StackRadar

CVE-2025-4673

Medium

Advisory

Published 11 Jun 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.8
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,768
of 17,792 indexed, latest versions
Container images
3,382
deployed by those charts
Fix available
1 of 2
affected packages

Sensitive headers not cleared on cross-origin redirect in net/http

Carried by container images the latest versions of 2,768 of 17,792 indexed charts deploy, on 3,382 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+153 more1.23.103,382
OSV records
DEBIAN-CVE-2025-4673GO-2025-3751
Also known as
BIT-golang-2025-4673

Charts affected

2,768 by stars
ChartLatestAffected imagesRadar Score
github-actions-runner-operatorevryfs-ossVerified publisher2.8.11 of 1See more

github-actions-runner-operator evryfs-oss 2.8.1

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
quay.io/evryfs/github-actions-runner-operator:v0.11.16b084e0bd082
stdlib@go1.21.1
1.23.10

Open the chart page →

1,236
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
factly/vidcheck-server:0.12.087064eb0463c
stdlib@go1.14.2
1.23.10

Open the chart page →

3,618
ecr-cleanupfairwinds-stableVerified publisher1.2.81 of 1See more

ecr-cleanup fairwinds-stable 1.2.8

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
danielfm/kube-ecr-cleanup-controller:0.1.1012485563b1d0
stdlib@go1.19.6
1.23.10

Open the chart page →

1,004
featurehubfeaturehub4.1.63 of 7See more

featurehub featurehub 4.1.6

3 of the 7 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
library/nats:2.10.5-alpine85319e5e541b
stdlib@go1.21.4
1.23.10
natsio/nats-box:0.14.1a67913df95f1
stdlib@go1.21.3
1.23.10
natsio/nats-server-config-reloader:0.13.0b3359eeb10bf
stdlib@go1.20.5
1.23.10

Open the chart page →

8,248
federidfederidOfficialVerified publisher0.1.21 of 1See more

federid federid 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
federid/webhook:0.1.0fbfb7c6510a7
stdlib@go1.23.3
1.23.10

Open the chart page →

2,094
fission-corefission-chartsVerified publisher1.14.13 of 3See more

fission-core fission-charts 1.14.1

3 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
fission/fission-bundle:1.14.13fcfd8a0fa5d
stdlib@go1.15.14
1.23.10
fission/pre-upgrade-checks:1.14.1fa0f24cdb9cd
stdlib@go1.15.14
1.23.10
fission/reporter:1.14.104c6e06af175
stdlib@go1.15.14
1.23.10

Open the chart page →

7,107
openldapfluktuid0.1.11 of 2See more

openldap fluktuid 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.23.10

Open the chart page →

3,314
free5gcfree5gcVerified publisher0.1.311 of 12See more

free5gc free5gc 0.1.3

11 of the 12 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
free5gc/amf:v3.4.31bc96ff5a2a6
stdlib@go1.21.8
1.23.10
free5gc/ausf:v3.4.3687ff4daf5da
stdlib@go1.21.8
1.23.10
free5gc/chf:v3.4.3e2a4dd98a4ed
stdlib@go1.21.8
1.23.10
free5gc/nrf:v3.4.399e46b860efb
stdlib@go1.21.8
1.23.10
free5gc/nssf:v3.4.3dfe8c68c04b4
stdlib@go1.21.8
1.23.10
free5gc/pcf:v3.4.3f712e8ecd927
stdlib@go1.21.8
1.23.10
free5gc/smf:v3.4.360e38baa4b10
stdlib@go1.21.8
1.23.10
free5gc/udm:v3.4.32f68df062a50
stdlib@go1.21.8
1.23.10
free5gc/udr:v3.4.3c0783bcdcbdc
stdlib@go1.21.8
1.23.10
free5gc/upf:v3.4.3b6b362a39fdd
stdlib@go1.21.8
1.23.10
free5gc/webui:v3.4.39adeb18492cb
stdlib@go1.21.8
1.23.10

