StackRadar

CVE-2024-43799

Medium

Advisory

Published 10 Sept 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.0
base score, highest
EPSS
0.005
44th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
362
of 17,781 indexed, latest versions
Container images
369
deployed by those charts
Fix available
1 of 1
affected package

send vulnerable to template injection that can lead to XSS

Carried by container images the latest versions of 362 of 17,781 indexed charts deploy, on 369 images.

Affected packageAffected versionsFixed inImages
sendnpm0.1.4, 0.13.0, 0.13.1, 0.13.2+6 more0.19.0369
OSV records
GHSA-m6fv-jmcg-4jfg

Charts affected

362 by stars
ChartLatestAffected imagesRadar Score
flamegabe565Verified publisher0.6.01 of 1See more

flame gabe565 0.6.0

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
pawelmalak/flame:multiarch2.3.19f88b17692a0
send@0.18.0
0.19.0

Open the chart page →

2,172
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
send@0.18.0
0.19.0

Open the chart page →

13,241
wekan-oldgabisonfire0.1.21 of 1See more

wekan-old gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
wekanteam/wekan:v4.2268a51f0327df
send@0.16.1
0.19.0

Open the chart page →

5,941
galoy-paygaloymoney0.11.481 of 2See more

galoy-pay galoymoney 0.11.48

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
krtk6160/galoy-nostrdigest-pinnedcc82a694f818
send@0.18.0
0.19.0

Open the chart page →

2,528
rtlgaloymoney0.4.31 of 2See more

rtl galoymoney 0.4.3

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
shahanafarooqui/rtl:0.13.3e2195188a451
send@0.18.0
0.19.0

Open the chart page →

2,090
galoy-paygaloymoney20.11.481 of 2See more

galoy-pay galoymoney2 0.11.48

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
krtk6160/galoy-nostrdigest-pinnedcc82a694f818
send@0.18.0
0.19.0

Open the chart page →

2,528
rtlgaloymoney20.4.31 of 2See more

rtl galoymoney2 0.4.3

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
shahanafarooqui/rtl:0.13.3e2195188a451
send@0.18.0
0.19.0

Open the chart page →

2,090
cryptpadgeek-cookbookVerified publisher0.4.21 of 1See more

cryptpad geek-cookbook 0.4.2

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
promasu/cryptpad:v4.14.1-nginx51d1142b9f95
send@0.16.2
0.19.0

Open the chart page →

974
double-takegeek-cookbookVerified publisher2.3.21 of 1See more

double-take geek-cookbook 2.3.2

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
jakowenko/double-take:1.6.0b858bac9e32a
send@0.17.1
0.19.0

Open the chart page →

12,222
nightscoutgeek-cookbookVerified publisher1.2.21 of 1See more

nightscout geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
send@0.17.1
0.19.0

Open the chart page →

4,043
node-redgeek-cookbookVerified publisher10.3.21 of 1See more

node-red geek-cookbook 10.3.2

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
nodered/node-red:2.2.2e131dcadfe92
send@0.17.2
0.19.0

Open the chart page →

2,102
shinobigeek-cookbookVerified publisher1.2.21 of 1See more

shinobi geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
shinobisystems/shinobi:dev3ca746937856
send@0.17.1
0.19.0

Open the chart page →

4,591
theloungegeek-cookbookVerified publisher3.4.21 of 1See more

thelounge geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
thelounge/thelounge:4.2.0-alpine639978459c3a
send@0.17.1
0.19.0

Open the chart page →

2,689
ghostghostVerified publisher0.1.01 of 4See more

ghost ghost 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
send@0.18.0
0.19.0

Open the chart page →

9,019
api-mapperglenndehaanVerified publisher1.2.01 of 1See more

api-mapper glenndehaan 1.2.0

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
glenndehaan/api-mapper:latest6ff6310683bf
send@0.18.0
0.19.0

Open the chart page →

1,158
contentbridgeglenndehaanVerified publisher1.1.01 of 1See more

contentbridge glenndehaan 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
glenndehaan/contentbridge:latest99b9e4f73848
send@0.18.0
0.19.0

