StackRadar

CVE-2020-26160

High

Advisory

Published 14 Apr 2021In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.022
81st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
175
of 17,781 indexed, latest versions
Container images
163
deployed by those charts
Fix available
None
affected package

Authorization bypass in github.com/dgrijalva/jwt-go

Carried by container images the latest versions of 175 of 17,781 indexed charts deploy, on 163 images.

Affected packageAffected versionsFixed inImages
github.com/dgrijalva/jwt-gogolangv0.0.0-20160705203006-01aeca54ebda, v3.0.1-0.20170104182250-a601269ab70c+incompatible, v3.2.0+incompatible, v3.2.1-0.20190620180102-5e25c22bd5d6+incompatible+1 moreno fix listed163
OSV records
GHSA-w73w-5m7g-f7qcGO-2020-0017
Also known as
SNYK-GOLANG-GITHUBCOMDGRIJALVAJWTGO-596515

Charts affected

175 by stars
ChartLatestAffected imagesRadar Score
apisix-dashboardkubesphereVerified publisher0.3.01 of 1See more

apisix-dashboard kubesphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
apache/apisix-dashboard:2.9.0c010ea7d1694
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,518
gitlabkubesphereVerified publisher4.2.33 of 17See more

gitlab kubesphere 4.2.3

3 of the 17 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
mirrorgitlabcontainers/gitlab-container-registry:v2.9.1-gitlab06b19a4bc805
github.com/dgrijalva/jwt-go@v3.0.1-0.20170104182250-a601269ab70c+incompatible
no fix listed
mirrorgitlabcontainers/gitlab-workhorse-ce:v13.2.2a6d7bf42805a
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

38,133
pulsarkubesphere-stable2.7.131 of 3See more

pulsar kubesphere-stable 2.7.13

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.17.242d2395cd719
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

14,320
kvkkvkservice0.1.01 of 4See more

kvk kvkservice 0.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
conduction/kvk-php:dev8f177f9f8a7b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,534
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

26,356
prometheusleechistest11.6.01 of 6See more

prometheus leechistest 11.6.0

1 of the 6 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.19.0bfad037f95e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,484
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-auth-go:latest6597b26959d2
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,905
ocatiecataloguslocatiecatalogus1.0.01 of 3See more

ocatiecatalogus locatiecatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/ocatiecatalogus-php:latestc22764cbfa97
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,510
devspace-cloudloftVerified publisher0.3.31 of 8See more

devspace-cloud loft 0.3.3

1 of the 8 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
devspacecloud/manager:0.3.349c397413f7b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

9,880
loggingcomponentloggingcomponent1.0.01 of 3See more

loggingcomponent loggingcomponent 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/loggingcomponent-php:latest834b8e1af290
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,492
nightingalelogic3579Verified publisher0.3.11 of 6See more

nightingale logic3579 0.3.1

1 of the 6 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
flashcatcloud/nightingale:8.5.1421acb36181b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,938
logicservicelogicservice1.0.01 of 4See more

logicservice logicservice 1.0.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/logicservice-php:latest72aae2080595
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,499
apica-ascentlogiqai2.0.43 of 19See more

apica-ascent logiqai 2.0.4

3 of the 19 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
logiqai/flash-discovery:v2.0.3f5b551bca98e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
minio/mc:RELEASE.2020-03-14T01-23-37Z571feb124476
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
minio/minio:RELEASE.2020-09-17T04-49-20Ze2b7b633c250
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

