StackRadar

CVE-2022-30636

Unscored

Advisory

Published 2 Jul 2024In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.006
49th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
832
of 17,787 indexed, latest versions
Container images
873
deployed by those charts
Fix available
1 of 1
affected package

Limited directory traversal vulnerability on Windows in golang.org/x/crypto

Carried by container images the latest versions of 832 of 17,787 indexed charts deploy, on 873 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+94 more0.0.0-20220525230936-793ad666bf5e873
OSV records
GO-2024-2961

Charts affected

832 by stars
ChartLatestAffected imagesRadar Score
quarks-statefulsetquarks0.0.1304-g4b4f2ac51 of 1See more

quarks-statefulset quarks 0.0.1304-g4b4f2ac5

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

4,010
saleorrc-helm-charts0.1.11 of 5See more

saleor rc-helm-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.22.0ca6b73330616
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,738
ansible-automation-platformredhat-cop0.0.91 of 1See more

ansible-automation-platform redhat-cop 0.0.9

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

15,290
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

15,290
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

11,437
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

29,226
reportportalreportportal5.7.22 of 8See more

reportportal reportportal 5.7.2

2 of the 8 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
reportportal/migrations:5.7.0da5d8e1395fe
golang.org/x/crypto@v0.0.0-20190426145343-a29dc8fdc734
0.0.0-20220525230936-793ad666bf5e
reportportal/service-index:5.0.112b27a2d7a87d
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

25,739
resource-manager-operatorresource-manager-operator0.1.01 of 1See more

resource-manager-operator resource-manager-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
ghcr.io/tikalk/resource-manager:latest7f21d50e69cb
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

1,623
review-componentreview-component1.0.01 of 3See more

review-component review-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/review-component-php:latestafe623824b82
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

7,490
rke2-calicorke2-charts3.18.1-1011 of 1See more

rke2-calico rke2-charts 3.18.1-101

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/tigera/operator:v1.15.1c6591da87aa8
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,250
rke2-canal-1.19-1.20rke2-charts3.13.3-build20211022022 of 2See more

rke2-canal-1.19-1.20 rke2-charts 3.13.3-build2021102202

2 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
rancher/hardened-calico:v3.13.3-build20210223c678c25d47c8
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.0.0-20220525230936-793ad666bf5e
rancher/hardened-flannel:v0.14.1-build20211022d6a47d394c03
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

5,942
bastillion-upstreamrock8sVerified publisher0.1.01 of 1See more

bastillion-upstream rock8s 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
iamdorsah/bastillion:v0.1db83a0254d81
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,051
gitlab-operatorrock8sVerified publisher0.7.01 of 2See more

gitlab-operator rock8s 0.7.0

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

5,422
argocdromholdings1.8.12 of 3See more

argocd romholdings 1.8.1

2 of the 3 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

10,468
argocd-certificate-refreshromholdings0.10.81 of 1See more

argocd-certificate-refresh romholdings 0.10.8

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

12,999
calicoromholdings0.1.13 of 4See more

calico romholdings 0.1.1

3 of the 4 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

10,073
clairromholdings0.1.141 of 2See more

clair romholdings 0.1.14

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

6,237
devtron-enterpriseromholdings48.0.07 of 28See more

devtron-enterprise romholdings 48.0.0

7 of the 28 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/nats-box:latest48cdd3054b20
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

66,542
devtron-in-clustercdromholdings0.10.21 of 2See more

devtron-in-clustercd romholdings 0.10.2

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

5,041
devtron-operatorromholdings0.23.34 of 11See more

devtron-operator romholdings 0.23.3

4 of the 11 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

31,447
dgraphromholdings0.0.201 of 1See more

dgraph romholdings 0.0.20

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

11,957
kube-prometheus-stackromholdings19.3.02 of 6See more

kube-prometheus-stack romholdings 19.3.0

2 of the 6 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
grafana/grafana:8.2.500568d89c4f8
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220525230936-793ad666bf5e
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

8,645
securityromholdings0.2.21 of 1See more

security romholdings 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/crypto@v0.0.0-20220112180741-5e0467b6c7ce
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,435
operatorrookout0.0.201 of 2See more

operator rookout 0.0.20

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
rookout/k8s-operator:latest0d083f3ef1a7
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,209
caddysagikazarmarkVerified publisher0.0.141 of 1See more

caddy sagikazarmark 0.0.14

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
library/caddy:2.4.5874405536b3e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,960
hellowsamarthya2.0.01 of 1See more

hellow samarthya 2.0.0

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
samarthya/spinnaker:v1.0ef06d81036af
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,121
ed-traefikscaleway-charts0.2.01 of 1See more

ed-traefik scaleway-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
library/traefik:v1.7.345d47b7bb2546
golang.org/x/crypto@v0.0.0-20210920023735-84f357641f63
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,133
ed-traefik2scaleway-charts0.2.01 of 1See more

