StackRadar

CVE-2025-22868

High

Advisory

Published 26 Feb 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
56th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,635
of 17,790 indexed, latest versions
Container images
2,033
deployed by those charts
Fix available
1 of 1
affected package

golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability

Carried by container images the latest versions of 1,635 of 17,790 indexed charts deploy, on 2,033 images.

Affected packageAffected versionsFixed inImages
golang.org/x/oauth2golangv0.0.0-20170629032740-5432cc9688e6, v0.0.0-20170807180024-9a379c6b3e95, v0.0.0-20180620175406-ef147856a6dd, v0.0.0-20180724155351-3d292e4d0cdc+72 more0.27.02,033
OSV records
GHSA-6v2p-p543-phr9
Also known as
GO-2025-3488

Charts affected

1,635 by stars
ChartLatestAffected imagesRadar Score
pock-helm-charttinote-chart0.1.01 of 3See more

pock-helm-chart tinote-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
nginx/nginx-ingress:1.11.1eb5b4fd73325
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

6,888
grafanatnh5.3.01 of 1See more

grafana tnh 5.3.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

3,198
prometheustnh11.6.01 of 6See more

prometheus tnh 11.6.0

1 of the 6 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
prom/prometheus:v2.19.0bfad037f95e5
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

8,491
nfs-servertranhailongVerified publisher0.1.21 of 1See more

nfs-server tranhailong 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
tranhailong/nfs-server:4.2-2-gcsfuse028662749be2
golang.org/x/oauth2@v0.3.0
0.27.0

Open the chart page →

2,330
harbor-scanner-trivytrivy-operator0.31.21 of 1See more

harbor-scanner-trivy trivy-operator 0.31.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
aquasec/harbor-scanner-trivy:0.31.26e790e233872
golang.org/x/oauth2@v0.18.0
0.27.0

Open the chart page →

2,486
posteetrivy-operator2.14.02 of 3See more

postee trivy-operator 2.14.0

2 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
aquasec/postee:2.12.0-amd640795cba777e7
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
aquasec/postee-ui:2.12.0-amd64c0467c3941dc
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

4,816
trouw-servicetrouw-service1.0.01 of 3See more

trouw-service trouw-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/trouw-service-php:latestf745e2870692
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,519
monitorortrozz0.0.11 of 1See more

monitoror trozz 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
monitoror/monitoror:44b88edcf51ff
golang.org/x/oauth2@v0.0.0-20181106182150-f42d05182288
0.27.0

Open the chart page →

3,109
clickhouse-operatortruefoundryVerified publisher0.1.12 of 3See more

clickhouse-operator truefoundry 0.1.1

2 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.23.34baec90b20cd
golang.org/x/oauth2@v0.8.0
0.27.0
altinity/metrics-exporter:0.23.32912a6c15b44
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

1,430
tfy-inferentia-operatortruefoundryVerified publisher0.2.83 of 3See more

tfy-inferentia-operator truefoundry 0.2.8

3 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
public.ecr.aws/eks-distro/kubernetes/kube-scheduler:v1.29.14-eks-1-29-lateste7e1db003e6a
golang.org/x/oauth2@v0.11.0
0.27.0
public.ecr.aws/neuron/neuron-device-plugin:2.23.30.075a6d5ce3bd3
golang.org/x/oauth2@v0.13.0
0.27.0
public.ecr.aws/neuron/neuron-scheduler:2.23.30.04cd274463e6b
golang.org/x/oauth2@v0.13.0
0.27.0

Open the chart page →

2,918
tfy-kservetruefoundryVerified publisher0.1.11 of 2See more

tfy-kserve truefoundry 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
kserve/kserve-controller:v0.10.022ff858b57c1
golang.org/x/oauth2@v0.3.0
0.27.0

Open the chart page →

1,178
tfy-llm-gateway-infratruefoundryVerified publisher0.2.102 of 3See more

tfy-llm-gateway-infra truefoundry 0.2.10

2 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.23.774315beb57db
golang.org/x/oauth2@v0.12.0
0.27.0
altinity/metrics-exporter:0.23.7a4d7ff0c727e
golang.org/x/oauth2@v0.12.0
0.27.0

