StackRadar

CVE-2024-39689

High

Advisory

Published 5 Jul 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.010
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
391
of 17,781 indexed, latest versions
Container images
413
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 391 of 17,781 indexed charts deploy, on 413 images.

Affected packageAffected versionsFixed inImages
certifipypi2017.11.05, 2018.10.15, 2018.11.29, 2019.11.28+13 more2024.7.4413
python-certifideb2022.9.24-1no fix listed15
OSV records
DEBIAN-CVE-2024-39689PYSEC-2024-230
Also known as
GHSA-248v-346w-9cwc

Charts affected

391 by stars
ChartLatestAffected imagesRadar Score
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
certifi@2021.10.8
2024.7.4

Open the chart page →

21,997
docker-registryslamdev0.0.41 of 2See more

docker-registry slamdev 0.0.4

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hcguersoy/cleanreg:v0.8.063b76fdcfbe1
certifi@2021.10.8
2024.7.4

Open the chart page →

1,949
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
certifi@2019.11.28
2024.7.4

Open the chart page →

8,694
frigatesmarthallVerified publisher1.0.61 of 1See more

frigate smarthall 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ghcr.io/blakeblackshear/frigate:0.12.0c862771e38e8
certifi@2022.12.7
2024.7.4

Open the chart page →

2,243
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
certifi@2024.2.2
2024.7.4

Open the chart page →

5,565
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
helga09/my_sql_shoes:v1.1.1a03657d97897
certifi@2022.9.24
2024.7.4

Open the chart page →

7,574
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
certifi@2019.11.28
2024.7.4

Open the chart page →

30,687
ambassador-manifestssqream-chartsVerified publisher0.6.31 of 1See more

ambassador-manifests sqream-charts 0.6.3

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
datawire/aes:3.11.195ec30b3c732
certifi@2024.2.2
2024.7.4

Open the chart page →

2,416
downscalersqream-chartsVerified publisher1.0.01 of 1See more

downscaler sqream-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.05d328c003efe
certifi@2022.9.14
2024.7.4

Open the chart page →

1,009
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
certifi@2024.2.2
2024.7.4

Open the chart page →

20,223
storageclass-routerstorageclass-routerVerified publisher0.4.11 of 1See more

storageclass-router storageclass-router 0.4.1

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/maxiv/storageclass-router:0.4.160725dab588c
certifi@2024.2.2
2024.7.4

Open the chart page →

1,058
sn-consolestreamnative1.13.01 of 1See more

sn-console streamnative 1.13.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
streamnative/private-cloud-console:v2.3.27-all91e54375e154
certifi@2024.2.2
2024.7.4

Open the chart page →

1,827
studygovernorstudy-governorVerified publisher0.1.381 of 3See more

studygovernor study-governor 0.1.38

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
certifi@2023.11.17
2024.7.4

Open the chart page →

1,447
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
certifi@2024.2.2
2024.7.4

Open the chart page →

13,390
freeradiussvtech-public-helm-charts0.1.51 of 4See more

freeradius svtech-public-helm-charts 0.1.5

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4

Open the chart page →

12,655
icinga2svtech-public-helm-charts1.0.01 of 4See more

icinga2 svtech-public-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_icinga2:v1.1.667be2aba9436
certifi@2023.11.17
2024.7.4

Open the chart page →

5,511
icinga2-reportsvtech-public-helm-charts1.0.01 of 1See more

icinga2-report svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
trungkien210493/icinga2-report:v1.7.12cc8c3763c4c
certifi@2018.11.29
2024.7.4

Open the chart page →

1,779
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4

Open the chart page →

5,841
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
certifi@2022.5.18.1
2024.7.4

Open the chart page →

18,756
rundeck-option-providersvtech-public-helm-charts1.0.01 of 2See more

rundeck-option-provider svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck_option_provider:v1.1.1674fad30a51f
certifi@2023.11.17
2024.7.4

