StackRadar

CVE-2024-39689

High

Advisory

Published 5 Jul 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.010
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
391
of 17,781 indexed, latest versions
Container images
413
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 391 of 17,781 indexed charts deploy, on 413 images.

Affected packageAffected versionsFixed inImages
certifipypi2017.11.05, 2018.10.15, 2018.11.29, 2019.11.28+13 more2024.7.4413
python-certifideb2022.9.24-1no fix listed15
OSV records
DEBIAN-CVE-2024-39689PYSEC-2024-230
Also known as
GHSA-248v-346w-9cwc

Charts affected

391 by stars
ChartLatestAffected imagesRadar Score
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
certifi@2021.10.8
2024.7.4

Open the chart page →

21,997
docker-registryslamdev0.0.41 of 2See more

docker-registry slamdev 0.0.4

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hcguersoy/cleanreg:v0.8.063b76fdcfbe1
certifi@2021.10.8
2024.7.4

Open the chart page →

1,949
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
certifi@2019.11.28
2024.7.4

Open the chart page →

8,694
frigatesmarthallVerified publisher1.0.61 of 1See more

frigate smarthall 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ghcr.io/blakeblackshear/frigate:0.12.0c862771e38e8
certifi@2022.12.7
2024.7.4

Open the chart page →

2,243
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
certifi@2024.2.2
2024.7.4

Open the chart page →

5,565
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
helga09/my_sql_shoes:v1.1.1a03657d97897
certifi@2022.9.24
2024.7.4

Open the chart page →

7,574
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
certifi@2019.11.28
2024.7.4

Open the chart page →

30,687
ambassador-manifestssqream-chartsVerified publisher0.6.31 of 1See more

ambassador-manifests sqream-charts 0.6.3

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
datawire/aes:3.11.195ec30b3c732
certifi@2024.2.2
2024.7.4

Open the chart page →

2,416
downscalersqream-chartsVerified publisher1.0.01 of 1See more

downscaler sqream-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.05d328c003efe
certifi@2022.9.14
2024.7.4

Open the chart page →

1,009
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
certifi@2024.2.2
2024.7.4

Open the chart page →

20,223
storageclass-routerstorageclass-routerVerified publisher0.4.11 of 1See more

storageclass-router storageclass-router 0.4.1

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/maxiv/storageclass-router:0.4.160725dab588c
certifi@2024.2.2
2024.7.4

Open the chart page →

1,058
sn-consolestreamnative1.13.01 of 1See more

sn-console streamnative 1.13.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
streamnative/private-cloud-console:v2.3.27-all91e54375e154
certifi@2024.2.2
2024.7.4

Open the chart page →

1,827
studygovernorstudy-governorVerified publisher0.1.381 of 3See more

studygovernor study-governor 0.1.38

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
certifi@2023.11.17
2024.7.4

Open the chart page →

1,447
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
certifi@2024.2.2
2024.7.4

Open the chart page →

13,390
freeradiussvtech-public-helm-charts0.1.51 of 4See more

freeradius svtech-public-helm-charts 0.1.5

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4

Open the chart page →

12,655
icinga2svtech-public-helm-charts1.0.01 of 4See more

icinga2 svtech-public-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_icinga2:v1.1.667be2aba9436
certifi@2023.11.17
2024.7.4

Open the chart page →

5,511
icinga2-reportsvtech-public-helm-charts1.0.01 of 1See more

icinga2-report svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
trungkien210493/icinga2-report:v1.7.12cc8c3763c4c
certifi@2018.11.29
2024.7.4

Open the chart page →

1,779
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4

Open the chart page →

5,841
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
certifi@2022.5.18.1
2024.7.4

Open the chart page →

18,756
rundeck-option-providersvtech-public-helm-charts1.0.01 of 2See more

rundeck-option-provider svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck_option_provider:v1.1.1674fad30a51f
certifi@2023.11.17
2024.7.4

