StackRadar

CVE-2023-39318

Medium

Advisory

Published 7 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.009
59th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,792
of 17,787 indexed, latest versions
Container images
2,056
deployed by those charts
Fix available
1 of 2
affected packages

Improper handling of HTML-like comments in script contexts in html/template

Carried by container images the latest versions of 1,792 of 17,787 indexed charts deploy, on 2,056 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+106 more1.20.82,056
OSV records
DEBIAN-CVE-2023-39318GO-2023-2041
Also known as
BIT-golang-2023-39318

Charts affected

1,792 by stars
ChartLatestAffected imagesRadar Score
loftloftVerified publisher0.0.0-ci.141 of 1See more

loft loft 0.0.0-ci.14

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/loft:0.0.0-ci.14b69bcdaa8492
stdlib@go1.20.7
1.20.8

Open the chart page →

3,675
vcluster-k8sloftVerified publisher0.0.0-ci.33 of 4See more

vcluster-k8s loft 0.0.0-ci.3

3 of the 4 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
registry.k8s.io/etcd:3.5.6-0dd75ec974b0a
stdlib@go1.16.15
1.20.8
registry.k8s.io/kube-apiserver:v1.26.199e1ed9fbc8a
stdlib@go1.19.5
1.20.8
registry.k8s.io/kube-controller-manager:v1.26.140adecbe3a40
stdlib@go1.19.5
1.20.8

Open the chart page →

5,570
veleromesosphere3.2.51 of 1See more

velero mesosphere 3.2.5

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.26.4a0a972324d93
stdlib@go1.19.8
1.20.8

Open the chart page →

1,869
kubecostmesosphere-stable0.37.51 of 9See more

kubecost mesosphere-stable 0.37.5

1 of the 9 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
grafana/grafana:9.4.71a359d92f40e
stdlib@go1.20.1
1.20.8

Open the chart page →

17,693
rclonemglants2.3.41 of 1See more

rclone mglants 2.3.4

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
rclone/rclone:1.57.01e6eeabddc01
stdlib@go1.17.2
1.20.8

Open the chart page →

2,743
move2kubemove2kube0.3.151 of 1See more

move2kube move2kube 0.3.15

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
stdlib@go1.19
1.20.8

Open the chart page →

3,793
keycloak-operatornewsaktuell0.1.71 of 1See more

keycloak-operator newsaktuell 0.1.7

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
stdlib@go1.13.8
1.20.8

Open the chart page →

5,067
kobotoolboxone-acre-fundVerified publisher0.7.41 of 9See more

kobotoolbox one-acre-fund 0.7.4

1 of the 9 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
enketo/enketo-express:3.0.4dcad9c2273f6
stdlib@go1.17.1
1.20.8

Open the chart page →

18,517
secrets-injectoronepassword-connect1.2.01 of 1See more

secrets-injector onepassword-connect 1.2.0

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
1password/kubernetes-secrets-injector:1.0.25884757f7879
stdlib@go1.20.5
1.20.8

Open the chart page →

890
opentelemetry-ebpfopentelemetry-helmVerified publisher0.1.71 of 4See more

opentelemetry-ebpf opentelemetry-helm 0.1.7

1 of the 4 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
otel/opentelemetry-ebpf-k8s-watcher:v0.10.263a0d1dd2cac
stdlib@go1.20
1.20.8

Open the chart page →

2,573
oesopsmxVerified publisher4.0.327 of 25See more

oes opsmx 4.0.32

7 of the 25 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
stdlib@go1.15.5
1.20.8
minio/minio:RELEASE.2020-12-03T05-49-24Z053f103f4894
stdlib@go1.15.5
1.20.8
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
stdlib@go1.17.2
1.20.8
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
stdlib@go1.16.15
1.20.8
quay.io/opsmxpublic/create-secret:v4.0.4defc3263e0e9
stdlib@go1.20.3
1.20.8
quay.io/opsmxpublic/forwarder-controller:v3.5.7f0c5bebaec96
stdlib@go1.19.1
1.20.8
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
stdlib@go1.13.1
1.20.8

Open the chart page →

107,811
ipfs-clusterparadeum-teamVerified publisher0.0.192 of 2See more

ipfs-cluster paradeum-team 0.0.19

2 of the 2 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ipfs/go-ipfs:v0.13.117259397f587
stdlib@go1.18.3
1.20.8
ipfs/ipfs-cluster:1.0.21511f6d57994
stdlib@go1.18.3
1.20.8

