StackRadar

CVE-2025-22869

High

Advisory

Published 26 Feb 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
58th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,686
of 17,790 indexed, latest versions
Container images
1,951
deployed by those charts
Fix available
8 of 8
affected packages

golang.org/x/crypto Vulnerable to Denial of Service (DoS) via Slow or Incomplete Key Exchange

Carried by container images the latest versions of 1,686 of 17,790 indexed charts deploy, on 1,951 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+137 more0.35.01,951
containers-commonrpm2:1-64.module+el8.8.0+18571+eed59fc42:1-82.module+el8.10.0+22931+799fd8061
criurpm3.15-4.module+el8.8.0+19044+f9982fd80:3.18-5.module+el8.10.0+22931+799fd8061
fuse-overlayfsrpm1.11-1.module+el8.8.0+18634+9a2682920:1.13-1.module+el8.10.0+22931+799fd8061
libslirprpm4.4.0-1.module+el8.8.0+18060+3f21f2cc0:4.4.0-2.module+el8.10.0+22931+799fd8061
runcrpm1:1.1.4-1.module+el8.8.0+18060+3f21f2cc1:1.1.12-6.module+el8.10.0+22931+799fd8061
skopeorpm2:1.11.2-0.2.module+el8.8.0+18251+ad5b274c2:1.14.5-3.module+el8.10.0+22931+799fd8061
slirp4netnsrpm1.2.0-2.module+el8.8.0+18060+3f21f2cc0:1.2.3-1.module+el8.10.0+22931+799fd8061
OSV records
GHSA-hcg3-q754-cr77RHSA-2025:3210
Also known as
GO-2025-3487, RHSA-2025:3268

Charts affected

1,686 by stars
ChartLatestAffected imagesRadar Score
octolxddevplayer0Verified publisher0.1.11 of 1See more

octolxd devplayer0 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/octolxd:0.1.119b18fd97eab
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0

Open the chart page →

2,525
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
golang.org/x/crypto@v0.24.0
0.35.0

Open the chart page →

9,685
argocddevtron1.8.12 of 3See more

argocd devtron 1.8.1

2 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.35.0

Open the chart page →

10,484
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.35.0

Open the chart page →

13,011
argo-workflowdevtron0.1.61 of 1See more

argo-workflow devtron 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

1,587
devtron-enterprisedevtron48.0.011 of 28See more

devtron-enterprise devtron 48.0.0

11 of the 28 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.35.0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.35.0
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.35.0
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
golang.org/x/crypto@v0.7.0
0.35.0
quay.io/devtron/nats:2.9.3-alpinef0cf3c3ab495
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0
quay.io/devtron/nats-box:latest48cdd3054b20
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.35.0
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.35.0

Open the chart page →

68,695
devtron-in-clustercddevtron0.10.22 of 2See more

devtron-in-clustercd devtron 0.10.2

2 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.35.0
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

5,055
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.35.0

Open the chart page →

11,959
jcmhproxy-ingressdevtron0.14.61 of 1See more

jcmhproxy-ingress devtron 0.14.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/jcmhproxy-ingress:v0.14.64286bcccda3e
golang.org/x/crypto@v0.18.0
0.35.0

Open the chart page →

1,379
kube-prometheus-stackdevtron19.3.02 of 6See more

kube-prometheus-stack devtron 19.3.0

2 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:8.2.500568d89c4f8
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

8,659
securitydevtron0.2.21 of 1See more

security devtron 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/crypto@v0.0.0-20220112180741-5e0467b6c7ce
0.35.0

Open the chart page →

2,441
zincdevtron0.1.21 of 1See more

zinc devtron 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0

Open the chart page →

1,514
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
golang.org/x/crypto@v0.24.0
0.35.0

Open the chart page →

9,685
argocddevtron-labs1.8.12 of 3See more

argocd devtron-labs 1.8.1

2 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.35.0

Open the chart page →

10,484
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.35.0

Open the chart page →

13,011
argo-workflowdevtron-labs0.1.61 of 1See more

argo-workflow devtron-labs 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

1,587
calicodevtron-labs0.1.13 of 4See more

calico devtron-labs 0.1.1

3 of the 4 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0

Open the chart page →

10,094
clairdevtron-labs0.1.141 of 2See more

clair devtron-labs 0.1.14

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0

Open the chart page →

6,237
devtron-enterprisedevtron-labs48.0.011 of 28See more

devtron-enterprise devtron-labs 48.0.0

11 of the 28 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.35.0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.35.0
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.35.0
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
golang.org/x/crypto@v0.7.0
0.35.0
quay.io/devtron/nats:2.9.3-alpinef0cf3c3ab495
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0
quay.io/devtron/nats-box:latest48cdd3054b20
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.35.0
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.35.0

