StackRadar

CVE-2020-26160

High

Advisory

Published 14 Apr 2021In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.022
81st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
175
of 17,781 indexed, latest versions
Container images
163
deployed by those charts
Fix available
None
affected package

Authorization bypass in github.com/dgrijalva/jwt-go

Carried by container images the latest versions of 175 of 17,781 indexed charts deploy, on 163 images.

Affected packageAffected versionsFixed inImages
github.com/dgrijalva/jwt-gogolangv0.0.0-20160705203006-01aeca54ebda, v3.0.1-0.20170104182250-a601269ab70c+incompatible, v3.2.0+incompatible, v3.2.1-0.20190620180102-5e25c22bd5d6+incompatible+1 moreno fix listed163
OSV records
GHSA-w73w-5m7g-f7qcGO-2020-0017
Also known as
SNYK-GOLANG-GITHUBCOMDGRIJALVAJWTGO-596515

Charts affected

175 by stars
ChartLatestAffected imagesRadar Score
harborharborOfficialVerified publisher1.19.22 of 8See more

harbor harbor 1.19.2

2 of the 8 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
goharbor/registry-photon:v2.15.2c4ebef61ceb5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

1,650
ambassadordatawire6.9.51 of 2See more

ambassador datawire 6.9.5

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
datawire/aes:1.14.48588eafe6862
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,086
edge-stackdatawire7.1.8-ea1 of 2See more

edge-stack datawire 7.1.8-ea

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
datawire/aes:2.0.3-ea07f8fe4f4f8e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,173
devtron-operatordevtron0.23.31 of 11See more

devtron-operator devtron 0.23.3

1 of the 11 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

32,902
helm-exportersstarcher0.5.01 of 1See more

helm-exporter sstarcher 0.5.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
sstarcher/helm-exporter:0.5.011769d01ba35
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,154
seafiledatamateVerified publisher0.6.01 of 6See more

seafile datamate 0.6.0

1 of the 6 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
datamate/seafile-professional:11.0.202dd66b722464
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

27,267
permission-managerkfirfer1.0.71 of 1See more

permission-manager kfirfer 1.0.7

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,266
statpinggeek-cookbookVerified publisher6.2.01 of 2See more

statping geek-cookbook 6.2.0

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,371
oesopsmxVerified publisher4.0.322 of 25See more

oes opsmx 4.0.32

2 of the 25 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
minio/minio:RELEASE.2020-12-03T05-49-24Z053f103f4894
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

107,811
knative-servingsoftonic3.0.01 of 5See more

knative-serving softonic 3.0.0

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned30ce73388ae5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

12,502
maeshtraefikOfficialVerified publisher2.1.21 of 7See more

maesh traefik 2.1.2

1 of the 7 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
containous/maesh:v1.3.2587162516502
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,136
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,222
chirpstackbeeinventor0.1.101 of 5See more

chirpstack beeinventor 0.1.10

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,807
brpservicebrpservice1.1.01 of 4See more

brpservice brpservice 1.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,830
cloudflow-enterprise-componentscloudflow-helm-charts0.0.0-NIGHTLY011220201 of 9See more

cloudflow-enterprise-components cloudflow-helm-charts 0.0.0-NIGHTLY01122020

1 of the 9 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.21.0d43417c260e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,256
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,303
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

6,473
cubefscubefs3.2.01 of 10See more

cubefs cubefs 3.2.0

1 of the 10 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed

Open the chart page →

15,891
permission-managerdevopstalesVerified publisher1.8.01 of 1See more

permission-manager devopstales 1.8.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,266
digispoof-interfacedigispoof-interface1.0.01 of 3See more

digispoof-interface digispoof-interface 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,779
dnation-pingdnationcloud0.1.91 of 5See more

dnation-ping dnationcloud 0.1.9

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.21.0d43417c260e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

10,454
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

10,858
filebrowsergeek-cookbookVerified publisher1.4.21 of 1See more

filebrowser geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.18.04fcd47af573c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,474
giteakeyporttech0.2.101 of 4See more

gitea keyporttech 0.2.10

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
gitea/gitea:1.12.485416d6f65fe
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,408
mesherykubesphere-stable0.5.01 of 13See more

meshery kubesphere-stable 0.5.0

1 of the 13 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
layer5/meshery-cpx:stable-latest8c20a8a1d6a4
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