Open the chart page →

1,428
agentssynapse0.1.301 of 9See more

agents synapse 0.1.30

1 of the 9 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

7,244
scribesynapse0.2.161 of 7See more

scribe synapse 0.2.16

1 of the 7 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

2,680
sinnersynapse0.1.01 of 6See more

sinner synapse 0.1.0

1 of the 6 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4

Open the chart page →

1,955
democharttech-challenge0.1.01 of 4See more

demochart tech-challenge 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
alexvm6/generator:latestfb99ee4f760a
certifi@2023.5.7
2024.7.4

Open the chart page →

3,632
rundeck-exportertechpreta0.1.91 of 1See more

rundeck-exporter techpreta 0.1.9

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
phsmith/rundeck-exporter:2.6.10265a7616ae8
certifi@2023.5.7
2024.7.4

Open the chart page →

1,105
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4

Open the chart page →

17,461
tezos-nodetezos-nodeVerified publisher1.0.01 of 4See more

tezos-node tezos-node 1.0.0

1 of the 4 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
oxheadalpha/tezos-k8s-utils:5.3.4d9faed45bf1c
certifi@2021.10.8
2024.7.4

Open the chart page →

5,321
monitoringthl-chartsVerified publisher0.1.11 of 10See more

monitoring thl-charts 0.1.1

1 of the 10 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
certifi@2021.10.8
2024.7.4

Open the chart page →

18,908
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.78.0def97fd537d8
certifi@2022.12.7
2024.7.4

Open the chart page →

3,164
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
certifi@2022.6.15.1
2024.7.4

Open the chart page →

8,607
phonebook-chartusuladams2Verified publisher0.2.11 of 3See more

phonebook-chart usuladams2 0.2.1

1 of the 3 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4

Open the chart page →

3,176
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
certifi@2024.2.2
2024.7.4

Open the chart page →

9,347
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
certifi@2023.7.22
2024.7.4

Open the chart page →

7,085
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
certifi@2021.10.8
2024.7.4

Open the chart page →

2,670
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
datawire/emissary:3.12.21f67a1292d2a
certifi@2024.2.2
2024.7.4

Open the chart page →

10,843
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
certifi@2022.9.24
python-certifi@2022.9.24-1
2024.7.4
no fix listed

Open the chart page →

9,117
ceph-csi-cephfswikimedia0.1.81 of 5See more

ceph-csi-cephfs wikimedia 0.1.8

1 of the 5 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4

Open the chart page →

10,285
ceph-csi-rbdwikimedia0.1.131 of 6See more

ceph-csi-rbd wikimedia 0.1.13

1 of the 6 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4

Open the chart page →

11,784
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
certifi@2023.7.22
2024.7.4

Open the chart page →

5,542
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
certifi@2021.10.8
2024.7.4

Open the chart page →

2,643
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2024-39689.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
certifi@2022.12.7
2024.7.4

