StackRadar

CVE-2026-27145

Medium

Advisory

Published 2 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.006
47th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,133
of 17,805 indexed, latest versions
Container images
4,716
deployed by those charts
Fix available
1 of 2
affected packages

Inefficient candidate hostname parsing in crypto/x509

Carried by container images the latest versions of 4,133 of 17,805 indexed charts deploy, on 4,716 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+183 more1.25.114,716
OSV records
DEBIAN-CVE-2026-27145GO-2026-5037
Also known as
BIT-golang-2026-27145

Charts affected

4,133 by stars
ChartLatestAffected imagesRadar Score
go-file-servergo-file-server1.0.01 of 2See more

go-file-server go-file-server 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
goccx/go-file-server:latestf4b3ebea0303
stdlib@go1.21.10
1.25.11

Open the chart page →

2,222
gofitgofit0.0.11 of 1See more

gofit gofit 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
ghcr.io/bamaas/gofit:0.0.132b6a174b419
stdlib@go1.22.11
1.25.11

Open the chart page →

651
googly-logingoogly-login0.1.01 of 2See more

googly-login googly-login 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
stdlib@go1.24.6
1.25.11

Open the chart page →

1,688
gorsegorse-io0.4.23 of 4See more

gorse gorse-io 0.4.2

3 of the 4 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
zhenghaoz/gorse-master:0.4.12033046b432ec
stdlib@go1.20.1
1.25.11
zhenghaoz/gorse-server:0.4.1239c565685b01
stdlib@go1.20.1
1.25.11
zhenghaoz/gorse-worker:0.4.12f7739f64c9b0
stdlib@go1.20.1
1.25.11

Open the chart page →

4,437
gotwaygotwayVerified publisher0.8.01 of 1See more

gotway gotway 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
ghcr.io/gotway/gotway:v0.0.137ed73c1979ee
stdlib@go1.18.3
1.25.11

Open the chart page →

1,827
Governify-Bluejaygovernify0.1.02 of 12See more

Governify-Bluejay governify 0.1.0

2 of the 12 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
governify/dashboard:lateste83a17ba5038
stdlib@go1.17
1.25.11
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.11

Open the chart page →

22,720
Governify-Falcongovernify0.1.02 of 10See more

Governify-Falcon governify 0.1.0

2 of the 10 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
governify/dashboard:lateste83a17ba5038
stdlib@go1.17
1.25.11
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.11

Open the chart page →

24,508
goweeklygoweekly2.0.01 of 1See more

goweekly goweekly 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
zufardhiyaulhaq/goweekly:v2.0.008dcc130fbea
stdlib@go1.17.12
1.25.11

Open the chart page →

1,230
harborgpg-dev1.18.35 of 8See more

harbor gpg-dev 1.18.3

5 of the 8 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
goharbor/harbor-core:v2.14.3a30e5a8be3d9
stdlib@go1.24.13
1.25.11
goharbor/harbor-jobservice:v2.14.3e2b0298e894d
stdlib@go1.24.13
1.25.11
goharbor/harbor-registryctl:v2.14.3ddf6bb429eb6
stdlib@go1.24.13
1.25.11
goharbor/registry-photon:v2.14.36533fc396cbc
stdlib@go1.24.13
1.25.11
goharbor/trivy-adapter-photon:v2.14.35c6f7162804c
stdlib@go1.25.7
1.25.11

Open the chart page →

3,460
ingress-nginxgpg-dev4.9.02 of 2See more

ingress-nginx gpg-dev 4.9.0

2 of the 2 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.9.5b3aba22b1da8
stdlib@go1.21.5
1.25.11
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20231011-8b53cabe0a7943503b45d
stdlib@go1.21.3
1.25.11

Open the chart page →

2,316
jaegergpg-dev3.3.34 of 5See more

jaeger gpg-dev 3.3.3

4 of the 5 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
stdlib@go1.21.5
1.25.11
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.25.11
jaegertracing/jaeger-collector:1.53.07f1269222903
stdlib@go1.21.5
1.25.11
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
stdlib@go1.21.5
1.25.11

Open the chart page →

19,390
kube-prometheus-stackgpg-dev84.0.05 of 6See more

kube-prometheus-stack gpg-dev 84.0.0

5 of the 6 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
grafana/grafana:13.0.10f86bada30d6
stdlib@go1.26.0
1.25.11
ghcr.io/jkroepke/kube-webhook-certgen:1.8.14f6da0256b1b
stdlib@go1.26.2
1.25.11
quay.io/prometheus-operator/prometheus-operator:v0.90.152a6a92d915e
stdlib@go1.25.8
1.25.11
quay.io/prometheus/node-exporter:v1.11.10f422f62c15f
stdlib@go1.26.1
1.25.11
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.11

