StackRadar

CVE-2025-22869

High

Advisory

Published 26 Feb 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
58th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,686
of 17,790 indexed, latest versions
Container images
1,951
deployed by those charts
Fix available
8 of 8
affected packages

golang.org/x/crypto Vulnerable to Denial of Service (DoS) via Slow or Incomplete Key Exchange

Carried by container images the latest versions of 1,686 of 17,790 indexed charts deploy, on 1,951 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+137 more0.35.01,951
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-82.module+el8.10.0+22931+799fd8061
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+22931+799fd8061
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+22931+799fd8061
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+22931+799fd8061
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-6.module+el8.10.0+22931+799fd8061
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.5-3.module+el8.10.0+22931+799fd8061
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+22931+799fd8061
OSV records
GHSA-hcg3-q754-cr77RHSA-2025:3210
Also known as
GO-2025-3487, RHSA-2025:3268

Charts affected

1,686 by stars
ChartLatestAffected imagesRadar Score
octolxddevplayer0Verified publisher0.1.11 of 1See more

octolxd devplayer0 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/octolxd:0.1.119b18fd97eab
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0

Open the chart page →

2,525
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
golang.org/x/crypto@v0.24.0
0.35.0

Open the chart page →

9,685
argocddevtron1.8.12 of 3See more

argocd devtron 1.8.1

2 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.35.0

Open the chart page →

10,484
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.35.0

Open the chart page →

13,011
argo-workflowdevtron0.1.61 of 1See more

argo-workflow devtron 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

1,587
devtron-enterprisedevtron48.0.011 of 28See more

devtron-enterprise devtron 48.0.0

11 of the 28 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.35.0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.35.0
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.35.0
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
golang.org/x/crypto@v0.7.0
0.35.0
quay.io/devtron/nats:2.9.3-alpinef0cf3c3ab495
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0
quay.io/devtron/nats-box:latest48cdd3054b20
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.35.0
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.35.0

Open the chart page →

68,695
devtron-in-clustercddevtron0.10.22 of 2See more

devtron-in-clustercd devtron 0.10.2

2 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.35.0
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

5,055
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.35.0

Open the chart page →

11,959
jcmhproxy-ingressdevtron0.14.61 of 1See more

jcmhproxy-ingress devtron 0.14.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/jcmhproxy-ingress:v0.14.64286bcccda3e
golang.org/x/crypto@v0.18.0
0.35.0

Open the chart page →

1,379
kube-prometheus-stackdevtron19.3.02 of 6See more

kube-prometheus-stack devtron 19.3.0

2 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:8.2.500568d89c4f8
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

8,659
securitydevtron0.2.21 of 1See more

security devtron 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/crypto@v0.0.0-20220112180741-5e0467b6c7ce
0.35.0

Open the chart page →

2,441
zincdevtron0.1.21 of 1See more

zinc devtron 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0

Open the chart page →

1,514
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
golang.org/x/crypto@v0.24.0
0.35.0

Open the chart page →

9,685
argocddevtron-labs1.8.12 of 3See more

argocd devtron-labs 1.8.1

2 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.35.0

Open the chart page →

10,484
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.35.0

Open the chart page →

13,011
argo-workflowdevtron-labs0.1.61 of 1See more

argo-workflow devtron-labs 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

1,587
calicodevtron-labs0.1.13 of 4See more

calico devtron-labs 0.1.1

3 of the 4 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0

Open the chart page →

10,094
clairdevtron-labs0.1.141 of 2See more

clair devtron-labs 0.1.14

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0

Open the chart page →

6,237
devtron-enterprisedevtron-labs48.0.011 of 28See more

devtron-enterprise devtron-labs 48.0.0

11 of the 28 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.35.0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.35.0
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.35.0
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
golang.org/x/crypto@v0.7.0
0.35.0
quay.io/devtron/nats:2.9.3-alpinef0cf3c3ab495
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0
quay.io/devtron/nats-box:latest48cdd3054b20
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.35.0
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.35.0

Open the chart page →

68,695
devtron-in-clustercddevtron-labs0.10.22 of 2See more

devtron-in-clustercd devtron-labs 0.10.2

2 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.35.0
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

5,055
devtron-operatordevtron-labs0.23.36 of 11See more

devtron-operator devtron-labs 0.23.3

6 of the 11 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.35.0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.35.0
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
golang.org/x/crypto@v0.7.0
0.35.0
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

