StackRadar

CVE-2025-58186

Medium

Advisory

Published 29 Oct 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,372
of 17,803 indexed, latest versions
Container images
3,824
deployed by those charts
Fix available
1 of 2
affected packages

Lack of limit when parsing cookies can cause memory exhaustion in net/http

Carried by container images the latest versions of 3,372 of 17,803 indexed charts deploy, on 3,824 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+163 more1.24.83,824
OSV records
DEBIAN-CVE-2025-58186GO-2025-4012
Also known as
BIT-golang-2025-58186

Charts affected

3,372 by stars
ChartLatestAffected imagesRadar Score
iomeshkubesphere-stable1.1.023 of 25See more

iomesh kubesphere-stable 1.1.0

23 of the 25 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
iomesh/blockdevice-monitor:v0.1.0d86dab5611a7
stdlib@go1.20.3
1.24.8
iomesh/blockdevice-monitor-prober:v0.1.0584dbe19db7e
stdlib@go1.20.3
1.24.8
iomesh/csi-driver:v2.7.25d3f9bf9240b
stdlib@go1.16.7
1.24.8
iomesh/csi-node-driver-registrar:v2.5.086f58b0a2106
stdlib@go1.17.3
1.24.8
iomesh/csi-provisioner:v3.0.0f9508460b273
stdlib@go1.16.2
1.24.8
iomesh/csi-snapshotter:v6.2.2becc53e25b96
stdlib@go1.19
1.24.8
iomesh/deck:v0.1.0a31e26b6ae22
stdlib@go1.21.10
1.24.8
iomesh/deck-plugin-iomesh:v0.1.00b13bf217110
stdlib@go1.21.10
1.24.8
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.24.8
iomesh/livenessprobe:v2.8.0560f01510f99
stdlib@go1.18
1.24.8
iomesh/localpv-manager:v0.2.0f13deacac3f4
stdlib@go1.20.3
1.24.8
iomesh/node-disk-exporter:1.8.0f03148764f38
stdlib@go1.14.7
1.24.8
iomesh/node-disk-manager:1.8.0002c4b92fd34
stdlib@go1.14.7
1.24.8
iomesh/node-disk-operator:1.8.0f6c76380db34
stdlib@go1.14.7
1.24.8
iomesh/operator:v1.1.060081c9b2f52
stdlib@go1.21.4
1.24.8
iomesh/post-delete-hook:v1.1.0eea5651f3270
stdlib@go1.21.4
1.24.8
iomesh/snapshot-controller:v6.2.2fb95b65bb88f
stdlib@go1.19
1.24.8
iomesh/zookeeper-operator:0.2.159b38b5c7a61d
stdlib@go1.19.7
1.24.8
registry.k8s.io/sig-storage/csi-attacher:v4.3.04eb73137b663
stdlib@go1.20.3
1.24.8
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.24.8
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.24.8
registry.k8s.io/sig-storage/csi-resizer:v1.8.02e2b44393539
stdlib@go1.20.3
1.24.8
registry.k8s.io/sig-storage/livenessprobe:v2.10.04dc0b87ccd69
stdlib@go1.20.3
1.24.8

Open the chart page →

49,027
IOMeshkubesphere-stable1.2.023 of 25See more

IOMesh kubesphere-stable 1.2.0

23 of the 25 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
iomesh/blockdevice-monitor:v0.2.1376577ed98ac
stdlib@go1.21.5
1.24.8
iomesh/blockdevice-monitor-prober:v0.2.1026a1d87f6e9
stdlib@go1.21.5
1.24.8
iomesh/csi-driver:v2.8.01a151f602451
stdlib@go1.21.11
1.24.8
iomesh/csi-node-driver-registrar:v2.5.086f58b0a2106
stdlib@go1.17.3
1.24.8
iomesh/csi-provisioner:v3.0.0f9508460b273
stdlib@go1.16.2
1.24.8
iomesh/csi-snapshotter:v6.2.2becc53e25b96
stdlib@go1.19
1.24.8
iomesh/deck:v0.2.0282d6c419ed3
stdlib@go1.22.6
1.24.8
iomesh/deck-plugin-iomesh:v0.2.0df149e4ab39f
stdlib@go1.22.6
1.24.8
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.24.8
iomesh/livenessprobe:v2.8.0560f01510f99
stdlib@go1.18
1.24.8
iomesh/localpv-manager:v0.2.0f13deacac3f4
stdlib@go1.20.3
1.24.8
iomesh/node-disk-exporter:1.8.0f03148764f38
stdlib@go1.14.7
1.24.8
iomesh/node-disk-manager:1.8.0-2292ad270082e
stdlib@go1.14.7
1.24.8
iomesh/node-disk-operator:1.8.0-1de4aa40684ad
stdlib@go1.14.7
1.24.8
iomesh/operator:v1.2.0ba4dd6be7e59
stdlib@go1.21.4
1.24.8
iomesh/post-delete-hook:v1.2.0e3b92f838f4b
stdlib@go1.21.4
1.24.8
iomesh/snapshot-controller:v6.2.2fb95b65bb88f
stdlib@go1.19
1.24.8
iomesh/zookeeper-operator:0.2.159b38b5c7a61d
stdlib@go1.19.7
1.24.8
registry.k8s.io/sig-storage/csi-attacher:v4.3.04eb73137b663
stdlib@go1.20.3
1.24.8
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.24.8
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.24.8
registry.k8s.io/sig-storage/csi-resizer:v1.8.02e2b44393539
stdlib@go1.20.3
1.24.8
registry.k8s.io/sig-storage/livenessprobe:v2.10.04dc0b87ccd69
stdlib@go1.20.3
1.24.8

