StackRadar

CVE-2025-22868

High

Advisory

Published 26 Feb 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
56th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,632
of 17,797 indexed, latest versions
Container images
2,029
deployed by those charts
Fix available
1 of 1
affected package

golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability

Carried by container images the latest versions of 1,632 of 17,797 indexed charts deploy, on 2,029 images.

Affected packageAffected versionsFixed inImages
golang.org/x/oauth2golangv0.0.0-20170629032740-5432cc9688e6, v0.0.0-20170807180024-9a379c6b3e95, v0.0.0-20180620175406-ef147856a6dd, v0.0.0-20180724155351-3d292e4d0cdc+72 more0.27.02,029
OSV records
GHSA-6v2p-p543-phr9
Also known as
GO-2025-3488

Charts affected

1,632 by stars
ChartLatestAffected imagesRadar Score
ipfsstakewise2.2.01 of 2See more

ipfs stakewise 2.2.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ipfs/kubo:v0.33.21a30f5ed8579
golang.org/x/oauth2@v0.24.0
0.27.0

Open the chart page →

1,250
v3-backendstakewise3.6.01 of 5See more

v3-backend stakewise 3.6.0

1 of the 5 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ipfs/kubo:v0.33.21a30f5ed8579
golang.org/x/oauth2@v0.24.0
0.27.0

Open the chart page →

1,250
argocd-operatorstatcan0.5.01 of 1See more

argocd-operator statcan 0.5.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/argocd-operator:v0.4.0cf8faa986789
golang.org/x/oauth2@v0.0.0-20220608161450-d0670ef3b1eb
0.27.0

Open the chart page →

1,985
cost-analyzerstatcan1.82.24 of 9See more

cost-analyzer statcan 1.82.2

4 of the 9 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:7.5.609bb407e26ab
golang.org/x/oauth2@v0.0.0-20210113205817-d3ed898aa8a3
0.27.0
prom/prometheus:v2.22.2f7ffebdd428b
golang.org/x/oauth2@v0.0.0-20200902213428-5d25da1a8d43
0.27.0
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
golang.org/x/oauth2@v0.0.0-20190402181905-9f3314589c9a
0.27.0

Open the chart page →

16,537
fluentd-operatorstatcan0.5.11 of 1See more

fluentd-operator statcan 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
vmware/kube-fluentd-operator:latestf028c138a5f4
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

1,960
ingress-istio-controllerstatcan1.4.01 of 1See more

ingress-istio-controller statcan 1.4.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
statcan/ingress-istio-controller:1.4.0d7d6bd180c46
golang.org/x/oauth2@v0.0.0-20200902213428-5d25da1a8d43
0.27.0

Open the chart page →

1,583
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

6,596
prometheus-operatorstatcan0.2.22 of 7See more

prometheus-operator statcan 0.2.2

2 of the 7 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
jettech/kube-webhook-certgen:v1.2.1c42098c8d855
golang.org/x/oauth2@v0.0.0-20190523182746-aaccbc9213b0
0.27.0

Open the chart page →

12,251
sidecar-terminatorstatcan1.3.51 of 1See more

sidecar-terminator statcan 1.3.5

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
statcan/kubernetes-sidecar-terminator:2.0.2bc361ee7748f
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

1,315
starboard-operatorstatcan0.10.41 of 1See more

starboard-operator statcan 0.10.4

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
aquasec/starboard-operator:0.15.4be34f709e1ce
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

1,827
vaultstatcan0.1.81 of 2See more

vault statcan 0.1.8

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hashicorp/vault-k8s:0.6.05697b85bc69a
golang.org/x/oauth2@v0.0.0-20180821212333-d2e6202438be
0.27.0

Open the chart page →

4,223
snapshot-controllerstevehipwellVerified publisher0.1.01 of 1See more

snapshot-controller stevehipwell 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
golang.org/x/oauth2@v0.24.0
0.27.0

Open the chart page →

495
snapshot-controllerstevehipwell-helm-charts-snapshot-controllerVerified publisher0.1.01 of 1See more

snapshot-controller stevehipwell-helm-charts-snapshot-controller 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
golang.org/x/oauth2@v0.24.0
0.27.0

Open the chart page →

495
sn-platform-slimstreamnative1.11.442 of 6See more

sn-platform-slim streamnative 1.11.44

2 of the 6 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
golang.org/x/oauth2@v0.6.0
0.27.0
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
golang.org/x/oauth2@v0.6.0
0.27.0

