StackRadar

CVE-2025-22868

High

Advisory

Published 26 Feb 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
56th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,635
of 17,790 indexed, latest versions
Container images
2,033
deployed by those charts
Fix available
1 of 1
affected package

golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability

Carried by container images the latest versions of 1,635 of 17,790 indexed charts deploy, on 2,033 images.

Affected packageAffected versionsFixed inImages
golang.org/x/oauth2golangv0.0.0-20170629032740-5432cc9688e6, v0.0.0-20170807180024-9a379c6b3e95, v0.0.0-20180620175406-ef147856a6dd, v0.0.0-20180724155351-3d292e4d0cdc+72 more0.27.02,033
OSV records
GHSA-6v2p-p543-phr9
Also known as
GO-2025-3488

Charts affected

1,635 by stars
ChartLatestAffected imagesRadar Score
cockroachdb-operatormmontesVerified publisher0.1.01 of 1See more

cockroachdb-operator mmontes 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
cockroachdb/cockroach-operator:v2.1.0983312754620
golang.org/x/oauth2@v0.0.0-20190115181402-5dab4167f31c
0.27.0

Open the chart page →

7,782
echoperatormmontesVerified publisher0.0.21 of 1See more

echoperator mmontes 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/mmontes11/echoperator:v0.0.4a544a71c6e3b
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

1,826
corednsmoikot1.13.31 of 1See more

coredns moikot 1.13.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
coredns/coredns:1.7.073ca82b4ce82
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

2,554
backendmojaloop0.1.01 of 6See more

backend mojaloop 0.1.0

1 of the 6 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
bitnamilegacy/mysqld-exporter:0.13.0a7e14cc919cb
golang.org/x/oauth2@v0.0.0-20190226205417-e64efc72b421
0.27.0

Open the chart page →

16,299
mqtt-loggermoreillonVerified publisher0.3.11 of 5See more

mqtt-logger moreillon 0.3.1

1 of the 5 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0

Open the chart page →

11,008
backupmorremeyer4.0.01 of 1See more

backup morremeyer 4.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
restic/restic:0.15.2579e4e6a4931
golang.org/x/oauth2@v0.6.0
0.27.0

Open the chart page →

2,302
hcloud-ccm-networksmorremeyer2.0.01 of 1See more

hcloud-ccm-networks morremeyer 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hetznercloud/hcloud-cloud-controller-manager:v1.16.08c07e6d7a76c
golang.org/x/oauth2@v0.5.0
0.27.0

Open the chart page →

1,746
hcloud-csi-drivermorremeyer3.0.03 of 6See more

hcloud-csi-driver morremeyer 3.0.0

3 of the 6 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.1.008721106b949
golang.org/x/oauth2@v0.2.0
0.27.0
registry.k8s.io/sig-storage/csi-provisioner:v3.4.0e468dddcd275
golang.org/x/oauth2@v0.0.0-20220309155454-6242fa91716a
0.27.0
registry.k8s.io/sig-storage/csi-resizer:v1.7.03a7bdf5d1057
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

7,187
chirpstackmosquitto-helm-chart0.5.02 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

2 of the 8 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
chirpstack/chirpstack-application-server:3fb7667fe037f
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

26,022
chirpstack-event-forwardmosquitto-helm-chart0.1.21 of 1See more

chirpstack-event-forward mosquitto-helm-chart 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/chirpstack-event-forward:v0.1.223dc6274cc4b
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

1,854
replacermosquitto-helm-chart0.2.01 of 3See more

replacer mosquitto-helm-chart 0.2.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/waitfor:v1.0.0ca5a98cbed32
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0

Open the chart page →

3,931
configmapsecretsmozilla0.0.11 of 1See more

configmapsecrets mozilla 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
mzinc/configmapsecret-controller:v0.5.1eebbcbf2d1f7
golang.org/x/oauth2@v0.0.0-20210220000619-9bb904979d93
0.27.0

Open the chart page →

2,109
maddymt1905024.1.21 of 1See more

maddy mt190502 4.1.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
foxcpp/maddy:0.9.2a4b839985b9b
golang.org/x/oauth2@v0.25.0
0.27.0

Open the chart page →

899
vikunjamt1905027.1.21 of 3See more

vikunja mt190502 7.1.2

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
vikunja/vikunja:0.24.6ed1f3ed467fe
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

2,991
multusmultusVerified publisher0.2.02 of 2See more

multus multus 0.2.0

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.1.409fdfb7ce090
golang.org/x/oauth2@v0.10.0
0.27.0
ghcr.io/k8snetworkplumbingwg/multus-dynamic-networks-controller:v0.3.72a2bb32c0ea8
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