Open the chart page →

3,757
ipmi-exporterpnnl-miscscripts0.1.151 of 1See more

ipmi-exporter pnnl-miscscripts 0.1.15

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
pnnlmiscscripts/ipmi-exporter:1.2.0-181e18992d8e3
stdlib@go1.13.10
1.20.8

Open the chart page →

2,995
pomeriumpomerium34.0.11 of 1See more

pomerium pomerium 34.0.1

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
pomerium/pomerium:v0.22.19c69b10a2126
stdlib@go1.20.3
1.20.8

Open the chart page →

1,942
kube-prometheus-stackprometheus-worawutchan12.8.04 of 6See more

kube-prometheus-stack prometheus-worawutchan 12.8.0

4 of the 6 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
grafana/grafana:7.2.1733842cca5bd
stdlib@go1.15.1
1.20.8
jettech/kube-webhook-certgen:v1.5.0fb7c2cd46ccf
stdlib@go1.15.3
1.20.8
quay.io/prometheus-operator/prometheus-operator:v0.44.0983627001c89
stdlib@go1.14.12
1.20.8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.20.8

Open the chart page →

12,125
nfs-server-provisionerraphaelVerified publisher1.3.01 of 1See more

nfs-server-provisioner raphael 1.3.0

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
stdlib@go1.15
1.20.8

Open the chart page →

2,730
repoflowrepoflow-helm-public0.9.11 of 8See more

repoflow repoflow-helm-public 0.9.1

1 of the 8 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
library/postgres:16.24aea012537ed
stdlib@go1.18.2
1.20.8

Open the chart page →

13,521
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
stdlib@go1.18.1
1.20.8

Open the chart page →

3,427
seaweedfs-csi-driverseaweedfs-csi-driver0.2.385 of 7See more

seaweedfs-csi-driver seaweedfs-csi-driver 0.2.38

5 of the 7 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.3.04eb73137b663
stdlib@go1.20.3
1.20.8
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.20.8
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.20.8
registry.k8s.io/sig-storage/csi-resizer:v1.8.02e2b44393539
stdlib@go1.20.3
1.20.8
registry.k8s.io/sig-storage/livenessprobe:v2.10.04dc0b87ccd69
stdlib@go1.20.3
1.20.8

Open the chart page →

5,270
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ghcr.io/lldap/lldap:2025-05-193de697c3ba57
stdlib@go1.18.2
1.20.8

Open the chart page →

3,400
corednssoftizyVerified publisher0.2.01 of 1See more

coredns softizy 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
coredns/coredns:1.10.1a0ead06651cf
stdlib@go1.20
1.20.8

Open the chart page →

1,663
knative-servingsoftonic3.0.05 of 5See more

knative-serving softonic 3.0.0

5 of the 5 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhookdigest-pinned873b968f02b5
stdlib@go1.14.2
1.20.8
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinneda5de0fb75046
stdlib@go1.14.2
1.20.8
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned2ef460356b17
stdlib@go1.14.2
1.20.8
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned30ce73388ae5
stdlib@go1.14.2
1.20.8
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedf16c0e022203
stdlib@go1.14.2
1.20.8

Open the chart page →

12,502
sn-platformstreamnative1.11.446 of 9See more

sn-platform streamnative 1.11.44

6 of the 9 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.8.05af9d3041d12
stdlib@go1.19.2
1.20.8
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
stdlib@go1.20.4
1.20.8
streamnative/pulsar_vault_init:v1.0.731533fa9fab7
stdlib@go1.17.11
1.20.8
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.20.8
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.20.8
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
stdlib@go1.19.7
1.20.8

Open the chart page →

15,477
thingsboard-clusterthingsboard-cluster-bettaVerified publisher0.2.263 of 6See more

thingsboard-cluster thingsboard-cluster-betta 0.2.26

3 of the 6 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:3.5.0-debian-11-r08657bb93a581
stdlib@go1.20.5
1.20.8
bitnamilegacy/redis:7.2.1-debian-11-r0fa288394f402
stdlib@go1.19.12
1.20.8
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
stdlib@go1.19.12
1.20.8

Open the chart page →

14,566
feedbacksystemthm-mni-iiVerified publisher0.47.12 of 10See more

feedbacksystem thm-mni-ii 0.47.1

2 of the 10 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
stdlib@go1.19.12
1.20.8
library/docker:20.10.21-dind3153fa63f546
stdlib@go1.18.7
1.20.8

