CVE-2026-10722
LowAdvisory
Published 3 Jun 2026In the index since 5 Sept 2026
- Severity
- Low
- worst across findings
- CVSS
- 3.3
- base score, highest
- EPSS
- 0.002
- 8th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 173
- of 17,781 indexed, latest versions
- Container images
- 156
- deployed by those charts
- Fix available
- 1 of 1
- affected package
ebpf-go is vulnerable to integer overflow via LoadCollectionSpecFromReader
Carried by container images the latest versions of 173 of 17,781 indexed charts deploy, on 156 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| github.com/ | v0.0.0-20191113100448-d9fb101ca1fb, v0.4.0, v0.5.0, v0.6.1+22 more | 0.22.0 | 156 |
- OSV records
- GHSA-xhgw-qwwf-pg32
- Also known as
- GO-2026-6238
Charts affected
173 by stars
Container images carrying it
156 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| grafana/ | 06bdcbb51fc2 | github.com/ | 0.22.0 | 1 |
| grafana/ | 84b76d56c594 | github.com/ | 0.22.0 | 1 |
| grafana/ | 8c7256f412fe | github.com/ | 0.22.0 | 1 |
| grafana/ | c3dac4e26471 | github.com/ | 0.22.0 | 1 |
| grafana/ | f50931848bd8 | github.com/ | 0.22.0 | 1 |
| grafana/ | 36d07f8d276e | github.com/ | 0.22.0 | 1 |
| grafana/ | 09d8c3ce4f3a | github.com/ | 0.22.0 | 1 |
| instill/ | c4a393e601ed | github.com/ | 0.22.0 | 1 |
| ixsystems/ | 19c218455cd2 | github.com/ | 0.22.0 | 1 |
| kubearmor/ | a08141311045 | github.com/ | 0.22.0 | 1 |
| kubeshark/ | 6d3f22525a0e | github.com/ | 0.22.0 | 1 |
| kubeshark/ | b226490dfa11 | github.com/ | 0.22.0 | 1 |
| library/ | 2a232a42256f | github.com/ | 0.22.0 | 1 |
| library/ | 3ef33f2e220b | github.com/ | 0.22.0 | 1 |
| library/ | aa3df78ecf32 | github.com/ | 0.22.0 | 1 |
| library/ | dd43b430341a | github.com/ | 0.22.0 | 1 |
| library/ | e17fa54c2ffd | github.com/ | 0.22.0 | 1 |
| linuxserver/ | 45c5fe102ff3 | github.com/ | 0.22.0 | 1 |
| moby/ | 07115a67cd22 | github.com/ | 0.22.0 | 1 |
| moby/ | 6c2fa84a6b61 | github.com/ | 0.22.0 | 1 |
| moby/ | 80b15f0735e8 | github.com/ | 0.22.0 | 1 |
| moby/ | a095b3d11ce1 | github.com/ | 0.22.0 | 1 |
| moby/ | bc964521ee58 | github.com/ | 0.22.0 | 1 |
| moby/ | c2aeafaed434 | github.com/ | 0.22.0 | 1 |
| netbirdio/ | 3104d5ca3a76 | github.com/ | 0.22.0 | 1 |
| opencsghq/ | bdd2c58b9744 | github.com/ | 0.22.0 | 1 |
| otel/ | 37fa87091cfa | github.com/ | 0.22.0 | 1 |
| otel/ | 3bc07732530c | github.com/ | 0.22.0 | 1 |
| otel/ | 5ac3e0ba2b0b | github.com/ | 0.22.0 | 1 |
| otel/ | 71fcef33ae71 | github.com/ | 0.22.0 | 1 |
| otel/ | 923eb1cfae32 | github.com/ | 0.22.0 | 1 |
| otel/ | 995f17004231 | github.com/ | 0.22.0 | 1 |
| otel/ | a7343f018690 | github.com/ | 0.22.0 | 1 |
| otel/ | b3079f45e19b | github.com/ | 0.22.0 | 1 |
| otel/ | ba173aa85f3f | github.com/ | 0.22.0 | 1 |
| otel/ | c6671841470b | github.com/ | 0.22.0 | 1 |
| otel/ | dfb3a55ea8c9 | github.com/ | 0.22.0 | 1 |
| otel/ | f2f01157055a | github.com/ | 0.22.0 | 1 |
| otel/ | faf125d656fa | github.com/ | 0.22.0 | 1 |
| owncloud/ | 88e7c854517d | github.com/ | 0.22.0 | 1 |
| percona/ | 003f9c25f842 | github.com/ | 0.22.0 | 1 |
| prom/ | 4f6c47e39a90 | github.com/ | 0.22.0 | 1 |
| rancher/ | 8c2599ecfca8 | github.com/ | 0.22.0 | 1 |
| rancher/ | eaa270df79cc | github.com/ | 0.22.0 | 1 |
| signoz/ | 72aa1e4c1ec5 | github.com/ | 0.22.0 | 1 |
| testinprod/ | 0a125bd77a2d | github.com/ | 0.22.0 | 1 |
| thmmniii/ | 86105349c1a3 | github.com/ | 0.22.0 | 1 |
| wallarm/ | f1cb26db1f5b | github.com/ | 0.22.0 | 1 |
| wallarm/ | c8920e60c726 | github.com/ | 0.22.0 | 1 |
| webdevops/ | 2446baee7b69 | github.com/ | 0.22.0 | 1 |