StackRadar

CVE-2025-22870

Medium

Advisory

Published 12 Mar 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,746
of 17,805 indexed, latest versions
Container images
3,305
deployed by those charts
Fix available
2 of 3
affected packages

HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net

Carried by container images the latest versions of 2,746 of 17,805 indexed charts deploy, on 3,305 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+201 more0.36.02,515
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+148 more1.23.73,203
OSV records
DEBIAN-CVE-2025-22870GHSA-qxp5-gwg8-xv66GO-2025-3503

Charts affected

2,746 by stars
ChartLatestAffected imagesRadar Score
ibm-ucv-prodibm-helm5.3.01 of 16See more

ibm-ucv-prod ibm-helm 5.3.0

1 of the 16 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
bitnamilegacy/nginx:1.27.1934d1acd5ca8
stdlib@go1.22.7
1.23.7

Open the chart page →

12,231
monitoring-stackict-platformVerified publisher0.4.02 of 13See more

monitoring-stack ict-platform 0.4.0

2 of the 13 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
golang.org/x/net@v0.30.0
stdlib@go1.23.6
0.36.0
1.23.7
registry.k8s.io/kubectl:v1.31.099b37df34bc4
golang.org/x/net@v0.26.0
stdlib@go1.22.5
0.36.0
1.23.7

Open the chart page →

9,707
eoloserverihuertas2021-vmartinp2021-helm0.1.03 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
golang.org/x/net@v0.7.0
stdlib@go1.18.10
0.36.0
1.23.7
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.23.7
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.23.7

Open the chart page →

27,933
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
golang.org/x/net@v0.24.0
stdlib@go1.22.2
0.36.0
1.23.7

Open the chart page →

9,252
ikigaiikigai-chartVerified publisher0.0.93 of 58See more

ikigai ikigai-chart 0.0.9

3 of the 58 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
kuberay/operator:v1.0.04e6ac8a3a2c4
golang.org/x/net@v0.17.0
stdlib@go1.19.13
0.36.0
1.23.7
rabbitmqoperator/cluster-operator:2.6.08651dd3cec51
golang.org/x/net@v0.18.0
stdlib@go1.20.11
0.36.0
1.23.7
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
golang.org/x/net@v0.0.0-20220802222814-0bcc04d9c69b
stdlib@go1.17.3
0.36.0
1.23.7

Open the chart page →

113,336
ilum-jupyterhubilumVerified publisher4.3.11 of 6See more

ilum-jupyterhub ilum 4.3.1

1 of the 6 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
registry.k8s.io/kube-scheduler:v1.30.1474a5cf9cfa9f
golang.org/x/net@v0.23.0
0.36.0

Open the chart page →

1,997
ilum-otel-collectorilumVerified publisher0.1.01 of 1See more

ilum-otel-collector ilum 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.113.05ac3e0ba2b0b
golang.org/x/net@v0.30.0
stdlib@go1.23.2
0.36.0
1.23.7

Open the chart page →

1,525
apexkube-agentimprowisedVerified publisher1.4.01 of 2See more

apexkube-agent improwised 1.4.0

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
masipcat/wireguard-go:0.0.20230223769f7bb64694
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.20.14
0.36.0
1.23.7

Open the chart page →

3,374
frigateimprowisedVerified publisher1.1.01 of 1See more

frigate improwised 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ghcr.io/blakeblackshear/frigate:0.13.07a5244e4c8dc
golang.org/x/net@v0.8.0
stdlib@go1.20.3
0.36.0
1.23.7

Open the chart page →

2,160
kore-boardimprowisedVerified publisher0.5.83 of 4See more

kore-board improwised 0.5.8

3 of the 4 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.backend:v0.5.5455f6e7a26fd
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.19.4
0.36.0
1.23.7
ghcr.io/kore3lab/kore-board.metrics-scraper:v0.5.547f88b18fb7c
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.19.4
0.36.0
1.23.7
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18.9
0.36.0
1.23.7

Open the chart page →

16,421
fpga-cloudinaccelVerified publisher1.2.23 of 3See more

fpga-cloud inaccel 1.2.2

3 of the 3 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
inaccel/cloud-init:latesta5d3d0af05c1
golang.org/x/net@v0.19.0
stdlib@go1.21.6
0.36.0
1.23.7
inaccel/device-selector:latest44b4f274f40b
golang.org/x/net@v0.21.0
stdlib@go1.21.9
0.36.0
1.23.7
inaccel/kubevirt-hack:latestbdfd61803a70
golang.org/x/net@v0.19.0
stdlib@go1.21.7
0.36.0
1.23.7

