StackRadar

CVE-2024-45337

Critical

Advisory

Published 11 Dec 2024In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.032
87th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,577
of 17,787 indexed, latest versions
Container images
1,828
deployed by those charts
Fix available
1 of 1
affected package

Misuse of ServerConfig.PublicKeyCallback may cause authorization bypass in golang.org/x/crypto

Carried by container images the latest versions of 1,577 of 17,787 indexed charts deploy, on 1,828 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+134 more0.31.01,828
OSV records
GHSA-v778-237x-gjrc
Also known as
GO-2024-3321

Charts affected

1,577 by stars
ChartLatestAffected imagesRadar Score
kubegems-installerkubegemsOfficial1.24.101 of 1See more

kubegems-installer kubegems 1.24.10

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubegems/kubegems:v1.24.10a730bcf9322a
golang.org/x/crypto@v0.17.0
0.31.0

Open the chart page →

3,381
kubegems-localkubegemsOfficial1.24.101 of 2See more

kubegems-local kubegems 1.24.10

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubegems/kubegems:v1.24.10a730bcf9322a
golang.org/x/crypto@v0.17.0
0.31.0

Open the chart page →

6,090
kubernetes-stateless-chartkubernetes-stateless-chart1.0.31 of 1See more

kubernetes-stateless-chart kubernetes-stateless-chart 1.0.3

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
portainer/portainer-ce:2.18.4-alpine3e61aaee1341
golang.org/x/crypto@v0.7.0
0.31.0

Open the chart page →

3,275
kubeseckubesecVerified publisher1.1.01 of 1See more

kubesec kubesec 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubesec/kubesec:latest025a365d9f18
golang.org/x/crypto@v0.29.0
0.31.0

Open the chart page →

1,075
juicefskubesphere-stable0.16.21 of 4See more

juicefs kubesphere-stable 0.16.2

1 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.20.043978fc60798
golang.org/x/crypto@v0.6.0
0.31.0

Open the chart page →

2,489
mesherykubesphere-stable0.5.09 of 13See more

meshery kubesphere-stable 0.5.0

9 of the 13 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
layer5/meshery-app-mesh:stable-latest77d59943b3d6
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.31.0
layer5/meshery-consul:stable-latest25a4cc38abcd
golang.org/x/crypto@v0.14.0
0.31.0
layer5/meshery-cpx:stable-latest8c20a8a1d6a4
golang.org/x/crypto@v0.0.0-20190829043050-9756ffdc2472
0.31.0
layer5/meshery-kuma:stable-latest9d25f029a8a2
golang.org/x/crypto@v0.14.0
0.31.0
layer5/meshery-linkerd:stable-latestb99c73bac1f5
golang.org/x/crypto@v0.17.0
0.31.0
layer5/meshery-nginx-sm:stable-latestb3864dfd47ad
golang.org/x/crypto@v0.5.0
0.31.0
layer5/meshery-nsm:stable-latestebd6a8faf21f
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
layer5/meshery-osm:stable-latestec898e5786c6
golang.org/x/crypto@v0.5.0
0.31.0
layer5/meshery-traefik-mesh:stable-latest797fa7a03570
golang.org/x/crypto@v0.5.0
0.31.0

Open the chart page →

24,690
kube-state-metricskubestar-state-metricsVerified publisher0.1.101 of 1See more

kube-state-metrics kubestar-state-metrics 0.1.10

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.6.0bdab4e49d71d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.31.0

Open the chart page →

1,575
kube-vault-controllerkube-vault-controller1.2.01 of 1See more

kube-vault-controller kube-vault-controller 1.2.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kupnu4x/kube-vault-controller:1.2.03be59109f3d6
golang.org/x/crypto@v0.6.0
0.31.0

Open the chart page →

1,550
kubemodkubmod0.5.22 of 2See more

kubemod kubmod 0.5.2

2 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.19.11f8154f7e80c
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.31.0
kubemod/kubemod-crt:v1.3.0028347c9fa77
golang.org/x/crypto@v0.0.0-20210506145944-38f3c27a63bf
0.31.0

