StackRadar

CVE-2024-34156

High

Advisory

Published 6 Sept 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,342
of 17,805 indexed, latest versions
Container images
2,781
deployed by those charts
Fix available
9 of 10
affected packages

Red Hat Security Advisory: skopeo security update

Carried by container images the latest versions of 2,342 of 17,805 indexed charts deploy, on 2,781 images.

Affected packageAffected versionsFixed inImages
skopeorpm2:1.11.2-0.1.el9, 2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.11.2-0.3.module+el8.8.0+22332+2132e5c3, 2:1.16.1-2.el9_52
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-66.module+el8.8.0+22332+2132e5c31
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.15-4.module+el8.8.0+22332+2132e5c31
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.11-1.module+el8.8.0+22332+2132e5c31
git-lfsrpm2.13.3-3.el8_60:3.4.1-3.el8_101
golang-1.19deb1.19.8-2no fix listed1
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-1.module+el8.8.0+22332+2132e5c31
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-1.module+el8.8.0+22332+2132e5c31
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.0-3.module+el8.8.0+22332+2132e5c31
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+135 more1.22.72,781
OSV records
DEBIAN-CVE-2024-34156RHSA-2024:11217RHSA-2024:7135RHSA-2024:7769GO-2024-3106
Also known as
BIT-golang-2024-34156, RHSA-2024:7455, RHSA-2024:7821, RHSA-2024:8111

Charts affected

2,342 by stars
ChartLatestAffected imagesRadar Score
sealed-secretssoftonic2.6.91 of 1See more

sealed-secrets softonic 2.6.9

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
bitnami/sealed-secrets-controller:v0.18.50516f987fae2
stdlib@go1.18.6
1.22.7

Open the chart page →

1,516
trivy-operatorsoftonic0.18.01 of 1See more

trivy-operator softonic 0.18.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
stdlib@go1.20.4
1.22.7

Open the chart page →

2,514
webhook-receiversoftonic2.1.11 of 1See more

webhook-receiver softonic 2.1.1

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
almir/webhook:2.8.01698346f6077
stdlib@go1.14.7
1.22.7

Open the chart page →

1,927
gloo-meshsolo-gloo-mesh1.1.21 of 1See more

gloo-mesh solo-gloo-mesh 1.1.2

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
stdlib@go1.16.3
1.22.7

Open the chart page →

3,267
redis-high-availabilitysomeblackmagic1.3.102 of 3See more

redis-high-availability someblackmagic 1.3.10

2 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
bitnamilegacy/redis:7.0.8-debian-11-r0bf01d031ba8c
stdlib@go1.18.2
1.22.7
haproxytech/haproxy-alpine:2.9.57f3dc8c7e031
stdlib@go1.22.0
1.22.7

Open the chart page →

3,148
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
stdlib@go1.18.2
1.22.7

Open the chart page →

97,304
spire-identity-exchangespiffeVerified publisher0.2.21 of 3See more

spire-identity-exchange spiffe 0.2.2

1 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.31.099b37df34bc4
stdlib@go1.22.5
1.22.7

Open the chart page →

1,442
spinnakerspinnakerVerified publisher2.2.132 of 4See more

spinnaker spinnaker 2.2.13

2 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
stdlib@go1.15.5
1.22.7
minio/minio:RELEASE.2020-01-03T19-12-21Zf00aa6ef2b72
stdlib@go1.13.5
1.22.7

Open the chart page →

6,877
spoolmanspoolmanVerified publisher0.2.61 of 1See more

spoolman spoolman 0.2.6

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
stdlib@go1.19.8
1.22.7

Open the chart page →

1,823
ocean-vpaspot1.0.71 of 4See more

ocean-vpa spot 1.0.7

1 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.136d05b4077fb
stdlib@go1.22.2
1.22.7

Open the chart page →

1,195
spotinst-ocean-network-clientspot1.0.01 of 1See more

spotinst-ocean-network-client spot 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
stdlib@go1.16.5
1.22.7

