StackRadar

CVE-2024-39689

High

Advisory

Published 5 Jul 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.010
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
391
of 17,781 indexed, latest versions
Container images
413
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 391 of 17,781 indexed charts deploy, on 413 images.

Affected packageAffected versionsFixed inImages
certifipypi2017.11.05, 2018.10.15, 2018.11.29, 2019.11.28+13 more2024.7.4413
python-certifideb2022.9.24-1no fix listed15
OSV records
DEBIAN-CVE-2024-39689PYSEC-2024-230
Also known as
GHSA-248v-346w-9cwc

Charts affected

391 by stars
ChartLatestAffected imagesRadar Score
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
certifi@2021.10.8
2024.7.4

Open the chart page →

21,997
docker-registryslamdev0.0.41 of 2See more

docker-registry slamdev 0.0.4

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hcguersoy/cleanreg:v0.8.063b76fdcfbe1
certifi@2021.10.8
2024.7.4

Open the chart page →

1,949
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
certifi@2019.11.28
2024.7.4

Open the chart page →

8,694
frigatesmarthallVerified publisher1.0.61 of 1See more

frigate smarthall 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ghcr.io/blakeblackshear/frigate:0.12.0c862771e38e8
certifi@2022.12.7
2024.7.4

Open the chart page →

2,243
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
certifi@2024.2.2
2024.7.4

Open the chart page →

5,565
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
helga09/my_sql_shoes:v1.1.1a03657d97897
certifi@2022.9.24
2024.7.4

Open the chart page →

7,574
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
certifi@2019.11.28
2024.7.4

Open the chart page →

30,687
ambassador-manifestssqream-chartsVerified publisher0.6.31 of 1See more

ambassador-manifests sqream-charts 0.6.3

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
datawire/aes:3.11.195ec30b3c732
certifi@2024.2.2
2024.7.4

Open the chart page →

2,416
downscalersqream-chartsVerified publisher1.0.01 of 1See more

downscaler sqream-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.05d328c003efe
certifi@2022.9.14
2024.7.4

Open the chart page →

1,009
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
certifi@2024.2.2
2024.7.4

Open the chart page →

20,223
storageclass-routerstorageclass-routerVerified publisher0.4.11 of 1See more

storageclass-router storageclass-router 0.4.1

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/maxiv/storageclass-router:0.4.160725dab588c
certifi@2024.2.2
2024.7.4

Open the chart page →

1,058
sn-consolestreamnative1.13.01 of 1See more

sn-console streamnative 1.13.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
streamnative/private-cloud-console:v2.3.27-all91e54375e154
certifi@2024.2.2
2024.7.4

Open the chart page →

1,827
studygovernorstudy-governorVerified publisher0.1.381 of 3See more

studygovernor study-governor 0.1.38

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
certifi@2023.11.17
2024.7.4

Open the chart page →

1,447
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
certifi@2024.2.2
2024.7.4

Open the chart page →

13,390
freeradiussvtech-public-helm-charts0.1.51 of 4See more

freeradius svtech-public-helm-charts 0.1.5

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4

Open the chart page →

12,655
icinga2svtech-public-helm-charts1.0.01 of 4See more

icinga2 svtech-public-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_icinga2:v1.1.667be2aba9436
certifi@2023.11.17
2024.7.4

Open the chart page →

5,511
icinga2-reportsvtech-public-helm-charts1.0.01 of 1See more

icinga2-report svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
trungkien210493/icinga2-report:v1.7.12cc8c3763c4c
certifi@2018.11.29
2024.7.4

Open the chart page →

1,779
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4

Open the chart page →

5,841
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
certifi@2022.5.18.1
2024.7.4

Open the chart page →

18,756
rundeck-option-providersvtech-public-helm-charts1.0.01 of 2See more

rundeck-option-provider svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck_option_provider:v1.1.1674fad30a51f
certifi@2023.11.17
2024.7.4

Open the chart page →

1,428
agentssynapse0.1.301 of 9See more

agents synapse 0.1.30

1 of the 9 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

7,244
scribesynapse0.2.161 of 7See more

scribe synapse 0.2.16

1 of the 7 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

2,680
sinnersynapse0.1.01 of 6See more

sinner synapse 0.1.0

1 of the 6 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

1,955
democharttech-challenge0.1.01 of 4See more

demochart tech-challenge 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
alexvm6/generator:latestfb99ee4f760a
certifi@2023.5.7
2024.7.4

Open the chart page →

3,632
rundeck-exportertechpreta0.1.91 of 1See more

rundeck-exporter techpreta 0.1.9

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
phsmith/rundeck-exporter:2.6.10265a7616ae8
certifi@2023.5.7
2024.7.4

Open the chart page →

1,105
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4

Open the chart page →

17,461
tezos-nodetezos-nodeVerified publisher1.0.01 of 4See more

tezos-node tezos-node 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
oxheadalpha/tezos-k8s-utils:5.3.4d9faed45bf1c
certifi@2021.10.8
2024.7.4

Open the chart page →

5,321
monitoringthl-chartsVerified publisher0.1.11 of 10See more

monitoring thl-charts 0.1.1

1 of the 10 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
certifi@2021.10.8
2024.7.4

Open the chart page →

18,908
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.78.0def97fd537d8
certifi@2022.12.7
2024.7.4

Open the chart page →

3,164
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
certifi@2022.6.15.1
2024.7.4

Open the chart page →

8,607
phonebook-chartusuladams2Verified publisher0.2.11 of 3See more

phonebook-chart usuladams2 0.2.1

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4

Open the chart page →

3,176
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
certifi@2024.2.2
2024.7.4

