StackRadar

CVE-2025-22872

Medium

Advisory

Published 16 Apr 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.005
44th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,049
of 17,797 indexed, latest versions
Container images
2,538
deployed by those charts
Fix available
1 of 1
affected package

golang.org/x/net vulnerable to Cross-site Scripting

Carried by container images the latest versions of 2,049 of 17,797 indexed charts deploy, on 2,538 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+203 more0.38.02,538
OSV records
GHSA-vvgc-356p-c3xw
Also known as
GO-2025-3595

Charts affected

2,049 by stars
ChartLatestAffected imagesRadar Score
sp-otel-collectorsp-otel-collectorVerified publisher1.1.61 of 1See more

sp-otel-collector sp-otel-collector 1.1.6

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
quay.io/geored/spmm-collector-contrib:1.0.063baf86a49ac
golang.org/x/net@v0.11.0
0.38.0

Open the chart page →

2,032
sql-operatorsql-operatorOfficialVerified publisher0.11.21 of 1See more

sql-operator sql-operator 0.11.2

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/stenic/sql-operator:1.13.2f4324baa2aad
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.38.0

Open the chart page →

1,594
splunk-operatorstakaterVerified publisher0.0.61 of 2See more

splunk-operator stakater 0.0.6

1 of the 2 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
splunk/splunk-operator:2.0.0c4e0d3146226
golang.org/x/net@v0.0.0-20211029224645-99673261e6eb
0.38.0

Open the chart page →

11,459
gethstakewise2.5.81 of 3See more

geth stakewise 2.5.8

1 of the 3 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ethereum/client-go:v1.15.101f36ca5922a5
golang.org/x/net@v0.36.0
0.38.0

Open the chart page →

1,143
graph-nodestakewise3.1.01 of 3See more

graph-node stakewise 3.1.0

1 of the 3 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ipfs/kubo:v0.24.0e3de33bd746b
golang.org/x/net@v0.17.0
0.38.0

Open the chart page →

4,701
mayastorstartechnicaVerified publisher0.2.03 of 13See more

mayastor startechnica 0.2.0

3 of the 13 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.0.09a685020911e
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.38.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.6.0f1c25991bac2
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.38.0
registry.k8s.io/sig-storage/livenessprobe:v2.8.0cacee2b5c36d
golang.org/x/net@v0.0.0-20220921203646-d300de134e69
0.38.0

Open the chart page →

4,369
statpingstatping0.1.141 of 1See more

statping statping 0.1.14

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.38.0

Open the chart page →

3,378
stornxstornxVerified publisher1.1.11 of 9See more

stornx stornx 1.1.1

1 of the 9 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
golang.org/x/net@v0.33.0
0.38.0

Open the chart page →

11,760
stunner-gateway-operatorstunner1.1.02 of 2See more

stunner-gateway-operator stunner 1.1.0

2 of the 2 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
l7mp/stunner-auth-server:1.1.02f8114477ba6
golang.org/x/net@v0.36.0
0.38.0
l7mp/stunner-gateway-operator:1.1.0c34f7c931491
golang.org/x/net@v0.36.0
0.38.0

Open the chart page →

1,292
hlf-k8ssubstraVerified publisher10.2.43 of 7See more

hlf-k8s substra 10.2.4

3 of the 7 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:1.5.0f270dfeee91d
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
0.38.0
ghcr.io/substra/fabric-peer:0.2.4f681e0343a31
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.38.0
ghcr.io/substra/fabric-tools:0.2.43491a0f31c4a
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.38.0

Open the chart page →

12,030
Grafanasurajwarbhe-grafana0.1.01 of 1See more

Grafana surajwarbhe-grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
surajwarbhe/grafana:v185248611e9f1
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
0.38.0

Open the chart page →

2,604
hello-appsysintelligentVerified publisher2.0.11 of 1See more

hello-app sysintelligent 2.0.1

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
sysintelligent/hello-app:2.0.177fb30df847d
golang.org/x/net@v0.19.0
0.38.0

Open the chart page →

1,880
terraform-controllerterraform-controller0.0.201 of 1See more

terraform-controller terraform-controller 0.0.20

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
absaoss/terraform-controller:v0.0.20ad538a1285a0
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.38.0

Open the chart page →

3,538
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
golang.org/x/net@v0.7.0
0.38.0

Open the chart page →

9,126
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
golang.org/x/net@v0.7.0
0.38.0

Open the chart page →

9,126
tocktock0.6.31 of 9See more

tock tock 0.6.3

1 of the 9 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.5-debian-11-r66fe59ed5d79f
golang.org/x/net@v0.19.0
0.38.0