23,613
mattermost-chaos-enginemattermostVerified publisher0.2.01 of 1See more

mattermost-chaos-engine mattermost 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
mattermost/mattermost-app-chaosengine:c153e436268954edd67
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,067
medewerkercatalogusmedewerkercatalogus1.0.01 of 3See more

medewerkercatalogus medewerkercatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/medewerkercatalogus-php:latest1ea5412bed26
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,327
memo-componentmemo-component1.0.01 of 3See more

memo-component memo-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/memo-component-php:latestef77f4c089a1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,510
kubefedmesosphere0.5.21 of 1See more

kubefed mesosphere 0.5.2

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
mesosphere/kubefed:proxyurl4fd8889195fe
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,144
kube-oidc-proxymesosphere0.3.41 of 1See more

kube-oidc-proxy mesosphere 0.3.4

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/jetstack/kube-oidc-proxy:v0.3.0e045b26eb6df
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,144
kommandermesosphere-stable0.39.26 of 29See more

kommander mesosphere-stable 0.39.2

6 of the 29 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
mesosphere/kommander-licensing-controller-manager:v0.21.28e18bbe407f7
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
mesosphere/kommander-licensing-webhook:v0.21.2265edcd2a1ca
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
prom/prometheus:v2.19.2cd134bd4fca0
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
thanosio/thanos:v0.15.0b12d5c31bf5a
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

68,284
pulsarv2milvus-helm2.7.81 of 4See more

pulsarv2 milvus-helm 2.7.8

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.17.242d2395cd719
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

15,855
corednsmoikot1.13.31 of 1See more

coredns moikot 1.13.3

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
coredns/coredns:1.7.073ca82b4ce82
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,547
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

25,933
notification-componentnotification-component1.0.01 of 4See more

notification-component notification-component 1.0.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,527
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

4,861
one-green-coreone-green-coreVerified publisher0.0.71 of 8See more

one-green-core one-green-core 0.0.7

1 of the 8 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
library/influxdb:2.0.8ba10ac9ba17a
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

9,558
nem-monitoringopencord1.3.221 of 9See more

nem-monitoring opencord 1.3.22

1 of the 9 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed

Open the chart page →

4,612
opscruiseopenshift0.35.1002 of 11See more

opscruise openshift 0.35.100

2 of the 11 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
grafana/loki:2.0.077e138f81a8e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
grafana/promtail:2.0.05fd12edcc694
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,201
orderregistratiecomponentorderregistratiecomponent1.0.01 of 3See more

orderregistratiecomponent orderregistratiecomponent 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/orderregistratiecomponent-php:latestd17257e4fa27
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,492
hammondpascaliskeVerified publisher2.0.01 of 2See more

hammond pascaliske 2.0.0

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

1,806
permission-managerpermission-manager1.0.0-seal1 of 1See more

permission-manager permission-manager 1.0.0-seal

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,266
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

11,151
oauth2-proxypresto-loadbalancer4.3.181 of 2See more

oauth2-proxy presto-loadbalancer 4.3.18

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,958
procestypecatalogusprocestypecatalogus1.1.01 of 4See more

procestypecatalogus procestypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/procestypecatalogus-php:latest956c4fb64796
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,429
productenendienstencatalogusproductenendienstencatalogus1.0.01 of 3See more

productenendienstencatalogus productenendienstencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/productenendienstencatalogus-php:latest7242da105081
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,510
panproto-application-nldesign0.1.01 of 5See more

pan proto-application-nldesign 0.1.0

1 of the 5 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
conduction/pan-php:dev24f03c57568f
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

8,725
proto-component-commongroundproto-component-commonground1.0.01 of 3See more

proto-component-commonground proto-component-commonground 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/proto-component-commonground-php:latesteb36ead1954e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,510
harborquench-harborVerified publisher0.0.191 of 9See more

harbor quench-harbor 0.0.19

1 of the 9 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/quenchworks/images/harbor-registrydigest-pinnedb9cf2060b2a5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

567
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

11,437
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

29,227
reportportalreportportal5.7.21 of 8See more

reportportal reportportal 5.7.2

1 of the 8 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
reportportal/service-index:5.0.112b27a2d7a87d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

25,737
review-componentreview-component1.0.01 of 3See more

review-component review-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/review-component-php:latestafe623824b82
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

