StackRadar

CVE-2024-39689

High

Advisory

Published 5 Jul 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.010
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
391
of 17,781 indexed, latest versions
Container images
413
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 391 of 17,781 indexed charts deploy, on 413 images.

Affected packageAffected versionsFixed inImages
certifipypi2017.11.05, 2018.10.15, 2018.11.29, 2019.11.28+13 more2024.7.4413
python-certifideb2022.9.24-1no fix listed15
OSV records
DEBIAN-CVE-2024-39689PYSEC-2024-230
Also known as
GHSA-248v-346w-9cwc

Charts affected

391 by stars
ChartLatestAffected imagesRadar Score
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
certifi@2021.10.8
2024.7.4

Open the chart page →

21,997
docker-registryslamdev0.0.41 of 2See more

docker-registry slamdev 0.0.4

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hcguersoy/cleanreg:v0.8.063b76fdcfbe1
certifi@2021.10.8
2024.7.4

Open the chart page →

1,949
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
certifi@2019.11.28
2024.7.4

Open the chart page →

8,694
frigatesmarthallVerified publisher1.0.61 of 1See more

frigate smarthall 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ghcr.io/blakeblackshear/frigate:0.12.0c862771e38e8
certifi@2022.12.7
2024.7.4

Open the chart page →

2,243
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
certifi@2024.2.2
2024.7.4

Open the chart page →

5,565
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
helga09/my_sql_shoes:v1.1.1a03657d97897
certifi@2022.9.24
2024.7.4

Open the chart page →

7,574
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
certifi@2019.11.28
2024.7.4

Open the chart page →

30,687
ambassador-manifestssqream-chartsVerified publisher0.6.31 of 1See more

ambassador-manifests sqream-charts 0.6.3

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
datawire/aes:3.11.195ec30b3c732
certifi@2024.2.2
2024.7.4

Open the chart page →

2,416
downscalersqream-chartsVerified publisher1.0.01 of 1See more

downscaler sqream-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.05d328c003efe
certifi@2022.9.14
2024.7.4

Open the chart page →

1,009
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
certifi@2024.2.2
2024.7.4

Open the chart page →

20,223
storageclass-routerstorageclass-routerVerified publisher0.4.11 of 1See more

storageclass-router storageclass-router 0.4.1

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/maxiv/storageclass-router:0.4.160725dab588c
certifi@2024.2.2
2024.7.4

Open the chart page →

1,058
sn-consolestreamnative1.13.01 of 1See more

sn-console streamnative 1.13.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
streamnative/private-cloud-console:v2.3.27-all91e54375e154
certifi@2024.2.2
2024.7.4

Open the chart page →

1,827
studygovernorstudy-governorVerified publisher0.1.381 of 3See more

studygovernor study-governor 0.1.38

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
certifi@2023.11.17
2024.7.4

Open the chart page →

1,447
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
certifi@2024.2.2
2024.7.4

Open the chart page →

13,390
freeradiussvtech-public-helm-charts0.1.51 of 4See more

freeradius svtech-public-helm-charts 0.1.5

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4

Open the chart page →

12,655
icinga2svtech-public-helm-charts1.0.01 of 4See more

icinga2 svtech-public-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_icinga2:v1.1.667be2aba9436
certifi@2023.11.17
2024.7.4

Open the chart page →

5,511
icinga2-reportsvtech-public-helm-charts1.0.01 of 1See more

icinga2-report svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
trungkien210493/icinga2-report:v1.7.12cc8c3763c4c
certifi@2018.11.29
2024.7.4

Open the chart page →

1,779
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4

Open the chart page →

5,841
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
certifi@2022.5.18.1
2024.7.4

Open the chart page →

18,756
rundeck-option-providersvtech-public-helm-charts1.0.01 of 2See more

rundeck-option-provider svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck_option_provider:v1.1.1674fad30a51f
certifi@2023.11.17
2024.7.4

Open the chart page →

1,428
agentssynapse0.1.301 of 9See more

agents synapse 0.1.30

1 of the 9 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

7,244
scribesynapse0.2.161 of 7See more

scribe synapse 0.2.16

1 of the 7 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

2,680
sinnersynapse0.1.01 of 6See more

sinner synapse 0.1.0

1 of the 6 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

1,955
democharttech-challenge0.1.01 of 4See more

demochart tech-challenge 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
alexvm6/generator:latestfb99ee4f760a
certifi@2023.5.7
2024.7.4

Open the chart page →

3,632
rundeck-exportertechpreta0.1.91 of 1See more

rundeck-exporter techpreta 0.1.9

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
phsmith/rundeck-exporter:2.6.10265a7616ae8
certifi@2023.5.7
2024.7.4

Open the chart page →

1,105
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4

Open the chart page →

17,461
tezos-nodetezos-nodeVerified publisher1.0.01 of 4See more

tezos-node tezos-node 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
oxheadalpha/tezos-k8s-utils:5.3.4d9faed45bf1c
certifi@2021.10.8
2024.7.4

Open the chart page →

5,321
monitoringthl-chartsVerified publisher0.1.11 of 10See more

monitoring thl-charts 0.1.1

1 of the 10 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
certifi@2021.10.8
2024.7.4

