StackRadar

CVE-2022-29526

Medium

Advisory

Published 24 Jun 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,076
of 17,781 indexed, latest versions
Container images
1,173
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/sys/unix has Incorrect privilege reporting in syscall

Carried by container images the latest versions of 1,076 of 17,781 indexed charts deploy, on 1,173 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+192 more0.0.0-20220412211240-33da011f77ad1,033
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+69 more1.17.101,019
OSV records
GHSA-p782-xgp4-8hr8GO-2022-0493
Also known as
BIT-golang-2022-29526

Charts affected

1,076 by stars
ChartLatestAffected imagesRadar Score
contactmoment-componentcontactmoment-component0.1.01 of 4See more

contactmoment-component contactmoment-component 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
conduction/contactmoment-component-php:deve1d4ad1e22a8
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,408
containers-security-chartscontainers-security0.1.01 of 7See more

containers-security-charts containers-security 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
falcosecurity/falcosidekick:2.27.0828ee36cb13a
stdlib@go1.18.1
1.17.10

Open the chart page →

9,146
katibcowboysysopVerified publisher2.4.23 of 4See more

katib cowboysysop 2.4.2

3 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kubeflowkatib/katib-controller:v0.12.012a28c8a0b41
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.17.1
0.0.0-20220412211240-33da011f77ad
1.17.10
kubeflowkatib/katib-db-manager:v0.12.0db88bf09d88e
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.13.3
0.0.0-20220412211240-33da011f77ad
1.17.10
kubeflowkatib/katib-ui:v0.12.0129f0aaba976
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.17.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,542
kfservingcowboysysopVerified publisher1.3.11 of 3See more

kfserving cowboysysop 1.3.1

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kfserving/kfserving-controller:v0.6.163d79d04c2e3
golang.org/x/sys@v0.0.0-20200905004654-be1d3432aa8f
stdlib@go1.14.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,830
metacontrollercowboysysopVerified publisher1.2.21 of 1See more

metacontroller cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
metacontrollerio/metacontroller:v2.1.10336993b88e4
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,092
mpi-operatorcowboysysopVerified publisher1.2.21 of 1See more

mpi-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
mpioperator/mpi-operator:0.3.03ccfa8d8b7bf
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.15.13
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,577
notebook-controllercowboysysopVerified publisher1.1.21 of 1See more

notebook-controller cowboysysop 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/notebooks/notebook-controller:v1.4cac3ed9a9826
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,582
quickchartcowboysysopVerified publisher5.0.01 of 1See more

quickchart cowboysysop 5.0.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ianw/quickchart:v1.7.1dc49dd460c37
golang.org/x/sys@v0.0.0-20190222072716-a9d3bda3a223
stdlib@go1.13.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,488
training-operatorcowboysysopVerified publisher1.2.21 of 1See more

training-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/training/training-operator:760ac1171dd30039a7363ffa03c77454bd714da5ae59d222fd87
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.14.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,275
crossplane-controllerscrossplane0.12.01 of 1See more

crossplane-controllers crossplane 0.12.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
crossplane/crossplane:v0.12.066666e6963af
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,312
oam-kubernetes-runtimecrossplane0.0.3-71.g0f235901 of 2See more

oam-kubernetes-runtime crossplane 0.0.3-71.g0f23590

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
crossplane/oam-kubernetes-runtime:v0.0.3-71.g0f235900112171c45e3
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,248
oam-kubernetes-runtime-legacycrossplane0.3.1-5.g11e18941 of 1See more

oam-kubernetes-runtime-legacy crossplane 0.3.1-5.g11e1894

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
crossplane/oam-kubernetes-runtime:v0.3.1-5.g11e189407b8b410dc76
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,231
external-service-operatorcrowdfox0.1.01 of 1See more

external-service-operator crowdfox 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
crowdfox/external-service-operator:v1.1.06fa7e8063d27
golang.org/x/sys@v0.0.0-20210320140829-1e4c9ba3b0c4
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,624
electric-mailcryptexlabsVerified publisher0.0.12 of 5See more

electric-mail cryptexlabs 0.0.1

2 of the 5 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/sys@v0.0.0-20210514084401-e8d321eab015
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
hashicorp/vault-k8s:0.13.1bebb03e8e800
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,973
purple-piecryptexlabsVerified publisher0.0.12 of 4See more

purple-pie cryptexlabs 0.0.1

2 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/sys@v0.0.0-20210514084401-e8d321eab015
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
hashicorp/vault-k8s:0.13.1bebb03e8e800
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,973
openldapcsic-charts0.1.11 of 2See more

openldap csic-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.17.10

Open the chart page →

5,293
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.4.121994f40e0da
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