Open the chart page →

61,788
ambassador-manifestssqream-chartsVerified publisher0.6.31 of 1See more

ambassador-manifests sqream-charts 0.6.3

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
datawire/aes:3.11.195ec30b3c732
stdlib@go1.22.4
1.22.7

Open the chart page →

2,425
servicexssl-hep1.8.51 of 16See more

servicex ssl-hep 1.8.5

1 of the 16 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2022.12.12-debian-11-r90f7c8ac484ac
stdlib@go1.18.9
1.22.7

Open the chart page →

68,698
ecr-cleanersstarcher0.1.1+d13a1ab1 of 1See more

ecr-cleaner sstarcher 0.1.1+d13a1ab

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
sstarcher/ecr-cleaner:0.1.12d43c390cb19
stdlib@go1.14.2
1.22.7

Open the chart page →

2,576
kube-ebs-taggersstarcher0.1.0+7abf4f71 of 1See more

kube-ebs-tagger sstarcher 0.1.0+7abf4f7

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
sstarcher/kube-ebs-tagger:0.1.01f8cae8cfa80
stdlib@go1.13.9
1.22.7

Open the chart page →

3,097
prestashopstack-prestahop22.0.01 of 4See more

prestashop stack-prestahop 22.0.0

1 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.23.086e8449ff8ff
stdlib@go1.18.3
1.22.7

Open the chart page →

3,075
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
stdlib@go1.16.6
1.22.7

Open the chart page →

28,532
external-secretsstakaterVerified publisher0.3.12-40dbdfc1 of 1See more

external-secrets stakater 0.3.12-40dbdfc

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v0.3.1156a1ea4490ba
stdlib@go1.17.5
1.22.7

Open the chart page →

2,089
k8scostoptimizerstakaterVerified publisher0.0.51 of 1See more

k8scostoptimizer stakater 0.0.5

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
stakater/k8s-cost-optimizer:v0.0.5450415ce1b4e
stdlib@go1.17.8
1.22.7

Open the chart page →

1,409
konfiguratorstakaterVerified publisher0.1.391 of 1See more

konfigurator stakater 0.1.39

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
stakater/konfigurator:v0.1.393409565b1ef5
stdlib@go1.17.13
1.22.7

Open the chart page →

1,279
proxyinjectorstakaterVerified publisher0.0.231 of 1See more

proxyinjector stakater 0.0.23

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.22.7

Open the chart page →

2,854
tronadorstakaterVerified publisher0.0.11 of 1See more

tronador stakater 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
stakater/tronador:v0.0.137ce9acf2722
stdlib@go1.15.11
1.22.7

Open the chart page →

2,174
vaultstakaterVerified publisher0.8.42 of 2See more

vault stakater 0.8.4

2 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.4dfc3500beb0e
stdlib@go1.16.7
1.22.7
hashicorp/vault-k8s:0.14.0aff47b5ba39c
stdlib@go1.17.2
1.22.7

Open the chart page →

5,872
whitelisterstakaterVerified publisher0.0.161 of 1See more

whitelister stakater 0.0.16

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
stakater/whitelister:v0.0.1639107924063e
stdlib@go1.13.1
1.22.7

Open the chart page →

2,565
workshop-operatorstakaterVerified publisher0.0.381 of 2See more

workshop-operator stakater 0.0.38

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
stakater/workshop-operator:v0.0.3897bf456cc97c
stdlib@go1.16.13
1.22.7

Open the chart page →

6,679
stakefishstakefish0.1.06 of 8See more

stakefish stakefish 0.1.0

6 of the 8 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
prom/prometheus:v2.52.05c435642ca4d
stdlib@go1.22.3
1.22.7
quay.io/prometheus-operator/prometheus-config-reloader:v0.73.2706cde441321
stdlib@go1.22.2
1.22.7
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
stdlib@go1.21.7
1.22.7
quay.io/prometheus/node-exporter:v1.8.08a57af80a4c7
stdlib@go1.22.2
1.22.7
quay.io/prometheus/pushgateway:v1.8.0c159e946abf4
stdlib@go1.22.1
1.22.7
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.12.0b401fae262a5
stdlib@go1.21.8
1.22.7

