StackRadar

CVE-2022-2879

Unscored

Advisory

Published 6 Oct 2022In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.017
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,275
of 17,787 indexed, latest versions
Container images
1,380
deployed by those charts
Fix available
1 of 1
affected package

Unbounded memory consumption when reading headers in archive/tar

Carried by container images the latest versions of 1,275 of 17,787 indexed charts deploy, on 1,380 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+81 more1.18.71,380
OSV records
GO-2022-1037
Also known as
BIT-golang-2022-2879

Charts affected

1,275 by stars
ChartLatestAffected imagesRadar Score
kimai-helmchartkimai2tet0.1.01 of 2See more

kimai-helmchart kimai2tet 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.18.7

Open the chart page →

1,518
cadvisorkrakazyabraVerified publisher1.0.11 of 1See more

cadvisor krakazyabra 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
stdlib@go1.13.15
1.18.7

Open the chart page →

3,176
krakenkraken0.2.01 of 7See more

kraken kraken 0.2.0

1 of the 7 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
library/redis:5.0fc5ecd863862
stdlib@go1.16.7
1.18.7

Open the chart page →

1,731
kubeflowkromanow94-kubeflow0.5.14 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

4 of the 30 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubeflownotebookswg/kfam:v1.9.22060a2ede788
stdlib@go1.17.13
1.18.7
kubeflownotebookswg/notebook-controller:v1.9.20f14bd28fdd5
stdlib@go1.17.13
1.18.7
kubeflownotebookswg/profile-controller:v1.9.2f05a5538ae7e
stdlib@go1.17.13
1.18.7
kubeflownotebookswg/tensorboard-controller:v1.9.26536a9f61193
stdlib@go1.17.13
1.18.7

Open the chart page →

70,530
kron-aapm-sidecarkron-aapm-sidecar1.1.01 of 1See more

kron-aapm-sidecar kron-aapm-sidecar 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
krontechnology/aapm-sidecar-injector:1.1.0e078d54c1711
stdlib@go1.17.10
1.18.7

Open the chart page →

2,111
lndkronkltdVerified publisher0.3.93 of 4See more

lnd kronkltd 0.3.9

3 of the 4 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.14.1-betad94c8dbf6dac
stdlib@go1.17.1
1.18.7
thesisrobot/loop:v0.11.1-beta89ae07e787ca
stdlib@go1.13.12
1.18.7
thesisrobot/pool:v0.3.3-alpha2d1c388a4bda
stdlib@go1.14.12
1.18.7

Open the chart page →

8,451
casdoorkrzwiatrzyk1.0.01 of 1See more

casdoor krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
casbin/casdoor:v1.224.066f836ef778b
stdlib@go1.17.5
1.18.7

Open the chart page →

3,649
nocodbkrzwiatrzyk0.0.11 of 1See more

nocodb krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
nocodb/nocodb:0.100.2b0b91ec2a2dd
stdlib@go1.18.2
1.18.7

Open the chart page →

2,313
pipecdkrzwiatrzyk0.39.01 of 3See more

pipecd krzwiatrzyk 0.39.0

1 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
ghcr.io/pipe-cd/pipecd:v0.39.00fae829caf29
stdlib@go1.14.6
1.18.7

Open the chart page →

3,812
postgresql-backup-to-miniokrzwiatrzyk0.0.11 of 2See more

postgresql-backup-to-minio krzwiatrzyk 0.0.1

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.18.7

Open the chart page →

2,199
traggokrzwiatrzyk1.0.01 of 1See more

traggo krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
traggo/server:0.2.3f1ced637510e
stdlib@go1.13.1
1.18.7

Open the chart page →

1,885
cluster-componentkubebb0.2.24 of 4See more

cluster-component kubebb 0.2.2

4 of the 4 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubebb/cert-manager-cainjector:v1.8.0f83cd256229b
stdlib@go1.17.8
1.18.7
kubebb/cert-manager-controller:v1.8.020509de4b399
stdlib@go1.17.8
1.18.7
kubebb/cert-manager-webhook:v1.8.060d3cba0c267
stdlib@go1.17.8
1.18.7
kubebb/ingress-nginx-controller:v1.3.0067673df26a6
stdlib@go1.18.2
1.18.7

Open the chart page →

8,160
fabric-operatorkubebb0.1.01 of 1See more

fabric-operator kubebb 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
stdlib@go1.18.4
1.18.7

Open the chart page →

3,988
tdsfkubebb5.7.01 of 3See more

tdsf kubebb 5.7.0

1 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubebb/mesh-operator:v5.7.0163ebbfc7a82
stdlib@go1.18.4
1.18.7