1,865
authmyaVerified publisher22.4.31 of 1See more

auth mya 22.4.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

2,381
cognativemyaVerified publisher0.2403.32 of 3See more

cognative mya 0.2403.3

2 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:10.4.0f9811e4e687f
golang.org/x/oauth2@v0.16.0
0.27.0
otel/opentelemetry-collector-contrib:0.96.07ef2a2ff46b9
golang.org/x/oauth2@v0.17.0
0.27.0

Open the chart page →

7,367
giteamyaVerified publisher23.12.51 of 1See more

gitea mya 23.12.5

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
gitea/gitea:1.21.6ac73e0da341f
golang.org/x/oauth2@v0.13.0
0.27.0

Open the chart page →

3,436
myhelmappmyhelmapp0.1.11 of 1See more

myhelmapp myhelmapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
tobirachel/node-project3:v17d9f37154994
golang.org/x/oauth2@v0.0.0-20210628180205-a41e5a781914
0.27.0

Open the chart page →

3,366
influxdbmy-personal-influxdb20.1.01 of 1See more

influxdb my-personal-influxdb2 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

3,892
fargate-sidecar-injectormziyaboVerified publisher0.1.51 of 1See more

fargate-sidecar-injector mziyabo 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
mziyabo/fargate-eks-sidecar-injector:latest3067dce17983
golang.org/x/oauth2@v0.0.0-20221014153046-6fdb5e3db783
0.27.0

Open the chart page →

1,393
traefik-forward-auth-openidnas-helm-chartsVerified publisher1.0.11 of 1See more

traefik-forward-auth-openid nas-helm-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:latestb364aa6a4117
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

2,197
nats-operatornatsVerified publisher0.8.31 of 1See more

nats-operator nats 0.8.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
natsio/nats-operator:0.8.31261dae38389
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

2,353
account-servernatz-operatorVerified publisher0.9.51 of 1See more

account-server natz-operator 0.9.5

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/zeiss/natz-operator/account-server:0.9.5b380b5f17c3f
golang.org/x/oauth2@v0.26.0
0.27.0

Open the chart page →

745
netbirdnetbird1.9.01 of 4See more

netbird netbird 1.9.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
netbirdio/management:0.46.0b0adc4ad4ec6
golang.org/x/oauth2@v0.24.0
0.27.0

Open the chart page →

6,415
shhdnetsocVerified publisher0.1.71 of 1See more

shhd netsoc 0.1.7

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/netsoc/shhd:0.1.60bb44992b62c
golang.org/x/oauth2@v0.0.0-20210402161424-2e8d93401602
0.27.0

Open the chart page →

3,987
webspacednetsocVerified publisher0.2.82 of 2See more

webspaced netsoc 0.2.8

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
golang.org/x/oauth2@v0.0.0-20210628180205-a41e5a781914
0.27.0
ghcr.io/netsoc/webspaced:0.5.1edc238a538a0
golang.org/x/oauth2@v0.0.0-20210402161424-2e8d93401602
0.27.0

Open the chart page →

5,193
agent-control-cdnewrelic1.0.03 of 3See more

agent-control-cd newrelic 1.0.0

3 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flux-cli:v2.5.1274a179fd402
golang.org/x/oauth2@v0.23.0
0.27.0
ghcr.io/fluxcd/helm-controller:v1.2.062eaa9c9a929
golang.org/x/oauth2@v0.25.0
0.27.0
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
golang.org/x/oauth2@v0.25.0
0.27.0

Open the chart page →

5,054
node-upgrade-channelnimbolus0.1.11 of 1See more

node-upgrade-channel nimbolus 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/nimbolus/k8s-openstack-node-upgrade-agent:0.1.0e0c7cf2415f0
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

2,062
cloudnative-pgnineinfra-charts0.19.11 of 1See more

cloudnative-pg nineinfra-charts 0.19.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.21.19f707d91de1c
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

1,187
doris-operatornineinfra-charts1.3.11 of 1See more

doris-operator nineinfra-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
selectdb/doris.k8s-operator:1.3.1919210765cb8
golang.org/x/oauth2@v0.7.0
0.27.0

Open the chart page →

869
hdfs-operatornineinfra-charts0.7.01 of 1See more

hdfs-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
nineinfra/hdfs-operator:v0.7.0debb1e3410e2
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

723
kyuubi-operatornineinfra-charts0.7.01 of 1See more

kyuubi-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
nineinfra/kyuubi-operator:v0.7.08d8ed87ef77c
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