Open the chart page →

20,351
ipfsstakewise2.2.01 of 2See more

ipfs stakewise 2.2.0

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ipfs/kubo:v0.33.21a30f5ed8579
stdlib@go1.19.8
1.22.7

Open the chart page →

1,262
lodestar-validatorstakewise1.2.01 of 1See more

lodestar-validator stakewise 1.2.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
chainsafe/lodestar:v1.27.07b9fe4aa8073
stdlib@go1.20.12
1.22.7

Open the chart page →

4,110
mev-booststakewise1.7.41 of 1See more

mev-boost stakewise 1.7.4

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
flashbots/mev-boost:1.8.07c486b5789da
stdlib@go1.22.6
1.22.7

Open the chart page →

1,260
operatorstakewise2.1.11 of 5See more

operator stakewise 2.1.1

1 of the 5 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.15d99fbb9585c7
stdlib@go1.17.5
1.22.7

Open the chart page →

6,601
v3-backendstakewise3.6.01 of 5See more

v3-backend stakewise 3.6.0

1 of the 5 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ipfs/kubo:v0.33.21a30f5ed8579
stdlib@go1.19.8
1.22.7

Open the chart page →

1,262
open-appsec-injectorstartechnicaVerified publisher1.1.22 of 3See more

open-appsec-injector startechnica 1.1.2

2 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/openappsec/smartsync:latest580d68c50cc7
stdlib@go1.18.10
1.22.7
ghcr.io/openappsec/smartsync-shared-files:latest30c1daa0b33e
stdlib@go1.18.10
1.22.7

Open the chart page →

4,354
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
stdlib@go1.18
1.22.7

Open the chart page →

14,619
argocd-operatorstatcan0.5.01 of 1See more

argocd-operator statcan 0.5.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/argocd-operator:v0.4.0cf8faa986789
stdlib@go1.18.4
1.22.7

Open the chart page →

1,985
cost-analyzerstatcan1.82.24 of 9See more

cost-analyzer statcan 1.82.2

4 of the 9 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
grafana/grafana:7.5.609bb407e26ab
stdlib@go1.16.1
1.22.7
prom/prometheus:v2.22.2f7ffebdd428b
stdlib@go1.15.5
1.22.7
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
stdlib@go1.16.5
1.22.7
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
stdlib@go1.16.5
1.22.7

Open the chart page →

16,539
fluentd-operatorstatcan0.5.11 of 1See more

fluentd-operator statcan 0.5.1

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
vmware/kube-fluentd-operator:latestf028c138a5f4
stdlib@go1.21.7
1.22.7

Open the chart page →

1,960
ingress-istio-controllerstatcan1.4.01 of 1See more

ingress-istio-controller statcan 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
statcan/ingress-istio-controller:1.4.0d7d6bd180c46
stdlib@go1.18.10
1.22.7

Open the chart page →

1,584
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
stdlib@go1.16.3
1.22.7

Open the chart page →

6,597
prometheus-operatorstatcan0.2.24 of 7See more

prometheus-operator statcan 0.2.2

4 of the 7 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.22.7
jettech/kube-webhook-certgen:v1.2.1c42098c8d855
stdlib@go1.13.11
1.22.7
squareup/ghostunnel:v1.5.270f4cf270425
stdlib@go1.13.4
1.22.7
quay.io/prometheus/node-exporter:v1.0.08a3a33cad0bd
stdlib@go1.14.3
1.22.7