Open the chart page →

6,490
u4a-componentkubebb0.2.103 of 8See more

u4a-component kubebb 0.2.10

3 of the 8 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubebb/iam-provider:v0.2.0-202401280ba03fcee3a7
stdlib@go1.17.13
1.18.7
kubebb/kube-oidc-proxy-ce:v0.3.0-2022100858d5efec568b
stdlib@go1.18
1.18.7
kubebb/oidc-server:v0.2.02b5894ef1e2f
stdlib@go1.17.8
1.18.7

Open the chart page →

13,819
chaos-meshkubeblocksVerified publisher2.7.21 of 4See more

chaos-mesh kubeblocks 2.7.2

1 of the 4 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
stdlib@go1.16.2
1.18.7

Open the chart page →

13,497
geminikubeblocksVerified publisher0.13.41 of 8See more

gemini kubeblocks 0.13.4

1 of the 8 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.7

Open the chart page →

3,103
jupyterhubkubeblocksVerified publisher0.1.01 of 7See more

jupyterhub kubeblocks 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
registry.k8s.io/kube-scheduler:v1.23.143e149d206076
stdlib@go1.17.13
1.18.7

Open the chart page →

7,356
nvidia-gpu-exporterkubeblocksVerified publisher0.3.11 of 1See more

nvidia-gpu-exporter kubeblocks 0.3.1

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
stdlib@go1.17
1.18.7

Open the chart page →

4,462
prometheuskubeblocksVerified publisher15.16.15 of 6See more

prometheus kubeblocks 15.16.1

5 of the 6 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.7
prom/pushgateway:v1.4.33496e0f85943
stdlib@go1.18.2
1.18.7
quay.io/prometheus/alertmanager:v0.24.0088464f949de
stdlib@go1.17.8
1.18.7
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
stdlib@go1.17.3
1.18.7
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
stdlib@go1.18.3
1.18.7

Open the chart page →

10,302
snapshot-controllerkubeblocksVerified publisher1.7.21 of 1See more

snapshot-controller kubeblocks 1.7.2

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v6.2.198bab4eaf23c
stdlib@go1.19
1.18.7

Open the chart page →

1,128
victoria-metrics-alertkubeblocksVerified publisher0.8.3-reload1 of 3See more

victoria-metrics-alert kubeblocks 0.8.3-reload

1 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.7

Open the chart page →

3,715
log-socketkube-loggingVerified publisher0.1.21 of 1See more

log-socket kube-logging 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/log-socket:latesta514736d2d4d
stdlib@go1.18.6
1.18.7

Open the chart page →

1,220
apm-serverkube-opsVerified publisher0.1.21 of 1See more

apm-server kube-ops 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
elastic/apm-server:7.17.6c7a1c63257d0
stdlib@go1.18.2
1.18.7

Open the chart page →

7,157
lokikube-opsVerified publisher1.7.31 of 1See more

loki kube-ops 1.7.3

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
quay.io/kube-ops/loki:2.2.14fbd63194674
stdlib@go1.15.3
1.18.7

Open the chart page →

2,646
promtailkube-opsVerified publisher1.5.11 of 2See more

promtail kube-ops 1.5.1

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
quay.io/kube-ops/promtail:2.2.134de6387233b
stdlib@go1.15.3
1.18.7

Open the chart page →

4,149
kubernetesweeklykubernetesweekly2.1.01 of 1See more

kubernetesweekly kubernetesweekly 2.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
zufardhiyaulhaq/kubernetesweekly:v2.1.0a287ada277c6
stdlib@go1.16.15
1.18.7

Open the chart page →

1,489
api-serverkubeshop0.11.161 of 2See more

api-server kubeshop 0.11.16

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubeshop/testkube-api-server:0.11.160ad97f07a78b
stdlib@go1.17.8
1.18.7

Open the chart page →

3,417
apisix-dashboardkubesphereVerified publisher0.3.01 of 1See more

apisix-dashboard kubesphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
apache/apisix-dashboard:2.9.0c010ea7d1694
stdlib@go1.14.15
1.18.7

Open the chart page →

2,518
apisix-ingress-controllerkubesphereVerified publisher0.8.01 of 2See more

apisix-ingress-controller kubesphere 0.8.0

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
apache/apisix-ingress-controller:1.3.0412f92cde0b3
stdlib@go1.13.8
1.18.7

Open the chart page →

2,409
fluentbit-operatorkubesphereVerified publisher0.1.01 of 2See more

fluentbit-operator kubesphere 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubesphere/fluentbit-operator:v0.9.0b87db3c57cb3
stdlib@go1.13.15
1.18.7