Open the chart page →

68,695
devtron-in-clustercddevtron-labs0.10.22 of 2See more

devtron-in-clustercd devtron-labs 0.10.2

2 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.35.0
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
golang.org/x/crypto@v0.7.0
0.35.0

Open the chart page →

5,055
devtron-operatordevtron-labs0.23.36 of 11See more

devtron-operator devtron-labs 0.23.3

6 of the 11 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.35.0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
golang.org/x/crypto@v0.14.0
0.35.0
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.35.0
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
golang.org/x/crypto@v0.7.0
0.35.0
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

33,180
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.35.0

Open the chart page →

11,959
jcmhproxy-ingressdevtron-labs0.14.61 of 1See more

jcmhproxy-ingress devtron-labs 0.14.6

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/jcmhproxy-ingress:v0.14.64286bcccda3e
golang.org/x/crypto@v0.18.0
0.35.0

Open the chart page →

1,379
kube-prometheus-stackdevtron-labs19.3.02 of 6See more

kube-prometheus-stack devtron-labs 19.3.0

2 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:8.2.500568d89c4f8
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

8,659
securitydevtron-labs0.2.21 of 1See more

security devtron-labs 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/crypto@v0.0.0-20220112180741-5e0467b6c7ce
0.35.0

Open the chart page →

2,441
zincdevtron-labs0.1.21 of 1See more

zinc devtron-labs 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.35.0

Open the chart page →

1,514
dicedbdicedb-chart0.1.01 of 1See more

dicedb dicedb-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
prathamkrishna/dicedb:v1a7298180cd24
golang.org/x/crypto@v0.27.0
0.35.0

Open the chart page →

671
difydify1.0.01 of 4See more

dify dify 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
langgenius/dify-sandbox:0.2.009b7e8705673
golang.org/x/crypto@v0.18.0
0.35.0

Open the chart page →

19,399
direktivdirektivVerified publisher0.10.01 of 6See more

direktiv direktiv 0.10.0

1 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-k8s:0.120.01e45d9483faa
golang.org/x/crypto@v0.33.0
0.35.0

Open the chart page →

3,480
graphite-exporterdjjudas21Verified publisher0.1.91 of 1See more

graphite-exporter djjudas21 0.1.9

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
prom/graphite-exporter:v0.16.0e54bca6645ea
golang.org/x/crypto@v0.28.0
0.35.0

Open the chart page →

782
hammonddjjudas21Verified publisher0.3.91 of 1See more

hammond djjudas21 0.3.9

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0

Open the chart page →

1,807
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
golang.org/x/crypto@v0.25.0
0.35.0

Open the chart page →

17,053
uptime-kumadjjudas21Verified publisher1.5.181 of 1See more

uptime-kuma djjudas21 1.5.18

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.12bc6f244ecf27
golang.org/x/crypto@v0.16.0
0.35.0

Open the chart page →

4,224
dnation-kubernetes-monitoring-stackdnationcloud4.0.26 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

6 of the 17 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
bitnamilegacy/thanos:0.37.1-debian-12-r05bf82b98c82c
golang.org/x/crypto@v0.28.0
0.35.0
grafana/loki:3.2.0882e30c20683
golang.org/x/crypto@v0.26.0
0.35.0
grafana/loki-canary:3.2.049e03f80d361
golang.org/x/crypto@v0.26.0
0.35.0
prom/memcached-exporter:v0.15.0bb01ad25e9fc
golang.org/x/crypto@v0.28.0
0.35.0
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.35.0
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
golang.org/x/crypto@v0.1.0
0.35.0

Open the chart page →

21,744
ssl-exporterdnationcloud1.2.11 of 1See more

ssl-exporter dnationcloud 1.2.1

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ribbybibby/ssl-exporter:2.4.2718abe7f5e79
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.35.0

Open the chart page →

1,632
snmp-exporterdniel0.0.21 of 1See more

snmp-exporter dniel 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
prom/snmp-exporter:v0.20.09d226d7de223
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0

Open the chart page →

2,126
docparserdocparser0.1.01 of 4See more

docparser docparser 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
conduction/docparser-php:devb6f95c8ead7d
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.35.0

