StackRadar

CVE-2025-22868

High

Advisory

Published 26 Feb 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
56th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,632
of 17,792 indexed, latest versions
Container images
2,029
deployed by those charts
Fix available
1 of 1
affected package

golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability

Carried by container images the latest versions of 1,632 of 17,792 indexed charts deploy, on 2,029 images.

Affected packageAffected versionsFixed inImages
golang.org/x/oauth2golangv0.0.0-20170629032740-5432cc9688e6, v0.0.0-20170807180024-9a379c6b3e95, v0.0.0-20180620175406-ef147856a6dd, v0.0.0-20180724155351-3d292e4d0cdc+72 more0.27.02,029
OSV records
GHSA-6v2p-p543-phr9
Also known as
GO-2025-3488

Charts affected

1,632 by stars
ChartLatestAffected imagesRadar Score
ilum-otel-collectorilumVerified publisher0.1.01 of 1See more

ilum-otel-collector ilum 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.113.05ac3e0ba2b0b
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

1,394
kore-boardimprowisedVerified publisher0.5.83 of 4See more

kore-board improwised 0.5.8

3 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.backend:v0.5.5455f6e7a26fd
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0
ghcr.io/kore3lab/kore-board.metrics-scraper:v0.5.547f88b18fb7c
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

16,230
fpga-cloudinaccelVerified publisher1.2.23 of 3See more

fpga-cloud inaccel 1.2.2

3 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
inaccel/cloud-init:latesta5d3d0af05c1
golang.org/x/oauth2@v0.15.0
0.27.0
inaccel/device-selector:latest44b4f274f40b
golang.org/x/oauth2@v0.14.0
0.27.0
inaccel/kubevirt-hack:latestbdfd61803a70
golang.org/x/oauth2@v0.15.0
0.27.0

Open the chart page →

3,165
fpga-operatorinaccelVerified publisher2.8.21 of 7See more

fpga-operator inaccel 2.8.2

1 of the 7 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
inaccel/reef:latestc967218739f3
golang.org/x/oauth2@v0.15.0
0.27.0

Open the chart page →

5,770
infisical-csi-providerinfisical-charts0.2.31 of 1See more

infisical-csi-provider infisical-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
infisical/infisical-csi-provider:v0.0.9e3390e677db6
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

636
chronografinfluxdata1.2.61 of 1See more

chronograf influxdata 1.2.6

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
library/chronograf:1.9.496d8a3f65a4f
golang.org/x/oauth2@v0.0.0-20210427180440-81ed05c6b58c
0.27.0

Open the chart page →

2,204
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

10,554
lakefsinseefrlab0.0.61 of 2See more

lakefs inseefrlab 0.0.6

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
treeverse/lakefs:0.69.0478f37a6cffc
golang.org/x/oauth2@v0.0.0-20220411215720-9780585627b5
0.27.0

Open the chart page →

2,652
instemmingserviceinstemmingservice1.0.01 of 3See more

instemmingservice instemmingservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/instemmingservice-php:latest4ffe222b3e3a
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

7,519
consulintelVerified publisher0.8.12 of 2See more

consul intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hashicorp/consul:1.14.2e38576edcdfd
golang.org/x/oauth2@v0.0.0-20220909003341-f21342109be1
0.27.0
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

5,403
evi-consulintelVerified publisher3.0.32 of 2See more

evi-consul intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hashicorp/consul:1.14.2e38576edcdfd
golang.org/x/oauth2@v0.0.0-20220909003341-f21342109be1
0.27.0
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

5,403
evi-kesintelVerified publisher3.0.31 of 1See more

evi-kes intel 3.0.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
minio/kes:2023-04-03T16-41-28Zf93c2d9088df
golang.org/x/oauth2@v0.3.0
0.27.0

Open the chart page →

1,765
evi-miniointelVerified publisher3.0.31 of 2See more

evi-minio intel 3.0.3

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
golang.org/x/oauth2@v0.4.0
0.27.0

Open the chart page →

7,471
evi-vaultintelVerified publisher3.0.32 of 2See more

evi-vault intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
golang.org/x/oauth2@v0.0.0-20220524215830-622c5d57e401
0.27.0
hashicorp/vault-k8s:1.1.0844337076b72
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

4,487
intel-gaudi-resource-driverintelVerified publisher0.3.01 of 1See more

intel-gaudi-resource-driver intel 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
intel/intel-gaudi-resource-driver:v0.3.0ac758c14c2de
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

565
intel-qat-resource-driverintelVerified publisher0.1.01 of 1See more

intel-qat-resource-driver intel 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
intel/intel-qat-resource-driver:v0.1.0ac7616986a2b
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

