StackRadar

CVE-2025-22866

Medium

Advisory

Published 6 Feb 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.0
base score, highest
EPSS
0.003
22nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,605
of 17,813 indexed, latest versions
Container images
3,107
deployed by those charts
Fix available
1 of 2
affected packages

Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec

Carried by container images the latest versions of 2,605 of 17,813 indexed charts deploy, on 3,107 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+145 more1.22.123,107
golang-1.19deb1.19.8-2no fix listed1
OSV records
DEBIAN-CVE-2025-22866GO-2025-3447
Also known as
BIT-golang-2025-22866

Charts affected

2,605 by stars
ChartLatestAffected imagesRadar Score
trilliansigstoreVerified publisher0.3.201 of 5See more

trillian sigstore 0.3.20

1 of the 5 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
gcr.io/trillian-opensource-ci/db_serverdigest-pinned2a685a38dd01
stdlib@go1.18.2
1.22.12

Open the chart page →

2,758
keycloak-configuratorsikalabs0.2.01 of 1See more

keycloak-configurator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
hashicorp/terraform:1.44dcb45513699
stdlib@go1.19.6
1.22.12

Open the chart page →

2,870
loggensikalabs0.1.01 of 1See more

loggen sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
sikalabs/slu:v0.72.07bd267f30247
stdlib@go1.21.4
1.22.12

Open the chart page →

2,347
metrics-generatorsikalabs0.2.01 of 1See more

metrics-generator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
sikalabs/slu:v0.34.0fdc0c6711add
stdlib@go1.17.6
1.22.12

Open the chart page →

2,382
olmsikalabs0.3.01 of 2See more

olm sikalabs 0.3.0

1 of the 2 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned40d0363f4aa6
stdlib@go1.22.3
1.22.12

Open the chart page →

1,163
bytesafe-cesimcube1.0.41 of 3See more

bytesafe-ce simcube 1.0.4

1 of the 3 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
bytesafe/bytesafe-ce:v1.0.4ee287384c005
stdlib@go1.20.5
1.22.12

Open the chart page →

1,502
keydbsinextraVerified publisher0.31.01 of 1See more

keydb sinextra 0.31.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
stdlib@go1.18.10
1.22.12

Open the chart page →

2,172
talos-backupsinextraVerified publisher0.1.21 of 1See more

talos-backup sinextra 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ghcr.io/siderolabs/talos-backup:v0.1.0-beta.203a71e140f1d
stdlib@go1.23.0
1.22.12

Open the chart page →

905
teamcitysinextraVerified publisher1.0.21 of 3See more

teamcity sinextra 1.0.2

1 of the 3 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
library/docker:26.1-dinddd43b430341a
stdlib@go1.21.11
1.22.12

Open the chart page →

2,449
mimirskyloud-helm-chartsVerified publisher5.5.14 of 5See more

mimir skyloud-helm-charts 5.5.1

4 of the 5 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
grafana/mimir:r292-5f018727476e456c738
stdlib@go1.22.3
1.22.12
grafana/rollout-operator:v0.14.03409edfb45c7
stdlib@go1.22.1
1.22.12
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
stdlib@go1.21.1
1.22.12
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
stdlib@go1.21.1
1.22.12

Open the chart page →

10,822
tailscale-operatorskyloud-helm-chartsVerified publisher1.70.31 of 1See more

tailscale-operator skyloud-helm-charts 1.70.3

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
tailscale/k8s-operator:v1.70.08edd06cf5bac
stdlib@go1.22.5
1.22.12

Open the chart page →

1,046
skypilot-prometheus-serverskypilotVerified publisher0.11.11 of 3See more

skypilot-prometheus-server skypilot 0.11.1

1 of the 3 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.15.0db384bf43222
stdlib@go1.23.5
1.22.12