Open the chart page →

10,270
stunner-prometheusstunner0.2.13 of 4See more

stunner-prometheus stunner 0.2.1

3 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.18.1e6a323504999
golang.org/x/oauth2@v0.21.0
0.27.0
quay.io/prometheus-operator/prometheus-operator:v0.77.2af92db7eac86
golang.org/x/oauth2@v0.23.0
0.27.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

3,040
orchestratorsubstraVerified publisher8.8.01 of 3See more

orchestrator substra 8.8.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
golang.org/x/oauth2@v0.14.0
0.27.0

Open the chart page →

3,039
lingosubstratusVerified publisher0.2.11 of 1See more

lingo substratus 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/substratusai/lingo:v0.2.12c807cd41ed4
golang.org/x/oauth2@v0.18.0
0.27.0

Open the chart page →

1,482
scaleway-webhooksudaVerified publisher0.0.21 of 1See more

scaleway-webhook suda 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
golang.org/x/oauth2@v0.0.0-20191202225959-858c2ad4c8b6
0.27.0

Open the chart page →

2,354
nocodbsudermanjr0.1.01 of 1See more

nocodb sudermanjr 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
nocodb/nocodb:0.84.15f9b799933aa8
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

2,070
ingress-nginx-external-lbsuminhong1.0.02 of 2See more

ingress-nginx-external-lb suminhong 1.0.0

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.10.042b3f0e5d084
golang.org/x/oauth2@v0.17.0
0.27.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.044d1d0e9f19c
golang.org/x/oauth2@v0.17.0
0.27.0

Open the chart page →

2,094
do-operatorsupporttools0.1.71 of 2See more

do-operator supporttools 0.1.7

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
digitalocean/do-operator:v0.1.65e5deb4db76e
golang.org/x/oauth2@v0.0.0-20220909003341-f21342109be1
0.27.0

Open the chart page →

1,063
nfs-provisionersupporttools0.11.01 of 1See more

nfs-provisioner supporttools 0.11.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
openebs/provisioner-nfs:0.11.04f41dd782761
golang.org/x/oauth2@v0.8.0
0.27.0

Open the chart page →

2,680
push-to-k8ssupporttools1.1.21 of 1See more

push-to-k8s supporttools 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
cube8021/push-to-k8s:v1.1.21be9baf096ff
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

530
grafanasvtech-public-helm-charts1.0.01 of 2See more

grafana svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
golang.org/x/oauth2@v0.6.0
0.27.0

Open the chart page →

10,980
ingress-nginxsvtech-public-helm-charts1.0.01 of 1See more

ingress-nginx svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.9.45b161f051d01
golang.org/x/oauth2@v0.12.0
0.27.0

Open the chart page →

1,480
switchbladeswitchblade0.0.191 of 1See more

switchblade switchblade 0.0.19

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
public.ecr.aws/boundless-software/switchblade:release-v0.0.19-lcm01d8413d5075
golang.org/x/oauth2@v0.13.0
0.27.0

Open the chart page →

1,369
synadia-serversynadiaVerified publisher1.1.101 of 2See more

synadia-server synadia 1.1.10

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
golang.org/x/oauth2@v0.6.0
0.27.0

Open the chart page →

1,971
agentssynapse0.1.301 of 9See more

agents synapse 0.1.30

1 of the 9 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/agents:6e3887fc2a05aff0d159453cedbfbe5024b910bf81a9ebc899a4
golang.org/x/oauth2@v0.0.0-20221014153046-6fdb5e3db783
0.27.0

Open the chart page →

7,272
cctpsynapse0.3.01 of 4See more

cctp synapse 0.3.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/cctp-relayer:b5a1dd5288f1a18eb05994e130d626fed45a56fc2f1408c94168
golang.org/x/oauth2@v0.0.0-20221014153046-6fdb5e3db783
0.27.0

Open the chart page →

1,822
ccm-hcloudsyself1.0.111 of 1See more

ccm-hcloud syself 1.0.11

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hetznercloud/hcloud-cloud-controller-manager:v1.13.0ed5ee5f83973
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

1,713
topolvmsyself1.3.01 of 1See more

topolvm syself 1.3.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/topolvm/topolvm-with-sidecar:0.35.0b354978c440d
golang.org/x/oauth2@v0.20.0
0.27.0

Open the chart page →

3,599
lokit3n1.0.01 of 1See more

loki t3n 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/loki:1.5.0922b3f412fdd
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

2,876
promtailt3n1.0.01 of 1See more

promtail t3n 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/promtail:1.5.046e88d390cd6
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