Open the chart page →

1,428
agentssynapse0.1.301 of 9See more

agents synapse 0.1.30

1 of the 9 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

7,244
scribesynapse0.2.161 of 7See more

scribe synapse 0.2.16

1 of the 7 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

2,680
sinnersynapse0.1.01 of 6See more

sinner synapse 0.1.0

1 of the 6 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

1,955
democharttech-challenge0.1.01 of 4See more

demochart tech-challenge 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
alexvm6/generator:latestfb99ee4f760a
certifi@2023.5.7
2024.7.4

Open the chart page →

3,632
rundeck-exportertechpreta0.1.91 of 1See more

rundeck-exporter techpreta 0.1.9

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
phsmith/rundeck-exporter:2.6.10265a7616ae8
certifi@2023.5.7
2024.7.4

Open the chart page →

1,105
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4

Open the chart page →

17,461
tezos-nodetezos-nodeVerified publisher1.0.01 of 4See more

tezos-node tezos-node 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
oxheadalpha/tezos-k8s-utils:5.3.4d9faed45bf1c
certifi@2021.10.8
2024.7.4

Open the chart page →

5,321
monitoringthl-chartsVerified publisher0.1.11 of 10See more

monitoring thl-charts 0.1.1

1 of the 10 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
certifi@2021.10.8
2024.7.4

Open the chart page →

18,908
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.78.0def97fd537d8
certifi@2022.12.7
2024.7.4

Open the chart page →

3,164
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
certifi@2022.6.15.1
2024.7.4

Open the chart page →

8,607
phonebook-chartusuladams2Verified publisher0.2.11 of 3See more

phonebook-chart usuladams2 0.2.1

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4

Open the chart page →

3,176
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
certifi@2024.2.2
2024.7.4

Open the chart page →

9,347
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
certifi@2023.7.22
2024.7.4

Open the chart page →

7,085
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
certifi@2021.10.8
2024.7.4

Open the chart page →

2,670
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
datawire/emissary:3.12.21f67a1292d2a
certifi@2024.2.2
2024.7.4

Open the chart page →

10,843
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
certifi@2022.9.24
python-certifi@2022.9.24-1
2024.7.4
no fix listed

Open the chart page →

9,117
ceph-csi-cephfswikimedia0.1.81 of 5See more

ceph-csi-cephfs wikimedia 0.1.8

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4

Open the chart page →

10,285
ceph-csi-rbdwikimedia0.1.131 of 6See more

ceph-csi-rbd wikimedia 0.1.13

1 of the 6 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4

Open the chart page →

11,784
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
certifi@2023.7.22
2024.7.4

Open the chart page →

5,542
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
certifi@2021.10.8
2024.7.4

Open the chart page →

2,643
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
certifi@2022.12.7
2024.7.4

