StackRadar

CVE-2025-47911

Unscored

Advisory

Published 5 Feb 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,520
of 17,813 indexed, latest versions
Container images
3,046
deployed by those charts
Fix available
1 of 1
affected package

Quadratic parsing complexity in golang.org/x/net/html

Carried by container images the latest versions of 2,520 of 17,813 indexed charts deploy, on 3,046 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+210 more0.45.03,046
OSV records
GO-2026-4440
Also known as
GHSA-w4gw-w5jq-g9jh

Charts affected

2,520 by stars
ChartLatestAffected imagesRadar Score
purple-piecryptexlabsVerified publisher0.0.12 of 4See more

purple-pie cryptexlabs 0.0.1

2 of the 4 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/net@v0.0.0-20210510120150-4163338589ed
0.45.0
hashicorp/vault-k8s:0.13.1bebb03e8e800
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
0.45.0

Open the chart page →

5,982
csghubcsghubVerified publisher2.5.05 of 34See more

csghub csghub 2.5.0

5 of the 34 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
grafana/loki:3.4.258a6c186ce78
golang.org/x/net@v0.34.0
0.45.0
opencsghq/csghub-portal:v2.5.0-ee1cb36b49151e
golang.org/x/net@v0.28.0
0.45.0
opencsghq/csghub-xnet:v2.5.0-ee86ea22f495c7
golang.org/x/net@v0.39.0
0.45.0
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
golang.org/x/net@v0.29.0
0.45.0
opencsghq/lws:v0.6.1de15437db41b
golang.org/x/net@v0.37.0
0.45.0

Open the chart page →

50,098
openldapcsic-charts0.1.11 of 2See more

openldap csic-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
golang.org/x/net@v0.0.0-20201010224723-4f7140c49acb
0.45.0

Open the chart page →

5,296
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
golang.org/x/net@v0.5.0
0.45.0

Open the chart page →

15,497
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.4.121994f40e0da
golang.org/x/net@v0.5.0
0.45.0

Open the chart page →

14,008
csi-driver-ipfscsi-driver-ipfs0.2.01 of 6See more

csi-driver-ipfs csi-driver-ipfs 0.2.0

1 of the 6 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-provisioner:v6.1.1d992c36d4ddd
golang.org/x/net@v0.43.0
0.45.0

Open the chart page →

3,700
secrets-store-csi-driver-provider-awscustom0.2.01 of 1See more

secrets-store-csi-driver-provider-aws custom 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r2-35-g41dc61e-2022.12.16.20.38363bd65cd707
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.45.0

Open the chart page →

1,240
irods-csi-drivercyverse0.12.03 of 4See more

irods-csi-driver cyverse 0.12.0

3 of the 4 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.9.12cddcc716c19
golang.org/x/net@v0.17.0
0.45.0
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.45.0
registry.k8s.io/sig-storage/livenessprobe:v2.11.082adbebdf5d5
golang.org/x/net@v0.13.0
0.45.0

Open the chart page →

5,309
domain-exporterd0main-exp0rter0.1.01 of 1See more

domain-exporter d0main-exp0rter 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/caarlos0/domain_exporter:v1.18.0-arm64c852606428cf
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.45.0

Open the chart page →

1,833
jupyterhubd4nVerified publisher3.3.72 of 7See more

jupyterhub d4n 3.3.7

2 of the 7 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
golang.org/x/net@v0.7.0
0.45.0
registry.k8s.io/kube-scheduler:v1.28.1146cf7475c8da
golang.org/x/net@v0.23.0
0.45.0

Open the chart page →

16,863
miniod4nVerified publisher5.2.12 of 2See more

minio d4n 5.2.1

2 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-04-29T09-56-05Zc574fac67f60
golang.org/x/net@v0.24.0
0.45.0
quay.io/minio/minio:RELEASE.2024-06-04T19-20-08Zc6b68f158628
golang.org/x/net@v0.25.0
0.45.0

Open the chart page →

2,801
cloudflareddamounVerified publisher3.3.01 of 1See more

cloudflared damoun 3.3.0

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2024.5.05d5f70a59d5e
golang.org/x/net@v0.25.0
0.45.0

Open the chart page →

1,345
gickupdamounVerified publisher1.11.01 of 1See more

gickup damoun 1.11.0

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
buddyspencer/gickup:0.10.309e7dbf923c12
golang.org/x/net@v0.24.0
0.45.0

