StackRadar

CVE-2026-32289

Medium

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.003
22nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,852
of 17,790 indexed, latest versions
Container images
4,403
deployed by those charts
Fix available
1 of 2
affected packages

JsBraceDepth Context Tracking Bugs (XSS) in html/template

Carried by container images the latest versions of 3,852 of 17,790 indexed charts deploy, on 4,403 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+177 more1.25.94,403
OSV records
DEBIAN-CVE-2026-32289GO-2026-4865
Also known as
BIT-golang-2026-32289

Charts affected

3,852 by stars
ChartLatestAffected imagesRadar Score
aws-node-termination-handler-2aws0.2.02 of 2See more

aws-node-termination-handler-2 aws 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/controller:v2.0.0-beta9637c80dd23f
stdlib@go1.19.3
1.25.9
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/webhook:v2.0.0-beta86b0f7243250
stdlib@go1.19.3
1.25.9

Open the chart page →

2,966
aws-sigv4-proxy-admission-controlleraws0.1.21 of 1See more

aws-sigv4-proxy-admission-controller aws 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
public.ecr.aws/aws-observability/aws-sigv4-proxy-admission-controller:1.067b89ae52240
stdlib@go1.15.3
1.25.9

Open the chart page →

2,140
axelor-open-suiteaxelor-open-suiteVerified publisher7.2.581 of 2See more

axelor-open-suite axelor-open-suite 7.2.58

1 of the 2 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
stdlib@go1.21.2
1.25.9

Open the chart page →

9,728
axonops-developer-operatoraxonops-developer-operator0.1.01 of 1See more

axonops-developer-operator axonops-developer-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
ghcr.io/axonops/axonops-developer-operator:v0.1.0b3d6600c8ba5
stdlib@go1.22.10
1.25.9

Open the chart page →

750
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
stdlib@go1.17.9
1.25.9

Open the chart page →

4,575
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
stdlib@go1.15
1.25.9

Open the chart page →

5,528
helm-controllerazureorkestra0.1.12 of 2See more

helm-controller azureorkestra 0.1.1

2 of the 2 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
fluxcd/helm-controller:v0.9.092b891e495d8
stdlib@go1.15.10
1.25.9
fluxcd/source-controller:v0.10.031a8c79a6803
stdlib@go1.15.10
1.25.9

Open the chart page →

7,723
keptn-addonsazureorkestra0.1.04 of 4See more

keptn-addons azureorkestra 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
keptn/distributor:0.8.36bc3df9e0d6a
stdlib@go1.16.2
1.25.9
keptn/distributor:0.8.472e17527a4f9
stdlib@go1.16.2
1.25.9
keptncontrib/prometheus-service:0.6.029969dd547de
stdlib@go1.13.7
1.25.9
keptnsandbox/job-executor-service:0.1.36e6d323dd7ae
stdlib@go1.16.2
1.25.9

Open the chart page →

10,629
prometheusazureorkestra14.8.05 of 6See more

prometheus azureorkestra 14.8.0

5 of the 6 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.9
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.25.9
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.9
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
stdlib@go1.15.8
1.25.9
quay.io/prometheus/prometheus:v2.26.038d40a760569
stdlib@go1.16.2
1.25.9

Open the chart page →

9,669
webserverazureorkestra1.0.01 of 1See more

webserver azureorkestra 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
nmalhotr/webserver:v1.0.03419361fb0dd
stdlib@go1.13.10
1.25.9

Open the chart page →

3,037
krakendbaboulinet0.1.341 of 1See more

krakend baboulinet 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
devopsfaith/krakend:2.7.09219cda867e2
stdlib@go1.22.5
1.25.9

Open the chart page →

1,198
ragflowbaboulinet0.1.12 of 5See more

ragflow baboulinet 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
library/mysql:8.0.39ccb8f749bb5e
stdlib@go1.18.2
1.25.9
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
stdlib@go1.21.5
1.25.9

Open the chart page →

5,894
prometheus-blackbox-exporterbackbox-exporter7.8.01 of 1See more

prometheus-blackbox-exporter backbox-exporter 7.8.0

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.23.0ca04aa9d9093
stdlib@go1.19.3
1.25.9