Open the chart page →

1,838

Container images carrying it

413 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/mysql:5.74bc6bc963e6d
certifi@2023.7.22
2024.7.4
22
cloudve/cloudlaunch-server:latest4a3d7fae90bb
certifi@2021.10.8
2024.7.4
3
mysql/mysql-server:latestd6c8301b7834
certifi@2022.9.24
2024.7.4
3
quay.io/kiwigrid/k8s-sidecar:1.14.235654389f8a9
certifi@2021.5.30
2024.7.4
3
amancevice/superset:0.35.212a0a9e66550
certifi@2019.11.28
2024.7.4
2
aquasec/kube-hunter:0.6.8e64fe49f059f
certifi@2021.10.8
2024.7.4
2
blakeblackshear/frigate:0.11.18330b0a265b8
certifi@2022.9.24
2024.7.4
2
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
certifi@2023.5.7
2024.7.4
2
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
certifi@2023.5.7
2024.7.4
2
cs3org/wopiserver:v9.4.202a9e78757b4
certifi@2022.12.7
2024.7.4
2
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
certifi@2023.5.7
2024.7.4
2
kiwigrid/k8s-sidecar:1.24.44138bea678f0
certifi@2023.5.7
2024.7.4
2
kiwigrid/k8s-sidecar:1.24.35af76eebbba7
certifi@2023.5.7
2024.7.4
2
langgenius/dify-sandbox:0.2.009b7e8705673
certifi@2024.2.2
2024.7.4
2
library/mysql:8.2.0212fe73edca5
certifi@2023.7.22
2024.7.4
2
library/mysql:8.4.2ac80b6e09e5b
certifi@2024.2.2
2024.7.4
2
lncm/specter-desktop:v1.10.536eaa06f99f4
certifi@2021.10.8
2024.7.4
2
louislam/uptime-kuma:2.5.4917318f9d7be
certifi@2022.9.24
python-certifi@2022.9.24-1
2024.7.4
no fix listed
2
louislam/uptime-kuma:2.3.29aeb4e51d038
certifi@2022.9.24
python-certifi@2022.9.24-1
2024.7.4
no fix listed
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
certifi@2022.9.24
python-certifi@2022.9.24-1
2024.7.4
no fix listed
2
neuvector/manager:3.2.1f1b7d666eae0
certifi@2019.11.28
2024.7.4
2
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
certifi@2021.10.8
2024.7.4
2
quay.io/cephcsi/cephcsi:v3.17.10b62db8afc9b
certifi@2023.5.7
2024.7.4
2
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
certifi@2018.10.15
2024.7.4
2
quay.io/kiwigrid/k8s-sidecar:1.19.26a8671702d6f
certifi@2022.5.18.1
2024.7.4
2
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
certifi@2024.2.2
2024.7.4
2
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
certifi@2024.6.2
2024.7.4
2
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
certifi@2019.11.28
2024.7.4
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
certifi@2019.11.28
2024.7.4
1
akeyless/base-rhel:0.0.14ba8900a0061
certifi@2024.2.2
2024.7.4
1
alerta/alerta-web:8.5.04786b9eaa606
certifi@2021.10.8
2024.7.4
1
alexvm6/generator:latestfb99ee4f760a
certifi@2023.5.7
2024.7.4
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
certifi@2022.6.15
2024.7.4
1
allegroai/clearml-serving-inference:1.3.0fca885e8cfc6
certifi@2022.12.7
2024.7.4
1
allegroai/clearml-serving-statistics:1.3.0c58d9da7bdf8
certifi@2022.12.7
2024.7.4
1
amd64/mysql:5.7e20a653e0f51
certifi@2023.7.22
2024.7.4
1
anchore/anchore-engine:v0.10.0bde9eedf639d
certifi@2021.5.30
2024.7.4
1
apache/airflow:2.8.4-python3.964e58748b6b9
certifi@2024.2.2
2024.7.4
1
apache/airflow:2.8.1e5560ad0b86e
certifi@2023.11.17
2024.7.4
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
certifi@2023.7.22
2024.7.4
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
certifi@2021.10.8
2024.7.4
1
apachepulsar/pulsar:2.9.0d056c89b7131
certifi@2021.10.8
2024.7.4
1
apachepulsar/pulsar:2.8.2d538416d5afe
certifi@2021.10.8
2024.7.4
1
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
certifi@2021.10.8
2024.7.4
1
apache/superset:4.0.1ab9467fd712c
certifi@2023.7.22
2024.7.4
1
aquasec/kube-hunter:1950bf607ce9308
certifi@2018.11.29
2024.7.4
1
aristidetm/k8s-hub:3.3.7ccb516cb8474
certifi@2024.2.2
2024.7.4
1
arunvelsriram/utils:latest655ad18fd8d6
certifi@2023.11.17
2024.7.4
1
assistiot/authorization_db:latestc3adbab6a3e7
certifi@2023.7.22
2024.7.4
1
assistiot/fl_local_operations_inference:latest0518b63a2e69
certifi@2023.7.22
2024.7.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.