Open the chart page →

8,417
furan2dollarshaveclubVerified publisher0.2.01 of 1See more

furan2 dollarshaveclub 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
dollarshaveclub/furan2:master14a257836529
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.35.0

Open the chart page →

3,055
channelsdoubanVerified publisher1.1.21 of 1See more

channels douban 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
everpcpc/channels:latestb378d137ae8b
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0

Open the chart page →

2,540
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.35.0

Open the chart page →

24,962
corednsdoubanVerified publisher1.39.21 of 1See more

coredns douban 1.39.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
coredns/coredns:1.12.040384aa1f5ea
golang.org/x/crypto@v0.29.0
0.35.0

Open the chart page →

1,139
gatekeeperdoubanVerified publisher3.17.11 of 3See more

gatekeeper douban 3.17.1

1 of the 3 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
openpolicyagent/gatekeeper:v3.17.1b7b4d7cfdd52
golang.org/x/crypto@v0.25.0
0.35.0

Open the chart page →

2,499
k8s-crondoubanVerified publisher0.2.01 of 1See more

k8s-cron douban 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
alpine/k8s:1.28.2fc059f056ad0
golang.org/x/crypto@v0.13.0
0.35.0

Open the chart page →

3,668
prometheus-memcached-exporterdoubanVerified publisher0.1.31 of 1See more

prometheus-memcached-exporter douban 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
prom/memcached-exporter:v0.9.001267317c95d
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0

Open the chart page →

2,114
tencentcloud-info-exporterdoubanVerified publisher0.2.21 of 1See more

tencentcloud-info-exporter douban 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
ghcr.io/leoquote/tencentcloud-info-exporter:maind523c2c010cd
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

2,325
drogue-cloud-examplesdrogue-iotVerified publisher0.7.113 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

3 of the 6 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:9.2.4057896e23443
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.35.0
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
golang.org/x/crypto@v0.0.0-20190911031432-227b76d455e7
0.35.0
ghcr.io/ctron/kubectl:1.25e37d61b5277c
golang.org/x/crypto@v0.14.0
0.35.0

Open the chart page →

30,753
drogue-cloud-metricsdrogue-iotVerified publisher0.7.114 of 8See more

drogue-cloud-metrics drogue-iot 0.7.11

4 of the 8 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:9.2.4057896e23443
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.35.0
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.35.0
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.35.0
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.35.0

Open the chart page →

13,573
drone-kubernetes-secretsdroneVerified publisher0.1.41 of 1See more

drone-kubernetes-secrets drone 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
drone/kubernetes-secrets:latest206df2280ecf
golang.org/x/crypto@v0.0.0-20180808211826-de0752318171
0.35.0

Open the chart page →

2,760
temporaldtrdnk-helm-chartsVerified publisher0.35.07 of 13See more

temporal dtrdnk-helm-charts 0.35.0

7 of the 13 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.35.0
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
temporalio/admin-tools:1.22.4258958fe2ff2
golang.org/x/crypto@v0.14.0
0.35.0
temporalio/server:1.22.4c0a44c26397b
golang.org/x/crypto@v0.14.0
0.35.0
temporalio/ui:2.16.2af9c9349708f
golang.org/x/crypto@v0.1.0
0.35.0
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0

Open the chart page →

20,240
duplicacyduplicacy0.1.21 of 2See more

duplicacy duplicacy 0.1.2

1 of the 2 container images this version deploys carry CVE-2025-22869.

Container imageDigestPackageFixed in
drumsergio/duplicacy-container:0.1.0dd3ee9703969
golang.org/x/crypto@v0.12.0
0.35.0