Open the chart page →

9,347
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
certifi@2023.7.22
2024.7.4

Open the chart page →

7,085
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
certifi@2021.10.8
2024.7.4

Open the chart page →

2,670
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
datawire/emissary:3.12.21f67a1292d2a
certifi@2024.2.2
2024.7.4

Open the chart page →

10,843
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
certifi@2022.9.24
python-certifi@2022.9.24-1
2024.7.4
no fix listed

Open the chart page →

9,117
ceph-csi-cephfswikimedia0.1.81 of 5See more

ceph-csi-cephfs wikimedia 0.1.8

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4

Open the chart page →

10,285
ceph-csi-rbdwikimedia0.1.131 of 6See more

ceph-csi-rbd wikimedia 0.1.13

1 of the 6 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4

Open the chart page →

11,784
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
certifi@2023.7.22
2024.7.4

Open the chart page →

5,542
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
certifi@2021.10.8
2024.7.4

Open the chart page →

2,643
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
certifi@2022.12.7
2024.7.4

Open the chart page →

1,838

Container images carrying it

413 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
pschiffe/pdns-admin:0.4.137ebba8c2b8f
certifi@2022.12.7
2024.7.4
1
pyaephyohein/mysql2s3bk:alphafdee05f2d441
certifi@2023.5.7
2024.7.4
1
qichenxu4pd/mysqlweb:1.2d758d41d9c6b
certifi@2024.2.2
2024.7.4
1
rdavidoff/twitch-channel-points-miner-v2:1.8.67ae4c5135771
certifi@2023.7.22
2024.7.4
1
redash/redash:10.0.0.b503639392753c0376
certifi@2021.5.30
2024.7.4
1
redislabs/redisearch:2.4.1433561794c5c8
certifi@2022.6.15
2024.7.4
1
redislabs/redisinsight:1.14.0b03ab1426d0d
certifi@2022.12.7
2024.7.4
1
reportportal/service-auto-analyzer:5.7.295ada4a216ce
certifi@2022.6.15
2024.7.4
1
reportportal/service-metrics-gatherer:1.1.202a0e6dc11161
certifi@2022.6.15
2024.7.4
1
rezachalak/bzen-mongo:1.0.034f694325191
certifi@2023.7.22
2024.7.4
1
roadiehq/community-backstage-image:latestef355bf5b639
certifi@2021.5.30
2024.7.4
1
robmarkcole/deepstack-ui:latest410275726459
certifi@2021.5.30
2024.7.4
1
robotshop/rs-payment:latest774b52c6180d
certifi@2021.5.30
2024.7.4
1
robustadev/krr:v1.30.0b8d782e568c7
certifi@2024.2.2
2024.7.4
1
rook/ceph:v1.20.72f970c425617
certifi@2023.5.7
2024.7.4
1
rook/ceph:v1.19.2944a1dd70496
certifi@2023.5.7
2024.7.4
1
runx1/opta-agent:latest0ca3867d3200
certifi@2021.10.8
2024.7.4
1
saltstack/salt:3006.3e9c7906b7a5c
certifi@2023.7.22
2024.7.4
1
santisbon/evwatcher:latestc4e994ca4540
certifi@2023.7.22
2024.7.4
1
santisbon/speedtest:latest8ee3a1697227
certifi@2023.7.22
2024.7.4
1
seafileltd/seafile-mc:9.0.106693911bcc40
certifi@2019.11.28
2024.7.4
1
seafileltd/seafile-mc:10.0.170628f29c663
certifi@2022.12.7
2024.7.4
1
seafileltd/seafile-mc:9.0.97ac833196f60
certifi@2019.11.28
2024.7.4
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
certifi@2019.11.28
2024.7.4
1
searx/searx:1.0.0-211-968b28993dbb3a6d9419
certifi@2021.5.30
2024.7.4
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
certifi@2021.10.8
2024.7.4
1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
certifi@2024.6.2
2024.7.4
1
sirrend/helmup-notifications-service:0.1.3997866417011
certifi@2024.2.2
2024.7.4
1
skylenet/ethereum-genesis-generator:latest210353ce7c89
certifi@2022.9.24
2024.7.4
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
certifi@2023.7.22
2024.7.4
1
socialmediamacroscope/classification_predict:0.1.24fb86885d64d
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/classification_split:0.1.24bfda60829fe
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/classification_train:0.1.207477060bba8
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/clowder_create_collection:0.1.0c969f7677983
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/clowder_create_dataset:0.1.09b4211832429
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/clowder_create_space:0.1.0999f2ff2c128
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/clowder_list:0.1.051cb17626519
certifi@2023.5.7
2024.7.4
1
socialmediamacroscope/clowder_upload_file:0.1.274e35f64db68
certifi@2023.5.7
2024.7.4
1
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
certifi@2024.2.2
2024.7.4
1
socialmediamacroscope/image_crawler:0.1.2f508216be63c
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
certifi@2023.7.22
2024.7.4
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
certifi@2023.7.22
2024.7.4
1
socialmediamacroscope/screen_name_prompt:0.1.2724f3f5702e0
certifi@2022.12.7
2024.7.4
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
certifi@2023.7.22
2024.7.4
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
certifi@2019.11.28
2024.7.4
1
stackstorm/st2actionrunner:3.888235ba70cad
certifi@2023.11.17
2024.7.4
1
stackstorm/st2api:3.86f56d239d280
certifi@2019.11.28
2024.7.4
1
stackstorm/st2auth:3.833ecfda16608
certifi@2023.11.17
2024.7.4
1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
certifi@2019.11.28
2024.7.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.