StackRadar

CVE-2022-29526

Medium

Advisory

Published 24 Jun 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,083
of 17,787 indexed, latest versions
Container images
1,187
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/sys/unix has Incorrect privilege reporting in syscall

Carried by container images the latest versions of 1,083 of 17,787 indexed charts deploy, on 1,187 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+192 more0.0.0-20220412211240-33da011f77ad1,047
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+69 more1.17.101,023
OSV records
GHSA-p782-xgp4-8hr8GO-2022-0493
Also known as
BIT-golang-2022-29526

Charts affected

1,083 by stars
ChartLatestAffected imagesRadar Score
middleware-visionmiddleware-labsVerified publisher0.2.653 of 6See more

middleware-vision middleware-labs 0.2.65

3 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/vision-autoscaler:middleware-test-0.0.231f7f89bc6585
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad
ghcr.io/middleware-labs/vision-instrumentor:middleware-test-0.0.4dfa5907170c4
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad
ghcr.io/middleware-labs/vision-scheduler:middleware-test-0.0.33609a075c825
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad

Open the chart page →

8,361
sshportalmidokura-communityVerified publisher0.1.41 of 2See more

sshportal midokura-community 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
moul/sshportal:v1.19.3332b603727c3
golang.org/x/sys@v0.0.0-20211019181941-9d821ace8654
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,338
pulsarv2milvus-helm2.7.82 of 4See more

pulsarv2 milvus-helm 2.7.8

2 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
prom/prometheus:v2.17.242d2395cd719
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.10ebcf7f033b54
golang.org/x/sys@v0.0.0-20200223170610-d5e6a3e2c0ae
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

15,855
minio-operatorminio-operator4.3.71 of 2See more

minio-operator minio-operator 4.3.7

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.17.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,085
cert-manager-webhook-duckdnsmmontesVerified publisher1.2.31 of 1See more

cert-manager-webhook-duckdns mmontes 1.2.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ebrianne/cert-manager-webhook-duckdns:v1.2.39cd17700c9ec
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15.13
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,847
cockroachdb-operatormmontesVerified publisher0.1.01 of 1See more

cockroachdb-operator mmontes 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
cockroachdb/cockroach-operator:v2.1.0983312754620
golang.org/x/sys@v0.0.0-20200824131525-c12d262b63d8
stdlib@go1.13.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,775
echoperatormmontesVerified publisher0.0.21 of 1See more

echoperator mmontes 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/mmontes11/echoperator:v0.0.4a544a71c6e3b
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
0.0.0-20220412211240-33da011f77ad

Open the chart page →

1,826
mariadbmmontesVerified publisher0.3.01 of 1See more

mariadb mmontes 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mariadb:10.7.307e06f2e7ae9
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,109
mongodbmmontesVerified publisher0.5.01 of 1See more

mongodb mmontes 0.5.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mongo:4.4.1305678ae4e5e1
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,148
basic-git-servermoikot0.0.21 of 1See more

basic-git-server moikot 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
moikot/basic-git-server:0.0.20d941bd30ffa
stdlib@go1.14.9
1.17.10

Open the chart page →

2,954
corednsmoikot1.13.31 of 1See more

coredns moikot 1.13.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
coredns/coredns:1.7.073ca82b4ce82
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,547
smartthings-metricsmoikot0.1.01 of 1See more

smartthings-metrics moikot 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
moikot/smartthings-metrics:0.1.08625f53aa9b7
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
stdlib@go1.14.13
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,744
smartthings-metrics-feat-log-detailsmoikot0.0.921 of 1See more

smartthings-metrics-feat-log-details moikot 0.0.92

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
moikot/smartthings-metrics:feat-log-detailsfb8565140106
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
stdlib@go1.14.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,732
backendmojaloop0.1.03 of 6See more

backend mojaloop 0.1.0

3 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:2.8.1-debian-11-r7b6e381ffd6ae
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
bitnamilegacy/kafka-exporter-archived:1.3.2e527fbf75dce
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
bitnamilegacy/mysqld-exporter:0.13.0a7e14cc919cb
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

16,111
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.14.0d55e056987af
golang.org/x/sys@v0.0.0-20201015000850-e3ed0017c211
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

25,989
chirpstack-event-forwardmosquitto-helm-chart0.1.21 of 1See more

chirpstack-event-forward mosquitto-helm-chart 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/chirpstack-event-forward:v0.1.223dc6274cc4b
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad

Open the chart page →

1,854
replacermosquitto-helm-chart0.2.02 of 3See more

replacer mosquitto-helm-chart 0.2.0

2 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/replacer:v1.1.00b2a41c2a43e
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/liangyuanpeng/waitfor:v1.0.0ca5a98cbed32
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,931
configmapsecretsmozilla0.0.11 of 1See more

configmapsecrets mozilla 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
mzinc/configmapsecret-controller:v0.5.1eebbcbf2d1f7
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,109
approuvezmvisonneau0.1.11 of 1See more

approuvez mvisonneau 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/mvisonneau/approuvez:v0.1.0441da62e6cb3
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,971
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
stdlib@go1.18
1.17.10