Open the chart page →

1,000
Governify-Bluejaygovernify0.1.05 of 12See more

Governify-Bluejay governify 0.1.0

5 of the 12 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
send@0.17.1
0.19.0
governify/director:v1.4.0608c6940bb98
send@0.17.1
0.19.0
governify/registry:v3.4.0d3f37f4f8168
send@0.17.1
0.19.0
governify/render:v2.2.0daeca1ce28e6
send@0.17.1
0.19.0
governify/reporter:v2.2.038595913458f
send@0.17.1
0.19.0

Open the chart page →

22,512
Governify-Falcongovernify0.1.06 of 10See more

Governify-Falcon governify 0.1.0

6 of the 10 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
send@0.17.1
0.19.0
governify/collector-dynamic:v1.3.06d3d1a5b46a9
send@0.17.1
0.19.0
governify/director:v1.4.0608c6940bb98
send@0.17.1
0.19.0
governify/registry:v3.4.0d3f37f4f8168
send@0.17.1
0.19.0
governify/render:v2.2.0daeca1ce28e6
send@0.17.1
0.19.0
governify/reporter:v2.2.038595913458f
send@0.17.1
0.19.0

Open the chart page →

24,319
h2ph2pVerified publisher1.0.11 of 1See more

h2p h2p 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
dacinfomotion/h2p:latest68fa393b472c
send@0.18.0
0.19.0

Open the chart page →

1,713
gitter-irc-bridgehalkeye0.1.11 of 1See more

gitter-irc-bridge halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
halkeye/gitter-slack-bridge:v2.0.153eb2b3cd4cb
send@0.17.1
0.19.0

Open the chart page →

3,642
hubothalkeye0.0.11 of 1See more

hubot halkeye 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
halkeye/hubot:latest9764d2202130
send@0.17.1
0.19.0

Open the chart page →

2,116
matrix-appservice-gitterhalkeye0.1.01 of 1See more

matrix-appservice-gitter halkeye 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
send@0.17.1
0.19.0

Open the chart page →

3,003
theloungehalkeye4.3.11 of 1See more

thelounge halkeye 4.3.1

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
thelounge/thelounge:4.3.0-alpine0037aa258261
send@0.17.1
0.19.0

Open the chart page →

1,938
zigbee2mqtthelm-chart-roeiVerified publisher1.19.01 of 1See more

zigbee2mqtt helm-chart-roei 1.19.0

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
send@0.17.1
0.19.0

Open the chart page →

2,173
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
send@0.16.2
0.19.0

Open the chart page →

24,161
streamsheetshelm-chartsVerified publisher0.2.34 of 8See more

streamsheets helm-charts 0.2.3

4 of the 8 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
send@0.17.1
0.19.0
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
send@0.17.1
0.19.0
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
send@0.17.1
0.19.0
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
send@0.17.1
0.19.0

Open the chart page →

89,959
nodeapphelmcharts0.1.41 of 1See more

nodeapp helmcharts 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
kaushaln1/helm_node_app:lateste9f2d5dfdba0
send@0.18.0
0.19.0

Open the chart page →

948
backstagehelm-charts-nr0.1.151 of 2See more

backstage helm-charts-nr 0.1.15

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
send@0.17.1
0.19.0

Open the chart page →

8,213
automatischhelmforgeVerified publisher1.3.71 of 4See more

automatisch helmforge 1.3.7

1 of the 4 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
automatischio/automatisch:0.15.03bace7a12d5f
send@0.18.0
0.19.0

Open the chart page →

5,769
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
send@0.18.0
0.19.0

Open the chart page →

18,813
wikijshomeenterpriseinc1.4.01 of 1See more

wikijs homeenterpriseinc 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
requarks/wiki:canary-2.5.2438b5865a7386c
send@0.17.1
0.19.0

Open the chart page →

4,253
townsquarehuscker-chartsVerified publisher1.0.41 of 2See more

townsquare huscker-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
send@0.18.0
0.19.0

Open the chart page →

3,407
crypto-watchdoghuseyinnurbaki0.1.01 of 1See more

crypto-watchdog huseyinnurbaki 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
hhaluk/crypto-watchdog:0.4.0a6555953d941
send@0.17.1
0.19.0

