StackRadar

CVE-2024-45338

Unscored

Advisory

Published 18 Dec 2024In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,887
of 17,790 indexed, latest versions
Container images
2,335
deployed by those charts
Fix available
1 of 1
affected package

Non-linear parsing of case-insensitive content in golang.org/x/net/html

Carried by container images the latest versions of 1,887 of 17,790 indexed charts deploy, on 2,335 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+198 more0.33.02,335
OSV records
GO-2024-3333
Also known as
GHSA-w32m-9786-jp63

Charts affected

1,887 by stars
ChartLatestAffected imagesRadar Score
cnpg-sandboxcloudnative-pgVerified publisher0.6.13 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

3 of the 6 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
grafana/grafana:8.3.5cd7cb4345aa7
golang.org/x/net@v0.0.0-20210903162142-ad29c8ab022f
0.33.0
ghcr.io/cloudnative-pg/cloudnative-pg:1.17.14dd365800b62
golang.org/x/net@v0.0.0-20221002022538-bcab6841153b
0.33.0
quay.io/prometheus-operator/prometheus-operator:v0.54.0be2aef39a2f8
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.33.0

Open the chart page →

7,597
cloudttycloudtty0.8.91 of 2See more

cloudtty cloudtty 0.8.9

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/cloudtty/cloudshell-operator:v0.8.9e43ad91f0684
golang.org/x/net@v0.25.0
0.33.0

Open the chart page →

3,985
istio-allcode4devsVerified publisher1.2.04 of 6See more

istio-all code4devs 1.2.0

4 of the 6 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
golang.org/x/net@v0.29.0
0.33.0
istio/pilot:1.24.2-distroless137e44e3d1d2
golang.org/x/net@v0.29.0
0.33.0
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
golang.org/x/net@v0.24.0
0.33.0
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
golang.org/x/net@v0.27.0
0.33.0

Open the chart page →

4,811
istio-control-planecode4devsVerified publisher1.0.02 of 3See more

istio-control-plane code4devs 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
golang.org/x/net@v0.29.0
0.33.0
istio/pilot:1.24.2-distroless137e44e3d1d2
golang.org/x/net@v0.29.0
0.33.0

Open the chart page →

2,373
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.33.0

Open the chart page →

7,313
cosmo-controller-managercosmoVerified publisher0.9.01 of 2See more

cosmo-controller-manager cosmo 0.9.0

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-controller-manager:v0.9.08c7fa5552028
golang.org/x/net@v0.10.0
0.33.0

Open the chart page →

1,926
cosmo-dashboardcosmoVerified publisher0.9.11 of 1See more

cosmo-dashboard cosmo 0.9.1

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-dashboard:v0.9.16a1c4a81a924
golang.org/x/net@v0.10.0
0.33.0

Open the chart page →

1,938
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.33.0

Open the chart page →

6,480
revadcs3orgOfficialVerified publisher1.6.11 of 1See more

revad cs3org 1.6.1

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
cs3org/revad:v1.24.0e80a4d67b352
golang.org/x/net@v0.7.0
0.33.0

Open the chart page →

1,711
cubefscubefs3.2.06 of 10See more

cubefs cubefs 3.2.0

6 of the 10 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
0.33.0
ghcr.io/cubefs/cfs-csi-driver:3.2.0.150.08723616a976a
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.33.0
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
golang.org/x/net@v0.0.0-20210825183410-e898025ed96a
0.33.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
golang.org/x/net@v0.0.0-20210825183410-e898025ed96a
0.33.0
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
0.33.0
registry.k8s.io/sig-storage/csi-resizer:v1.3.06e0546563b18
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
0.33.0

Open the chart page →

15,931
CubeUniversecubeuniverseVerified publisher0.1.01 of 1See more

CubeUniverse cubeuniverse 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
tksky1/cubeuniverse:0.1alphaec7b889f380f
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.33.0

Open the chart page →

1,837
extendeddaemonsetdatadogVerified publisher0.3.31 of 1See more

extendeddaemonset datadog 0.3.3

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
datadog/extendeddaemonset:v0.8.0513a4377aed5
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.33.0

