StackRadar

CVE-2024-45337

Critical

Advisory

Published 11 Dec 2024In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.032
87th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,577
of 17,787 indexed, latest versions
Container images
1,828
deployed by those charts
Fix available
1 of 1
affected package

Misuse of ServerConfig.PublicKeyCallback may cause authorization bypass in golang.org/x/crypto

Carried by container images the latest versions of 1,577 of 17,787 indexed charts deploy, on 1,828 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+134 more0.31.01,828
OSV records
GHSA-v778-237x-gjrc
Also known as
GO-2024-3321

Charts affected

1,577 by stars
ChartLatestAffected imagesRadar Score
kubegems-installerkubegemsOfficial1.24.101 of 1See more

kubegems-installer kubegems 1.24.10

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubegems/kubegems:v1.24.10a730bcf9322a
golang.org/x/crypto@v0.17.0
0.31.0

Open the chart page →

3,381
kubegems-localkubegemsOfficial1.24.101 of 2See more

kubegems-local kubegems 1.24.10

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubegems/kubegems:v1.24.10a730bcf9322a
golang.org/x/crypto@v0.17.0
0.31.0

Open the chart page →

6,090
kubernetes-stateless-chartkubernetes-stateless-chart1.0.31 of 1See more

kubernetes-stateless-chart kubernetes-stateless-chart 1.0.3

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
portainer/portainer-ce:2.18.4-alpine3e61aaee1341
golang.org/x/crypto@v0.7.0
0.31.0

Open the chart page →

3,275
kubeseckubesecVerified publisher1.1.01 of 1See more

kubesec kubesec 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubesec/kubesec:latest025a365d9f18
golang.org/x/crypto@v0.29.0
0.31.0

Open the chart page →

1,075
juicefskubesphere-stable0.16.21 of 4See more

juicefs kubesphere-stable 0.16.2

1 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.20.043978fc60798
golang.org/x/crypto@v0.6.0
0.31.0

Open the chart page →

2,489
mesherykubesphere-stable0.5.09 of 13See more

meshery kubesphere-stable 0.5.0

9 of the 13 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
layer5/meshery-app-mesh:stable-latest77d59943b3d6
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.31.0
layer5/meshery-consul:stable-latest25a4cc38abcd
golang.org/x/crypto@v0.14.0
0.31.0
layer5/meshery-cpx:stable-latest8c20a8a1d6a4
golang.org/x/crypto@v0.0.0-20190829043050-9756ffdc2472
0.31.0
layer5/meshery-kuma:stable-latest9d25f029a8a2
golang.org/x/crypto@v0.14.0
0.31.0
layer5/meshery-linkerd:stable-latestb99c73bac1f5
golang.org/x/crypto@v0.17.0
0.31.0
layer5/meshery-nginx-sm:stable-latestb3864dfd47ad
golang.org/x/crypto@v0.5.0
0.31.0
layer5/meshery-nsm:stable-latestebd6a8faf21f
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
layer5/meshery-osm:stable-latestec898e5786c6
golang.org/x/crypto@v0.5.0
0.31.0
layer5/meshery-traefik-mesh:stable-latest797fa7a03570
golang.org/x/crypto@v0.5.0
0.31.0

Open the chart page →

24,690
kube-state-metricskubestar-state-metricsVerified publisher0.1.101 of 1See more

kube-state-metrics kubestar-state-metrics 0.1.10

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.6.0bdab4e49d71d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.31.0

Open the chart page →

1,575
kube-vault-controllerkube-vault-controller1.2.01 of 1See more

kube-vault-controller kube-vault-controller 1.2.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kupnu4x/kube-vault-controller:1.2.03be59109f3d6
golang.org/x/crypto@v0.6.0
0.31.0

Open the chart page →

1,550
kubemodkubmod0.5.22 of 2See more

kubemod kubmod 0.5.2

2 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.19.11f8154f7e80c
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.31.0
kubemod/kubemod-crt:v1.3.0028347c9fa77
golang.org/x/crypto@v0.0.0-20210506145944-38f3c27a63bf
0.31.0

Open the chart page →

4,542
kubeservice-cosign-webhookkubservice-chartsVerified publisher1.1.14 of 5See more

kubeservice-cosign-webhook kubservice-charts 1.1.1

4 of the 5 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
dongjiang1989/cosign-webhook:v1.1.02a3ead6a55dc
golang.org/x/crypto@v0.10.0
0.31.0
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.31.0