Open the chart page →

1,204
tfy-lokitruefoundryVerified publisher0.1.62 of 2See more

tfy-loki truefoundry 0.1.6

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/loki:2.9.1035b02acc6765
golang.org/x/oauth2@v0.10.0
0.27.0
grafana/promtail:2.9.1063a2e57a5b14
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

2,827
aws-eks-asg-rolling-update-handlertwin1.5.01 of 1See more

aws-eks-asg-rolling-update-handler twin 1.5.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
twinproduction/aws-eks-asg-rolling-update-handler:v1.7.08f38c206972e
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

1,118
lighthousetwin1.0.21 of 1See more

lighthouse twin 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/twin/lighthouse:v0.0.45aeda2ea2ba2
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

544
tyk-bootstraptyk-helm5.3.02 of 3See more

tyk-bootstrap tyk-helm 5.3.0

2 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
tykio/tyk-k8s-bootstrap-post:v2.2.055b4d31c7a01
golang.org/x/oauth2@v0.10.0
0.27.0
tykio/tyk-k8s-bootstrap-pre-delete:v2.2.01489b58f642b
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

1,374
tyk-control-planetyk-helm5.3.02 of 7See more

tyk-control-plane tyk-helm 5.3.0

2 of the 7 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
tykio/tyk-k8s-bootstrap-post:v2.2.055b4d31c7a01
golang.org/x/oauth2@v0.10.0
0.27.0
tykio/tyk-k8s-bootstrap-pre-delete:v2.2.01489b58f642b
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

2,977
tyk-stacktyk-helm5.3.02 of 7See more

tyk-stack tyk-helm 5.3.0

2 of the 7 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
tykio/tyk-k8s-bootstrap-post:v2.2.055b4d31c7a01
golang.org/x/oauth2@v0.10.0
0.27.0
tykio/tyk-k8s-bootstrap-pre-delete:v2.2.01489b58f642b
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

2,921
typhoontyphoonVerified publisher0.2.32 of 2See more

typhoon typhoon 0.2.3

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/zeiss/typhoon/controller:0.2.34fdf4edfda45
golang.org/x/oauth2@v0.26.0
0.27.0
ghcr.io/zeiss/typhoon/typhoon-webhook:0.2.378f9b82050bc
golang.org/x/oauth2@v0.26.0
0.27.0

Open the chart page →

1,686
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.301249fc292e84
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

8,642
miniouninettsigma21.2.01 of 1See more

minio uninettsigma2 1.2.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
golang.org/x/oauth2@v0.1.0
0.27.0

Open the chart page →

4,967
utho-app-operator-chartutho-operatorVerified publisher0.1.61 of 2See more

utho-app-operator-chart utho-operator 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
utho/utho-app-operator:0.1.46e8a690e8b7a
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

491
vault-raft-snapshot-agentvault-raft-snapshot-agentVerified publisher0.6.91 of 1See more

vault-raft-snapshot-agent vault-raft-snapshot-agent 0.6.9

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
golang.org/x/oauth2@v0.22.0
0.27.0

Open the chart page →

1,121
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,519
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,537
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,438
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,438
scrutinyvhdirkVerified publisher0.1.31 of 1See more

scrutiny vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0

Open the chart page →

4,411
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0

Open the chart page →

13,575
vineyard-operatorvineyardVerified publisher0.24.22 of 2See more

vineyard-operator vineyard 0.24.2

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
vineyardcloudnative/vineyard-operator:latest9d419aa18faa
golang.org/x/oauth2@v0.13.0
0.27.0
ghcr.io/v6d-io/v6d/kube-rbac-proxy:v0.13.0a2523c532c0c
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

4,558
vm-console-proxyvm-console-proxyVerified publisher0.2.01 of 1See more

vm-console-proxy vm-console-proxy 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/kubevirt/vm-console-proxy:v0.8.08d6b4b6e99bd
golang.org/x/oauth2@v0.26.0
0.27.0

Open the chart page →

645
vpa-managervpa-managerVerified publisher0.4.91 of 1See more

vpa-manager vpa-manager 0.4.9

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/jcluppnow/vpa-manager:0.6.4e459d2fba277
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

491
cert-manager-webhook-vultrvultrVerified publisher1.0.01 of 1See more

cert-manager-webhook-vultr vultr 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

2,507
vultr-csivultrVerified publisher2.0.01 of 4See more

vultr-csi vultr 2.0.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
vultr/vultr-csi:v0.3.041d26735d437
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0

