StackRadar

CVE-2024-6874

Medium

Advisory

Published 24 Jul 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.3
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
206
of 17,781 indexed, latest versions
Container images
193
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 206 of 17,781 indexed charts deploy, on 193 images.

Affected packageAffected versionsFixed inImages
curlapk7.86.0-r1, 7.87.0-r0, 7.87.0-r1, 7.87.0-r2+14 more8.9.0-r0193
OSV records
ALPINE-CVE-2024-6874

Charts affected

206 by stars
ChartLatestAffected imagesRadar Score
wallarm-ingress-rcwallarmVerified publisher4.8.41 of 2See more

wallarm-ingress-rc wallarm 4.8.4

1 of the 2 container images this version deploys carry CVE-2024-6874.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
curl@8.4.0-r0
8.9.0-r0

Open the chart page →

2,635
consulwarjiang1.3.01 of 2See more

consul warjiang 1.3.0

1 of the 2 container images this version deploys carry CVE-2024-6874.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
curl@8.4.0-r0
8.9.0-r0

Open the chart page →

4,060
generic-webhookwebhooks0.1.11 of 1See more

generic-webhook webhooks 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-6874.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
curl@7.87.0-r2
8.9.0-r0

Open the chart page →

2,030
prometheusalertygqygq2Verified publisher1.0.01 of 1See more

prometheusalert ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-6874.

Container imageDigestPackageFixed in
feiyu563/prometheus-alert:v4.9.1224cfa68cbd9
curl@8.5.0-r0
8.9.0-r0

Open the chart page →

1,611
zahori-consulzahoriVerified publisher1.0.11 of 2See more

zahori-consul zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2024-6874.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
curl@8.1.2-r0
8.9.0-r0

Open the chart page →

5,033
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-6874.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latestf166a963b550
curl@8.5.0-r0
8.9.0-r0