Open the chart page →

2,902
gitlabkubesphereVerified publisher4.2.36 of 17See more

gitlab kubesphere 4.2.3

6 of the 17 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
stdlib@go1.13.8
1.18.7
mirrorgitlabcontainers/gitaly:v13.2.283599461ef8b
stdlib@go1.13.9
1.18.7
mirrorgitlabcontainers/gitlab-container-registry:v2.9.1-gitlab06b19a4bc805
stdlib@go1.13.9
1.18.7
mirrorgitlabcontainers/gitlab-shell:v13.3.09f3654f1eafc
stdlib@go1.13.9
1.18.7
mirrorgitlabcontainers/gitlab-workhorse-ce:v13.2.2a6d7bf42805a
stdlib@go1.13.9
1.18.7
mirrorgitlabcontainers/kubectl:1.13.1299931bd06b41
stdlib@go1.13.3
1.18.7

Open the chart page →

38,133
harborkubesphereVerified publisher1.9.37 of 11See more

harbor kubesphere 1.9.3

7 of the 11 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
goharbor/chartmuseum-photon:v2.5.36ab3ca28e9e5
stdlib@go1.17.7
1.18.7
goharbor/harbor-core:v2.5.386bf3031f4a7
stdlib@go1.17.7
1.18.7
goharbor/harbor-jobservice:v2.5.38d5339ff2d74
stdlib@go1.17.7
1.18.7
goharbor/harbor-registryctl:v2.5.37f82ed1e2635
stdlib@go1.17.7
1.18.7
goharbor/notary-server-photon:v2.5.3fd91a4a1273f
stdlib@go1.14.15
1.18.7
goharbor/notary-signer-photon:v2.5.3a92b51aa7d6e
stdlib@go1.14.15
1.18.7
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
stdlib@go1.18.3
1.18.7

Open the chart page →

17,798
pvc-autoresizerkubesphereVerified publisher0.1.01 of 1See more

pvc-autoresizer kubesphere 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubesphere/pvc-autoresizer:v0.19a18a16c7b87
stdlib@go1.16.10
1.18.7

Open the chart page →

1,562
storageclass-accessorkubesphereVerified publisher0.1.01 of 1See more

storageclass-accessor kubesphere 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubesphere/storageclass-accessor:v0.1.1eac8f273a9b6
stdlib@go1.16.10
1.18.7

Open the chart page →

1,509
ccm-qingcloudkubesphere-stable0.1.01 of 1See more

ccm-qingcloud kubesphere-stable 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
stdlib@go1.18.2
1.18.7

Open the chart page →

1,540
chaos-meshkubesphere-stable2.5.13 of 3See more

chaos-mesh kubesphere-stable 2.5.1

3 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
stdlib@go1.18
1.18.7
ghcr.io/chaos-mesh/chaos-dashboard:v2.5.1448cb346b12c
stdlib@go1.18
1.18.7
ghcr.io/chaos-mesh/chaos-mesh:v2.5.1700bb42ac21d
stdlib@go1.18
1.18.7

Open the chart page →

8,555
cni-hostnickubesphere-stable0.1.01 of 1See more

cni-hostnic kubesphere-stable 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
stdlib@go1.16.3
1.18.7

Open the chart page →

2,437
cranekubesphere-stable0.5.23 of 3See more

crane kubesphere-stable 0.5.2

3 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
gocrane/crane-scheduler:0.0.239ba6d11b2079
stdlib@go1.17.2
1.18.7
gocrane/crane-scheduler-controller:0.1.23a2d7e60576f9
stdlib@go1.17.2
1.18.7
gocrane/craned:v0.5.1a1400909118c
stdlib@go1.17.2
1.18.7

Open the chart page →

8,883
csi-qingcloudkubesphere-stable1.4.05 of 6See more

csi-qingcloud kubesphere-stable 1.4.0

5 of the 6 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.18.7
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.18.7
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.18.7
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.18.7
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.18.7

Open the chart page →

12,402
curvefs-csikubesphere-stable0.1.01 of 3See more

curvefs-csi kubesphere-stable 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.18.7

Open the chart page →

2,822
deepflowkubesphere-stable6.2.6063 of 8See more

deepflow kubesphere-stable 6.2.606

3 of the 8 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
stdlib@go1.18.3
1.18.7
deepflowce/deepflowio-init-grafana:v6.2.6.56b51a0206b04
stdlib@go1.19.1
1.18.7
deepflowce/mysql:8.0.313d7ae561cf60
stdlib@go1.16.7
1.18.7