ed-traefik2 scaleway-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
library/traefik:2.5.62f603f8d3abe
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,160
icinga2-masterschmitzis0.2.01 of 6See more

icinga2-master schmitzis 0.2.0

1 of the 6 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
grafana/grafana:8.0.3696823fbc561
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,731
version-checkerschmitzis0.2.21 of 1See more

version-checker schmitzis 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,023
openldapschoolguys-helmcharts0.1.31 of 1See more

openldap schoolguys-helmcharts 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
golang.org/x/crypto@v0.0.0-20201012173705-84dcc777aaee
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,313
cernboxsciencebox0.0.41 of 6See more

cernbox sciencebox 0.0.4

1 of the 6 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
cs3org/revad:v1.19.03b57a34a7dfd
golang.org/x/crypto@v0.0.0-20220331220935-ae2d96664a29
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,330
ldap-instance-configsciencebox0.0.11 of 1See more

ldap-instance-config sciencebox 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
golang.org/x/crypto@v0.0.0-20201012173705-84dcc777aaee
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,313
centralbrainsciencemeshVerified publisher0.0.33 of 5See more

centralbrain sciencemesh 0.0.3

3 of the 5 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
grafana/grafana:7.3.315b977f5207d
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.0.0-20220525230936-793ad666bf5e
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.0.0-20220525230936-793ad666bf5e
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

9,754
hermitcrabseal-ioVerified publisher0.1.41 of 2See more

hermitcrab seal-io 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
sealio/terraform-deployer:v1.5.7-seal.1b0389d9848a5
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

4,883
aws-secretssecretsprovider0.1.01 of 1See more

aws-secrets secretsprovider 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r1-10-g1942553-2021.06.04.00.07-linux-amd64b32c99e7bc45
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,213
cloudflaredsectionmeVerified publisher2022.3.41 of 1See more

cloudflared sectionme 2022.3.4

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
quay.io/giantswarm/cloudflared:2022.3.40b20d2fe9a6b
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,407
seldon-core-analyticsseldon1.17.13 of 8See more

seldon-core-analytics seldon 1.17.1

3 of the 8 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/crypto@v0.0.0-20200406173513-056763e48d71
0.0.0-20220525230936-793ad666bf5e
prom/alertmanager:v0.20.07e4e9f7a0954
golang.org/x/crypto@v0.0.0-20190617133340-57b3e21c3d56
0.0.0-20220525230936-793ad666bf5e
prom/prometheus:v2.18.15880ec936055
golang.org/x/crypto@v0.0.0-20200422194213-44a606286825
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

10,733
alertmanagersignoz0.5.21 of 1See more

alertmanager signoz 0.5.2

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
signoz/alertmanager:0.5.07bc7de2e33c2
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,181
metrics-generatorsikalabs0.2.01 of 1See more

metrics-generator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
sikalabs/slu:v0.34.0fdc0c6711add
golang.org/x/crypto@v0.0.0-20220208050332-20e1d8d225ab
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,381
keydbsinextraVerified publisher0.31.01 of 1See more

keydb sinextra 0.31.0

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
golang.org/x/crypto@v0.0.0-20220511200225-c6db032c6c88
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,165
config-connector-templaterslamdev0.0.51 of 1See more

config-connector-templater slamdev 0.0.5

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
slamdev/config-connector-templater:0.0.3a234541c9fa8
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,110
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

9,235
gke-preemptible-notifierslamdev0.0.61 of 1See more

gke-preemptible-notifier slamdev 0.0.6

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
slamdev/gke-preemptible-notifier:v0.0.3d5d6430108a3
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,860
octavia-ingress-controllerslamdev0.0.71 of 1See more

octavia-ingress-controller slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
k8scloudprovider/octavia-ingress-controller:v1.20.26ddf80b34265
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,761
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

8,697
smarter-k3s-edgesmarterVerified publisher0.0.121 of 2See more

smarter-k3s-edge smarter 0.0.12

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
rancher/k3s:v1.25.3-k3s1eaa270df79cc
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,462
pod-defaultersoftonic0.1.31 of 1See more

pod-defaulter softonic 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
softonic/pod-defaulter:0.1.072017aed5902
golang.org/x/crypto@v0.0.0-20200728195943-123391ffb6de
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,561
rate-limit-operatorsoftonic1.1.01 of 2See more

rate-limit-operator softonic 1.1.0

1 of the 2 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
softonic/rate-limit-operator:0.1.1910f6de37763
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

2,219
gloo-meshsolo-gloo-mesh1.1.21 of 1See more

gloo-mesh solo-gloo-mesh 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-30636.