Open the chart page →

12,252
sidecar-terminatorstatcan1.3.51 of 1See more

sidecar-terminator statcan 1.3.5

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
statcan/kubernetes-sidecar-terminator:2.0.2bc361ee7748f
stdlib@go1.19.10
1.22.7

Open the chart page →

1,316
starboard-operatorstatcan0.10.41 of 1See more

starboard-operator statcan 0.10.4

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
aquasec/starboard-operator:0.15.4be34f709e1ce
stdlib@go1.17.8
1.22.7

Open the chart page →

1,827
vaultstatcan0.1.81 of 2See more

vault statcan 0.1.8

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
hashicorp/vault-k8s:0.6.05697b85bc69a
stdlib@go1.13.5
1.22.7

Open the chart page →

4,223
static-src-people-detector-appstatic-src-people-detector-chartVerified publisher1.5.51 of 6See more

static-src-people-detector-app static-src-people-detector-chart 1.5.5

1 of the 6 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
library/mongo:4.4.18d23ec07162ca
stdlib@go1.17.10
1.22.7

Open the chart page →

13,669
sn-platform-slimstreamnative1.11.443 of 6See more

sn-platform-slim streamnative 1.11.44

3 of the 6 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.8.05af9d3041d12
stdlib@go1.19.2
1.22.7
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
stdlib@go1.20.4
1.22.7
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
stdlib@go1.19.7
1.22.7

Open the chart page →

62,314
stunner-prometheusstunner0.2.12 of 4See more

stunner-prometheus stunner 0.2.1

2 of the 4 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.18.1e6a323504999
stdlib@go1.23.0
1.22.7
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.22.7

Open the chart page →

3,064
orchestratorsubstraVerified publisher8.8.01 of 3See more

orchestrator substra 8.8.0

1 of the 3 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
stdlib@go1.21.13
1.22.7

Open the chart page →

3,058
lingosubstratusVerified publisher0.2.11 of 1See more

lingo substratus 0.2.1

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/substratusai/lingo:v0.2.12c807cd41ed4
stdlib@go1.22.5
1.22.7

Open the chart page →

1,596
scaleway-webhooksudaVerified publisher0.0.21 of 1See more

scaleway-webhook suda 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
stdlib@go1.15.2
1.22.7

Open the chart page →

2,354
nocodbsudermanjr0.1.01 of 1See more

nocodb sudermanjr 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
nocodb/nocodb:0.84.15f9b799933aa8
stdlib@go1.17.8
1.22.7

Open the chart page →

2,071
qbittorrentsudo-kraken-qbittorrentVerified publisher5.1.51 of 2See more

qbittorrent sudo-kraken-qbittorrent 5.1.5

1 of the 2 container images this version deploys carry CVE-2024-34156.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:36bfc606bba2064de6ede0ff2764cbb52edff70dba6f0b4cf6c8
stdlib@go1.20.2
1.22.7

Open the chart page →

2,130

Container images carrying it

2,781 by charts deploying them

A fixed version is listed for 9 of the 10 affected packages.

