StackRadar

CVE-2026-25680

Medium

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,007
of 17,803 indexed, latest versions
Container images
3,683
deployed by those charts
Fix available
1 of 1
affected package

Go Net HTML parser is vulnerable to denial of service

Carried by container images the latest versions of 3,007 of 17,803 indexed charts deploy, on 3,683 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+220 more0.55.03,683
OSV records
GHSA-5cv4-jp36-h3mw
Also known as
GO-2026-5028

Charts affected

3,007 by stars
ChartLatestAffected imagesRadar Score
vaultintelVerified publisher0.8.12 of 2See more

vault intel 0.8.1

2 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
hashicorp/vault:1.12.18de4d5f31b38
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
0.55.0
hashicorp/vault-k8s:1.1.0844337076b72
golang.org/x/net@v0.0.0-20221004154528-8021a29435af
0.55.0

Open the chart page →

4,487
gravity-initinvisiblVerified publisher1.0.91 of 1See more

gravity-init invisibl 1.0.9

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
invisibl/gravity-init:v1.0.91a970f84178b
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.55.0

Open the chart page →

2,007
identity-managerinvisiblVerified publisher1.0.01 of 1See more

identity-manager invisibl 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
invisibl/identity-manager:1.0.01029f4fe20eb
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.55.0

Open the chart page →

2,163
karpenteriometeVerified publisher0.19.31 of 1See more

karpenter iomete 0.19.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
public.ecr.aws/karpenter/controller:v0.19.3f0e5ab60b2df
golang.org/x/net@v0.1.0
0.55.0

Open the chart page →

1,556
server-monitoringiserversupport-helm--charts1.0.02 of 2See more

server-monitoring iserversupport-helm--charts 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
prom/node-exporter:v1.10.23ac34ce007ac
golang.org/x/net@v0.44.0
0.55.0
prom/prometheus:v3.8.0d936808bdea5
golang.org/x/net@v0.46.0
0.55.0

Open the chart page →

1,331
istio-aws-private-ingress-customizedistio-aws-private-ingress-customized1.0.01 of 1See more

istio-aws-private-ingress-customized istio-aws-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
golang.org/x/net@v0.9.0
0.55.0

Open the chart page →

5,590
istio-azure-private-ingress-customizedistio-azure-private-ingress-customized1.0.01 of 1See more

istio-azure-private-ingress-customized istio-azure-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
golang.org/x/net@v0.9.0
0.55.0

Open the chart page →

5,590
istio-ratelimit-operatoristio-ratelimit-operator2.16.11 of 1See more

istio-ratelimit-operator istio-ratelimit-operator 2.16.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
zufardhiyaulhaq/istio-ratelimit-operator:v2.15.0692cfc9d6614
golang.org/x/net@v0.17.0
0.55.0

Open the chart page →

746
appswitcher-serverit-at-mOfficialVerified publisher2.0.21 of 1See more

appswitcher-server it-at-m 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
golang.org/x/net@v0.39.0
0.55.0

Open the chart page →

3,819
daveit-at-mOfficialVerified publisher0.2.161 of 11See more

dave it-at-m 0.2.16

1 of the 11 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
golang.org/x/net@v0.42.0
0.55.0

Open the chart page →

12,337
hetzner-dyndnsitsmethemojoVerified publisher1.4.01 of 1See more

hetzner-dyndns itsmethemojo 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
hashicorp/terraform:1.9.7b77efab1a448
golang.org/x/net@v0.23.0
0.55.0

Open the chart page →

1,853
thehiveittrident-oss0.1.01 of 6See more

thehive ittrident-oss 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
golang.org/x/net@v0.39.0
0.55.0

Open the chart page →

6,331
adguard-homejacobcolvinVerified publisher0.4.01 of 2See more

adguard-home jacobcolvin 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.3843ec119419a9
golang.org/x/net@v0.15.0
0.55.0

Open the chart page →

1,605
inlets-clientjacobcolvinVerified publisher0.1.21 of 1See more

inlets-client jacobcolvin 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.55.0

Open the chart page →

1,754
inlets-serverjacobcolvinVerified publisher0.1.11 of 1See more

inlets-server jacobcolvin 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.55.0

Open the chart page →

1,754
opencloudjacobcolvinVerified publisher0.2.32 of 13See more

opencloud jacobcolvin 0.2.3

2 of the 13 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
golang.org/x/net@v0.39.0
0.55.0
opencloudeu/opencloud-rolling:2.1.0f9634bb04905
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

45,468
rclonejacobcolvinVerified publisher1.0.11 of 1See more

rclone jacobcolvin 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
rclone/rclone:1.63.008e1af3c8814
golang.org/x/net@v0.8.0
0.55.0