Open the chart page →

28,534
maeshtraefikOfficialVerified publisher2.1.21 of 7See more

maesh traefik 2.1.2

1 of the 7 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
containous/maesh:v1.3.2587162516502
stdlib@go1.14.4
1.20.8

Open the chart page →

4,136
traefik-meshtraefikOfficialVerified publisher4.1.13 of 7See more

traefik-mesh traefik 4.1.1

3 of the 7 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.18db45c07f2e1b
stdlib@go1.14.4
1.20.8
library/traefik:v2.57d5a6ae66572
stdlib@go1.17.6
1.20.8
traefik/mesh:v1.4.8cf071f3e165c
stdlib@go1.19
1.20.8

Open the chart page →

9,257
argocdtwomartensVerified publisher0.1.12 of 3See more

argocd twomartens 0.1.1

2 of the 3 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.37.0f579d00721b0
stdlib@go1.19.6
1.20.8
quay.io/argoproj/argocd:v2.8.6acaf37352569
stdlib@go1.20.4
1.20.8

Open the chart page →

10,315
vouchvouchVerified publisher3.2.01 of 1See more

vouch vouch 3.2.0

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
quay.io/vouch/vouch-proxy:0.39d34e220de3cf
stdlib@go1.18.10
1.20.8

Open the chart page →

1,031
vsphere-cpivsphere-tmm1.6.01 of 1See more

vsphere-cpi vsphere-tmm 1.6.0

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.28.0026f63d9ed42
stdlib@go1.20.7
1.20.8

Open the chart page →

1,344
gethvulcanlink1.10.231 of 1See more

geth vulcanlink 1.10.23

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.23cce21b423165
stdlib@go1.18.5
1.20.8

Open the chart page →

2,245
minio-operatorwenerme4.3.71 of 2See more

minio-operator wenerme 4.3.7

1 of the 2 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
stdlib@go1.17.4
1.20.8

Open the chart page →

6,085
wharf-helmwharf-helmOfficialVerified publisher3.2.64 of 5See more

wharf-helm wharf-helm 3.2.6

4 of the 5 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
stdlib@go1.18.1
1.20.8
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
stdlib@go1.18.2
1.20.8
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
stdlib@go1.18.2
1.20.8
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
stdlib@go1.18.2
1.20.8

Open the chart page →

10,032
keycloak-operatorwiremindVerified publisher0.0.141 of 1See more

keycloak-operator wiremind 0.0.14

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
stdlib@go1.13.8
1.20.8

Open the chart page →

4,714
yataiyataiVerified publisher0.4.61 of 2See more

yatai yatai 0.4.6

1 of the 2 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
quay.io/bentoml/yatai:0.4.614b482c1f1b8
stdlib@go1.18.4
1.20.8

Open the chart page →

4,039
agentareaagentareaVerified publisher0.0.181 of 16See more

agentarea agentarea 0.0.18

1 of the 16 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
agentarea/agentarea-mcp-runner:latestd3c209a5d531
stdlib@go1.19.8
1.20.8

Open the chart page →

14,914
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
stdlib@go1.18.1
1.20.8

Open the chart page →

12,046
clearml-servingallegroaiVerified publisher1.6.26 of 9See more

clearml-serving allegroai 1.6.2

6 of the 9 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:3.4.0-debian-11-r6ac64829e45b3
stdlib@go1.19.6
1.20.8
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
stdlib@go1.18.2
1.20.8
grafana/grafana:9.4.376dcf36e7d2a
stdlib@go1.19.4
1.20.8
jimmidyson/configmap-reload:v0.8.05af9d3041d12
stdlib@go1.19.2
1.20.8
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.20.8
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
stdlib@go1.19.4
1.20.8

Open the chart page →

17,877
pact-brokeralmorgvVerified publisher0.1.01 of 1See more

pact-broker almorgv 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.79.1.112861b0bd4d9
stdlib@go1.14.4
1.20.8

Open the chart page →

4,995
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
stdlib@go1.16.7
1.20.8

Open the chart page →

8,341
soft-servealphani-helm-chartsVerified publisher0.4.01 of 1See more

soft-serve alphani-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
charmcli/soft-serve:v0.4.039523c1a6ba8
stdlib@go1.18.5
1.20.8

