StackRadar

CVE-2020-7919

High

Advisory

Published 23 Jun 2021In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.026
85th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
153
of 17,781 indexed, latest versions
Container images
130
deployed by those charts
Fix available
3 of 3
affected packages

Helm uses crypto package vulnerable to panic from malformed X.509 certificate

Carried by container images the latest versions of 153 of 17,781 indexed charts deploy, on 130 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+27 more0.0.0-20200124225646-8b5121be2f68107
helm.sh/helm/v3golangv3.0.2, v3.0.33.1.03
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+2 more1.12.1654
OSV records
GHSA-cjjc-xp8v-855wGO-2022-0229
Also known as
BIT-golang-2020-7919

Charts affected

153 by stars
ChartLatestAffected imagesRadar Score
lokichoerodon0.29.01 of 1See more

loki choerodon 0.29.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
grafana/loki:1.5.0922b3f412fdd
golang.org/x/crypto@v0.0.0-20191112222119-e1110fd1c708
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,869
promtailchoerodon0.23.01 of 1See more

promtail choerodon 0.23.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
grafana/promtail:1.5.046e88d390cd6
golang.org/x/crypto@v0.0.0-20191112222119-e1110fd1c708
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,821
chubaofschubaofs1.5.11 of 6See more

chubaofs chubaofs 1.5.1

1 of the 6 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
stdlib@go1.13.1
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

3,595
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

6,695
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

6,921
galaxykubemancloudve2.10.11 of 7See more

galaxykubeman cloudve 2.10.1

1 of the 7 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
golang.org/x/crypto@v0.0.0-20190923035154-9ee001bba392
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

16,069
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
stdlib@go1.13.1
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

14,270
proxyinjectorcloudve0.0.231 of 1See more

proxyinjector cloudve 0.0.23

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
stdlib@go1.13.1
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

2,853
traefik-forward-authcolearendt0.0.151 of 1See more

traefik-forward-auth colearendt 0.0.15

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:269a2c985d2c5
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,234
katibcowboysysopVerified publisher2.4.21 of 4See more

katib cowboysysop 2.4.2

1 of the 4 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
kubeflowkatib/katib-db-manager:v0.12.0db88bf09d88e
stdlib@go1.13.3
1.12.16

Open the chart page →

6,542
mpi-operatorcowboysysopVerified publisher1.2.21 of 1See more

mpi-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
mpioperator/mpi-operator:0.3.03ccfa8d8b7bf
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,577
notebook-controllercowboysysopVerified publisher1.1.21 of 1See more

notebook-controller cowboysysop 1.1.2

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/notebooks/notebook-controller:v1.4cac3ed9a9826
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,582
quickchartcowboysysopVerified publisher5.0.01 of 1See more

quickchart cowboysysop 5.0.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
ianw/quickchart:v1.7.1dc49dd460c37
stdlib@go1.13.1
1.12.16

Open the chart page →

5,488
external-service-operatorcrowdfox0.1.01 of 1See more

external-service-operator crowdfox 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
crowdfox/external-service-operator:v1.1.06fa7e8063d27
golang.org/x/crypto@v0.0.0-20190605123033-f99c8df09eb5
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

4,624
mongodb-bi-connectordasmeta1.0.31 of 1See more

mongodb-bi-connector dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

5,832
nfs-provisionerdasmeta1.0.31 of 1See more

nfs-provisioner dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

2,806
ambassador-operatordatawire0.3.01 of 1See more

ambassador-operator datawire 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
datawire/ambassador-operator:v1.3.0f95ae710d75c
golang.org/x/crypto@v0.0.0-20191028145041-f83a4685e152
helm.sh/helm/v3@v3.0.3
0.0.0-20200124225646-8b5121be2f68
3.1.0

Open the chart page →

7,486
argocddevtron1.8.12 of 3See more

argocd devtron 1.8.1

2 of the 3 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

10,466
argocddevtron-labs1.8.12 of 3See more

argocd devtron-labs 1.8.1

2 of the 3 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

10,466
drogue-cloud-examplesdrogue-iotVerified publisher0.7.111 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

1 of the 6 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
golang.org/x/crypto@v0.0.0-20190911031432-227b76d455e7
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

