StackRadar

CVE-2022-29526

Medium

Advisory

Published 24 Jun 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,083
of 17,790 indexed, latest versions
Container images
1,187
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/sys/unix has Incorrect privilege reporting in syscall

Carried by container images the latest versions of 1,083 of 17,790 indexed charts deploy, on 1,187 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+192 more0.0.0-20220412211240-33da011f77ad1,047
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+69 more1.17.101,023
OSV records
GHSA-p782-xgp4-8hr8GO-2022-0493
Also known as
BIT-golang-2022-29526

Charts affected

1,083 by stars
ChartLatestAffected imagesRadar Score
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/sys@v0.0.0-20210511113859-b0526f3d8744
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

11,957
discord-alertmanagerdevtron0.10.01 of 1See more

discord-alertmanager devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/discord-alertmanager:ceceb475-65-35203586419ca31
stdlib@go1.18.1
1.17.10

Open the chart page →

951
kube-prometheus-stackdevtron19.3.03 of 6See more

kube-prometheus-stack devtron 19.3.0

3 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
grafana/grafana:8.2.500568d89c4f8
golang.org/x/sys@v0.0.0-20210806184541-e5e7981a1069
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus-operator/prometheus-operator:v0.50.0ab4f480f2cc6
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,645
securitydevtron0.2.21 of 1See more

security devtron 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.16.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,435
winter-soldierdevtron0.10.61 of 1See more

winter-soldier devtron 0.10.6

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/winter-soldier:abf5a822-196-14744093844c46c19
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad

Open the chart page →

1,176
argocddevtron-labs1.8.12 of 3See more

argocd devtron-labs 1.8.1

2 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/sys@v0.0.0-20200930185726-fdedc70b468f
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.14.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,468
calertdevtron-labs0.0.11 of 1See more

calert devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,688
calicodevtron-labs0.1.14 of 4See more

calico devtron-labs 0.1.1

4 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/calico-networking:pod2daemon-flexvol-v3.19.1c1f36b6e18e0
stdlib@go1.15.2
1.17.10

Open the chart page →

10,073
clairdevtron-labs0.1.141 of 2See more

clair devtron-labs 0.1.14

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,237
devtron-enterprisedevtron-labs48.0.07 of 28See more

devtron-enterprise devtron-labs 48.0.0

7 of the 28 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.0.0-20220412211240-33da011f77ad
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.14.15
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/sys@v0.0.0-20210220050731-9a76102bfb43
0.0.0-20220412211240-33da011f77ad
quay.io/devtron/nats-server-config-reloader:0.6.2b5252e783fb2
golang.org/x/sys@v0.0.0-20200918174421-af09f7315aff
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/sys@v0.0.0-20210218155724-8ebf48af031b
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

66,542
devtron-in-clustercddevtron-labs0.10.21 of 2See more

devtron-in-clustercd devtron-labs 0.10.2

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/sys@v0.0.0-20201119102817-f84b799fce68
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,041
devtron-operatordevtron-labs0.23.34 of 11See more

devtron-operator devtron-labs 0.23.3

4 of the 11 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.0.0-20220412211240-33da011f77ad
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/sys@v0.0.0-20210220050731-9a76102bfb43
0.0.0-20220412211240-33da011f77ad
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

31,447
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/sys@v0.0.0-20210511113859-b0526f3d8744
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

11,957
kube-prometheus-stackdevtron-labs19.3.03 of 6See more

kube-prometheus-stack devtron-labs 19.3.0

3 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
grafana/grafana:8.2.500568d89c4f8
golang.org/x/sys@v0.0.0-20210806184541-e5e7981a1069
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus-operator/prometheus-operator:v0.50.0ab4f480f2cc6
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,645
securitydevtron-labs0.2.21 of 1See more

security devtron-labs 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.16.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,435
winter-soldierdevtron-labs0.10.61 of 1See more

winter-soldier devtron-labs 0.10.6

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/winter-soldier:abf5a822-196-14744093844c46c19
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad

