StackRadar

CVE-2026-25680

Medium

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,007
of 17,803 indexed, latest versions
Container images
3,683
deployed by those charts
Fix available
1 of 1
affected package

Go Net HTML parser is vulnerable to denial of service

Carried by container images the latest versions of 3,007 of 17,803 indexed charts deploy, on 3,683 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+220 more0.55.03,683
OSV records
GHSA-5cv4-jp36-h3mw
Also known as
GO-2026-5028

Charts affected

3,007 by stars
ChartLatestAffected imagesRadar Score
clickstackhdx-oss-v21.1.11 of 5See more

clickstack hdx-oss-v2 1.1.1

1 of the 5 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
library/mongo:5.0.32-focal3b6c281e1c08
golang.org/x/net@v0.47.0
0.55.0

Open the chart page →

4,765
headscale-uiheadscale-uiVerified publisher0.2.91 of 1See more

headscale-ui headscale-ui 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/gurucomputing/headscale-ui:2026.03.17015f5ba04bcb
golang.org/x/net@v0.42.0
0.55.0

Open the chart page →

1,491
velerohelmforgeVerified publisher1.4.101 of 2See more

velero helmforge 1.4.10

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
velero/velero-plugin-for-aws:v1.14.07e82f717f44e
golang.org/x/net@v0.47.0
0.55.0

Open the chart page →

1,452
uptimekumahelm-l3st86Verified publisher0.1.101 of 1See more

uptimekuma helm-l3st86 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.1396510915e6be
golang.org/x/net@v0.19.0
0.55.0

Open the chart page →

4,246
helm-operatorhelm-operatorVerified publisher0.0.21 of 1See more

helm-operator helm-operator 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
bsgrigorov/helm-operator:latest45ab095f09c8
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
0.55.0

Open the chart page →

6,986
spirehelm-spireVerified publisher0.30.23 of 10See more

spire helm-spire 0.30.2

3 of the 10 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/spiffe/spiffe-csi-driver:0.2.79dfe4f0caff0
golang.org/x/net@v0.34.0
0.55.0
ghcr.io/spiffe/spiffe-helper:0.11.01c92e5998ad3
golang.org/x/net@v0.42.0
0.55.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
golang.org/x/net@v0.40.0
0.55.0

Open the chart page →

1,688
helmuphelmupVerified publisher0.1.01 of 3See more

helmup helmup 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
sirrend/helmup-engine:0.1.13699e79e3d4e2
golang.org/x/net@v0.15.0
0.55.0

Open the chart page →

16,721
cratedb-adapter-v2hmdmph0.2.11 of 1See more

cratedb-adapter-v2 hmdmph 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/net@v0.0.0-20210423184538-5f58ad60dda6
0.55.0

Open the chart page →

2,920
honeycombhoneycomb1.9.31 of 1See more

honeycomb honeycomb 1.9.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
honeycombio/honeycomb-kubernetes-agent:2.7.448c38d0870f2
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

437
hpe-greenlake-file-csi-driverhpe-storageVerified publisher2.6.45 of 7See more

hpe-greenlake-file-csi-driver hpe-storage 2.6.4

5 of the 7 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
golang.org/x/net@v0.32.0
0.55.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
golang.org/x/net@v0.40.0
0.55.0
registry.k8s.io/sig-storage/csi-provisioner:v6.1.0e5900dc98b0d
golang.org/x/net@v0.43.0
0.55.0
registry.k8s.io/sig-storage/csi-resizer:v1.12.0ab774734705a
golang.org/x/net@v0.28.0
0.55.0
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
golang.org/x/net@v0.39.0
0.55.0

Open the chart page →

6,240
htnn-controllerhtnnVerified publisher0.5.01 of 1See more

htnn-controller htnn 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
golang.org/x/net@v0.24.0
0.55.0

Open the chart page →

4,362
demoryhuseyinbabalOfficialVerified publisher0.7.01 of 1See more

demory huseyinbabal 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
huseyinbabal/demory:0.0.0-rc.20ae8eb4053c60
golang.org/x/net@v0.0.0-20210907225631-ff17edfbf26d
0.55.0