30,699
drogue-cloud-metricsdrogue-iotVerified publisher0.7.111 of 8See more

drogue-cloud-metrics drogue-iot 0.7.11

1 of the 8 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

13,558
drone-kubernetes-secretsdroneVerified publisher0.1.41 of 1See more

drone-kubernetes-secrets drone 0.1.4

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
drone/kubernetes-secrets:latest206df2280ecf
golang.org/x/crypto@v0.0.0-20180808211826-de0752318171
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,760
temporaldtrdnk-helm-chartsVerified publisher0.35.01 of 13See more

temporal dtrdnk-helm-charts 0.35.0

1 of the 13 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

20,205
commentoduyet0.2.01 of 2See more

commento duyet 0.2.0

1 of the 2 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
registry.gitlab.com/commento/commento:v1.8.0e0ab1fc86761
golang.org/x/crypto@v0.0.0-20180808211826-de0752318171
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,679
mintakaeclipse-aeriosVerified publisher1.0.01 of 2See more

mintaka eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
timescale/timescaledb-postgis:latest-pg127758704d4a14
golang.org/x/crypto@v0.0.0-20190911031432-227b76d455e7
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

11,482
prometheusedu11.6.01 of 6See more

prometheus edu 11.6.0

1 of the 6 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
golang.org/x/crypto@v0.0.0-20190617133340-57b3e21c3d56
stdlib@go1.13.5
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

8,484
exa-csiexa-csi-driver0.2.0-rev21 of 6See more

exa-csi exa-csi-driver 0.2.0-rev2

1 of the 6 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
quay.io/ddn/exascaler-csi-file-driver:v2.2.6fe2e2e5a2751
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

7,048
oom-event-generatorfairwinds-incubator0.2.21 of 1See more

oom-event-generator fairwinds-incubator 0.2.2

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
stdlib@go1.13
1.12.16

Open the chart page →

4,639
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
golang.org/x/crypto@v0.0.0-20191028145041-f83a4685e152
stdlib@go1.13.5
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

14,673
findery-marketfindery-market0.1.01 of 7See more

findery-market findery-market 0.1.0

1 of the 7 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
chandanteekinavar/findery-market-payment-service:1.0c96f759b6ce4
stdlib@go1.13
1.12.16

Open the chart page →

7,691
siembolgresearch0.1.61 of 4See more

siembol gresearch 0.1.6

1 of the 4 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
alpine/k8s:1.18.16a41efe02a041
stdlib@go1.13.4
1.12.16

Open the chart page →

14,312
docker-authhalkeye0.1.11 of 1See more

docker-auth halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,374
kubernetes-event-exporterhbahadorzadeh0.1.01 of 1See more

kubernetes-event-exporter hbahadorzadeh 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
opsgenie/kubernetes-event-exporter:0.9ecb246e4d260
golang.org/x/crypto@v0.0.0-20191029031824-8986dd9e96cf
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,630
labelsmanager-controllerhelm-charts-nr1.0.41 of 1See more

labelsmanager-controller helm-charts-nr 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
thomasnyambati/labelsmanager-controller:1.0.0148ae3f99fea
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,305
weblatehelm-charts-nr0.3.21 of 3See more

weblate helm-charts-nr 0.3.2

1 of the 3 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
stdlib@go1.13.5
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

7,984
stoloniamalryz0.10.01 of 2See more

stolon iamalryz 0.10.0

1 of the 2 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
sorintlab/stolon:v0.16.0-pg1236b45c0f97fc
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

4,045
jx-app-athensjenkins-x0.0.181 of 1See more

jx-app-athens jenkins-x 0.0.18

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
gomods/athens:v0.8.1d714c7ff0231
golang.org/x/crypto@v0.0.0-20190513172903-22d7a77e9e5f
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

4,225
jx-app-flaggerjenkins-x0.0.51 of 2See more

jx-app-flagger jenkins-x 0.0.5

1 of the 2 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
grafana/grafana:6.5.1befcd84da2c1
golang.org/x/crypto@v0.0.0-20190923035154-9ee001bba392
stdlib@go1.13.1
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

6,028
alpine-torjfwenischVerified publisher1.1.01 of 1See more

alpine-tor jfwenisch 1.1.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
jfwenisch/alpine-tor:latest9e6c229f953c
golang.org/x/crypto@v0.0.0-20190325154230-a5d413f7728c
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

4,460
dex-k8s-authenticatorkfirfer0.0.31 of 1See more

dex-k8s-authenticator kfirfer 0.0.3

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

2,791
traggokrzwiatrzyk1.0.01 of 1See more

traggo krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
traggo/server:0.2.3f1ced637510e
golang.org/x/crypto@v0.0.0-20190513172903-22d7a77e9e5f
stdlib@go1.13.1
0.0.0-20200124225646-8b5121be2f68
1.12.16