33,180
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.35.0

Open the chart page →

11,959
jcmhproxy-ingressdevtron-labs0.14.61 of 1See more

jcmhproxy-ingress devtron-labs 0.14.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/jcmhproxy-ingress:v0.14.64286bcccda3e
golang.org/x/crypto@v0.18.0
0.35.0

Open the chart page →

1,379
kube-prometheus-stackdevtron-labs19.3.02 of 6See more

kube-prometheus-stack devtron-labs 19.3.0

2 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:8.2.500568d89c4f8
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

8,659
securitydevtron-labs0.2.21 of 1See more

security devtron-labs 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/crypto@v0.0.0-20220112180741-5e0467b6c7ce
0.35.0

Open the chart page →

2,441
zincdevtron-labs0.1.21 of 1See more

zinc devtron-labs 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0

Open the chart page →

1,514
dicedbdicedb-chart0.1.01 of 1See more

dicedb dicedb-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
prathamkrishna/dicedb:v1a7298180cd24
golang.org/x/crypto@v0.27.0
0.35.0

Open the chart page →

671
difydify1.0.01 of 4See more

dify dify 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
langgenius/dify-sandbox:0.2.009b7e8705673
golang.org/x/crypto@v0.18.0
0.35.0

Open the chart page →

19,399
direktivdirektivVerified publisher0.10.01 of 6See more

direktiv direktiv 0.10.0

1 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-k8s:0.120.01e45d9483faa
golang.org/x/crypto@v0.33.0
0.35.0

Open the chart page →

3,480
graphite-exporterdjjudas21Verified publisher0.1.91 of 1See more

graphite-exporter djjudas21 0.1.9

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
prom/graphite-exporter:v0.16.0e54bca6645ea
golang.org/x/crypto@v0.28.0
0.35.0

Open the chart page →

782
hammonddjjudas21Verified publisher0.3.91 of 1See more

hammond djjudas21 0.3.9

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0

Open the chart page →

1,807
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
golang.org/x/crypto@v0.25.0
0.35.0

Open the chart page →

17,053
uptime-kumadjjudas21Verified publisher1.5.181 of 1See more

uptime-kuma djjudas21 1.5.18

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.12bc6f244ecf27
golang.org/x/crypto@v0.16.0
0.35.0

Open the chart page →

4,224
dnation-kubernetes-monitoring-stackdnationcloud4.0.26 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

6 of the 17 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
bitnamilegacy/thanos:0.37.1-debian-12-r05bf82b98c82c
golang.org/x/crypto@v0.28.0
0.35.0
grafana/loki:3.2.0882e30c20683
golang.org/x/crypto@v0.26.0
0.35.0
grafana/loki-canary:3.2.049e03f80d361
golang.org/x/crypto@v0.26.0
0.35.0
prom/memcached-exporter:v0.15.0bb01ad25e9fc
golang.org/x/crypto@v0.28.0
0.35.0
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.35.0
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
golang.org/x/crypto@v0.1.0
0.35.0

Open the chart page →

21,744
ssl-exporterdnationcloud1.2.11 of 1See more

ssl-exporter dnationcloud 1.2.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ribbybibby/ssl-exporter:2.4.2718abe7f5e79
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.35.0

Open the chart page →

1,632
snmp-exporterdniel0.0.21 of 1See more

snmp-exporter dniel 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
prom/snmp-exporter:v0.20.09d226d7de223
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0

Open the chart page →

2,126
docparserdocparser0.1.01 of 4See more

docparser docparser 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
conduction/docparser-php:devb6f95c8ead7d
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.35.0

Open the chart page →

8,417
furan2dollarshaveclubVerified publisher0.2.01 of 1See more

furan2 dollarshaveclub 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dollarshaveclub/furan2:master14a257836529
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.35.0

Open the chart page →

3,055
channelsdoubanVerified publisher1.1.21 of 1See more

channels douban 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
everpcpc/channels:latestb378d137ae8b
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0

Open the chart page →

2,540
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0

Open the chart page →

24,962
corednsdoubanVerified publisher1.39.21 of 1See more

coredns douban 1.39.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
coredns/coredns:1.12.040384aa1f5ea
golang.org/x/crypto@v0.29.0
0.35.0

Open the chart page →

1,139
gatekeeperdoubanVerified publisher3.17.11 of 3See more

gatekeeper douban 3.17.1

1 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
openpolicyagent/gatekeeper:v3.17.1b7b4d7cfdd52
golang.org/x/crypto@v0.25.0
0.35.0

