StackRadar

CVE-2022-29526

Medium

Advisory

Published 24 Jun 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,083
of 17,787 indexed, latest versions
Container images
1,187
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/sys/unix has Incorrect privilege reporting in syscall

Carried by container images the latest versions of 1,083 of 17,787 indexed charts deploy, on 1,187 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+192 more0.0.0-20220412211240-33da011f77ad1,047
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+69 more1.17.101,023
OSV records
GHSA-p782-xgp4-8hr8GO-2022-0493
Also known as
BIT-golang-2022-29526

Charts affected

1,083 by stars
ChartLatestAffected imagesRadar Score
contactmoment-componentcontactmoment-component0.1.01 of 4See more

contactmoment-component contactmoment-component 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
conduction/contactmoment-component-php:deve1d4ad1e22a8
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,408
containers-security-chartscontainers-security0.1.01 of 7See more

containers-security-charts containers-security 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
falcosecurity/falcosidekick:2.27.0828ee36cb13a
stdlib@go1.18.1
1.17.10

Open the chart page →

9,146
katibcowboysysopVerified publisher2.4.23 of 4See more

katib cowboysysop 2.4.2

3 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kubeflowkatib/katib-controller:v0.12.012a28c8a0b41
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.17.1
0.0.0-20220412211240-33da011f77ad
1.17.10
kubeflowkatib/katib-db-manager:v0.12.0db88bf09d88e
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.13.3
0.0.0-20220412211240-33da011f77ad
1.17.10
kubeflowkatib/katib-ui:v0.12.0129f0aaba976
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.17.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,542
kfservingcowboysysopVerified publisher1.3.11 of 3See more

kfserving cowboysysop 1.3.1

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kfserving/kfserving-controller:v0.6.163d79d04c2e3
golang.org/x/sys@v0.0.0-20200905004654-be1d3432aa8f
stdlib@go1.14.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,830
metacontrollercowboysysopVerified publisher1.2.21 of 1See more

metacontroller cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
metacontrollerio/metacontroller:v2.1.10336993b88e4
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,092
mpi-operatorcowboysysopVerified publisher1.2.21 of 1See more

mpi-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
mpioperator/mpi-operator:0.3.03ccfa8d8b7bf
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.15.13
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,577
notebook-controllercowboysysopVerified publisher1.1.21 of 1See more

notebook-controller cowboysysop 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/notebooks/notebook-controller:v1.4cac3ed9a9826
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,582
quickchartcowboysysopVerified publisher5.0.01 of 1See more

quickchart cowboysysop 5.0.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ianw/quickchart:v1.7.1dc49dd460c37
golang.org/x/sys@v0.0.0-20190222072716-a9d3bda3a223
stdlib@go1.13.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,489
training-operatorcowboysysopVerified publisher1.2.21 of 1See more

training-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/training/training-operator:760ac1171dd30039a7363ffa03c77454bd714da5ae59d222fd87
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.14.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,275
crossplane-controllerscrossplane0.12.01 of 1See more

crossplane-controllers crossplane 0.12.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
crossplane/crossplane:v0.12.066666e6963af
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,312
oam-kubernetes-runtimecrossplane0.0.3-71.g0f235901 of 2See more

oam-kubernetes-runtime crossplane 0.0.3-71.g0f23590

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
crossplane/oam-kubernetes-runtime:v0.0.3-71.g0f235900112171c45e3
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,248
oam-kubernetes-runtime-legacycrossplane0.3.1-5.g11e18941 of 1See more

oam-kubernetes-runtime-legacy crossplane 0.3.1-5.g11e1894

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
crossplane/oam-kubernetes-runtime:v0.3.1-5.g11e189407b8b410dc76
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,231
external-service-operatorcrowdfox0.1.01 of 1See more

external-service-operator crowdfox 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
crowdfox/external-service-operator:v1.1.06fa7e8063d27
golang.org/x/sys@v0.0.0-20210320140829-1e4c9ba3b0c4
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,625
electric-mailcryptexlabsVerified publisher0.0.12 of 5See more

electric-mail cryptexlabs 0.0.1

2 of the 5 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/sys@v0.0.0-20210514084401-e8d321eab015
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
hashicorp/vault-k8s:0.13.1bebb03e8e800
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,973
purple-piecryptexlabsVerified publisher0.0.12 of 4See more

purple-pie cryptexlabs 0.0.1

2 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/sys@v0.0.0-20210514084401-e8d321eab015
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
hashicorp/vault-k8s:0.13.1bebb03e8e800
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,973
openldapcsic-charts0.1.11 of 2See more

openldap csic-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.17.10

Open the chart page →

5,293
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.4.121994f40e0da
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