815
metastore-operatornineinfra-charts0.7.01 of 1See more

metastore-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
nineinfra/metastore-operator:v0.7.011259032fb04
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

815
minio-directpvnineinfra-charts4.0.83 of 5See more

minio-directpv nineinfra-charts 4.0.8

3 of the 5 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/minio/csi-provisionerdigest-pinned7b5c070ec70d
golang.org/x/oauth2@v0.5.0
0.27.0
quay.io/minio/csi-resizerdigest-pinned819f68a4daf7
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
quay.io/minio/directpv:v4.0.84560083eb77d
golang.org/x/oauth2@v0.6.0
0.27.0

Open the chart page →

7,067
minio-operatornineinfra-charts5.0.91 of 1See more

minio-operator nineinfra-charts 5.0.9

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
minio/operator:v5.0.9170b154d2c61
golang.org/x/oauth2@v0.5.0
0.27.0

Open the chart page →

3,425
nineinfranineinfra-charts0.7.01 of 1See more

nineinfra nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
nineinfra/nineinfra:v0.7.0d4aad414eccd
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

1,120
zookeeper-operatornineinfra-charts0.7.01 of 1See more

zookeeper-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
nineinfra/zookeeper-operator:v0.7.0af6eb2f37bfc
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

723
node-debug-dashboardnode-debug-dashboardVerified publisher0.3.21 of 1See more

node-debug-dashboard node-debug-dashboard 0.3.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

6,888
nodejsweeklynodejsweekly1.1.01 of 1See more

nodejsweekly nodejsweekly 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
zufardhiyaulhaq/nodejsweekly:v1.1.0306859a3f167
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

1,489
grafananodepulse7.1.01 of 1See more

grafana nodepulse 7.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:10.2.36b5b37eb35bb
golang.org/x/oauth2@v0.15.0
0.27.0

Open the chart page →

2,973
prometheusnodepulse25.0.06 of 6See more

prometheus nodepulse 25.0.0

6 of the 6 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
golang.org/x/oauth2@v0.10.0
0.27.0
quay.io/prometheus/alertmanager:v0.26.0361db356b330
golang.org/x/oauth2@v0.8.0
0.27.0
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
golang.org/x/oauth2@v0.8.0
0.27.0
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
golang.org/x/oauth2@v0.10.0
0.27.0
quay.io/prometheus/pushgateway:v1.6.05111de00e969
golang.org/x/oauth2@v0.8.0
0.27.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

7,746
ingress-helm-chartnotesprojectchart0.1.02 of 2See more

ingress-helm-chart notesprojectchart 0.1.0

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
golang.org/x/oauth2@v0.8.0
0.27.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

2,956
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0

Open the chart page →

4,558
vault-helm-chartnotesprojectchart0.1.01 of 1See more

vault-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
library/vault:1.13.3f98ac9dd97b0
golang.org/x/oauth2@v0.6.0
0.27.0

Open the chart page →

2,254
notification-componentnotification-component1.0.01 of 4See more

notification-component notification-component 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,536
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

4,861
nfs-server-provisionernovum-rgi-charts1.1.21 of 1See more

nfs-server-provisioner novum-rgi-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

2,806
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0

Open the chart page →

27,493
cnaos-pvc-populatornutanix-helm-releasesVerified publisher1.1.0-174-prod1 of 2See more