Open the chart page →

2,499
k8s-crondoubanVerified publisher0.2.01 of 1See more

k8s-cron douban 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
alpine/k8s:1.28.2fc059f056ad0
golang.org/x/crypto@v0.13.0
0.35.0

Open the chart page →

3,668
prometheus-memcached-exporterdoubanVerified publisher0.1.31 of 1See more

prometheus-memcached-exporter douban 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
prom/memcached-exporter:v0.9.001267317c95d
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0

Open the chart page →

2,114
tencentcloud-info-exporterdoubanVerified publisher0.2.21 of 1See more

tencentcloud-info-exporter douban 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/leoquote/tencentcloud-info-exporter:maind523c2c010cd
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

2,325
drogue-cloud-examplesdrogue-iotVerified publisher0.7.113 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

3 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:9.2.4057896e23443
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.35.0
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
golang.org/x/crypto@v0.0.0-20190911031432-227b76d455e7
0.35.0
ghcr.io/ctron/kubectl:1.25e37d61b5277c
golang.org/x/crypto@v0.14.0
0.35.0

Open the chart page →

30,753
drogue-cloud-metricsdrogue-iotVerified publisher0.7.114 of 8See more

drogue-cloud-metrics drogue-iot 0.7.11

4 of the 8 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:9.2.4057896e23443
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.35.0
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.35.0
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.35.0

Open the chart page →

13,573
drone-kubernetes-secretsdroneVerified publisher0.1.41 of 1See more

drone-kubernetes-secrets drone 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
drone/kubernetes-secrets:latest206df2280ecf
golang.org/x/crypto@v0.0.0-20180808211826-de0752318171
0.35.0

Open the chart page →

2,760
temporaldtrdnk-helm-chartsVerified publisher0.35.07 of 13See more

temporal dtrdnk-helm-charts 0.35.0

7 of the 13 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.35.0
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
temporalio/admin-tools:1.22.4258958fe2ff2
golang.org/x/crypto@v0.14.0
0.35.0
temporalio/server:1.22.4c0a44c26397b
golang.org/x/crypto@v0.14.0
0.35.0
temporalio/ui:2.16.2af9c9349708f
golang.org/x/crypto@v0.1.0
0.35.0
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

20,240
duplicacyduplicacy0.1.21 of 2See more

duplicacy duplicacy 0.1.2

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
drumsergio/duplicacy-container:0.1.0dd3ee9703969
golang.org/x/crypto@v0.12.0
0.35.0