Open the chart page →

7,087
kubeservice-custom-limitrangekubservice-chartsVerified publisher1.3.03 of 5See more

kubeservice-custom-limitrange kubservice-charts 1.3.0

3 of the 5 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.31.0

Open the chart page →

5,941
kubeservice-namespace-node-affinitykubservice-chartsVerified publisher1.1.23 of 5See more

kubeservice-namespace-node-affinity kubservice-charts 1.1.2

3 of the 5 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.31.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.31.0

Open the chart page →

6,872
kube-fencingkvaps2.4.11 of 2See more

kube-fencing kvaps 2.4.1

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kube-fencing-controller:v2.4.0313edfec2fca
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.31.0

Open the chart page →

2,538
linstorkvaps1.14.04 of 11See more

linstor kvaps 1.14.0

4 of the 11 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-controller:v1.14.000ce11c31087
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.31.0
ghcr.io/kvaps/linstor-csi:v1.14.0087618d16b83
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.31.0
ghcr.io/kvaps/linstor-ha-controller:v1.14.08e7b44bbd123
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.31.0

Open the chart page →

15,551
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.31.0

Open the chart page →

7,510
lgtm-stacklgtm-stackVerified publisher0.1.32 of 8See more

lgtm-stack lgtm-stack 0.1.3

2 of the 8 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2024-01-16T16-06-34Z591b097ea2d4
golang.org/x/crypto@v0.17.0
0.31.0
minio/minio:RELEASE.2024-01-18T22-51-28Z551682a57a94
golang.org/x/crypto@v0.18.0
0.31.0

Open the chart page →

5,614
kube-iptables-tailerlifen-chartsVerified publisher0.2.31 of 1See more

kube-iptables-tailer lifen-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0

Open the chart page →

4,456
linkerd-jaegerlinkerd2-edgeVerified publisher30.14.11-edge2 of 4See more

linkerd-jaeger linkerd2-edge 30.14.11-edge

2 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.3104d224a9999b
golang.org/x/crypto@v0.0.0-20210920023735-84f357641f63
0.31.0
otel/opentelemetry-collector-contrib:0.83.071fcef33ae71
golang.org/x/crypto@v0.12.0
0.31.0

Open the chart page →

4,389
jspolicyloftVerified publisher0.2.21 of 1See more

jspolicy loft 0.2.2

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
loftsh/jspolicy:0.2.225deb9bd2683
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.31.0

Open the chart page →

2,309
vcluster-eksloftVerified publisher0.0.0-ci.31 of 4See more

vcluster-eks loft 0.0.0-ci.3

1 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
public.ecr.aws/eks-distro/etcd-io/etcd:v3.5.6-eks-1-24-7efa6dee17ed2
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.31.0

Open the chart page →

3,304
vcluster-k0sloftVerified publisher0.0.0-ci.31 of 2See more

vcluster-k0s loft 0.0.0-ci.3

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
golang.org/x/crypto@v0.5.0
0.31.0

Open the chart page →

3,138
log2rbac-operatorlog2rbac-operator0.0.51 of 1See more

log2rbac-operator log2rbac-operator 0.0.5

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
jkremser/log2rbac:v0.0.5e35cf56ef183
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.31.0

Open the chart page →

1,938
logclilogcliVerified publisher0.1.01 of 1See more

logcli logcli 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
grafana/logcli:main-c90366d-amd643d85bb66e39b
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.31.0

Open the chart page →

2,947
voice-biometricslumenvox2.0.15 of 26See more

voice-biometrics lumenvox 2.0.1

5 of the 26 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
library/traefik:v2.57d5a6ae66572
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.31.0
lumenvox/cloud-license:2.0.09a69862e1248
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.31.0
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.31.0
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.31.0
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.31.0

Open the chart page →

71,216
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
golang.org/x/crypto@v0.0.0-20200214034016-1d94cc7ab1c6
0.31.0

Open the chart page →

3,606
traefik-forward-authmesosphere0.3.102 of 2See more

traefik-forward-auth mesosphere 0.3.10

2 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0
mesosphere/traefik-forward-auth:3.1.05456581d7b76
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.31.0

Open the chart page →

5,308
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.31.0

Open the chart page →

3,254
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
golang.org/x/crypto@v0.30.0
0.31.0

Open the chart page →

4,184
chartmuseummike75151.2.01 of 1See more

chartmuseum mike7515 1.2.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.31.0

Open the chart page →

3,168
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
golang.org/x/crypto@v0.0.0-20201124201722-c8d3bf9c5392
0.31.0

Open the chart page →

6,915
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
golang.org/x/crypto@v0.12.0
0.31.0

