StackRadar

CVE-2023-39326

Medium

Advisory

Published 6 Dec 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.012
67th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,964
of 17,821 indexed, latest versions
Container images
2,260
deployed by those charts
Fix available
2 of 3
affected packages

Red Hat Security Advisory: skopeo security update

Carried by container images the latest versions of 1,964 of 17,821 indexed charts deploy, on 2,260 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
skopeorpm2:1.11.2-0.1.el92:1.13.3-4.el9_31
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+115 more1.20.122,260
OSV records
DEBIAN-CVE-2023-39326RHSA-2024:1149GO-2023-2382
Also known as
BIT-golang-2023-39326

Charts affected

1,964 by stars
ChartLatestAffected imagesRadar Score
applause-btnduyet0.1.31 of 1See more

applause-btn duyet 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
duyetdev/applause-btn:latest25e59d223eaa
stdlib@go1.14.9
1.20.12

Open the chart page →

2,638
commentoduyet0.2.01 of 2See more

commento duyet 0.2.0

1 of the 2 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
registry.gitlab.com/commento/commento:v1.8.0e0ab1fc86761
stdlib@go1.14.2
1.20.12

Open the chart page →

2,680
ai-scale-authdysnixVerified publisher0.1.12 of 3See more

ai-scale-auth dysnix 0.1.1

2 of the 3 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
alex6021710/ai-scale-auth:latest6c7a47e470c3
stdlib@go1.16.12
1.20.12
alex6021710/ai-scale-migrator:latest744b8a924f35
stdlib@go1.17.2
1.20.12

Open the chart page →

6,157
ai-scale-doerdysnixVerified publisher0.1.01 of 1See more

ai-scale-doer dysnix 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
alex6021710/ai-scale-doer:latest31e533cf7cd3
stdlib@go1.16.10
1.20.12

Open the chart page →

2,808
ai-scale-providerdysnixVerified publisher0.1.01 of 1See more

ai-scale-provider dysnix 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
alex6021710/ai-scale-provider:latest5837d9b30cc7
stdlib@go1.15.8
1.20.12

Open the chart page →

2,186
ai-scale-saverdysnixVerified publisher0.1.01 of 1See more

ai-scale-saver dysnix 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
alex6021710/ai-scale-saver:latestf73e8d60fd03
stdlib@go1.17
1.20.12

Open the chart page →

2,143
gke-upgrade-notification-handlerdysnixVerified publisher0.1.11 of 1See more

gke-upgrade-notification-handler dysnix 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
dysnix/gke-upgrade-notification-handler:latestc166f958f86a
stdlib@go1.17.7
1.20.12

Open the chart page →

2,097
grafana-dashboardsdysnixVerified publisher0.2.21 of 2See more

grafana-dashboards dysnix 0.2.2

1 of the 2 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
grafana/grafana:7.4.5d322192ed2fa
stdlib@go1.15.6
1.20.12

Open the chart page →

5,170
heimdalldysnixVerified publisher0.0.11 of 1See more

heimdall dysnix 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
0xpolygon/heimdall:1.0.134ddf259993c
stdlib@go1.20.5
1.20.12

Open the chart page →

1,374
local-path-provisionerdysnixVerified publisher0.0.201 of 1See more

local-path-provisioner dysnix 0.0.20

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.20d5999b20a1b1
stdlib@go1.16.6
1.20.12

Open the chart page →

2,926
pritunldysnixVerified publisher0.2.71 of 3See more

pritunl dysnix 0.2.7

1 of the 3 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
ghcr.io/dysnix/bitnami/mongodb:4.4.11-debian-10-r5073116e61007
stdlib@go1.16.12
1.20.12

Open the chart page →

5,058
servicemonitor-appsdysnixVerified publisher0.1.01 of 1See more

servicemonitor-apps dysnix 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
ethpandaops/ethereum-metrics-exporter:0.21.0d1780db2e286
stdlib@go1.18.10
1.20.12

Open the chart page →

1,579
eav-componenteav-component1.0.01 of 3See more

eav-component eav-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
stdlib@go1.13.10
1.20.12

Open the chart page →

7,267
echoappechoapp0.1.01 of 1See more

echoapp echoapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
hashicorp/http-echo:1.0.0fcb75f691c8b
stdlib@go1.21.1
1.20.12

Open the chart page →

550
idmeclipse-aeriosVerified publisher2.0.01 of 2See more

idm eclipse-aerios 2.0.0

1 of the 2 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
library/postgres:16.4e62fbf9d3e2b
stdlib@go1.18.2
1.20.12

Open the chart page →

4,690
iotaeclipse-aeriosVerified publisher1.0.21 of 4See more

iota eclipse-aerios 1.0.2

1 of the 4 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
iotaledger/inx-dashboard:1.012c669cb8748
stdlib@go1.21.1
1.20.12

