StackRadar

CVE-2025-4673

Medium

Advisory

Published 11 Jun 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.8
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,746
of 17,781 indexed, latest versions
Container images
3,342
deployed by those charts
Fix available
1 of 2
affected packages

Sensitive headers not cleared on cross-origin redirect in net/http

Carried by container images the latest versions of 2,746 of 17,781 indexed charts deploy, on 3,342 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+153 more1.23.103,342
OSV records
DEBIAN-CVE-2025-4673GO-2025-3751
Also known as
BIT-golang-2025-4673

Charts affected

2,746 by stars
ChartLatestAffected imagesRadar Score
corednssoftizyVerified publisher0.2.01 of 1See more

coredns softizy 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
coredns/coredns:1.10.1a0ead06651cf
stdlib@go1.20
1.23.10

Open the chart page →

1,663
knative-servingsoftonic3.0.05 of 5See more

knative-serving softonic 3.0.0

5 of the 5 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhookdigest-pinned873b968f02b5
stdlib@go1.14.2
1.23.10
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinneda5de0fb75046
stdlib@go1.14.2
1.23.10
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned2ef460356b17
stdlib@go1.14.2
1.23.10
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned30ce73388ae5
stdlib@go1.14.2
1.23.10
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedf16c0e022203
stdlib@go1.14.2
1.23.10

Open the chart page →

12,502
sn-platformstreamnative1.11.446 of 9See more

sn-platform streamnative 1.11.44

6 of the 9 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.8.05af9d3041d12
stdlib@go1.19.2
1.23.10
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
stdlib@go1.20.4
1.23.10
streamnative/pulsar_vault_init:v1.0.731533fa9fab7
stdlib@go1.17.11
1.23.10
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.23.10
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.23.10
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
stdlib@go1.19.7
1.23.10

Open the chart page →

15,477
thingsboard-clusterthingsboard-cluster-bettaVerified publisher0.2.263 of 6See more

thingsboard-cluster thingsboard-cluster-betta 0.2.26

3 of the 6 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:3.5.0-debian-11-r08657bb93a581
stdlib@go1.20.5
1.23.10
bitnamilegacy/redis:7.2.1-debian-11-r0fa288394f402
stdlib@go1.19.12
1.23.10
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
stdlib@go1.19.12
1.23.10

Open the chart page →

14,566
feedbacksystemthm-mni-iiVerified publisher0.47.16 of 10See more

feedbacksystem thm-mni-ii 0.47.1

6 of the 10 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2023.12.23-debian-11-r25bb0aa825d16
stdlib@go1.21.5
1.23.10
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
stdlib@go1.19.12
1.23.10
bitnamilegacy/mysql:8.0.35-debian-11-r2be03e8ea6129
stdlib@go1.21.5
1.23.10
library/docker:20.10.21-dind3153fa63f546
stdlib@go1.18.7
1.23.10
thmmniii/fbs-qcm-frontend:v1.27.1a347f7f4d144
stdlib@go1.20.12
1.23.10
thmmniii/fbs-runner:v1.27.186105349c1a3
stdlib@go1.20.11
1.23.10

Open the chart page →

28,534
topaztopaz0.2.51 of 1See more

topaz topaz 0.2.5

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/aserto-dev/topaz:0.32.594c708ecf7dc4
stdlib@go1.24.2
1.23.10

Open the chart page →

1,494
maeshtraefikOfficialVerified publisher2.1.21 of 7See more

maesh traefik 2.1.2

1 of the 7 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
containous/maesh:v1.3.2587162516502
stdlib@go1.14.4
1.23.10

Open the chart page →

4,136
traefik-meshtraefikOfficialVerified publisher4.1.13 of 7See more

traefik-mesh traefik 4.1.1

3 of the 7 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.18db45c07f2e1b
stdlib@go1.14.4
1.23.10
library/traefik:v2.57d5a6ae66572
stdlib@go1.17.6
1.23.10
traefik/mesh:v1.4.8cf071f3e165c
stdlib@go1.19
1.23.10

Open the chart page →

9,257
k8s-ttl-controllertwin0.4.01 of 1See more

k8s-ttl-controller twin 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/twin/k8s-ttl-controller:v1.4.00525a7def93d
stdlib@go1.24.1
1.23.10