Open the chart page →

1,028
nvidia-gpu-exporterdanchevVerified publisher1.0.31 of 1See more

nvidia-gpu-exporter danchev 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/utkuozdemir/nvidia_gpu_exporter:1.5.0d75967a4dd72
golang.org/x/net@v0.40.0
0.45.0

Open the chart page →

1,250
grafana-agentdandydev-chartsVerified publisher0.19.21 of 1See more

grafana-agent dandydev-charts 0.19.2

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
grafana/agent:v0.20.0825c09373d27
golang.org/x/net@v0.0.0-20210917221730-978cfadd31cf
0.45.0

Open the chart page →

3,248
dapr-agentsdapr-agents-devVerified publisher0.1.56 of 31See more

dapr-agents dapr-agents-dev 0.1.5

6 of the 31 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
grafana/tempo:2.9.065a578975943
golang.org/x/net@v0.43.0
0.45.0
prom/memcached-exporter:v0.15.4b6763ecb3c47
golang.org/x/net@v0.44.0
0.45.0
ghcr.io/kagent-dev/kagent/tools:0.0.13c8882543f693
golang.org/x/net@v0.38.0
0.45.0
ghcr.io/kagent-dev/kmcp/controller:0.2.283276357d448
golang.org/x/net@v0.30.0
0.45.0
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
golang.org/x/net@v0.44.0
0.45.0
registry.k8s.io/kubectl:v1.31.099b37df34bc4
golang.org/x/net@v0.26.0
0.45.0

Open the chart page →

22,740
dns-mesh-controllerdashdns2.0.81 of 2See more

dns-mesh-controller dashdns 2.0.8

1 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
emirozbir/dashdns-controller:v2.0.5d3a5c1063425
golang.org/x/net@v0.38.0
0.45.0

Open the chart page →

1,111
dasherdasher0.1.11 of 1See more

dasher dasher 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/flohansen/dasher-server:latest7cde8c3fa2d1
golang.org/x/net@v0.22.0
0.45.0

Open the chart page →

1,097
dask-gatewaydask2026.3.01 of 2See more

dask-gateway dask 2026.3.0

1 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
library/traefik:3.3.5104204dadedf
golang.org/x/net@v0.37.0
0.45.0

Open the chart page →

2,165
cloudwatch-agent-prometheusdasmeta0.2.21 of 1See more

cloudwatch-agent-prometheus dasmeta 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
golang.org/x/net@v0.0.0-20200301022130-244492dfa37a
0.45.0

Open the chart page →

2,986
nfs-provisionerdasmeta1.0.31 of 1See more

nfs-provisioner dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/net@v0.0.0-20190812203447-cdfb69ac37fc
0.45.0

Open the chart page →

2,807
adot-exporter-for-eks-on-ec2dasmeta-adot0.15.51 of 1See more

adot-exporter-for-eks-on-ec2 dasmeta-adot 0.15.5

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
amazon/aws-otel-collector:v0.27.0d8ab0eef5074
golang.org/x/net@v0.7.0
0.45.0

Open the chart page →

1,936
datadog-csi-driverdatadogVerified publisher0.17.01 of 2See more

datadog-csi-driver datadog 0.17.0

1 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.0.1e07f914c32f0
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.45.0

Open the chart page →

2,056
datadog-operatordatadog-test0.1.21 of 1See more

datadog-operator datadog-test 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
datadog/operator:0.3.117f08a860090
golang.org/x/net@v0.0.0-20200301022130-244492dfa37a
0.45.0

Open the chart page →

3,980
agent-helmdatasaker0.1.85 of 6See more

agent-helm datasaker 0.1.8

5 of the 6 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
datasaker/dsk-container-agent:latest08b52999f67b
golang.org/x/net@v0.17.0
0.45.0
datasaker/dsk-k8s-agent:latest2542ee73be51
golang.org/x/net@v0.17.0
0.45.0
datasaker/dsk-kube-state-agent:latestd6d2eb48589d
golang.org/x/net@v0.17.0
0.45.0
datasaker/dsk-node-agent:latest1b95913b6729
golang.org/x/net@v0.17.0
0.45.0
datasaker/dsk-process-agent:latest2f38720a637d
golang.org/x/net@v0.15.0
0.45.0