Open the chart page →

2,150
twitch-predictions-recorderjacobcolvinVerified publisher0.1.01 of 1See more

twitch-predictions-recorder jacobcolvin 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
golang.org/x/net@v0.1.0
0.55.0

Open the chart page →

2,670
wireguard-operatorjacobcolvinVerified publisher0.2.01 of 2See more

wireguard-operator jacobcolvin 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/jodevsa/wireguard-operator/manager:v2.0.2839412bdd403b
golang.org/x/net@v0.23.0
0.55.0

Open the chart page →

840
koptimizejaconiVerified publisher0.5.42 of 2See more

koptimize jaconi 0.5.4

2 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
alpine/k8s:1.27.321b24e6bf801
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.55.0
ghcr.io/jaconi-io/koptimize:1.2.5aca1bbd609b6
golang.org/x/net@v0.10.0
0.55.0

Open the chart page →

5,738
mini-infrajaeki0.1.01 of 4See more

mini-infra jaeki 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.13.101b33357b3595
golang.org/x/net@v0.8.0
0.55.0

Open the chart page →

1,746
todo-operatorjakuboskera0.1.11 of 1See more

todo-operator jakuboskera 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
jakuboskera/todo-operator:v0.1.0a305b8ce5bff
golang.org/x/net@v0.47.0
0.55.0

Open the chart page →

304
janus-shieldjanus-shield1.0.01 of 2See more

janus-shield janus-shield 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
quay.io/cilium/tetragon:v1.1.096fac2482898
golang.org/x/net@v0.24.0
0.55.0

Open the chart page →

2,435
javascriptweeklyjavascriptweekly2.1.01 of 1See more

javascriptweekly javascriptweekly 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
zufardhiyaulhaq/javascriptweekly:v2.1.086424bd0b2a4
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.55.0

Open the chart page →

1,237
sql-exporterjdstoneVerified publisher0.2.11 of 1See more

sql-exporter jdstone 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
burningalchemist/sql_exporter:0.16.0b8e4757c7def
golang.org/x/net@v0.30.0
0.55.0

Open the chart page →

886
newtjeffrescVerified publisher0.2.11 of 1See more

newt jeffresc 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
fosrl/newt:1.10.4ccd2b0e9a049
golang.org/x/net@v0.51.0
0.55.0

Open the chart page →

1,111
athens-proxyjenkins-x0.2.21 of 2See more

athens-proxy jenkins-x 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:latestab6f1a1f0fb4
golang.org/x/net@v0.47.0
0.55.0

Open the chart page →

1,352
jx-app-athensjenkins-x0.0.181 of 1See more

jx-app-athens jenkins-x 0.0.18

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
gomods/athens:v0.8.1d714c7ff0231
golang.org/x/net@v0.0.0-20191027093000-83d349e8ac1a
0.55.0

Open the chart page →

4,232
jx-app-datadogjenkins-x0.0.101 of 2See more

jx-app-datadog jenkins-x 0.0.10

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
datadog/agent:6aad9994de6a7
golang.org/x/net@v0.33.0
0.55.0

Open the chart page →

4,087
jx-app-flaggerjenkins-x0.0.52 of 2See more

jx-app-flagger jenkins-x 0.0.5

2 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
grafana/grafana:6.5.1befcd84da2c1
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
0.55.0
weaveworks/flagger:1.0.0-rc.5174307de1b36
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
0.55.0

Open the chart page →

6,035
jx-app-jenkinsjenkins-x0.0.151 of 2See more

jx-app-jenkins jenkins-x 0.0.15

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

2,517
knative-servingjenkins-x0.19.124 of 4See more

knative-serving jenkins-x 0.19.12

4 of the 4 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned1e3db4f2eeed
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.55.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinneddb6ceff2aab4
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.55.0
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedb2cd45b8a8a4
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.55.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedd27b4495ccc3
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.55.0

Open the chart page →

9,727
jetspotterjetspotter1.48.11 of 1See more

jetspotter jetspotter 1.48.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/vvanouytsel/jetspotter:1.48.1ec0e17a94f61
golang.org/x/net@v0.39.0
0.55.0

Open the chart page →

990
ingress-nginxjfrog4.5.22 of 2See more

ingress-nginx jfrog 4.5.2

2 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
golang.org/x/net@v0.5.0
0.55.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.55.0

Open the chart page →

3,798
vaultjfrog0.25.02 of 2See more

vault jfrog 0.25.0

2 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
hashicorp/vault:1.14.0b2177a8bfe85
golang.org/x/net@v0.10.0
0.55.0
hashicorp/vault-k8s:1.2.14500e988b7ce
golang.org/x/net@v0.7.0
0.55.0

Open the chart page →

3,980
alpine-torjfwenischVerified publisher1.1.01 of 1See more

alpine-tor jfwenisch 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
jfwenisch/alpine-tor:latest9e6c229f953c
golang.org/x/net@v0.0.0-20190328230028-74de082e2cca
0.55.0

