StackRadar

CVE-2024-38428

Critical

Advisory

Published 16 Jun 2024In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
415
of 17,781 indexed, latest versions
Container images
398
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: wget security update

Carried by container images the latest versions of 415 of 17,781 indexed charts deploy, on 398 images.

Affected packageAffected versionsFixed inImages
wgetdeb1.15-1ubuntu1, 1.15-1ubuntu1.14.04.1, 1.15-1ubuntu1.14.04.4, 1.17.1-1ubuntu1.3+12 more1.15-1ubuntu1.14.04.5+esm2, 1.17.1-1ubuntu1.5+esm1, 1.19.4-1ubuntu2.2+esm1, 1.20.3-1ubuntu2.1+4 more370
wgetrpm1.19.5-8.el8_1.1, 1.19.5-10.el8, 1.19.5-11.el8, 1.21.1-7.el90:1.19.5-10.el8_6.2, 0:1.19.5-12.el8_10, 0:1.21.1-8.el9_428
OSV records
DEBIAN-CVE-2024-38428UBUNTU-CVE-2024-38428RHSA-2024:4998RHSA-2024:5299RHSA-2024:6192RLSA-2024:5299DLA-4133-1
Also known as
RHSA-2024:6208, USN-6852-1, USN-6852-2, USN-8543-1

Charts affected

415 by stars
ChartLatestAffected imagesRadar Score
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
wget@1.21.3-1+b2
1.21.3-1+deb12u1

Open the chart page →

17,323
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
wget@1.21.4-1ubuntu4
1.21.4-1ubuntu4.1

Open the chart page →

45,239
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
wget@1.21.3-1+b2
1.21.3-1+deb12u1

Open the chart page →

14,358
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1

Open the chart page →

9,347
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
wget@1.21-1+deb11u1
1.21-1+deb11u2

Open the chart page →

3,392
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1

Open the chart page →

11,119
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
wget@1.21-1+deb11u1
1.21-1+deb11u2

Open the chart page →

9,397
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1

Open the chart page →

9,130
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1

Open the chart page →

9,130
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1

Open the chart page →

14,364
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1

Open the chart page →

28,605
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1

Open the chart page →

9,248
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
murtazashah46/helmfile:latest4d11726cf803
wget@1.21.3-1+b2
1.21.3-1+deb12u1

Open the chart page →

13,677
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
wget@1.21-1+deb11u1
1.21-1+deb11u2

Open the chart page →

1,838
clickhousezloi-space1.2.01 of 3See more

clickhouse zloi-space 1.2.0

1 of the 3 container images this version deploys carry CVE-2024-38428.

Container imageDigestPackageFixed in
yandex/clickhouse-server:21.3.204eccfffb01d7
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1

Open the chart page →

9,207

Container images carrying it

398 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
oomk8s/readiness-check:2.0.2875814cc853d
wget@1.17.1-1ubuntu1.4
1.17.1-1ubuntu1.5+esm1
11
wurstmeister/kafka:latest2d4bbf9cc83d
wget@1.21-1+deb11u1
1.21-1+deb11u2
7
oomk8s/readiness-check:2.0.07daa08b81954
wget@1.17.1-1ubuntu1.3
1.17.1-1ubuntu1.5+esm1
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
wget@1.21.3-1+b2
1.21.3-1+deb12u1
6
solsson/kafka:latest41e5d8f6f290
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
5
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
wget@1.17.1-1ubuntu1.4
1.17.1-1ubuntu1.5+esm1
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
4
mastercloudapps/planner:v1.2340a950b311b2
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
4
codeurjc/planner:v1.0800cf520c245
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
3
library/influxdb:1.8:1.8.10299ebda2c7e3
wget@1.21-1+deb11u1
1.21-1+deb11u2
3
library/solr:8.11.18c5f7881cebb
wget@1.21-1+deb11u1
1.21-1+deb11u2
3
selenium/hub:3.141.5902f251d48d5f
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
wget@1.19.5-10.el8
0:1.19.5-10.el8_6.2
3
apache/nifi-registry:1.26.07cdfd8deec92
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
wget@1.21.4-1ubuntu4
1.21.4-1ubuntu4.1
2
blakeblackshear/frigate:0.11.18330b0a265b8
wget@1.21-1+deb11u1
1.21-1+deb11u2
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
wget@1.21.3-1+b2
1.21.3-1+deb12u1
2
clickhouse/clickhouse-server:24.2ed9640bfff07
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
2
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
wget@1.19.5-11.el8
0:1.19.5-12.el8_10
2
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
wget@1.19.5-11.el8
0:1.19.5-12.el8_10
2
dependencytrack/apiserver:4.6.3485ac0952c02
wget@1.21-1+deb11u1
1.21-1+deb11u2
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
wget@1.21.3-1+b1
1.21.3-1+deb12u1
2
hookiesolutions/webhookie:latest0629694246ba
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1
2
istio/examples-bookinfo-reviews-v1:1.14.0ee156b8aefd6
wget@1.17.1-1ubuntu1.4
1.17.1-1ubuntu1.5+esm1
2
istio/examples-bookinfo-reviews-v2:1.14.0eab80bcd2132
wget@1.17.1-1ubuntu1.4
1.17.1-1ubuntu1.5+esm1
2
istio/examples-bookinfo-reviews-v3:1.14.01e37fca43550
wget@1.17.1-1ubuntu1.4
1.17.1-1ubuntu1.5+esm1
2
langgenius/dify-sandbox:0.2.009b7e8705673
wget@1.21.3-1+b2
1.21.3-1+deb12u1
2
ldapaccountmanager/lam:8.0.1d46cf25d1dda
wget@1.21-1+deb11u1
1.21-1+deb11u2
2
library/cassandra:4.1.37cbcec0086ac
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
2
library/neo4j:5.20.052d3dec8d455
wget@1.21-1+deb11u1
1.21-1+deb11u2
2
library/neo4j:4.3.2-enterprise56a9453c4064
wget@1.21-1+deb11u1
1.21-1+deb11u2
2
library/python:3.7eedf63967cdb
wget@1.21.3-1+b2
1.21.3-1+deb12u1
2
mbentley/omada-controller:4.3f4e682274bed
wget@1.19.4-1ubuntu2.2
1.19.4-1ubuntu2.2+esm1
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
wget@1.21.3-1+b2
1.21.3-1+deb12u1
2
pecan/bety:5.4.1f825d480cd62
wget@1.21-1+b1
1.21-1+deb11u2
2
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
wget@1.21.3-1+b2
1.21.3-1+deb12u1
2
scorpiobroker/scorpio:config-server_1.1.0c46c1517e523
wget@1.21-1+b1
1.21-1+deb11u2
2
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d469:2.18.12-branch.testing3.88744-f55b3414bd113093583
wget@1.21.3-1+b2
1.21.3-1+deb12u1
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
2
uffizzi/controller:latest0344805f267b
wget@1.21.3-1+b2
1.21.3-1+deb12u1
2
wurstmeister/zookeeper:latest7a7fd44a7210
wget@1.15-1ubuntu1
1.15-1ubuntu1.14.04.5+esm2
2
yzhou442/equiz:latesta3f7ca69e28d
wget@1.21-1+deb11u1
1.21-1+deb11u2
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.1
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
wget@1.21.3-1+b2
1.21.3-1+deb12u1
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1
2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
wget@1.19.5-10.el8
0:1.19.5-12.el8_10
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
wget@1.19.5-10.el8
0:1.19.5-12.el8_10
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
wget@1.19.5-10.el8
0:1.19.5-12.el8_10
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.