Open the chart page →

1,885
gitlabkubesphereVerified publisher4.2.36 of 17See more

gitlab kubesphere 4.2.3

6 of the 17 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
golang.org/x/crypto@v0.0.0-20190426145343-a29dc8fdc734
0.0.0-20200124225646-8b5121be2f68
mirrorgitlabcontainers/gitaly:v13.2.283599461ef8b
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
mirrorgitlabcontainers/gitlab-container-registry:v2.9.1-gitlab06b19a4bc805
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
mirrorgitlabcontainers/gitlab-shell:v13.3.09f3654f1eafc
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
mirrorgitlabcontainers/gitlab-workhorse-ce:v13.2.2a6d7bf42805a
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
mirrorgitlabcontainers/kubectl:1.13.1299931bd06b41
stdlib@go1.13.3
1.12.16

Open the chart page →

38,133
csi-qingcloudkubesphere-stable1.4.01 of 6See more

csi-qingcloud kubesphere-stable 1.4.0

1 of the 6 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
csiplugin/csi-qingcloud:v1.4.00766163dc046
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

12,402
curvefs-csikubesphere-stable0.1.01 of 3See more

curvefs-csi kubesphere-stable 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.12.16

Open the chart page →

2,822
iomeshkubesphere-stable1.1.01 of 25See more

iomesh kubesphere-stable 1.1.0

1 of the 25 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.12.16

Open the chart page →

48,665
IOMeshkubesphere-stable1.2.01 of 25See more

IOMesh kubesphere-stable 1.2.0

1 of the 25 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.12.16

Open the chart page →

46,341
pulsarkubesphere-stable2.7.131 of 3See more

pulsar kubesphere-stable 2.7.13

1 of the 3 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
prom/prometheus:v2.17.242d2395cd719
golang.org/x/crypto@v0.0.0-20191206172530-e9b2fee46413
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

14,320
csi-qingcloudkubesphere-testVerified publisher1.4.01 of 6See more

csi-qingcloud kubesphere-test 1.4.0

1 of the 6 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
csiplugin/csi-qingcloud:v1.4.00766163dc046
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.0.0-20200124225646-8b5121be2f68

Open the chart page →

12,402
curvefs-csikubesphere-testVerified publisher0.1.01 of 3See more

curvefs-csi kubesphere-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.12.16

Open the chart page →

2,822
mongodbkubesphere-testVerified publisher0.3.21 of 2See more

mongodb kubesphere-test 0.3.2

1 of the 2 container images this version deploys carry CVE-2020-7919.

Container imageDigestPackageFixed in
mikefarah/yq:2.4.16fc625c402de
stdlib@go1.13.3
1.12.16

