StackRadar

CVE-2021-31525

Medium

Advisory

Published 24 May 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.037
89th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
644
of 17,787 indexed, latest versions
Container images
666
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/net/http/httpguts vulnerable to Uncontrolled Recursion

Carried by container images the latest versions of 644 of 17,787 indexed charts deploy, on 666 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+77 more0.0.0-20210428140749-89ef3d95e781536
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+41 more1.15.12519
OSV records
GHSA-h86h-8ppg-mxmhGO-2022-0236
Also known as
BIT-golang-2021-31525

Charts affected

644 by stars
ChartLatestAffected imagesRadar Score
archerydoubanVerified publisher0.4.31 of 6See more

archery douban 0.4.3

1 of the 6 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
hhyo/archery:v1.9.11aa41843419e
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.6
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

5,853
karmadoubanVerified publisher1.9.21 of 1See more

karma douban 1.9.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
ghcr.io/prymitive/karma:v0.85d06892218680
stdlib@go1.16.3
1.15.12

Open the chart page →

2,017
enbuildenbuildVerified publisher0.0.501 of 6See more

enbuild enbuild 0.0.50

1 of the 6 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
stdlib@go1.15.8
1.15.12

Open the chart page →

31,510
nexus-operatorepmdedp-devVerified publisher2.11.0-MDTU-DDM-SNAPSHOT.11 of 1See more

nexus-operator epmdedp-dev 2.11.0-MDTU-DDM-SNAPSHOT.1

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
epamedp/nexus-operator:2.11.0-MDTU-DDM-SNAPSHOT.1449a53804699
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

2,266
httpbingoestahnVerified publisher0.1.11 of 1See more

httpbingo estahn 0.1.1

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
mccutchen/go-httpbin:v2.2.25994403ef75b
stdlib@go1.16.2
1.15.12

Open the chart page →

1,359
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
stdlib@go1.16.3
1.15.12

Open the chart page →

11,458
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
factly/vidcheck-server:0.12.087064eb0463c
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.14.2
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,617
openldapfluktuid0.1.11 of 2See more

openldap fluktuid 0.1.1

1 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
golang.org/x/net@v0.0.0-20201010224723-4f7140c49acb
stdlib@go1.15.5
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,313
dexgabibbo974.0.41 of 1See more

dex gabibbo97 4.0.4

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
stdlib@go1.16.2
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,391
alertmanager-botgeek-cookbookVerified publisher6.4.21 of 1See more

alertmanager-bot geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
metalmatze/alertmanager-bot:0.4.3426bc2ca7586
golang.org/x/net@v0.0.0-20181213202711-891ebc4b82d6
stdlib@go1.13.15
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,586
filebrowsergeek-cookbookVerified publisher1.4.21 of 1See more

filebrowser geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.18.04fcd47af573c
golang.org/x/net@v0.0.0-20200528225125-3c3fba18258b
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

3,474
focalboardgeek-cookbookVerified publisher4.4.21 of 1See more

focalboard geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
mattermost/focalboard:0.9.031078df7a3c8
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

3,631
owncastgeek-cookbookVerified publisher3.4.21 of 1See more

owncast geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
gabekangas/owncast:0.0.797461aedb580
golang.org/x/net@v0.0.0-20210421230115-4e50805a0758
stdlib@go1.15.2
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,167
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

8,029
sabnzbdgeek-cookbookVerified publisher9.4.21 of 1See more

sabnzbd geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
stdlib@go1.15
1.15.12

Open the chart page →

10,231
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.13.15
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

15,856
wireguardgeek-cookbookVerified publisher1.4.21 of 1See more

wireguard geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
stdlib@go1.15
1.15.12

Open the chart page →

7,660
helm-operatorhelm-operatorVerified publisher0.0.21 of 1See more

helm-operator helm-operator 0.0.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
bsgrigorov/helm-operator:latest45ab095f09c8
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

6,977
cratedb-adapter-v2hmdmph0.2.11 of 1See more

cratedb-adapter-v2 hmdmph 0.2.1

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/net@v0.0.0-20210423184538-5f58ad60dda6
stdlib@go1.16.3
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

2,913
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

10,400
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

10,475
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

10,421
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

10,421
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

10,701
istio-ratelimitistio-ratelimitVerified publisher0.0.51 of 2See more

istio-ratelimit istio-ratelimit 0.0.5

1 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:4d2efd61ede09a75a84c
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
stdlib@go1.14.15
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