Open the chart page →

13,756
llo-docker-operatoreclipse-aeriosVerified publisher1.0.01 of 2See more

llo-docker-operator eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.14.158d91a5faaf8
stdlib@go1.19.4
1.20.12

Open the chart page →

2,194
llo-k8seclipse-aeriosVerified publisher1.1.01 of 2See more

llo-k8s eclipse-aerios 1.1.0

1 of the 2 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.14.158d91a5faaf8
stdlib@go1.19.4
1.20.12

Open the chart page →

2,166
mintakaeclipse-aeriosVerified publisher1.0.01 of 2See more

mintaka eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
timescale/timescaledb-postgis:latest-pg127758704d4a14
stdlib@go1.14
1.20.12

Open the chart page →

11,487
openfaas2eclipse-aeriosVerified publisher12.0.51 of 6See more

openfaas2 eclipse-aerios 12.0.5

1 of the 6 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
library/nats-streaming:0.25.5ced93c701875
stdlib@go1.19.10
1.20.12

Open the chart page →

6,844
openldap-stack-haeclipse-aeriosVerified publisher4.1.21 of 4See more

openldap-stack-ha eclipse-aerios 4.1.2

1 of the 4 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
eclipseaerios/openldap:2.6.30208743f315e
stdlib@go1.18.2
1.20.12

Open the chart page →

7,539
orion-ldeclipse-aeriosVerified publisher1.0.01 of 2See more

orion-ld eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
library/mongo:7.0.12ae1cf99fa7bf
stdlib@go1.18.2
1.20.12

Open the chart page →

9,829
chartecr-toke-renew0.1.51 of 1See more

chart ecr-toke-renew 0.1.5

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
itzmanish/ecr-token-renew:latest02154d1c05b5
stdlib@go1.16.6
1.20.12

Open the chart page →

2,819
marblerun-coordinatoredgelesssysVerified publisher0.5.01 of 1See more

marblerun-coordinator edgelesssys 0.5.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
stdlib@go1.16.7
1.20.12

Open the chart page →

11,042
grafanaedu5.3.01 of 1See more

grafana edu 5.3.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.20.12

Open the chart page →

3,199
prometheusedu11.6.04 of 6See more

prometheus edu 11.6.0

4 of the 6 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.20.12
prom/prometheus:v2.19.0bfad037f95e5
stdlib@go1.14.4
1.20.12
prom/pushgateway:v1.2.00a9031142481
stdlib@go1.13.8
1.20.12
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.20.12

Open the chart page →

8,495
education-componenteducation-component1.0.01 of 3See more

education-component education-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
stdlib@go1.13.10
1.20.12

Open the chart page →

7,339
uptime-kumaegebackVerified publisher2.0.121 of 1See more

uptime-kuma egeback 2.0.12

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
stdlib@go1.20.5
1.20.12

Open the chart page →

30,832
eherkenning-uieherkenning-ui1.0.01 of 3See more

eherkenning-ui eherkenning-ui 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/eherkenning-ui-php:latestdeed102b4255
stdlib@go1.13.10
1.20.12

Open the chart page →

7,521
mongodb-charteks-3-tier-app-chart0.1.01 of 1See more

mongodb-chart eks-3-tier-app-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.20.12

Open the chart page →

8,069
seafileeleksbai0.1.11 of 3See more

seafile eleksbai 0.1.1

1 of the 3 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.106693911bcc40
stdlib@go1.19
1.20.12

Open the chart page →

92,653
Navidromeemmas-chartsVerified publisher0.0.41 of 1See more

Navidrome emmas-charts 0.0.4

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
deluan/navidrome:0.49.311a24da08977
stdlib@go1.19.5
1.20.12

Open the chart page →

2,838
parrot-mirroremmas-chartsVerified publisher1.0.01 of 1See more

parrot-mirror emmas-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
registry.gitlab.com/parrotsec/project/parrot-mirror-docker:mainf91b602ca572
stdlib@go1.21.0
1.20.12

Open the chart page →

2,261
cost-reportempathyco0.7.81 of 1See more

cost-report empathyco 0.7.8

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
empathyco/cost-report:0.0.124f1e26eaacbf
stdlib@go1.15.15
1.20.12

Open the chart page →

1,168
deadman-switchempathyco0.0.21 of 1See more

deadman-switch empathyco 0.0.2

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
gcr.io/pingcap-public/deadmansswitch:1.04861d81aa528
stdlib@go1.16.3
1.20.12

Open the chart page →

1,259
elasticsearch-umbrellaempathyco0.8.121 of 3See more

elasticsearch-umbrella empathyco 0.8.12

1 of the 3 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
prometheuscommunity/elasticsearch-exporter:v1.3.0fe735268fbdc
stdlib@go1.16.9
1.20.12

Open the chart page →

10,672
yace-exporterempathyco0.1.01 of 1See more

yace-exporter empathyco 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
ghcr.io/nerdswords/yet-another-cloudwatch-exporter:v0.32.0-alpha71e24278a049
stdlib@go1.17.3
1.20.12