Open the chart page →

10,711
fsmfsmOfficialVerified publisher0.2.112 of 5See more

fsm fsm 0.2.11

2 of the 5 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
flomesh/fsm-ingress-pipy:0.2.11cc39c96711c4
stdlib@go1.19.13
1.23.10
flomesh/fsm-manager:0.2.1122f849c70b25
stdlib@go1.19.13
1.23.10

Open the chart page →

4,227
adguard-homegabe565Verified publisher0.3.251 of 2See more

adguard-home gabe565 0.3.25

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.56c64a0b37f7b9
stdlib@go1.23.5
1.23.10

Open the chart page →

964
home-assistantgabe565Verified publisher0.17.01 of 1See more

home-assistant gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:latest612d76760b54
stdlib@go1.23.3
1.23.10

Open the chart page →

2,134
memosgabe565Verified publisher0.17.01 of 1See more

memos gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/usememos/memos:0.24.04723d86e6797
stdlib@go1.23.6
1.23.10

Open the chart page →

1,331
dexgabibbo974.0.41 of 1See more

dex gabibbo97 4.0.4

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
stdlib@go1.16.2
1.23.10

Open the chart page →

3,398
gboxgboxVerified publisher1.0.51 of 2See more

gbox gbox 1.0.5

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
gboxproxy/gbox:v1.0.63a9f4a711d5c
stdlib@go1.17.9
1.23.10

Open the chart page →

2,528
adguard-homegeek-cookbookVerified publisher5.5.21 of 2See more

adguard-home geek-cookbook 5.5.2

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.7b9974aed13d0
stdlib@go1.17.9
1.23.10

Open the chart page →

1,742
alertmanager-botgeek-cookbookVerified publisher6.4.21 of 1See more

alertmanager-bot geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
metalmatze/alertmanager-bot:0.4.3426bc2ca7586
stdlib@go1.13.15
1.23.10

Open the chart page →

3,587
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
stdlib@go1.16.8
1.23.10

Open the chart page →

17,432
filebrowsergeek-cookbookVerified publisher1.4.21 of 1See more

filebrowser geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.18.04fcd47af573c
stdlib@go1.16.9
1.23.10

Open the chart page →

3,474
focalboardgeek-cookbookVerified publisher4.4.21 of 1See more

focalboard geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
mattermost/focalboard:0.9.031078df7a3c8
stdlib@go1.16.5
1.23.10

Open the chart page →

3,632
influxdb-exportergeek-cookbookVerified publisher1.2.21 of 1See more

influxdb-exporter geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
prom/influxdb-exporter:v0.9.0f63fd77c05ee
stdlib@go1.17.8
1.23.10

Open the chart page →

1,051
network-ups-toolsgeek-cookbookVerified publisher6.4.21 of 1See more

network-ups-tools geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
stdlib@go1.15
1.23.10

Open the chart page →

14,013
otel-collectorgeek-cookbookVerified publisher1.2.21 of 1See more

otel-collector geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.46.0ba173aa85f3f
stdlib@go1.17.7
1.23.10

Open the chart page →

2,568
owncastgeek-cookbookVerified publisher3.4.21 of 1See more

owncast geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
gabekangas/owncast:0.0.797461aedb580
stdlib@go1.15.2
1.23.10

Open the chart page →

3,167
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
stdlib@go1.15.12
1.23.10

Open the chart page →

8,048
prowlarrgeek-cookbookVerified publisher4.5.21 of 1See more

prowlarr geek-cookbook 4.5.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
stdlib@go1.16.8
1.23.10

Open the chart page →

11,624
sabnzbdgeek-cookbookVerified publisher9.4.21 of 1See more

sabnzbd geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
stdlib@go1.15
1.23.10

Open the chart page →

10,295
sambageek-cookbookVerified publisher6.2.21 of 1See more

samba geek-cookbook 6.2.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/crazy-max/samba:4.15.5bed6f4ec2e82
stdlib@go1.17.2
1.23.10

Open the chart page →

2,318
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
stdlib@go1.18.4
1.23.10

Open the chart page →

13,147
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
stdlib@go1.13.15
1.23.10