1,812
giteakeyporttech0.2.101 of 4See more

gitea keyporttech 0.2.10

1 of the 4 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
gitea/gitea:1.12.485416d6f65fe
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
stdlib@go1.14.8
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

5,408
mesherykubesphere-stable0.5.02 of 13See more

meshery kubesphere-stable 0.5.0

2 of the 13 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
layer5/meshery-cpx:stable-latest8c20a8a1d6a4
golang.org/x/net@v0.0.0-20190827160401-ba9fcec4b297
stdlib@go1.13.1
0.0.0-20210428140749-89ef3d95e781
1.15.12
layer5/meshery-nsm:stable-latestebd6a8faf21f
golang.org/x/net@v0.0.0-20200822124328-c89045814202
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

24,690
aws-efs-csi-driverkubesphere-testVerified publisher0.1.01 of 3See more

aws-efs-csi-driver kubesphere-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
amazon/aws-efs-csi-driver:v0.3.0b55277652ea8
golang.org/x/net@v0.0.0-20190812203447-cdfb69ac37fc
stdlib@go1.13.4
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

2,603
kubemodkubmod0.5.21 of 2See more

kubemod kubmod 0.5.2

1 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.19.11f8154f7e80c
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

4,542
linstorkvaps1.14.04 of 11See more

linstor kvaps 1.14.0

4 of the 11 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-controller:v1.14.000ce11c31087
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.0.0-20210428140749-89ef3d95e781
ghcr.io/kvaps/linstor-csi:v1.14.0087618d16b83
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
0.0.0-20210428140749-89ef3d95e781
ghcr.io/kvaps/linstor-ha-controller:v1.14.08e7b44bbd123
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.0.0-20210428140749-89ef3d95e781
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

15,547
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

7,510
kube-iptables-tailerlifen-chartsVerified publisher0.2.31 of 1See more

kube-iptables-tailer lifen-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
stdlib@go1.13.8
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

4,418
logclilogcliVerified publisher0.1.01 of 1See more

logcli logcli 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
grafana/logcli:main-c90366d-amd643d85bb66e39b
stdlib@go1.16.2
1.15.12

Open the chart page →

2,947
voice-biometricslumenvox2.0.15 of 26See more

voice-biometrics lumenvox 2.0.1

5 of the 26 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.15.12
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.15.12
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
stdlib@go1.14.4
0.0.0-20210428140749-89ef3d95e781
1.15.12
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
stdlib@go1.15.8
0.0.0-20210428140749-89ef3d95e781
1.15.12
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/net@v0.0.0-20210324051636-2c4c8ecb7826
stdlib@go1.16.2
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

70,741
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,600
traefik-forward-authmesosphere0.3.102 of 2See more

traefik-forward-auth mesosphere 0.3.10

2 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15.11
0.0.0-20210428140749-89ef3d95e781
1.15.12
mesosphere/traefik-forward-auth:3.1.05456581d7b76
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.14.15
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

5,308
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
golang.org/x/net@v0.0.0-20200519113804-d87ec0cfa476
stdlib@go1.14.6
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,254
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
golang.org/x/net@v0.0.0-20201216054612-986b41b23924
stdlib@go1.15.7
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

6,915
podsyncmy0nVerified publisher1.5.41 of 2See more

podsync my0n 1.5.4

1 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
tdeutsch/podsync:v2.4.2b67186f4c9a5
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

2,059
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
stdlib@go1.15.1
1.15.12

Open the chart page →

5,300
kubernetes-dashboard-proxyosc0.7.21 of 4See more

kubernetes-dashboard-proxy osc 0.7.2

1 of the 4 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.16
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

6,005
hlf-caowkin2.1.01 of 2See more

hlf-ca owkin 2.1.0

1 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:1.5.1c7f3422ec1d5
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
stdlib@go1.15.7
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,424
hlf-ordowkin3.1.01 of 1See more

hlf-ord owkin 3.1.0

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
hyperledger/fabric-orderer:2.2.137294e05209b
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
stdlib@go1.14.4
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,350
hlf-peerowkin5.1.01 of 1See more

hlf-peer owkin 5.1.0

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
hyperledger/fabric-peer:2.2.1bf4995c86af6
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
stdlib@go1.14.4
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

3,688
prometheus-cachethqoxyno-zetaVerified publisher1.1.11 of 1See more

prometheus-cachethq oxyno-zeta 1.1.1

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
oxynozeta/prometheus-cachethq:1.1.131f11669d597
stdlib@go1.15.1
1.15.12

