StackRadar

CVE-2022-29526

Medium

Advisory

Published 24 Jun 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,083
of 17,787 indexed, latest versions
Container images
1,187
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/sys/unix has Incorrect privilege reporting in syscall

Carried by container images the latest versions of 1,083 of 17,787 indexed charts deploy, on 1,187 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+192 more0.0.0-20220412211240-33da011f77ad1,047
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+69 more1.17.101,023
OSV records
GHSA-p782-xgp4-8hr8GO-2022-0493
Also known as
BIT-golang-2022-29526

Charts affected

1,083 by stars
ChartLatestAffected imagesRadar Score
chirpstack-packet-multiplexerangelnu3.0.01 of 1See more

chirpstack-packet-multiplexer angelnu 3.0.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/angelnu/chirpstack-packet-multiplexer:latest0c84c2d71006
golang.org/x/sys@v0.0.0-20190215142949-d0b11bdaac8a
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,239
cert-manager-webhook-safednsansgroupVerified publisher1.3.01 of 1See more

cert-manager-webhook-safedns ansgroup 1.3.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ansgroup/cert-manager-webhook-safedns:v1.0.1cd6b0ef2b309
golang.org/x/sys@v0.0.0-20190922100055-0a153f010e69
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,488
ddosifyanteonVerified publisher1.7.51 of 13See more

ddosify anteon 1.7.5

1 of the 13 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ddosify/selfhosted_hammer:1.4.2a97a1b8a66af
stdlib@go1.18.1
1.17.10

Open the chart page →

25,720
antmediaantmediaVerified publisher3.1.01 of 4See more

antmedia antmedia 3.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.0.0-20220412211240-33da011f77ad

Open the chart page →

4,615
ingress-nginxantmediaVerified publisher4.4.01 of 2See more

ingress-nginx antmedia 4.4.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.0.0-20220412211240-33da011f77ad

Open the chart page →

3,322
nfs-server-provisioneranvibo1.3.01 of 1See more

nfs-server-provisioner anvibo 1.3.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
golang.org/x/sys@v0.0.0-20190801041406-cbf593c0f2f3
stdlib@go1.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,730
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
library/mysql:8.0.28fc77d54cacef
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

19,784
app-mobilityappmo0.1.01 of 5See more

app-mobility appmo 0.1.0

1 of the 5 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
velero/velero:v1.8.18d784580931c
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

12,520
app-movies-seriesapp-movies-seriesVerified publisher0.1.01 of 2See more

app-movies-series app-movies-series 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/postgres:14.32d1e636f0778
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,166
capi-ops-managerappscodeVerified publisher2024.8.141 of 2See more

capi-ops-manager appscode 2024.8.14

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,416
grafanaappscodeVerified publisher2026.9.111 of 1See more

grafana appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/appscode/grafana:v2025.2.367d18880448c
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.17.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,333
kubedb-communityappscodeVerified publisher0.24.21 of 2See more

kubedb-community appscode 0.24.2

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kubedb/operator:v0.24.01a06ff0bda52
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,550
kubedb-enterpriseappscodeVerified publisher0.11.21 of 2See more

kubedb-enterprise appscode 0.11.2

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kubedb/kubedb-enterprise:v0.11.05829bcedcb0d
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,575
kubedb-oneappscodeVerified publisher2023.12.282 of 10See more

kubedb-one appscode 2023.12.28

2 of the 10 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/stashed/stash-enterprise:v0.32.0e9bde36e34b7
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

15,016
kubedb-ui-serverappscodeVerified publisher2021.12.211 of 1See more

kubedb-ui-server appscode 2021.12.21

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kubedb/kubedb-ui-server:v0.0.1_linux_amd647d27865514ee
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,047
stash-communityappscodeVerified publisher0.42.01 of 4See more

stash-community appscode 0.42.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,661
statefulsetappscodeVerified publisher0.0.11 of 3See more

statefulset appscode 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,732
harbor-scanner-trivyaqua-helm0.17.01 of 1See more

harbor-scanner-trivy aqua-helm 0.17.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,203
itera-lmaarzu1.34.603 of 6See more

itera-lma arzu 1.34.60

3 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-operator:v0.57.0a2d502c204f9
golang.org/x/sys@v0.0.0-20220222172238-00053529121e
0.0.0-20220412211240-33da011f77ad
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
golang.org/x/sys@v0.0.0-20211117180635-dee7805ff2e1
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad

Open the chart page →

8,608
dltkvassist-iot-data-integrity-verification0.2.04 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

4 of the 9 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
assistiot/data_integrity_verification:1.0.0eb7f5d765ab6
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.0.0-20220412211240-33da011f77ad
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.0.0-20220412211240-33da011f77ad
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.0.0-20220412211240-33da011f77ad
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.0.0-20220412211240-33da011f77ad

Open the chart page →

77,821
dltflassist-iot-dlt-based-fl0.2.04 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