Open the chart page →

3,119
smockerandrcunsVerified publisher0.0.41 of 1See more

smocker andrcuns 0.0.4

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
andrcuns/smocker:0.18.5b4a8eb20581a
stdlib@go1.18.10
1.20.8

Open the chart page →

2,173
upcloud-csiankra-chartsVerified publisher0.4.07 of 8See more

upcloud-csi ankra-charts 0.4.0

7 of the 8 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
alpine/k8s:1.31.137a319b15cfc9
stdlib@go1.20.4
1.20.8
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
stdlib@go1.17.3
1.20.8
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
stdlib@go1.17.3
1.20.8
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
stdlib@go1.17.3
1.20.8
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
stdlib@go1.17.3
1.20.8
registry.k8s.io/sig-storage/csi-snapshotter:v4.2.1818f35653f2e
stdlib@go1.16.2
1.20.8
registry.k8s.io/sig-storage/snapshot-controller:v4.2.195587f8777d7
stdlib@go1.16.2
1.20.8

Open the chart page →

14,917
annotations-exporterannotations-exporter0.5.01 of 1See more

annotations-exporter annotations-exporter 0.5.0

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ghcr.io/alex123012/annotations-exporter:v0.5.04c2b8dbc798e
stdlib@go1.19.3
1.20.8

Open the chart page →

1,149
anteonanteonVerified publisher2.6.44 of 13See more

anteon anteon 2.6.4

4 of the 13 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ddosify/selfhosted_hammer:2.0.0181965edb12e
stdlib@go1.18.1
1.20.8
library/influxdb:2.6.1-alpine44a366dd7724
stdlib@go1.19.4
1.20.8
library/redis:7.2.4-alpinec8bb255c3559
stdlib@go1.18.2
1.20.8
prom/prometheus:v2.37.98176adea328e
stdlib@go1.19.11
1.20.8

Open the chart page →

22,202
gateway-helmappscodeVerified publisher0.0.0-latest1 of 2See more

gateway-helm appscode 0.0.0-latest

1 of the 2 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/gateway:v0.0.1a8a144f14889
stdlib@go1.20.5
1.20.8

Open the chart page →

1,057
scannerappscodeVerified publisher2026.1.151 of 3See more

scanner appscode 2026.1.15

1 of the 3 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ghcr.io/appscode/trivydb:0.0.367ffb0309acb
stdlib@go1.20.2
1.20.8

Open the chart page →

5,299
stash-enterpriseappscodeVerified publisher0.42.01 of 4See more

stash-enterprise appscode 0.42.0

1 of the 4 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.20.8

Open the chart page →

3,620
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
stdlib@go1.17.6
1.20.8

Open the chart page →

5,222
cert-exporterarzu3.0.11 of 1See more

cert-exporter arzu 3.0.1

1 of the 1 container images this version deploys carry CVE-2023-39318.

Container imageDigestPackageFixed in
joeelliott/cert-exporter:v2.7.0b4acd14642d0
stdlib@go1.14.15
1.20.8