Open the chart page →

15,910
uptime-kumageek-cookbookVerified publisher1.4.21 of 1See more

uptime-kuma geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.17.1a4eab252e5a2
stdlib@go1.17.5
1.23.10

Open the chart page →

5,088
valheimgeek-cookbookVerified publisher4.4.21 of 1See more

valheim geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/lloesche/valheim-server:latest20fde516ce31
stdlib@go1.24.1
1.23.10

Open the chart page →

4,927
wireguardgeek-cookbookVerified publisher1.4.21 of 1See more

wireguard geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
stdlib@go1.15
1.23.10

Open the chart page →

7,709
gentrace-self-hostedgentrace-self-hostedVerified publisher0.1.32 of 9See more

gentrace-self-hosted gentrace-self-hosted 0.1.3

2 of the 9 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.8512bb8a21483
stdlib@go1.19.10
1.23.10
library/postgres:15.38775adb39f0d
stdlib@go1.18.2
1.23.10

Open the chart page →

15,661
leantimegissilabs1.3.01 of 2See more

leantime gissilabs 1.3.0

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
library/mariadb:10.6.218a16204dc96c
stdlib@go1.18.2
1.23.10

Open the chart page →

6,469
gitea-sonarqube-botgitea-sonarqube-botOfficialVerified publisher0.4.01 of 1See more

gitea-sonarqube-bot gitea-sonarqube-bot 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
justusbunsi/gitea-sonarqube-bot:v0.4.018dd43b470d9
stdlib@go1.23.3
1.23.10

Open the chart page →

1,145
temporalglasskubeVerified publisher0.45.2-gk.110 of 14See more

temporal glasskube 0.45.2-gk.1

10 of the 14 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
grafana/grafana:11.0.00dc5a246ab16
stdlib@go1.21.10
1.23.10
temporalio/admin-tools:1.25.0-tctl-1.18.1-cli-1.0.0cda4901bab53
stdlib@go1.22.3
1.23.10
temporalio/server:1.25.08a5798191dea
stdlib@go1.22.3
1.23.10
temporalio/ui:2.30.25c2a3645d09c
stdlib@go1.22.1
1.23.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.74.0d55631c7a740
stdlib@go1.22.3
1.23.10
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
stdlib@go1.21.7
1.23.10
quay.io/prometheus/node-exporter:v1.8.1fa7fa12a57ef
stdlib@go1.22.3
1.23.10
quay.io/prometheus/prometheus:v2.53.0075b1ba2c4eb
stdlib@go1.22.4
1.23.10
quay.io/prometheus/pushgateway:v1.8.0c159e946abf4
stdlib@go1.22.1
1.23.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.12.0b401fae262a5
stdlib@go1.21.8
1.23.10

Open the chart page →

16,380
gorse-enterprisegorse-io0.4.23 of 5See more

gorse-enterprise gorse-io 0.4.2

3 of the 5 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
zhenghaoz/gorse-master:0.4.12033046b432ec
stdlib@go1.20.1
1.23.10
zhenghaoz/gorse-server:0.4.1239c565685b01
stdlib@go1.20.1
1.23.10
zhenghaoz/gorse-worker:0.4.12f7739f64c9b0
stdlib@go1.20.1
1.23.10

Open the chart page →

4,401
meta-monitoringgrafana1.3.02 of 2See more

meta-monitoring grafana 1.3.0

2 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
grafana/alloy:v1.4.306bdcbb51fc2
stdlib@go1.22.7
1.23.10
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
stdlib@go1.21.1
1.23.10

Open the chart page →

3,580
phlaregrafana0.5.41 of 1See more

phlare grafana 0.5.4

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
grafana/phlare:0.5.1330f990cdad9
stdlib@go1.19.6
1.23.10

Open the chart page →

2,091
armada-operatorgresearch0.7.02 of 2See more

armada-operator gresearch 0.7.0

2 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
gresearch/armada-operator:latest6c43743e2b2d
stdlib@go1.24.0
1.23.10
kubebuilder/kube-rbac-proxy:v0.16.03c4f708c6204
stdlib@go1.21.7
1.23.10

