StackRadar

CVE-2024-6763

Low

Advisory

Published 14 Oct 2024In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
0.010
60th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
274
of 17,781 indexed, latest versions
Container images
253
deployed by those charts
Fix available
1 of 1
affected package

Eclipse Jetty URI parsing of invalid authority

Carried by container images the latest versions of 274 of 17,781 indexed charts deploy, on 253 images.

Affected packageAffected versionsFixed inImages
jetty-httpmaven7.6.0.v20120127, 8.1.7.v20120910, 8.1.9.v20130131, 8.1.12.v20130726+74 more12.0.12253
OSV records
GHSA-qh8g-58pp-2wxh

Charts affected

274 by stars
ChartLatestAffected imagesRadar Score
zookeepersignoz0.0.11 of 1See more

zookeeper signoz 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
signoz/zookeeper:3.7.1fcc4a3288154
jetty-http@9.4.43.v20210629
12.0.12

Open the chart page →

2,917
sonatype-nexus3simcube1.0.11 of 2See more

sonatype-nexus3 simcube 1.0.1

1 of the 2 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
sonatype/nexus3:3.58.1586060431b64
jetty-http@9.4.51.v20230217
12.0.12

Open the chart page →

4,946
digdagskyoo20030.5.21 of 4See more

digdag skyoo2003 0.5.2

1 of the 4 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
jetty-http@9.3.11.v20160721
12.0.12

Open the chart page →

6,949
archivaslamdev0.0.71 of 2See more

archiva slamdev 0.0.7

1 of the 2 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
xetusoss/archiva:v2.2.588f25242b9ee
jetty-http@8.1.7.v20120910
12.0.12

Open the chart page →

6,907
atlassian-confluencesomeblackmagic3.4.11 of 1See more

atlassian-confluence someblackmagic 3.4.1

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
atlassian/confluence-server:7.10.03b9222ab32ef
jetty-http@9.4.19.v20190610
12.0.12

Open the chart page →

13,605
atlassian-jirasomeblackmagic3.3.21 of 1See more

atlassian-jira someblackmagic 3.3.2

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
atlassian/jira-software:8.14.037bc46cbec1a
jetty-http@8.1.15.v20140411
12.0.12

Open the chart page →

13,079
strimzi-user-operatorspartan0.4.01 of 1See more

strimzi-user-operator spartan 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.45.158c727cd2e68
jetty-http@9.4.57.v20241219
12.0.12

Open the chart page →

1,836
newrelic-private-minionsstarcher0.1.21 of 1See more

newrelic-private-minion sstarcher 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
jetty-http@9.4.11.v20180605
12.0.12

Open the chart page →

3,164
teku-validatorstakewise4.3.21 of 2See more

teku-validator stakewise 4.3.2

1 of the 2 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
consensys/teku:25.4.1bf6ecd2ea716
jetty-http@11.0.25
12.0.12

Open the chart page →

3,153
fdi-dotstatsuite-sfs-solrstatcan1.0.21 of 4See more

fdi-dotstatsuite-sfs-solr statcan 1.0.2

1 of the 4 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
jetty-http@9.4.44.v20210927
12.0.12

Open the chart page →

6,065
solrstatcan1.5.102 of 3See more

solr statcan 1.5.10

2 of the 3 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
jetty-http@9.4.44.v20210927
12.0.12
library/zookeeper:3.5.5b7a76ec06f68
jetty-http@9.4.17.v20190418
12.0.12

Open the chart page →

8,806
trinostatcan1.23.41 of 2See more

trino statcan 1.23.4

1 of the 2 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
trinodb/trino:405ee80ab5eeab2
jetty-http@9.4.49.v20220914
12.0.12

Open the chart page →

13,767
streamastreama1.0.11 of 2See more

streama streama 1.0.1

1 of the 2 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
just1not2/streama:1.10.48a2305192dec
jetty-http@8.1.15.v20140411
12.0.12

Open the chart page →

8,554
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
jetty-http@9.4.48.v20220622
12.0.12