Open the chart page →

4,333
kubernetes-dashboardgpg-dev7.5.04 of 5See more

kubernetes-dashboard gpg-dev 7.5.0

4 of the 5 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
kubernetesui/dashboard-api:1.7.060595892c2cf
stdlib@go1.22.3
1.25.11
kubernetesui/dashboard-auth:1.1.307135c09e9ff
stdlib@go1.22.2
1.25.11
kubernetesui/dashboard-metrics-scraper:1.1.17747d363c9fe
stdlib@go1.22.1
1.25.11
kubernetesui/dashboard-web:1.4.04445b31a2c25
stdlib@go1.22.3
1.25.11

Open the chart page →

6,104
metrics-servergpg-dev3.12.11 of 1See more

metrics-server gpg-dev 3.12.1

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
registry.k8s.io/metrics-server/metrics-server:v0.7.1db3800085a09
stdlib@go1.21.8
1.25.11

Open the chart page →

1,085
opentelemetry-demogpg-dev0.33.88 of 27See more

opentelemetry-demo gpg-dev 0.33.8

8 of the 27 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
grafana/grafana:11.3.1fa801ab6e1ae
stdlib@go1.23.1
1.25.11
jaegertracing/all-in-one:1.53.060e65bfffe1f
stdlib@go1.21.5
1.25.11
otel/opentelemetry-collector-contrib:0.114.037fa87091cfa
stdlib@go1.23.3
1.25.11
ghcr.io/open-feature/flagd:v0.11.1a7ea52f87446
stdlib@go1.22.5
1.25.11
ghcr.io/open-telemetry/demo:1.12.0-productcatalogservice008b9b662289
stdlib@go1.22.8
1.25.11
ghcr.io/open-telemetry/demo:1.12.0-checkoutservice380eccdc29e9
stdlib@go1.22.8
1.25.11
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
stdlib@go1.21.5
1.25.11
quay.io/prometheus/prometheus:v3.0.03b9b2a15d376
stdlib@go1.23.3
1.25.11

Open the chart page →

49,912
prometheusgpg-dev29.2.16 of 6See more

prometheus gpg-dev 29.2.1

6 of the 6 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.90.1693faa0b8724
stdlib@go1.25.8
1.25.11
quay.io/prometheus/alertmanager:v0.32.058e117eabcce
stdlib@go1.26.2
1.25.11
quay.io/prometheus/node-exporter:v1.11.10f422f62c15f
stdlib@go1.26.1
1.25.11
quay.io/prometheus/prometheus:v3.11.2cd37346c9745
stdlib@go1.26.2
1.25.11
quay.io/prometheus/pushgateway:v1.11.249ed9fdf3780
stdlib@go1.25.3
1.25.11
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.11

Open the chart page →

3,309
prometheus-operator-admission-webhookgpg-dev0.18.12 of 2See more

prometheus-operator-admission-webhook gpg-dev 0.18.1

2 of the 2 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/admission-webhook:v0.79.2d4c97a1b2d67
stdlib@go1.23.4
1.25.11
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
stdlib@go1.19.4
1.25.11

Open the chart page →

1,686
thanosgpg-dev0.5.31 of 1See more

thanos gpg-dev 0.5.3

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
thanosio/thanos:v0.41.0cf3e9b292e43
stdlib@go1.25.7
1.25.11

Open the chart page →

602
traefikgpg-dev39.0.81 of 1See more

traefik gpg-dev 39.0.8

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
library/traefik:v3.6.1334d5089d0b41
stdlib@go1.25.8
1.25.11

Open the chart page →

1,309
velerogpg-dev12.0.01 of 1See more

velero gpg-dev 12.0.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
velero/velero:v1.18.0e4d1e79be2ee
stdlib@go1.25.7
1.25.11

Open the chart page →

1,582
whoami-demogpg-dev0.1.01 of 1See more

whoami-demo gpg-dev 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
containous/whoami:latest7d6a3c8f9147
stdlib@go1.14
1.25.11

Open the chart page →

1,280
grafana-cloud-onboardinggrafana0.4.75 of 5See more

grafana-cloud-onboarding grafana 0.4.7

5 of the 5 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
grafana/beyla-k8s-cache:253b2f561cb1b
stdlib@go1.25.3
1.25.11
ghcr.io/grafana/alloy-operator:1.8.1ae85d68749c7
stdlib@go1.25.8
1.25.11
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.1c137478627cc
stdlib@go1.23.6
1.25.11
quay.io/prometheus/node-exporter:v1.11.10f422f62c15f
stdlib@go1.26.1
1.25.11
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.11