Open the chart page →

46,717
pulsarkubesphere-stable2.7.132 of 3See more

pulsar kubesphere-stable 2.7.13

2 of the 3 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
prom/prometheus:v2.17.242d2395cd719
stdlib@go1.13.10
1.24.8
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
stdlib@go1.15.6
1.24.8

Open the chart page →

86,937
aws-fsx-csi-driverkubesphere-testVerified publisher0.1.01 of 4See more

aws-fsx-csi-driver kubesphere-test 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
amazon/aws-fsx-csi-driver:latestc9b14856fd22
stdlib@go1.16.8
1.24.8

Open the chart page →

1,595
ccm-qingcloudkubesphere-testVerified publisher0.1.01 of 1See more

ccm-qingcloud kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
stdlib@go1.18.2
1.24.8

Open the chart page →

1,540
cni-hostnickubesphere-testVerified publisher0.1.01 of 1See more

cni-hostnic kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
stdlib@go1.16.3
1.24.8

Open the chart page →

2,444
csi-neonsankubesphere-testVerified publisher1.3.06 of 6See more

csi-neonsan kubesphere-test 1.3.0

6 of the 6 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.24.8
csiplugin/csi-neonsan:v1.2.21fa83d45417f
stdlib@go1.14.4
1.24.8
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.24.8
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.24.8
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.24.8
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.24.8

Open the chart page →

18,542
csi-qingcloudkubesphere-testVerified publisher1.4.06 of 6See more

csi-qingcloud kubesphere-test 1.4.0

6 of the 6 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.24.8
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.24.8
csiplugin/csi-qingcloud:v1.4.00766163dc046
stdlib@go1.19.13
1.24.8
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.24.8
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.24.8
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.24.8

Open the chart page →

12,448
curvefs-csikubesphere-testVerified publisher0.1.01 of 3See more

curvefs-csi kubesphere-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.24.8

Open the chart page →

2,831
minio-gatewaykubesphere-testVerified publisher0.1.01 of 1See more

minio-gateway kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
stdlib@go1.24.6
1.24.8

Open the chart page →

1,201
mongodbkubesphere-testVerified publisher0.3.21 of 2See more

mongodb kubesphere-test 0.3.2

1 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
mikefarah/yq:2.4.16fc625c402de
stdlib@go1.13.3
1.24.8

Open the chart page →

9,643
online-boutiquekubesphere-testVerified publisher0.1.08 of 11See more

online-boutique kubesphere-test 0.1.0

8 of the 11 container images this version deploys carry CVE-2025-58186.

Open the chart page →

26,080
openelbkubesphere-testVerified publisher0.2.42 of 2See more

openelb kubesphere-test 0.2.4

2 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kubesphere/openelb:v0.4.4ed7311a0f9e4
stdlib@go1.15.15
1.24.8
kubespheredev/kube-webhook-certgen:v1.1.123a03c9c381f
stdlib@go1.16.9
1.24.8

Open the chart page →

4,337
porterkubesphere-testVerified publisher0.2.21 of 2See more

porter kubesphere-test 0.2.2

1 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kubesphere/porter:v0.4.38d1ed5ee1d2e
stdlib@go1.15.15
1.24.8