609
kesintelVerified publisher0.8.31 of 1See more

kes intel 0.8.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
minio/kes:v0.22.255f3aef5803e
golang.org/x/oauth2@v0.0.0-20221014153046-6fdb5e3db783
0.27.0

Open the chart page →

3,577
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization:3.03426deb77337
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

11,125
tcs-issuerintelVerified publisher0.5.01 of 2See more

tcs-issuer intel 0.5.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
intel/trusted-certificate-issuer:0.5.0591a9db4a427
golang.org/x/oauth2@v0.1.0
0.27.0

Open the chart page →

5,999
vaultintelVerified publisher0.8.12 of 2See more

vault intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
golang.org/x/oauth2@v0.0.0-20220524215830-622c5d57e401
0.27.0
hashicorp/vault-k8s:1.1.0844337076b72
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

4,487
gravity-initinvisiblVerified publisher1.0.91 of 1See more

gravity-init invisibl 1.0.9

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
invisibl/gravity-init:v1.0.91a970f84178b
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

2,006
identity-managerinvisiblVerified publisher1.0.01 of 1See more

identity-manager invisibl 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
invisibl/identity-manager:1.0.01029f4fe20eb
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0

Open the chart page →

2,162
karpenteriometeVerified publisher0.19.31 of 1See more

karpenter iomete 0.19.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
public.ecr.aws/karpenter/controller:v0.19.3f0e5ab60b2df
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

1,555
istio-aws-private-ingress-customizedistio-aws-private-ingress-customized1.0.01 of 1See more

istio-aws-private-ingress-customized istio-aws-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
golang.org/x/oauth2@v0.7.0
0.27.0

Open the chart page →

5,579
istio-azure-private-ingress-customizedistio-azure-private-ingress-customized1.0.01 of 1See more

istio-azure-private-ingress-customized istio-azure-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
golang.org/x/oauth2@v0.7.0
0.27.0

Open the chart page →

5,579
istio-ratelimit-operatoristio-ratelimit-operator2.16.11 of 1See more

istio-ratelimit-operator istio-ratelimit-operator 2.16.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
zufardhiyaulhaq/istio-ratelimit-operator:v2.15.0692cfc9d6614
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

745
hetzner-dyndnsitsmethemojoVerified publisher1.4.01 of 1See more

hetzner-dyndns itsmethemojo 1.4.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hashicorp/terraform:1.9.7b77efab1a448
golang.org/x/oauth2@v0.18.0
0.27.0

Open the chart page →

1,843
rclonejacobcolvinVerified publisher1.0.11 of 1See more

rclone jacobcolvin 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
rclone/rclone:1.63.008e1af3c8814
golang.org/x/oauth2@v0.6.0
0.27.0

Open the chart page →

2,150
twitch-predictions-recorderjacobcolvinVerified publisher0.1.01 of 1See more

twitch-predictions-recorder jacobcolvin 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
golang.org/x/oauth2@v0.1.0
0.27.0

Open the chart page →

2,669
wireguard-operatorjacobcolvinVerified publisher0.2.01 of 2See more

wireguard-operator jacobcolvin 0.2.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/jodevsa/wireguard-operator/manager:v2.0.2839412bdd403b
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

840
koptimizejaconiVerified publisher0.5.42 of 2See more

koptimize jaconi 0.5.4

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
alpine/k8s:1.27.321b24e6bf801
golang.org/x/oauth2@v0.8.0
0.27.0
ghcr.io/jaconi-io/koptimize:1.2.5aca1bbd609b6
golang.org/x/oauth2@v0.7.0
0.27.0

Open the chart page →

5,730
mini-infrajaeki0.1.01 of 4See more

mini-infra jaeki 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.13.101b33357b3595
golang.org/x/oauth2@v0.5.0
0.27.0

Open the chart page →

1,746
janus-shieldjanus-shield1.0.01 of 2See more

janus-shield janus-shield 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
quay.io/cilium/tetragon:v1.1.096fac2482898
golang.org/x/oauth2@v0.17.0
0.27.0

Open the chart page →

2,408
javascriptweeklyjavascriptweekly2.1.01 of 1See more

javascriptweekly javascriptweekly 2.1.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
zufardhiyaulhaq/javascriptweekly:v2.1.086424bd0b2a4
golang.org/x/oauth2@v0.0.0-20220411215720-9780585627b5
0.27.0

Open the chart page →

1,237
sql-exporterjdstoneVerified publisher0.2.11 of 1See more

sql-exporter jdstone 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
burningalchemist/sql_exporter:0.16.0b8e4757c7def
golang.org/x/oauth2@v0.23.0
0.27.0

Open the chart page →

885
jx-app-athensjenkins-x0.0.181 of 1See more

jx-app-athens jenkins-x 0.0.18

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
gomods/athens:v0.8.1d714c7ff0231
golang.org/x/oauth2@v0.0.0-20190226205417-e64efc72b421
0.27.0