Open the chart page →

12,861
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
stdlib@go1.18
1.17.10

Open the chart page →

12,861
authmyaVerified publisher22.4.31 of 1See more

auth mya 22.4.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/sys@v0.0.0-20190624142023-c5567b49c5d0
stdlib@go1.13.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,374
redismyaVerified publisher22.4.101 of 2See more

redis mya 22.4.10

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,050
redis-queuemyaVerified publisher22.4.61 of 2See more

redis-queue mya 22.4.6

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,050
redis-raftmyaVerified publisher22.5.41 of 2See more

redis-raft mya 22.5.4

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,050
myhelmappmyhelmapp0.1.11 of 1See more

myhelmapp myhelmapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
tobirachel/node-project3:v17d9f37154994
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.17.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,359
Practica_4_helmmy-heml-appVerified publisher0.1.02 of 7See more

Practica_4_helm my-heml-app 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
library/mysql:8.0.28fc77d54cacef
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

27,812
victoria-metrics-singlenaps0.0.61 of 1See more

victoria-metrics-single naps 0.0.6

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
victoriametrics/victoria-metrics:v1.34.7b50d5c0153f9
golang.org/x/sys@v0.0.0-20200327173247-9dae0f8f5775
stdlib@go1.14.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,315
traefik-forward-auth-openidnas-helm-chartsVerified publisher1.0.11 of 1See more

traefik-forward-auth-openid nas-helm-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:latestb364aa6a4117
golang.org/x/sys@v0.0.0-20190813064441-fde4db37ae7a
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,197
nats-operatornatsVerified publisher0.8.31 of 1See more

nats-operator nats 0.8.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
natsio/nats-operator:0.8.31261dae38389
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,353
incorencsaVerified publisher1.38.01 of 29See more

incore ncsa 1.38.0

1 of the 29 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:4.4.5e3c9d6b4bc92
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

15,408
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
stdlib@go1.17.9
1.17.10

Open the chart page →

6,982
iamdnetsocVerified publisher0.6.11 of 2See more

iamd netsoc 0.6.1

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/netsoc/iamd:1.1.22fe6b69b20d7
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,890
shhdnetsocVerified publisher0.1.71 of 1See more

shhd netsoc 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/netsoc/shhd:0.1.60bb44992b62c
golang.org/x/sys@v0.0.0-20210823070655-63515b42dcdf
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,986
webspacednetsocVerified publisher0.2.82 of 2See more

webspaced netsoc 0.2.8

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/netsoc/webspaced:0.5.1edc238a538a0
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,193
node-upgrade-channelnimbolus0.1.11 of 1See more

node-upgrade-channel nimbolus 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/nimbolus/k8s-openstack-node-upgrade-agent:0.1.0e0c7cf2415f0
golang.org/x/sys@v0.0.0-20210917161153-d61c044b1678
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,062
nodejsweeklynodejsweekly1.1.01 of 1See more

nodejsweekly nodejsweekly 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
zufardhiyaulhaq/nodejsweekly:v1.1.0306859a3f167
golang.org/x/sys@v0.0.0-20220330033206-e17cdc41300f
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,489
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
robjuz/postgresql-nominatim:latest805c7bab76df
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

22,713
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad

Open the chart page →

4,547
notification-componentnotification-component1.0.01 of 4See more

notification-component notification-component 1.0.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,527
clusterfannousefreakVerified publisher0.1.21 of 1See more

clusterfan nousefreak 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/nousefreak/clusterfan:v0.1.04ea05e2a7b57
golang.org/x/sys@v0.0.0-20211210111614-af8b64212486
stdlib@go1.17.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,791
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
golang.org/x/sys@v0.0.0-20200918174421-af09f7315aff
stdlib@go1.15.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,861
nfs-server-provisionernovum-rgi-charts1.1.21 of 1See more

nfs-server-provisioner novum-rgi-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/sys@v0.0.0-20190801041406-cbf593c0f2f3
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,806
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad

Open the chart page →

27,486
cnaos-pvc-populatornutanix-helm-releasesVerified publisher1.1.0-174-prod1 of 2See more

cnaos-pvc-populator nutanix-helm-releases 1.1.0-174-prod

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,838
cluster-gateway-addon-managerocm-helm-chartsVerified publisher1.4.01 of 1See more

cluster-gateway-addon-manager ocm-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
oamdev/cluster-gateway-addon-manager:v1.4.01bcae00bd7b0
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad

Open the chart page →

1,600
multicluster-meshocm-helm-chartsVerified publisher0.0.21 of 1See more

multicluster-mesh ocm-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
golang.org/x/sys@v0.0.0-20220222160653-b146bcec3beb
0.0.0-20220412211240-33da011f77ad

Open the chart page →

2,124
aspromokgoloveVerified publisher2.0.01 of 1See more

asprom okgolove 2.0.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
okgolove/asprom:1.10.1974d2e5eb150
stdlib@go1.14.11
1.17.10