Open the chart page →

471
argocdtwomartensVerified publisher0.1.12 of 3See more

argocd twomartens 0.1.1

2 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.37.0f579d00721b0
stdlib@go1.19.6
1.23.10
quay.io/argoproj/argocd:v2.8.6acaf37352569
stdlib@go1.20.4
1.23.10

Open the chart page →

10,315
vaultvaultVerified publisher1.22.01 of 4See more

vault vault 1.22.0

1 of the 4 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
alpine/k8s:1.35.5d870622d0040
stdlib@go1.24.0
1.23.10

Open the chart page →

4,243
vouchvouchVerified publisher3.2.01 of 1See more

vouch vouch 3.2.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
quay.io/vouch/vouch-proxy:0.39d34e220de3cf
stdlib@go1.18.10
1.23.10

Open the chart page →

1,031
vsphere-cpivsphere-tmm1.6.01 of 1See more

vsphere-cpi vsphere-tmm 1.6.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.28.0026f63d9ed42
stdlib@go1.20.7
1.23.10

Open the chart page →

1,344
gethvulcanlink1.10.231 of 1See more

geth vulcanlink 1.10.23

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.23cce21b423165
stdlib@go1.18.5
1.23.10

Open the chart page →

2,245
wallarm-ingresswallarmVerified publisher5.3.10-12 of 2See more

wallarm-ingress wallarm 5.3.10-1

2 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
wallarm/ingress-controller:5.3.10.1a1fecfdf987e
stdlib@go1.23.1
1.23.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.4a9f03b34a3cb
stdlib@go1.22.8
1.23.10

Open the chart page →

1,301
wallarm-sidecarwallarmOfficialVerified publisher6.13.11 of 3See more

wallarm-sidecar wallarm 6.13.1

1 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.136d05b4077fb
stdlib@go1.22.2
1.23.10

Open the chart page →

965
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
library/nats:2.10.7-alpine1bcddab51b80
stdlib@go1.21.5
1.23.10

Open the chart page →

3,456
argo-cdwenerme10.9.01 of 3See more

argo-cd wenerme 10.9.0

1 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
stdlib@go1.24.0
1.23.10

Open the chart page →

3,218
minio-operatorwenerme4.3.71 of 2See more

minio-operator wenerme 4.3.7

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
stdlib@go1.17.4
1.23.10

Open the chart page →

6,085
wharf-helmwharf-helmOfficialVerified publisher3.2.64 of 5See more

wharf-helm wharf-helm 3.2.6

4 of the 5 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
stdlib@go1.18.1
1.23.10
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
stdlib@go1.18.2
1.23.10
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
stdlib@go1.18.2
1.23.10
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
stdlib@go1.18.2
1.23.10

Open the chart page →

10,032
keycloak-operatorwiremindVerified publisher0.0.141 of 1See more

keycloak-operator wiremind 0.0.14

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
stdlib@go1.13.8
1.23.10

Open the chart page →

4,714
yataiyataiVerified publisher0.4.61 of 2See more

yatai yatai 0.4.6

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
quay.io/bentoml/yatai:0.4.614b482c1f1b8
stdlib@go1.18.4
1.23.10

Open the chart page →

4,039
yet-another-cloudwatch-exporteryet-another-cloudwatch-exporter0.38.01 of 1See more

yet-another-cloudwatch-exporter yet-another-cloudwatch-exporter 0.38.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/nerdswords/yet-another-cloudwatch-exporter:v0.61.2f04925fe1fa6
stdlib@go1.22.4
1.23.10

Open the chart page →

923
adcs-issueradcs-issuer3.0.21 of 1See more

adcs-issuer adcs-issuer 3.0.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
djkormo/adcs-issuer:2.1.29f34e87e7586
stdlib@go1.22.6
1.23.10

Open the chart page →

828
kubernetes-etcd-backupadfinisVerified publisher1.6.21 of 1See more

kubernetes-etcd-backup adfinis 1.6.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
stdlib@go1.23.7
1.23.10

Open the chart page →

1,819
agentareaagentareaVerified publisher0.0.184 of 16See more

agentarea agentarea 0.0.18

4 of the 16 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
agentarea/agentarea-mcp-manager:latestefe23cef3727
stdlib@go1.22.5
1.23.10
agentarea/agentarea-mcp-runner:latestd3c209a5d531
stdlib@go1.19.8
1.23.10
oryd/kratos:v1.3.1fe2428f103a6
stdlib@go1.23.2
1.23.10
temporalio/ui:2.39.0b768f87f18b5
stdlib@go1.23.4
1.23.10