Open the chart page →

3,166
fpga-operatorinaccelVerified publisher2.8.23 of 7See more

fpga-operator inaccel 2.8.2

3 of the 7 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
inaccel/daemon:latest093e1ea90ab8
golang.org/x/net@v0.19.0
stdlib@go1.21.6
0.36.0
1.23.7
inaccel/mkrt:latest187fd448b6f2
stdlib@go1.21.5
1.23.7
inaccel/reef:latestc967218739f3
golang.org/x/net@v0.19.0
stdlib@go1.21.6
0.36.0
1.23.7

Open the chart page →

5,785
infisical-csi-providerinfisical-charts0.2.31 of 1See more

infisical-csi-provider infisical-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
infisical/infisical-csi-provider:v0.0.9e3390e677db6
golang.org/x/net@v0.33.0
0.36.0

Open the chart page →

636
chronografinfluxdata1.2.61 of 1See more

chronograf influxdata 1.2.6

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
library/chronograf:1.9.496d8a3f65a4f
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
stdlib@go1.16.4
0.36.0
1.23.7

Open the chart page →

2,205
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
stdlib@go1.19.3
1.23.7

Open the chart page →

4,956
erigoninfradao0.0.51 of 2See more

erigon infradao 0.0.5

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
testinprod/op-erigon:latest0a125bd77a2d
golang.org/x/net@v0.33.0
stdlib@go1.22.12
0.36.0
1.23.7

Open the chart page →

2,928
l2gethinfradao0.0.11 of 1See more

l2geth infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ethereumoptimism/l2geth:0.5.315577036dc36d
golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc2
stdlib@go1.18
0.36.0
1.23.7

Open the chart page →

2,661
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
golang.org/x/net@v0.13.0
stdlib@go1.15.7
0.36.0
1.23.7

Open the chart page →

10,601
lakefsinseefrlab0.0.61 of 2See more

lakefs inseefrlab 0.0.6

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
treeverse/lakefs:0.69.0478f37a6cffc
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
stdlib@go1.17.8
0.36.0
1.23.7

Open the chart page →

2,653
instemmingserviceinstemmingservice1.0.01 of 3See more

instemmingservice instemmingservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/instemmingservice-php:latest4ffe222b3e3a
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.36.0
1.23.7

Open the chart page →

7,521
consulintelVerified publisher0.8.12 of 2See more

consul intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
hashicorp/consul:1.14.2e38576edcdfd
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.19.2
0.36.0
1.23.7
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.19.2
0.36.0
1.23.7

Open the chart page →

5,430
evi-consulintelVerified publisher3.0.32 of 2See more

evi-consul intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
hashicorp/consul:1.14.2e38576edcdfd
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.19.2
0.36.0
1.23.7
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.19.2
0.36.0
1.23.7

Open the chart page →

5,430
evi-kesintelVerified publisher3.0.31 of 1See more

evi-kes intel 3.0.3

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
minio/kes:2023-04-03T16-41-28Zf93c2d9088df
golang.org/x/net@v0.7.0
stdlib@go1.20.2
0.36.0
1.23.7

Open the chart page →

1,766
evi-miniointelVerified publisher3.0.32 of 2See more

evi-minio intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
golang.org/x/net@v0.4.0
stdlib@go1.19.4
0.36.0
1.23.7
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
golang.org/x/net@v0.5.0
stdlib@go1.19.4
0.36.0
1.23.7

Open the chart page →

7,614
evi-vaultintelVerified publisher3.0.32 of 2See more

evi-vault intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.19.2
0.36.0
1.23.7
hashicorp/vault-k8s:1.1.0844337076b72
golang.org/x/net@v0.0.0-20221004154528-8021a29435af
stdlib@go1.19.3
0.36.0
1.23.7

Open the chart page →

4,488
intel-gaudi-resource-driverintelVerified publisher0.3.01 of 1See more

intel-gaudi-resource-driver intel 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
intel/intel-gaudi-resource-driver:v0.3.0ac758c14c2de
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.36.0
1.23.7

Open the chart page →

566
intel-qat-resource-driverintelVerified publisher0.1.01 of 1See more

intel-qat-resource-driver intel 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
intel/intel-qat-resource-driver:v0.1.0ac7616986a2b
golang.org/x/net@v0.26.0
stdlib@go1.22.4
0.36.0
1.23.7