Open the chart page →

2,792
snapshot-controllerkubesphere-testVerified publisher0.2.01 of 1See more

snapshot-controller kubesphere-test 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
csiplugin/snapshot-controller:v4.0.000fcc441ea9f
stdlib@go1.15
1.24.8

Open the chart page →

2,220
kubestellar-consolekubestellar-consoleVerified publisher0.3.411 of 2See more

kubestellar-console kubestellar-console 0.3.41

1 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
alpine/k8s:1.32.47e1e7d5b7a96
stdlib@go1.20.4
1.24.8

Open the chart page →

4,614
kubestellar-uikubestellaruiVerified publisher0.1.12 of 4See more

kubestellar-ui kubestellarui 0.1.1

2 of the 4 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
library/redis:7.0-alpinec9d92d840fd0
stdlib@go1.18.2
1.24.8
mavrick1/kubestellar-b:latest45ca0429a1d4
stdlib@go1.20.3
1.24.8

Open the chart page →

5,068
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.24.8

Open the chart page →

8,816
kube-workload-restarterkube-workload-restarterVerified publisher0.0.41 of 1See more

kube-workload-restarter kube-workload-restarter 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
andreacioni/kube-workload-restarter:0.0.242938b310090a
stdlib@go1.20.2
1.24.8

Open the chart page →

1,815
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.48 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

8 of the 9 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
stdlib@go1.22.7
1.24.8
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
stdlib@go1.21.1
1.24.8
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
stdlib@go1.23.12
1.24.8
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
stdlib@go1.22.10
1.24.8
ghcr.io/kubiyabot/kubiya-operator:runner_v26bf945565865
stdlib@go1.25.1
1.24.8
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
stdlib@go1.21.5
1.24.8
ghcr.io/kubiyabot/workflow-engine:v1.46.2560a16a56d4e
stdlib@go1.23.12
1.24.8
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.24.8

Open the chart page →

20,515
lethe-stackkuossOfficialVerified publisher0.2.32 of 3See more

lethe-stack kuoss 0.2.3

2 of the 3 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
ghcr.io/kuoss/eventrouter:v0.4.1300b48beff3ae
stdlib@go1.23.12
1.24.8
ghcr.io/kuoss/lethe:v0.3.1c59f082ba8b2
stdlib@go1.23.12
1.24.8

Open the chart page →

1,762
ctrlmeshkusionstackVerified publisher0.2.01 of 1See more

ctrlmesh kusionstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
stdlib@go1.20.14
1.24.8

Open the chart page →

3,481
kusionkusionstackVerified publisher0.14.12 of 3See more

kusion kusionstack 0.14.1

2 of the 3 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
stdlib@go1.22.10
1.24.8
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.24.8

Open the chart page →

59,153
operatingkusionstackVerified publisher0.5.11 of 1See more

operating kusionstack 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kusionstack/operating:v0.5.0c28bd96b986b
stdlib@go1.19.13
1.24.8

Open the chart page →

1,881
sample-operatorkusionstackVerified publisher0.1.21 of 1See more

sample-operator kusionstack 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
chaerr/kridge:demo-operator-v0.1.266833deec017
stdlib@go1.20.7
1.24.8

Open the chart page →

2,515
azure-key-vault-helperkvalitetsitVerified publisher2.0.21 of 1See more

azure-key-vault-helper kvalitetsit 2.0.2

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kvalitetsit/go-loop:1.1.0d07f449d75ed
stdlib@go1.25.1
1.24.8

Open the chart page →

307
dynatrace-operatorkvalitetsitVerified publisher1.3.01 of 1See more

dynatrace-operator kvalitetsit 1.3.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
stdlib@go1.22.5
1.24.8

Open the chart page →

1,320
krakendkvalitetsitVerified publisher0.0.31 of 1See more

krakend kvalitetsit 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
stdlib@go1.24.2
1.24.8

Open the chart page →

1,518
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
stdlib@go1.14.1
1.24.8

Open the chart page →

16,686
metadockvalitetsitVerified publisher0.0.72 of 2See more

metadoc kvalitetsit 0.0.7

2 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kvalitetsit/metadoc-app:maine89e351733ad
stdlib@go1.19.5
1.24.8
kvalitetsit/metadoc-web:mainf57e7553f5bd
stdlib@go1.16
1.24.8

Open the chart page →

4,033
nsp-prometheus-exporterkvalitetsitVerified publisher1.0.191 of 2See more

nsp-prometheus-exporter kvalitetsit 1.0.19

1 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kvalitetsit/nsp-prometheus-exporter:1.0.190b397ff954ec
stdlib@go1.15.3
1.24.8