13,937
irods-csi-drivercyverse0.12.01 of 4See more

irods-csi-driver cyverse 0.12.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,257
home-assistantdamounVerified publisher1.1.01 of 1See more

home-assistant damoun 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
stdlib@go1.17.1
1.17.10

Open the chart page →

6,178
speedtest-exporterdamounVerified publisher1.0.61 of 1See more

speedtest-exporter damoun 1.0.6

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/danopstech/speedtest_exporter:v0.0.599efbe55412b
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,209
grafana-agentdandydev-chartsVerified publisher0.19.21 of 1See more

grafana-agent dandydev-charts 0.19.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
grafana/agent:v0.20.0825c09373d27
golang.org/x/sys@v0.0.0-20210908233432-aa78b53d3365
stdlib@go1.16
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,238
cloudwatch-agent-prometheusdasmeta0.2.21 of 1See more

cloudwatch-agent-prometheus dasmeta 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
golang.org/x/sys@v0.0.0-20200316230553-a7d97aace0b0
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,977
mongodb-bi-connectordasmeta1.0.31 of 1See more

mongodb-bi-connector dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,838
nfs-provisionerdasmeta1.0.31 of 1See more

nfs-provisioner dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/sys@v0.0.0-20190801041406-cbf593c0f2f3
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,806
datadog-csi-driverdatadogVerified publisher0.17.01 of 2See more

datadog-csi-driver datadog 0.17.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.0.1e07f914c32f0
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,041
datadog-operatordatadog-test0.1.21 of 1See more

datadog-operator datadog-test 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
datadog/operator:0.3.117f08a860090
golang.org/x/sys@v0.0.0-20200413165638-669c56c373c4
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,979
ambassador-operatordatawire0.3.01 of 1See more

ambassador-operator datawire 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
datawire/ambassador-operator:v1.3.0f95ae710d75c
golang.org/x/sys@v0.0.0-20200217220822-9197077df867
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,486
eg-edge-stack-crdsdatawire0.0.11 of 2See more

eg-edge-stack-crds datawire 0.0.1

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,404
kube-better-nodedecayofmind0.0.41 of 1See more

kube-better-node decayofmind 0.0.4

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/decayofmind/kube-better-node:masterccd2ce03b682
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,583
symfony-appdefault-ghVerified publisher0.6.51 of 3See more

symfony-app default-gh 0.6.5

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
alpine/git:2.36.366b210a97bc0
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.0.0-20220412211240-33da011f77ad

Open the chart page →

5,122
aws-s3-proxydeliveryheroVerified publisher0.1.71 of 1See more

aws-s3-proxy deliveryhero 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
pottava/s3-proxy:2.020a0bcb15f76
stdlib@go1.13.7
1.17.10

Open the chart page →

1,323
aws-service-events-exporterdeliveryheroVerified publisher1.0.71 of 1See more

aws-service-events-exporter deliveryhero 1.0.7

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
thomasnyambati/aws-service-events-exporter:1.0.01e18a0944ceb
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,299
cortex-gatewaydeliveryheroVerified publisher0.1.91 of 1See more

cortex-gateway deliveryhero 0.1.9

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
goelankit/cortex-gateway:v1.1.00d9a82dcf026
golang.org/x/sys@v0.0.0-20220405210540-1e041c57c461
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,234
k8s-cloudwatch-adapterdeliveryheroVerified publisher0.2.21 of 1See more

k8s-cloudwatch-adapter deliveryhero 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
golang.org/x/sys@v0.0.0-20190826190057-c7b8b68b1456
stdlib@go1.14.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,468
killgravedeliveryheroVerified publisher1.0.21 of 1See more

killgrave deliveryhero 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
friendsofgo/killgrave:0.4.139cfbecca342
stdlib@go1.16.3
1.17.10