24,690
linstorkvaps1.14.01 of 11See more

linstor kvaps 1.14.0

1 of the 11 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

15,547
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,510
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,600
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,254
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

6,915
kubernetes-dashboard-proxyosc0.7.21 of 4See more

kubernetes-dashboard-proxy osc 0.7.2

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

6,005
ngrok-operatorpaganuzzi0.0.21 of 1See more

ngrok-operator paganuzzi 0.0.2

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/paganuzzi/ngrokoperator:latest5a10cd095699
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,811
postgres-backuppostgres-backup0.3.01 of 2See more

postgres-backup postgres-backup 0.3.0

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
nerzhul/mc-arm64:2020.10.034215df511f31
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,462
rke2-canalrke2-charts3.13.31 of 2See more

rke2-canal rke2-charts 3.13.3

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
rancher/hardened-calico:v3.13.36d2cd61a338b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

6,996
statpingstatping0.1.141 of 1See more

statping statping 0.1.14

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,371
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,280
user-componentuser-component1.2.01 of 4See more

user-component user-component 1.2.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,303
vearchvearch3.3.42 of 4See more

vearch vearch 3.3.4

2 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed
vearch/vearch:3.3.40768af33f9d9
github.com/dgrijalva/jwt-go@v3.2.1-0.20190620180102-5e25c22bd5d6+incompatible
no fix listed

Open the chart page →

5,008
waardepapierenwaardepapieren1.0.01 of 3See more

waardepapieren waardepapieren 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,079
waardepapieren-baliewaardepapieren-balie1.0.01 of 3See more

waardepapieren-balie waardepapieren-balie 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,871
waardepapieren-registerwaardepapieren-register1.1.01 of 4See more

waardepapieren-register waardepapieren-register 1.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,429
adresserviceadresservice1.1.01 of 5See more

adresservice adresservice 1.1.0

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,447
agendaserviceagendaservice1.0.01 of 3See more

agendaservice agendaservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
conduction/agendaservice-php:latest9cfeeb6c7c20
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,209
authorization-componentauthorization-component1.0.01 of 3See more

authorization-component authorization-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,561
appmesh-prometheusaws1.0.31 of 2See more

appmesh-prometheus aws 1.0.3

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed

Open the chart page →

2,939
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,521
keptn-addonsazureorkestra0.1.01 of 4See more

keptn-addons azureorkestra 0.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
keptncontrib/prometheus-service:0.6.029969dd547de
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

10,621
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
conduction/balance-registration-php:devc36094a41369
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,408
berichtserviceberichtservice1.0.01 of 3See more

berichtservice berichtservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,342
butlercibutlerciVerified publisher0.1.01 of 1See more

butlerci butlerci 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
etejeda/butlerci:0.1.0737d58183abc
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,374

Container images carrying it

163 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
thanosio/thanos:v0.15.0b12d5c31bf5a
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
vearch/vearch:3.3.40768af33f9d9
github.com/dgrijalva/jwt-go@v3.2.1-0.20190620180102-5e25c22bd5d6+incompatible
no fix listed
1
vikunja/api:0.17.18cba0520bf8c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
youssef11gaber10/deployment-auth-go:latest6597b26959d2
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller30ce73388ae5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/eherkenning-ui-php:latestdeed102b4255
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/grafregistratiecomponent-php:latest35225eaa87ab
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/instemmingservice-php:latest4ffe222b3e3a
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/loggingcomponent-php:latest834b8e1af290
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/logicservice-php:latest72aae2080595
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/medewerkercatalogus-php:latest1ea5412bed26
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/memo-component-php:latestef77f4c089a1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/ocatiecatalogus-php:latestc22764cbfa97
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/orderregistratiecomponent-php:latestd17257e4fa27
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/procestypecatalogus-php:latest956c4fb64796
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/productenendienstencatalogus-php:latest7242da105081
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/proto-component-commonground-php:latesteb36ead1954e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/review-component-php:latestafe623824b82
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/trouw-service-php:latestf745e2870692
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/external-secrets/external-secrets:v0.3.1156a1ea4490ba
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/paganuzzi/ngrokoperator:latest5a10cd095699
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/pipe-cd/pipecd:v0.39.00fae829caf29
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/quenchworks/images/harbor-registryb9cf2060b2a5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
ghcr.io/salesforce/sloop:sha-2ce8bbe119e24f24b1d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.