Open the chart page →

1,642
edge-operatoremqx-operator0.0.51 of 1See more

edge-operator emqx-operator 0.0.5

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
emqx/edge-operator-controller:0.0.553865c1267d9
stdlib@go1.19.10
1.20.12

Open the chart page →

1,329
kube-ecp-stackemqx-operator2.5.11 of 16See more

kube-ecp-stack emqx-operator 2.5.1

1 of the 16 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
library/telegraf:1.27507a3eecf809
stdlib@go1.20.7
1.20.12

Open the chart page →

24,075
kube-packetloss-exporterenixVerified publisher0.2.11 of 2See more

kube-packetloss-exporter enix 0.2.1

1 of the 2 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
quay.io/superq/smokeping-prober:v0.7.125d07dfc1d7e
stdlib@go1.20.5
1.20.12

Open the chart page →

6,219
eoapi-supporteoapiVerified publisher0.1.75 of 7See more

eoapi-support eoapi 0.1.7

5 of the 7 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
stdlib@go1.20.6
1.20.12
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
stdlib@go1.20.6
1.20.12
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
stdlib@go1.21.0
1.20.12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
stdlib@go1.20.7
1.20.12
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.11.1e6a43c83ab16
stdlib@go1.20.4
1.20.12

Open the chart page →

8,697
backendeoc-chartsVerified publisher0.1.01 of 1See more

backend eoc-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
hashicorp/http-echo:latestfcb75f691c8b
stdlib@go1.21.1
1.20.12

Open the chart page →

550
mariadbeoc-chartsVerified publisher0.3.141 of 1See more

mariadb eoc-charts 0.3.14

1 of the 1 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
library/mariadb:10.6.15e22328f4d714
stdlib@go1.16.7
1.20.12

Open the chart page →

5,173
umbrella-appeoc-chartsVerified publisher0.1.01 of 3See more

umbrella-app eoc-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
hashicorp/http-echo:latestfcb75f691c8b
stdlib@go1.21.1
1.20.12

Open the chart page →

1,078
eolicplantseolicplantsVerified publisher0.1.01 of 7See more

eolicplants eolicplants 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
oscarsotosanchez/weatherservice:v1.0911ec961d10b
stdlib@go1.15.6
1.20.12

Open the chart page →

27,477
eoloPlanteolo-plannerVerified publisher0.1.01 of 7See more

eoloPlant eolo-planner 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
stdlib@go1.18.10
1.20.12

Open the chart page →

27,879
eoloplannereoloplannerVerified publisher0.1.03 of 7See more

eoloplanner eoloplanner 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.20.12
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.20.12
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.20.12

Open the chart page →

32,551
eoloPlannerCommunicationsKubernetes3eoloplannercommunicationskuberneteshelmVerified publisher0.1.01 of 7See more

eoloPlannerCommunicationsKubernetes3 eoloplannercommunicationskuberneteshelm 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
stdlib@go1.18.10
1.20.12

Open the chart page →

27,879
eoloplanner-mcaeoloplanner-mcaVerified publisher0.1.01 of 7See more

eoloplanner-mca eoloplanner-mca 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
oscarsotosanchez/weatherservice:v1.0911ec961d10b
stdlib@go1.15.6
1.20.12

Open the chart page →

27,442
eoloplannereoloplanner-molynx-gat0.1.03 of 7See more

eoloplanner eoloplanner-molynx-gat 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-39326.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.20.12
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.20.12
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.20.12

Open the chart page →

28,667

Container images carrying it

2,260 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/sig-storage/csi-snapshotter:v4.2.1818f35653f2e
stdlib@go1.16.2
1.20.12
1
registry.k8s.io/sig-storage/csi-snapshotter:v5.0.189e900a160a9
stdlib@go1.17.3
1.20.12
1
registry.k8s.io/sig-storage/hostpathplugin:v1.9.092257881c1d6
stdlib@go1.18
1.20.12
1
registry.k8s.io/sig-storage/livenessprobe:v2.9.02b10b24dafdc
stdlib@go1.19
1.20.12
1
registry.k8s.io/sig-storage/livenessprobe:v2.11.082adbebdf5d5
stdlib@go1.20.5
1.20.12
1
registry.k8s.io/sig-storage/nfs-subdir-external-provisioner:v4.0.03ce0fdba4d8e
stdlib@go1.15
1.20.12
1
registry.k8s.io/sig-storage/snapshot-controller:v4.2.195587f8777d7
stdlib@go1.16.2
1.20.12
1
registry.k8s.io/sig-storage/snapshot-controller:v6.2.198bab4eaf23c
stdlib@go1.19
1.20.12
1
registry.k8s.io/sig-storage/snapshot-controller:v6.3.1ce6ca3c0e30b
stdlib@go1.20.5
1.20.12
1
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
stdlib@go1.17.3
1.20.12
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.