Open the chart page →

18,908
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.78.0def97fd537d8
certifi@2022.12.7
2024.7.4

Open the chart page →

3,164
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
certifi@2022.6.15.1
2024.7.4

Open the chart page →

8,607
phonebook-chartusuladams2Verified publisher0.2.11 of 3See more

phonebook-chart usuladams2 0.2.1

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4

Open the chart page →

3,176
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
certifi@2024.2.2
2024.7.4

Open the chart page →

9,347
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
certifi@2023.7.22
2024.7.4

Open the chart page →

7,085
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
certifi@2021.10.8
2024.7.4

Open the chart page →

2,670
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
datawire/emissary:3.12.21f67a1292d2a
certifi@2024.2.2
2024.7.4

Open the chart page →

10,843
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
certifi@2022.9.24
python-certifi@2022.9.24-1
2024.7.4
no fix listed

Open the chart page →

9,117
ceph-csi-cephfswikimedia0.1.81 of 5See more

ceph-csi-cephfs wikimedia 0.1.8

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4

Open the chart page →

10,285
ceph-csi-rbdwikimedia0.1.131 of 6See more

ceph-csi-rbd wikimedia 0.1.13

1 of the 6 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4

Open the chart page →

11,784
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
certifi@2023.7.22
2024.7.4

Open the chart page →

5,542
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
certifi@2021.10.8
2024.7.4

Open the chart page →

2,643
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
certifi@2022.12.7
2024.7.4

Open the chart page →

1,838

Container images carrying it

413 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
certifi@2021.10.8
2024.7.4
1
ghcr.io/flaresolverr/flaresolverr:v3.3.16088412db1051
certifi@2023.7.22
2024.7.4
1
ghcr.io/flaresolverr/flaresolverr:v3.3.21f104ee51e512
certifi@2023.7.22
2024.7.4
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
certifi@2019.11.28
2024.7.4
1
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
certifi@2021.10.8
2024.7.4
1
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
certifi@2023.11.17
2024.7.4
1
ghcr.io/ideamixes/object-cloner:2.0.031030fd2f192
certifi@2023.7.22
2024.7.4
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
certifi@2023.11.17
2024.7.4
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
certifi@2022.6.15
2024.7.4
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
certifi@2021.5.30
2024.7.4
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
certifi@2021.10.8
2024.7.4
1
ghcr.io/kokuwaio/gcloud-mysql:v3.2.1963098135c550
certifi@2024.2.2
2024.7.4
1
ghcr.io/kubeshop/k8s-sidecar:ignore-initial-events7f583a36a764
certifi@2022.9.24
2024.7.4
1
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
certifi@2023.7.22
2024.7.4
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
certifi@2022.6.15
2024.7.4
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
certifi@2022.12.7
2024.7.4
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
certifi@2024.2.2
2024.7.4
1
ghcr.io/mglants/kea-dhcp:2.5.8e1b6eb9e37f9
certifi@2024.2.2
2024.7.4
1
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
certifi@2022.12.7
2024.7.4
1
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
certifi@2022.12.7
2024.7.4
1
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
certifi@2024.2.2
2024.7.4
1
ghcr.io/mlops-for-all/mlflow-tracking-server:3.8-1.30.1-v1.0.0d30e631684c3
certifi@2023.5.7
2024.7.4
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
certifi@2024.2.2
2024.7.4
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
certifi@2023.5.7
2024.7.4
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
certifi@2023.11.17
2024.7.4
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
certifi@2023.11.17
2024.7.4
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
certifi@2023.11.17
2024.7.4
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
certifi@2023.11.17
2024.7.4
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
certifi@2023.11.17
2024.7.4
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
certifi@2023.7.22
2024.7.4
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
certifi@2022.6.15
2024.7.4
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
certifi@2023.7.22
2024.7.4
1
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
certifi@2024.2.2
2024.7.4
1
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
certifi@2024.2.2
2024.7.4
1
ghcr.io/puckpuck/seashell:1.2ef5e31333821
certifi@2023.7.22
2024.7.4
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
certifi@2023.7.22
2024.7.4
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
certifi@2023.5.7
2024.7.4
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
certifi@2023.5.7
2024.7.4
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
certifi@2023.5.7
2024.7.4
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
certifi@2022.9.24
2024.7.4
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
certifi@2022.9.24
2024.7.4
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
certifi@2024.2.2
2024.7.4
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
certifi@2023.7.22
2024.7.4
1
mcr.microsoft.com/oss/v2/kubernetes-csi/azurefile-csi:v1.35.76e43ba0bd009
certifi@2024.2.2
2024.7.4
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
certifi@2019.11.28
2024.7.4
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
certifi@2023.11.17
2024.7.4
1
quay.io/ceph/ceph:v21.1.05ff3692d2f3f
certifi@2023.5.7
2024.7.4
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
certifi@2022.5.18.1
2024.7.4
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
certifi@2023.7.22
2024.7.4
1
quay.io/evl.ms/argocd-exporter:0.0.136ea8f34aa6b
certifi@2021.5.30
2024.7.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.