Open the chart page →

1,176
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.01 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
oscarsotosanchez/weatherservice:v1.0911ec961d10b
golang.org/x/sys@v0.0.0-20200523222454-059865788121
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

27,608
digital-mobiusdigital-mobius0.1.41 of 1See more

digital-mobius digital-mobius 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
qoveryrd/digital-mobius:0.1.4b30a9398a83c
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.15.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,287
hammonddjjudas21Verified publisher0.3.91 of 1See more

hammond djjudas21 0.3.9

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
golang.org/x/sys@v0.0.0-20210330210617-4fbd30eecc44
0.0.0-20220412211240-33da011f77ad

Open the chart page →

1,806
smokepingdjjudas21Verified publisher0.1.31 of 1See more

smokeping djjudas21 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
linuxserver/smokeping:2.8.2b7f906899cd3
golang.org/x/sys@v0.0.0-20210514084401-e8d321eab015
0.0.0-20220412211240-33da011f77ad

Open the chart page →

2,053
snmp-exporterdniel0.0.21 of 1See more

snmp-exporter dniel 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
prom/snmp-exporter:v0.20.09d226d7de223
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,126
whoamidniel0.8.11 of 1See more

whoami dniel 0.8.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
containous/whoami:latest7d6a3c8f9147
stdlib@go1.14
1.17.10

Open the chart page →

1,279
docparserdocparser0.1.01 of 4See more

docparser docparser 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
conduction/docparser-php:devb6f95c8ead7d
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,408
furan2dollarshaveclubVerified publisher0.2.01 of 1See more

furan2 dollarshaveclub 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
dollarshaveclub/furan2:master14a257836529
golang.org/x/sys@v0.0.0-20201005172224-997123666555
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,046
domain-exporterdomain-exporterVerified publisher0.0.81 of 1See more

domain-exporter domain-exporter 0.0.8

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/shift/domain_exporter:v0.1.1347e27690a816
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,351
channelsdoubanVerified publisher1.1.21 of 1See more

channels douban 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
everpcpc/channels:latestb378d137ae8b
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,539
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
0.0.0-20220412211240-33da011f77ad

Open the chart page →

24,975
overlorddoubanVerified publisher0.2.21 of 1See more

overlord douban 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
douz/overlord:latestf2bc7fc068c1
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.14.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,693
prometheus-memcached-exporterdoubanVerified publisher0.1.31 of 1See more

prometheus-memcached-exporter douban 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
prom/memcached-exporter:v0.9.001267317c95d
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,114
tencentcloud-info-exporterdoubanVerified publisher0.2.21 of 1See more

tencentcloud-info-exporter douban 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/leoquote/tencentcloud-info-exporter:maind523c2c010cd
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad

Open the chart page →

2,325
eoloplannerdreyg-jescribanob-chart-eoloplanner0.1.01 of 7See more

eoloplanner dreyg-jescribanob-chart-eoloplanner 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
oscarsotosanchez/weatherservice:v1.0911ec961d10b
golang.org/x/sys@v0.0.0-20200523222454-059865788121
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

24,714
drogue-cloud-examplesdrogue-iotVerified publisher0.7.111 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

1 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

30,759
drogue-cloud-metricsdrogue-iotVerified publisher0.7.115 of 8See more

drogue-cloud-metrics drogue-iot 0.7.11

5 of the 8 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10
prom/pushgateway:v1.3.18305a33fb80a
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/sys@v0.0.0-20210324051608-47abb6519492
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

13,558
drone-kubernetes-secretsdroneVerified publisher0.1.41 of 1See more

drone-kubernetes-secrets drone 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
drone/kubernetes-secrets:latest206df2280ecf
golang.org/x/sys@v0.0.0-20180810173357-98c5dad5d1a0
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,760
temporaldtrdnk-helm-chartsVerified publisher0.35.05 of 13See more

temporal dtrdnk-helm-charts 0.35.0

5 of the 13 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
golang.org/x/sys@v0.0.0-20200223170610-d5e6a3e2c0ae
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
golang.org/x/sys@v0.0.0-20211020174200-9d6173849985
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