Open the chart page →

2,361
config-connector-templaterslamdev0.0.51 of 1See more

config-connector-templater slamdev 0.0.5

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
slamdev/config-connector-templater:0.0.3a234541c9fa8
stdlib@go1.16.5
1.22.12

Open the chart page →

2,111
flux-notifierslamdev0.0.71 of 1See more

flux-notifier slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
slamdev/flux-notifier:v0.0.8b173d809132d
stdlib@go1.13.11
1.22.12

Open the chart page →

2,016
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
stdlib@go1.17.9
1.22.12

Open the chart page →

9,270
gke-preemptible-notifierslamdev0.0.61 of 1See more

gke-preemptible-notifier slamdev 0.0.6

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
slamdev/gke-preemptible-notifier:v0.0.3d5d6430108a3
stdlib@go1.13.11
1.22.12

Open the chart page →

2,861
octavia-ingress-controllerslamdev0.0.71 of 1See more

octavia-ingress-controller slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
k8scloudprovider/octavia-ingress-controller:v1.20.26ddf80b34265
stdlib@go1.15
1.22.12

Open the chart page →

2,762
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
stdlib@go1.13.5
1.22.12

Open the chart page →

8,733
oi-slurm-cluster-chartslurm-cluster-chart0.25.11 of 4See more

oi-slurm-cluster-chart slurm-cluster-chart 0.25.1

1 of the 4 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
library/mariadb:10.10334b315c10e5
stdlib@go1.18.2
1.22.12

Open the chart page →

4,400
slurm-cluster-chartslurm-cluster-chart0.25.01 of 4See more

slurm-cluster-chart slurm-cluster-chart 0.25.0

1 of the 4 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
library/mariadb:10.10334b315c10e5
stdlib@go1.18.2
1.22.12

Open the chart page →

4,400
smarter-k3s-edgesmarterVerified publisher0.0.121 of 2See more

smarter-k3s-edge smarter 0.0.12

1 of the 2 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
rancher/k3s:v1.25.3-k3s1eaa270df79cc
stdlib@go1.19.2
1.22.12

Open the chart page →

3,472
smarter-device-managersmarter-device-manager0.0.101 of 1See more

smarter-device-manager smarter-device-manager 0.0.10

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/smarter-device-manager:v1.20.12228f7f44594a
stdlib@go1.19.3
1.22.12

Open the chart page →

1,151
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
stdlib@go1.19.8
1.22.12

Open the chart page →

5,648
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
helga09/my_sql_shoes:v1.1.1a03657d97897
stdlib@go1.18.2
1.22.12

Open the chart page →

7,636
snspingsnsping1.2.91 of 1See more

snsping snsping 1.2.9

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
udhos/snsping:1.2.96ae70677b6a3
stdlib@go1.23.4
1.22.12

Open the chart page →

1,343
cost-analyzersoftonic2.5.52 of 6See more

cost-analyzer softonic 2.5.5

2 of the 6 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
grafana/grafana:11.5.28b37a2f028f1
stdlib@go1.23.5
1.22.12
gcr.io/kubecost1/cost-model:prod-2.5.502b90651367f
stdlib@go1.23.3
1.22.12

Open the chart page →

8,185
csi-gcs-softonic-factorysoftonic0.9.31 of 4See more

csi-gcs-softonic-factory softonic 0.9.3

1 of the 4 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ofekmeister/csi-gcs:v0.9.030d70fa9211b
stdlib@go1.18.2
1.22.12

Open the chart page →

1,850
harborsoftonic1.13.05 of 8See more

harbor softonic 1.13.0

5 of the 8 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
goharbor/harbor-core:v2.9.06412d679fdc3
stdlib@go1.20.7
1.22.12
goharbor/harbor-jobservice:v2.9.039435daedd0c
stdlib@go1.20.7
1.22.12
goharbor/harbor-registryctl:v2.9.0cce272836449
stdlib@go1.20.7
1.22.12
goharbor/registry-photon:v2.9.08a26e8cb7862
stdlib@go1.20.7
1.22.12
goharbor/trivy-adapter-photon:v2.9.0dc5b882a7db4
stdlib@go1.20.7
1.22.12