Open the chart page →

13,025
goalerttokens-studioVerified publisher0.0.51 of 2See more

goalert tokens-studio 0.0.5

1 of the 2 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
goalert/goalert:v0.32.008d57388b0cb
golang.org/x/net@v0.20.0
0.38.0

Open the chart page →

1,476
tor-snowflake-proxytor-snowflake-proxyVerified publisher1.2.01 of 1See more

tor-snowflake-proxy tor-snowflake-proxy 1.2.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
thetorproject/snowflake-proxy:v2.11.01ddc5069d354
golang.org/x/net@v0.35.0
0.38.0

Open the chart page →

740
spa-reloadertoucanVerified publisher0.1.01 of 1See more

spa-reloader toucan 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
toucansoftware/spa-reloader:latestc187b1fba501
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.38.0

Open the chart page →

2,245
traefik-hubtraefikOfficialVerified publisher4.2.01 of 1See more

traefik-hub traefik 4.2.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/traefik/traefik-hub:v2.11.0322f5f8cc105
golang.org/x/net@v0.17.0
0.38.0

Open the chart page →

3,171
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
golang.org/x/net@v0.0.0-20191027093000-83d349e8ac1a
0.38.0

Open the chart page →

5,287
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
golang.org/x/net@v0.26.0
0.38.0

Open the chart page →

4,082
boundaryundergridVerified publisher0.1.01 of 3See more

boundary undergrid 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
hashicorp/boundary:0.8.1fb70bd9210ff
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.38.0

Open the chart page →

4,965
upbot-operatorupbot-operator0.0.201 of 2See more

upbot-operator upbot-operator 0.0.20

1 of the 2 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
alpine/k8s:1.28.13e5c0b053fed7
golang.org/x/net@v0.12.0
0.38.0

Open the chart page →

4,477
user-componentuser-component1.2.01 of 4See more

user-component user-component 1.2.0

1 of the 4 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.38.0

Open the chart page →

7,313
v2ray-proxyv2ray-proxy0.2.41 of 1See more

v2ray-proxy v2ray-proxy 0.2.4

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
pinclr/v2ray-proxy:latestf37f250b7091
golang.org/x/net@v0.7.0
0.38.0

Open the chart page →

1,961
vault-gcp-secretsvault-gcp-secrets1.19.51 of 1See more

vault-gcp-secrets vault-gcp-secrets 1.19.5

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/tjm/vault-gcp-secrets:v1.19.59f157fe035f1
golang.org/x/net@v0.26.0
0.38.0

Open the chart page →

2,299
vearchvearch3.3.42 of 4See more

vearch vearch 3.3.4

2 of the 4 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
0.38.0
vearch/vearch:3.3.40768af33f9d9
golang.org/x/net@v0.10.0
0.38.0

Open the chart page →

5,022
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
golang.org/x/net@v0.23.0
0.38.0

Open the chart page →

5,264
riveruivirtualrootVerified publisher0.1.31 of 1See more

riverui virtualroot 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/riverqueue/riverui:0.5.32dc54179b25a
golang.org/x/net@v0.23.0
0.38.0

Open the chart page →

1,135
vultr-ccmvultrVerified publisher1.3.01 of 1See more

vultr-ccm vultr 1.3.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.38.0

Open the chart page →

3,041
waardepapierenwaardepapieren1.0.01 of 3See more

waardepapieren waardepapieren 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.38.0

Open the chart page →

8,088
waardepapieren-baliewaardepapieren-balie1.0.01 of 3See more

waardepapieren-balie waardepapieren-balie 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.38.0

Open the chart page →

7,880
waardepapieren-registerwaardepapieren-register1.1.01 of 4See more

waardepapieren-register waardepapieren-register 1.1.0

1 of the 4 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.38.0

Open the chart page →

7,439
frpswenerme1.0.11 of 1See more

frps wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
wener/frps:v0.37.05c92cc9e8597
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.38.0

Open the chart page →

3,359
wharf-ainowharf-helmVerified publisher0.1.55 of 7See more

wharf-aino wharf-helm 0.1.5

5 of the 7 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
golang.org/x/net@v0.0.0-20220325170049-de3da57026de
0.38.0
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
0.38.0
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.38.0
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.38.0
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.38.0

Open the chart page →

13,482
wharf-cmdwharf-helmVerified publisher0.3.31 of 1See more

wharf-cmd wharf-helm 0.3.3

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
0.38.0

Open the chart page →

3,435
external-monitoringwiremindVerified publisher0.3.01 of 1See more

external-monitoring wiremind 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.24.03af31f8bd1ad
golang.org/x/net@v0.9.0
0.38.0