Open the chart page →

14,914
alertmanager-discordalertmanagerdiscordVerified publisher0.3.21 of 1See more

alertmanager-discord alertmanagerdiscord 0.3.2

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
speckle/alertmanager-discord:latestf6221ff308e9
stdlib@go1.22.4
1.23.10

Open the chart page →

419
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
stdlib@go1.18.1
1.23.10

Open the chart page →

12,046
clearml-servingallegroaiVerified publisher1.6.26 of 9See more

clearml-serving allegroai 1.6.2

6 of the 9 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:3.4.0-debian-11-r6ac64829e45b3
stdlib@go1.19.6
1.23.10
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
stdlib@go1.18.2
1.23.10
grafana/grafana:9.4.376dcf36e7d2a
stdlib@go1.19.4
1.23.10
jimmidyson/configmap-reload:v0.8.05af9d3041d12
stdlib@go1.19.2
1.23.10
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.23.10
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
stdlib@go1.19.4
1.23.10

Open the chart page →

17,877
pact-brokeralmorgvVerified publisher0.1.01 of 1See more

pact-broker almorgv 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.79.1.112861b0bd4d9
stdlib@go1.14.4
1.23.10

Open the chart page →

4,995
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
stdlib@go1.16.7
1.23.10

Open the chart page →

8,341
soft-servealphani-helm-chartsVerified publisher0.4.01 of 1See more

soft-serve alphani-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
charmcli/soft-serve:v0.4.039523c1a6ba8
stdlib@go1.18.5
1.23.10

Open the chart page →

3,119
smockerandrcunsVerified publisher0.0.41 of 1See more

smocker andrcuns 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
andrcuns/smocker:0.18.5b4a8eb20581a
stdlib@go1.18.10
1.23.10

Open the chart page →

2,173
upcloud-csiankra-chartsVerified publisher0.4.07 of 8See more

upcloud-csi ankra-charts 0.4.0

7 of the 8 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
alpine/k8s:1.31.137a319b15cfc9
stdlib@go1.24.2
1.23.10
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
stdlib@go1.17.3
1.23.10
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
stdlib@go1.17.3
1.23.10
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
stdlib@go1.17.3
1.23.10
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
stdlib@go1.17.3
1.23.10
registry.k8s.io/sig-storage/csi-snapshotter:v4.2.1818f35653f2e
stdlib@go1.16.2
1.23.10
registry.k8s.io/sig-storage/snapshot-controller:v4.2.195587f8777d7
stdlib@go1.16.2
1.23.10

Open the chart page →

14,917
annotations-exporterannotations-exporter0.5.01 of 1See more

annotations-exporter annotations-exporter 0.5.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/alex123012/annotations-exporter:v0.5.04c2b8dbc798e
stdlib@go1.19.3
1.23.10

Open the chart page →

1,149
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
stdlib@go1.22.5
1.23.10

Open the chart page →

3,366
anteonanteonVerified publisher2.6.45 of 13See more

anteon anteon 2.6.4

5 of the 13 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
chrislusf/seaweedfs:3.64634b094b2183
stdlib@go1.22.1
1.23.10
ddosify/selfhosted_hammer:2.0.0181965edb12e
stdlib@go1.18.1
1.23.10
library/influxdb:2.6.1-alpine44a366dd7724
stdlib@go1.19.4
1.23.10
library/redis:7.2.4-alpinec8bb255c3559
stdlib@go1.18.2
1.23.10
prom/prometheus:v2.37.98176adea328e
stdlib@go1.19.11
1.23.10

Open the chart page →

22,202
gateway-helmappscodeVerified publisher0.0.0-latest1 of 2See more

gateway-helm appscode 0.0.0-latest

1 of the 2 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/gateway:v0.0.1a8a144f14889
stdlib@go1.20.5
1.23.10

Open the chart page →

1,057
scannerappscodeVerified publisher2026.1.152 of 3See more

scanner appscode 2026.1.15

2 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
rancher/kine:v0.11.412889bbcd1e8
stdlib@go1.21.5
1.23.10
ghcr.io/appscode/trivydb:0.0.367ffb0309acb
stdlib@go1.20.2
1.23.10

