StackRadar

CVE-2024-45812

Medium

Advisory

Published 17 Sept 2024In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.4
base score, highest
EPSS
0.006
49th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
12
of 17,781 indexed, latest versions
Container images
11
deployed by those charts
Fix available
1 of 1
affected package

Vite DOM Clobbering gadget found in vite bundled scripts that leads to XSS

Carried by container images the latest versions of 12 of 17,781 indexed charts deploy, on 11 images.

Affected packageAffected versionsFixed inImages
vitenpm2.9.15, 3.2.5, 3.2.7, 4.0.4+7 more3.2.11, 4.5.4, 5.1.8, 5.4.611
OSV records
GHSA-64vr-g452-qvp3

Charts affected

12 by stars
ChartLatestAffected imagesRadar Score
outlineoutline0.0.91 of 4See more

outline outline 0.0.9

1 of the 4 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
outlinewiki/outline:0.69.1d060dcd8f9aa
vite@4.1.3
4.5.4

Open the chart page →

4,431
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
openmined/syft-frontend:0.9.5d11524a3854a
vite@4.5.3
4.5.4

Open the chart page →

17,245
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
vite@5.1.4
5.1.8

Open the chart page →

32,501
directusdirectusVerified publisher0.9.101 of 4See more

directus directus 0.9.10

1 of the 4 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
directus/directus:11.1.0e3c8bb975350
vite@4.5.2
4.5.4

Open the chart page →

4,551
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
openbas/caldera-server:5.1.0a277796d9724
vite@2.9.15
3.2.11

Open the chart page →

25,017
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
vite@4.0.4
4.5.4

Open the chart page →

4,944
tianjimsgbyte0.1.171 of 2See more

tianji msgbyte 0.1.17

1 of the 2 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
moonrailgun/tianji:1.11.2b528c8f8fcc4
vite@5.0.12
5.1.8

Open the chart page →

4,560
indexer-toolsnodeifyVerified publisher2.1.11 of 1See more

indexer-tools nodeify 2.1.1

1 of the 1 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
vite@3.2.5
3.2.11

Open the chart page →

2,919
recipe-apprecipe-app0.1.01 of 2See more

recipe-app recipe-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
anamskenneth/recipe_frontend:2025-06-079ecf04f42cc3
vite@5.4.4
5.4.6

Open the chart page →

3,271
retromretsamedocVerified publisher2026.2.51 of 1See more

retrom retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
vite@5.4.3
5.4.6

Open the chart page →

7,084
outlineschmitzis0.0.81 of 4See more

outline schmitzis 0.0.8

1 of the 4 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
outlinewiki/outline:0.69.1d060dcd8f9aa
vite@4.1.3
4.5.4

Open the chart page →

4,431
workadventureworkadventure1.1.01 of 9See more

workadventure workadventure 1.1.0

1 of the 9 container images this version deploys carry CVE-2024-45812.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-map-storage:v1.17.75bdab56da2fa
vite@3.2.7
3.2.11

Open the chart page →

16,083

Container images carrying it

11 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
outlinewiki/outline:0.69.1d060dcd8f9aa
vite@4.1.3
4.5.4
2
anamskenneth/recipe_frontend:2025-06-079ecf04f42cc3
vite@5.4.4
5.4.6
1
directus/directus:11.1.0e3c8bb975350
vite@4.5.2
4.5.4
1
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
vite@4.0.4
4.5.4
1
moonrailgun/tianji:1.11.2b528c8f8fcc4
vite@5.0.12
5.1.8
1
openbas/caldera-server:5.1.0a277796d9724
vite@2.9.15
3.2.11
1
openmined/syft-frontend:0.9.5d11524a3854a
vite@4.5.3
4.5.4
1
thecodingmachine/workadventure-map-storage:v1.17.75bdab56da2fa
vite@3.2.7
3.2.11
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
vite@5.1.4
5.1.8
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
vite@5.4.3
5.4.6
1
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
vite@3.2.5
3.2.11
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.