Open the chart page →

4,461
kafka-offset-lag-for-prometheusjhidalgo3-githubVerified publisher2.3.01 of 1See more

kafka-offset-lag-for-prometheus jhidalgo3-github 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
jhidalgo3/kafka-offset-lag-for-prometheus:latest0390e155c46d
golang.org/x/net@v0.1.0
0.55.0

Open the chart page →

1,471
missing-container-metricsjimdo-missing-container-metrics0.5.01 of 1See more

missing-container-metrics jimdo-missing-container-metrics 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.55.0

Open the chart page →

2,418
job-manager-syncerjob-manager-syncer1.27.01 of 1See more

job-manager-syncer job-manager-syncer 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-syncer:1.27.086957bbeeff5
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

462
haven-complinacy-dashboardjolle-devVerified publisher1.0.01 of 2See more

haven-complinacy-dashboard jolle-dev 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
j0113/haven-compliancy-dashboard:1.3696cb8ca9f4e
golang.org/x/net@v0.0.0-20210510120150-4163338589ed
0.55.0

Open the chart page →

3,842
cloudnative-pgjouveVerified publisher0.27.01 of 1See more

cloudnative-pg jouve 0.27.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.28.034198e85b6e6
golang.org/x/net@v0.47.0
0.55.0

Open the chart page →

654
corednsjouveVerified publisher1.45.01 of 1See more

coredns jouve 1.45.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
coredns/coredns:1.13.19b9128672209
golang.org/x/net@v0.45.0
0.55.0

Open the chart page →

923
distributionjouveVerified publisher0.2.31 of 1See more

distribution jouve 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
distribution/distribution:3.1.1bca24727f400
golang.org/x/net@v0.52.0
0.55.0

Open the chart page →

860
image-storage-servicejtektVerified publisher0.4.31 of 4See more

image-storage-service jtekt 0.4.3

1 of the 4 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
golang.org/x/net@v0.14.0
0.55.0

Open the chart page →

22,748
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
golang.org/x/net@v0.0.0-20220617184016-355a448f1bc9
0.55.0

Open the chart page →

16,710
firstchartjuanjmerono0.2.01 of 1See more

firstchart juanjmerono 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
jmalloc/echo-server:0.3.1e4eaee2c7998
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
0.55.0

Open the chart page →

1,444
daily-restartjuniorjpdj0.1.691 of 1See more

daily-restart juniorjpdj 0.1.69

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/juniorjpdj/containers/openssl-kubectl:1.36.1-r358afba209ea0
golang.org/x/net@v0.48.0
0.55.0

Open the chart page →

467
mumbledjjuniorjpdj0.1.1991 of 2See more

mumbledj juniorjpdj 0.1.199

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/juniorjpdj/containers/openssl-kubectl:1.36.1-r358afba209ea0
golang.org/x/net@v0.48.0
0.55.0

Open the chart page →

968
alertmanager-irc-relayjuppi880.0.11 of 1See more

alertmanager-irc-relay juppi88 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
maldridge/alertmanager-irc-relay:v0.4.1391de2b76128
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.55.0

Open the chart page →

1,615
nginx-gateway-fabricjupyter-jscVerified publisher2.4.11 of 1See more

nginx-gateway-fabric jupyter-jsc 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/nginx/nginx-gateway-fabric:2.4.180f3a0a51af5
golang.org/x/net@v0.48.0
0.55.0