Open the chart page →

5,299
smtprelayappscodeVerified publisher2026.9.111 of 1See more

smtprelay appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/appscode/smtprelay:v0.0.479c9c76a78e6
stdlib@go1.23.2
1.23.10

Open the chart page →

840
stash-enterpriseappscodeVerified publisher0.42.02 of 4See more

stash-enterprise appscode 0.42.0

2 of the 4 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.23.10
ghcr.io/stashed/stash-enterprise:v0.42.1759f3850eda9
stdlib@go1.23.3
1.23.10

Open the chart page →

3,620
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
stdlib@go1.17.6
1.23.10

Open the chart page →

5,222
kedaarieotechVerified publisher0.1.02 of 3See more

keda arieotech 0.1.0

2 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/kedacore/keda:2.16.002348a19aeae
stdlib@go1.23.3
1.23.10
ghcr.io/kedacore/keda-metrics-apiserver:2.16.073a2ebae4413
stdlib@go1.23.3
1.23.10

Open the chart page →

2,276
cert-exporterarzu3.0.11 of 1See more

cert-exporter arzu 3.0.1

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
joeelliott/cert-exporter:v2.7.0b4acd14642d0
stdlib@go1.14.15
1.23.10

Open the chart page →

2,819
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
stdlib@go1.18.2
1.23.10

Open the chart page →

17,896
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
stdlib@go1.14.12
1.23.10

Open the chart page →

10,730
dltbrokerassist-iot-distributed-broker0.2.04 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

4 of the 9 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
assistiot/distributed_broker:1.0.033e02dad168f
stdlib@go1.17.13
1.23.10
hyperledger/fabric-orderer:2.46ec3fe59ea55
stdlib@go1.18.10
1.23.10
hyperledger/fabric-peer:2.46ff36af21eb1
stdlib@go1.18.10
1.23.10
hyperledger/fabric-tools:2.4b1194f509085
stdlib@go1.18.10
1.23.10

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.04 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

4 of the 9 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
assistiot/logging_auditing:1.0.0790dbb198e86
stdlib@go1.17.13
1.23.10
hyperledger/fabric-orderer:2.46ec3fe59ea55
stdlib@go1.18.10
1.23.10
hyperledger/fabric-peer:2.46ff36af21eb1
stdlib@go1.18.10
1.23.10
hyperledger/fabric-tools:2.4b1194f509085
stdlib@go1.18.10
1.23.10

Open the chart page →

77,687
deployautoml0.1.02 of 3See more

deploy automl 0.1.0

2 of the 3 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
amd64/mysql:5.7e20a653e0f51
stdlib@go1.18.2
1.23.10
muonsoft/openapi-mock:latestc9afe1295484
stdlib@go1.20.2
1.23.10

Open the chart page →

2,947
cso-proxyav1o-chartsVerified publisher0.1.31 of 1See more

cso-proxy av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-4673.

Container imageDigestPackageFixed in
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
stdlib@go1.17.5
1.23.10