Open the chart page →

18,316
edgemeshkubesphere-stable0.1.01 of 2See more

edgemesh kubesphere-stable 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubeedge/edgemesh-server:latesta437cf5ec0ae
stdlib@go1.17.11
1.18.7

Open the chart page →

4,096
iomeshkubesphere-stable1.1.010 of 25See more

iomesh kubesphere-stable 1.1.0

10 of the 25 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
iomesh/csi-driver:v2.7.25d3f9bf9240b
stdlib@go1.16.7
1.18.7
iomesh/csi-node-driver-registrar:v2.5.086f58b0a2106
stdlib@go1.17.3
1.18.7
iomesh/csi-provisioner:v3.0.0f9508460b273
stdlib@go1.16.2
1.18.7
iomesh/csi-snapshotter:v6.2.2becc53e25b96
stdlib@go1.19
1.18.7
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.18.7
iomesh/livenessprobe:v2.8.0560f01510f99
stdlib@go1.18
1.18.7
iomesh/node-disk-exporter:1.8.0f03148764f38
stdlib@go1.14.7
1.18.7
iomesh/node-disk-manager:1.8.0002c4b92fd34
stdlib@go1.14.7
1.18.7
iomesh/node-disk-operator:1.8.0f6c76380db34
stdlib@go1.14.7
1.18.7
iomesh/snapshot-controller:v6.2.2fb95b65bb88f
stdlib@go1.19
1.18.7

Open the chart page →

48,665
IOMeshkubesphere-stable1.2.09 of 25See more

IOMesh kubesphere-stable 1.2.0

9 of the 25 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
iomesh/csi-node-driver-registrar:v2.5.086f58b0a2106
stdlib@go1.17.3
1.18.7
iomesh/csi-provisioner:v3.0.0f9508460b273
stdlib@go1.16.2
1.18.7
iomesh/csi-snapshotter:v6.2.2becc53e25b96
stdlib@go1.19
1.18.7
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.18.7
iomesh/livenessprobe:v2.8.0560f01510f99
stdlib@go1.18
1.18.7
iomesh/node-disk-exporter:1.8.0f03148764f38
stdlib@go1.14.7
1.18.7
iomesh/node-disk-manager:1.8.0-2292ad270082e
stdlib@go1.14.7
1.18.7
iomesh/node-disk-operator:1.8.0-1de4aa40684ad
stdlib@go1.14.7
1.18.7
iomesh/snapshot-controller:v6.2.2fb95b65bb88f
stdlib@go1.19
1.18.7

Open the chart page →

46,341
pulsarkubesphere-stable2.7.132 of 3See more

pulsar kubesphere-stable 2.7.13

2 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
prom/prometheus:v2.17.242d2395cd719
stdlib@go1.13.10
1.18.7
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
stdlib@go1.15.6
1.18.7

Open the chart page →

14,320
aws-fsx-csi-driverkubesphere-testVerified publisher0.1.01 of 4See more

aws-fsx-csi-driver kubesphere-test 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
amazon/aws-fsx-csi-driver:latestc9b14856fd22
stdlib@go1.16.8
1.18.7

Open the chart page →

1,588
ccm-qingcloudkubesphere-testVerified publisher0.1.01 of 1See more

ccm-qingcloud kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
stdlib@go1.18.2
1.18.7

Open the chart page →

1,540
cni-hostnickubesphere-testVerified publisher0.1.01 of 1See more

cni-hostnic kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
stdlib@go1.16.3
1.18.7

Open the chart page →

2,437
csi-neonsankubesphere-testVerified publisher1.3.06 of 6See more

csi-neonsan kubesphere-test 1.3.0

6 of the 6 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.18.7
csiplugin/csi-neonsan:v1.2.21fa83d45417f
stdlib@go1.14.4
1.18.7
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.18.7
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.18.7
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.18.7
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.18.7