Open the chart page →

1,575
carettagroundcover0.0.163 of 3See more

caretta groundcover 0.0.16

3 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
quay.io/groundcover/caretta:v0.0.16ed8f5118e3a4
stdlib@go1.18
1.23.10
quay.io/groundcover/grafana:9.3.18c65b333a3d3
stdlib@go1.19.3
1.23.10
quay.io/groundcover/victoria-metrics:v1.85.380ddeb90d18d
stdlib@go1.19.4
1.23.10

Open the chart page →

6,808
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
stdlib@go1.21.13
1.23.10

Open the chart page →

10,172
terraform-cloud-operatorhashicorpVerified publisher2.5.02 of 2See more

terraform-cloud-operator hashicorp 2.5.0

2 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
hashicorp/terraform-cloud-operator:2.5.0c2f78a575a8a
stdlib@go1.22.4
1.23.10
quay.io/brancz/kube-rbac-proxy:v0.18.0754ab2a723c8
stdlib@go1.22.4
1.23.10

Open the chart page →

1,470
hawkhawk1.1.53 of 4See more

hawk hawk 1.1.5

3 of the 4 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
grafana/grafana:8.5.042d3e6bc1865
stdlib@go1.17.9
1.23.10
library/postgres:16.109f23e02d766
stdlib@go1.18.2
1.23.10
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
stdlib@go1.20.11
1.23.10

Open the chart page →

13,704
clickstackhdx-oss-v21.1.11 of 5See more

clickstack hdx-oss-v2 1.1.1

1 of the 5 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
library/mongo:5.0.32-focal3b6c281e1c08
stdlib@go1.24.0
1.23.10

Open the chart page →

4,761
guacamolehelmforgeVerified publisher1.5.21 of 5See more

guacamole helmforge 1.5.2

1 of the 5 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
library/postgres:17.5-bookwormfbcea1bd13b6
stdlib@go1.18.2
1.23.10

Open the chart page →

8,908
uptime-kumahelmforgeVerified publisher1.5.131 of 1See more

uptime-kuma helmforge 1.5.13

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
stdlib@go1.20.5
1.23.10

Open the chart page →

30,398
uptimekumahelm-l3st86Verified publisher0.1.101 of 1See more

uptimekuma helm-l3st86 0.1.10

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.1396510915e6be
stdlib@go1.19.6
1.23.10

Open the chart page →

4,205
helm-operatorhelm-operatorVerified publisher0.0.21 of 1See more

helm-operator helm-operator 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
bsgrigorov/helm-operator:latest45ab095f09c8
stdlib@go1.15.12
1.23.10

Open the chart page →

6,985
spirehelm-spireVerified publisher0.30.21 of 10See more

spire helm-spire 0.30.2

1 of the 10 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/spiffe/spiffe-csi-driver:0.2.79dfe4f0caff0
stdlib@go1.24.0
1.23.10