Open the chart page →

4,759
datadogdatadog-test2.4.231 of 2See more

datadog datadog-test 2.4.23

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
datadog/agent:7.22.08f20e56b5311
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
0.33.0

Open the chart page →

4,570
dbrepodbrepo1.13.36 of 25See more

dbrepo dbrepo 1.13.3

6 of the 25 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
golang.org/x/net@v0.29.0
0.33.0
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
golang.org/x/net@v0.17.0
0.33.0
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
golang.org/x/net@v0.27.0
0.33.0
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
golang.org/x/net@v0.27.0
0.33.0
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
golang.org/x/net@v0.17.0
0.33.0
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
golang.org/x/net@v0.27.0
0.33.0

Open the chart page →

53,108
dregsydeliveryheroVerified publisher0.1.51 of 1See more

dregsy deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
xelalex/dregsy:0.4.3574054e1c417
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.33.0

Open the chart page →

2,977
labelsmanager-controllerdeliveryheroVerified publisher1.0.41 of 1See more

labelsmanager-controller deliveryhero 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
thomasnyambati/labelsmanager-controller:1.0.0148ae3f99fea
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.33.0

Open the chart page →

2,305
weblatedeliveryheroVerified publisher0.3.21 of 3See more

weblate deliveryhero 0.3.2

1 of the 3 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
0.33.0

Open the chart page →

7,987
permission-managerdevopstalesVerified publisher1.8.01 of 1See more

permission-manager devopstales 1.8.0

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.33.0

Open the chart page →

2,266
trivy-operatordevopstalesVerified publisher2.5.01 of 1See more

trivy-operator devopstales 2.5.0

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
devopstales/trivy-operator:2.575136aa7a26e
golang.org/x/net@v0.4.0
0.33.0

Open the chart page →

5,607
dnsmasqdevplayer0Verified publisher0.1.51 of 2See more

dnsmasq devplayer0 0.1.5

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
0.33.0

Open the chart page →

3,392
calicodevtron0.1.13 of 4See more

calico devtron 0.1.1

3 of the 4 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.33.0
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.33.0
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.33.0

Open the chart page →

10,094
clairdevtron0.1.141 of 2See more

clair devtron 0.1.14

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/net@v0.0.0-20210805182204-aaa1db679c0d
0.33.0

Open the chart page →

6,237
dex-serverdex-server1.19.11 of 3See more

dex-server dex-server 1.19.1

1 of the 3 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
dexidp/dex:v2.39.1-distroless43655afd1a8f
golang.org/x/net@v0.24.0
0.33.0

Open the chart page →

2,245
digispoof-interfacedigispoof-interface1.0.01 of 3See more

digispoof-interface digispoof-interface 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.33.0

Open the chart page →

7,788
dnation-pingdnationcloud0.1.93 of 5See more

dnation-ping dnationcloud 0.1.9

3 of the 5 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
grafana/grafana:7.3.5511bc20bfcd1
golang.org/x/net@v0.0.0-20201022231255-08b38378de70
0.33.0
prom/blackbox-exporter:v0.18.01ffc3f109eb3
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
0.33.0
prom/prometheus:v2.21.0d43417c260e5
golang.org/x/net@v0.0.0-20200822124328-c89045814202
0.33.0

Open the chart page →

10,469
docker-in-dockerdocker-in-docker0.0.31 of 2See more

docker-in-docker docker-in-docker 0.0.3

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
library/docker:24.0.2-dind1d148deae16a
golang.org/x/net@v0.8.0
0.33.0

Open the chart page →

2,585
dockyarddockyardVerified publisher0.4.01 of 1See more

dockyard dockyard 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/kgma74/dockyard:0.4.0b40439329191
golang.org/x/net@v0.29.0
0.33.0

Open the chart page →

1,551
thermitedollarshaveclubOfficialVerified publisher0.1.171 of 1See more

thermite dollarshaveclub 0.1.17

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
dollarshaveclub/thermite:0.0.31663cbf25fcfe
golang.org/x/net@v0.0.0-20210805182204-aaa1db679c0d
0.33.0