Open the chart page →

1,300
kubemodwiremindVerified publisher0.1.51 of 2See more

kubemod wiremind 0.1.5

1 of the 2 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.13.0cadca39288ad
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
0.38.0

Open the chart page →

3,030
db-backup-retentionwjentner-chartsVerified publisher1.1.01 of 1See more

db-backup-retention wjentner-charts 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/wjentner/k8s-db-backup-retention:v1.1.08027bb46d1f4
golang.org/x/net@v0.26.0
0.38.0

Open the chart page →

898
workflows-informerworkflows-informerVerified publisher0.4.41 of 1See more

workflows-informer workflows-informer 0.4.4

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
golang.org/x/net@v0.17.0
0.38.0

Open the chart page →

1,171
wraftwraft0.1.121 of 9See more

wraft wraft 0.1.12

1 of the 9 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
golang.org/x/net@v0.12.0
0.38.0

Open the chart page →

10,165
pi-hole-exporterwyrihaximusnetVerified publisher0.1.31 of 1See more

pi-hole-exporter wyrihaximusnet 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ekofr/pihole-exporter:0.0.109fdad6f352e0
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
0.38.0

Open the chart page →

1,809
redis-db-assignment-operatorwyrihaximusnetVerified publisher1.0.61 of 1See more

redis-db-assignment-operator wyrihaximusnet 1.0.6

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/kubernetes-redis-db-assignment-operator:v1.0.831060be60bec
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.38.0

Open the chart page →

2,235
heistyouniqx-ossVerified publisher1.1.2091 of 1See more

heist youniqx-oss 1.1.209

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
quay.io/youniqx/heist:v1.1.209c43b3a9d98ae
golang.org/x/net@v0.28.0
0.38.0

Open the chart page →

806
tailscale-relayzeet0.1.51 of 1See more

tailscale-relay zeet 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
zeetdev/tailscale-relay:v1.24.21967aa2840b6
golang.org/x/net@v0.0.0-20220407224826-aac1ed45d8e3
0.38.0

Open the chart page →

2,165
cloudflare-zero-trust-operatorzelic-io0.7.11 of 1See more

cloudflare-zero-trust-operator zelic-io 0.7.1

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/bojanzelic/cloudflare-zero-trust-operator:0.7.1f4b2dbc19a78
golang.org/x/net@v0.33.0
0.38.0

Open the chart page →

583
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
ghcr.io/abstract-foundation/zksync-external-node-sidecar:v1.0.03e705d0eb1ce
golang.org/x/net@v0.7.0
0.38.0

Open the chart page →

4,581
gobackupadnoctemVerified publisher0.4.01 of 1See more

gobackup adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
huacnlee/gobackup:v3.1.1560be93229a5
golang.org/x/net@v0.17.0
0.38.0

Open the chart page →

1,836
popeyeadnoctemVerified publisher0.3.01 of 1See more

popeye adnoctem 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-22872.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
golang.org/x/net@v0.34.0
0.38.0