Open the chart page →

609
kesintelVerified publisher0.8.31 of 1See more

kes intel 0.8.3

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
minio/kes:v0.22.255f3aef5803e
golang.org/x/net@v0.0.0-20221014081412-f15817d10f9b
stdlib@go1.19.3
0.36.0
1.23.7

Open the chart page →

3,578
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization:3.03426deb77337
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
stdlib@go1.17.11
0.36.0
1.23.7

Open the chart page →

81,831
tcs-issuerintelVerified publisher0.5.01 of 2See more

tcs-issuer intel 0.5.0

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
intel/trusted-certificate-issuer:0.5.0591a9db4a427
golang.org/x/net@v0.7.0
stdlib@go1.19.3
0.36.0
1.23.7

Open the chart page →

6,018
vaultintelVerified publisher0.8.12 of 2See more

vault intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.19.2
0.36.0
1.23.7
hashicorp/vault-k8s:1.1.0844337076b72
golang.org/x/net@v0.0.0-20221004154528-8021a29435af
stdlib@go1.19.3
0.36.0
1.23.7

Open the chart page →

4,488
gravity-initinvisiblVerified publisher1.0.91 of 1See more

gravity-init invisibl 1.0.9

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
invisibl/gravity-init:v1.0.91a970f84178b
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
stdlib@go1.17.12
0.36.0
1.23.7

Open the chart page →

2,007
identity-managerinvisiblVerified publisher1.0.01 of 1See more

identity-manager invisibl 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
invisibl/identity-manager:1.0.01029f4fe20eb
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.17.11
0.36.0
1.23.7

Open the chart page →

2,163
identity-manager-demoinvisiblVerified publisher0.1.11 of 1See more

identity-manager-demo invisibl 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
invisibl/identity-manager-demo:v1.0.0cf5400cb935a
stdlib@go1.19.2
1.23.7

Open the chart page →

1,007
karpenteriometeVerified publisher0.19.31 of 1See more

karpenter iomete 0.19.3

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
public.ecr.aws/karpenter/controller:v0.19.3f0e5ab60b2df
golang.org/x/net@v0.1.0
stdlib@go1.19.3
0.36.0
1.23.7

Open the chart page →

1,556
istio-aws-private-ingress-customizedistio-aws-private-ingress-customized1.0.01 of 1See more

istio-aws-private-ingress-customized istio-aws-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
golang.org/x/net@v0.9.0
stdlib@go1.20.4
0.36.0
1.23.7

Open the chart page →

5,600
istio-azure-private-ingress-customizedistio-azure-private-ingress-customized1.0.01 of 1See more

istio-azure-private-ingress-customized istio-azure-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
golang.org/x/net@v0.9.0
stdlib@go1.20.4
0.36.0
1.23.7

Open the chart page →

5,600
istio-ratelimit-operatoristio-ratelimit-operator2.16.11 of 1See more

istio-ratelimit-operator istio-ratelimit-operator 2.16.1

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
zufardhiyaulhaq/istio-ratelimit-operator:v2.15.0692cfc9d6614
golang.org/x/net@v0.17.0
stdlib@go1.19.13
0.36.0
1.23.7

Open the chart page →

746
hetzner-dyndnsitsmethemojoVerified publisher1.4.01 of 1See more

hetzner-dyndns itsmethemojo 1.4.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
hashicorp/terraform:1.9.7b77efab1a448
golang.org/x/net@v0.23.0
stdlib@go1.22.7
0.36.0
1.23.7

Open the chart page →

1,854
adguard-homejacobcolvinVerified publisher0.4.01 of 2See more

adguard-home jacobcolvin 0.4.0

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.3843ec119419a9
golang.org/x/net@v0.15.0
stdlib@go1.20.8
0.36.0
1.23.7

Open the chart page →

1,605
inlets-clientjacobcolvinVerified publisher0.1.21 of 1See more

inlets-client jacobcolvin 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.13.15
0.36.0
1.23.7

Open the chart page →

1,754
inlets-serverjacobcolvinVerified publisher0.1.11 of 1See more

inlets-server jacobcolvin 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.13.15
0.36.0
1.23.7

Open the chart page →

1,754
osrs-ge-exporterjacobcolvinVerified publisher0.4.01 of 1See more

osrs-ge-exporter jacobcolvin 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
macropower/osrs_ge_exporter:v0.3c77ab5ea955c
stdlib@go1.21.0
1.23.7