Open the chart page →

7,709
hello-world-appsoftonic1.2.21 of 1See more

hello-world-app softonic 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
quay.io/giantswarm/helloworld:0.2.07a07ee730305
stdlib@go1.16.7
1.22.12

Open the chart page →

1,957
pod-defaultersoftonic0.1.31 of 1See more

pod-defaulter softonic 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
softonic/pod-defaulter:0.1.072017aed5902
stdlib@go1.14.9
1.22.12

Open the chart page →

2,562
policy-reportersoftonic2.18.21 of 1See more

policy-reporter softonic 2.18.2

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ghcr.io/kyverno/policy-reporter:2.14.1e74c6bf33d1b
stdlib@go1.19.7
1.22.12

Open the chart page →

1,045
preemptible-killersoftonic1.2.61 of 1See more

preemptible-killer softonic 1.2.6

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
softonic/preemptible-killer:1.2.6-294b87f1fb362
stdlib@go1.14.10
1.22.12

Open the chart page →

2,339
rate-limit-operatorsoftonic1.1.01 of 2See more

rate-limit-operator softonic 1.1.0

1 of the 2 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
softonic/rate-limit-operator:0.1.1910f6de37763
stdlib@go1.13.15
1.22.12

Open the chart page →

2,220
rclonesoftonic2.1.01 of 1See more

rclone softonic 2.1.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
rclone/rclone:1.6874c51b8817e5
stdlib@go1.23.3
1.22.12

Open the chart page →

1,680
redissoftonic0.3.01 of 2See more

redis softonic 0.3.0

1 of the 2 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
library/redis:5.0fc5ecd863862
stdlib@go1.16.7
1.22.12

Open the chart page →

1,731
redis-operatorsoftonic0.18.01 of 1See more

redis-operator softonic 0.18.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ghcr.io/ot-container-kit/redis-operator/redis-operator:v0.18.090bfeb2e0d71
stdlib@go1.21.12
1.22.12

Open the chart page →

551
sealed-secretssoftonic2.6.91 of 1See more

sealed-secrets softonic 2.6.9

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
bitnami/sealed-secrets-controller:v0.18.50516f987fae2
stdlib@go1.18.6
1.22.12

Open the chart page →

1,516
trivy-operatorsoftonic0.18.01 of 1See more

trivy-operator softonic 0.18.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
stdlib@go1.20.4
1.22.12

Open the chart page →

2,514
webhook-receiversoftonic2.1.11 of 1See more

webhook-receiver softonic 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
almir/webhook:2.8.01698346f6077
stdlib@go1.14.7
1.22.12

Open the chart page →

1,928
gloo-meshsolo-gloo-mesh1.1.21 of 1See more

gloo-mesh solo-gloo-mesh 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
stdlib@go1.16.3
1.22.12

Open the chart page →

3,267
redis-high-availabilitysomeblackmagic1.3.102 of 3See more

redis-high-availability someblackmagic 1.3.10

2 of the 3 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
bitnamilegacy/redis:7.0.8-debian-11-r0bf01d031ba8c
stdlib@go1.18.2
1.22.12
haproxytech/haproxy-alpine:2.9.57f3dc8c7e031
stdlib@go1.22.0
1.22.12

Open the chart page →

3,150
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
stdlib@go1.18.2
1.22.12

Open the chart page →

101,852
datadogspartan0.1.01 of 1See more

datadog spartan 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
stdlib@go1.22.8
1.22.12

Open the chart page →

3,313
spire-identity-exchangespiffeVerified publisher0.2.21 of 3See more

spire-identity-exchange spiffe 0.2.2

1 of the 3 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.31.099b37df34bc4
stdlib@go1.22.5
1.22.12