2,828
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,490
paperless-ngx-backuptaskmediaVerified publisher1.1.01 of 1See more

paperless-ngx-backup taskmedia 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/taskmedia/kubectl-gpg-ncftp:main0fb2b5584f7c
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

518
act-runnertektonops0.1.21 of 2See more

act-runner tektonops 0.1.2

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
library/docker:23.0.6-dindafa5d5134900
golang.org/x/oauth2@v0.5.0
0.27.0

Open the chart page →

4,218
telegraf-ds-k3stelegraf-ds-k3s1.0.01 of 1See more

telegraf-ds-k3s telegraf-ds-k3s 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
library/telegraf:1.19.0-alpine794079a7f241
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

3,772
clickhousetemp-charts0.7.12 of 3See more

clickhouse temp-charts 0.7.1

2 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.16.1db7dde971407
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
altinity/metrics-exporter:0.16.185b4fdbae053
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

8,707
istio-discoverytemp-charts0.3.31 of 1See more

istio-discovery temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
istio/pilot:1.10.0294ca55bd1cc
golang.org/x/oauth2@v0.0.0-20210323180902-22b0adad7558
0.27.0

Open the chart page →

10,606
istio-ingresstemp-charts0.3.31 of 1See more

istio-ingress temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.088c6c693e67a
golang.org/x/oauth2@v0.0.0-20210323180902-22b0adad7558
0.27.0

Open the chart page →

10,551
temporaltemporal0.28.97 of 13See more

temporal temporal 0.28.9

7 of the 13 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
temporalio/admin-tools:1.22.0836af062af30
golang.org/x/oauth2@v0.4.0
0.27.0
temporalio/server:1.22.0ddeebf8bad8f
golang.org/x/oauth2@v0.4.0
0.27.0
temporalio/ui:2.16.2af9c9349708f
golang.org/x/oauth2@v0.6.0
0.27.0
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
golang.org/x/oauth2@v0.0.0-20211005180243-6b3c2da341f1
0.27.0

Open the chart page →

21,042
teredixteredix0.0.21 of 1See more

teredix teredix 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/shaharia-lab/teredix:0.0.2ec727be4417a
golang.org/x/oauth2@v0.15.0
0.27.0

Open the chart page →

1,077
gmctest-opea1.0.01 of 1See more

gmc test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
opea/gmcmanager:1.0514af17c495c
golang.org/x/oauth2@v0.20.0
0.27.0

Open the chart page →

517
local-path-provisionerth-chartsVerified publisher0.0.291 of 1See more

local-path-provisioner th-charts 0.0.29

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.299bebefa0b908
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

1,300
owncloudth-chartsVerified publisher0.2.11 of 1See more

owncloud th-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
owncloud/server:10.15.051d9b74fc2a8
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

10,101
mc-routerthl-chartsVerified publisher0.1.01 of 1See more

mc-router thl-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
itzg/mc-router:1.16.1bb552b59fb53
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

1,855
monitoringthl-chartsVerified publisher0.1.17 of 10See more

monitoring thl-charts 0.1.1

7 of the 10 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:8.5.042d3e6bc1865
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
grafana/loki:2.5.0f9ef133793af
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
grafana/promtail:2.4.2626900031c4e
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
quay.io/prometheus/prometheus:v2.34.0b37103e03399
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

18,940
pock-helm-charttinote-chart0.1.01 of 3See more

pock-helm-chart tinote-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
nginx/nginx-ingress:1.11.1eb5b4fd73325
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

6,889
grafanatnh5.3.01 of 1See more

grafana tnh 5.3.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

3,198
prometheustnh11.6.01 of 6See more

prometheus tnh 11.6.0

1 of the 6 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
prom/prometheus:v2.19.0bfad037f95e5
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