Open the chart page →

373

Container images carrying it

3,683 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/kyverno/kyverno-cli:v1.12.5832a32779e6d
golang.org/x/net@v0.22.0
0.55.0
1
ghcr.io/kyverno/kyvernopre:v1.7.1185d2eebc60c
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
0.55.0
1
ghcr.io/kyverno/kyvernopre:v1.12.563f7eaf5aa8a
golang.org/x/net@v0.22.0
0.55.0
1
ghcr.io/kyverno/policy-reporter:2.14.1e74c6bf33d1b
golang.org/x/net@v0.8.0
0.55.0
1
ghcr.io/kyverno/reports-controller:v1.12.5c62e3347611c
golang.org/x/net@v0.22.0
0.55.0
1
ghcr.io/lablabs/cloudflare_exporter:0.0.1670d74ec46602
golang.org/x/net@v0.25.0
0.55.0
1
ghcr.io/lavanet/lava/lavap:v2.5.089028adefcff
golang.org/x/net@v0.23.0
0.55.0
1
ghcr.io/layr-labs/eigenda/opr-node:0.8.46650119a385f
golang.org/x/net@v0.24.0
0.55.0
1
ghcr.io/layr-labs/eigenda/opr-nodeplugin:0.8.4e459ad3ae758
golang.org/x/net@v0.24.0
0.55.0
1
ghcr.io/leoquote/tencentcloud-info-exporter:maind523c2c010cd
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
0.55.0
1
ghcr.io/lexfrei/extractedprism:v0.3.0d10417753727
golang.org/x/net@v0.47.0
0.55.0
1
ghcr.io/liangyuanpeng/chirpstack-event-forward:v0.1.223dc6274cc4b
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
0.55.0
1
ghcr.io/liangyuanpeng/replacer:v1.1.00b2a41c2a43e
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.55.0
1
ghcr.io/liangyuanpeng/waitfor:v1.0.0ca5a98cbed32
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.55.0
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
golang.org/x/net@v0.40.0
0.55.0
1
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
golang.org/x/net@v0.27.0
0.55.0
1
ghcr.io/loafoe/go-hello-world:v2.13.0d3fb171f20e1
golang.org/x/net@v0.43.0
0.55.0
1
ghcr.io/loafoe/picoclaw:v0.0.1942e1b6862913
golang.org/x/net@v0.53.0
0.55.0
1
ghcr.io/loafoe/solgate:v0.0.12b3256cbc7b68
golang.org/x/net@v0.14.0
0.55.0
1
ghcr.io/lockdep/stackradar-scanner:0.4.073cbeb990cf4
golang.org/x/net@v0.49.0
0.55.0
1
ghcr.io/loft-sh/agent:3.2.45c109914ff73
golang.org/x/net@v0.6.0
0.55.0
1
ghcr.io/loft-sh/central-hostpath-mapper:0.2.9fa6dba122171
golang.org/x/net@v0.26.0
0.55.0
1
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
golang.org/x/net@v0.21.0
0.55.0
1
ghcr.io/loft-sh/kubernetes:v1.35.090097a08b87c
golang.org/x/net@v0.42.0
0.55.0
1
ghcr.io/loft-sh/license-server:0.6.069ce001bb4b0
golang.org/x/net@v0.53.0
0.55.0
1
ghcr.io/loft-sh/loft:0.0.0-ci.14b69bcdaa8492
golang.org/x/net@v0.14.0
0.55.0
1
ghcr.io/loft-sh/vcluster:0.16.484f70425f4dd
golang.org/x/net@v0.13.0
0.55.0
1
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
golang.org/x/net@v0.21.0
0.55.0
1
ghcr.io/loft-sh/vcluster-hpm:0.2.7f65f6810ea23
golang.org/x/net@v0.40.0
0.55.0
1
ghcr.io/loft-sh/vcluster-platform:4.12.0ef92da4621e6
golang.org/x/net@v0.52.0
0.55.0
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
golang.org/x/net@v0.46.0
0.55.0
1
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
golang.org/x/net@v0.38.0
0.55.0
1
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
golang.org/x/net@v0.23.0
0.55.0
1
ghcr.io/luisico/cert-manager-webhook-infoblox-wapi:1.5ded797477896
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.55.0
1
ghcr.io/lukaszraczylo/jobs-manager-operator:0.1.15e6239e2838d7
golang.org/x/net@v0.49.0
0.55.0
1
ghcr.io/lukaszraczylo/kubernetes-images-sync-operator:0.5.57a424948c8143
golang.org/x/net@v0.48.0
0.55.0
1
ghcr.io/luzifer/cert-manager-desec-webhook:v1.0.1fa1f6b2e9a6e
golang.org/x/net@v0.26.0
0.55.0
1
ghcr.io/luzilla/dnsbl_exporter:v0.7.0-rc3d9767232a55e
golang.org/x/net@v0.20.0
0.55.0
1
ghcr.io/luzilla/dnsbl_exporter:v0.12.0ecba7360ff12
golang.org/x/net@v0.53.0
0.55.0
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
golang.org/x/net@v0.19.0
0.55.0
1
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
golang.org/x/net@v0.38.0
0.55.0
1
ghcr.io/mariadb-operator/mariadb-operator:26.6.0a5e17b48f08e
golang.org/x/net@v0.54.0
0.55.0
1
ghcr.io/matrix-org/dendrite-monolith:v0.9.43267d27d392f
golang.org/x/net@v0.0.0-20220624214902-1bab6f366d9e
0.55.0
1
ghcr.io/mattn/picoclaw:latest517556c8b144
golang.org/x/net@v0.50.0
0.55.0
1
ghcr.io/mcman2017/qt-vault:v0.1.2852edf54c850
golang.org/x/net@v0.38.0
0.55.0
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
golang.org/x/net@v0.33.0
0.55.0
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
golang.org/x/net@v0.33.0
0.55.0
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
golang.org/x/net@v0.26.0
0.55.0
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
golang.org/x/net@v0.26.0
0.55.0
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
golang.org/x/net@v0.20.0
0.55.0
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.