Open the chart page →

2,064
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kvalitetsit/stakit-frontend:0.2.5fd5c4f60ef80
stdlib@go1.19.3
1.24.8

Open the chart page →

7,852
kvkkvkservice0.1.01 of 4See more

kvk kvkservice 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
conduction/kvk-php:dev8f177f9f8a7b
stdlib@go1.13.10
1.24.8

Open the chart page →

8,545
freescoutl4gVerified publisher0.1.01 of 3See more

freescout l4g 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
tiredofit/freescout:php8.2-1.17.725b7cc0658f07
stdlib@go1.22.2
1.24.8

Open the chart page →

5,337
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
stdlib@go1.14
1.24.8

Open the chart page →

26,513
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
stdlib@go1.24.3
1.24.8

Open the chart page →

2,279
lambdapinglambdaping1.0.41 of 1See more

lambdaping lambdaping 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
udhos/lambdaping:1.0.46bd2cf2ac732
stdlib@go1.23.4
1.24.8

Open the chart page →

1,347
pageslatif-pages1.0.01 of 3See more

pages latif-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.24.8

Open the chart page →

20,261
cachelavaOfficialVerified publisher1.1.11 of 1See more

cache lava 1.1.1

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
ghcr.io/lavanet/lava/lavap:v2.5.089028adefcff
stdlib@go1.20.14
1.24.8

Open the chart page →

1,385
pageslavanya-pages1.0.01 of 3See more

pages lavanya-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.24.8

Open the chart page →

20,261
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
stdlib@go1.20.5
1.24.8

Open the chart page →

33,731
metallblectures-k8sinfra0.10.22 of 2See more

metallb lectures-k8sinfra 0.10.2

2 of the 2 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.10.221164241c045
stdlib@go1.16.5
1.24.8
quay.io/metallb/speaker:v0.10.258cb99053bb3
stdlib@go1.16.5
1.24.8

Open the chart page →

5,406
prometheuslectures-k8sinfra15.8.55 of 6See more

prometheus lectures-k8sinfra 15.8.5

5 of the 6 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.24.8
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.24.8
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
stdlib@go1.16.7
1.24.8
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
stdlib@go1.17.3
1.24.8
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
stdlib@go1.18.4
1.24.8

Open the chart page →

9,111
grafanaleechistest5.3.01 of 1See more

grafana leechistest 5.3.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.24.8

Open the chart page →

3,199
prometheusleechistest11.6.04 of 6See more

prometheus leechistest 11.6.0

4 of the 6 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.24.8
prom/prometheus:v2.19.0bfad037f95e5
stdlib@go1.14.4
1.24.8
prom/pushgateway:v1.2.00a9031142481
stdlib@go1.13.8
1.24.8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.24.8

Open the chart page →

8,492
kube-benchlemontechVerified publisher0.1.01 of 1See more

kube-bench lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.9c329d73fea58
stdlib@go1.19
1.24.8

Open the chart page →

1,633
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
stdlib@go1.19
1.24.8

Open the chart page →

4,281
adguard-homelib42Verified publisher2.0.01 of 1See more

adguard-home lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.65d765078d2140
stdlib@go1.24.6
1.24.8

Open the chart page →

1,205
libredb-studiolibredb-studio-oci0.1.641 of 1See more

libredb-studio libredb-studio-oci 0.1.64

1 of the 1 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.16.0fa925884368a
stdlib@go1.24.4
1.24.8

Open the chart page →

1,182
librenmslibrenms10.1.12 of 5See more

librenms librenms 10.1.1

2 of the 5 container images this version deploys carry CVE-2025-58186.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
stdlib@go1.24.6
1.24.8
librenms/librenms:26.8.28194a4a9ff49
stdlib@go1.24.6
1.24.8