Open the chart page →

2,656
ibm-app-navigatoribm-charts1.0.11 of 5See more

ibm-app-navigator ibm-charts 1.0.1

1 of the 5 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
ibmcom/app-nav-ui:1.0.1e2a86997b36b
send@0.17.1
0.19.0

Open the chart page →

32,915
ibm-business-automation-insights-devibm-charts3.2.01 of 6See more

ibm-business-automation-insights-dev ibm-charts 3.2.0

1 of the 6 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
ibmcom/bai-admin-dev:19.0.202d882f2836e
send@0.16.2
0.19.0

Open the chart page →

39,349
ibm-microclimateibm-charts0.1.03 of 8See more

ibm-microclimate ibm-charts 0.1.0

3 of the 8 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
send@0.16.2
0.19.0
ibmcom/microclimate-portal:latested5505e5c7ec
send@0.16.2
0.19.0
ibmcom/microclimate-theia:lateste17bdccc5030
send@0.16.2
0.19.0

Open the chart page →

57,669
iframelyiframelyVerified publisher2.3.51 of 1See more

iframely iframely 2.3.5

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
send@0.18.0
0.19.0

Open the chart page →

3,154
erpnextimprowisedVerified publisher3.3.01 of 3See more

erpnext improwised 3.3.0

1 of the 3 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
frappe/frappe-socketio:v13.4.12095767a9e82
send@0.17.1
0.19.0

Open the chart page →

6,501
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
send@0.17.1
0.19.0

Open the chart page →

4,944
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
send@0.17.1
0.19.0

Open the chart page →

10,494
interbtc-hydrainterlay0.1.153 of 4See more

interbtc-hydra interlay 0.1.15

3 of the 4 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
send@0.17.1
0.19.0
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
send@0.18.0
0.19.0
subsquid/hydra-indexer-status-service:5.0.0-alpha.37a4136013909c
send@0.18.0
0.19.0

Open the chart page →

6,831
interlay-firesquidinterlay0.1.112 of 4See more

interlay-firesquid interlay 0.1.11

2 of the 4 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:0.10.55b2c414307b9
send@0.18.0
0.19.0
subsquid/substrate-explorer:firesquid0889a857f192
send@0.18.0
0.19.0

Open the chart page →

4,667
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
send@0.17.1
0.19.0

Open the chart page →

7,232
keyoxide-webittrident-oss0.2.31 of 1See more

keyoxide-web ittrident-oss 0.2.3

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
keyoxide/keyoxide:stable96f27a71269d
send@0.17.2
0.19.0

Open the chart page →

2,363
yapijoelee2012Verified publisher0.2.01 of 1See more

yapi joelee2012 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
jayfong/yapi:1.10.2163e5d621910
send@0.13.2
0.19.0

Open the chart page →

6,454
annotation-tooljtektVerified publisher0.1.51 of 2See more

annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
send@0.17.1
0.19.0

Open the chart page →

2,315
image-storage-servicejtektVerified publisher0.4.31 of 4See more

image-storage-service jtekt 0.4.3

1 of the 4 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
send@0.18.0
0.19.0

Open the chart page →

22,589
polygonal-annotation-tooljtektVerified publisher0.1.51 of 2See more

polygonal-annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
send@0.17.1
0.19.0

Open the chart page →

2,231
shinsei-managerjtektVerified publisher0.2.02 of 8See more

shinsei-manager jtekt 0.2.0

2 of the 8 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
moreillon/user-manager:v5.0.2e1c9bfab5c16
send@0.18.0
0.19.0
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
send@0.18.0
0.19.0

Open the chart page →

63,461
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2024-43799.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
send@0.18.0
0.19.0

