StackRadar

CVE-2025-22869

High

Advisory

Published 26 Feb 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
58th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,665
of 17,781 indexed, latest versions
Container images
1,928
deployed by those charts
Fix available
8 of 8
affected packages

golang.org/x/crypto Vulnerable to Denial of Service (DoS) via Slow or Incomplete Key Exchange

Carried by container images the latest versions of 1,665 of 17,781 indexed charts deploy, on 1,928 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+137 more0.35.01,928
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-82.module+el8.10.0+22931+799fd8061
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+22931+799fd8061
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+22931+799fd8061
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+22931+799fd8061
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-6.module+el8.10.0+22931+799fd8061
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.5-3.module+el8.10.0+22931+799fd8061
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+22931+799fd8061
OSV records
GHSA-hcg3-q754-cr77RHSA-2025:3210
Also known as
GO-2025-3487, RHSA-2025:3268

Charts affected

1,665 by stars
ChartLatestAffected imagesRadar Score
labelsmanager-controllerdeliveryheroVerified publisher1.0.41 of 1See more

labelsmanager-controller deliveryhero 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
thomasnyambati/labelsmanager-controller:1.0.0148ae3f99fea
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.35.0

Open the chart page →

2,305
weblatedeliveryheroVerified publisher0.3.21 of 3See more

weblate deliveryhero 0.3.2

1 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.35.0

Open the chart page →

7,984
permission-managerdevopstalesVerified publisher1.8.01 of 1See more

permission-manager devopstales 1.8.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.35.0

Open the chart page →

2,266
trivy-operatordevopstalesVerified publisher2.5.01 of 1See more

trivy-operator devopstales 2.5.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
devopstales/trivy-operator:2.575136aa7a26e
golang.org/x/crypto@v0.3.0
0.35.0

Open the chart page →

5,598
calicodevtron0.1.13 of 4See more

calico devtron 0.1.1

3 of the 4 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0

Open the chart page →

10,071
clairdevtron0.1.141 of 2See more

clair devtron 0.1.14

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0

Open the chart page →

6,237
dex-serverdex-server1.19.11 of 3See more

dex-server dex-server 1.19.1

1 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dexidp/dex:v2.39.1-distroless43655afd1a8f
golang.org/x/crypto@v0.18.0
0.35.0

Open the chart page →

2,238
digispoof-interfacedigispoof-interface1.0.01 of 3See more

digispoof-interface digispoof-interface 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.35.0

Open the chart page →

7,779
dnation-pingdnationcloud0.1.93 of 5See more

dnation-ping dnationcloud 0.1.9

3 of the 5 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:7.3.5511bc20bfcd1
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.35.0
prom/blackbox-exporter:v0.18.01ffc3f109eb3
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.35.0
prom/prometheus:v2.21.0d43417c260e5
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0

Open the chart page →

10,454
docker-in-dockerdocker-in-docker0.0.31 of 2See more

docker-in-docker docker-in-docker 0.0.3

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
library/docker:24.0.2-dind1d148deae16a
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

2,576
dockyarddockyardVerified publisher0.4.01 of 1See more

dockyard dockyard 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/kgma74/dockyard:0.4.0b40439329191
golang.org/x/crypto@v0.27.0
0.35.0

Open the chart page →

1,542
thermitedollarshaveclubOfficialVerified publisher0.1.171 of 1See more

thermite dollarshaveclub 0.1.17

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dollarshaveclub/thermite:0.0.31663cbf25fcfe
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0

Open the chart page →

2,732
archerydoubanVerified publisher0.4.31 of 6See more

archery douban 0.4.3

1 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
hhyo/archery:v1.9.11aa41843419e
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0