13,852
irods-csi-drivercyverse0.12.01 of 4See more

irods-csi-driver cyverse 0.12.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,218
home-assistantdamounVerified publisher1.1.01 of 1See more

home-assistant damoun 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
stdlib@go1.17.1
1.17.10

Open the chart page →

6,179
speedtest-exporterdamounVerified publisher1.0.61 of 1See more

speedtest-exporter damoun 1.0.6

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/danopstech/speedtest_exporter:v0.0.599efbe55412b
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,209
grafana-agentdandydev-chartsVerified publisher0.19.21 of 1See more

grafana-agent dandydev-charts 0.19.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
grafana/agent:v0.20.0825c09373d27
golang.org/x/sys@v0.0.0-20210908233432-aa78b53d3365
stdlib@go1.16
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,238
cloudwatch-agent-prometheusdasmeta0.2.21 of 1See more

cloudwatch-agent-prometheus dasmeta 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
golang.org/x/sys@v0.0.0-20200316230553-a7d97aace0b0
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,977
mongodb-bi-connectordasmeta1.0.31 of 1See more

mongodb-bi-connector dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,832
nfs-provisionerdasmeta1.0.31 of 1See more

nfs-provisioner dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/sys@v0.0.0-20190801041406-cbf593c0f2f3
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,806
datadog-csi-driverdatadogVerified publisher0.17.01 of 2See more

datadog-csi-driver datadog 0.17.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.0.1e07f914c32f0
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,040
datadog-operatordatadog-test0.1.21 of 1See more

datadog-operator datadog-test 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
datadog/operator:0.3.117f08a860090
golang.org/x/sys@v0.0.0-20200413165638-669c56c373c4
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,980
ambassador-operatordatawire0.3.01 of 1See more

ambassador-operator datawire 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
datawire/ambassador-operator:v1.3.0f95ae710d75c
golang.org/x/sys@v0.0.0-20200217220822-9197077df867
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,486
eg-edge-stack-crdsdatawire0.0.11 of 2See more

eg-edge-stack-crds datawire 0.0.1

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,404
kube-better-nodedecayofmind0.0.41 of 1See more

kube-better-node decayofmind 0.0.4

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/decayofmind/kube-better-node:masterccd2ce03b682
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,583
symfony-appdefault-ghVerified publisher0.6.51 of 3See more

symfony-app default-gh 0.6.5

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
alpine/git:2.36.366b210a97bc0
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.0.0-20220412211240-33da011f77ad

Open the chart page →

5,122
aws-s3-proxydeliveryheroVerified publisher0.1.71 of 1See more

aws-s3-proxy deliveryhero 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
pottava/s3-proxy:2.020a0bcb15f76
stdlib@go1.13.7
1.17.10

Open the chart page →

1,323
aws-service-events-exporterdeliveryheroVerified publisher1.0.71 of 1See more

aws-service-events-exporter deliveryhero 1.0.7

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
thomasnyambati/aws-service-events-exporter:1.0.01e18a0944ceb
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,299
cortex-gatewaydeliveryheroVerified publisher0.1.91 of 1See more

cortex-gateway deliveryhero 0.1.9

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
goelankit/cortex-gateway:v1.1.00d9a82dcf026
golang.org/x/sys@v0.0.0-20220405210540-1e041c57c461
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,234
k8s-cloudwatch-adapterdeliveryheroVerified publisher0.2.21 of 1See more

k8s-cloudwatch-adapter deliveryhero 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
golang.org/x/sys@v0.0.0-20190826190057-c7b8b68b1456
stdlib@go1.14.5
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,468
killgravedeliveryheroVerified publisher1.0.21 of 1See more

killgrave deliveryhero 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
friendsofgo/killgrave:0.4.139cfbecca342
stdlib@go1.16.3
1.17.10