Open the chart page →

2,420

Container images carrying it

1,951 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
timescale/timescaledb-postgis:latest-pg127758704d4a14
golang.org/x/crypto@v0.0.0-20190911031432-227b76d455e7
0.35.0
1
timonwong/prometheus-webhook-dingtalk:v1.4.0a0fcc028bd8d
golang.org/x/crypto@v0.0.0-20191205180655-e7c4368fe9dd
0.35.0
1
tobiasbp/db-backup:0.0.314bee6e33a26
golang.org/x/crypto@v0.0.0-20200109152110-61a87790db17
0.35.0
1
tobirachel/node-project3:v17d9f37154994
golang.org/x/crypto@v0.0.0-20211108221036-ceb1ce70b4fa
0.35.0
1
toucansoftware/spa-reloader:latestc187b1fba501
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.35.0
1
traefik/mesh:v1.4.8cf071f3e165c
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.35.0
1
traggo/server:0.2.3f1ced637510e
golang.org/x/crypto@v0.0.0-20190513172903-22d7a77e9e5f
0.35.0
1
treeverse/lakefs:0.69.0478f37a6cffc
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.35.0
1
tundeficky/nodejs-app:v1.0.03cf9a9ce54e8
golang.org/x/crypto@v0.0.0-20211108221036-ceb1ce70b4fa
0.35.0
1
turt2live/matrix-media-repo:v1.2.8bfbd459f89a5
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
1
tusproject/tusd:v1.13.0f8088058b80f
golang.org/x/crypto@v0.12.0
0.35.0
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
golang.org/x/crypto@v0.0.0-20220511200225-c6db032c6c88
0.35.0
1
twinproduction/gatus:v3.8.049dc0d9b2e2c
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
1
ubercadence/server:0.23.22ac5491d13bb
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
1
udhos/forward:1.1.312e120d39fdb
golang.org/x/crypto@v0.9.0
0.35.0
1
udhos/lambdaping:1.0.46bd2cf2ac732
golang.org/x/crypto@v0.31.0
0.35.0
1
udhos/snsping:1.2.96ae70677b6a3
golang.org/x/crypto@v0.31.0
0.35.0
1
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
1
vearch/vearch:3.3.40768af33f9d9
golang.org/x/crypto@v0.9.0
0.35.0
1
veecode/devportal-admin-ui:0.4.30c69fd286b489
golang.org/x/crypto@v0.25.0
0.35.0
1
velero/velero:v1.9.0277fbfaf8dcf
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
1
velero/velero:v1.8.18d784580931c
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
1
venturenox/sagawise:latestc11d32f18718
golang.org/x/crypto@v0.27.0
0.35.0
1
vikunja/api:0.17.18cba0520bf8c
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.35.0
1
vineyardcloudnative/vineyard-operator:latest9d419aa18faa
golang.org/x/crypto@v0.21.0
0.35.0
1
vmware/kube-fluentd-operator:latestf028c138a5f4
golang.org/x/crypto@v0.17.0
0.35.0
1
voidxmh/xmh-auther:v193e42a569ca8
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
1
voidxmh/xmh-cacher:v11b7397412320
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
1
voidxmh/xmh-ui:v12ff3f2146547
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
1
volantmq/volantmq:v0.4.0-rc.69bfe7857ebc3
golang.org/x/crypto@v0.0.0-20190927123631-a832865fa7ad
0.35.0
1
voltha/bbsim:1.16.7d90403d58016
golang.org/x/crypto@v0.0.0-20200204104054-c9f3fb736b72
0.35.0
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.35.0
1
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.35.0
1
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.35.0
1
wallarm/ebpf-agent:0.11.0-rc0c8920e60c726
golang.org/x/crypto@v0.21.0
0.35.0
1
wallarm/gateway-control-plane:0.2.0a321bc974a19
golang.org/x/crypto@v0.17.0
0.35.0
1
wallarm/node-helpers:5.0.2-1097cadc42336
golang.org/x/crypto@v0.24.0
0.35.0
1
wallarm/node-next:0.5.24314f3d2b918
golang.org/x/crypto@v0.26.0
0.35.0
1
wateim/lighthouse-launch:latest2520149ee574
golang.org/x/crypto@v0.31.0
0.35.0
1
wavefronthq/wavefront-hpa-adapter:0.9.12af5fef9a4768
golang.org/x/crypto@v0.14.0
0.35.0
1
wazuh/wazuh-manager:4.11.11da5c38c6a78
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.35.0
1
wazuh/wazuh-manager:4.4.121994f40e0da
golang.org/x/crypto@v0.4.0
0.35.0
1
wazuh/wazuh-manager:4.14.45a065930682d
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.35.0
1
wazuh/wazuh-manager:4.14.3f09282d281f6
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.35.0
1
weaveworks/flagger:1.0.0-rc.5174307de1b36
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.35.0
1
weaveworks/flagger:0.19.0a9c2e9df4227
golang.org/x/crypto@v0.0.0-20181025213731-e84da0312774
0.35.0
1
webdevops/azure-janitor:24.9.02446baee7b69
golang.org/x/crypto@v0.27.0
0.35.0
1
webdevops/azure-keyvault-exporter:24.9.1f333704ecd60
golang.org/x/crypto@v0.27.0
0.35.0
1
webdevops/azure-resourcegraph-exporter:24.9.0381136dda026
golang.org/x/crypto@v0.27.0
0.35.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.