Open the chart page →

5,853
dragonfly-stackdragonflyVerified publisher0.1.23 of 7See more

dragonfly-stack dragonfly 0.1.2

3 of the 7 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
golang.org/x/crypto@v0.17.0
0.35.0
dragonflyoss/manager:v2.1.49c3ef7f10698d
golang.org/x/crypto@v0.17.0
0.35.0
dragonflyoss/scheduler:v2.1.49523785c77787
golang.org/x/crypto@v0.24.0
0.35.0

Open the chart page →

18,376
gethdysnixVerified publisher1.1.21 of 1See more

geth dysnix 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ethereum/client-go:v1.14.8886ec69b35b0
golang.org/x/crypto@v0.22.0
0.35.0

Open the chart page →

1,624
glideeinstackOfficialVerified publisher0.0.21 of 1See more

glide einstack 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/einstack/glide:0.0.1-alpineab3f7d0a1d50
golang.org/x/crypto@v0.16.0
0.35.0

Open the chart page →

1,335
elchi-stackelchi1.13.02 of 10See more

elchi-stack elchi 1.13.0

2 of the 10 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
library/mongo:6.0.12646902910d6a
golang.org/x/crypto@v0.14.0
0.35.0
otel/opentelemetry-collector-contrib:0.89.0995f17004231
golang.org/x/crypto@v0.15.0
0.35.0

Open the chart page →

15,383
navidromeemmas-chartsVerified publisher0.0.61 of 1See more

navidrome emmas-charts 0.0.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
deluan/navidrome:0.50.02cf4442b0099
golang.org/x/crypto@v0.15.0
0.35.0

Open the chart page →

2,129
enbuildenbuildVerified publisher0.0.501 of 6See more

enbuild enbuild 0.0.50

1 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
golang.org/x/crypto@v0.0.0-20190530122614-20be4c3c3ed5
0.35.0

Open the chart page →

31,510
nexus-operatorepmdedp-devVerified publisher2.11.0-MDTU-DDM-SNAPSHOT.11 of 1See more

nexus-operator epmdedp-dev 2.11.0-MDTU-DDM-SNAPSHOT.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
epamedp/nexus-operator:2.11.0-MDTU-DDM-SNAPSHOT.1449a53804699
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0

Open the chart page →

2,266
beaconchain-explorerethereum-helm-chartsVerified publisher0.1.61 of 2See more

beaconchain-explorer ethereum-helm-charts 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
golang.org/x/crypto@v0.32.0
0.35.0

Open the chart page →

3,048
genesis-generatorethereum-helm-chartsVerified publisher0.2.31 of 2See more

genesis-generator ethereum-helm-charts 0.2.3

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
skylenet/ethereum-genesis-generator:latest210353ce7c89
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0

Open the chart page →

3,135
ipfs-clusterethereum-helm-chartsVerified publisher0.1.141 of 3See more

ipfs-cluster ethereum-helm-charts 0.1.14

1 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.35.0

Open the chart page →

4,614
github-actions-runner-operatorevryfs-ossVerified publisher2.8.11 of 1See more

github-actions-runner-operator evryfs-oss 2.8.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/evryfs/github-actions-runner-operator:v0.11.16b084e0bd082
golang.org/x/crypto@v0.11.0
0.35.0

Open the chart page →

1,236
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
factly/vidcheck-server:0.12.087064eb0463c
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0

Open the chart page →

3,617
featurehubfeaturehub4.1.62 of 7See more

featurehub featurehub 4.1.6

2 of the 7 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
library/nats:2.10.5-alpine85319e5e541b
golang.org/x/crypto@v0.15.0
0.35.0
natsio/nats-box:0.14.1a67913df95f1
golang.org/x/crypto@v0.13.0
0.35.0

Open the chart page →

8,240
fission-corefission-chartsVerified publisher1.14.12 of 3See more

fission-core fission-charts 1.14.1

2 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
fission/fission-bundle:1.14.13fcfd8a0fa5d
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
fission/pre-upgrade-checks:1.14.1fa0f24cdb9cd
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