Container imageDigestPackageFixed inUsed by
zufardhiyaulhaq/community-operator-v2:v1.0.07f1bbbe114eb
stdlib@go1.17.12
1.22.7
1
zufardhiyaulhaq/devopsweekly:v2.1.046625567fb60
stdlib@go1.17.13
1.22.7
1
zufardhiyaulhaq/goweekly:v2.0.008dcc130fbea
stdlib@go1.17.12
1.22.7
1
zufardhiyaulhaq/istio-ratelimit-operator:v2.15.0692cfc9d6614
stdlib@go1.19.13
1.22.7
1
zufardhiyaulhaq/javascriptweekly:v2.1.086424bd0b2a4
stdlib@go1.17.13
1.22.7
1
zufardhiyaulhaq/kubernetesweekly:v2.1.0a287ada277c6
stdlib@go1.16.15
1.22.7
1
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
stdlib@go1.16.15
1.22.7
1
zufardhiyaulhaq/nodejsweekly:v1.1.0306859a3f167
stdlib@go1.16.15
1.22.7
1
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
stdlib@go1.13.15
1.22.7
1
gcr.io/cadvisor/cadvisor:v0.47.2e6c562b5e983
stdlib@go1.19.9
1.22.7
1
gcr.io/cloudsql-docker/gce-proxy:1.17a85176b8e7cc
stdlib@go1.13.5
1.22.7
1
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
stdlib@go1.13.14
1.22.7
1
gcr.io/gke-release/custom-metrics-stackdriver-adapter:v0.13.1-gke.06937c0a9b203
stdlib@go1.19.3
1.22.7
1
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
stdlib@go1.16.3
1.22.7
1
gcr.io/google-samples/microservices-demo/cartservice:v0.2.3566733b4d2d5
stdlib@go1.15.6
1.22.7
1
gcr.io/google-samples/microservices-demo/checkoutservice:v0.2.30fad1066de77
stdlib@go1.15.10
1.22.7
1
gcr.io/google-samples/microservices-demo/currencyservice:v0.2.349d458a3650f
stdlib@go1.15.6
1.22.7
1
gcr.io/google-samples/microservices-demo/frontend:v0.2.3ca5c0f0771c8
stdlib@go1.15.10
1.22.7
1
gcr.io/google-samples/microservices-demo/paymentservice:v0.2.36eb201217a8f
stdlib@go1.15.6
1.22.7
1
gcr.io/google-samples/microservices-demo/productcatalogservice:v0.2.35a4a0e54c6d0
stdlib@go1.15.10
1.22.7
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
stdlib@go1.15.6
1.22.7
1
gcr.io/google-samples/microservices-demo/shippingservice:v0.2.30cb1707fc503
stdlib@go1.15.6
1.22.7
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
stdlib@go1.16.7
1.22.7
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
stdlib@go1.16.7
1.22.7
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
stdlib@go1.22.5
1.22.7
1
gcr.io/k8s-staging-multitenancy/hnc-manager:v1.1.08ab8229f6a89
stdlib@go1.20.5
1.22.7
1
gcr.io/k8s-staging-sig-storage/objectstorage-controller:v20221027-v0.1.1-8-g300019fa84b574e8027
stdlib@go1.18.3
1.22.7
1
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhook873b968f02b5
stdlib@go1.14.2
1.22.7
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
stdlib@go1.21.5
1.22.7
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.2.0f253b82941c2
stdlib@go1.17.6
1.22.7
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.2.0a705c1ea8e9e
stdlib@go1.17.6
1.22.7
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
stdlib@go1.21.5
1.22.7
1
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourier197fbb71d1f1
stdlib@go1.18.3
1.22.7
1
gcr.io/knative-releases/knative.dev/operator/cmd/webhook6c5c90cdf707
stdlib@go1.19.5
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator08315309da4b
stdlib@go1.18.3
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator1e3db4f2eeed
stdlib@go1.14.10
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.13.121f8e11a44bf
stdlib@go1.21.5
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.2.593ff6e693577
stdlib@go1.17.8
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/activatora5de0fb75046
stdlib@go1.14.2
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.10.2c2994c2b6c2c
stdlib@go1.20.4
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.2.5007820fdb75b
stdlib@go1.17.8
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler105bdd14ecaa
stdlib@go1.18.3
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler2ef460356b17
stdlib@go1.14.2
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.13.134796e9f760b
stdlib@go1.21.5
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.10.28319aa662b49
stdlib@go1.20.4
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdb6ceff2aab4
stdlib@go1.14.10
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler-hpa:v1.10.2eb612b929eaa
stdlib@go1.20.4
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller30ce73388ae5
stdlib@go1.14.2
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.13.153d9aa4d2c7a
stdlib@go1.21.5
1.22.7
1
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.2.575cfdcfa050a
stdlib@go1.17.8
1.22.7
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.