Open the chart page →

13,763
maddymyaVerified publisher22.4.121 of 2See more

maddy mya 22.4.12

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
foxcpp/maddy:0.7.16ab538e2f28b
golang.org/x/crypto@v0.18.0
0.31.0

Open the chart page →

1,412
nats-account-servernatsVerified publisher0.8.11 of 1See more

nats-account-server nats 0.8.1

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
natsio/nats-account-server:1.0.0a3381560aab6
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.31.0

Open the chart page →

2,634
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2023.12.230b60b6565ab2
golang.org/x/crypto@v0.17.0
0.31.0
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.31.0

Open the chart page →

37,441
ngrok-operatorngrok-operator1.1.01 of 2See more

ngrok-operator ngrok-operator 1.1.0

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.31.0

Open the chart page →

1,896
node-exporternode-exporterVerified publisher0.1.101 of 1See more

node-exporter node-exporter 0.1.10

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
prom/node-exporter:v1.6.0d2e48098c364
golang.org/x/crypto@v0.8.0
0.31.0

Open the chart page →

1,229
oadaoadaVerified publisher5.0.51 of 11See more

oada oada 5.0.5

1 of the 11 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:no-root-v2.0a26d3d3f6e1c
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.31.0

Open the chart page →

13,319
transfer.shobeoneVerified publisher1.0.51 of 1See more

transfer.sh obeone 1.0.5

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
dutchcoders/transfer.sh:v1.6.1-noroot8db9ade72a0d
golang.org/x/crypto@v0.14.0
0.31.0

Open the chart page →

1,171
orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-api:0.1.045f2620337af
golang.org/x/crypto@v0.26.0
0.31.0

Open the chart page →

2,279
kubernetes-dashboard-proxyosc0.7.22 of 4See more

kubernetes-dashboard-proxy osc 0.7.2

2 of the 4 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
kubernetesui/dashboard:v2.7.02e500d29e9d5
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.31.0
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0

Open the chart page →

6,005
hlf-caowkin2.1.01 of 2See more

hlf-ca owkin 2.1.0

1 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:1.5.1c7f3422ec1d5
golang.org/x/crypto@v0.0.0-20201117144127-c1f2f97bffc9
0.31.0

Open the chart page →

3,424
hlf-ordowkin3.1.01 of 1See more

hlf-ord owkin 3.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
hyperledger/fabric-orderer:2.2.137294e05209b
golang.org/x/crypto@v0.0.0-20200221231518-2aa609cf4a9d
0.31.0

Open the chart page →

3,350
hlf-peerowkin5.1.01 of 1See more

hlf-peer owkin 5.1.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
hyperledger/fabric-peer:2.2.1bf4995c86af6
golang.org/x/crypto@v0.0.0-20200221231518-2aa609cf4a9d
0.31.0

Open the chart page →

3,688
ngrok-operatorpaganuzzi0.0.21 of 1See more

ngrok-operator paganuzzi 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/paganuzzi/ngrokoperator:latest5a10cd095699
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.31.0

Open the chart page →

2,811
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.31.0
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.31.0

Open the chart page →

7,833
spirephilips-labsVerified publisher0.12.23 of 6See more

spire philips-labs 0.12.2

3 of the 6 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
ghcr.io/spiffe/spire-agent:1.6.062517726d0c4
golang.org/x/crypto@v0.6.0
0.31.0
ghcr.io/spiffe/spire-controller-manager:0.2.25e90b2d092df
golang.org/x/crypto@v0.6.0
0.31.0
ghcr.io/spiffe/spire-server:1.6.0635b9024cad2
golang.org/x/crypto@v0.6.0
0.31.0

Open the chart page →

7,236
chadbotphntom0.2.31 of 1See more

chadbot phntom 0.2.3

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
phntom/chadbot:0.2.397c28e4178ad
golang.org/x/crypto@v0.10.0
0.31.0

Open the chart page →

1,103
chartmuseumphntom4.0.201 of 1See more

chartmuseum phntom 4.0.20

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
phntom/chartmuseum:v0.16.053883b65d9b7
golang.org/x/crypto@v0.9.0
0.31.0

Open the chart page →

2,939
pipelinewise-operatorpipelinewise-operatorVerified publisher0.5.11 of 1See more

pipelinewise-operator pipelinewise-operator 0.5.1

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
dirathea/pipelinewise-operator:v0.5.08d4c9f773ae1
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.31.0

Open the chart page →

2,121
secrets-store-csi-driver-provider-awsportefaix-hub0.4.01 of 1See more

secrets-store-csi-driver-provider-aws portefaix-hub 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-45337.

