StackRadar

CVE-2020-26160

High

Advisory

Published 14 Apr 2021In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.022
81st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
175
of 17,781 indexed, latest versions
Container images
163
deployed by those charts
Fix available
None
affected package

Authorization bypass in github.com/dgrijalva/jwt-go

Carried by container images the latest versions of 175 of 17,781 indexed charts deploy, on 163 images.

Affected packageAffected versionsFixed inImages
github.com/dgrijalva/jwt-gogolangv0.0.0-20160705203006-01aeca54ebda, v3.0.1-0.20170104182250-a601269ab70c+incompatible, v3.2.0+incompatible, v3.2.1-0.20190620180102-5e25c22bd5d6+incompatible+1 moreno fix listed163
OSV records
GHSA-w73w-5m7g-f7qcGO-2020-0017
Also known as
SNYK-GOLANG-GITHUBCOMDGRIJALVAJWTGO-596515

Charts affected

175 by stars
ChartLatestAffected imagesRadar Score
harborharborOfficialVerified publisher1.19.22 of 8See more

harbor harbor 1.19.2

2 of the 8 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
goharbor/registry-photon:v2.15.2c4ebef61ceb5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

1,650
ambassadordatawire6.9.51 of 2See more

ambassador datawire 6.9.5

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
datawire/aes:1.14.48588eafe6862
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,086
edge-stackdatawire7.1.8-ea1 of 2See more

edge-stack datawire 7.1.8-ea

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
datawire/aes:2.0.3-ea07f8fe4f4f8e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,173
devtron-operatordevtron0.23.31 of 11See more

devtron-operator devtron 0.23.3

1 of the 11 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

32,902
helm-exportersstarcher0.5.01 of 1See more

helm-exporter sstarcher 0.5.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
sstarcher/helm-exporter:0.5.011769d01ba35
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,154
seafiledatamateVerified publisher0.6.01 of 6See more

seafile datamate 0.6.0

1 of the 6 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
datamate/seafile-professional:11.0.202dd66b722464
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

27,267
permission-managerkfirfer1.0.71 of 1See more

permission-manager kfirfer 1.0.7

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,266
statpinggeek-cookbookVerified publisher6.2.01 of 2See more

statping geek-cookbook 6.2.0

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,371
oesopsmxVerified publisher4.0.322 of 25See more

oes opsmx 4.0.32

2 of the 25 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
minio/minio:RELEASE.2020-12-03T05-49-24Z053f103f4894
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

107,811
knative-servingsoftonic3.0.01 of 5See more

knative-serving softonic 3.0.0

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned30ce73388ae5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

12,502
maeshtraefikOfficialVerified publisher2.1.21 of 7See more

maesh traefik 2.1.2

1 of the 7 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
containous/maesh:v1.3.2587162516502
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,136
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,222
chirpstackbeeinventor0.1.101 of 5See more

chirpstack beeinventor 0.1.10

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,807
brpservicebrpservice1.1.01 of 4See more

brpservice brpservice 1.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,830
cloudflow-enterprise-componentscloudflow-helm-charts0.0.0-NIGHTLY011220201 of 9See more

cloudflow-enterprise-components cloudflow-helm-charts 0.0.0-NIGHTLY01122020

1 of the 9 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.21.0d43417c260e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,256
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,303
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

6,473
cubefscubefs3.2.01 of 10See more

cubefs cubefs 3.2.0

1 of the 10 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed

Open the chart page →

15,891
permission-managerdevopstalesVerified publisher1.8.01 of 1See more

permission-manager devopstales 1.8.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,266
digispoof-interfacedigispoof-interface1.0.01 of 3See more

digispoof-interface digispoof-interface 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,779
dnation-pingdnationcloud0.1.91 of 5See more

dnation-ping dnationcloud 0.1.9

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.21.0d43417c260e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

10,454
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

10,858
filebrowsergeek-cookbookVerified publisher1.4.21 of 1See more

filebrowser geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.18.04fcd47af573c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,474
giteakeyporttech0.2.101 of 4See more

gitea keyporttech 0.2.10

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
gitea/gitea:1.12.485416d6f65fe
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,408
mesherykubesphere-stable0.5.01 of 13See more

meshery kubesphere-stable 0.5.0

1 of the 13 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
layer5/meshery-cpx:stable-latest8c20a8a1d6a4
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

24,690
linstorkvaps1.14.01 of 11See more

linstor kvaps 1.14.0

1 of the 11 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

15,547
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,510
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,600
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,254
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