Open the chart page →

1,580
hybrid-csi-pluginhybrid-csi-plugin0.1.111 of 1See more

hybrid-csi-plugin hybrid-csi-plugin 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/hybrid-csi-provisioner:v0.3.1221e07794a8a
golang.org/x/net@v0.48.0
0.55.0

Open the chart page →

380
idle-reaperidle-reaperVerified publisher0.1.41 of 1See more

idle-reaper idle-reaper 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/b100to/idle-reaper:0.1.447b4a0e091f0
golang.org/x/net@v0.49.0
0.55.0

Open the chart page →

148
ilum-coreilumOfficialVerified publisher6.7.32 of 5See more

ilum-core ilum 6.7.3

2 of the 5 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
golang.org/x/net@v0.38.0
0.55.0
ilum/mongodb:6.0.542b6d774c37d
golang.org/x/net@v0.8.0
0.55.0

Open the chart page →

3,558
ilum-jupyterilumVerified publisher6.7.31 of 2See more

ilum-jupyter ilum 6.7.3

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
bitnamisecure/gitdigest-pinned72ae5bd9715f
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

645
webhook-broker-chartimytech0.2.41 of 1See more

webhook-broker-chart imytech 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
public.ecr.aws/optimizely/webhook-broker:v0.2.3cfc92cc2de65
golang.org/x/net@v0.33.0
0.55.0

Open the chart page →

1,253
inbucketinbucketVerified publisher2.5.01 of 1See more

inbucket inbucket 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
inbucket/inbucket:3.0.01f10a0efea69
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
0.55.0

Open the chart page →

2,167
telegraf-operatorinfluxdata1.4.01 of 1See more

telegraf-operator influxdata 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
quay.io/influxdb/telegraf-operator:v1.3.11eec10ef37cc3
golang.org/x/net@v0.17.0
0.55.0

Open the chart page →

925
supersetinseefrlab1.4.01 of 4See more

superset inseefrlab 1.4.0

1 of the 4 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
golang.org/x/net@v0.47.0
0.55.0

Open the chart page →

7,135
interlinkinterlink0.6.11 of 2See more

interlink interlink 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

2,485
irsa-managerirsa-managerVerified publisher0.3.21 of 1See more

irsa-manager irsa-manager 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/kkb0318/irsa-manager:0.3.296d600ae97b4
golang.org/x/net@v0.27.0
0.55.0

Open the chart page →

821
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.55.0

Open the chart page →

70,366
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.55.0

Open the chart page →

70,440
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.55.0

Open the chart page →

70,386
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.55.0

Open the chart page →

70,386
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
0.55.0

Open the chart page →

70,667
istio-ratelimitistio-ratelimitVerified publisher0.0.51 of 2See more

istio-ratelimit istio-ratelimit 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:4d2efd61ede09a75a84c
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
0.55.0

Open the chart page →

1,819
kubernetes-event-exporteritakurahVerified publisher0.2.31 of 1See more

kubernetes-event-exporter itakurah 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/itakurah/kubernetes-event-exporter:v1.78abb52b66557
golang.org/x/net@v0.17.0
0.55.0

Open the chart page →

1,142
jessejesse-chartVerified publisher0.0.461 of 6See more

jesse jesse-chart 0.0.46

1 of the 6 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
alpine/git:latest6f3b5029566d
golang.org/x/net@v0.54.0
0.55.0

Open the chart page →

3,425
jetic-operatorjetic-operatorVerified publisher2.0.21 of 1See more

jetic-operator jetic-operator 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
apache/camel-k:1.10.43bb13d14f64a
golang.org/x/net@v0.0.0-20220520000938-2e3eb7b945c2
0.55.0

Open the chart page →

9,335
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
golang.org/x/net@v0.17.0
0.55.0