Open the chart page →

608
rclonejacobcolvinVerified publisher1.0.11 of 1See more

rclone jacobcolvin 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
rclone/rclone:1.63.008e1af3c8814
golang.org/x/net@v0.8.0
stdlib@go1.20.5
0.36.0
1.23.7

Open the chart page →

2,151
twitch-predictions-recorderjacobcolvinVerified publisher0.1.01 of 1See more

twitch-predictions-recorder jacobcolvin 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
golang.org/x/net@v0.1.0
stdlib@go1.19.2
0.36.0
1.23.7

Open the chart page →

2,670
wakatime-exporterjacobcolvinVerified publisher0.1.11 of 1See more

wakatime-exporter jacobcolvin 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
macropower/wakatime-exporter:0.1.0dbb05debb785
stdlib@go1.14.6
1.23.7

Open the chart page →

1,314
wireguard-operatorjacobcolvinVerified publisher0.2.01 of 2See more

wireguard-operator jacobcolvin 0.2.0

1 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
ghcr.io/jodevsa/wireguard-operator/manager:v2.0.2839412bdd403b
golang.org/x/net@v0.23.0
stdlib@go1.22.2
0.36.0
1.23.7

Open the chart page →

840
koptimizejaconiVerified publisher0.5.42 of 2See more

koptimize jaconi 0.5.4

2 of the 2 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
alpine/k8s:1.27.321b24e6bf801
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.20.4
0.36.0
1.23.7
ghcr.io/jaconi-io/koptimize:1.2.5aca1bbd609b6
golang.org/x/net@v0.10.0
stdlib@go1.20.7
0.36.0
1.23.7

Open the chart page →

5,739
mini-infrajaeki0.1.01 of 4See more

mini-infra jaeki 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.13.101b33357b3595
golang.org/x/net@v0.8.0
stdlib@go1.19.5
0.36.0
1.23.7

Open the chart page →

1,746
deconzjanip81-helm-chartsVerified publisher0.1.11 of 1See more

deconz janip81-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-22870.

Container imageDigestPackageFixed in
deconzcommunity/deconz:2.29.2062de2362641
stdlib@go1.19.8
1.23.7