Open the chart page →

1,713
ngrok-operatorpaganuzzi0.0.21 of 1See more

ngrok-operator paganuzzi 0.0.2

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
ghcr.io/paganuzzi/ngrokoperator:latest5a10cd095699
golang.org/x/net@v0.0.0-20200301022130-244492dfa37a
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

2,811
patch-operatorpatch-operator0.1.111 of 2See more

patch-operator patch-operator 0.1.11

1 of the 2 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

7,807
pipelinewise-operatorpipelinewise-operatorVerified publisher0.5.11 of 1See more

pipelinewise-operator pipelinewise-operator 0.5.1

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
dirathea/pipelinewise-operator:v0.5.08d4c9f773ae1
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.15.8
0.0.0-20210428140749-89ef3d95e781
1.15.12

Open the chart page →

2,121
secrets-store-csi-driver-provider-awsportefaix-hub0.4.01 of 1See more

secrets-store-csi-driver-provider-aws portefaix-hub 0.4.0

1 of the 1 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r2-2021.08.13.20.34-linux-amd6402aed3370fce
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.0.0-20210428140749-89ef3d95e781

Open the chart page →

2,206
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2021-31525.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
stdlib@go1.14.4
1.15.12

Open the chart page →

31,844

Container images carrying it

666 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/google-samples/microservices-demo/productcatalogservice:v0.2.35a4a0e54c6d0
golang.org/x/net@v0.0.0-20190628185345-da137c7871d7
stdlib@go1.15.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
stdlib@go1.15.6
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/google-samples/microservices-demo/shippingservice:v0.2.30cb1707fc503
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
stdlib@go1.15.6
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhook873b968f02b5
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
stdlib@go1.14.2
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator1e3db4f2eeed
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
stdlib@go1.14.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/serving/cmd/activatora5de0fb75046
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
stdlib@go1.14.2
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler2ef460356b17
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
stdlib@go1.14.2
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdb6ceff2aab4
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
stdlib@go1.14.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller30ce73388ae5
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
stdlib@go1.14.2
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/serving/cmd/controllerb2cd45b8a8a4
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
stdlib@go1.14.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookd27b4495ccc3
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
stdlib@go1.14.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookf16c0e022203
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
stdlib@go1.14.2
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.0.0-20210428140749-89ef3d95e781
1
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.0.0-20210428140749-89ef3d95e781
1
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
golang.org/x/net@v0.0.0-20190311183353-d8887717615a
0.0.0-20210428140749-89ef3d95e781
1
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
golang.org/x/net@v0.0.0-20190311183353-d8887717615a
0.0.0-20210428140749-89ef3d95e781
1
gcr.io/pingcap-public/deadmansswitch:1.04861d81aa528
stdlib@go1.16.3
1.15.12
1
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
stdlib@go1.15.2
1.15.12
1
ghcr.io/angelnu/chirpstack-packet-multiplexer:latest0c84c2d71006
stdlib@go1.13.15
1.15.12
1
ghcr.io/appscode/grafana:v2025.2.367d18880448c
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.0.0-20210428140749-89ef3d95e781
1
ghcr.io/banzaicloud/tcheck:latest0147d87c2019
golang.org/x/net@v0.0.0-20170114055629-f2499483f923
stdlib@go1.15.2
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
stdlib@go1.16.3
1.15.12
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
stdlib@go1.16.2
1.15.12
1
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
stdlib@go1.16.2
1.15.12
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
stdlib@go1.16.2
1.15.12
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
stdlib@go1.13.15
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
stdlib@go1.14.7
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/cmacrae/kove:v0.2.0185bfaae750c
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.0.0-20210428140749-89ef3d95e781
1
ghcr.io/cmacrae/kove:v0.1.0db1244edefc8
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.16
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/eherkenning-ui-php:latestdeed102b4255
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/grafregistratiecomponent-php:latest35225eaa87ab
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/instemmingservice-php:latest4ffe222b3e3a
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/loggingcomponent-php:latest834b8e1af290
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/logicservice-php:latest72aae2080595
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/medewerkercatalogus-php:latest1ea5412bed26
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/memo-component-php:latestef77f4c089a1
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1
ghcr.io/conductionnl/ocatiecatalogus-php:latestc22764cbfa97
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.0.0-20210428140749-89ef3d95e781
1.15.12
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.