Open the chart page →

7,417
job-manager-dispatcherjob-manager-dispatcher1.27.01 of 1See more

job-manager-dispatcher job-manager-dispatcher 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-dispatcher:1.27.0582508903cb0
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

479
job-manager-serverjob-manager-server1.27.01 of 1See more

job-manager-server job-manager-server 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-server:1.27.0fe9de719f91e
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

757
hncjouveVerified publisher0.8.31 of 1See more

hnc jouve 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-multitenancy/hnc-manager:v1.1.08ab8229f6a89
golang.org/x/net@v0.3.0
0.55.0

Open the chart page →

1,078
joylive-injectorjoyliveOfficialVerified publisher1.3.51 of 2See more

joylive-injector joylive 1.3.5

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
otel/opentelemetry-collector:0.100.09e36620d6c2c
golang.org/x/net@v0.24.0
0.55.0

Open the chart page →

1,290
git-configmap-syncjulb-meVerified publisher1.0.11 of 2See more

git-configmap-sync julb-me 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
alpine/git:latest4f9488b7295b
golang.org/x/net@v0.54.0
0.55.0

Open the chart page →

2,620
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
golang.org/x/net@v0.11.0
0.55.0

Open the chart page →

3,379
k8s-grafana-stackk8s-grafana-stackVerified publisher0.2.3213 of 17See more

k8s-grafana-stack k8s-grafana-stack 0.2.32

13 of the 17 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
grafana/alloy:v1.14.0f50931848bd8
golang.org/x/net@v0.50.0
0.55.0
grafana/grafana:12.3.12175aaa91c96
golang.org/x/net@v0.46.0
0.55.0
grafana/loki:3.6.73c8fd3570dd9
golang.org/x/net@v0.47.0
0.55.0
grafana/loki-canary:3.6.70dac7d5cb383
golang.org/x/net@v0.47.0
0.55.0
grafana/tempo:2.9.065a578975943
golang.org/x/net@v0.43.0
0.55.0
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
golang.org/x/net@v0.29.0
0.55.0
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
golang.org/x/net@v0.29.0
0.55.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
golang.org/x/net@v0.37.0
0.55.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.89.0cb4ac6a56555
golang.org/x/net@v0.49.0
0.55.0
quay.io/prometheus/alertmanager:v0.31.188b605de9aba
golang.org/x/net@v0.49.0
0.55.0
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
golang.org/x/net@v0.44.0
0.55.0
quay.io/prometheus/prometheus:v3.10.07571a304e67f
golang.org/x/net@v0.49.0
0.55.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
golang.org/x/net@v0.48.0
0.55.0

Open the chart page →

15,781
kdiffkdiff-snapshotsVerified publisher0.0.2031 of 2See more

kdiff kdiff-snapshots 0.0.203

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

5,591
kdiff-snapshotskdiff-snapshotsVerified publisher0.0.551 of 1See more

kdiff-snapshots kdiff-snapshots 0.0.55

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

5,871
keycloakkeycloak1.13.71 of 2See more

keycloak keycloak 1.13.7

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
registry.gitlab.com/lenitech/docker/keycloak-ppolicy:0.6.09895d6915075
golang.org/x/net@v0.46.0
0.55.0

Open the chart page →

323
keycloak-client-operatorkeycloak-client-operator0.9.11 of 1See more

keycloak-client-operator keycloak-client-operator 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
registry.gitlab.com/lenitech/k8s-operator/keycloak-client:v0.6.19065cdd80035
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

521
giteakeyporttech0.2.101 of 4See more

gitea keyporttech 0.2.10

1 of the 4 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
gitea/gitea:1.12.485416d6f65fe
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
0.55.0

Open the chart page →

5,409
kokukokuVerified publisher1.0.02 of 7See more

koku koku 1.0.0

2 of the 7 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
minio/mc:latesta7fe349ef4bd
golang.org/x/net@v0.42.0
0.55.0
public.ecr.aws/v0r6c2e2/minio:latest08c90bd040bf
golang.org/x/net@v0.34.0
0.55.0