7,104
openldapfluktuid0.1.11 of 2See more

openldap fluktuid 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
golang.org/x/crypto@v0.0.0-20201012173705-84dcc777aaee
0.35.0

Open the chart page →

3,313
free5gcfree5gcVerified publisher0.1.311 of 12See more

free5gc free5gc 0.1.3

11 of the 12 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
free5gc/amf:v3.4.31bc96ff5a2a6
golang.org/x/crypto@v0.22.0
0.35.0
free5gc/ausf:v3.4.3687ff4daf5da
golang.org/x/crypto@v0.21.0
0.35.0
free5gc/chf:v3.4.3e2a4dd98a4ed
golang.org/x/crypto@v0.22.0
0.35.0
free5gc/nrf:v3.4.399e46b860efb
golang.org/x/crypto@v0.21.0
0.35.0
free5gc/nssf:v3.4.3dfe8c68c04b4
golang.org/x/crypto@v0.21.0
0.35.0
free5gc/pcf:v3.4.3f712e8ecd927
golang.org/x/crypto@v0.21.0
0.35.0
free5gc/smf:v3.4.360e38baa4b10
golang.org/x/crypto@v0.21.0
0.35.0
free5gc/udm:v3.4.32f68df062a50
golang.org/x/crypto@v0.21.0
0.35.0
free5gc/udr:v3.4.3c0783bcdcbdc
golang.org/x/crypto@v0.21.0
0.35.0
free5gc/upf:v3.4.3b6b362a39fdd
golang.org/x/crypto@v0.21.0
0.35.0
free5gc/webui:v3.4.39adeb18492cb
golang.org/x/crypto@v0.21.0
0.35.0

Open the chart page →

10,693
fsmfsmOfficialVerified publisher0.2.112 of 5See more

fsm fsm 0.2.11

2 of the 5 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
flomesh/fsm-ingress-pipy:0.2.11cc39c96711c4
golang.org/x/crypto@v0.9.0
0.35.0
flomesh/fsm-manager:0.2.1122f849c70b25
golang.org/x/crypto@v0.9.0
0.35.0

Open the chart page →

4,215
adguard-homegabe565Verified publisher0.3.251 of 2See more

adguard-home gabe565 0.3.25

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.56c64a0b37f7b9
golang.org/x/crypto@v0.31.0
0.35.0

Open the chart page →

964
home-assistantgabe565Verified publisher0.17.01 of 1See more

home-assistant gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:latest612d76760b54
golang.org/x/crypto@v0.26.0
0.35.0

Open the chart page →

2,133
memosgabe565Verified publisher0.17.01 of 1See more

memos gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/usememos/memos:0.24.04723d86e6797
golang.org/x/crypto@v0.32.0
0.35.0

Open the chart page →

1,323
dexgabibbo974.0.41 of 1See more

dex gabibbo97 4.0.4

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.35.0

Open the chart page →

3,391
gboxgboxVerified publisher1.0.51 of 2See more

gbox gbox 1.0.5

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
gboxproxy/gbox:v1.0.63a9f4a711d5c
golang.org/x/crypto@v0.0.0-20220210151621-f4118a5b28e2
0.35.0

Open the chart page →

2,521
adguard-homegeek-cookbookVerified publisher5.5.21 of 2See more

adguard-home geek-cookbook 5.5.2

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.7b9974aed13d0
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.35.0

Open the chart page →

1,742
alertmanager-botgeek-cookbookVerified publisher6.4.21 of 1See more

alertmanager-bot geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
metalmatze/alertmanager-bot:0.4.3426bc2ca7586
golang.org/x/crypto@v0.0.0-20181029021203-45a5f77698d3
0.35.0

Open the chart page →

3,586
filebrowsergeek-cookbookVerified publisher1.4.21 of 1See more

filebrowser geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.18.04fcd47af573c
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.35.0