Open the chart page →

1,838

Container images carrying it

413 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
certifi@2024.6.2
2024.7.4
1
deconzcommunity/deconz:2.29.2062de2362641
certifi@2022.9.24
python-certifi@2022.9.24-1
2024.7.4
no fix listed
1
deepflowce/deepflow-app:v6.2.6.5a1888d35e787
certifi@2021.10.8
2024.7.4
1
deepflowce/mysql:8.0.313d7ae561cf60
certifi@2022.6.15
2024.7.4
1
devopstales/kube-openid-connector:1.042c40a0e9f1b
certifi@2021.10.8
2024.7.4
1
devopstales/trivy-operator:2.575136aa7a26e
certifi@2022.12.7
2024.7.4
1
djjudas21/autonodelabel:0.0.6f17233350c4f
certifi@2023.7.22
2024.7.4
1
dockerid31415926/pod-pvc-mapping:v0.1.3354309669f16
certifi@2021.10.8
2024.7.4
1
dockerid31415926/pvc-exporter:v0.1.35a1dd17e0e07
certifi@2021.10.8
2024.7.4
1
douz/helpdesk:latest4384103d0219
certifi@2022.6.15
2024.7.4
1
dpage/pgadmin4:8.418cd5711fc9a
certifi@2024.2.2
2024.7.4
1
dpage/pgadmin4:7.537946e4f3e7b
certifi@2023.5.7
2024.7.4
1
eclipseaerios/hlo-allocator:v3.0.03cc1d94cfe96
certifi@2024.2.2
2024.7.4
1
eclipseaerios/hlo-data-aggregator:v3.0.0b433c2b9f5dc
certifi@2024.2.2
2024.7.4
1
eclipseaerios/hlo-deployment-engine:v3.0.0d582d39208c7
certifi@2023.11.17
2024.7.4
1
eclipseaerios/hlo-fe-engine:v3.0.08ed2df4ca692
certifi@2024.2.2
2024.7.4
1
elautoestopista/raponchi:0.3.0b6f74db9fc81
certifi@2024.6.2
2024.7.4
1
elyra/kernel-image-puller:3.2.2c922f1f1646a
certifi@2022.12.7
2024.7.4
1
errbotio/errbot:6.1.900ee4e0953ab
certifi@2022.5.18.1
2024.7.4
1
esphome/esphome:2024.3.09ab8cc88b28c
certifi@2024.2.2
2024.7.4
1
evgkrsk/postgres-controller:0.6.237f0e1f435c3
certifi@2022.12.7
2024.7.4
1
evk02/mlflow:2.2.1ef6ff257ef35
certifi@2022.12.7
2024.7.4
1
factly/hunting:0.2.0-stagv1.2ca5bc71d1d5c
certifi@2022.12.7
2024.7.4
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
certifi@2019.11.28
2024.7.4
1
flag5/clustersecret:0.0.94ad5748bfcc6
certifi@2021.10.8
2024.7.4
1
fossology/fossology:4.2.18bd1f22ba7bb
certifi@2022.9.24
2024.7.4
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
certifi@2022.12.7
2024.7.4
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
certifi@2022.6.15
2024.7.4
1
galaxy/cloudman-server:lateste5c265fe9fcd
certifi@2022.9.14
2024.7.4
1
galaxy/galaxy-init:v18.010267bad550e6
certifi@2017.11.05
2024.7.4
1
gethue/hue:4.11.011b649636e68
certifi@2022.12.7
2024.7.4
1
gethue/hue:4.10.05702b2c37ff9
certifi@2021.5.30
2024.7.4
1
getsentry/sentry-kubernetes:latest6ac37974fd2a
certifi@2018.11.29
2024.7.4
1
gmaas2/github-api:latest148fc2d9afe9
certifi@2022.12.7
2024.7.4
1
goofball222/pritunl:1.30.3070.5943c0743701d4
certifi@2021.10.8
2024.7.4
1
goofball222/pritunl:1.32.3602.807bf26032dfce
certifi@2022.12.7
2024.7.4
1
greenbirdit/locust:0.9.0e99d53bdc944
certifi@2018.11.29
2024.7.4
1
gristlabs/grist:0.7.96e71b1914a7e
certifi@2021.10.8
2024.7.4
1
ha33ona/python:test6affdfc644d0
certifi@2022.12.7
2024.7.4
1
hamidyousefi93/saam-test:latestc34f071f6ed0
certifi@2023.11.17
2024.7.4
1
haveagitgat/tdarr:2.00.181256348872ce
certifi@2019.11.28
2024.7.4
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
certifi@2019.11.28
2024.7.4
1
haveagitgat/tdarr_node:2.17.013ff0913202dd
certifi@2019.11.28
2024.7.4
1
hcguersoy/cleanreg:v0.8.063b76fdcfbe1
certifi@2021.10.8
2024.7.4
1
healthchecks/healthchecks:v2.8.1e82bb0836e30
certifi@2022.12.7
2024.7.4
1
helga09/my_sql_shoes:v1.1.1a03657d97897
certifi@2022.9.24
2024.7.4
1
hhyo/archery:v1.9.11aa41843419e
certifi@2022.9.24
2024.7.4
1
hiboxsystems/marge-bot:0.12.1a96c10b61a59
certifi@2023.7.22
2024.7.4
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
certifi@2023.11.17
2024.7.4
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
certifi@2023.7.22
2024.7.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.