Open the chart page →

1,501
backlokto-operatorbacklokto0.0.11 of 1See more

backlokto-operator backlokto 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
piblokto/backlokto-operator:v0.0.20963cda71e393
stdlib@go1.20.14
1.25.9

Open the chart page →

694
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
conduction/balance-registration-php:devc36094a41369
stdlib@go1.13.10
1.25.9

Open the chart page →

8,417
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
stdlib@go1.24.4
1.25.9

Open the chart page →

4,059
qbittorrent-vpnbdclark-helm-chartsVerified publisher0.7.61 of 2See more

qbittorrent-vpn bdclark-helm-charts 0.7.6

1 of the 2 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
qmcgaw/gluetun:v3.41.11a5bf4b4820a
stdlib@go1.25.7
1.25.9

Open the chart page →

1,010
bluesky-pdsbear0.4.2081 of 1See more

bluesky-pds bear 0.4.208

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
stdlib@go1.25.7
1.25.9

Open the chart page →

2,137
helm-samplebehnambm-helm-chart1.0.11 of 3See more

helm-sample behnambm-helm-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.9

Open the chart page →

2,750
berichtserviceberichtservice1.0.01 of 3See more

berichtservice berichtservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
stdlib@go1.13.10
1.25.9

Open the chart page →

7,352
pagesberrutig-pages1.0.01 of 3See more

pages berrutig-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.9

Open the chart page →

20,242
trident-operatorberyju-org21.10.01 of 1See more

trident-operator beryju-org 21.10.0

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
netapp/trident-operator:21.10.049cfe552d9c2
stdlib@go1.16.9
1.25.9

Open the chart page →

2,078
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
stdlib@go1.25.3
1.25.9

Open the chart page →

7,246
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
stdlib@go1.25.3
1.25.9

Open the chart page →

5,117
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
stdlib@go1.17.6
1.25.9

Open the chart page →

8,029
mx-notifierbicarus-labs1.1.91 of 1See more

mx-notifier bicarus-labs 1.1.9

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
bicarus/mx-notifier:1.1.8bed688d16762
stdlib@go1.17.6
1.25.9

Open the chart page →

3,763
wg-access-serverbicarus-labs0.9.91 of 1See more

wg-access-server bicarus-labs 0.9.9

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
bicarus/wg-access-server:v0.8.206cab48e9334
stdlib@go1.19.3
1.25.9

Open the chart page →

2,755
bitpokebitpokeVerified publisher1.8.191 of 1See more

bitpoke bitpoke 1.8.19

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
stdlib@go1.21.1
1.25.9

Open the chart page →

2,336
stackbitpokeVerified publisher0.12.46 of 6See more

stack bitpoke 0.12.4

6 of the 6 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
stdlib@go1.17.13
1.25.9
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
stdlib@go1.19.9
1.25.9
bitpoke/stack-default-backend:latestc5eed1ddf692
stdlib@go1.16.6
1.25.9
bitpoke/wordpress-operator:v0.12.27fb3aad37b5f
stdlib@go1.17.13
1.25.9
registry.k8s.io/ingress-nginx/controller:v1.3.154f7fe2c6c5a
stdlib@go1.18.2
1.25.9
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.3.0549e71a6ca24
stdlib@go1.18.2
1.25.9

Open the chart page →

9,898
wordpress-operatorbitpokeVerified publisher0.12.41 of 1See more

wordpress-operator bitpoke 0.12.4

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
bitpoke/wordpress-operator:v0.12.421284d1df473
stdlib@go1.17.13
1.25.9

Open the chart page →

1,123
baserowblackbird-cloudVerified publisher1.0.172 of 6See more

baserow blackbird-cloud 1.0.17

2 of the 6 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
stdlib@go1.19.8
1.25.9
caddy/ingress:v0.2.118d1366fc0e9
stdlib@go1.21.4
1.25.9

Open the chart page →

10,225
prometheus-domain-exporterblackbox-domain-exporter1.0.01 of 1See more

prometheus-domain-exporter blackbox-domain-exporter 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
bulich/domain-exporter:latest6d0b780f7c7b
stdlib@go1.20.4
1.25.9