Open the chart page →

3,474
focalboardgeek-cookbookVerified publisher4.4.21 of 1See more

focalboard geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
mattermost/focalboard:0.9.031078df7a3c8
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.35.0

Open the chart page →

3,631
otel-collectorgeek-cookbookVerified publisher1.2.21 of 1See more

otel-collector geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.46.0ba173aa85f3f
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.35.0

Open the chart page →

2,556
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.35.0

Open the chart page →

8,029
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0

Open the chart page →

15,856
uptime-kumageek-cookbookVerified publisher1.4.21 of 1See more

uptime-kuma geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.17.1a4eab252e5a2
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.35.0

Open the chart page →

5,079
gitea-sonarqube-botgitea-sonarqube-botOfficialVerified publisher0.4.01 of 1See more

gitea-sonarqube-bot gitea-sonarqube-bot 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
justusbunsi/gitea-sonarqube-bot:v0.4.018dd43b470d9
golang.org/x/crypto@v0.29.0
0.35.0

Open the chart page →

1,145
temporalglasskubeVerified publisher0.45.2-gk.110 of 14See more

temporal glasskube 0.45.2-gk.1

10 of the 14 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:11.0.00dc5a246ab16
golang.org/x/crypto@v0.21.0
0.35.0
temporalio/admin-tools:1.25.0-tctl-1.18.1-cli-1.0.0cda4901bab53
golang.org/x/crypto@v0.25.0
0.35.0
temporalio/server:1.25.08a5798191dea
golang.org/x/crypto@v0.25.0
0.35.0
temporalio/ui:2.30.25c2a3645d09c
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.74.0d55631c7a740
golang.org/x/crypto@v0.23.0
0.35.0
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
golang.org/x/crypto@v0.18.0
0.35.0
quay.io/prometheus/node-exporter:v1.8.1fa7fa12a57ef
golang.org/x/crypto@v0.21.0
0.35.0
quay.io/prometheus/prometheus:v2.53.0075b1ba2c4eb
golang.org/x/crypto@v0.24.0
0.35.0
quay.io/prometheus/pushgateway:v1.8.0c159e946abf4
golang.org/x/crypto@v0.21.0
0.35.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.12.0b401fae262a5
golang.org/x/crypto@v0.21.0
0.35.0

Open the chart page →

16,346
gorse-enterprisegorse-io0.4.23 of 5See more

gorse-enterprise gorse-io 0.4.2

3 of the 5 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
zhenghaoz/gorse-master:0.4.12033046b432ec
golang.org/x/crypto@v0.0.0-20221010152910-d6f0a8c073c2
0.35.0
zhenghaoz/gorse-server:0.4.1239c565685b01
golang.org/x/crypto@v0.0.0-20221010152910-d6f0a8c073c2
0.35.0
zhenghaoz/gorse-worker:0.4.12f7739f64c9b0
golang.org/x/crypto@v0.0.0-20221010152910-d6f0a8c073c2
0.35.0

Open the chart page →

4,380
meta-monitoringgrafana1.3.01 of 2See more

meta-monitoring grafana 1.3.0

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/alloy:v1.4.306bdcbb51fc2
golang.org/x/crypto@v0.27.0
0.35.0

Open the chart page →

3,518
phlaregrafana0.5.41 of 1See more

phlare grafana 0.5.4

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/phlare:0.5.1330f990cdad9
golang.org/x/crypto@v0.4.0
0.35.0

Open the chart page →

2,084
armada-operatorgresearch0.7.01 of 2See more

armada-operator gresearch 0.7.0

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
kubebuilder/kube-rbac-proxy:v0.16.03c4f708c6204
golang.org/x/crypto@v0.19.0
0.35.0

Open the chart page →

1,567
carettagroundcover0.0.161 of 3See more

caretta groundcover 0.0.16

1 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/groundcover/grafana:9.3.18c65b333a3d3
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.35.0

