StackRadar

CVE-2024-40464

High

Advisory

Published 31 Jul 2024In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
10
of 17,781 indexed, latest versions
Container images
14
deployed by those charts
Fix available
1 of 1
affected package

Beego privilege escalation vulnerability

Carried by container images the latest versions of 10 of 17,781 indexed charts deploy, on 14 images.

Affected packageAffected versionsFixed inImages
github.com/beego/beego/v2golangv2.0.6, v2.0.7, v2.1.1, v2.1.32.2.114
OSV records
GHSA-r6qh-j42j-pw64
Also known as
GO-2024-3016

Charts affected

10 by stars
ChartLatestAffected imagesRadar Score
navidromeemmas-chartsVerified publisher0.0.61 of 1See more

navidrome emmas-charts 0.0.6

1 of the 1 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
deluan/navidrome:0.50.02cf4442b0099
github.com/beego/beego/v2@v2.1.3
2.2.1

Open the chart page →

2,129
Navidromeemmas-chartsVerified publisher0.0.41 of 1See more

Navidrome emmas-charts 0.0.4

1 of the 1 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
deluan/navidrome:0.49.311a24da08977
github.com/beego/beego/v2@v2.0.7
2.2.1

Open the chart page →

2,837
harborsb-helm-charts0.3.01 of 2See more

harbor sb-helm-charts 0.3.0

1 of the 2 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
goharbor/harbor-core:v2.11.1c017dd84ee96
github.com/beego/beego/v2@v2.0.6
2.2.1

Open the chart page →

1,680
harborsoftonic1.13.03 of 8See more

harbor softonic 1.13.0

3 of the 8 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
goharbor/harbor-core:v2.9.06412d679fdc3
github.com/beego/beego/v2@v2.0.6
2.2.1
goharbor/harbor-jobservice:v2.9.039435daedd0c
github.com/beego/beego/v2@v2.0.6
2.2.1
goharbor/harbor-registryctl:v2.9.0cce272836449
github.com/beego/beego/v2@v2.0.6
2.2.1

Open the chart page →

7,672
oauth2xdVerified publisher1.0.01 of 1See more

oauth2 xd 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
lishimeng/hufu:v1.2.13d5752dac834
github.com/beego/beego/v2@v2.0.7
2.2.1

Open the chart page →

2,007
owlxdVerified publisher0.5.12 of 2See more

owl xd 0.5.1

2 of the 2 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
lishimeng/owl-console:v0.11.2c79a67657baf
github.com/beego/beego/v2@v2.1.3
2.2.1
lishimeng/owl-messager:v0.11.23d00485e64dc
github.com/beego/beego/v2@v2.1.3
2.2.1

Open the chart page →

3,880
passportxdVerified publisher0.2.162 of 2See more

passport xd 0.2.16

2 of the 2 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
lishimeng/passport:v0.2.163e7d05ded625
github.com/beego/beego/v2@v2.0.7
2.2.1
lishimeng/passport-profile:v0.2.160970dfe5dc8f
github.com/beego/beego/v2@v2.0.7
2.2.1

Open the chart page →

3,974
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
lishimeng/tabby:v1.0.48145c3dc83c8
github.com/beego/beego/v2@v2.0.7
2.2.1

Open the chart page →

7,673
treexdVerified publisher0.1.101 of 1See more

tree xd 0.1.10

1 of the 1 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
lishimeng/tree:v0.2.89b2f8be6c7d3
github.com/beego/beego/v2@v2.0.7
2.2.1

Open the chart page →

1,997
zooxdVerified publisher0.4.01 of 1See more

zoo xd 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-40464.

Container imageDigestPackageFixed in
lishimeng/zoo:v0.4.0e0b8d2d8ca28
github.com/beego/beego/v2@v2.1.1
2.2.1

Open the chart page →

1,955

Container images carrying it

14 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
deluan/navidrome:0.49.311a24da08977
github.com/beego/beego/v2@v2.0.7
2.2.1
1
deluan/navidrome:0.50.02cf4442b0099
github.com/beego/beego/v2@v2.1.3
2.2.1
1
goharbor/harbor-core:v2.9.06412d679fdc3
github.com/beego/beego/v2@v2.0.6
2.2.1
1
goharbor/harbor-core:v2.11.1c017dd84ee96
github.com/beego/beego/v2@v2.0.6
2.2.1
1
goharbor/harbor-jobservice:v2.9.039435daedd0c
github.com/beego/beego/v2@v2.0.6
2.2.1
1
goharbor/harbor-registryctl:v2.9.0cce272836449
github.com/beego/beego/v2@v2.0.6
2.2.1
1
lishimeng/hufu:v1.2.13d5752dac834
github.com/beego/beego/v2@v2.0.7
2.2.1
1
lishimeng/owl-console:v0.11.2c79a67657baf
github.com/beego/beego/v2@v2.1.3
2.2.1
1
lishimeng/owl-messager:v0.11.23d00485e64dc
github.com/beego/beego/v2@v2.1.3
2.2.1
1
lishimeng/passport:v0.2.163e7d05ded625
github.com/beego/beego/v2@v2.0.7
2.2.1
1
lishimeng/passport-profile:v0.2.160970dfe5dc8f
github.com/beego/beego/v2@v2.0.7
2.2.1
1
lishimeng/tabby:v1.0.48145c3dc83c8
github.com/beego/beego/v2@v2.0.7
2.2.1
1
lishimeng/tree:v0.2.89b2f8be6c7d3
github.com/beego/beego/v2@v2.0.7
2.2.1
1
lishimeng/zoo:v0.4.0e0b8d2d8ca28
github.com/beego/beego/v2@v2.1.1
2.2.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.