6,915
kubernetes-dashboard-proxyosc0.7.21 of 4See more

kubernetes-dashboard-proxy osc 0.7.2

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

6,005
ngrok-operatorpaganuzzi0.0.21 of 1See more

ngrok-operator paganuzzi 0.0.2

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/paganuzzi/ngrokoperator:latest5a10cd095699
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,811
postgres-backuppostgres-backup0.3.01 of 2See more

postgres-backup postgres-backup 0.3.0

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
nerzhul/mc-arm64:2020.10.034215df511f31
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,462
rke2-canalrke2-charts3.13.31 of 2See more

rke2-canal rke2-charts 3.13.3

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
rancher/hardened-calico:v3.13.36d2cd61a338b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

6,996
statpingstatping0.1.141 of 1See more

statping statping 0.1.14

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,371
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,280
user-componentuser-component1.2.01 of 4See more

user-component user-component 1.2.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,303
vearchvearch3.3.42 of 4See more

vearch vearch 3.3.4

2 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed
vearch/vearch:3.3.40768af33f9d9
github.com/dgrijalva/jwt-go@v3.2.1-0.20190620180102-5e25c22bd5d6+incompatible
no fix listed

Open the chart page →

5,008
waardepapierenwaardepapieren1.0.01 of 3See more

waardepapieren waardepapieren 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,079
waardepapieren-baliewaardepapieren-balie1.0.01 of 3See more

waardepapieren-balie waardepapieren-balie 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,871
waardepapieren-registerwaardepapieren-register1.1.01 of 4See more

waardepapieren-register waardepapieren-register 1.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,429
adresserviceadresservice1.1.01 of 5See more

adresservice adresservice 1.1.0

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,447
agendaserviceagendaservice1.0.01 of 3See more

agendaservice agendaservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
conduction/agendaservice-php:latest9cfeeb6c7c20
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,209
authorization-componentauthorization-component1.0.01 of 3See more

authorization-component authorization-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,561
appmesh-prometheusaws1.0.31 of 2See more

appmesh-prometheus aws 1.0.3

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed

Open the chart page →

2,939
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,521
keptn-addonsazureorkestra0.1.01 of 4See more

keptn-addons azureorkestra 0.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
keptncontrib/prometheus-service:0.6.029969dd547de
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

10,621
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
conduction/balance-registration-php:devc36094a41369
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,408
berichtserviceberichtservice1.0.01 of 3See more

berichtservice berichtservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,342
butlercibutlerciVerified publisher0.1.01 of 1See more

butlerci butlerci 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
etejeda/butlerci:0.1.0737d58183abc
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,374

Container images carrying it

163 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/devtron/kubectl:latest2ad610626658
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
6
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed
5
alfhou/hammond:v0.0.24c85dc0293aa1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
argoproj/argocd:v1.8.1830e86cacefd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
dgraph/dgraph:v21.12.03b55ea83fffe
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
goharbor/registry-photon:v2.15.2c4ebef61ceb5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
prom/prometheus:v2.19.0bfad037f95e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
datawire/aes:1.14.48588eafe6862
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
grafana/loki:1.5.0922b3f412fdd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
grafana/promtail:1.5.046e88d390cd6
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
prom/prometheus:v2.17.242d2395cd719
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
prom/prometheus:v2.21.0d43417c260e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
statping/statping:v0.90.74e874da513a5c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
alex6021710/ai-scale-auth:latest6c7a47e470c3
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
alpine/k8s:1.18.16a41efe02a041
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
apache/apisix-dashboard:2.9.0c010ea7d1694
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
conduction/agendaservice-php:latest9cfeeb6c7c20
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/balance-registration-php:devc36094a41369
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/betaalservice-php:latestece1ab544c57
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/cgrc-php:dev25415534d245
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/checkin-component-php:dev3423845692c1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/conduction-ui-php:dev2744565516e8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/contactmoment-component-php:deve1d4ad1e22a8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/docparser-php:devb6f95c8ead7d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/kvk-php:dev8f177f9f8a7b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/pan-php:dev24f03c57568f
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
containous/maesh:v1.3.2587162516502
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
coredns/coredns:1.7.073ca82b4ce82
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
craftypath/sops-operator:v0.8.0402a0024c732
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
crowdfox/external-service-operator:v1.1.06fa7e8063d27
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datadog/operator:0.3.117f08a860090
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datamate/seafile-professional:11.0.202dd66b722464
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datawire/aes:2.0.3-ea07f8fe4f4f8e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datawire/aes:1.13.62beb65062c8b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datawire/ambassador-operator:v1.3.0f95ae710d75c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
devspacecloud/manager:0.3.349c397413f7b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
drumsergio/duplicacy-container:0.1.0dd3ee9703969
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.