Open the chart page →

1,442
spinnakerspinnakerVerified publisher2.2.132 of 4See more

spinnaker spinnaker 2.2.13

2 of the 4 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
stdlib@go1.15.5
1.22.12
minio/minio:RELEASE.2020-01-03T19-12-21Zf00aa6ef2b72
stdlib@go1.13.5
1.22.12

Open the chart page →

6,877
spoolmanspoolmanVerified publisher0.2.61 of 1See more

spoolman spoolman 0.2.6

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
stdlib@go1.19.8
1.22.12

Open the chart page →

1,848
ocean-admission-controllerspot1.0.31 of 3See more

ocean-admission-controller spot 1.0.3

1 of the 3 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.4a9f03b34a3cb
stdlib@go1.22.8
1.22.12

Open the chart page →

773
ocean-vpaspot1.0.71 of 4See more

ocean-vpa spot 1.0.7

1 of the 4 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.136d05b4077fb
stdlib@go1.22.2
1.22.12

Open the chart page →

1,195
spotinst-ocean-network-clientspot1.0.01 of 1See more

spotinst-ocean-network-client spot 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
stdlib@go1.16.5
1.22.12

Open the chart page →

66,163
airflowsqream-chartsVerified publisher1.17.01 of 4See more

airflow sqream-charts 1.17.0

1 of the 4 container images this version deploys carry CVE-2025-22866.

Container imageDigestPackageFixed in
quay.io/prometheus/statsd-exporter:v0.27.29ed70604d941
stdlib@go1.22.8
1.22.12