Open the chart page →

18,756
hadoop-deploymenttejaswita-hadoop-helmchart1.0.01 of 1See more

hadoop-deployment tejaswita-hadoop-helmchart 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
apache/hadoop:3af361b20bec0
jetty-http@9.4.51.v20230217
12.0.12

Open the chart page →

4,240
clickhousetemp-charts0.7.11 of 3See more

clickhouse temp-charts 0.7.1

1 of the 3 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
library/zookeeper:3.6.180ad2170ad62
jetty-http@9.4.24.v20191120
12.0.12

Open the chart page →

8,707
tikatikaVerified publisher0.3.01 of 1See more

tika tika 0.3.0

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
jetty-http@11.0.26
12.0.12

Open the chart page →

1,825
zookeepertwomartensVerified publisher0.2.21 of 1See more

zookeeper twomartens 0.2.2

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
jetty-http@9.4.57.v20241219
12.0.12

Open the chart page →

1,733
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
jetty-http@9.4.54.v20240208
12.0.12

Open the chart page →

45,239
ubooquityvhdirkVerified publisher0.1.31 of 1See more

ubooquity vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
linuxserver/ubooquity:2.1.2-ls369932d6759112
jetty-http@9.4.0.v20161208
12.0.12

Open the chart page →

4,303
queryservicewbstack0.2.11 of 1See more

queryservice wbstack 0.2.1

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
jetty-http@9.4.12.v20180830
12.0.12

Open the chart page →

4,649
queryservice-updaterwbstack0.3.01 of 1See more

queryservice-updater wbstack 0.3.0

1 of the 1 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-updater:0.3.84_3.97525a57ac3f1
jetty-http@9.4.12.v20180830
12.0.12

Open the chart page →

3,176
drillwearefrank1.3.62 of 3See more

drill wearefrank 1.3.6

2 of the 3 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
jetty-http@9.4.41.v20210516
12.0.12
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
jetty-http@9.4.51.v20230217
12.0.12

Open the chart page →

9,397
is-pattern-1wso2is-pattern15.11.01 of 2See more

is-pattern-1 wso2is-pattern1 5.11.0

1 of the 2 container images this version deploys carry CVE-2024-6763.

Container imageDigestPackageFixed in
massimolauri/wso2is:5.11.0-centose08abf0ce767
jetty-http@8.1.15.v20140411
12.0.12