Open the chart page →

12,237
komkomVerified publisher0.3.01 of 1See more

kom kom 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
ghcr.io/kkb0318/kom:0.3.04e77eff2d906
golang.org/x/net@v0.41.0
0.55.0

Open the chart page →

398
kronos-corekronos-coreVerified publisher0.4.11 of 2See more

kronos-core kronos-core 0.4.1

1 of the 2 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
kronosorg/kronos-core:v0.4.0301da21c59a5
golang.org/x/net@v0.23.0
0.55.0

Open the chart page →

544
kubeadaptkubeadaptVerified publisher1.0.71 of 1See more

kubeadapt kubeadapt 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-agent:v3.0.1d75b6da94913
golang.org/x/net@v0.47.0
0.55.0

Open the chart page →

214
cert-managerkubeblocksVerified publisher1.17.24 of 4See more

cert-manager kubeblocks 1.17.2

4 of the 4 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.17.2ec56edb1161d
golang.org/x/net@v0.38.0
0.55.0
quay.io/jetstack/cert-manager-controller:v1.17.22c314feeb5e8
golang.org/x/net@v0.38.0
0.55.0
quay.io/jetstack/cert-manager-startupapicheck:v1.17.2e18989b4f912
golang.org/x/net@v0.38.0
0.55.0
quay.io/jetstack/cert-manager-webhook:v1.17.237b16a9dff00
golang.org/x/net@v0.38.0
0.55.0

Open the chart page →

2,928
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2026-25680.

Container imageDigestPackageFixed in
langgenius/dify-sandbox:0.2.009b7e8705673
golang.org/x/net@v0.20.0
0.55.0

