StackRadar

CVE-2024-56527

Medium

Advisory

Published 27 Dec 2024In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.008
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
14
of 17,781 indexed, latest versions
Container images
10
deployed by those charts
Fix available
1 of 1
affected package

TCPDF missing character escape on error messages

Carried by container images the latest versions of 14 of 17,781 indexed charts deploy, on 10 images.

Affected packageAffected versionsFixed inImages
tecnickcom/tcpdfcomposer6.3.5, 6.4.2, 6.4.4, 6.6.2+2 more6.8.010
OSV records
GHSA-qx95-cwh6-9mvq

Charts affected

14 by stars
ChartLatestAffected imagesRadar Score
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
tecnickcom/tcpdf@6.7.5
6.8.0

Open the chart page →

12,170
webtreesgeek-cookbookVerified publisher2.2.01 of 1See more

webtrees geek-cookbook 2.2.0

1 of the 1 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
tecnickcom/tcpdf@6.4.2
6.8.0

Open the chart page →

3,646
librenmsmidokura-communityVerified publisher0.3.21 of 6See more

librenms midokura-community 0.3.2

1 of the 6 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
librenms/librenms:22.4.14f1f3d667cc7
tecnickcom/tcpdf@6.4.4
6.8.0

Open the chart page →

8,967
chart-dnazarenochart-dnazareno0.1.01 of 3See more

chart-dnazareno chart-dnazareno 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
tecnickcom/tcpdf@6.6.2
6.8.0

Open the chart page →

5,778
apachedevops0.1.01 of 4See more

apache devops 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
tecnickcom/tcpdf@6.4.4
6.8.0

Open the chart page →

30,031
laraveldevops0.10.31 of 4See more

laravel devops 0.10.3

1 of the 4 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
tecnickcom/tcpdf@6.4.4
6.8.0

Open the chart page →

29,033
wordpressdevops0.12.01 of 4See more

wordpress devops 0.12.0

1 of the 4 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
tecnickcom/tcpdf@6.4.4
6.8.0

Open the chart page →

12,992
wallabaggeek-cookbookVerified publisher7.2.01 of 1See more

wallabag geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
wallabag/wallabag:2.4.25e4c26a7fb4a
tecnickcom/tcpdf@6.3.5
6.8.0

Open the chart page →

4,358
glpiglpi-chart0.1.11 of 3See more

glpi glpi-chart 0.1.1

1 of the 3 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
tecnickcom/tcpdf@6.7.5
6.8.0

Open the chart page →

12,170
librenmsnimbolus0.5.11 of 3See more

librenms nimbolus 0.5.1

1 of the 3 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
librenms/librenms:24.11.00920bc9117a8
tecnickcom/tcpdf@6.7.7
6.8.0

Open the chart page →

2,293
shopwarerobjuz2.0.01 of 6See more

shopware robjuz 2.0.0

1 of the 6 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
shyim/shopware:6.4.6.0a951c0e6b836
tecnickcom/tcpdf@6.4.2
6.8.0

Open the chart page →

2,972
phpmyadminsb-helm-charts0.3.01 of 1See more

phpmyadmin sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
tecnickcom/tcpdf@6.6.2
6.8.0

Open the chart page →

5,315
phpmyadminsitepilot1.0.11 of 1See more

phpmyadmin sitepilot 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.138437e021deb
tecnickcom/tcpdf@6.4.4
6.8.0

Open the chart page →

1,724
icingawebsvtech-public-helm-charts1.0.01 of 2See more

icingaweb svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-56527.

Container imageDigestPackageFixed in
svtechnmaa/svtech_icingaweb2:v1.0.2a59d0b81dde2
tecnickcom/tcpdf@6.4.2
6.8.0

Open the chart page →

2,038

Container images carrying it

10 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
tecnickcom/tcpdf@6.4.4
6.8.0
3
library/phpmyadmin:5.2.16e75aa8f767c
tecnickcom/tcpdf@6.6.2
6.8.0
2
vdiogov/glpi-conteiner:latest6945f84f0058
tecnickcom/tcpdf@6.7.5
6.8.0
2
librenms/librenms:24.11.00920bc9117a8
tecnickcom/tcpdf@6.7.7
6.8.0
1
librenms/librenms:22.4.14f1f3d667cc7
tecnickcom/tcpdf@6.4.4
6.8.0
1
phpmyadmin/phpmyadmin:5.138437e021deb
tecnickcom/tcpdf@6.4.4
6.8.0
1
shyim/shopware:6.4.6.0a951c0e6b836
tecnickcom/tcpdf@6.4.2
6.8.0
1
svtechnmaa/svtech_icingaweb2:v1.0.2a59d0b81dde2
tecnickcom/tcpdf@6.4.2
6.8.0
1
wallabag/wallabag:2.4.25e4c26a7fb4a
tecnickcom/tcpdf@6.3.5
6.8.0
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
tecnickcom/tcpdf@6.4.2
6.8.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.