Open the chart page →

1,197

Container images carrying it

2,538 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/piraeusdatastore/piraeus-operator:v2.2.0ec4022c8b0e3
golang.org/x/net@v0.8.0
0.38.0
1
quay.io/prometheus/alertmanager:v0.24.0088464f949de
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.38.0
1
quay.io/prometheuscommunity/elasticsearch-exporter:v1.8.0073dd360de2c
golang.org/x/net@v0.23.0
0.38.0
1
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
golang.org/x/net@v0.35.0
0.38.0
1
quay.io/prometheuscommunity/systemd-exporter:v0.7.078c03f875dfb
golang.org/x/net@v0.33.0
0.38.0
1
quay.io/prometheusmsteams/prometheus-msteams:v1.5.3a9f4d31ab811
golang.org/x/net@v0.7.0
0.38.0
1
quay.io/prometheus/node-exporter:v1.7.04cb2b9019f17
golang.org/x/net@v0.17.0
0.38.0
1
quay.io/prometheus/node-exporter:v1.8.08a57af80a4c7
golang.org/x/net@v0.23.0
0.38.0
1
quay.io/prometheus-operator/admission-webhook:v0.79.2d4c97a1b2d67
golang.org/x/net@v0.32.0
0.38.0
1
quay.io/prometheus-operator/prometheus-config-reloader:v0.73.2706cde441321
golang.org/x/net@v0.22.0
0.38.0
1
quay.io/prometheus-operator/prometheus-config-reloader:v0.69.17bbe804260f3
golang.org/x/net@v0.17.0
0.38.0
1
quay.io/prometheus-operator/prometheus-config-reloader:v0.70.0e20576b76ffd
golang.org/x/net@v0.19.0
0.38.0
1
quay.io/prometheus-operator/prometheus-config-reloader:v0.78.1e2dc5623bcdd
golang.org/x/net@v0.30.0
0.38.0
1
quay.io/prometheus-operator/prometheus-operator:v0.73.204f2b98d71ef
golang.org/x/net@v0.22.0
0.38.0
1
quay.io/prometheus-operator/prometheus-operator:v0.74.06b3f6d8b4c0a
golang.org/x/net@v0.25.0
0.38.0
1
quay.io/prometheus-operator/prometheus-operator:v0.57.0a2d502c204f9
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.38.0
1
quay.io/prometheus-operator/prometheus-operator:v0.75.1a7cc63108511
golang.org/x/net@v0.26.0
0.38.0
1
quay.io/prometheus-operator/prometheus-operator:v0.54.0be2aef39a2f8
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.38.0
1
quay.io/prometheus-operator/prometheus-operator:v0.61.1cd7d1a82ef00
golang.org/x/net@v0.2.0
0.38.0
1
quay.io/prometheus/prometheus:v3.0.03b9b2a15d376
golang.org/x/net@v0.30.0
0.38.0
1
quay.io/prometheus/prometheus:v2.39.14748e26f9369
golang.org/x/net@v0.0.0-20220920203100-d0c6ba3f52d9
0.38.0
1
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
golang.org/x/net@v0.0.0-20220624214902-1bab6f366d9e
0.38.0
1
quay.io/prometheus/prometheus:v3.2.05888c188cf09
golang.org/x/net@v0.34.0
0.38.0
1
quay.io/prometheus/prometheus:v3.2.16927e0919a14
golang.org/x/net@v0.34.0
0.38.0
1
quay.io/prometheus/prometheus:v2.33.591100b06e86d
golang.org/x/net@v0.0.0-20220105145211-5b0dc2dfae98
0.38.0
1
quay.io/prometheus/prometheus:v2.34.0b37103e03399
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.38.0
1
quay.io/prometheus/prometheus:v2.53.1f20d3127bf28
golang.org/x/net@v0.26.0
0.38.0
1
quay.io/prometheus/pushgateway:v1.11.103738d278e08
golang.org/x/net@v0.36.0
0.38.0
1
quay.io/prometheus/pushgateway:v1.6.05111de00e969
golang.org/x/net@v0.10.0
0.38.0
1
quay.io/prometheus/statsd-exporter:v0.27.29ed70604d941
golang.org/x/net@v0.28.0
0.38.0
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
golang.org/x/net@v0.11.0
0.38.0
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
0.38.0
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.38.0
1
quay.io/redhat-developer/servicebinding-operator16286ac84ddd
golang.org/x/net@v0.17.0
0.38.0
1
quay.io/reiml/smtp-gotify:latest80ffa9d2044a
golang.org/x/net@v0.28.0
0.38.0
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
golang.org/x/net@v0.0.0-20200927032502-5d4f70055728
0.38.0
1
quay.io/rimusz/hostpath-provisioner:v0.2.587f0398ec7ff
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.38.0
1
quay.io/skopeo/stable:v1.134853591bd1d2
golang.org/x/net@v0.11.0
0.38.0
1
quay.io/solo-io/certgen:0.0.0-forkb17a8c7d1f32
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.38.0
1
quay.io/solo-io/discovery:0.0.0-fork5b62aaade3c9
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.38.0
1
quay.io/solo-io/gloo:0.0.0-fork9a6c84560d44
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.38.0
1
quay.io/solo-io/gloo-envoy-wrapper:0.0.0-fork26ae185e835a
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.38.0
1
quay.io/spotahome/redis-operator:latest8c772955184e
golang.org/x/net@v0.8.0
0.38.0
1
quay.io/superq/smokeping-prober:v0.7.125d07dfc1d7e
golang.org/x/net@v0.10.0
0.38.0
1
quay.io/thanos/thanos:v0.17.1e362f02ed304
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
0.38.0
1
quay.io/thanos/thanos:v0.36.1e542959e1b36
golang.org/x/net@v0.26.0
0.38.0
1
quay.io/tigera/operator:v1.20.1379efe0c2541
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.38.0
1
quay.io/tigera/operator:v1.15.1c6591da87aa8
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.38.0
1
quay.io/titansoft/imagepullsecret-patcher:v0.1421e6d6a155dc
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.38.0
1
quay.io/uswitch/kiam:v4.0be3a5846922d
golang.org/x/net@v0.0.0-20201216054612-986b41b23924
0.38.0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.