Container imageDigestPackageFixed in
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r2-2021.08.13.20.34-linux-amd6402aed3370fce
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0

Open the chart page →

2,206

Container images carrying it

1,828 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.31.0
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
golang.org/x/crypto@v0.25.0
0.31.0
1
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/filterd675f211a40f
golang.org/x/crypto@v0.28.0
0.31.0
1
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/ingressec4b544499ba
golang.org/x/crypto@v0.28.0
0.31.0
1
gcr.io/knative-releases/knative.dev/eventing/cmd/mtchannel_broker395f4ff1bd34
golang.org/x/crypto@v0.28.0
0.31.0
1
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhook873b968f02b5
golang.org/x/crypto@v0.0.0-20200323165209-0ec3e9974c59
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator1e3db4f2eeed
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/activatora5de0fb75046
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler2ef460356b17
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdb6ceff2aab4
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller30ce73388ae5
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.13.153d9aa4d2c7a
golang.org/x/crypto@v0.18.0
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.2.575cfdcfa050a
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.10.298a2cc7fd62e
golang.org/x/crypto@v0.1.0
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controllerb2cd45b8a8a4
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/controllerbac158dfb0c7
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookd27b4495ccc3
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.31.0
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookf16c0e022203
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.31.0
1
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.31.0
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
golang.org/x/crypto@v0.15.0
0.31.0
1
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.31.0
1
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.31.0
1
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.31.0
1
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
golang.org/x/crypto@v0.22.0
0.31.0
1
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.31.0
1
gcr.io/ml-pipeline/cache-server:2.3.0293941ee4f65
golang.org/x/crypto@v0.22.0
0.31.0
1
gcr.io/ml-pipeline/cache-server:2.0.0-alpha.583e79c709df3
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.31.0
1
gcr.io/ml-pipeline/persistenceagent:2.0.0-alpha.500db9796a37b
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.31.0
1
gcr.io/ml-pipeline/persistenceagent:2.3.0109ac1b38c41
golang.org/x/crypto@v0.22.0
0.31.0
1
gcr.io/ml-pipeline/scheduledworkflow:2.0.0-alpha.5795a0c8a0e13
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.31.0
1
gcr.io/ml-pipeline/scheduledworkflow:2.3.0f7e67e0bc071
golang.org/x/crypto@v0.22.0
0.31.0
1
gcr.io/ml-pipeline/workflow-controller:v3.3.8-license-compliance6c8e4e2a6443
golang.org/x/crypto@v0.0.0-20220128200615-198e4374d7ed
0.31.0
1
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
golang.org/x/crypto@v0.1.0
0.31.0
1
gcr.io/projectsigstore/cosigned784518ff3ee7
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.31.0
1
gcr.io/projectsigstore/policy-webhook82940e8c3e0d
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.31.0
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
golang.org/x/crypto@v0.0.0-20211209193657-4570a0811e8b
0.31.0
1
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.31.0
1
ghcr.io/alpineworks/katalog-backend:v1.0.77e7a26393cd1
golang.org/x/crypto@v0.27.0
0.31.0
1
ghcr.io/alpineworks/katalog-migrations:v1.0.562c44a384e13
golang.org/x/crypto@v0.27.0
0.31.0
1
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
golang.org/x/crypto@v0.1.0
0.31.0
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
golang.org/x/crypto@v0.15.0
0.31.0
1
ghcr.io/appscode/auditor:v0.0.1c62c89ee706d
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.31.0
1
ghcr.io/appscode/capa-vpc-peering-operator:v0.0.4b1557553a2b3
golang.org/x/crypto@v0.15.0
0.31.0
1
ghcr.io/appscode/docker-machine-operator:v0.0.481f6007abb4e
golang.org/x/crypto@v0.21.0
0.31.0
1
ghcr.io/appscode/fileserver:v0.0.2b1857871e06c
golang.org/x/crypto@v0.24.0
0.31.0
1
ghcr.io/appscode/grafana:v2025.2.367d18880448c
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.31.0
1
ghcr.io/appscode/kube-rbac-proxy:v0.18.27de54b6dedc8
golang.org/x/crypto@v0.29.0
0.31.0
1
ghcr.io/appscode/kube-rbac-proxy:v0.15.0d8cc6ffb9819
golang.org/x/crypto@v0.14.0
0.31.0
1
ghcr.io/appscode/license-proxyserver:v0.0.8d6c2532ea386
golang.org/x/crypto@v0.17.0
0.31.0
1
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
golang.org/x/crypto@v0.12.0
0.31.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.