Open the chart page →

2,739
archerydoubanVerified publisher0.4.32 of 6See more

archery douban 0.4.3

2 of the 6 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
hanchuanchuan/goinception:latestb3c0dd26fb50
golang.org/x/net@v0.23.0
0.33.0
hhyo/archery:v1.9.11aa41843419e
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.33.0

Open the chart page →

5,861
karmadoubanVerified publisher1.9.21 of 1See more

karma douban 1.9.2

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/prymitive/karma:v0.85d06892218680
golang.org/x/net@v0.0.0-20210503060351-7fd8e65b6420
0.33.0

Open the chart page →

2,017
dragonfly-stackdragonflyVerified publisher0.1.24 of 7See more

dragonfly-stack dragonfly 0.1.2

4 of the 7 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
golang.org/x/net@v0.19.0
0.33.0
dragonflyoss/manager:v2.1.49c3ef7f10698d
golang.org/x/net@v0.19.0
0.33.0
dragonflyoss/scheduler:v2.1.49523785c77787
golang.org/x/net@v0.19.0
0.33.0
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
golang.org/x/net@v0.8.0
0.33.0

Open the chart page →

18,480
nydus-snapshotterdragonflyVerified publisher0.0.101 of 2See more

nydus-snapshotter dragonfly 0.0.10

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
golang.org/x/net@v0.8.0
0.33.0

Open the chart page →

3,668
gethdysnixVerified publisher1.1.21 of 1See more

geth dysnix 1.1.2

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ethereum/client-go:v1.14.8886ec69b35b0
golang.org/x/net@v0.24.0
0.33.0

Open the chart page →

1,625
glideeinstackOfficialVerified publisher0.0.21 of 1See more

glide einstack 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/einstack/glide:0.0.1-alpineab3f7d0a1d50
golang.org/x/net@v0.19.0
0.33.0

Open the chart page →

1,335
elchi-discoveryelchi1.0.01 of 1See more

elchi-discovery elchi 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
jhonbrownn/elchi-discovery:latest8f6551ecc98c
golang.org/x/net@v0.13.0
0.33.0

Open the chart page →

638
elchi-stackelchi1.13.02 of 10See more

elchi-stack elchi 1.13.0

2 of the 10 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.89.0995f17004231
golang.org/x/net@v0.18.0
0.33.0
victoriametrics/victoria-metrics:v1.93.577a9815d0640
golang.org/x/net@v0.15.0
0.33.0

Open the chart page →

15,540
navidromeemmas-chartsVerified publisher0.0.61 of 1See more

navidrome emmas-charts 0.0.6

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
deluan/navidrome:0.50.02cf4442b0099
golang.org/x/net@v0.18.0
0.33.0

Open the chart page →

2,129
nexus-operatorepmdedp-devVerified publisher2.11.0-MDTU-DDM-SNAPSHOT.11 of 1See more

nexus-operator epmdedp-dev 2.11.0-MDTU-DDM-SNAPSHOT.1

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
epamedp/nexus-operator:2.11.0-MDTU-DDM-SNAPSHOT.1449a53804699
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.33.0

Open the chart page →

2,266
ipfs-clusterethereum-helm-chartsVerified publisher0.1.141 of 3See more

ipfs-cluster ethereum-helm-charts 0.1.14

1 of the 3 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.33.0

Open the chart page →

4,632
event-exporterevent-exporterVerified publisher0.1.171 of 1See more

event-exporter event-exporter 0.1.17

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
kubestar/event-exporter:latest656606941255
golang.org/x/net@v0.17.0
0.33.0

Open the chart page →

1,210
events-exporterevents-exporter0.0.41 of 1See more

events-exporter events-exporter 0.0.4

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
ghcr.io/nabokihms/events_exporter:latest68d44646e8b2
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.33.0

Open the chart page →

2,135
github-actions-runner-operatorevryfs-ossVerified publisher2.8.11 of 1See more

github-actions-runner-operator evryfs-oss 2.8.1

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
quay.io/evryfs/github-actions-runner-operator:v0.11.16b084e0bd082
golang.org/x/net@v0.12.0
0.33.0