Open the chart page →

7,607
ambassador-agentdatawire1.0.221 of 1See more

ambassador-agent datawire 1.0.22

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ambassador/ambassador-agent:1.0.227a1ea0d934fb
golang.org/x/net@v0.19.0
0.45.0

Open the chart page →

966
ambassador-operatordatawire0.3.01 of 1See more

ambassador-operator datawire 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
datawire/ambassador-operator:v1.3.0f95ae710d75c
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
0.45.0

Open the chart page →

7,497
eg-edge-stackdatawire0.0.14 of 7See more

eg-edge-stack datawire 0.0.1

4 of the 7 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ambassador/aes-authsvc:v4.0.0-preview.12a4598b03a6a
golang.org/x/net@v0.11.0
0.45.0
ambassador/aes-eg-ext:v4.0.0-preview.1b7eb1be3345d
golang.org/x/net@v0.11.0
0.45.0
ambassador/aes-wafsvc:v4.0.0-preview.15fc571509b8c
golang.org/x/net@v0.11.0
0.45.0
envoyproxy/gateway:v0.5.02a9f99d28567
golang.org/x/net@v0.10.0
0.45.0

Open the chart page →

82,304
eg-edge-stack-crdsdatawire0.0.12 of 2See more

eg-edge-stack-crds datawire 0.0.1

2 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
registry.k8s.io/gateway-api/admission-server:v0.7.1fe43ee5176a8
golang.org/x/net@v0.7.0
0.45.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
0.45.0

Open the chart page →

2,405
ddns-kubernetes-controllerddns-kubernetes-controller0.1.01 of 1See more

ddns-kubernetes-controller ddns-kubernetes-controller 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/mschenck/ddns-kubernetes-controller:latest590d55aab53c
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.45.0

Open the chart page →

971
kube-better-nodedecayofmind0.0.41 of 1See more

kube-better-node decayofmind 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/decayofmind/kube-better-node:masterccd2ce03b682
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.45.0

Open the chart page →

1,584
defactopsdefactops1.0.91 of 2See more

defactops defactops 1.0.9

1 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
defactops/defactops-ui:1.0.16825cdf9ba706
golang.org/x/net@v0.25.0
0.45.0

Open the chart page →

4,584
symfony-appdefault-ghVerified publisher0.6.51 of 3See more

symfony-app default-gh 0.6.5

1 of the 3 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
alpine/git:2.36.366b210a97bc0
golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc2
0.45.0

Open the chart page →

5,124
cortex-gatewaydeliveryheroVerified publisher0.1.91 of 1See more

cortex-gateway deliveryhero 0.1.9

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
goelankit/cortex-gateway:v1.1.00d9a82dcf026
golang.org/x/net@v0.0.0-20220403103023-749bd193bc2b
0.45.0

Open the chart page →

2,242
field-exporterdeliveryheroVerified publisher1.4.11 of 1See more

field-exporter deliveryhero 1.4.1

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/deliveryhero/field-exporter:v1.4.06b71ba4f9297
golang.org/x/net@v0.26.0
0.45.0

Open the chart page →

471
k8s-cloudwatch-adapterdeliveryheroVerified publisher0.2.21 of 1See more

k8s-cloudwatch-adapter deliveryhero 0.2.2

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
0.45.0

Open the chart page →

2,476
kubeteach-coredergeberl0.2.31 of 1See more

kubeteach-core dergeberl 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/dergeberl/kubeteach:v0.2.3-alphacf4428a3c79e
golang.org/x/net@v0.1.0
0.45.0

Open the chart page →

1,505
kubeteach-exerciseset1dergeberl0.2.31 of 2See more

kubeteach-exerciseset1 dergeberl 0.2.3

1 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/dergeberl/kubeteach:v0.2.3-alphacf4428a3c79e
golang.org/x/net@v0.1.0
0.45.0

Open the chart page →

1,505
clamav-apidevhatVerified publisher1.0.11 of 1See more

clamav-api devhat 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/devhatro/clamav-api:1.0.2ff0cd9db78d3
golang.org/x/net@v0.25.0
0.45.0