20,204
applause-btnduyet0.1.11 of 1See more

applause-btn duyet 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
duyetdev/applause-btn:latest25e59d223eaa
golang.org/x/sys@v0.0.0-20200909081042-eff7692f9009
stdlib@go1.14.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,636
commentoduyet0.2.01 of 2See more

commento duyet 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.gitlab.com/commento/commento:v1.8.0e0ab1fc86761
stdlib@go1.14.2
1.17.10

Open the chart page →

2,679
ai-scale-authdysnixVerified publisher0.1.12 of 3See more

ai-scale-auth dysnix 0.1.1

2 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
alex6021710/ai-scale-auth:latest6c7a47e470c3
golang.org/x/sys@v0.0.0-20211110154304-99a53858aa08
stdlib@go1.16.12
0.0.0-20220412211240-33da011f77ad
1.17.10
alex6021710/ai-scale-migrator:latest744b8a924f35
golang.org/x/sys@v0.0.0-20211013075003-97ac67df715c
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,141
ai-scale-doerdysnixVerified publisher0.1.01 of 1See more

ai-scale-doer dysnix 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
alex6021710/ai-scale-doer:latest31e533cf7cd3
golang.org/x/sys@v0.0.0-20211103235746-7861aae1554b
stdlib@go1.16.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,801
ai-scale-providerdysnixVerified publisher0.1.01 of 1See more

ai-scale-provider dysnix 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
alex6021710/ai-scale-provider:latest5837d9b30cc7
golang.org/x/sys@v0.0.0-20211103235746-7861aae1554b
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,179
ai-scale-saverdysnixVerified publisher0.1.01 of 1See more

ai-scale-saver dysnix 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
alex6021710/ai-scale-saver:latestf73e8d60fd03
golang.org/x/sys@v0.0.0-20211107104306-e0b2ad06fe42
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,136
gke-upgrade-notification-handlerdysnixVerified publisher0.1.11 of 1See more

gke-upgrade-notification-handler dysnix 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
dysnix/gke-upgrade-notification-handler:latestc166f958f86a
golang.org/x/sys@v0.0.0-20210917161153-d61c044b1678
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,090
grafana-dashboardsdysnixVerified publisher0.2.21 of 2See more

grafana-dashboards dysnix 0.2.2

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
grafana/grafana:7.4.5d322192ed2fa
golang.org/x/sys@v0.0.0-20201022201747-fb209a7c41cd
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,161
local-path-provisionerdysnixVerified publisher0.0.201 of 1See more

local-path-provisioner dysnix 0.0.20

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.20d5999b20a1b1
golang.org/x/sys@v0.0.0-20200930185726-fdedc70b468f
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,925
pritunldysnixVerified publisher0.2.71 of 3See more

pritunl dysnix 0.2.7

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/dysnix/bitnami/mongodb:4.4.11-debian-10-r5073116e61007
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.16.12
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,055
eav-componenteav-component1.0.01 of 3See more

eav-component eav-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,255
mintakaeclipse-aeriosVerified publisher1.0.01 of 2See more

mintaka eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
timescale/timescaledb-postgis:latest-pg127758704d4a14
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
stdlib@go1.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

11,482
chartecr-toke-renew0.1.51 of 1See more

chart ecr-toke-renew 0.1.5

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
itzmanish/ecr-token-renew:latest02154d1c05b5
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,818
marblerun-coordinatoredgelesssysVerified publisher0.5.01 of 1See more

marblerun-coordinator edgelesssys 0.5.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,995
grafanaedu5.3.01 of 1See more

grafana edu 5.3.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/sys@v0.0.0-20200223170610-d5e6a3e2c0ae
stdlib@go1.14.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,191