Open the chart page →

4,738
grafana-samplinggrafana1.1.72 of 2See more

grafana-sampling grafana 1.1.7

2 of the 2 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
grafana/alloy:v1.11.38c7256f412fe
stdlib@go1.24.6
1.25.11
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
stdlib@go1.23.7
1.25.11

Open the chart page →

3,412
mimir-openshift-experimentalgrafana2.1.03 of 4See more

mimir-openshift-experimental grafana 2.1.0

3 of the 4 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
grafana/mimir:2.0.080c1a8eb24dd
stdlib@go1.17.8
1.25.11
minio/mc:RELEASE.2021-02-14T04-28-06Z2a374c124d44
stdlib@go1.15.7
1.25.11
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
stdlib@go1.15.7
1.25.11

Open the chart page →

17,811
pyroscope-monitoringgrafana0.1.15 of 6See more

pyroscope-monitoring grafana 0.1.1

5 of the 6 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
grafana/otel-lgtm:0.11.1009d8c3ce4f3a
stdlib@go1.24.6
1.25.11
ghcr.io/grafana/alloy-operator:1.3.02088dcb22aaa
stdlib@go1.24.5
1.25.11
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.1c137478627cc
stdlib@go1.23.6
1.25.11
quay.io/prometheus/node-exporter:v1.9.1d00a542e409e
stdlib@go1.23.7
1.25.11
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.17.02bbc91556733
stdlib@go1.24.6
1.25.11

Open the chart page →

8,491
snyk-exportergrafana0.1.01 of 1See more

snyk-exporter grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
grafana/snyk_exporter:v1.4.1d3c9093401ca
stdlib@go1.21.0
1.25.11

Open the chart page →

670
prometheusgrafana-uxadax26.0.16 of 6See more

prometheus grafana-uxadax 26.0.1

6 of the 6 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
prom/prometheus:v3.0.1565ee8650122
stdlib@go1.23.3
1.25.11
quay.io/prometheus-operator/prometheus-config-reloader:v0.78.2944b2c67345c
stdlib@go1.23.3
1.25.11
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
stdlib@go1.21.7
1.25.11
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.11
quay.io/prometheus/pushgateway:v1.10.07a4d0696a24e
stdlib@go1.23.1
1.25.11
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.11

Open the chart page →

5,323
grafregistratiecomponentgrafregistratiecomponent1.0.01 of 3See more

grafregistratiecomponent grafregistratiecomponent 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/grafregistratiecomponent-php:latest35225eaa87ab
stdlib@go1.13.10
1.25.11

Open the chart page →

7,521
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
stdlib@go1.18.10
1.25.11

Open the chart page →

83,462
grayloggraylogVerified publisher1.0.21 of 4See more

graylog graylog 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
library/mongo:85211c51171f5
stdlib@go1.24.6
1.25.11

Open the chart page →

5,407
fasttrackmlgresearch0.1.01 of 1See more

fasttrackml gresearch 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
gresearch/fasttrackml:latest16d1228220fc
stdlib@go1.21.10
1.25.11

Open the chart page →

1,398
siembolgresearch0.1.61 of 4See more

siembol gresearch 0.1.6

1 of the 4 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
alpine/k8s:1.18.16a41efe02a041
stdlib@go1.15.2
1.25.11

Open the chart page →

14,303
act-runnergringolitoVerified publisher0.2.01 of 1See more

act-runner gringolito 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
gitea/act_runner:0.2.11-dind-rootless6120b1165f3a
stdlib@go1.22.7
1.25.11

Open the chart page →

2,608
loki-proxygroundcover0.1.11 of 1See more

loki-proxy groundcover 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/loki-proxy:0.1.1783d550ad813
stdlib@go1.17.13
1.25.11

Open the chart page →

2,183
routergroundcover1.12.3754 of 7See more

router groundcover 1.12.375

4 of the 7 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
stdlib@go1.26.3
1.25.11
public.ecr.aws/groundcovercom/kong/kubernetes-ingress-controller:3.5.3-20260205bf9db911deed
stdlib@go1.25.7
1.25.11
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
stdlib@go1.25.7
1.25.11
quay.io/groundcover/tools:20260719b705e0cbe171
stdlib@go1.24.4
1.25.11