Open the chart page →

1,236
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
factly/vidcheck-server:0.12.087064eb0463c
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.33.0

Open the chart page →

3,617
ecr-cleanupfairwinds-stableVerified publisher1.2.81 of 1See more

ecr-cleanup fairwinds-stable 1.2.8

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
danielfm/kube-ecr-cleanup-controller:0.1.1012485563b1d0
golang.org/x/net@v0.7.0
0.33.0

Open the chart page →

1,004
featurehubfeaturehub4.1.61 of 7See more

featurehub featurehub 4.1.6

1 of the 7 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
golang.org/x/net@v0.15.0
0.33.0

Open the chart page →

8,240
federidfederidOfficialVerified publisher0.1.21 of 1See more

federid federid 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
federid/webhook:0.1.0fbfb7c6510a7
golang.org/x/net@v0.30.0
0.33.0

Open the chart page →

2,086
fission-corefission-chartsVerified publisher1.14.12 of 3See more

fission-core fission-charts 1.14.1

2 of the 3 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
fission/fission-bundle:1.14.13fcfd8a0fa5d
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
0.33.0
fission/pre-upgrade-checks:1.14.1fa0f24cdb9cd
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
0.33.0

Open the chart page →

7,106
openldapfluktuid0.1.11 of 2See more

openldap fluktuid 0.1.1

1 of the 2 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
golang.org/x/net@v0.0.0-20201010224723-4f7140c49acb
0.33.0

Open the chart page →

3,314
free5gcfree5gcVerified publisher0.1.311 of 12See more

free5gc free5gc 0.1.3

11 of the 12 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
free5gc/amf:v3.4.31bc96ff5a2a6
golang.org/x/net@v0.24.0
0.33.0
free5gc/ausf:v3.4.3687ff4daf5da
golang.org/x/net@v0.23.0
0.33.0
free5gc/chf:v3.4.3e2a4dd98a4ed
golang.org/x/net@v0.24.0
0.33.0
free5gc/nrf:v3.4.399e46b860efb
golang.org/x/net@v0.23.0
0.33.0
free5gc/nssf:v3.4.3dfe8c68c04b4
golang.org/x/net@v0.23.0
0.33.0
free5gc/pcf:v3.4.3f712e8ecd927
golang.org/x/net@v0.23.0
0.33.0
free5gc/smf:v3.4.360e38baa4b10
golang.org/x/net@v0.23.0
0.33.0
free5gc/udm:v3.4.32f68df062a50
golang.org/x/net@v0.23.0
0.33.0
free5gc/udr:v3.4.3c0783bcdcbdc
golang.org/x/net@v0.23.0
0.33.0
free5gc/upf:v3.4.3b6b362a39fdd
golang.org/x/net@v0.23.0
0.33.0
free5gc/webui:v3.4.39adeb18492cb
golang.org/x/net@v0.23.0
0.33.0

Open the chart page →

10,709
fsmfsmOfficialVerified publisher0.2.112 of 5See more

fsm fsm 0.2.11

2 of the 5 container images this version deploys carry CVE-2024-45338.

Container imageDigestPackageFixed in
flomesh/fsm-ingress-pipy:0.2.11cc39c96711c4
golang.org/x/net@v0.10.0
0.33.0
flomesh/fsm-manager:0.2.1122f849c70b25
golang.org/x/net@v0.10.0
0.33.0