Open the chart page →

9,623

Container images carrying it

130 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
6
prom/alertmanager:v0.20.07e4e9f7a0954
golang.org/x/crypto@v0.0.0-20190617133340-57b3e21c3d56
stdlib@go1.13.5
0.0.0-20200124225646-8b5121be2f68
1.12.16
5
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
stdlib@go1.13.1
0.0.0-20200124225646-8b5121be2f68
1.12.16
5
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.12.16
5
grafana/grafana:6.7.11ff3999e0fc0
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16
4
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
3
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20200124225646-8b5121be2f68
3
stakater/proxyinjector:v0.0.2383fef483d497
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
stdlib@go1.13.1
0.0.0-20200124225646-8b5121be2f68
1.12.16
3
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20200124225646-8b5121be2f68
3
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16
3
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
golang.org/x/crypto@v0.0.0-20190923035154-9ee001bba392
0.0.0-20200124225646-8b5121be2f68
3
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20200124225646-8b5121be2f68
2
csiplugin/csi-qingcloud:v1.4.00766163dc046
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.0.0-20200124225646-8b5121be2f68
2
grafana/loki:1.5.0922b3f412fdd
golang.org/x/crypto@v0.0.0-20191112222119-e1110fd1c708
0.0.0-20200124225646-8b5121be2f68
2
grafana/promtail:1.5.046e88d390cd6
golang.org/x/crypto@v0.0.0-20191112222119-e1110fd1c708
0.0.0-20200124225646-8b5121be2f68
2
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.12.16
2
jettech/kube-webhook-certgen:v1.2.1c42098c8d855
golang.org/x/crypto@v0.0.0-20181203042331-505ab145d0a9
0.0.0-20200124225646-8b5121be2f68
2
osixia/openldap:1.4.0ccd95cc6e61e
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16
2
prom/blackbox-exporter:v0.18.01ffc3f109eb3
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20200124225646-8b5121be2f68
2
prom/prometheus:v2.17.242d2395cd719
golang.org/x/crypto@v0.0.0-20191206172530-e9b2fee46413
0.0.0-20200124225646-8b5121be2f68
2
prom/pushgateway:v1.0.1a5df60347882
stdlib@go1.13.5
1.12.16
2
squareup/ghostunnel:v1.5.270f4cf270425
golang.org/x/crypto@v0.0.0-20191002192127-34f69633bfdc
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16
2
thomasnyambati/labelsmanager-controller:1.0.0148ae3f99fea
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20200124225646-8b5121be2f68
2
weblate/weblate:4.2.2-169c160d37a3c
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
stdlib@go1.13.5
0.0.0-20200124225646-8b5121be2f68
1.12.16
2
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20200124225646-8b5121be2f68
2
quay.io/dexidp/dex:v2.24.0c9b7f6d0d953
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20200124225646-8b5121be2f68
2
alpine/k8s:1.18.16a41efe02a041
stdlib@go1.13.4
1.12.16
1
amazon/aws-efs-csi-driver:v0.3.0b55277652ea8
stdlib@go1.13.4
1.12.16
1
ansgroup/cert-manager-webhook-safedns:v1.0.1cd6b0ef2b309
golang.org/x/crypto@v0.0.0-20191202143827-86a70503ff7e
0.0.0-20200124225646-8b5121be2f68
1
apache/skywalking-oap-server:8.1.0-es7641237e0299b
golang.org/x/crypto@v0.0.0-20191122220453-ac88ee75c92c
stdlib@go1.13.3
0.0.0-20200124225646-8b5121be2f68
1.12.16
1
apache/skywalking-ui:8.1.067d50e4deff4
golang.org/x/crypto@v0.0.0-20191122220453-ac88ee75c92c
stdlib@go1.13.3
0.0.0-20200124225646-8b5121be2f68
1.12.16
1
assistiot/smart-orchestrator_helm:latest9bb46ea14e8e
stdlib@go1.13
1.12.16
1
bitnamilegacy/mongodb:4.4.5e3c9d6b4bc92
golang.org/x/crypto@v0.0.0-20190530122614-20be4c3c3ed5
0.0.0-20200124225646-8b5121be2f68
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
stdlib@go1.13.3
0.0.0-20200124225646-8b5121be2f68
1.12.16
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16
1
chandanteekinavar/findery-market-payment-service:1.0c96f759b6ce4
stdlib@go1.13
1.12.16
1
cloudposse/bastion:latest0d9507e8a760
stdlib@go1.13.3
1.12.16
1
codercom/code-server:3.10.247605610ad8d
golang.org/x/crypto@v0.0.0-20191206172530-e9b2fee46413
0.0.0-20200124225646-8b5121be2f68
1
crowdfox/external-service-operator:v1.1.06fa7e8063d27
golang.org/x/crypto@v0.0.0-20190605123033-f99c8df09eb5
0.0.0-20200124225646-8b5121be2f68
1
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20200124225646-8b5121be2f68
1
datappeal/hive-metastore:lateste38c085a3567
golang.org/x/crypto@v0.0.0-20191112222119-e1110fd1c708
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16
1
datawire/ambassador-operator:v1.3.0f95ae710d75c
golang.org/x/crypto@v0.0.0-20191028145041-f83a4685e152
helm.sh/helm/v3@v3.0.3
0.0.0-20200124225646-8b5121be2f68
3.1.0
1
devspacecloud/manager:0.3.349c397413f7b
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20200124225646-8b5121be2f68
1
drone/drone-runner-docker:1.8.1137e79c5e23c
golang.org/x/crypto@v0.0.0-20190621222207-cc06ce4a13d4
0.0.0-20200124225646-8b5121be2f68
1
drone/kubernetes-secrets:latest206df2280ecf
golang.org/x/crypto@v0.0.0-20180808211826-de0752318171
0.0.0-20200124225646-8b5121be2f68
1
engrmth/bnkr:2.1.06d8464e6f0e8
golang.org/x/crypto@v0.0.0-20190530122614-20be4c3c3ed5
0.0.0-20200124225646-8b5121be2f68
1
envoyproxy/ratelimit:v1.4.071081616da3e
golang.org/x/crypto@v0.0.0-20191219195013-becbf705a915
0.0.0-20200124225646-8b5121be2f68
1
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
golang.org/x/crypto@v0.0.0-20190426145343-a29dc8fdc734
0.0.0-20200124225646-8b5121be2f68
1
gomods/athens:v0.8.1d714c7ff0231
golang.org/x/crypto@v0.0.0-20190513172903-22d7a77e9e5f
stdlib@go1.13.4
0.0.0-20200124225646-8b5121be2f68
1.12.16
1
gomods/athens:v0.11.0efb811df7844
golang.org/x/crypto@v0.0.0-20191206172530-e9b2fee46413
0.0.0-20200124225646-8b5121be2f68
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.