Open the chart page →

4,292

Container images carrying it

3,342 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
openebs/node-disk-operator:2.1.06afe2123c457
stdlib@go1.19.3
1.23.10
2
openebs/provisioner-localpv:3.5.0aea39e49bb97
stdlib@go1.19.13
1.23.10
2
openkruise/kruise-helm-hook:v0.1.0edc7cf9428fd
stdlib@go1.20.14
1.23.10
2
openpolicyagent/gatekeeper:v3.4.0-rc.1825370bdb3c3
stdlib@go1.16.2
1.23.10
2
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.23.10
2
oryd/kratos:v1.3.1fe2428f103a6
stdlib@go1.23.2
1.23.10
2
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.23.10
2
osixia/openldap:1.4.0ccd95cc6e61e
stdlib@go1.13.4
1.23.10
2
otel/opentelemetry-collector-contrib:0.96.07ef2a2ff46b9
stdlib@go1.21.7
1.23.10
2
otel/opentelemetry-collector-k8s:0.111.032b3c8296dcc
stdlib@go1.23.2
1.23.10
2
outlinewiki/outline:0.69.1d060dcd8f9aa
stdlib@go1.19.4
1.23.10
2
passbolt/passbolt:3.4.0-ce-non-root655547e17263
stdlib@go1.14.4
1.23.10
2
phntom/kochi:1.1.33b82358bd56e
stdlib@go1.15.5
1.23.10
2
place1/wg-access-server:v0.4.62b2f3ea80ed6
stdlib@go1.13.8
1.23.10
2
postgis/postgis:15-3.3a2fc46b52819
stdlib@go1.18.2
1.23.10
2
pottava/s3-proxy:2.020a0bcb15f76
stdlib@go1.13.7
1.23.10
2
prom/blackbox-exporter:v0.18.01ffc3f109eb3
stdlib@go1.15.2
1.23.10
2
prom/memcached-exporter:v0.14.2d8a61419b841
stdlib@go1.21.5
1.23.10
2
prom/prometheus:v2.17.242d2395cd719
stdlib@go1.13.10
1.23.10
2
prom/prometheus:v2.52.05c435642ca4d
stdlib@go1.22.3
1.23.10
2
prom/prometheus:v2.37.98176adea328e
stdlib@go1.19.11
1.23.10
2
prom/prometheus:v2.48.1a67e5e402ff5
stdlib@go1.21.5
1.23.10
2
prom/prometheus:v2.21.0d43417c260e5
stdlib@go1.15.2
1.23.10
2
prom/pushgateway:v1.0.1a5df60347882
stdlib@go1.13.5
1.23.10
2
prom/pushgateway:v1.3.0c0d39b8d4cfe
stdlib@go1.15.2
1.23.10
2
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
stdlib@go1.18.2
1.23.10
2
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
stdlib@go1.16.3
1.23.10
2
rajnandan1/kener:3.2.1930407afca731
stdlib@go1.20.7
1.23.10
2
rancher/k3s:v1.26.0-k3s19380f5dbae9a
stdlib@go1.19.4
1.23.10
2
rancher/kine:v0.11.412889bbcd1e8
stdlib@go1.21.5
1.23.10
2
rancher/local-path-provisioner:v0.0.299bebefa0b908
stdlib@go1.22.5
1.23.10
2
rclone/rclone:1.6874c51b8817e5
stdlib@go1.23.3
1.23.10
2
ribbybibby/ssl-exporter:2.4.2718abe7f5e79
stdlib@go1.18.3
1.23.10
2
rookout/controller:latest4451a6f6b8ec
stdlib@go1.20.5
1.23.10
2
rookout/data-on-prem:latest51c0fce64467
stdlib@go1.20.5
1.23.10
2
rss3/op-batcher:a77d1f52fc3492bf21915bdff8ee8e0b5bd2cb8adae8a5bdd7a6
stdlib@go1.21.3
1.23.10
2
rss3/op-proposer:a77d1f52fc3492bf21915bdff8ee8e0b5bd2cb8aa4059dd32c48
stdlib@go1.21.3
1.23.10
2
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
stdlib@go1.15.2
1.23.10
2
squareup/ghostunnel:v1.5.270f4cf270425
stdlib@go1.13.4
1.23.10
2
starrocks/operator:v1.11.78c20435a7579
stdlib@go1.22.12
1.23.10
2
statping/statping:v0.90.74e874da513a5c
stdlib@go1.14.13
1.23.10
2
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
stdlib@go1.20.4
1.23.10
2
temporalio/server:1.22.4c0a44c26397b
stdlib@go1.20.11
1.23.10
2
temporalio/ui:2.16.2af9c9349708f
stdlib@go1.20.5
1.23.10
2
thesisrobot/loop:v0.11.1-beta89ae07e787ca
stdlib@go1.13.12
1.23.10
2
thesisrobot/pool:v0.3.3-alpha2d1c388a4bda
stdlib@go1.14.12
1.23.10
2
thomasnyambati/aws-service-events-exporter:1.0.01e18a0944ceb
stdlib@go1.15.6
1.23.10
2
thomasnyambati/labelsmanager-controller:1.0.0148ae3f99fea
stdlib@go1.13.15
1.23.10
2
thoughtmachine/aws-service-quotas-exporter:v1.3.2c6065ba55c72
stdlib@go1.19.4
1.23.10
2
tkpd/gripmock:1.10.174441dadcfbd
stdlib@go1.14.6
1.23.10
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.