Open the chart page →

4,227

Container images carrying it

2,335 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/jetstack/cert-manager-webhook:v1.12.0ec4306b243d9
golang.org/x/net@v0.9.0
0.33.0
1
quay.io/jetstack/cert-manager-webhook:v1.14.5ef419261a209
golang.org/x/net@v0.24.0
0.33.0
1
quay.io/jetstack/cert-manager-webhook:v1.8.0fd798a5a773e
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.33.0
1
quay.io/jetstack/kube-oidc-proxy:v0.3.0e045b26eb6df
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.33.0
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.33.0
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.33.0
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.33.0
1
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
golang.org/x/net@v0.24.0
0.33.0
1
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
0.33.0
1
quay.io/kube-ops/loki:2.2.14fbd63194674
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
0.33.0
1
quay.io/kube-ops/promtail:2.2.134de6387233b
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
0.33.0
1
quay.io/kubermatic/kubermatic:v2.24.5ebba936046ab
golang.org/x/net@v0.19.0
0.33.0
1
quay.io/kubermatic/machine-controller:v1.57.0476ae867ae56
golang.org/x/net@v0.8.0
0.33.0
1
quay.io/kubermatic/operating-system-manager:v1.3.010081473da43
golang.org/x/net@v0.9.0
0.33.0
1
quay.io/kubernetes-multicluster/kubefed:v0.7.06d56f69b15a3
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.33.0
1
quay.io/kubernetes-multicluster/kubefed:v0.10.0c4635c95730e
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
0.33.0
1
quay.io/kubevirt/kubemacpool:v0.45.0eebb65b8a12c
golang.org/x/net@v0.23.0
0.33.0
1
quay.io/metallb/controller:v0.10.221164241c045
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.33.0
1
quay.io/metallb/controller:v0.14.4bbef1ee3e7d3
golang.org/x/net@v0.22.0
0.33.0
1
quay.io/metallb/speaker:v0.14.437611bde45a2
golang.org/x/net@v0.22.0
0.33.0
1
quay.io/metallb/speaker:v0.10.258cb99053bb3
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.33.0
1
quay.io/minio/csi-node-driver-registrarc805fdc16676
golang.org/x/net@v0.8.0
0.33.0
1
quay.io/minio/csi-provisioner7b5c070ec70d
golang.org/x/net@v0.8.0
0.33.0
1
quay.io/minio/csi-resizer819f68a4daf7
golang.org/x/net@v0.8.0
0.33.0
1
quay.io/minio/directpv:v4.0.84560083eb77d
golang.org/x/net@v0.8.0
0.33.0
1
quay.io/minio/livenessprobef3bc9a84f149
golang.org/x/net@v0.8.0
0.33.0
1
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
golang.org/x/net@v0.19.0
0.33.0
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
golang.org/x/net@v0.0.0-20221017152216-f25eb7ecb193
0.33.0
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.33.0
1
quay.io/minio/mc:RELEASE.2024-04-29T09-56-05Zc574fac67f60
golang.org/x/net@v0.24.0
0.33.0
1
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
golang.org/x/net@v0.19.0
0.33.0
1
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
golang.org/x/net@v0.20.0
0.33.0
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
0.33.0
1
quay.io/minio/minio:RELEASE.2024-06-04T19-20-08Zc6b68f158628
golang.org/x/net@v0.25.0
0.33.0
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
golang.org/x/net@v0.1.0
0.33.0
1
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
golang.org/x/net@v0.15.0
0.33.0
1
quay.io/mittwald/harbor-operator:v1.6.365a38180e27a
golang.org/x/net@v0.24.0
0.33.0
1
quay.io/mittwald/kubernetes-replicator:v2.10.0b79e77d421d0
golang.org/x/net@v0.23.0
0.33.0
1
quay.io/mittwald/kubernetes-replicator:v2.9.1baf5f784398b
golang.org/x/net@v0.8.0
0.33.0
1
quay.io/mittwald/kubernetes-secret-generator:v3.4.1465b8e6d0462
golang.org/x/net@v0.26.0
0.33.0
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.33.0
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
0.33.0
1
quay.io/mongodb/mongodb-kubernetes-operator:0.9.05ee4bd681085
golang.org/x/net@v0.17.0
0.33.0
1
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.33.0
1
quay.io/oauth2-proxy/oauth2-proxy:v7.7.09ed7eaf72050
golang.org/x/net@v0.29.0
0.33.0
1
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.33.0
1
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.33.0
1
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
golang.org/x/net@v0.17.0
0.33.0
1
quay.io/open-cluster-management/cluster-proxy:v0.12.035f9c3ad644a
golang.org/x/net@v0.23.0
0.33.0
1
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.33.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.