

415 by stars
ChartLatestAffected imagesRadar Score
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
wget@1.21.3-1+b2
1.21.3-1+deb12u1

Open the chart page →

17,323
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
wget@1.21.4-1ubuntu4
1.21.4-1ubuntu4.1

Open the chart page →

45,239
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
wget@1.21.3-1+b2
1.21.3-1+deb12u1

Open the chart page →

14,358
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1

Open the chart page →

9,347
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
wget@1.21-1+deb11u1
1.21-1+deb11u2

Open the chart page →

3,392
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1

Open the chart page →

11,119
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
wget@1.21-1+deb11u1
1.21-1+deb11u2

Open the chart page →

9,397
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1

Open the chart page →

9,130
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1

Open the chart page →

9,130
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1

Open the chart page →

14,364
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1

Open the chart page →

28,605
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1

Open the chart page →

9,248
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
murtazashah46/helmfile:latest4d11726cf803
wget@1.21.3-1+b2
1.21.3-1+deb12u1

Open the chart page →

13,677
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
wget@1.21-1+deb11u1
1.21-1+deb11u2

Open the chart page →

1,838
clickhousezloi-space1.2.01 of 3See more

clickhouse zloi-space 1.2.0

1 of the 3 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
yandex/clickhouse-server:21.3.204eccfffb01d7
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1

Open the chart page →

9,207

Container images carrying it

398 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
abohatyrenko/bucket-backup-restore:latestfa98af15a13e
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
aboogie/login_test_backend:new9c41a4483ac8
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1
1
allegroai/clearml-serving-inference:1.3.0fca885e8cfc6
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
allegroai/clearml-serving-statistics:1.3.0c58d9da7bdf8
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
andreacioni/kube-workload-restarter:0.0.242938b310090a
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
anguda/ant-media:2.5c435285fc241
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
1
apache/drill:1.21.11f96558fd292
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
apachepinot/pinot:latest-jdk110018bb04ced7
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
1
apache/rocketmq-exporter:0.0.2c8fb51195444
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
1
apache/skywalking-oap-server:9.2.0133d35d2c263
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
1
apache/skywalking-ui:9.2.0295f1dc87d98
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
1
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
archish27/python-fastapi-postgres:latest6610071a2101
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
aristidetm/basic-notebook:3.6.5469dbc951224
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
aroralalit/student-producer:1.0.02a094f597b36
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
artur9010/wait-for:v1.0.06b4de3ce8b0e
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
1
assistiot/cybersecurity-monitoring_ir-ctx:latestae8b3d72eb5d
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
assistiot/cybersecurity-monitoring_ir-thv:latestc8b6c7eaa0cd
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
assistiot/location_processing:lateste9bae124095f
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
1
assistiot/resource-provisioning_prc:1.0.08b5d118bdf0e
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
1
atlassian/confluence-server:7.10.03b9222ab32ef
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
1
atlassian/jira-software:8.14.037bc46cbec1a
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
1
atomix/atomix:3.1.127738ff4f5c63
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
avinash263/pyredis263:latestaa2b8727f1a6
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
azhar008/flaskapplication:latesta1e827b0adea
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
1
blockstream/bitcoind:27.29472492530e3
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
bnjbvr/kresus:0.22.137e216b182c8
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1
1
buntha/mlflow:2.1.1154542cc3083
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
wget@1.21.3-1+b2
1.21.3-1+deb12u1
1
chetangautamm/repo:sipp.v3e7f7049e1544
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1
1
chubaofs/cfs-client:3.2.015ff74209ce7
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
chubaofs/cfs-server:3.2.0205030e045f2
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
clickhouse/clickhouse-server:24.4.12e6587b81a26
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
1
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
1
cloudve/ttyd:latestd79c1c5881c0
wget@1.19.4-1ubuntu2.2
1.19.4-1ubuntu2.2+esm1
1
cm2network/csgo:sourcemod93df54a2e4fb
wget@1.21-1+deb11u1
1.21-1+deb11u2
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
wget@1.19.5-10.el8
0:1.19.5-12.el8_10
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
wget@1.19.5-10.el8
0:1.19.5-12.el8_10
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
wget@1.19.5-10.el8
0:1.19.5-10.el8_6.2
1
confluentinc/cp-kafka:7.4.4c0224a1adf7a
wget@1.19.5-11.el8
0:1.19.5-12.el8_10
1
confluentinc/cp-kafka:7.5.1dc9b972db002
wget@1.19.5-11.el8
0:1.19.5-12.el8_10
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.