Open the chart page →

4,542
kubeservice-cosign-webhookkubservice-chartsVerified publisher1.1.14 of 5See more

kubeservice-cosign-webhook kubservice-charts 1.1.1

4 of the 5 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
dongjiang1989/cosign-webhook:v1.1.02a3ead6a55dc
golang.org/x/crypto@v0.10.0
0.31.0
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.31.0

Open the chart page →

7,087
kubeservice-custom-limitrangekubservice-chartsVerified publisher1.3.03 of 5See more

kubeservice-custom-limitrange kubservice-charts 1.3.0

3 of the 5 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.31.0

Open the chart page →

5,941
kubeservice-namespace-node-affinitykubservice-chartsVerified publisher1.1.23 of 5See more

kubeservice-namespace-node-affinity kubservice-charts 1.1.2

3 of the 5 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.31.0

Open the chart page →

6,872
kube-fencingkvaps2.4.11 of 2See more

kube-fencing kvaps 2.4.1

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kube-fencing-controller:v2.4.0313edfec2fca
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.31.0

Open the chart page →

2,538
linstorkvaps1.14.04 of 11See more

linstor kvaps 1.14.0

4 of the 11 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-controller:v1.14.000ce11c31087
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.31.0
ghcr.io/kvaps/linstor-csi:v1.14.0087618d16b83
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.31.0
ghcr.io/kvaps/linstor-ha-controller:v1.14.08e7b44bbd123
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.31.0

Open the chart page →

15,551
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.31.0

Open the chart page →

7,510
lgtm-stacklgtm-stackVerified publisher0.1.32 of 8See more

lgtm-stack lgtm-stack 0.1.3

2 of the 8 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2024-01-16T16-06-34Z591b097ea2d4
golang.org/x/crypto@v0.17.0
0.31.0
minio/minio:RELEASE.2024-01-18T22-51-28Z551682a57a94
golang.org/x/crypto@v0.18.0
0.31.0

Open the chart page →

5,614
kube-iptables-tailerlifen-chartsVerified publisher0.2.31 of 1See more

kube-iptables-tailer lifen-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0

Open the chart page →

4,456
linkerd-jaegerlinkerd2-edgeVerified publisher30.14.11-edge2 of 4See more

linkerd-jaeger linkerd2-edge 30.14.11-edge

2 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.3104d224a9999b
golang.org/x/crypto@v0.0.0-20210920023735-84f357641f63
0.31.0
otel/opentelemetry-collector-contrib:0.83.071fcef33ae71
golang.org/x/crypto@v0.12.0
0.31.0

Open the chart page →

4,389
jspolicyloftVerified publisher0.2.21 of 1See more

jspolicy loft 0.2.2

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
loftsh/jspolicy:0.2.225deb9bd2683
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.31.0

Open the chart page →

2,309
vcluster-eksloftVerified publisher0.0.0-ci.31 of 4See more

vcluster-eks loft 0.0.0-ci.3

1 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
public.ecr.aws/eks-distro/etcd-io/etcd:v3.5.6-eks-1-24-7efa6dee17ed2
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.31.0

Open the chart page →

3,304
vcluster-k0sloftVerified publisher0.0.0-ci.31 of 2See more

vcluster-k0s loft 0.0.0-ci.3

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
golang.org/x/crypto@v0.5.0
0.31.0

Open the chart page →

3,138
log2rbac-operatorlog2rbac-operator0.0.51 of 1See more

log2rbac-operator log2rbac-operator 0.0.5

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
jkremser/log2rbac:v0.0.5e35cf56ef183
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.31.0

Open the chart page →

1,938
logclilogcliVerified publisher0.1.01 of 1See more

logcli logcli 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
grafana/logcli:main-c90366d-amd643d85bb66e39b
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.31.0