cnaos-pvc-populator nutanix-helm-releases 1.1.0-174-prod

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0

Open the chart page →

1,838

Container images carrying it

2,033 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
gitea/gitea:1.13.0d5ab14cd29af
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
golang.org/x/oauth2@v0.0.0-20201203001011-0b49973bad19
0.27.0
1
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
gkarthics/container-resource-exporter:latest6799af333e8a
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
goalert/goalert:v0.32.008d57388b0cb
golang.org/x/oauth2@v0.16.0
0.27.0
1
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
golang.org/x/oauth2@v0.25.0
0.27.0
1
goccx/go-file-server:latestf4b3ebea0303
golang.org/x/oauth2@v0.20.0
0.27.0
1
gocrane/craned:v0.5.1a1400909118c
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
1
gocrane/crane-scheduler:0.0.239ba6d11b2079
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
gocrane/crane-scheduler-controller:0.1.23a2d7e60576f9
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
goharbor/chartmuseum-photon:v2.5.36ab3ca28e9e5
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
1
goharbor/harbor-core:v2.9.06412d679fdc3
golang.org/x/oauth2@v0.5.0
0.27.0
1
goharbor/harbor-core:v2.5.386bf3031f4a7
golang.org/x/oauth2@v0.0.0-20210628180205-a41e5a781914
0.27.0
1
goharbor/harbor-core:v2.11.1c017dd84ee96
golang.org/x/oauth2@v0.19.0
0.27.0
1
goharbor/harbor-jobservice:v2.5.38d5339ff2d74
golang.org/x/oauth2@v0.0.0-20210628180205-a41e5a781914
0.27.0
1
goharbor/harbor-registryctl:v2.5.37f82ed1e2635
golang.org/x/oauth2@v0.0.0-20210628180205-a41e5a781914
0.27.0
1
goharbor/harbor-registryctl:v2.9.0cce272836449
golang.org/x/oauth2@v0.5.0
0.27.0
1
goharbor/notary-server-photon:v2.5.3fd91a4a1273f
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
goharbor/notary-signer-photon:v2.5.3a92b51aa7d6e
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
1
goharbor/trivy-adapter-photon:v2.9.0dc5b882a7db4
golang.org/x/oauth2@v0.7.0
0.27.0
1
gomods/athens:v0.8.1d714c7ff0231
golang.org/x/oauth2@v0.0.0-20190226205417-e64efc72b421
0.27.0
1
gomods/athens:v0.11.0efb811df7844
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
grafana/agent:v0.44.23364714a2f64
golang.org/x/oauth2@v0.21.0
0.27.0
1
grafana/agent:v0.20.0825c09373d27
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
1
grafana/agent:v0.40.3f6cbec9409be
golang.org/x/oauth2@v0.16.0
0.27.0
1
grafana/agent-operator:v0.34.1045c9125634c
golang.org/x/oauth2@v0.7.0
0.27.0
1
grafana/alloy:v1.5.101a63f4e032c
golang.org/x/oauth2@v0.23.0
0.27.0
1
grafana/alloy:v1.4.306bdcbb51fc2
golang.org/x/oauth2@v0.22.0
0.27.0
1
grafana/alloy:v1.1.1c3dac4e26471
golang.org/x/oauth2@v0.19.0
0.27.0
1
grafana/beyla:1.3.336d07f8d276e
golang.org/x/oauth2@v0.16.0
0.27.0
1
grafana/grafana:6.6.0052147d7e0ec
golang.org/x/oauth2@v0.0.0-20190319182350-c85d3e98c914
0.27.0
1
grafana/grafana:10.1.50679e877ba20
golang.org/x/oauth2@v0.8.0
0.27.0
1
grafana/grafana:7.5.609bb407e26ab
golang.org/x/oauth2@v0.0.0-20210113205817-d3ed898aa8a3
0.27.0
1
grafana/grafana:7.3.315b977f5207d
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
grafana/grafana:9.4.71a359d92f40e
golang.org/x/oauth2@v0.3.0
0.27.0
1
grafana/grafana:10.1.11b9ca4bbc4a2
golang.org/x/oauth2@v0.8.0
0.27.0
1
grafana/grafana:9.5.239c849cebccc
golang.org/x/oauth2@v0.6.0
0.27.0
1
grafana/grafana:11.2.2-security-01464eac539793
golang.org/x/oauth2@v0.21.0
0.27.0
1
grafana/grafana:11.5.15781759b3d27
golang.org/x/oauth2@v0.25.0
0.27.0
1
grafana/grafana:8.0.3696823fbc561
golang.org/x/oauth2@v0.0.0-20210413134643-5e61552d6c78
0.27.0
1
grafana/grafana:10.2.36b5b37eb35bb
golang.org/x/oauth2@v0.15.0
0.27.0
1
grafana/grafana:7.3.46d42886b3ebe
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
grafana/grafana:7.2.1733842cca5bd
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
grafana/grafana:9.4.376dcf36e7d2a
golang.org/x/oauth2@v0.3.0
0.27.0
1
grafana/grafana:10.3.38640e5038e83
golang.org/x/oauth2@v0.15.0
0.27.0
1
grafana/grafana:11.5.28b37a2f028f1
golang.org/x/oauth2@v0.25.0
0.27.0
1
grafana/grafana:9.1.19746858c20e6
golang.org/x/oauth2@v0.0.0-20220608161450-d0670ef3b1eb
0.27.0
1
grafana/grafana:9.0.1a738d0744784
golang.org/x/oauth2@v0.0.0-20220309155454-6242fa91716a
0.27.0
1
grafana/grafana:11.1.3b23b588cf7cb
golang.org/x/oauth2@v0.20.0
0.27.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.