Open the chart page →

3,169

Container images carrying it

3,824 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/postgres:17.5aadf2c0696f5
stdlib@go1.18.2
1.24.8
1
library/postgres:13.12ced3ba927f4c
stdlib@go1.18.2
1.24.8
1
library/postgres:15.18-bookworme8db9bd3e9e1
stdlib@go1.24.6
1.24.8
1
library/postgres:14.22eba8ddbdd837
stdlib@go1.24.6
1.24.8
1
library/postgres:17.10ebba4f4de37f
stdlib@go1.24.6
1.24.8
1
library/postgres:17.6-alpineef257d85f76e
stdlib@go1.24.6
1.24.8
1
library/postgres:17-alpinef02121de6f74
stdlib@go1.24.6
1.24.8
1
library/postgres:14.6f565573d74ae
stdlib@go1.18.2
1.24.8
1
library/postgres:17.5-bookwormfbcea1bd13b6
stdlib@go1.18.2
1.24.8
1
library/rabbitmq:4.3.6-management534e4fefc5f0
stdlib@go1.22.2
1.24.8
1
library/rabbitmq:4.3.5-management57bddb6fbc34
stdlib@go1.22.2
1.24.8
1
library/rabbitmq:4.3.667bad329974a
stdlib@go1.22.2
1.24.8
1
library/rabbitmq:4.2.87561d672fae4
stdlib@go1.22.2
1.24.8
1
library/rabbitmq:4.3.4-managementeb5295d08332
stdlib@go1.22.2
1.24.8
1
library/redis:7.0.4091a7b5de688
stdlib@go1.16.7
1.24.8
1
library/redis:7-bullseye6a5130174e14
stdlib@go1.18.2
1.24.8
1
library/redis:7.2.5-alpine6aaf3f5e6bc8
stdlib@go1.18.2
1.24.8
1
library/redis:6.2.20-alpine77697a75da9f
stdlib@go1.18.2
1.24.8
1
library/redis83edc2b8e9ff
stdlib@go1.18.2
1.24.8
1
library/redis:7.0.1092b8b307ee28
stdlib@go1.18.2
1.24.8
1
library/redis:7.4.1bb142a9c18ac
stdlib@go1.18.2
1.24.8
1
library/redis:7.4.1-alpinec1e88455c852
stdlib@go1.18.2
1.24.8
1
library/redis:7.0-alpinec9d92d840fd0
stdlib@go1.18.2
1.24.8
1
library/redmine:6.1.204ac44a2595b
stdlib@go1.24.6
1.24.8
1
library/telegraf:1.20.428e98eece020
stdlib@go1.17.3
1.24.8
1
library/telegraf:1.27507a3eecf809
stdlib@go1.20.7
1.24.8
1
library/telegraf:1.19.0-alpine794079a7f241
stdlib@go1.16.5
1.24.8
1
library/telegraf:1.19-alpineaddb86c0c520
stdlib@go1.16.6
1.24.8
1
library/traefik:v2.11.00a5157f742d2
stdlib@go1.22.0
1.24.8
1
library/traefik:3.3.5104204dadedf
stdlib@go1.23.7
1.24.8
1
library/traefik:v2.10.11489caffaedb
stdlib@go1.20.3
1.24.8
1
library/traefik:2.10.61957e3314f43
stdlib@go1.21.4
1.24.8
1
library/traefik:2.5.62f603f8d3abe
stdlib@go1.17.5
1.24.8
1
library/traefik:v1.7.345d47b7bb2546
stdlib@go1.16.12
1.24.8
1
library/traefik:2.5.47d0228d19042
stdlib@go1.17.3
1.24.8
1
library/traefik:2.4.8eda951fd29a8
stdlib@go1.16.2
1.24.8
1
library/traefik:2.2.8f5af5a5ce17f
stdlib@go1.14.6
1.24.8
1
library/vault:1.13.3f98ac9dd97b0
stdlib@go1.20.4
1.24.8
1
library/zookeeper:3.9.5cab8944a33a1
stdlib@go1.18.1
1.24.8
1
library/zookeeper:3.9.4dfa9ba46d14b
stdlib@go1.18.1
1.24.8
1
librenms/librenms:24.11.00920bc9117a8
stdlib@go1.21.5
1.24.8
1
librenms/librenms:22.4.14f1f3d667cc7
stdlib@go1.16.12
1.24.8
1
librenms/librenms:26.8.28194a4a9ff49
stdlib@go1.24.6
1.24.8
1
lifailon/openrouter-bot:latestea37e4b6b952
stdlib@go1.25.0
1.24.8
1
lightstep/microsatellite:2024-01-22_17-52-59Zc800e05e1eff
stdlib@go1.22.1
1.24.8
1
linuxserver/calibre-web:0.6.24241009026e6f
stdlib@go1.17.8
1.24.8
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
stdlib@go1.16.7
1.24.8
1
linuxserver/cloud9:latest45c5fe102ff3
stdlib@go1.17.11
1.24.8
1
linuxserver/smokeping:2.8.2b7f906899cd3
stdlib@go1.22.5
1.24.8
1
lishimeng/hufu:v1.2.13d5752dac834
stdlib@go1.20.7
1.24.8
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.