Open the chart page →

6,799

Container images carrying it

1,928 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
ciscolabs/rtsp-server:latestb59fc10bb821
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0
3
derailed/popeye:v0.22.18e68e22c7663
golang.org/x/crypto@v0.32.0
0.35.0
3
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.35.0
3
grafana/grafana:8.2.500568d89c4f8
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
3
grafana/grafana:11.0.00dc5a246ab16
golang.org/x/crypto@v0.21.0
0.35.0
3
grafana/grafana:11.3.0a0f881232a6f
golang.org/x/crypto@v0.27.0
0.35.0
3
grafana/loki:3.4.258a6c186ce78
golang.org/x/crypto@v0.32.0
0.35.0
3
grafana/promtail:2.4.2626900031c4e
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.35.0
3
groundnuty/k8s-wait-for:v2.0c14d7271e401
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.35.0
3
library/docker:20.10-dind:20-dindaf96c680a7e1
golang.org/x/crypto@v0.2.0
0.35.0
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
golang.org/x/crypto@v0.0.0-20201124201722-c8d3bf9c5392
0.35.0
3
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.35.0
3
natsio/nats-box:0.19.28031d190c7ee
golang.org/x/crypto@v0.31.0
0.35.0
3
oryd/hydra:v2.2.02c93beb5e5f2
golang.org/x/crypto@v0.17.0
0.35.0
3
prom/alertmanager:v0.28.0d5155cfac40a
golang.org/x/crypto@v0.31.0
0.35.0
3
prom/prometheus:v3.0.1565ee8650122
golang.org/x/crypto@v0.28.0
0.35.0
3
prom/prometheus:v2.19.0bfad037f95e5
golang.org/x/crypto@v0.0.0-20200422194213-44a606286825
0.35.0
3
prom/statsd-exporter:v0.28.04e7a1f00b9b2
golang.org/x/crypto@v0.27.0
0.35.0
3
rss3/op-node:d2c5ced00901227473fc196fda838191f0cb4e02d1d2ae6efd05
golang.org/x/crypto@v0.16.0
0.35.0
3
stakater/proxyinjector:v0.0.2383fef483d497
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.35.0
3
vikunja/vikunja:0.24.6ed1f3ed467fe
golang.org/x/crypto@v0.27.0
0.35.0
3
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
golang.org/x/crypto@v0.31.0
0.35.0
3
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0
3
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.35.0
3
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
golang.org/x/crypto@v0.7.0
0.35.0
3
quay.io/devtron/ai-agent:0.0.16545dac92173
golang.org/x/crypto@v0.24.0
0.35.0
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.35.0
3
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
3
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
3
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0
3
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/crypto@v0.0.0-20220112180741-5e0467b6c7ce
0.35.0
3
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/crypto@v0.14.0
0.35.0
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.35.0
3
quay.io/devtron/jcmhproxy-ingress:v0.14.64286bcccda3e
golang.org/x/crypto@v0.18.0
0.35.0
3
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
golang.org/x/crypto@v0.7.0
0.35.0
3
quay.io/devtron/nats:2.9.3-alpinef0cf3c3ab495
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0
3
quay.io/devtron/nats-box:latest48cdd3054b20
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.35.0
3
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.35.0
3
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.35.0
3
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.35.0
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
golang.org/x/crypto@v0.14.0
0.35.0
3
quay.io/prometheus/alertmanager:v0.26.0361db356b330
golang.org/x/crypto@v0.8.0
0.35.0
3
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0
3
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
golang.org/x/crypto@v0.8.0
0.35.0
3
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
3
quay.io/prometheus-operator/prometheus-config-reloader:v0.74.0d55631c7a740
golang.org/x/crypto@v0.23.0
0.35.0
3
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
golang.org/x/crypto@v0.1.0
0.35.0
3
quay.io/prometheus/prometheus:v2.55.0378f4e037035
golang.org/x/crypto@v0.26.0
0.35.0
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.