Open the chart page →

1,181
prometheus-aws-limits-exporterdeliveryheroVerified publisher0.2.21 of 1See more

prometheus-aws-limits-exporter deliveryhero 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
danielfm/aws-limits-exporter:0.6.07152b84e57cb
stdlib@go1.17.2
1.17.10

Open the chart page →

1,846
prometheus-soti-mobicontrol-exporterdeliveryheroVerified publisher1.0.31 of 1See more

prometheus-soti-mobicontrol-exporter deliveryhero 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
maxrocketinternet/soti-mobicontrol-exporter:0.61a281b76efa3
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,644
prometheus-statsd-exporterdeliveryheroVerified publisher0.1.51 of 1See more

prometheus-statsd-exporter deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
prom/statsd-exporter:v0.18.0d23aca343b86
golang.org/x/sys@v0.0.0-20200523222454-059865788121
stdlib@go1.14.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,315
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
0.0.0-20220412211240-33da011f77ad

Open the chart page →

14,910
apachedevops0.1.01 of 4See more

apache devops 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mariadb:10.8.30abf60f81588
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

30,150
laraveldevops0.10.31 of 4See more

laravel devops 0.10.3

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mariadb:10.9.4fbb8456ebdb1
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

29,151
wordpressdevops0.12.01 of 4See more

wordpress devops 0.12.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mariadb:10.8.30abf60f81588
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

13,036
kyvernodevopstalesVerified publisher2.5.12 of 2See more

kyverno devopstales 2.5.1

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/kyverno/kyverno:v1.7.19c73f1841ebc
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.17.9
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/kyverno/kyvernopre:v1.7.1185d2eebc60c
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.17.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,722
pushproxdevopstalesVerified publisher0.1.62 of 2See more

pushprox devopstales 0.1.6

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
rancher/pushprox-client:v0.1.0-rancher2-clienta41cd716c412
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
rancher/pushprox-proxy:v0.1.0-rancher2-proxy3126395b966c
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,754
lxd8sdevplayer0Verified publisher0.5.12 of 2See more

lxd8s devplayer0 0.5.1

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/devplayer0/lxd8s:0.3.1e159ba41aede
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,431
octolxddevplayer0Verified publisher0.1.11 of 1See more

octolxd devplayer0 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/octolxd:0.1.119b18fd97eab
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,525
argocddevtron1.8.12 of 3See more

argocd devtron 1.8.1

2 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/sys@v0.0.0-20200930185726-fdedc70b468f
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.14.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,468
calertdevtron0.0.11 of 1See more

calert devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,688
devtron-enterprisedevtron48.0.07 of 28See more

devtron-enterprise devtron 48.0.0

7 of the 28 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.0.0-20220412211240-33da011f77ad
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.14.15
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/sys@v0.0.0-20210220050731-9a76102bfb43
0.0.0-20220412211240-33da011f77ad
quay.io/devtron/nats-server-config-reloader:0.6.2b5252e783fb2
golang.org/x/sys@v0.0.0-20200918174421-af09f7315aff
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/sys@v0.0.0-20210218155724-8ebf48af031b
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

66,542
devtron-in-clustercddevtron0.10.21 of 2See more

devtron-in-clustercd devtron 0.10.2

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/sys@v0.0.0-20201119102817-f84b799fce68
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,041