Open the chart page →

2,819

Container images carrying it

2,056 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
devopstales/trivy-operator:2.575136aa7a26e
stdlib@go1.18.10
1.20.8
1
devspacecloud/manager:0.3.349c397413f7b
stdlib@go1.13.8
1.20.8
1
deyaeddin/cert-manager-webhook-hetzner:latest797b0d06210a
stdlib@go1.16.7
1.20.8
1
digitalocean/do-operator:v0.1.65e5deb4db76e
stdlib@go1.18.10
1.20.8
1
dipugodocker/pdf-editor:1.0-backend-rotate316e203b8bf5
stdlib@go1.18.7
1.20.8
1
dipugodocker/pdf-editor:1.0-backend-merge70b07544a604
stdlib@go1.18.7
1.20.8
1
dirathea/pipelinewise-operator:v0.5.08d4c9f773ae1
stdlib@go1.15.8
1.20.8
1
directus/directus:11.1.0e3c8bb975350
stdlib@go1.20.7
1.20.8
1
dnsforge/xteve:latest4d9a685c8c28
stdlib@go1.16.2
1.20.8
1
dobtc/bitcoin:25.1a870f7cb1105
stdlib@go1.19.8
1.20.8
1
dockerdaemon0901/rolldice:v14e5bfe179c7e
stdlib@go1.21.0
1.20.8
1
dollarshaveclub/furan2:master14a257836529
stdlib@go1.17.2
1.20.8
1
dollarshaveclub/thermite:0.0.31663cbf25fcfe
stdlib@go1.17.1
1.20.8
1
dongjiang1989/cosign-webhook:v1.1.02a3ead6a55dc
stdlib@go1.19.12
1.20.8
1
dongjiang1989/cpusets-controller:v1.1.1dc5bd483874c
stdlib@go1.19.10
1.20.8
1
dongjiang1989/cpusets-device-plugin:v1.1.1923085c65123
stdlib@go1.19.10
1.20.8
1
dongjiang1989/crane-scheduler-controller:mainf0055c05dbee
stdlib@go1.19.9
1.20.8
1
dongjiang1989/ns-node-affinity:latest451f7823723c
stdlib@go1.18.5
1.20.8
1
dossif/redminebot:0.2.296dcd2c0e9f2
stdlib@go1.17.13
1.20.8
1
douz/overlord:latestf2bc7fc068c1
stdlib@go1.14.5
1.20.8
1
drone/drone-runner-docker:1.8.1137e79c5e23c
stdlib@go1.16.15
1.20.8
1
drone/kubernetes-secrets:latest206df2280ecf
stdlib@go1.13.15
1.20.8
1
drumsergio/duplicacy-container:0.1.0dd3ee9703969
stdlib@go1.21.0
1.20.8
1
drumsergio/genieacs:1.2.16.028244054e1bf
stdlib@go1.19.8
1.20.8
1
dserio83/velero-api:0.3.16b3d9115fee2
stdlib@go1.19.8
1.20.8
1
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
stdlib@go1.19.6
1.20.8
1
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
stdlib@go1.14.4
1.20.8
1
duyetdev/applause-btn:latest25e59d223eaa
stdlib@go1.14.9
1.20.8
1
dysnix/gke-upgrade-notification-handler:latestc166f958f86a
stdlib@go1.17.7
1.20.8
1
easysoft/quickon-zentao:18.5592ad5df1f8b
stdlib@go1.20.3
1.20.8
1
ebrianne/cert-manager-webhook-duckdns:v1.2.39cd17700c9ec
stdlib@go1.15.13
1.20.8
1
ecadlabs/tezos_exporter:latest4bcbe5d1cdd2
stdlib@go1.16.5
1.20.8
1
eclipseaerios/openldap:2.6.30208743f315e
stdlib@go1.18.2
1.20.8
1
ekofr/pihole-exporter:0.0.109fdad6f352e0
stdlib@go1.14.7
1.20.8
1
elastic/apm-server:7.17.6c7a1c63257d0
stdlib@go1.18.2
1.20.8
1
elastisys/kube-bench-metrics:0.1.6509b94f1da55
stdlib@go1.15.7
1.20.8
1
empathyco/cost-report:0.0.124f1e26eaacbf
stdlib@go1.15.15
1.20.8
1
emqx/edge-operator-controller:0.0.553865c1267d9
stdlib@go1.19.10
1.20.8
1
engrmth/bnkr:2.1.06d8464e6f0e8
stdlib@go1.15.8
1.20.8
1
enix/san-iscsi-csi:v4.0.2f963da81ecf7
stdlib@go1.16.8
1.20.8
1
enketo/enketo-express:3.0.4dcad9c2273f6
stdlib@go1.17.1
1.20.8
1
envoyproxy/gateway:v0.5.02a9f99d28567
stdlib@go1.20.6
1.20.8
1
envoyproxy/ratelimit:v1.4.071081616da3e
stdlib@go1.14
1.20.8
1
envoyproxy/ratelimit:6f5de117b6cb6e16f8c9
stdlib@go1.14.13
1.20.8
1
envoyproxy/ratelimit:4d2efd61ede09a75a84c
stdlib@go1.14.15
1.20.8
1
epamedp/admin-console-operator:2.14.090f9921d8d58
stdlib@go1.19.6
1.20.8
1
epamedp/codebase-operator:2.12.0-MDTU-DDM-SNAPSHOT.1096028c86f0dd
stdlib@go1.17.2
1.20.8
1
epamedp/edp-admin-console:2.14.0616c678ba3e7
stdlib@go1.18.3
1.20.8
1
epamedp/edp-argocd-operator:0.2.0976a662a5e72
stdlib@go1.18.4
1.20.8
1
epamedp/edp-tekton:0.2.4924939850655
stdlib@go1.18.3
1.20.8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.