Open the chart page →

2,246
kyvernodevopstalesVerified publisher2.5.12 of 2See more

kyverno devopstales 2.5.1

2 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/kyverno/kyverno:v1.7.19c73f1841ebc
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
0.45.0
ghcr.io/kyverno/kyvernopre:v1.7.1185d2eebc60c
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
0.45.0

Open the chart page →

4,738
devopsweeklydevopsweekly2.1.01 of 1See more

devopsweekly devopsweekly 2.1.0

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
zufardhiyaulhaq/devopsweekly:v2.1.046625567fb60
golang.org/x/net@v0.0.0-20220520000938-2e3eb7b945c2
0.45.0

Open the chart page →

1,218
lxd8sdevplayer0Verified publisher0.5.12 of 2See more

lxd8s devplayer0 0.5.1

2 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
0.45.0
ghcr.io/devplayer0/lxd8s:0.3.1e159ba41aede
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
0.45.0

Open the chart page →

5,433
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
golang.org/x/net@v0.23.0
0.45.0

Open the chart page →

9,782
argocddevtron1.8.12 of 3See more

argocd devtron 1.8.1

2 of the 3 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/net@v0.0.0-20201024042810-be3efd7ff127
0.45.0
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/net@v0.0.0-20190813141303-74dc4d7220e7
0.45.0

Open the chart page →

10,486
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.45.0

Open the chart page →

13,205
argo-workflowdevtron0.1.61 of 1See more

argo-workflow devtron 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
golang.org/x/net@v0.8.0
0.45.0

Open the chart page →

1,587
devtron-enterprisedevtron48.0.010 of 28See more

devtron-enterprise devtron 48.0.0

10 of the 28 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.45.0
quay.io/devtron/cost-sync:172ef62b-1159-39429edf210d763ca
golang.org/x/net@v0.40.0
0.45.0
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/net@v0.0.0-20210503060351-7fd8e65b6420
0.45.0
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/net@v0.17.0
0.45.0
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.45.0
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.45.0
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
golang.org/x/net@v0.10.0
0.45.0
quay.io/devtron/nats-box:latest48cdd3054b20
golang.org/x/net@v0.0.0-20220906165146-f3363e06e74c
0.45.0
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
0.45.0
quay.io/devtron/silver-surfer:e3b9a2f6-1191-387899640e2dc4316
golang.org/x/net@v0.28.0
0.45.0

Open the chart page →

69,760
devtron-in-clustercddevtron0.10.22 of 2See more

devtron-in-clustercd devtron 0.10.2

2 of the 2 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/net@v0.0.0-20201216054612-986b41b23924
0.45.0
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
golang.org/x/net@v0.8.0
0.45.0

Open the chart page →

5,057
devtron-logs-dumpdevtron0.1.01 of 1See more

devtron-logs-dump devtron 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
golang.org/x/net@v0.8.0
0.45.0

Open the chart page →

4,993
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2025-47911.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
golang.org/x/net@v0.0.0-20201021035429-f5854403a974
0.45.0