8,492

Container images carrying it

2,029 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
rancher/mirrored-cloud-provider-vsphere:v1.31.1febfd0517838
golang.org/x/oauth2@v0.21.0
0.27.0
1
rclone/rclone:1.63.008e1af3c8814
golang.org/x/oauth2@v0.6.0
0.27.0
1
rclone/rclone:1.57.01e6eeabddc01
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
1
rclone/rclone:1.56.0f2fc45c8bc57
golang.org/x/oauth2@v0.0.0-20210413134643-5e61552d6c78
0.27.0
1
replicated/replicated-sdk:1.0.0-beta.318751b4963250
golang.org/x/oauth2@v0.18.0
0.27.0
1
reportportal/migrations:5.7.0da5d8e1395fe
golang.org/x/oauth2@v0.0.0-20190402181905-9f3314589c9a
0.27.0
1
reportportal/service-index:5.0.112b27a2d7a87d
golang.org/x/oauth2@v0.0.0-20190402181905-9f3314589c9a
0.27.0
1
restic/restic:0.15.2579e4e6a4931
golang.org/x/oauth2@v0.6.0
0.27.0
1
robustadev/kubewatch:v2.9.00457a51e36e8
golang.org/x/oauth2@v0.21.0
0.27.0
1
rookout/k8s-operator:latest0d083f3ef1a7
golang.org/x/oauth2@v0.0.0-20191202225959-858c2ad4c8b6
0.27.0
1
runatlantis/atlantis:v0.16.145fbaf7e207c
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
ruslanguns/metadata-injector-operator:v0.0.16c77e4675e07
golang.org/x/oauth2@v0.21.0
0.27.0
1
ryuunosukeds3/orbital:latest0879f7261b10
golang.org/x/oauth2@v0.26.0
0.27.0
1
sarwansharma/minio:v359d1da9385d1
golang.org/x/oauth2@v0.0.0-20220411215720-9780585627b5
0.27.0
1
sealio/terraform-deployer:v1.5.7-seal.1b0389d9848a5
golang.org/x/oauth2@v0.4.0
0.27.0
1
selectdb/doris.k8s-operator:1.3.1919210765cb8
golang.org/x/oauth2@v0.7.0
0.27.0
1
semaphoreui/semaphore:v2.9.645b50bc11833f
golang.org/x/oauth2@v0.17.0
0.27.0
1
semitechnologies/weaviate:1.19.17a00d226f063
golang.org/x/oauth2@v0.0.0-20220822191816-0ebed06d0094
0.27.0
1
shaowenchen/ops-controller-manager:latest26da43bb5b66
golang.org/x/oauth2@v0.15.0
0.27.0
1
shaowenchen/ops-server:latest315444f703f4
golang.org/x/oauth2@v0.15.0
0.27.0
1
shlomibendavid/k8s-applier:0311240529a22ffbe0f04e
golang.org/x/oauth2@v0.10.0
0.27.0
1
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
golang.org/x/oauth2@v0.1.0
0.27.0
1
signoz/alertmanager:0.5.07bc7de2e33c2
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
1
sikalabs/slu:v0.72.07bd267f30247
golang.org/x/oauth2@v0.14.0
0.27.0
1
sikalabs/slu:v0.34.0fdc0c6711add
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
1
simpleidserver/faasprometheus:0.0.425e378d57d78
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
1
sirrend/helmup-engine:0.1.13699e79e3d4e2
golang.org/x/oauth2@v0.12.0
0.27.0
1
sky5367/locust-plugins-grafana:latestd51bf68d4b26
golang.org/x/oauth2@v0.18.0
0.27.0
1
skylenet/ethereum-testnet-homepage:latest8698903e379f
golang.org/x/oauth2@v0.0.0-20210628180205-a41e5a781914
0.27.0
1
slamdev/config-connector-templater:0.0.3a234541c9fa8
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
slamdev/external-secrets-operator:0.0.8855f6625dda4
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
slamdev/gke-preemptible-notifier:v0.0.3d5d6430108a3
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
softonic/node-policy-webhook:0.1.2ab6098c04a53
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
softonic/pod-defaulter:0.1.072017aed5902
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
softonic/preemptible-killer:1.2.6-294b87f1fb362
golang.org/x/oauth2@v0.0.0-20170807180024-9a379c6b3e95
0.27.0
1
softonic/rate-limit-operator:0.1.1910f6de37763
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
1
sorintlab/stolon:v0.16.0-pg1236b45c0f97fc
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
splunk/splunk-operator:2.0.0c4e0d3146226
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
1
springhack/frpc_ingress:latest4aceb821da88
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
sstarcher/helm-exporter:0.5.011769d01ba35
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
sstarcher/kube-ebs-tagger:0.1.01f8cae8cfa80
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
stakater/k8s-cost-optimizer:v0.0.5450415ce1b4e
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
1
stakater/konfigurator:v0.1.393409565b1ef5
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
stakater/reloader:v1.0.15f4b87a8e56d4
golang.org/x/oauth2@v0.4.0
0.27.0
1
stakater/tronador:v0.0.137ce9acf2722
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
stakater/whitelister:v0.0.1639107924063e
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
stakater/workshop-operator:v0.0.3897bf456cc97c
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
statcan/ingress-istio-controller:1.4.0d7d6bd180c46
golang.org/x/oauth2@v0.0.0-20200902213428-5d25da1a8d43
0.27.0
1
statcan/kubernetes-sidecar-terminator:2.0.2bc361ee7748f
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.