Open the chart page →

1,685

Container images carrying it

3,382 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
zeetdev/tailscale-relay:v1.24.21967aa2840b6
stdlib@go1.18.1-ts710a0d8610
1.23.10
1
zufardhiyaulhaq/community-operator-v2:v1.0.07f1bbbe114eb
stdlib@go1.17.12
1.23.10
1
zufardhiyaulhaq/devopsweekly:v2.1.046625567fb60
stdlib@go1.17.13
1.23.10
1
zufardhiyaulhaq/goweekly:v2.0.008dcc130fbea
stdlib@go1.17.12
1.23.10
1
zufardhiyaulhaq/istio-ratelimit-operator:v2.15.0692cfc9d6614
stdlib@go1.19.13
1.23.10
1
zufardhiyaulhaq/javascriptweekly:v2.1.086424bd0b2a4
stdlib@go1.17.13
1.23.10
1
zufardhiyaulhaq/kubernetesweekly:v2.1.0a287ada277c6
stdlib@go1.16.15
1.23.10
1
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
stdlib@go1.16.15
1.23.10
1
zufardhiyaulhaq/nodejsweekly:v1.1.0306859a3f167
stdlib@go1.16.15
1.23.10
1
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
stdlib@go1.13.15
1.23.10
1
gcr.io/cadvisor/cadvisor:v0.47.2e6c562b5e983
stdlib@go1.19.9
1.23.10
1
gcr.io/cadvisor/cadvisor:v0.52.1f40e65878e25
stdlib@go1.24.1
1.23.10
1
gcr.io/cloudsql-docker/gce-proxy:1.17a85176b8e7cc
stdlib@go1.13.5
1.23.10
1
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
stdlib@go1.13.14
1.23.10
1
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
stdlib@go1.22.8
1.23.10
1
gcr.io/gke-release/custom-metrics-stackdriver-adapter:v0.13.1-gke.06937c0a9b203
stdlib@go1.19.3
1.23.10
1
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
stdlib@go1.16.3
1.23.10
1
gcr.io/google-samples/microservices-demo/cartservice:v0.2.3566733b4d2d5
stdlib@go1.15.6
1.23.10
1
gcr.io/google-samples/microservices-demo/checkoutservice:v0.2.30fad1066de77
stdlib@go1.15.10
1.23.10
1
gcr.io/google-samples/microservices-demo/currencyservice:v0.2.349d458a3650f
stdlib@go1.15.6
1.23.10
1
gcr.io/google-samples/microservices-demo/frontend:v0.2.3ca5c0f0771c8
stdlib@go1.15.10
1.23.10
1
gcr.io/google-samples/microservices-demo/paymentservice:v0.2.36eb201217a8f
stdlib@go1.15.6
1.23.10
1
gcr.io/google-samples/microservices-demo/productcatalogservice:v0.2.35a4a0e54c6d0
stdlib@go1.15.10
1.23.10
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
stdlib@go1.15.6
1.23.10
1
gcr.io/google-samples/microservices-demo/shippingservice:v0.2.30cb1707fc503
stdlib@go1.15.6
1.23.10
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
stdlib@go1.16.7
1.23.10
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
stdlib@go1.16.7
1.23.10
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
stdlib@go1.22.5
1.23.10
1
gcr.io/k8s-staging-multitenancy/hnc-manager:v1.1.08ab8229f6a89
stdlib@go1.20.5
1.23.10
1
gcr.io/k8s-staging-sig-storage/objectstorage-controller:v20221027-v0.1.1-8-g300019fa84b574e8027
stdlib@go1.18.3
1.23.10
1
gcr.io/kaniko-project/executor:latest4e7a52dd1f14
stdlib@go1.24.3
1.23.10
1
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/filterd675f211a40f
stdlib@go1.22.8
1.23.10
1
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/ingressec4b544499ba
stdlib@go1.22.8
1.23.10
1
gcr.io/knative-releases/knative.dev/eventing/cmd/mtchannel_broker395f4ff1bd34
stdlib@go1.22.8
1.23.10
1
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhook873b968f02b5
stdlib@go1.14.2
1.23.10
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
stdlib@go1.21.5
1.23.10
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controllere70bc675f977
stdlib@go1.22.8
1.23.10
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.2.0f253b82941c2
stdlib@go1.17.6
1.23.10
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook7d76a6d42d13
stdlib@go1.22.8
1.23.10
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.2.0a705c1ea8e9e
stdlib@go1.17.6
1.23.10
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
stdlib@go1.21.5
1.23.10
1
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourier15a601147ef4
stdlib@go1.24.2
1.23.10
1
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourier197fbb71d1f1
stdlib@go1.18.3
1.23.10
1
gcr.io/knative-releases/knative.dev/operator/cmd/webhook6c5c90cdf707
stdlib@go1.19.5
1.23.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator08315309da4b
stdlib@go1.18.3
1.23.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator1e3db4f2eeed
stdlib@go1.14.10
1.23.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.13.121f8e11a44bf
stdlib@go1.21.5
1.23.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.2.593ff6e693577
stdlib@go1.17.8
1.23.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/activatora5de0fb75046
stdlib@go1.14.2
1.23.10
1
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.10.2c2994c2b6c2c
stdlib@go1.20.4
1.23.10
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.