Open the chart page →

16,600

Container images carrying it

369 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
arturisimo/server-urjc:v1.0d8dc4430531e
send@0.17.2
0.19.0
1
assistiot/dlt_api:2.1.0c8a170683be7
send@0.18.0
0.19.0
1
assistiot/fl_orchestrator:api-latest7473d77448e1
send@0.18.0
0.19.0
1
assistiot/monitoring_notifying:2.0.068324d0fa5bb
send@0.18.0
0.19.0
1
assistiot/multi-link_client:latestcf048365d042
send@0.18.0
0.19.0
1
assistiot/multi-link_server:latestf38c76a4c960
send@0.18.0
0.19.0
1
assistiot/open_api_frontend:1.0.1f11d82defc70
send@0.18.0
0.19.0
1
assistiot/smart-orchestrator_cluster:latest4f41e1defe99
send@0.18.0
0.19.0
1
assistiot/smart-orchestrator_enabler:latest89f37e88c871
send@0.18.0
0.19.0
1
assistiot/smart-orchestrator_repository:latesta8b8dbed04a4
send@0.18.0
0.19.0
1
automatischio/automatisch:0.15.03bace7a12d5f
send@0.18.0
0.19.0
1
baserow/baserow:1.30.1df0c42eb67e8
send@0.18.0
0.19.0
1
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
send@0.17.1
0.19.0
1
belirta/beli-docker:v1.0.0f65ad0e23b4d
send@0.18.0
0.19.0
1
bicarus/http-https-echo:2785dd6a7e805e
send@0.18.0
0.19.0
1
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
send@0.18.0
0.19.0
1
bnwokoye/nodejswebapp:latest74de7dc7ebfb
send@0.18.0
0.19.0
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
send@0.17.1
0.19.0
1
carbonetes/carbonetes-analyzer:1.0.31b9b93c9a37f
send@0.17.1
0.19.0
1
catalysm/csmm:latestf003b35f54d9
send@0.17.1
0.19.0
1
ccjacobs14/amazon:59a9b14a6f09e
send@0.18.0
0.19.0
1
chatwoot/chatwoot:v4.15.167ebc751c171
send@0.17.1
0.19.0
1
christianhuth/node-hostname:1.0.1c07f414a3e4b
send@0.16.2
0.19.0
1
cnieg/maildev:v1.1.998ee05668915
send@0.17.1
0.19.0
1
coderaiser/cloudcmd:16.6.1b34a9775c7ce
send@0.18.0
0.19.0
1
codercom/code-server:4.11.0-debian1e2cc688008e
send@0.17.1
0.19.0
1
codercom/code-server:3.10.247605610ad8d
send@0.17.1
0.19.0
1
codetogether/codetogether:latest4348c8a38752
send@0.18.0
0.19.0
1
coldatom/containers-security-api:latesteae9e82da080
send@0.18.0
0.19.0
1
coldatom/containers-security-front:latest7c2fbbb41bcf
send@0.18.0
0.19.0
1
conduction/conduction-ui-app:devd591f5e6f2a9
send@0.17.1
0.19.0
1
countly/api:25.05.4f4cc7447c4f5
send@0.18.0
0.19.0
1
countly/countly-server:25.05.4e3c238248f99
send@0.18.0
0.19.0
1
countly/frontend:25.05.42acbc11499b6
send@0.18.0
0.19.0
1
cryptexlabs/authf:0.12.11189c07411d7c
send@0.18.0
0.19.0
1
dacinfomotion/h2p:latest68fa393b472c
send@0.18.0
0.19.0
1
danny1dockerhub/nodejswebapp:lateste434683fcc89
send@0.18.0
0.19.0
1
datarhei/restreamer:0.6.4655e12f9eeed
send@0.17.1
0.19.0
1
davdiv/musicociel:deva85f99be882c
send@0.18.0
0.19.0
1
davidvmar/urjc-davidvmar-server:1.0.05663f5b24615
send@0.17.1
0.19.0
1
decayofmind/hubot:3.3.21e18e92fe694
send@0.17.1
0.19.0
1
defactops/defactops-backend:1.0.2307b663c0092a
send@0.18.0
0.19.0
1
denisshav/backend:latest4cc8dc5a4499
send@0.17.1
0.19.0
1
dessalines/lemmy-ui:0.19.20ee4c620d8e93
send@0.18.0
0.19.0
1
devspacecloud/ui:0.3.3deef55ff29a7
send@0.17.1
0.19.0
1
dipugodocker/pdf-editor:1.0-frontendd431c37fe1cd
send@0.18.0
0.19.0
1
directus/directus:11.1.0e3c8bb975350
send@0.18.0
0.19.0
1
eameti/node-app:latestf36642affa86
send@0.18.0
0.19.0
1
enketo/enketo-express:3.0.4dcad9c2273f6
send@0.17.1
0.19.0
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
send@0.13.0
0.19.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.