7,491
rke2-canal-1.19-1.20rke2-charts3.13.3-build20211022021 of 2See more

rke2-canal-1.19-1.20 rke2-charts 3.13.3-build2021102202

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
rancher/hardened-calico:v3.13.3-build20210223c678c25d47c8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

5,942
argocdromholdings1.8.11 of 3See more

argocd romholdings 1.8.1

1 of the 3 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

10,466
devtron-enterpriseromholdings48.0.01 of 28See more

devtron-enterprise romholdings 48.0.0

1 of the 28 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

68,240
devtron-operatorromholdings0.23.31 of 11See more

devtron-operator romholdings 0.23.3

1 of the 11 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

32,902
dgraphromholdings0.0.201 of 1See more

dgraph romholdings 0.0.20

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

11,909
operatorrookout0.0.201 of 2See more

operator rookout 0.0.20

1 of the 2 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
rookout/k8s-operator:latest0d083f3ef1a7
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,209
version-checkerschmitzis0.2.21 of 1See more

version-checker schmitzis 0.2.2

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

3,023
seldon-core-analyticsseldon1.17.11 of 8See more

seldon-core-analytics seldon 1.17.1

1 of the 8 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
prom/prometheus:v2.18.15880ec936055
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

10,733
keydbsinextraVerified publisher0.31.01 of 1See more

keydb sinextra 0.31.0

1 of the 1 container images this version deploys carry CVE-2020-26160.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed

Open the chart page →

2,165

Container images carrying it

163 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/devtron/kubectl:latest2ad610626658
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
6
prom/prometheus:v2.13.10a8caa2e9f19
github.com/dgrijalva/jwt-go@v0.0.0-20160705203006-01aeca54ebda
no fix listed
5
alfhou/hammond:v0.0.24c85dc0293aa1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
argoproj/argocd:v1.8.1830e86cacefd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
dgraph/dgraph:v21.12.03b55ea83fffe
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
goharbor/registry-photon:v2.15.2c4ebef61ceb5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
prom/prometheus:v2.19.0bfad037f95e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
3
datawire/aes:1.14.48588eafe6862
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
grafana/loki:1.5.0922b3f412fdd
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
grafana/promtail:1.5.046e88d390cd6
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
prom/prometheus:v2.17.242d2395cd719
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
prom/prometheus:v2.21.0d43417c260e5
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
statping/statping:v0.90.74e874da513a5c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
2
alex6021710/ai-scale-auth:latest6c7a47e470c3
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
alpine/k8s:1.18.16a41efe02a041
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
apache/apisix-dashboard:2.9.0c010ea7d1694
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
github.com/dgrijalva/jwt-go@v3.2.1-0.20200107013213-dc14462fd587+incompatible
no fix listed
1
conduction/agendaservice-php:latest9cfeeb6c7c20
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/balance-registration-php:devc36094a41369
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/betaalservice-php:latestece1ab544c57
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/cgrc-php:dev25415534d245
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/checkin-component-php:dev3423845692c1
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/conduction-ui-php:dev2744565516e8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/contactmoment-component-php:deve1d4ad1e22a8
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/docparser-php:devb6f95c8ead7d
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/kvk-php:dev8f177f9f8a7b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
conduction/pan-php:dev24f03c57568f
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
containous/maesh:v1.3.2587162516502
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
coredns/coredns:1.7.073ca82b4ce82
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
craftypath/sops-operator:v0.8.0402a0024c732
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
crowdfox/external-service-operator:v1.1.06fa7e8063d27
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datadog/operator:0.3.117f08a860090
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datamate/seafile-professional:11.0.202dd66b722464
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datawire/aes:2.0.3-ea07f8fe4f4f8e
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datawire/aes:1.13.62beb65062c8b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
datawire/ambassador-operator:v1.3.0f95ae710d75c
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
devspacecloud/manager:0.3.349c397413f7b
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1
drumsergio/duplicacy-container:0.1.0dd3ee9703969
github.com/dgrijalva/jwt-go@v3.2.0+incompatible
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.