Container images carrying it

1,187 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
twentycrm/twenty-postgres-spilo:latest2f78405a78be
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad
1
twinproduction/gatus:v3.8.049dc0d9b2e2c
golang.org/x/sys@v0.0.0-20211003122950-b1ebd4e1001c
stdlib@go1.18.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ubercadence/server:0.23.22ac5491d13bb
golang.org/x/sys@v0.0.0-20210119212857-b64e53b001e4
stdlib@go1.13.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
1
velero/velero:v1.9.0277fbfaf8dcf
golang.org/x/sys@v0.0.0-20211019181941-9d821ace8654
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10
1
velero/velero:v1.8.18d784580931c
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
velero/velero-plugin-for-aws:v1.5.03d2ea7aab32d
golang.org/x/sys@v0.0.0-20211019181941-9d821ace8654
0.0.0-20220412211240-33da011f77ad
1
victoriametrics/victoria-metrics:v1.34.7b50d5c0153f9
golang.org/x/sys@v0.0.0-20200327173247-9dae0f8f5775
stdlib@go1.14.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vikunja/api:0.17.18cba0520bf8c
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voidxmh/xmh-auther:v193e42a569ca8
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voidxmh/xmh-cacher:v11b7397412320
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voidxmh/xmh-ui:v12ff3f2146547
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
volantmq/volantmq:v0.4.0-rc.69bfe7857ebc3
golang.org/x/sys@v0.0.0-20191220142924-d4481acd189f
stdlib@go1.13.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voltha/bbsim:1.16.7d90403d58016
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.13.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
vultr/vultr-csi:v0.3.041d26735d437
golang.org/x/sys@v0.0.0-20210921065528-437939a70204
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wavefronthq/prometheus-storage-adapter:latestded77b38c7c6
stdlib@go1.18
1.17.10
1
wavefronthq/wavefront-hpa-adapter:0.9.12af5fef9a4768
stdlib@go1.18
1.17.10
1
wazuh/wazuh-manager:4.11.11da5c38c6a78
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wazuh/wazuh-manager:4.4.121994f40e0da
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wazuh/wazuh-manager:4.14.45a065930682d
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wazuh/wazuh-manager:4.14.3f09282d281f6
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
weaveworks/flagger:1.0.0-rc.5174307de1b36
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
weaveworks/flagger:0.19.0a9c2e9df4227
golang.org/x/sys@v0.0.0-20190209173611-3b5209105503
stdlib@go1.13.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
weaveworks/flagger-loadtester:0.9.03cdac6928a63
stdlib@go1.13.1
1.17.10
1
weblate/weblate:3.11.3-182848df56ecd
golang.org/x/sys@v0.0.0-20190531175056-4c3a928424d2
stdlib@go1.13.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wener/frpc:v0.37.0cc9fd4da44c0
golang.org/x/sys@v0.0.0-20200602225109-6fdc65e7d980
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wener/frps:v0.37.05c92cc9e8597
golang.org/x/sys@v0.0.0-20200602225109-6fdc65e7d980
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
willnorris/imageproxy:latest21d0c90f4c31
golang.org/x/sys@v0.0.0-20210806184541-e5e7981a1069
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
wolveix/satisfactory-server:v1.9.1199be1064b18
stdlib@go1.18.1
1.17.10
1
wolveix/satisfactory-server:v1.9.9464d11e36e10
stdlib@go1.18.1
1.17.10
1
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
golang.org/x/sys@v0.0.0-20210603125802-9665404d3644
stdlib@go1.13
0.0.0-20220412211240-33da011f77ad
1.17.10
1
yandex/clickhouse-server:latest1cbf75aabe1e
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
stdlib@go1.18.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
stdlib@go1.18.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zeetdev/tailscale-relay:v1.24.21967aa2840b6
stdlib@go1.18.1-ts710a0d8610
1.17.10
1
zufardhiyaulhaq/kubernetesweekly:v2.1.0a287ada277c6
golang.org/x/sys@v0.0.0-20220330033206-e17cdc41300f
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
golang.org/x/sys@v0.0.0-20220330033206-e17cdc41300f
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
zufardhiyaulhaq/nodejsweekly:v1.1.0306859a3f167
golang.org/x/sys@v0.0.0-20220330033206-e17cdc41300f
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/cloudsql-docker/gce-proxy:1.17a85176b8e7cc
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.13.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.13.14
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/gke-release/custom-metrics-stackdriver-adapter:v0.13.1-gke.06937c0a9b203
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.0.0-20220412211240-33da011f77ad
1
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/cartservice:v0.2.3566733b4d2d5
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/checkoutservice:v0.2.30fad1066de77
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.15.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.