CVE-2016-5386
UnscoredNot in the current index: no indexed chart deploys a container image carrying CVE-2016-5386 in its latest version. The tables below are over older indexed versions and charts no longer in the index, and this page is not offered to search engines.
Advisory
Published 9 Aug 2022In the index since 5 Sept 2026
- Severity
- Unscored
- worst across findings
- CVSS
- —
- base score, highest
- EPSS
- 0.052
- 92nd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 0
- of 17,781 indexed, latest versions
- Container images
- 5
- in older or deselected versions
- Fix available
- 1 of 1
- affected package
Improper input validation in net/http and net/http/cgi
Carried by no container image the latest versions of the 17,781 indexed charts deploy; current on 5 images referenced by older indexed versions or by charts no longer in the index.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| stdlibgolang | go1.26.4-X:jsonv2 | 1.6.3 | 5 |
- OSV records
- GO-2022-0761
Charts referencing it in older or deselected versions
4 by stars
Container images carrying it
5 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| ghcr.io/ | 68df9707e912 | stdlib | 1.6.3 | 2 |
| ghcr.io/ | 49900cd784e0 | stdlib | 1.6.3 | 1 |
| ghcr.io/ | 4552722389e8 | stdlib | 1.6.3 | 1 |
| ghcr.io/ | 73c1fd7b565e | stdlib | 1.6.3 | 1 |
| ghcr.io/ | 6f7bf2b8e434 | stdlib | 1.6.3 | 1 |