Container images carrying it

1,187 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/fiware/ishare-auth-provider:0.4.3158108f70f95
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
0.0.0-20220412211240-33da011f77ad
1
quay.io/giantswarm/cloudflared:2022.3.40b20d2fe9a6b
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
stdlib@go1.17.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/giantswarm/helloworld:0.2.07a07ee730305
stdlib@go1.16.7
1.17.10
1
quay.io/groundcover/caretta:v0.0.16ed8f5118e3a4
stdlib@go1.18
1.17.10
1
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
golang.org/x/sys@v0.0.0-20210403161142-5e06dd20ab57
stdlib@go1.17.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/icdh/core-dump-handler:v9.0.0cc79b9e2a1c8
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/influxdb/chronograf:1.9.4bb0a980bc2bf
golang.org/x/sys@v0.0.0-20210503080704-8803ae5d1324
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/influxdb/chronograf:1.9.3c2ed16080689
golang.org/x/sys@v0.0.0-20210503080704-8803ae5d1324
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/jenkins-kubernetes-operator/operator:v0.8.171cb50263c3b
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/jetstack/cert-manager-cainjector:v1.8.2c010246124c2
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
1
quay.io/jetstack/cert-manager-cainjector:v1.8.0e7b6203ccb37
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/jetstack/cert-manager-controller:v1.8.2a20c44021a5d
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
1
quay.io/jetstack/cert-manager-controller:v1.8.0e1642bf8e933
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/jetstack/cert-manager-ctl:v1.8.0595c548dee6f
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/jetstack/cert-manager-ctl:v1.8.281b2d775edad
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
1
quay.io/jetstack/cert-manager-webhook:v1.8.2ada7edd90bec
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
1
quay.io/jetstack/cert-manager-webhook:v1.8.0fd798a5a773e
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/jetstack/kube-oidc-proxy:v0.3.0e045b26eb6df
golang.org/x/sys@v0.0.0-20200113162924-86b910548bc1
stdlib@go1.14.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.13.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.13.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.13.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
1
quay.io/kube-ops/loki:2.2.14fbd63194674
golang.org/x/sys@v0.0.0-20201223074533-0d417f636930
stdlib@go1.15.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/kube-ops/promtail:2.2.134de6387233b
golang.org/x/sys@v0.0.0-20201223074533-0d417f636930
stdlib@go1.15.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/kubernetes-multicluster/kubefed:v0.7.06d56f69b15a3
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/kubernetes-multicluster/kubefed:v0.10.0c4635c95730e
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/lunarway/snyk_exporter:v1.11.155e5cc5aaa0a
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/metallb/controller:v0.10.221164241c045
golang.org/x/sys@v0.0.0-20210314195730-07df6a141424
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/metallb/speaker:v0.10.258cb99053bb3
golang.org/x/sys@v0.0.0-20210314195730-07df6a141424
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.14.10
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
golang.org/x/sys@v0.0.0-20200519105757-fe76b779f299
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.16
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.17.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
golang.org/x/sys@v0.0.0-20220222160653-b146bcec3beb
0.0.0-20220412211240-33da011f77ad
1
quay.io/openshift/origin-cli:4.66722d5041b47
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
golang.org/x/sys@v0.0.0-20190910064555-bbd175535a8b
stdlib@go1.13.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/opstree/druid-exporter:v0.83f6d9885cfe2
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.14.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/opstree/druid-exporter:v0.119f01c9c5c2e3
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/opstree/logging-operator:v0.4.0fd8bb57ef3cf
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad
1
quay.io/opstree/mongodb-operator:v0.3.0879b9bead838
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/prometheus/alertmanager:v0.24.0088464f949de
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/prometheuscommunity/elasticsearch-exporter:v1.5.013a41e8ac836
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad
1
quay.io/prometheus-operator/prometheus-operator:v0.57.0a2d502c204f9
golang.org/x/sys@v0.0.0-20220222172238-00053529121e
0.0.0-20220412211240-33da011f77ad
1
quay.io/prometheus-operator/prometheus-operator:v0.54.0be2aef39a2f8
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/prometheus/prometheus:v2.33.591100b06e86d
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/prometheus/prometheus:v2.34.0b37103e03399
golang.org/x/sys@v0.0.0-20220222172238-00053529121e
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.