4 of the 9 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
assistiot/dlt_based_fl:1.1.04bc3d92788ed
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.0.0-20220412211240-33da011f77ad
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.0.0-20220412211240-33da011f77ad
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.0.0-20220412211240-33da011f77ad
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.0.0-20220412211240-33da011f77ad

Open the chart page →

77,821
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kong/kubernetes-ingress-controller:2.35e66021b64a8
golang.org/x/sys@v0.0.0-20220328115105-d36c6a25d886
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

18,331
performanceandusagediagnosisassist-iot-pud1.0.01 of 7See more

performanceandusagediagnosis assist-iot-pud 1.0.0

1 of the 7 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,556
smartorchestratorassist-iot-smart-orchestrator4.0.02 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

2 of the 14 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_helm:latest9bb46ea14e8e
stdlib@go1.13
1.17.10
library/mongo:4.4.66efa05203990
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

42,460
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
0.0.0-20220412211240-33da011f77ad

Open the chart page →

31,807
sequencerastria4.0.01 of 3See more

sequencer astria 4.0.0

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
rclone/rclone:1.56.0f2fc45c8bc57
golang.org/x/sys@v0.0.0-20210423185535-09eb48e85fd7
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,239
hcloud-csi-driveratem181.5.12 of 6See more

hcloud-csi-driver atem18 1.5.1

2 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hetznercloud/hcloud-csi-driver:1.5.141dce5b33644
golang.org/x/sys@v0.0.0-20201015000850-e3ed0017c211
stdlib@go1.15.3
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
golang.org/x/sys@v0.0.0-20180302081741-dd2ff4accc09
stdlib@go1.13.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,495
authorization-componentauthorization-component1.0.01 of 3See more

authorization-component authorization-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,561
okd-webhookav1o-chartsVerified publisher0.1.01 of 1See more

okd-webhook av1o-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.gitlab.com/av1o/okd-webhook:v0.1.028c3e5eb2650
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.16
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,727
amazon-ec2-metadata-mockaws1.11.21 of 1See more

amazon-ec2-metadata-mock aws 1.11.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/aws-ec2/amazon-ec2-metadata-mock:v1.11.2dd02d3569da0
golang.org/x/sys@v0.0.0-20210823070655-63515b42dcdf
0.0.0-20220412211240-33da011f77ad

Open the chart page →

860
appmesh-jaegeraws1.0.31 of 1See more

appmesh-jaeger aws 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.2942822be7888b
golang.org/x/sys@v0.0.0-20210823070655-63515b42dcdf
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,480
appmesh-prometheusaws1.0.31 of 2See more

appmesh-prometheus aws 1.0.3

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/sys@v0.0.0-20191010194322-b09406accb47
stdlib@go1.13.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,939
aws-node-termination-handler-2aws0.2.02 of 2See more

aws-node-termination-handler-2 aws 0.2.0

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/controller:v2.0.0-beta9637c80dd23f
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/webhook:v2.0.0-beta86b0f7243250
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad

Open the chart page →

2,952
aws-sigv4-proxy-admission-controlleraws0.1.21 of 1See more

aws-sigv4-proxy-admission-controller aws 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/aws-observability/aws-sigv4-proxy-admission-controller:1.067b89ae52240
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,139
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
stdlib@go1.17.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,568
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,521
helm-controllerazureorkestra0.1.12 of 2See more

helm-controller azureorkestra 0.1.1

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
fluxcd/helm-controller:v0.9.092b891e495d8
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15.10
0.0.0-20220412211240-33da011f77ad
1.17.10
fluxcd/source-controller:v0.10.031a8c79a6803
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,705
keptn-addonsazureorkestra0.1.04 of 4See more

keptn-addons azureorkestra 0.1.0

4 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
keptn/distributor:0.8.36bc3df9e0d6a
golang.org/x/sys@v0.0.0-20201119102817-f84b799fce68
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10
keptn/distributor:0.8.472e17527a4f9
golang.org/x/sys@v0.0.0-20201119102817-f84b799fce68
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10
keptncontrib/prometheus-service:0.6.029969dd547de
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.13.7
0.0.0-20220412211240-33da011f77ad
1.17.10
keptnsandbox/job-executor-service:0.1.36e6d323dd7ae
golang.org/x/sys@v0.0.0-20210603125802-9665404d3644
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,621
prometheusazureorkestra14.8.05 of 6See more

prometheus azureorkestra 14.8.0

5 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10
prom/pushgateway:v1.3.18305a33fb80a
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/sys@v0.0.0-20210324051608-47abb6519492
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

9,661
webserverazureorkestra1.0.01 of 1See more

webserver azureorkestra 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
nmalhotr/webserver:v1.0.03419361fb0dd
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,037
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
conduction/balance-registration-php:devc36094a41369
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,408
berichtserviceberichtservice1.0.01 of 3See more

berichtservice berichtservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,342
trident-operatorberyju-org21.10.01 of 1See more

trident-operator beryju-org 21.10.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
netapp/trident-operator:21.10.049cfe552d9c2
golang.org/x/sys@v0.0.0-20211007075335-d3039528d8ac
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,072
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
stdlib@go1.17.6
1.17.10