Open the chart page →

6,171
temporalgroundcover1.12.3751 of 2See more

temporal groundcover 1.12.375

1 of the 2 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/server:1.29.6-mini-20260702-170f191d0a80e
stdlib@go1.26.3
1.25.11

Open the chart page →

2,168
mysqlgroundhog2k3.1.41 of 1See more

mysql groundhog2k 3.1.4

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
stdlib@go1.24.6
1.25.11

Open the chart page →

463
tailscale-subnet-routergtaylor1.2.11 of 1See more

tailscale-subnet-router gtaylor 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
ghcr.io/tailscale/tailscale:v1.34.1ce1862e6b3a5
stdlib@go1.19.2-ts3fd24dee31
1.25.11

Open the chart page →

1,835
minifluxhajowielandVerified publisher1.0.01 of 1See more

miniflux hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
ghcr.io/miniflux/miniflux:2.2.83a11ac10969e
stdlib@go1.24.2
1.25.11

Open the chart page →

1,258
hakoniwahakoniwa0.1.01 of 1See more

hakoniwa hakoniwa 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
ghcr.io/aplulu/hakoniwa:0.1.0accf0b921388
stdlib@go1.25.5
1.25.11

Open the chart page →

338
docker-authhalkeye0.1.11 of 1See more

docker-auth halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
cesanta/docker_auth:1.6.04d16885f3d4c
stdlib@go1.13.7
1.25.11

Open the chart page →

2,382
matrix-media-repohalkeye1.0.51 of 1See more

matrix-media-repo halkeye 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
turt2live/matrix-media-repo:v1.2.8bfbd459f89a5
stdlib@go1.16.3
1.25.11

Open the chart page →

4,463
mautrix-signalhalkeye0.3.01 of 2See more

mautrix-signal halkeye 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
signald/signald:0.23.2edbff058278c
stdlib@go1.18.10
1.25.11

Open the chart page →

1,500
whoamihalkeye1.0.11 of 1See more

whoami halkeye 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
containous/whoami:v1.5.07d6a3c8f9147
stdlib@go1.14
1.25.11

Open the chart page →

1,280
hcp-terraform-operatorhashicorpVerified publisher2.12.11 of 2See more

hcp-terraform-operator hashicorp 2.12.1

1 of the 2 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.20.1f5fbfec6a2b2
stdlib@go1.25.4
1.25.11

Open the chart page →

692
hatchet-apihatchetOfficialVerified publisher0.19.01 of 4See more

hatchet-api hatchet 0.19.0

1 of the 4 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.11

Open the chart page →

1,728
hatchet-hahatchetOfficialVerified publisher0.19.01 of 8See more

hatchet-ha hatchet 0.19.0

1 of the 8 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.11

Open the chart page →

7,661
hatchet-stackhatchetOfficialVerified publisher0.19.01 of 8See more

hatchet-stack hatchet 0.19.0

1 of the 8 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.11

Open the chart page →

7,661
hawk-envoy-pluginhawk0.1.02 of 4See more

hawk-envoy-plugin hawk 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
ghcr.io/privacyengineering/collector-go:main7217f1a4fa28
stdlib@go1.17.13
1.25.11
ghcr.io/privacyengineering/consumer:main73f59c032812
stdlib@go1.17.13
1.25.11

Open the chart page →

65,966
cert-manager-webhook-arvanhbahadorzadeh0.1.11 of 1See more

cert-manager-webhook-arvan hbahadorzadeh 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27145.

Container imageDigestPackageFixed in
hbahadorzadeh/cert-manager-webhook-arvan:latestbf9756b3bc47
stdlib@go1.15.6
1.25.11