Open the chart page →

1,883

Container images carrying it

3,107 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/netsoc/iamd:1.1.22fe6b69b20d7
stdlib@go1.16.6
1.22.12
1
ghcr.io/netsoc/shhd:0.1.60bb44992b62c
stdlib@go1.17
1.22.12
1
ghcr.io/netsoc/webspaced:0.5.1edc238a538a0
stdlib@go1.16.8
1.22.12
1
ghcr.io/nicholaswilde/golinks:version-154c5818e67b26324c5
stdlib@go1.16.5
1.22.12
1
ghcr.io/nicholaswilde/installer:version-0.2.947d8ecd310a9
stdlib@go1.15.3
1.22.12
1
ghcr.io/nicholaswilde/notes:version-ee287b9ab9bc16465bc
stdlib@go1.16.5
1.22.12
1
ghcr.io/nicholaswilde/olivetin:version-2021-07-19e1d5c8a01008
stdlib@go1.16.5
1.22.12
1
ghcr.io/nicholaswilde/shiori:version-v1.5.0e0645abe6777
stdlib@go1.16.5
1.22.12
1
ghcr.io/nicholaswilde/static:version-ee8a20cd1d47c730bc4
stdlib@go1.16.5
1.22.12
1
ghcr.io/nicholaswilde/todo:941c0d3-ls1d7ba1341a940
stdlib@go1.14.15
1.22.12
1
ghcr.io/nicholaswilde/twtxt:version-0.1.158736a73ca10
stdlib@go1.16.5
1.22.12
1
ghcr.io/nicholaswilde/wiki:version-900b76a6c4f261d8f5e
stdlib@go1.16.5
1.22.12
1
ghcr.io/nicholaswilde/writefreely:version-0.13.1c3c8481b7e56
stdlib@go1.15.12
1.22.12
1
ghcr.io/nimbolus/k8s-openstack-node-upgrade-agent:0.1.0e0c7cf2415f0
stdlib@go1.17.6
1.22.12
1
ghcr.io/nlamirault/bbox_exporter:1.0.0f5dd1f7794c6
stdlib@go1.18.3
1.22.12
1
ghcr.io/nlamirault/freebox-exporter:1.0.02d522b664e12
stdlib@go1.19.2
1.22.12
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
stdlib@go1.19.4
1.22.12
1
ghcr.io/nousefreak/clusterfan:v0.1.04ea05e2a7b57
stdlib@go1.17.5
1.22.12
1
ghcr.io/o0th/cert-manager-webhook-bunny:1.0.2fe7ce555a12d
stdlib@go1.23.5
1.22.12
1
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
stdlib@go1.17.6
1.22.12
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
stdlib@go1.22.6
1.22.12
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
stdlib@go1.22.0
1.22.12
1
ghcr.io/onedr0p/exportarr:v1.6.160cf3d44aa0b
stdlib@go1.21.6
1.22.12
1
ghcr.io/openappsec/smartsync:latest580d68c50cc7
stdlib@go1.18.10
1.22.12
1
ghcr.io/openappsec/smartsync-shared-files:latest30c1daa0b33e
stdlib@go1.18.10
1.22.12
1
ghcr.io/openclarity/grype-server:v0.6.079412399f301
stdlib@go1.20.4
1.22.12
1
ghcr.io/openclarity/kubeclarity:v2.23.314450f52a708
stdlib@go1.21.6
1.22.12
1
ghcr.io/openclarity/kubeclarity-sbom-db:v2.23.3cef2b88bfc76
stdlib@go1.21.6
1.22.12
1
ghcr.io/openfaas/cron-connector:0.7.0982498e8a41e
stdlib@go1.23.5
1.22.12
1
ghcr.io/openfaas/faas-netes:0.18.1224431adc8e2d
stdlib@go1.23.4
1.22.12
1
ghcr.io/openfaasltd/federated-gateway:0.2.39066d7b3e6a1
stdlib@go1.21.5
1.22.12
1
ghcr.io/openfaasltd/jetstream-queue-worker:0.3.37d96366e208b1
stdlib@go1.22.1
1.22.12
1
ghcr.io/openfaasltd/postgres-connector:0.2.3379e583a0a75
stdlib@go1.23.5
1.22.12
1
ghcr.io/openfaasltd/rabbitmq-connector:0.1.2349f7dca95ec
stdlib@go1.23.5
1.22.12
1
ghcr.io/openfaasltd/sns-connector:0.2.0e9ab76a4ec77
stdlib@go1.21.7
1.22.12
1
ghcr.io/openfaasltd/sqs-connector:0.3.4d44ed3b3128c
stdlib@go1.23.5
1.22.12
1
ghcr.io/openfaas/mqtt-connector:0.4.33311a30b8fe6
stdlib@go1.18.5
1.22.12
1
ghcr.io/openfaas/nats-connector:0.3.0315e57c0a8d8
stdlib@go1.18.5
1.22.12
1
ghcr.io/openfaas/queue-worker:0.14.2c18da04d70f6
stdlib@go1.23.4
1.22.12
1
ghcr.io/open-feature/flagd:v0.11.1a7ea52f87446
stdlib@go1.22.5
1.22.12
1
ghcr.io/openstack-exporter/openstack-exporter:1.7.0e5146a7dd515
stdlib@go1.18.10
1.22.12
1
ghcr.io/open-telemetry/demo:1.12.0-productcatalogservice008b9b662289
stdlib@go1.22.8
1.22.12
1
ghcr.io/open-telemetry/demo:1.12.0-checkoutservice380eccdc29e9
stdlib@go1.22.8
1.22.12
1
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
stdlib@go1.21.5
1.22.12
1
ghcr.io/ot-container-kit/redis-operator/redis-operator:v0.18.090bfeb2e0d71
stdlib@go1.21.12
1.22.12
1
ghcr.io/paganuzzi/ngrokoperator:latest5a10cd095699
stdlib@go1.15.12
1.22.12
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
stdlib@go1.19.8
1.22.12
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
stdlib@go1.19.8
1.22.12
1
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
stdlib@go1.20.7
1.22.12
1
ghcr.io/parca-dev/parca-agent:v0.28.06d6794f45f3e
stdlib@go1.21.4
1.22.12
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.