Open the chart page →

1,869
hive-metastoreolehrgfVerified publisher0.1.01 of 1See more

hive-metastore olehrgf 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
golang.org/x/sys@v0.0.0-20191112214154-59a1497f0cea
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,539
exposecontrollerolli-aiVerified publisher1.0.51 of 1See more

exposecontroller olli-ai 1.0.5

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
olliai/exposecontroller:1.0.5a470d96525e4
golang.org/x/sys@v0.0.0-20190826190057-c7b8b68b1456
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,861

Container images carrying it

1,187 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
twentycrm/twenty-postgres-spilo:latest2f78405a78be
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad
1
twinproduction/gatus:v3.8.049dc0d9b2e2c
golang.org/x/sys@v0.0.0-20211003122950-b1ebd4e1001c
stdlib@go1.18.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ubercadence/server:0.23.22ac5491d13bb
golang.org/x/sys@v0.0.0-20210119212857-b64e53b001e4
stdlib@go1.13.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
1
velero/velero:v1.9.0277fbfaf8dcf
golang.org/x/sys@v0.0.0-20211019181941-9d821ace8654
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10
1
velero/velero:v1.8.18d784580931c
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
velero/velero-plugin-for-aws:v1.5.03d2ea7aab32d
golang.org/x/sys@v0.0.0-20211019181941-9d821ace8654
0.0.0-20220412211240-33da011f77ad
1
victoriametrics/victoria-metrics:v1.34.7b50d5c0153f9
golang.org/x/sys@v0.0.0-20200327173247-9dae0f8f5775
stdlib@go1.14.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vikunja/api:0.17.18cba0520bf8c
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voidxmh/xmh-auther:v193e42a569ca8
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voidxmh/xmh-cacher:v11b7397412320
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voidxmh/xmh-ui:v12ff3f2146547
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
volantmq/volantmq:v0.4.0-rc.69bfe7857ebc3
golang.org/x/sys@v0.0.0-20191220142924-d4481acd189f
stdlib@go1.13.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voltha/bbsim:1.16.7d90403d58016
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.13.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vultr/vultr-csi:v0.3.041d26735d437
golang.org/x/sys@v0.0.0-20210921065528-437939a70204
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wavefronthq/prometheus-storage-adapter:latestded77b38c7c6
stdlib@go1.18
1.17.10
1
wavefronthq/wavefront-hpa-adapter:0.9.12af5fef9a4768
stdlib@go1.18
1.17.10
1
wazuh/wazuh-manager:4.11.11da5c38c6a78
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wazuh/wazuh-manager:4.4.121994f40e0da
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wazuh/wazuh-manager:4.14.45a065930682d
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wazuh/wazuh-manager:4.14.3f09282d281f6
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
weaveworks/flagger:1.0.0-rc.5174307de1b36
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
weaveworks/flagger:0.19.0a9c2e9df4227
golang.org/x/sys@v0.0.0-20190209173611-3b5209105503
stdlib@go1.13.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
weaveworks/flagger-loadtester:0.9.03cdac6928a63
stdlib@go1.13.1
1.17.10
1
weblate/weblate:3.11.3-182848df56ecd
golang.org/x/sys@v0.0.0-20190531175056-4c3a928424d2
stdlib@go1.13.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wener/frpc:v0.37.0cc9fd4da44c0
golang.org/x/sys@v0.0.0-20200602225109-6fdc65e7d980
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wener/frps:v0.37.05c92cc9e8597
golang.org/x/sys@v0.0.0-20200602225109-6fdc65e7d980
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
willnorris/imageproxy:latest21d0c90f4c31
golang.org/x/sys@v0.0.0-20210806184541-e5e7981a1069
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wolveix/satisfactory-server:v1.9.1199be1064b18
stdlib@go1.18.1
1.17.10
1
wolveix/satisfactory-server:v1.9.9464d11e36e10
stdlib@go1.18.1
1.17.10
1
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
golang.org/x/sys@v0.0.0-20210603125802-9665404d3644
stdlib@go1.13
0.0.0-20220412211240-33da011f77ad
1.17.10
1
yandex/clickhouse-server:latest1cbf75aabe1e
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
stdlib@go1.18.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
stdlib@go1.18.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zeetdev/tailscale-relay:v1.24.21967aa2840b6
stdlib@go1.18.1-ts710a0d8610
1.17.10
1
zufardhiyaulhaq/kubernetesweekly:v2.1.0a287ada277c6
golang.org/x/sys@v0.0.0-20220330033206-e17cdc41300f
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
golang.org/x/sys@v0.0.0-20220330033206-e17cdc41300f
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zufardhiyaulhaq/nodejsweekly:v1.1.0306859a3f167
golang.org/x/sys@v0.0.0-20220330033206-e17cdc41300f
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/cloudsql-docker/gce-proxy:1.17a85176b8e7cc
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.13.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.13.14
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/gke-release/custom-metrics-stackdriver-adapter:v0.13.1-gke.06937c0a9b203
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.0.0-20220412211240-33da011f77ad
1
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/cartservice:v0.2.3566733b4d2d5
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/checkoutservice:v0.2.30fad1066de77
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.15.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.