Open the chart page →

4,232
jx-app-datadogjenkins-x0.0.101 of 2See more

jx-app-datadog jenkins-x 0.0.10

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
datadog/agent:6aad9994de6a7
golang.org/x/oauth2@v0.18.0
0.27.0

Open the chart page →

4,052
jx-app-flaggerjenkins-x0.0.52 of 2See more

jx-app-flagger jenkins-x 0.0.5

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
grafana/grafana:6.5.1befcd84da2c1
golang.org/x/oauth2@v0.0.0-20190319182350-c85d3e98c914
0.27.0
weaveworks/flagger:1.0.0-rc.5174307de1b36
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0

Open the chart page →

6,035
knative-servingjenkins-x0.19.124 of 4See more

knative-serving jenkins-x 0.19.12

4 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned1e3db4f2eeed
golang.org/x/oauth2@v0.0.0-20200902213428-5d25da1a8d43
0.27.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinneddb6ceff2aab4
golang.org/x/oauth2@v0.0.0-20200902213428-5d25da1a8d43
0.27.0
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedb2cd45b8a8a4
golang.org/x/oauth2@v0.0.0-20200902213428-5d25da1a8d43
0.27.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedd27b4495ccc3
golang.org/x/oauth2@v0.0.0-20200902213428-5d25da1a8d43
0.27.0

Open the chart page →

9,724
ingress-nginxjfrog4.5.22 of 2See more

ingress-nginx jfrog 4.5.2

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
golang.org/x/oauth2@v0.3.0
0.27.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

3,798
vaultjfrog0.25.02 of 2See more

vault jfrog 0.25.0

2 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
hashicorp/vault:1.14.0b2177a8bfe85
golang.org/x/oauth2@v0.8.0
0.27.0
hashicorp/vault-k8s:1.2.14500e988b7ce
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0

Open the chart page →

3,977
haven-complinacy-dashboardjolle-devVerified publisher1.0.01 of 2See more

haven-complinacy-dashboard jolle-dev 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
j0113/haven-compliancy-dashboard:1.3696cb8ca9f4e
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0

Open the chart page →

3,842
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0

Open the chart page →

16,680
k10appk10app0.2.11 of 11See more

k10app k10app 0.2.1

1 of the 11 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/k10app/businit:latest94c9a3e799c2
golang.org/x/oauth2@v0.0.0-20211104180415-d3ed0bb246c8
0.27.0

Open the chart page →

10,570
k8quk8qu1.4.01 of 1See more

k8qu k8qu 1.4.0

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/gijsvandulmen/k8qu:1.4e897b18db13d
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

568
deploydefenderk8s-custom-controllerVerified publisher0.1.31 of 1See more

deploydefender k8s-custom-controller 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

1,902
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
golang.org/x/oauth2@v0.21.0
0.27.0

Open the chart page →

8,899
maddyk8s-home-lab-repo4.2.11 of 1See more

maddy k8s-home-lab-repo 4.2.1

1 of the 1 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
foxcpp/maddy:0.8.2eeb5813fc4d1
golang.org/x/oauth2@v0.25.0
0.27.0

Open the chart page →

1,059
k8s-jacoco-operatork8s-jacoco-operator0.4.01 of 4See more

k8s-jacoco-operator k8s-jacoco-operator 0.4.0

1 of the 4 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

2,440
k8s-mutating-webhookk8s-mutating-webhook0.3.01 of 2See more

k8s-mutating-webhook k8s-mutating-webhook 0.3.0

1 of the 2 container images this version deploys carry CVE-2025-22868.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
golang.org/x/oauth2@v0.10.0
0.27.0