Open the chart page →

2,420

Container images carrying it

1,951 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
openebs/provisioner-nfs:0.11.04f41dd782761
golang.org/x/crypto@v0.0.0-20201124201722-c8d3bf9c5392
0.35.0
1
openenergyprojects/modbus_exporter:20230617_a14455158990f24fb25
golang.org/x/crypto@v0.7.0
0.35.0
1
openkruise/kruise-manager:v1.8.30482722b4e56
golang.org/x/crypto@v0.31.0
0.35.0
1
openkruise/kruise-state-metrics:v0.2.0a8108f771287
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.35.0
1
openmined/syft-seaweedfs:0.9.53a4144c0bb82
golang.org/x/crypto@v0.19.0
0.35.0
1
opennms/sentinel:36.0.288869082a14f
golang.org/x/crypto@v0.27.0
0.35.0
1
openpolicyagent/gatekeeper:v3.17.1b7b4d7cfdd52
golang.org/x/crypto@v0.25.0
0.35.0
1
opsgenie/kubernetes-event-exporter:0.9ecb246e4d260
golang.org/x/crypto@v0.0.0-20191029031824-8986dd9e96cf
0.35.0
1
optimizely/agent:4.0.09d0096cabd63
golang.org/x/crypto@v0.14.0
0.35.0
1
orbitalreg/orbitalreg-api:0.1.045f2620337af
golang.org/x/crypto@v0.26.0
0.35.0
1
oryd/hydra:v2.3.0b94007e19a1f
golang.org/x/crypto@v0.31.0
0.35.0
1
oryd/kratos:v1.1.08f15006a080d
golang.org/x/crypto@v0.18.0
0.35.0
1
otel/opentelemetry-collector:0.100.09e36620d6c2c
golang.org/x/crypto@v0.22.0
0.35.0
1
otel/opentelemetry-collector:0.59.0ee9da0b08d83
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.35.0
1
otel/opentelemetry-collector-contrib:0.114.037fa87091cfa
golang.org/x/crypto@v0.29.0
0.35.0
1
otel/opentelemetry-collector-contrib:0.113.05ac3e0ba2b0b
golang.org/x/crypto@v0.28.0
0.35.0
1
otel/opentelemetry-collector-contrib:0.83.071fcef33ae71
golang.org/x/crypto@v0.12.0
0.35.0
1
otel/opentelemetry-collector-contrib:0.108.0923eb1cfae32
golang.org/x/crypto@v0.26.0
0.35.0
1
otel/opentelemetry-collector-contrib:0.89.0995f17004231
golang.org/x/crypto@v0.15.0
0.35.0
1
otel/opentelemetry-collector-contrib:0.46.0ba173aa85f3f
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.35.0
1
otel/opentelemetry-collector-contrib:0.81.0c6671841470b
golang.org/x/crypto@v0.10.0
0.35.0
1
otel/opentelemetry-collector-contrib:0.63.1dfb3a55ea8c9
golang.org/x/crypto@v0.1.0
0.35.0
1
otel/opentelemetry-collector-k8s:0.120.01e45d9483faa
golang.org/x/crypto@v0.33.0
0.35.0
1
owncloud/ocis:7.1.388e7c854517d
golang.org/x/crypto@v0.32.0
0.35.0
1
owncloud/ocis:1.7.0d2efcae92c84
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.35.0
1
owncloud/server:10.15.051d9b74fc2a8
golang.org/x/crypto@v0.25.0
0.35.0
1
percona/percona-xtradb-cluster-operator:1.14.03232ae01d0ff
golang.org/x/crypto@v0.17.0
0.35.0
1
peterdavehello/tor-socks-proxy:latest0cc12d36d312
golang.org/x/crypto@v0.33.0
0.35.0
1
phntom/chadbot:0.2.397c28e4178ad
golang.org/x/crypto@v0.10.0
0.35.0
1
phntom/chartmuseum:v0.16.053883b65d9b7
golang.org/x/crypto@v0.9.0
0.35.0
1
phntom/chartmuseum:v0.15.29242b4df9e65
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.35.0
1
phntom/external-dns-host-network:0.0.123adadbac8443
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.35.0
1
phntom/goalert:0.0.298ca4df55499b
golang.org/x/crypto@v0.16.0
0.35.0
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
golang.org/x/crypto@v0.14.0
0.35.0
1
phntom/mindav:0.1.7-kix35695f546abbb
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.35.0
1
phntom/oauth2-proxy:v7.3.48ea656a2a895
golang.org/x/crypto@v0.0.0-20220314234659-1baeb1ce4c0b
0.35.0
1
photoprism/photoprism:231128-ce284de9cc4f9c
golang.org/x/crypto@v0.16.0
0.35.0
1
photoprism/photoprism:220629-jammy2954334adbda
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.35.0
1
photoprism/photoprism:240711-cefc6fd632ca74
golang.org/x/crypto@v0.25.0
0.35.0
1
pinclr/v2ray-proxy:latestf37f250b7091
golang.org/x/crypto@v0.6.0
0.35.0
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.35.0
1
pnnlmiscscripts/pixiecore:1.0.1-1c6f17741a0d7
golang.org/x/crypto@v0.6.0
0.35.0
1
pomerium/pomerium:v0.22.19c69b10a2126
golang.org/x/crypto@v0.8.0
0.35.0
1
portainer/portainer-ce:2.18.4-alpine3e61aaee1341
golang.org/x/crypto@v0.7.0
0.35.0
1
pozetroninc/liftbridge:v1.1.079fd6b9d93e6
golang.org/x/crypto@v0.0.0-20200420201142-3c4aac89819a
0.35.0
1
pozetroninc/rethinkdb-cluster:v2.4.16b06a098f994
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.35.0
1
prathamkrishna/dicedb:v1a7298180cd24
golang.org/x/crypto@v0.27.0
0.35.0
1
projecthami/volcano-vgpu-device-plugin:v1.9.40c94118d1d98
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.35.0
1
prom/blackbox-exporter:v0.22.0608acee5704a
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.35.0
1
prom/blackbox-exporter:v0.25.0b04a9fef4fa0
golang.org/x/crypto@v0.22.0
0.35.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.