Open the chart page →

3,030

Container images carrying it

4,716 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
udhos/snsping:1.2.96ae70677b6a3
stdlib@go1.23.4
1.25.11
1
udhos/sqs-to-sns:2.0.15cf7979da82e1
stdlib@go1.26.3
1.25.11
1
udhos/token-server:1.0.9728013f2fac1
stdlib@go1.25.1
1.25.11
1
uffizzi/uffizzi-cluster-operator:v1.4.514e528bbd926
stdlib@go1.19.13
1.25.11
1
uffizzi/uffizzi-cluster-operator:v1.6.55ca448a08783
stdlib@go1.19.13
1.25.11
1
uptrace/uptrace:2.0.234a02c3b2d12
stdlib@go1.24.10
1.25.11
1
utho/utho-app-operator:0.1.46e8a690e8b7a
stdlib@go1.22.8
1.25.11
1
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
stdlib@go1.17
1.25.11
1
v2fly/v2fly-core:latestd06727b221fe
stdlib@go1.24.2
1.25.11
1
vearch/vearch:3.3.40768af33f9d9
stdlib@go1.19.9
1.25.11
1
veecode/devportal-admin-ui:0.4.30c69fd286b489
stdlib@go1.22.3
1.25.11
1
velero/velero:v1.9.0277fbfaf8dcf
stdlib@go1.18
1.25.11
1
velero/velero:v1.8.18d784580931c
stdlib@go1.16.6
1.25.11
1
velero/velero:v1.18.0e4d1e79be2ee
stdlib@go1.25.7
1.25.11
1
velero/velero-plugin-for-aws:v1.5.03d2ea7aab32d
stdlib@go1.17.11
1.25.11
1
velero/velero-plugin-for-aws:v1.14.07e82f717f44e
stdlib@go1.25.7
1.25.11
1
venturenox/redis:latest83b471c193ba
stdlib@go1.22.9
1.25.11
1
venturenox/sagawise:latestc11d32f18718
stdlib@go1.22.2
1.25.11
1
versity/versitygw:v1.0.145192635d0353
stdlib@go1.24.3
1.25.11
1
versity/versitygw:v1.1.0f730e0dbc1ef
stdlib@go1.25.5
1.25.11
1
vespaengine/vespa:8.526.1569b160f58211
stdlib@go1.24.2
1.25.11
1
victoriametrics/operator:v0.65.0716b89a3ed79
stdlib@go1.25.3
1.25.11
1
victoriametrics/operator:v0.47.271be93cfafb6
stdlib@go1.23.0
1.25.11
1
victoriametrics/operator:v0.68.3f52e1bd679cb
stdlib@go1.25.8
1.25.11
1
victoriametrics/victoria-logs:v1.15.0-victorialogsd7435244eb19
stdlib@go1.24.0
1.25.11
1
victoriametrics/victoria-metrics:v1.93.577a9815d0640
stdlib@go1.21.1
1.25.11
1
victoriametrics/victoria-metrics:v1.120.0a1cb2f3dfd45
stdlib@go1.24.4
1.25.11
1
victoriametrics/victoria-metrics:v1.34.7b50d5c0153f9
stdlib@go1.14.1
1.25.11
1
victoriametrics/victoria-metrics:v1.95.1f52723a08a44
stdlib@go1.21.4
1.25.11
1
victoriametrics/vmalert:v1.96.0150cd08fde94
stdlib@go1.21.5
1.25.11
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
stdlib@go1.16.4
1.25.11
1
vikunja/api:0.17.18cba0520bf8c
stdlib@go1.16.5
1.25.11
1
vineyardcloudnative/vineyard-operator:latest9d419aa18faa
stdlib@go1.19.13
1.25.11
1
vmware/kube-fluentd-operator:latestf028c138a5f4
stdlib@go1.21.7
1.25.11
1
voidxmh/golang:1.19-alpine-dev423c6195fab2
stdlib@go1.19
1.25.11
1
voidxmh/xmh-auther:v193e42a569ca8
stdlib@go1.16.5
1.25.11
1
voidxmh/xmh-cacher:v11b7397412320
stdlib@go1.16.5
1.25.11
1
voidxmh/xmh-ui:v12ff3f2146547
stdlib@go1.16.5
1.25.11
1
volantmq/volantmq:v0.4.0-rc.69bfe7857ebc3
stdlib@go1.13.6
1.25.11
1
volcanosh/vc-controller-manager:v1.12.13815883c32f6
stdlib@go1.23.7
1.25.11
1
volcanosh/vc-controller-manager:v1.15.26a6bc2560d51
stdlib@go1.25.0
1.25.11
1
volcanosh/vc-scheduler:v1.15.2afab36286a17
stdlib@go1.25.0
1.25.11
1
volcanosh/vc-scheduler:v1.12.1b24ea8af2d16
stdlib@go1.23.7
1.25.11
1
volcanosh/vc-webhook-manager:v1.15.22fff65aad011
stdlib@go1.25.0
1.25.11
1
volcanosh/vc-webhook-manager:v1.12.1f8b50088a732
stdlib@go1.23.7
1.25.11
1
voltha/bbsim:1.16.7d90403d58016
stdlib@go1.13.8
1.25.11
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
stdlib@go1.16.3
1.25.11
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
stdlib@go1.16.3
1.25.11
1
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
stdlib@go1.16.3
1.25.11
1
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
stdlib@go1.16.7
1.25.11
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.