Open the chart page →

8,004
mx-notifierbicarus-labs1.1.91 of 1See more

mx-notifier bicarus-labs 1.1.9

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bicarus/mx-notifier:1.1.8bed688d16762
stdlib@go1.17.6
1.17.10

Open the chart page →

3,760
stackbitpokeVerified publisher0.12.42 of 6See more

stack bitpoke 0.12.4

2 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bitpoke/stack-default-backend:latestc5eed1ddf692
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.3.0549e71a6ca24
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.0.0-20220412211240-33da011f77ad

Open the chart page →

9,897
bnkrbnkr1.0.51 of 2See more

bnkr bnkr 1.0.5

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
engrmth/bnkr:2.1.06d8464e6f0e8
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

15,299
nfs-subdir-external-provisionerbook-k8sinfra-v24.0.181 of 1See more

nfs-subdir-external-provisioner book-k8sinfra-v2 4.0.18

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfs-subdir-external-provisioner:v4.0.03ce0fdba4d8e
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,745
redisbook-k8sinfra-v21.0.01 of 1See more

redis book-k8sinfra-v2 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/redis:7.0.4091a7b5de688
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,731
butlercibutlerciVerified publisher0.1.01 of 1See more

butlerci butlerci 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
etejeda/butlerci:0.1.0737d58183abc
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,374

Container images carrying it

1,187 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/google-samples/microservices-demo/currencyservice:v0.2.349d458a3650f
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/frontend:v0.2.3ca5c0f0771c8
golang.org/x/sys@v0.0.0-20190626221950-04f50cda93cb
stdlib@go1.15.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/paymentservice:v0.2.36eb201217a8f
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/productcatalogservice:v0.2.35a4a0e54c6d0
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.15.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/google-samples/microservices-demo/shippingservice:v0.2.30cb1707fc503
golang.org/x/sys@v0.0.0-20190626221950-04f50cda93cb
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
golang.org/x/sys@v0.0.0-20210601080250-7ecdf8ef093b
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
golang.org/x/sys@v0.0.0-20210601080250-7ecdf8ef093b
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhook873b968f02b5
golang.org/x/sys@v0.0.0-20200331124033-c3d80250170d
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.2.0f253b82941c2
golang.org/x/sys@v0.0.0-20211124211545-fe61309f8881
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.2.0a705c1ea8e9e
golang.org/x/sys@v0.0.0-20211124211545-fe61309f8881
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourier197fbb71d1f1
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator08315309da4b
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator1e3db4f2eeed
golang.org/x/sys@v0.0.0-20201015000850-e3ed0017c211
stdlib@go1.14.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.2.593ff6e693577
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/activatora5de0fb75046
golang.org/x/sys@v0.0.0-20200327173247-9dae0f8f5775
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.2.5007820fdb75b
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler105bdd14ecaa
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler2ef460356b17
golang.org/x/sys@v0.0.0-20200327173247-9dae0f8f5775
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdb6ceff2aab4
golang.org/x/sys@v0.0.0-20201015000850-e3ed0017c211
stdlib@go1.14.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller30ce73388ae5
golang.org/x/sys@v0.0.0-20200327173247-9dae0f8f5775
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.2.575cfdcfa050a
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/controllerb2cd45b8a8a4
golang.org/x/sys@v0.0.0-20201015000850-e3ed0017c211
stdlib@go1.14.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/controllerbac158dfb0c7
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping:v1.2.523baa1932232
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mappinge384a295069b
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook15f1ce7f35b4
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook:v1.2.5847bb97e3844
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook1282a399cbb9
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.2.59084ea8498ea
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookd27b4495ccc3
golang.org/x/sys@v0.0.0-20201015000850-e3ed0017c211
stdlib@go1.14.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookf16c0e022203
golang.org/x/sys@v0.0.0-20200327173247-9dae0f8f5775
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
golang.org/x/sys@v0.0.0-20190312061237-fead79001313
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
golang.org/x/sys@v0.0.0-20190312061237-fead79001313
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/ml-pipeline/cache-server:2.0.0-alpha.583e79c709df3
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/ml-pipeline/mysql:5.7-debiandf28187b5455
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/ml-pipeline/persistenceagent:2.0.0-alpha.500db9796a37b
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/ml-pipeline/scheduledworkflow:2.0.0-alpha.5795a0c8a0e13
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/ml-pipeline/viewer-crd-controller:2.0.0-alpha.534403f9f94be
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/ml-pipeline/workflow-controller:v3.3.8-license-compliance6c8e4e2a6443
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad
1
gcr.io/pingcap-public/deadmansswitch:1.04861d81aa528
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
gcr.io/projectsigstore/cosigned784518ff3ee7
stdlib@go1.17.9
1.17.10
1
gcr.io/projectsigstore/policy-webhook82940e8c3e0d
stdlib@go1.17.9
1.17.10
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/alekc/kpubber:v0.0.2a462d5797e14
golang.org/x/sys@v0.0.0-20210823070655-63515b42dcdf
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.