Open the chart page →

2,010

Container images carrying it

2,029 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
twinproduction/aws-eks-asg-rolling-update-handler:v1.7.08f38c206972e
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
twinproduction/gatus:v3.8.049dc0d9b2e2c
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
1
ubercadence/server:0.23.22ac5491d13bb
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
uffizzi/uffizzi-cluster-operator:v1.4.514e528bbd926
golang.org/x/oauth2@v0.4.0
0.27.0
1
uffizzi/uffizzi-cluster-operator:v1.6.55ca448a08783
golang.org/x/oauth2@v0.4.0
0.27.0
1
utho/utho-app-operator:0.1.46e8a690e8b7a
golang.org/x/oauth2@v0.21.0
0.27.0
1
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
1
veecode/devportal-admin-ui:0.4.30c69fd286b489
golang.org/x/oauth2@v0.10.0
0.27.0
1
velero/velero:v1.9.0277fbfaf8dcf
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
1
velero/velero:v1.8.18d784580931c
golang.org/x/oauth2@v0.0.0-20210628180205-a41e5a781914
0.27.0
1
victoriametrics/operator:v0.47.271be93cfafb6
golang.org/x/oauth2@v0.21.0
0.27.0
1
victoriametrics/victoria-metrics:v1.93.577a9815d0640
golang.org/x/oauth2@v0.12.0
0.27.0
1
victoriametrics/victoria-metrics:v1.95.1f52723a08a44
golang.org/x/oauth2@v0.14.0
0.27.0
1
victoriametrics/vmalert:v1.96.0150cd08fde94
golang.org/x/oauth2@v0.15.0
0.27.0
1
vikunja/api:0.17.18cba0520bf8c
golang.org/x/oauth2@v0.0.0-20210427180440-81ed05c6b58c
0.27.0
1
vineyardcloudnative/vineyard-operator:latest9d419aa18faa
golang.org/x/oauth2@v0.13.0
0.27.0
1
vmware/kube-fluentd-operator:latestf028c138a5f4
golang.org/x/oauth2@v0.8.0
0.27.0
1
volcanosh/vc-controller-manager:v1.12.13815883c32f6
golang.org/x/oauth2@v0.23.0
0.27.0
1
volcanosh/vc-scheduler:v1.12.1b24ea8af2d16
golang.org/x/oauth2@v0.23.0
0.27.0
1
volcanosh/vc-webhook-manager:v1.12.1f8b50088a732
golang.org/x/oauth2@v0.23.0
0.27.0
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
vultr/vultr-csi:v0.3.041d26735d437
golang.org/x/oauth2@v0.0.0-20210819190943-2bc19b11175f
0.27.0
1
wallarm/ebpf-agent:0.11.0-rc0c8920e60c726
golang.org/x/oauth2@v0.18.0
0.27.0
1
wallarm/ingress-controller:4.8.0-1a591b9c91570
golang.org/x/oauth2@v0.8.0
0.27.0
1
wallarm/kong-kubernetes-ingress-controller:2.8b55ff6cecbd5
golang.org/x/oauth2@v0.3.0
0.27.0
1
wateim/lighthouse-launch:latest2520149ee574
golang.org/x/oauth2@v0.23.0
0.27.0
1
wavefronthq/wavefront-hpa-adapter:0.9.12af5fef9a4768
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
wazuh/wazuh-manager:4.11.11da5c38c6a78
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
wazuh/wazuh-manager:4.4.121994f40e0da
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
wazuh/wazuh-manager:4.14.45a065930682d
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
wazuh/wazuh-manager:4.14.3f09282d281f6
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
weaveworks/flagger:1.0.0-rc.5174307de1b36
golang.org/x/oauth2@v0.0.0-20190604053449-0f29369cfe45
0.27.0
1
weaveworks/flagger:0.19.0a9c2e9df4227
golang.org/x/oauth2@v0.0.0-20190402181905-9f3314589c9a
0.27.0
1
webdevops/azure-keyvault-exporter:24.9.1f333704ecd60
golang.org/x/oauth2@v0.23.0
0.27.0
1
webdevops/azure-scheduledevents-manager:24.9.0-kubernetes7acd46a8a972
golang.org/x/oauth2@v0.21.0
0.27.0
1
webdevops/kube-pool-manager:24.9.04fad7e14ad67
golang.org/x/oauth2@v0.23.0
0.27.0
1
weblate/weblate:3.11.3-182848df56ecd
golang.org/x/oauth2@v0.0.0-20181106182150-f42d05182288
0.27.0
1
wener/frpc:v0.37.0cc9fd4da44c0
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
wener/frps:v0.37.05c92cc9e8597
golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d
0.27.0
1
willnorris/imageproxy:latest21d0c90f4c31
golang.org/x/oauth2@v0.0.0-20210805134026-6f1e6394065a
0.27.0
1
wuhan005/forklift:daemon4e6da210e449
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
wuhan005/forklift:controllerbfbe82d59850
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
golang.org/x/oauth2@v0.0.0-20210514164344-f6687ab2804c
0.27.0
1
zufardhiyaulhaq/community-operator-v2:v1.0.07f1bbbe114eb
golang.org/x/oauth2@v0.0.0-20220411215720-9780585627b5
0.27.0
1
zufardhiyaulhaq/devopsweekly:v2.1.046625567fb60
golang.org/x/oauth2@v0.0.0-20220411215720-9780585627b5
0.27.0
1
zufardhiyaulhaq/goweekly:v2.0.008dcc130fbea
golang.org/x/oauth2@v0.0.0-20220411215720-9780585627b5
0.27.0
1
zufardhiyaulhaq/istio-ratelimit-operator:v2.15.0692cfc9d6614
golang.org/x/oauth2@v0.0.0-20220223155221-ee480838109b
0.27.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.