Open the chart page →

1,181
prometheus-aws-limits-exporterdeliveryheroVerified publisher0.2.21 of 1See more

prometheus-aws-limits-exporter deliveryhero 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
danielfm/aws-limits-exporter:0.6.07152b84e57cb
stdlib@go1.17.2
1.17.10

Open the chart page →

1,846
prometheus-soti-mobicontrol-exporterdeliveryheroVerified publisher1.0.31 of 1See more

prometheus-soti-mobicontrol-exporter deliveryhero 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
maxrocketinternet/soti-mobicontrol-exporter:0.61a281b76efa3
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,644
prometheus-statsd-exporterdeliveryheroVerified publisher0.1.51 of 1See more

prometheus-statsd-exporter deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
prom/statsd-exporter:v0.18.0d23aca343b86
golang.org/x/sys@v0.0.0-20200523222454-059865788121
stdlib@go1.14.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,315
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
0.0.0-20220412211240-33da011f77ad

Open the chart page →

14,856
apachedevops0.1.01 of 4See more

apache devops 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mariadb:10.8.30abf60f81588
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

30,031
laraveldevops0.10.31 of 4See more

laravel devops 0.10.3

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mariadb:10.9.4fbb8456ebdb1
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

29,033
wordpressdevops0.12.01 of 4See more

wordpress devops 0.12.0

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mariadb:10.8.30abf60f81588
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

12,992
kyvernodevopstalesVerified publisher2.5.12 of 2See more

kyverno devopstales 2.5.1

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/kyverno/kyverno:v1.7.19c73f1841ebc
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.17.9
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/kyverno/kyvernopre:v1.7.1185d2eebc60c
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.17.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,722
pushproxdevopstalesVerified publisher0.1.62 of 2See more

pushprox devopstales 0.1.6

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
rancher/pushprox-client:v0.1.0-rancher2-clienta41cd716c412
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
rancher/pushprox-proxy:v0.1.0-rancher2-proxy3126395b966c
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,754
lxd8sdevplayer0Verified publisher0.5.12 of 2See more

lxd8s devplayer0 0.5.1

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/devplayer0/lxd8s:0.3.1e159ba41aede
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,431
octolxddevplayer0Verified publisher0.1.11 of 1See more

octolxd devplayer0 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/octolxd:0.1.119b18fd97eab
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,525
argocddevtron1.8.12 of 3See more

argocd devtron 1.8.1

2 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/sys@v0.0.0-20200930185726-fdedc70b468f
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.14.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,466
calertdevtron0.0.11 of 1See more

calert devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,648
devtron-enterprisedevtron48.0.07 of 28See more

devtron-enterprise devtron 48.0.0

7 of the 28 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.0.0-20220412211240-33da011f77ad
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.14.15
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/sys@v0.0.0-20210220050731-9a76102bfb43
0.0.0-20220412211240-33da011f77ad
quay.io/devtron/nats-server-config-reloader:0.6.2b5252e783fb2
golang.org/x/sys@v0.0.0-20200918174421-af09f7315aff
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/sys@v0.0.0-20210218155724-8ebf48af031b
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

68,240
devtron-in-clustercddevtron0.10.21 of 2See more

devtron-in-clustercd devtron 0.10.2

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/sys@v0.0.0-20201119102817-f84b799fce68
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,039