Open the chart page →

12,000

Container images carrying it

3,046 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/prometheus:v3.2.16927e0919a14
golang.org/x/net@v0.34.0
0.45.0
1
quay.io/prometheus/prometheus:v2.33.591100b06e86d
golang.org/x/net@v0.0.0-20220105145211-5b0dc2dfae98
0.45.0
1
quay.io/prometheus/prometheus:v3.4.19abc6cf6aea7
golang.org/x/net@v0.39.0
0.45.0
1
quay.io/prometheus/prometheus:v2.34.0b37103e03399
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.45.0
1
quay.io/prometheus/prometheus:v2.53.1f20d3127bf28
golang.org/x/net@v0.26.0
0.45.0
1
quay.io/prometheus/pushgateway:v1.11.103738d278e08
golang.org/x/net@v0.36.0
0.45.0
1
quay.io/prometheus/pushgateway:v1.6.05111de00e969
golang.org/x/net@v0.10.0
0.45.0
1
quay.io/prometheus/statsd-exporter:v0.27.29ed70604d941
golang.org/x/net@v0.28.0
0.45.0
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
golang.org/x/net@v0.11.0
0.45.0
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
0.45.0
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.45.0
1
quay.io/redhat-developer/servicebinding-operator16286ac84ddd
golang.org/x/net@v0.17.0
0.45.0
1
quay.io/reiml/smtp-gotify:latest80ffa9d2044a
golang.org/x/net@v0.28.0
0.45.0
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
golang.org/x/net@v0.0.0-20200927032502-5d4f70055728
0.45.0
1
quay.io/rimusz/hostpath-provisioner:v0.2.587f0398ec7ff
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.45.0
1
quay.io/sergeyshevch/s3manager:feature_refactoringff59fcdf44eb
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.45.0
1
quay.io/skopeo/stable:v1.134853591bd1d2
golang.org/x/net@v0.11.0
0.45.0
1
quay.io/solo-io/certgen:0.0.0-forkb17a8c7d1f32
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.45.0
1
quay.io/solo-io/discovery:0.0.0-fork5b62aaade3c9
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.45.0
1
quay.io/solo-io/gloo:0.0.0-fork9a6c84560d44
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.45.0
1
quay.io/solo-io/gloo-envoy-wrapper:0.0.0-fork26ae185e835a
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.45.0
1
quay.io/spotahome/redis-operator:latest8c772955184e
golang.org/x/net@v0.8.0
0.45.0
1
quay.io/superq/smokeping-prober:v0.7.125d07dfc1d7e
golang.org/x/net@v0.10.0
0.45.0
1
quay.io/thanos/thanos:v0.40.1aae7b2b030ed
golang.org/x/net@v0.41.0
0.45.0
1
quay.io/thanos/thanos:v0.17.1e362f02ed304
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
0.45.0
1
quay.io/thanos/thanos:v0.36.1e542959e1b36
golang.org/x/net@v0.26.0
0.45.0
1
quay.io/tigera/operator:v1.20.1379efe0c2541
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.45.0
1
quay.io/tigera/operator:v1.15.1c6591da87aa8
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.45.0
1
quay.io/titansoft/imagepullsecret-patcher:v0.1421e6d6a155dc
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.45.0
1
quay.io/uswitch/kiam:v4.0be3a5846922d
golang.org/x/net@v0.0.0-20201216054612-986b41b23924
0.45.0
1
quay.io/vouch/vouch-proxy:0.39d34e220de3cf
golang.org/x/net@v0.5.0
0.45.0
1
quay.io/youniqx/heist:v1.1.209c43b3a9d98ae
golang.org/x/net@v0.28.0
0.45.0
1
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.11826b984e75d4
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
0.45.0
1
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.7864fc338571e
golang.org/x/net@v0.0.0-20210510120150-4163338589ed
0.45.0
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
0.45.0
1
registry.gitlab.com/av1o/okd-webhook:v0.1.028c3e5eb2650
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.45.0
1
registry.gitlab.com/bitspur/rock8s/easy-olm-operator:0.0.1779454fea06c
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.45.0
1
registry.gitlab.com/bitspur/rock8s/images/kube-commands:3.1880ef8ceffc92
golang.org/x/net@v0.13.0
0.45.0
1
registry.gitlab.com/bitspur/rock8s/resource-binding-operator:0.1.063cf51392ce7
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.45.0
1
registry.gitlab.com/commento/commento:v1.8.0e0ab1fc86761
golang.org/x/net@v0.0.0-20180811021610-c39426892332
0.45.0
1
registry.gitlab.com/dyff/dyff-operator:0.24.20e9ca51627601
golang.org/x/net@v0.44.0
0.45.0
1
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
golang.org/x/net@v0.17.0
0.45.0
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
golang.org/x/net@v0.38.0
0.45.0
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
golang.org/x/net@v0.38.0
0.45.0
1
registry.gitlab.com/gitlab-org/build/cng/cfssl-self-sign:v19.4.07757679afa1b
golang.org/x/net@v0.20.0
0.45.0
1
registry.gitlab.com/gitlab-org/ci-cd/gitlab-runner-pod-cleanup:latest4369f3ba1d9a
golang.org/x/net@v0.43.0
0.45.0
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
golang.org/x/net@v0.0.0-20210805182204-aaa1db679c0d
0.45.0
1
registry.gitlab.com/lenitech/k8s-operator/keycloak-client:v0.6.19065cdd80035
golang.org/x/net@v0.38.0
0.45.0
1
registry.gitlab.com/parrotsec/project/parrot-mirror-docker:mainf91b602ca572
golang.org/x/net@v0.14.0
0.45.0
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.45.0
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.