Open the chart page →

10,932

Container images carrying it

3,305 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/kubermatic/operating-system-manager:v1.3.010081473da43
golang.org/x/net@v0.9.0
stdlib@go1.20.5
0.36.0
1.23.7
1
quay.io/kubernetes-multicluster/kubefed:v0.7.06d56f69b15a3
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.3
0.36.0
1.23.7
1
quay.io/kubernetes-multicluster/kubefed:v0.10.0c4635c95730e
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.6
0.36.0
1.23.7
1
quay.io/kubevirt/kubemacpool:v0.45.0eebb65b8a12c
golang.org/x/net@v0.23.0
stdlib@go1.22.0
0.36.0
1.23.7
1
quay.io/kubevirt/vm-console-proxy:v0.8.08d6b4b6e99bd
golang.org/x/net@v0.34.0
stdlib@go1.22.4
0.36.0
1.23.7
1
quay.io/lunarway/snyk_exporter:v1.11.155e5cc5aaa0a
stdlib@go1.17.7
1.23.7
1
quay.io/maximilianopizarro/integration-console-plugin:v0.8.2270ed23a9afd
stdlib@go1.22.9
1.23.7
1
quay.io/metallb/controller:v0.10.221164241c045
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.16.5
0.36.0
1.23.7
1
quay.io/metallb/controller:v0.14.4bbef1ee3e7d3
golang.org/x/net@v0.22.0
stdlib@go1.21.8
0.36.0
1.23.7
1
quay.io/metallb/speaker:v0.14.437611bde45a2
golang.org/x/net@v0.22.0
stdlib@go1.21.8
0.36.0
1.23.7
1
quay.io/metallb/speaker:v0.10.258cb99053bb3
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.16.5
0.36.0
1.23.7
1
quay.io/minio/csi-node-driver-registrarc805fdc16676
golang.org/x/net@v0.8.0
stdlib@go1.20.3
0.36.0
1.23.7
1
quay.io/minio/csi-provisioner7b5c070ec70d
golang.org/x/net@v0.8.0
stdlib@go1.20.3
0.36.0
1.23.7
1
quay.io/minio/csi-resizer819f68a4daf7
golang.org/x/net@v0.8.0
stdlib@go1.20.3
0.36.0
1.23.7
1
quay.io/minio/directpv:v4.0.84560083eb77d
golang.org/x/net@v0.8.0
stdlib@go1.21.0
0.36.0
1.23.7
1
quay.io/minio/livenessprobef3bc9a84f149
golang.org/x/net@v0.8.0
stdlib@go1.20.3
0.36.0
1.23.7
1
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
golang.org/x/net@v0.19.0
stdlib@go1.21.5
0.36.0
1.23.7
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
golang.org/x/net@v0.0.0-20221017152216-f25eb7ecb193
stdlib@go1.19.2
0.36.0
1.23.7
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18.6
0.36.0
1.23.7
1
quay.io/minio/mc:RELEASE.2024-04-29T09-56-05Zc574fac67f60
golang.org/x/net@v0.24.0
stdlib@go1.21.9
0.36.0
1.23.7
1
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
golang.org/x/net@v0.19.0
stdlib@go1.21.5
0.36.0
1.23.7
1
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
golang.org/x/net@v0.20.0
stdlib@go1.21.5
0.36.0
1.23.7
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.18.6
0.36.0
1.23.7
1
quay.io/minio/minio:RELEASE.2024-06-04T19-20-08Zc6b68f158628
golang.org/x/net@v0.25.0
stdlib@go1.22.3
0.36.0
1.23.7
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
golang.org/x/net@v0.1.0
stdlib@go1.19.2
0.36.0
1.23.7
1
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
golang.org/x/net@v0.15.0
stdlib@go1.19.13
0.36.0
1.23.7
1
quay.io/mittwald/harbor-operator:v1.6.365a38180e27a
golang.org/x/net@v0.24.0
stdlib@go1.22.2
0.36.0
1.23.7
1
quay.io/mittwald/kubernetes-replicator:v2.10.0b79e77d421d0
golang.org/x/net@v0.23.0
stdlib@go1.20.14
0.36.0
1.23.7
1
quay.io/mittwald/kubernetes-replicator:v2.9.1baf5f784398b
golang.org/x/net@v0.8.0
stdlib@go1.20.5
0.36.0
1.23.7
1
quay.io/mittwald/kubernetes-secret-generator:v3.4.1465b8e6d0462
golang.org/x/net@v0.26.0
stdlib@go1.23.1
0.36.0
1.23.7
1
quay.io/mittwald/servicegateway:v2.3.3fa948df30d44
stdlib@go1.21.5
1.23.7
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
stdlib@go1.13.15
0.36.0
1.23.7
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
stdlib@go1.14.10
0.36.0
1.23.7
1
quay.io/mongodb/mongodb-kubernetes-operator:0.9.05ee4bd681085
golang.org/x/net@v0.17.0
stdlib@go1.21.4
0.36.0
1.23.7
1
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
stdlib@go1.14.4
0.36.0
1.23.7
1
quay.io/oauth2-proxy/oauth2-proxy:v7.7.09ed7eaf72050
golang.org/x/net@v0.29.0
stdlib@go1.22.8
0.36.0
1.23.7
1
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.16
0.36.0
1.23.7
1
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.17.5
0.36.0
1.23.7
1
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
golang.org/x/net@v0.17.0
stdlib@go1.20.10
0.36.0
1.23.7
1
quay.io/open-cluster-management/cluster-proxy:v0.12.035f9c3ad644a
golang.org/x/net@v0.23.0
stdlib@go1.22.4
0.36.0
1.23.7
1
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.19.13
0.36.0
1.23.7
1
quay.io/openshift/origin-cli:4.66722d5041b47
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15.14
0.36.0
1.23.7
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.9
0.36.0
1.23.7
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
golang.org/x/net@v0.20.0
stdlib@go1.21.3
0.36.0
1.23.7
1
quay.io/operator-framework/olm1b6002156f56
golang.org/x/net@v0.20.0
stdlib@go1.21.7
0.36.0
1.23.7
1
quay.io/operator-framework/olm40d0363f4aa6
golang.org/x/net@v0.25.0
stdlib@go1.22.3
0.36.0
1.23.7
1
quay.io/operator-framework/olmf9ea8cef95ac
golang.org/x/net@v0.7.0
stdlib@go1.19.6
0.36.0
1.23.7
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
stdlib@go1.17.2
1.23.7
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
stdlib@go1.16.15
1.23.7
1
quay.io/opsmxpublic/create-secret:v4.0.4defc3263e0e9
golang.org/x/net@v0.7.0
stdlib@go1.20.3
0.36.0
1.23.7
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.