Container imageDigestPackageFixed in
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.0.0-20220525230936-793ad666bf5e

Open the chart page →

3,259

Container images carrying it

873 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/bentoml/yatai:0.4.614b482c1f1b8
golang.org/x/crypto@v0.0.0-20220507011949-2cf3adece122
0.0.0-20220525230936-793ad666bf5e
1
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.0.0-20220525230936-793ad666bf5e
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.0.0-20220525230936-793ad666bf5e
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
1
quay.io/cortexproject/cortex:v1.9.05d1c2cf4c538
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
1
quay.io/ddn/exascaler-csi-file-driver:v2.2.6fe2e2e5a2751
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.0.0-20220525230936-793ad666bf5e
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
1
quay.io/fiware/ishare-auth-provider:0.4.3158108f70f95
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e
1
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.0.0-20220525230936-793ad666bf5e
1
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.0.0-20220525230936-793ad666bf5e
1
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.0.0-20220525230936-793ad666bf5e
1
quay.io/giantswarm/cloudflared:2022.3.40b20d2fe9a6b
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.0.0-20220525230936-793ad666bf5e
1
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
golang.org/x/crypto@v0.0.0-20220321153916-2c7772ba3064
0.0.0-20220525230936-793ad666bf5e
1
quay.io/influxdb/chronograf:1.9.4bb0a980bc2bf
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
1
quay.io/influxdb/chronograf:1.9.3c2ed16080689
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
1
quay.io/jenkins-kubernetes-operator/operator:v0.8.171cb50263c3b
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e
1
quay.io/jetstack/cert-manager-cainjector:v1.8.2c010246124c2
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220525230936-793ad666bf5e
1
quay.io/jetstack/cert-manager-cainjector:v1.8.0e7b6203ccb37
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220525230936-793ad666bf5e
1
quay.io/jetstack/cert-manager-controller:v1.8.2a20c44021a5d
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220525230936-793ad666bf5e
1
quay.io/jetstack/cert-manager-controller:v1.8.0e1642bf8e933
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220525230936-793ad666bf5e
1
quay.io/jetstack/cert-manager-ctl:v1.8.0595c548dee6f
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220525230936-793ad666bf5e
1
quay.io/jetstack/cert-manager-ctl:v1.8.281b2d775edad
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.0.0-20220525230936-793ad666bf5e
1
quay.io/jetstack/kube-oidc-proxy:v0.3.0e045b26eb6df
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.0.0-20220525230936-793ad666bf5e
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e
1
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.0.0-20220525230936-793ad666bf5e
1
quay.io/kube-ops/loki:2.2.14fbd63194674
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.0.0-20220525230936-793ad666bf5e
1
quay.io/kube-ops/promtail:2.2.134de6387233b
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.0.0-20220525230936-793ad666bf5e
1
quay.io/kubermatic/kubermatic:v2.24.5ebba936046ab
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.0.0-20220525230936-793ad666bf5e
1
quay.io/kubernetes-multicluster/kubefed:v0.7.06d56f69b15a3
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e
1
quay.io/kubernetes-multicluster/kubefed:v0.10.0c4635c95730e
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
1
quay.io/metallb/controller:v0.10.221164241c045
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e
1
quay.io/metallb/speaker:v0.10.258cb99053bb3
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.0.0-20220525230936-793ad666bf5e
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.0.0-20220525230936-793ad666bf5e
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.0.0-20220525230936-793ad666bf5e
1
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.0.0-20220525230936-793ad666bf5e
1
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e
1
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.0.0-20220525230936-793ad666bf5e
1
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
golang.org/x/crypto@v0.0.0-20211202192323-5770296d904e
0.0.0-20220525230936-793ad666bf5e
1
quay.io/openshift/origin-cli:4.66722d5041b47
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.0.0-20220525230936-793ad666bf5e
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.0.0-20220525230936-793ad666bf5e
1
quay.io/opsmxpublic/create-secret:v4.0.4defc3263e0e9
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.0.0-20220525230936-793ad666bf5e
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.0.0-20220525230936-793ad666bf5e
1
quay.io/opstree/logging-operator:v0.4.0fd8bb57ef3cf
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.0.0-20220525230936-793ad666bf5e
1
quay.io/opstree/mongodb-operator:v0.3.0879b9bead838
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.0.0-20220525230936-793ad666bf5e
1
quay.io/prometheus/alertmanager:v0.24.0088464f949de
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.0.0-20220525230936-793ad666bf5e
1
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
golang.org/x/crypto@v0.0.0-20220511200225-c6db032c6c88
0.0.0-20220525230936-793ad666bf5e
1
quay.io/prometheus/prometheus:v2.33.591100b06e86d
golang.org/x/crypto@v0.0.0-20211202192323-5770296d904e
0.0.0-20220525230936-793ad666bf5e
1
quay.io/prometheus/prometheus:v2.34.0b37103e03399
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.0.0-20220525230936-793ad666bf5e
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.