Open the chart page →

1,589

Container images carrying it

193 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ddosify/selfhosted_frontend:4.1.5bf454ab99d89
curl@8.5.0-r0
8.9.0-r0
1
defactops/defactops-ui:1.0.16825cdf9ba706
curl@8.5.0-r0
8.9.0-r0
1
devopstales/trivy-operator:2.575136aa7a26e
curl@7.87.0-r1
8.9.0-r0
1
dgtlmoon/sockpuppetbrowser:latestf166a963b550
curl@8.5.0-r0
8.9.0-r0
1
dnsforge/xteve:latest4d9a685c8c28
curl@7.87.0-r1
8.9.0-r0
1
dragonflyoss/manager:v2.1.49c3ef7f10698d
curl@8.5.0-r0
8.9.0-r0
1
dragonflyoss/scheduler:v2.1.49523785c77787
curl@8.5.0-r0
8.9.0-r0
1
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
curl@7.88.1-r0
8.9.0-r0
1
epamedp/jenkins-operator:2.15.328ef56bc0ca3
curl@8.4.0-r0
8.9.0-r0
1
eqalpha/keydb:alpine_x86_64_v6.3.4f1d60f12cb3c
curl@8.4.0-r0
8.9.0-r0
1
factly/mande-studio:0.34.19db4bee30e63
curl@8.2.1-r0
8.9.0-r0
1
fedodo/fedodo.ui.home:3c69413c4d690
curl@8.1.2-r0
8.9.0-r0
1
fedodo/fedodo.ui.micro:12b2b540081c21
curl@8.1.2-r0
8.9.0-r0
1
feiyu563/prometheus-alert:v4.9.1224cfa68cbd9
curl@8.5.0-r0
8.9.0-r0
1
felipecs8/qrcode-generator:v1d5f4f17cb066
curl@7.87.0-r1
8.9.0-r0
1
firefart/requesttracker:nginx-nightly-202307101028236b42a0
curl@8.1.2-r0
8.9.0-r0
1
folioci/mod-data-import-converter-storage:latest3028f333778f
curl@7.87.0-r0
8.9.0-r0
1
gitea/gitea:1.21.6ac73e0da341f
curl@8.5.0-r0
8.9.0-r0
1
glenndehaan/sunflare-tools:latesta5b3f1dd865d
curl@8.2.1-r0
8.9.0-r0
1
grafana/grafana:10.1.50679e877ba20
curl@8.4.0-r0
8.9.0-r0
1
grafana/grafana:10.1.11b9ca4bbc4a2
curl@8.2.1-r0
8.9.0-r0
1
grafana/grafana:9.5.239c849cebccc
curl@8.0.1-r0
8.9.0-r0
1
grafana/grafana:10.2.36b5b37eb35bb
curl@8.5.0-r0
8.9.0-r0
1
grafana/grafana:10.3.38640e5038e83
curl@8.5.0-r0
8.9.0-r0
1
grafana/grafana:10.4.0f9811e4e687f
curl@8.5.0-r0
8.9.0-r0
1
hansehe/graphql-gateway:1.0.458e09540afbc
curl@8.5.0-r0
8.9.0-r0
1
haproxytech/kubernetes-ingress:1.11.4c5f8a41ef0d4
curl@8.5.0-r0
8.9.0-r0
1
hashicorp/consul:1.17.0712fe02d2f84
curl@8.4.0-r0
8.9.0-r0
1
hashicorp/consul:1.15.3ddff34041c5c
curl@8.1.2-r0
8.9.0-r0
1
hashicorp/terraform:1.44dcb45513699
curl@8.2.1-r0
8.9.0-r0
1
hashicorp/waypoint:0.11.397d521a27498
curl@8.1.2-r0
8.9.0-r0
1
hazelcast/hazelcast:5.3.18fe26efde8e1
curl@8.2.1-r0
8.9.0-r0
1
hngtech11/hello-world:v1f0112dc12cfb
curl@8.5.0-r0
8.9.0-r0
1
homeassistant/home-assistant:2023.10.3021e2afc6e57
curl@8.3.0-r0
8.9.0-r0
1
homeassistant/home-assistant:2023.12.48d000332b09b
curl@8.4.0-r0
8.9.0-r0
1
i4trust/activation-service:2.2.09f3719176893
curl@8.1.2-r0
8.9.0-r0
1
intelloop/atlas-cmms-frontend:v1.5.12409c2a00ab6
curl@8.5.0-r0
8.9.0-r0
1
invoiceninja/invoiceninja:5.6.241437916dee01
curl@8.1.2-r0
8.9.0-r0
1
iomesh/prepare-csi:v1.0.3-rc0063b18afb6a1
curl@8.1.2-r0
8.9.0-r0
1
iomesh/prepare-csi:v1.0.24206d42b92f1
curl@8.1.2-r0
8.9.0-r0
1
jupyterhub/configurable-http-proxy:4.5.67adeeed34a36
curl@8.2.1-r0
8.9.0-r0
1
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
curl@8.5.0-r0
8.9.0-r0
1
kfirfer/king:latestc05d9fc7ae77
curl@8.2.1-r0
8.9.0-r0
1
kfirfer/mysql-client:0.0.4d23d173f333f
curl@8.5.0-r0
8.9.0-r0
1
kubeshop/testkube-dashboard:1.16.748958b4126a4
curl@8.5.0-r0
8.9.0-r0
1
kubestar/event-exporter:latest656606941255
curl@8.5.0-r0
8.9.0-r0
1
kubevirtmanager/kubevirt-manager:1.3.3df3ea27d4a9e
curl@8.5.0-r0
8.9.0-r0
1
kvalitetsit/stakit-frontend:0.2.5fd5c4f60ef80
curl@8.2.1-r0
8.9.0-r0
1
kyso/jupyter-diff:latest82299a9e5a86
curl@8.2.1-r0
8.9.0-r0
1
lachlanevenson/k8s-kubectl:v1.22.1638b7962cd016
curl@7.86.0-r1
8.9.0-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.