Open the chart page →

6,213

Container images carrying it

253 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
radondb/zookeeper:3.6.216981604f1a0
jetty-http@9.4.24.v20191120
12.0.12
1
resurfaceio/resurface:3.7.84d5cda2f64109
jetty-http@9.4.56.v20240826
12.0.12
1
richardchesterwood/k8s-fleetman-queue:release2f7f8d5951155
jetty-http@9.4.49.v20220914
12.0.12
1
rodolpheche/wiremock:2.27.22328a9fce2bf
jetty-http@9.4.30.v20200611
12.0.12
1
rundeck/rundeck:3.2.74d64fe56f767
jetty-http@9.4.20.v20190813
12.0.12
1
rundeck/rundeck:3.0.16b13e8059ad72
jetty-http@8.1.15.v20140411
12.0.12
1
scmmanager/scm-manager:3.12.1bfb766050f34
jetty-http@11.0.26
12.0.12
1
sismics/docs:v1.10f4b0ef019cf1
jetty-http@9.4.36.v20210114
12.0.12
1
slamdev/apache-hive:2.3.9-2.10.1b4b029c9b15f
jetty-http@7.6.0.v20120127
12.0.12
1
snappydatainc/spark-shuffle:v2.2.0-kubernetes-0.5.1fd4b2070466f
jetty-http@9.3.11.v20160721
12.0.12
1
sonatype/nexus3:3.58.1586060431b64
jetty-http@9.4.51.v20230217
12.0.12
1
sslhep/hive-metastore:3.1.39e80af083079
jetty-http@9.3.20.v20170531
12.0.12
1
stain/jena-fuseki:latestb1d0c96f19ad
jetty-http@12.0.11
12.0.12
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
jetty-http@9.4.48.v20220622
12.0.12
1
thehiveproject/cortex:3.1.7f4bc64fb8844
jetty-http@9.4.39.v20210325
12.0.12
1
thelastpickle/cassandra-reaper:1.3.09c53996c457d
jetty-http@9.4.6.v20170531
12.0.12
1
traccar/traccar:6.7-alpine621c8d6d46fd
jetty-http@11.0.25
12.0.12
1
trinodb/trino:4801565e8cac299
jetty-http@11.0.26
12.0.12
1
trinodb/trino:45038c6f24ab1a4
jetty-http@12.0.9
12.0.12
1
trinodb/trino:4815b5e0a97f599
jetty-http@11.0.26
12.0.12
1
trinodb/trino:4796af989b0846d
jetty-http@11.0.26
12.0.12
1
trinodb/trino:405ee80ab5eeab2
jetty-http@9.4.49.v20220914
12.0.12
1
verapdf/rest:v1.30.2341359ac6af5
jetty-http@10.0.26
12.0.12
1
voltha/voltha-onos:5.1.8e038acb950d3
jetty-http@9.4.43.v20210629
12.0.12
1
vromero/activemq-artemis:2.16.0408d6a46b153
jetty-http@9.4.27.v20200227
12.0.12
1
wistefan/mvf:lateste0887302b2d8
jetty-http@9.4.48.v20220622
12.0.12
1
xetusoss/archiva:v2.2.588f25242b9ee
jetty-http@8.1.7.v20120910
12.0.12
1
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
jetty-http@9.4.48.v20220622
12.0.12
1
ghcr.io/devops-ia/kafka-cruise-control:jdk17-cc2.5.146-iam2.3.8e310642de2e2
jetty-http@9.4.56.v20240826
12.0.12
1
ghcr.io/fleeksoft/hbase/hbase-base:2.4.13.2c144bdd688d7
jetty-http@9.4.46.v20220331
12.0.12
1
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
jetty-http@9.4.43.v20210629
12.0.12
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
jetty-http@9.4.30.v20200611
12.0.12
1
ghcr.io/jens-maus/raspberrymatic:3.83.6.202508244b22b4f407c4
jetty-http@9.4.7.v20170914
12.0.12
1
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
jetty-http@11.0.26
12.0.12
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
jetty-http@9.4.56.v20240826
12.0.12
1
ghcr.io/kubelauncher/kafka43e1085cd0a8
jetty-http@9.4.56.v20240826
12.0.12
1
ghcr.io/kubelauncher/zookeeper7826e9caa461
jetty-http@9.4.56.v20240826
12.0.12
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
jetty-http@9.4.43.v20210629
12.0.12
1
ghcr.io/openccu/openccu:3.89.8.20260719b2de2ff6e8e0
jetty-http@9.4.7.v20170914
12.0.12
1
ghcr.io/open-telemetry/demo:1.12.0-kafka071a788162e8
jetty-http@9.4.53.v20231009
12.0.12
1
ghcr.io/punchplatform/punchline-java:8.1.1d46ce7b96482
jetty-http@9.4.43.v20210629
12.0.12
1
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
jetty-http@9.3.11.v20160721
12.0.12
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
jetty-http@9.4.53.v20231009
12.0.12
1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
jetty-http@9.4.53.v20231009
12.0.12
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
jetty-http@10.0.20
12.0.12
1
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
jetty-http@9.4.12.v20180830
12.0.12
1
ghcr.io/wbstack/queryservice-updater:0.3.84_3.97525a57ac3f1
jetty-http@9.4.12.v20180830
12.0.12
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.59.3_local8cdcb7e83f9f
jetty-http@9.4.44.v20210927
12.0.12
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
jetty-http@9.4.51.v20230217
12.0.12
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
jetty-http@9.4.48.v20220622
12.0.12
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.