Open the chart page →

2,947
voice-biometricslumenvox2.0.15 of 26See more

voice-biometrics lumenvox 2.0.1

5 of the 26 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
library/traefik:v2.57d5a6ae66572
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.31.0
lumenvox/cloud-license:2.0.09a69862e1248
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.31.0
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.31.0
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.31.0
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.31.0

Open the chart page →

71,216
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
golang.org/x/crypto@v0.0.0-20200214034016-1d94cc7ab1c6
0.31.0

Open the chart page →

3,606
traefik-forward-authmesosphere0.3.102 of 2See more

traefik-forward-auth mesosphere 0.3.10

2 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0
mesosphere/traefik-forward-auth:3.1.05456581d7b76
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.31.0

Open the chart page →

5,308
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.31.0

Open the chart page →

3,254
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
golang.org/x/crypto@v0.30.0
0.31.0

Open the chart page →

4,184
chartmuseummike75151.2.01 of 1See more

chartmuseum mike7515 1.2.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.31.0

Open the chart page →

3,168
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
golang.org/x/crypto@v0.0.0-20201124201722-c8d3bf9c5392
0.31.0

Open the chart page →

6,915
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
golang.org/x/crypto@v0.12.0
0.31.0

Open the chart page →

13,763
maddymyaVerified publisher22.4.121 of 2See more

maddy mya 22.4.12

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
foxcpp/maddy:0.7.16ab538e2f28b
golang.org/x/crypto@v0.18.0
0.31.0

Open the chart page →

1,412
nats-account-servernatsVerified publisher0.8.11 of 1See more

nats-account-server nats 0.8.1

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
natsio/nats-account-server:1.0.0a3381560aab6
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.31.0

Open the chart page →

2,634
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2023.12.230b60b6565ab2
golang.org/x/crypto@v0.17.0
0.31.0
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.31.0

Open the chart page →

37,441
ngrok-operatorngrok-operator1.1.01 of 2See more

ngrok-operator ngrok-operator 1.1.0

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.31.0

Open the chart page →

1,896
node-exporternode-exporterVerified publisher0.1.101 of 1See more

node-exporter node-exporter 0.1.10

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
prom/node-exporter:v1.6.0d2e48098c364
golang.org/x/crypto@v0.8.0
0.31.0

Open the chart page →

1,229
oadaoadaVerified publisher5.0.51 of 11See more

oada oada 5.0.5

1 of the 11 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:no-root-v2.0a26d3d3f6e1c
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.31.0

Open the chart page →

13,319
transfer.shobeoneVerified publisher1.0.51 of 1See more

transfer.sh obeone 1.0.5

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
dutchcoders/transfer.sh:v1.6.1-noroot8db9ade72a0d
golang.org/x/crypto@v0.14.0
0.31.0

Open the chart page →

1,171
orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-api:0.1.045f2620337af
golang.org/x/crypto@v0.26.0
0.31.0

Open the chart page →

2,279
kubernetes-dashboard-proxyosc0.7.22 of 4See more

kubernetes-dashboard-proxy osc 0.7.2

2 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubernetesui/dashboard:v2.7.02e500d29e9d5
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.31.0
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0

Open the chart page →

6,005
hlf-caowkin2.1.01 of 2See more

hlf-ca owkin 2.1.0

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:1.5.1c7f3422ec1d5
golang.org/x/crypto@v0.0.0-20201117144127-c1f2f97bffc9
0.31.0

Open the chart page →

3,424
hlf-ordowkin3.1.01 of 1See more

hlf-ord owkin 3.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
hyperledger/fabric-orderer:2.2.137294e05209b
golang.org/x/crypto@v0.0.0-20200221231518-2aa609cf4a9d
0.31.0

Open the chart page →

3,350
hlf-peerowkin5.1.01 of 1See more

hlf-peer owkin 5.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
hyperledger/fabric-peer:2.2.1bf4995c86af6
golang.org/x/crypto@v0.0.0-20200221231518-2aa609cf4a9d
0.31.0