Container images carrying it

1,173 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
alex6021710/ai-scale-saver:latestf73e8d60fd03
golang.org/x/sys@v0.0.0-20211107104306-e0b2ad06fe42
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
stdlib@go1.18.1
1.17.10
1
almir/webhook:2.8.01698346f6077
golang.org/x/sys@v0.0.0-20191228213918-04cbcbbfeed8
stdlib@go1.14.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
almorgv/gitlab-code-review-notifier:0.1.25f2a7d2b44d8
stdlib@go1.14.15
1.17.10
1
alpine/git:2.36.366b210a97bc0
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.0.0-20220412211240-33da011f77ad
1
alpine/k8s:1.22.600ac10bcb759
golang.org/x/sys@v0.0.0-20211101204403-39c9dd37992c
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
alpine/k8s:1.27.321b24e6bf801
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
1
alpine/k8s:1.18.16a41efe02a041
golang.org/x/sys@v0.0.0-20210331175145-43e1dd70ce54
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
altinity/clickhouse-operator:0.19.07a85f522c5bc
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad
1
altinity/clickhouse-operator:0.16.1db7dde971407
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
altinity/metrics-exporter:0.16.185b4fdbae053
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
amazon/aws-efs-csi-driver:v0.3.0b55277652ea8
golang.org/x/sys@v0.0.0-20190616124812-15dcb6c0061f
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
amazon/aws-fsx-csi-driver:latestc9b14856fd22
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
golang.org/x/sys@v0.0.0-20200316230553-a7d97aace0b0
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
anchore/anchore-engine:v0.10.0bde9eedf639d
golang.org/x/sys@v0.0.0-20200602225109-6fdc65e7d980
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
andrcuns/smocker:0.18.5b4a8eb20581a
golang.org/x/sys@v0.0.0-20220307203707-22a9840ba4d7
0.0.0-20220412211240-33da011f77ad
1
anonaddy/anonaddy:0.12.3957a95565166
golang.org/x/sys@v0.0.0-20211116061358-0a5406a5449c
0.0.0-20220412211240-33da011f77ad
1
ansgroup/cert-manager-webhook-safedns:v1.0.1cd6b0ef2b309
golang.org/x/sys@v0.0.0-20190922100055-0a153f010e69
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ansiblesemaphore/semaphore:v2.8.5303d1f8684027
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
apache/apisix-dashboard:2.9.0c010ea7d1694
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.14.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
apache/apisix-ingress-controller:1.3.0412f92cde0b3
golang.org/x/sys@v0.0.0-20210819072135-bce67f096156
stdlib@go1.13.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
apache/skywalking-oap-server:9.2.0133d35d2c263
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10
1
apache/skywalking-oap-server:8.1.0-es7641237e0299b
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.13.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10
1
apache/skywalking-ui:8.1.067d50e4deff4
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.13.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
aquasec/starboard-operator:0.15.4be34f709e1ce
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.14.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
assistiot/data_integrity_verification:1.0.0eb7f5d765ab6
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.0.0-20220412211240-33da011f77ad
1
assistiot/distributed_broker:1.0.033e02dad168f
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.0.0-20220412211240-33da011f77ad
1
assistiot/dlt_based_fl:1.1.04bc3d92788ed
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.0.0-20220412211240-33da011f77ad
1
assistiot/logging_auditing:1.0.0790dbb198e86
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
1
assistiot/smart-orchestrator_helm:latest9bb46ea14e8e
stdlib@go1.13
1.17.10
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
beanbag/reviewboard:latest6b840f546e1c
stdlib@go1.18.1
1.17.10
1
bedag/goblackhole:0.2.0447a88598f4c
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
stdlib@go1.17.6
1.17.10
1
bicarus/mx-notifier:1.1.8bed688d16762
stdlib@go1.17.6
1.17.10
1
binhex/arch-nzbhydra2:3.1.0-1-01fb8952921ab6
stdlib@go1.14
1.17.10
1
bitnamilegacy/kafka:2.8.1-debian-11-r7b6e381ffd6ae
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/kafka-exporter-archived:1.3.2e527fbf75dce
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/mongodb:3.6.213e51da56fc54
golang.org/x/sys@v0.0.0-20200905004654-be1d3432aa8f
stdlib@go1.15.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/mongodb:4.4.5e3c9d6b4bc92
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/mysqld-exporter:0.14.0-debian-11-r10304768b637c94
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/mysqld-exporter:0.13.0a7e14cc919cb
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/rabbitmq:3.10.88f7161d8ce19
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/rabbitmq:3.10.7-debian-11-r4cf93e2772250
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/rabbitmq-cluster-operator:1.14.0-scratch-r567ac64a9623a
golang.org/x/sys@v0.0.0-20220319134239-a9b59b0215f8
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
1
bitnamilegacy/redis:6.2.7-debian-11-r37788b908dd0d
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.