Open the chart page →

20,557

Container images carrying it

3,683 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.11826b984e75d4
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
0.55.0
1
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.7864fc338571e
golang.org/x/net@v0.0.0-20210510120150-4163338589ed
0.55.0
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
0.55.0
1
registry.gitlab.com/av1o/okd-webhook:v0.1.028c3e5eb2650
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.55.0
1
registry.gitlab.com/bitspur/rock8s/easy-olm-operator:0.0.1779454fea06c
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.55.0
1
registry.gitlab.com/bitspur/rock8s/images/kube-commands:3.1880ef8ceffc92
golang.org/x/net@v0.13.0
0.55.0
1
registry.gitlab.com/bitspur/rock8s/resource-binding-operator:0.1.063cf51392ce7
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.55.0
1
registry.gitlab.com/commento/commento:v1.8.0e0ab1fc86761
golang.org/x/net@v0.0.0-20180811021610-c39426892332
0.55.0
1
registry.gitlab.com/dyff/dyff-operator:0.24.20e9ca51627601
golang.org/x/net@v0.44.0
0.55.0
1
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
golang.org/x/net@v0.17.0
0.55.0
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
golang.org/x/net@v0.47.0
0.55.0
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
golang.org/x/net@v0.50.0
0.55.0
1
registry.gitlab.com/gitlab-org/ci-cd/gitlab-runner-pod-cleanup:latest4369f3ba1d9a
golang.org/x/net@v0.43.0
0.55.0
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
golang.org/x/net@v0.0.0-20210805182204-aaa1db679c0d
0.55.0
1
registry.gitlab.com/lenitech/docker/keycloak-ppolicy:0.6.09895d6915075
golang.org/x/net@v0.46.0
0.55.0
1
registry.gitlab.com/lenitech/k8s-operator/keycloak-client:v0.6.19065cdd80035
golang.org/x/net@v0.38.0
0.55.0
1
registry.gitlab.com/parrotsec/project/parrot-mirror-docker:mainf91b602ca572
golang.org/x/net@v0.14.0
0.55.0
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.55.0
1
registry.gitlab.com/shortlink-org/shortlink/bff:latestf2194e526915
golang.org/x/net@v0.49.0
0.55.0
1
registry.gitlab.com/shortlink-org/shortlink/link:latest86d87291ffd4
golang.org/x/net@v0.49.0
0.55.0
1
registry.gitlab.com/xrow-public/ci-tools/kubectl:main9357cfeef63c
golang.org/x/net@v0.38.0
0.55.0
1
registry.gitlab.com/xrow-public/ci-tools/tools:main9b9d1ed86b6a
golang.org/x/net@v0.48.0
0.55.0
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
golang.org/x/net@v0.41.0
0.55.0
1
registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.91.6fff58c4ec600
golang.org/x/net@v0.52.0
0.55.0
1
registry.gitlab.com/xrow-public/velero-client/velero-client:1.4.203015f863a3e
golang.org/x/net@v0.49.0
0.55.0
1
registry.k8s.io/autoscaling/cluster-autoscaler:v1.33.06ef10d108e0e
golang.org/x/net@v0.38.0
0.55.0
1
registry.k8s.io/autoscaling/cluster-autoscaler:v1.34.07b172f42533c
golang.org/x/net@v0.38.0
0.55.0
1
registry.k8s.io/autoscaling/vpa-admission-controller:1.4.171d817780aa9
golang.org/x/net@v0.39.0
0.55.0
1
registry.k8s.io/autoscaling/vpa-admission-controller:1.6.080e487edff02
golang.org/x/net@v0.50.0
0.55.0
1
registry.k8s.io/autoscaling/vpa-admission-controller:1.5.19928d59477fb
golang.org/x/net@v0.43.0
0.55.0
1
registry.k8s.io/autoscaling/vpa-recommender:1.4.140b6d76e8526
golang.org/x/net@v0.39.0
0.55.0
1
registry.k8s.io/autoscaling/vpa-recommender:1.5.1e629c61b75eb
golang.org/x/net@v0.43.0
0.55.0
1
registry.k8s.io/autoscaling/vpa-updater:1.4.18ebf269779c1
golang.org/x/net@v0.39.0
0.55.0
1
registry.k8s.io/autoscaling/vpa-updater:1.6.0b39d1dfa19cb
golang.org/x/net@v0.50.0
0.55.0
1
registry.k8s.io/autoscaling/vpa-updater:1.5.1cba2aa4b3239
golang.org/x/net@v0.43.0
0.55.0
1
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.28.0026f63d9ed42
golang.org/x/net@v0.13.0
0.55.0
1
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.32.0f9f4dfd733ab
golang.org/x/net@v0.32.0
0.55.0
1
registry.k8s.io/coredns/coredns:v1.13.294caebb89dcf
golang.org/x/net@v0.47.0
0.55.0
1
registry.k8s.io/csi-vsphere/driver:v3.5.04bb8350a5a62
golang.org/x/net@v0.38.0
0.55.0
1
registry.k8s.io/csi-vsphere/driver:v3.4.0f5349a8ae3f3
golang.org/x/net@v0.33.0
0.55.0
1
registry.k8s.io/csi-vsphere/syncer:v3.4.0179ebf195595
golang.org/x/net@v0.33.0
0.55.0
1
registry.k8s.io/csi-vsphere/syncer:v3.5.0bb88468fff2a
golang.org/x/net@v0.38.0
0.55.0
1
registry.k8s.io/descheduler/descheduler:v0.36.07ca92c0a7b4f
golang.org/x/net@v0.52.0
0.55.0
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
golang.org/x/net@v0.17.0
0.55.0
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
golang.org/x/net@v0.46.0
0.55.0
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
golang.org/x/net@v0.17.0
0.55.0
1
registry.k8s.io/e2e-test-images/agnhost:2.40af7e3857d877
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.55.0
1
registry.k8s.io/etcd:3.6.4-0e36c08168342
golang.org/x/net@v0.38.0
0.55.0
1
registry.k8s.io/gateway-api/admission-server:v0.7.1fe43ee5176a8
golang.org/x/net@v0.7.0
0.55.0
1
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
golang.org/x/net@v0.5.0
0.55.0
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.