Open the chart page →

18,475

Container images carrying it

1,380 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:15.2.0-debian-11-r113e65a6b89e38
stdlib@go1.18.2
1.18.7
1
bitnamilegacy/rabbitmq:3.10.88f7161d8ce19
stdlib@go1.16.7
1.18.7
1
bitnamilegacy/rabbitmq:3.10.7-debian-11-r4cf93e2772250
stdlib@go1.16.7
1.18.7
1
bitnamilegacy/rabbitmq-cluster-operator:1.14.0-scratch-r567ac64a9623a
stdlib@go1.17
1.18.7
1
bitnamilegacy/redis:7.0.10-debian-11-r059293f5206b7
stdlib@go1.18.2
1.18.7
1
bitnamilegacy/redis:6.2.7-debian-11-r37788b908dd0d
stdlib@go1.18.2
1.18.7
1
bitnamilegacy/redis:7.0.8-debian-11-r0bf01d031ba8c
stdlib@go1.18.2
1.18.7
1
bitnamilegacy/rmq-messaging-topology-operator:1.7.1-scratch-r33c26208691a1
stdlib@go1.17
1.18.7
1
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
stdlib@go1.18.2
1.18.7
1
bitnami/sealed-secrets-controller:v0.18.50516f987fae2
stdlib@go1.18.6
1.18.7
1
bitpoke/stack-default-backend:latestc5eed1ddf692
stdlib@go1.16.6
1.18.7
1
bitpoke/wordpress-operator:v0.12.421284d1df473
stdlib@go1.17.13
1.18.7
1
bitpoke/wordpress-operator:v0.12.27fb3aad37b5f
stdlib@go1.17.13
1.18.7
1
blackducksoftware/bdba-pgupgrader:2026.6.35c97f3a3f8b7
stdlib@go1.18.2
1.18.7
1
bsgrigorov/helm-operator:latest45ab095f09c8
stdlib@go1.15.12
1.18.7
1
btcpayserver/tor:0.4.8.10e9585b68dc6b
stdlib@go1.16.5
1.18.7
1
buildkite/agent:3.25.0aec38cfaae0e
stdlib@go1.14.7
1.18.7
1
camptocamp/bucket-cloner:latestacfafc308d88
stdlib@go1.16.5
1.18.7
1
caroga/commentoplusplus:v1.8.7f3233882b3bd
stdlib@go1.15.15
1.18.7
1
casbin/casdoor:v1.224.066f836ef778b
stdlib@go1.17.5
1.18.7
1
cbeneke/hcloud-fip-controller:v0.4.1dc658078d7ba
stdlib@go1.15.3
1.18.7
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
stdlib@go1.13.3
1.18.7
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
stdlib@go1.13.4
1.18.7
1
chainflag/eth-faucet:latestac642796bcb6
stdlib@go1.17.13
1.18.7
1
chandanteekinavar/findery-market-payment-service:1.0c96f759b6ce4
stdlib@go1.13
1.18.7
1
chaosnative/cle-auth-server:2.7.072ee352bc333
stdlib@go1.16.15
1.18.7
1
chaosnative/cle-license-module:2.7.062cf6adc355e
stdlib@go1.16.15
1.18.7
1
chaosnative/cle-server:2.7.0e7bcff4a20c0
stdlib@go1.16.15
1.18.7
1
charmcli/soft-serve:v0.4.039523c1a6ba8
stdlib@go1.18.5
1.18.7
1
chirpstack/chirpstack-application-server:3.17.6e0b23dfd24d6
stdlib@go1.17.8
1.18.7
1
chirpstack/chirpstack-gateway-bridge:3.13.2ce3f2cdca8a9
stdlib@go1.17.5
1.18.7
1
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
stdlib@go1.17.8
1.18.7
1
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
stdlib@go1.18.1
1.18.7
1
cloudecho/hello:0.1.0f76ede067ab9
stdlib@go1.16.6
1.18.7
1
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
stdlib@go1.15.14
1.18.7
1
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
stdlib@go1.15.14
1.18.7
1
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
stdlib@go1.15.2
1.18.7
1
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
stdlib@go1.16.6
1.18.7
1
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
stdlib@go1.15.2
1.18.7
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
stdlib@go1.15.2
1.18.7
1
cloudposse/bastion:latest0d9507e8a760
stdlib@go1.13.3
1.18.7
1
cmacrae/d2-prometheus-exporter:v0.1.0fc5fecba436e
stdlib@go1.15
1.18.7
1
cmacrae/lgtm:0.1.0dec8d490fe40
stdlib@go1.14.1
1.18.7
1
cockroachdb/cockroach-operator:v2.1.0983312754620
stdlib@go1.13.14
1.18.7
1
codercom/code-server:4.11.0-debian1e2cc688008e
stdlib@go1.14.4
1.18.7
1
codercom/code-server:3.10.247605610ad8d
stdlib@go1.14.4
1.18.7
1
codeskyblue/gohttpserver:latestcaa862590e34
stdlib@go1.16.3
1.18.7
1
conduction/agendaservice-php:latest9cfeeb6c7c20
stdlib@go1.13.10
1.18.7
1
conduction/balance-registration-php:devc36094a41369
stdlib@go1.13.10
1.18.7
1
conduction/betaalservice-php:latestece1ab544c57
stdlib@go1.13.10
1.18.7
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.