Open the chart page →

3,688
ngrok-operatorpaganuzzi0.0.21 of 1See more

ngrok-operator paganuzzi 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/paganuzzi/ngrokoperator:latest5a10cd095699
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.31.0

Open the chart page →

2,811
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.31.0

Open the chart page →

7,833
spirephilips-labsVerified publisher0.12.23 of 6See more

spire philips-labs 0.12.2

3 of the 6 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/spiffe/spire-agent:1.6.062517726d0c4
golang.org/x/crypto@v0.6.0
0.31.0
ghcr.io/spiffe/spire-controller-manager:0.2.25e90b2d092df
golang.org/x/crypto@v0.6.0
0.31.0
ghcr.io/spiffe/spire-server:1.6.0635b9024cad2
golang.org/x/crypto@v0.6.0
0.31.0

Open the chart page →

7,236
chadbotphntom0.2.31 of 1See more

chadbot phntom 0.2.3

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
phntom/chadbot:0.2.397c28e4178ad
golang.org/x/crypto@v0.10.0
0.31.0

Open the chart page →

1,103
chartmuseumphntom4.0.201 of 1See more

chartmuseum phntom 4.0.20

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
phntom/chartmuseum:v0.16.053883b65d9b7
golang.org/x/crypto@v0.9.0
0.31.0

Open the chart page →

2,939
pipelinewise-operatorpipelinewise-operatorVerified publisher0.5.11 of 1See more

pipelinewise-operator pipelinewise-operator 0.5.1

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
dirathea/pipelinewise-operator:v0.5.08d4c9f773ae1
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.31.0

Open the chart page →

2,121
secrets-store-csi-driver-provider-awsportefaix-hub0.4.01 of 1See more

secrets-store-csi-driver-provider-aws portefaix-hub 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r2-2021.08.13.20.34-linux-amd6402aed3370fce
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0