Open the chart page →

2,353
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
wallarm/kong-kubernetes-ingress-controller:2.8b55ff6cecbd5
golang.org/x/oauth2@v0.3.0
0.27.0

Open the chart page →

11,448
kong-previewwallarmVerified publisher4.2.31 of 5See more

kong-preview wallarm 4.2.3

1 of the 5 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
kong/kubernetes-ingress-controller:2.1.160e4102ab2da
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

2,905
wallarm-ingress-rcwallarmVerified publisher4.8.42 of 2See more

wallarm-ingress-rc wallarm 4.8.4

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
golang.org/x/oauth2@v0.8.0
0.27.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

2,635
wallarm-oobwallarmVerified publisher0.23.01 of 3See more

wallarm-oob wallarm 0.23.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
wallarm/ebpf-agent:0.11.0-rc0c8920e60c726
golang.org/x/oauth2@v0.18.0
0.27.0

Open the chart page →

2,838
consulwarjiang1.3.02 of 2See more

consul warjiang 1.3.0

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
golang.org/x/oauth2@v0.7.0
0.27.0
hashicorp/consul-k8s-control-plane:1.3.00e4452f0f265
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

4,072
eth-validatorwateim1.4.51 of 3See more

eth-validator wateim 1.4.5

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
wateim/lighthouse-launch:latest2520149ee574
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

5,090
wavefront-hpa-adapterwavefront0.2.101 of 1See more

wavefront-hpa-adapter wavefront 0.2.10

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
wavefronthq/wavefront-hpa-adapter:0.9.12af5fef9a4768
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

1,691
wazuhwazuh-helm-eksVerified publisher1.2.101 of 6See more

wazuh wazuh-helm-eks 1.2.10

1 of the 6 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.14.45a065930682d
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

5,492
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

11,171
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
golang.org/x/oauth2@v0.4.0
0.27.0

Open the chart page →

6,282
azure-keyvault-exporterwebdevopsVerified publisher1.0.121 of 1See more

azure-keyvault-exporter webdevops 1.0.12

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
webdevops/azure-keyvault-exporter:24.9.1f333704ecd60
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

801
azure-scheduledevents-managerwebdevopsVerified publisher1.0.171 of 1See more

azure-scheduledevents-manager webdevops 1.0.17

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
webdevops/azure-scheduledevents-manager:24.9.0-kubernetes7acd46a8a972
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

1,124
kube-pool-managerwebdevopsVerified publisher1.0.161 of 1See more

kube-pool-manager webdevops 1.0.16

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
webdevops/kube-pool-manager:24.9.04fad7e14ad67
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

499
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,562
ambassadorwenerme6.9.51 of 2See more

ambassador wenerme 6.9.5

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
datawire/aes:1.14.48588eafe6862
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

4,093
athens-proxywenerme0.5.21 of 2See more

athens-proxy wenerme 0.5.2

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
gomods/athens:v0.11.0efb811df7844
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