Open the chart page →

2,206

Container images carrying it

1,828 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
prom/graphite-exporter:v0.16.0e54bca6645ea
golang.org/x/crypto@v0.28.0
0.31.0
1
prom/memcached-exporter:v0.9.001267317c95d
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.31.0
1
prom/memcached-exporter:v0.15.0bb01ad25e9fc
golang.org/x/crypto@v0.28.0
0.31.0
1
prom/node-exporter:v1.6.0d2e48098c364
golang.org/x/crypto@v0.8.0
0.31.0
1
prom/prometheus:v2.51.24f6c47e39a90
golang.org/x/crypto@v0.21.0
0.31.0
1
prom/prometheus:v2.18.15880ec936055
golang.org/x/crypto@v0.0.0-20200422194213-44a606286825
0.31.0
1
prom/prometheus:v2.48.0b440bc0e8aa5
golang.org/x/crypto@v0.14.0
0.31.0
1
prom/prometheus:v2.19.2cd134bd4fca0
golang.org/x/crypto@v0.0.0-20200422194213-44a606286825
0.31.0
1
prom/prometheus:v2.16.0e4ca62c0d62f
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.31.0
1
prom/prometheus:v2.22.2f7ffebdd428b
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0
1
prom/pushgateway:v1.5.128fe26c8b8b1
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.31.0
1
prom/pushgateway:v1.4.33496e0f85943
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.31.0
1
prom/snmp-exporter:v0.20.09d226d7de223
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.31.0
1
prom/statsd-exporter:v0.24.061d866e93b56
golang.org/x/crypto@v0.8.0
0.31.0
1
pschiffe/pdns-admin:0.4.137ebba8c2b8f
golang.org/x/crypto@v0.17.0
0.31.0
1
pschiffe/pdns-mysql:alpined196c796cafb
golang.org/x/crypto@v0.17.0
0.31.0
1
pschiffe/pdns-pgsql:5.0a227d41bc665
golang.org/x/crypto@v0.17.0
0.31.0
1
qmcgaw/gluetun:v3.40.02b42bfa04675
golang.org/x/crypto@v0.29.0
0.31.0
1
qonstrukt/php:8.4-v8-apache089af7925aa1
golang.org/x/crypto@v0.0.0-20200403201458-baeed622b8d8
0.31.0
1
quiq/docker-registry-ui:0.9.491281da47036
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.31.0
1
rabbitmqoperator/cluster-operator:1.8.3231e7ce0e905
golang.org/x/crypto@v0.0.0-20210506145944-38f3c27a63bf
0.31.0
1
rancher/hardened-calico:v3.13.36d2cd61a338b
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.31.0
1
rancher/hardened-calico:v3.13.3-build20210223c678c25d47c8
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.31.0
1
rancher/hardened-flannel:v0.13.0-rancher142784bb38ed3
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.31.0
1
rancher/hardened-flannel:v0.14.1-build20211022d6a47d394c03
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
1
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
1
rancher/k3s:v1.28.2-k3s18c2599ecfca8
golang.org/x/crypto@v0.1.0
0.31.0
1
rancher/k3s:v1.25.3-k3s1eaa270df79cc
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.31.0
1
rancher/kubectl:v1.25.085a0d1148784
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.31.0
1
rancher/local-path-provisioner:v0.0.309b9148811700
golang.org/x/crypto@v0.25.0
0.31.0
1
rancher/local-path-provisioner:v0.0.20d5999b20a1b1
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.31.0
1
rancher/local-path-provisioner:v0.0.22e34c88ae0aff
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.31.0
1
rancher/mirrored-cloud-provider-vsphere:v1.31.1febfd0517838
golang.org/x/crypto@v0.24.0
0.31.0
1
rclone/rclone:1.63.008e1af3c8814
golang.org/x/crypto@v0.7.0
0.31.0
1
rclone/rclone:1.57.01e6eeabddc01
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.31.0
1
rclone/rclone:1.56.0f2fc45c8bc57
golang.org/x/crypto@v0.0.0-20210421170649-83a5a9bb288b
0.31.0
1
reaper99/recipya:v1.2.27f7ec3aeb88c
golang.org/x/crypto@v0.25.0
0.31.0
1
replicated/replicated-sdk:1.0.0-beta.318751b4963250
golang.org/x/crypto@v0.25.0
0.31.0
1
reportportal/migrations:5.7.0da5d8e1395fe
golang.org/x/crypto@v0.0.0-20190426145343-a29dc8fdc734
0.31.0
1
reportportal/service-index:5.0.112b27a2d7a87d
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.31.0
1
restic/restic:0.15.2579e4e6a4931
golang.org/x/crypto@v0.7.0
0.31.0
1
rezachalak/bzen-mongo:1.0.034f694325191
golang.org/x/crypto@v0.12.0
0.31.0
1
robotshop/rs-mongodb:latest119b545823cd
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.31.0
1
robustadev/kubewatch:v2.9.00457a51e36e8
golang.org/x/crypto@v0.24.0
0.31.0
1
rokk42/seashells:1.0-k8sdfc850a5db9e
golang.org/x/crypto@v0.23.0
0.31.0
1
rookout/k8s-operator:latest0d083f3ef1a7
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
1
rss3/op-batcher:d2c5ced00901227473fc196fda838191f0cb4e02e8adc09d9c07
golang.org/x/crypto@v0.16.0
0.31.0
1
rss3/op-node:a77d1f52fc3492bf21915bdff8ee8e0b5bd2cb8a45b91380bbe7
golang.org/x/crypto@v0.16.0
0.31.0
1
rss3/op-proposer:d2c5ced00901227473fc196fda838191f0cb4e0296672897ba9e
golang.org/x/crypto@v0.16.0
0.31.0
1
rss3/proxyd:6edce9ddfeee0b00a2d98f24c3ce67885653651b865a0a6bdf4c
golang.org/x/crypto@v0.17.0
0.31.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.