4,999

Container images carrying it

2,033 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
bitpoke/wordpress-operator:v0.12.27fb3aad37b5f
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
bloomberg/goldpinger:3.10.08520120f5598
golang.org/x/oauth2@v0.13.0
0.27.0
1
bonovoo/secrethor:1.1.2bb93b68fcd17
golang.org/x/oauth2@v0.12.0
0.27.0
1
breton/cool:dev41b1bb483aa2
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
1
bsgrigorov/helm-operator:latest45ab095f09c8
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
buddyspencer/gickup:0.10.309e7dbf923c12
golang.org/x/oauth2@v0.19.0
0.27.0
1
buildkite/agent:3.25.0aec38cfaae0e
golang.org/x/oauth2@v0.0.0-20181003184128-c57b0facaced
0.27.0
1
burganbank/vault-initializer:v19259c34e4037
golang.org/x/oauth2@v0.10.0
0.27.0
1
burningalchemist/sql_exporter:0.16.0b8e4757c7def
golang.org/x/oauth2@v0.23.0
0.27.0
1
bytesafe/bytesafe-ce:v1.0.4ee287384c005
golang.org/x/oauth2@v0.8.0
0.27.0
1
calico/cni:v3.28.0cef0c907b8f4
golang.org/x/oauth2@v0.16.0
0.27.0
1
calico/cni:v3.28.1e486870cfde8
golang.org/x/oauth2@v0.16.0
0.27.0
1
calico/kube-controllers:v3.28.08f04e4772a2b
golang.org/x/oauth2@v0.16.0
0.27.0
1
calico/kube-controllers:v3.28.1eadb3a25109a
golang.org/x/oauth2@v0.16.0
0.27.0
1
calico/node:v3.28.0385bf6391fea
golang.org/x/oauth2@v0.16.0
0.27.0
1
calico/node:v3.28.1d8c644a8a3ee
golang.org/x/oauth2@v0.16.0
0.27.0
1
camptocamp/bucket-cloner:latestacfafc308d88
golang.org/x/oauth2@v0.0.0-20210413134643-5e61552d6c78
0.27.0
1
caroga/commentoplusplus:v1.8.7f3233882b3bd
golang.org/x/oauth2@v0.0.0-20210313182246-cd4f82c27b84
0.27.0
1
casbin/casdoor:v1.224.066f836ef778b
golang.org/x/oauth2@v0.0.0-20210628180205-a41e5a781914
0.27.0
1
casbin/casdoor:v1.753.0770ad9ec3190
golang.org/x/oauth2@v0.17.0
0.27.0
1
cbeneke/hcloud-fip-controller:v0.4.1dc658078d7ba
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
cesanta/docker_auth:1.14.098e0307e0d2d
golang.org/x/oauth2@v0.13.0
0.27.0
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
cgtysylr/cluster-octopus:1.0.0aec0f8a38a77
golang.org/x/oauth2@v0.8.0
0.27.0
1
chaerr/kridge:demo-operator-v0.1.266833deec017
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
chaosnative/cle-auth-server:2.7.072ee352bc333
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
1
chaosnative/cle-license-module:2.7.062cf6adc355e
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
chaosnative/cle-server:2.7.0e7bcff4a20c0
golang.org/x/oauth2@v0.0.0-20210402161424-2e8d93401602
0.27.0
1
chirpstack/chirpstack-application-server:3.17.6e0b23dfd24d6
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
chirpstack/chirpstack-application-server:3fb7667fe037f
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
chrislusf/seaweedfs:3.64634b094b2183
golang.org/x/oauth2@v0.17.0
0.27.0
1
chrislusf/seaweedfs:3.56ed80f00fde46
golang.org/x/oauth2@v0.10.0
0.27.0
1
chriswells0/first-mate:1.0.5f3918ec8471c
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
circleci/container-agent:34d8d0ae5efc3
golang.org/x/oauth2@v0.0.0-20220822191816-0ebed06d0094
0.27.0
1
ciscolabs/msm-nc:0710202336d02faad958
golang.org/x/oauth2@v0.8.0
0.27.0
1
clastix/capsule-rancher-addon:v0.1.143d301afbca8
golang.org/x/oauth2@v0.0.0-20221014153046-6fdb5e3db783
0.27.0
1
cloudbees/cert-requester:2.3.31d44fb4f799b
golang.org/x/oauth2@v0.0.0-20191202225959-858c2ad4c8b6
0.27.0
1
cloudbees/sidecar-injector:2.3.38f102ef0383a
golang.org/x/oauth2@v0.0.0-20191202225959-858c2ad4c8b6
0.27.0
1
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
golang.org/x/oauth2@v0.0.0-20201208152858-08078c50e5b5
0.27.0
1
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
golang.org/x/oauth2@v0.0.0-20201208152858-08078c50e5b5
0.27.0
1
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
golang.org/x/oauth2@v0.0.0-20201208152858-08078c50e5b5
0.27.0
1
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
golang.org/x/oauth2@v0.0.0-20201208152858-08078c50e5b5
0.27.0
1
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
golang.org/x/oauth2@v0.0.0-20201208152858-08078c50e5b5
0.27.0
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
golang.org/x/oauth2@v0.0.0-20201208152858-08078c50e5b5
0.27.0
1
cloudflare/cloudflared:2024.8.314d9c6b01b29
golang.org/x/oauth2@v0.17.0
0.27.0
1
cloudflare/cloudflared:2024.5.05d5f70a59d5e
golang.org/x/oauth2@v0.17.0
0.27.0
1
cloudflare/cloudflared:2023.10.0c18744ae1767
golang.org/x/oauth2@v0.6.0
0.27.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.