Open the chart page →

1,408
bdbablackduck2026.6.33 of 9See more

bdba blackduck 2026.6.3

3 of the 9 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
blackducksoftware/bdba-pgupgrader:2026.6.35c97f3a3f8b7
stdlib@go1.18.2
1.25.9
library/postgres:15.18-bookworme8db9bd3e9e1
stdlib@go1.24.6
1.25.9
library/rabbitmq:4.2.87561d672fae4
stdlib@go1.22.2
1.25.9

Open the chart page →

9,667
blackduck-alertblackduck8.4.01 of 4See more

blackduck-alert blackduck 8.4.0

1 of the 4 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert-db:8.4.06310fac39d53
stdlib@go1.24.6
1.25.9

Open the chart page →

4,297
firehoseblip-firehoseVerified publisher0.0.183 of 11See more

firehose blip-firehose 0.0.18

3 of the 11 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
blipai/deckard:0.0.28737d5d19a312
stdlib@go1.18.10
1.25.9
hashicorp/vault:1.15.26b4e5dadf082
stdlib@go1.21.3
1.25.9
hashicorp/vault-k8s:1.3.15d74a885ae3e
stdlib@go1.21.3
1.25.9

Open the chart page →

13,517
bnkrbnkr1.0.51 of 2See more

bnkr bnkr 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
engrmth/bnkr:2.1.06d8464e6f0e8
stdlib@go1.15.8
1.25.9

Open the chart page →

15,302
colosseumbook-k8sinfra-v21.0.181 of 5See more

colosseum book-k8sinfra-v2 1.0.18

1 of the 5 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-nti:logc947c3629371
stdlib@go1.23.12
1.25.9

Open the chart page →

27,215
csi-driver-nfsbook-k8sinfra-v24.12.16 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

6 of the 6 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
stdlib@go1.24.6
1.25.9
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
stdlib@go1.24.2
1.25.9
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
stdlib@go1.24.2
1.25.9
registry.k8s.io/sig-storage/csi-snapshotter:v8.3.0bc7be893ecc3
stdlib@go1.24.2
1.25.9
registry.k8s.io/sig-storage/livenessprobe:v2.17.09b75b9ade162
stdlib@go1.24.6
1.25.9
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
stdlib@go1.23.6
1.25.9

Open the chart page →

6,289
grafanabook-k8sinfra-v28.8.21 of 1See more

grafana book-k8sinfra-v2 8.8.2

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
grafana/grafana:11.4.0d8ea37798ccc
stdlib@go1.23.1
1.25.9

Open the chart page →

1,808
jaegerbook-k8sinfra-v23.4.04 of 5See more

jaeger book-k8sinfra-v2 3.4.0

4 of the 5 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
stdlib@go1.21.5
1.25.9
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.25.9
jaegertracing/jaeger-collector:1.53.07f1269222903
stdlib@go1.21.5
1.25.9
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
stdlib@go1.21.5
1.25.9

Open the chart page →

19,311
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
stdlib@go1.21.8
1.25.9

Open the chart page →

8,339
kube-prometheus-stackbook-k8sinfra-v265.5.15 of 6See more

kube-prometheus-stack book-k8sinfra-v2 65.5.1

5 of the 6 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
grafana/grafana:11.2.2-security-01464eac539793
stdlib@go1.22.7
1.25.9
quay.io/prometheus-operator/prometheus-operator:v0.77.2af92db7eac86
stdlib@go1.23.2
1.25.9
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.9
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
stdlib@go1.19.4
1.25.9
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.25.9

Open the chart page →

6,044
metallbbook-k8sinfra-v20.13.102 of 3See more

metallb book-k8sinfra-v2 0.13.10

2 of the 3 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.13.101b33357b3595
stdlib@go1.19.5
1.25.9
quay.io/metallb/speaker:v0.13.1000406ccb1fa0
stdlib@go1.19.5
1.25.9

Open the chart page →

3,857
nfs-subdir-external-provisionerbook-k8sinfra-v24.0.181 of 1See more

nfs-subdir-external-provisioner book-k8sinfra-v2 4.0.18

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfs-subdir-external-provisioner:v4.0.03ce0fdba4d8e
stdlib@go1.15
1.25.9

Open the chart page →

2,745
prometheusbook-k8sinfra-v226.0.16 of 6See more

prometheus book-k8sinfra-v2 26.0.1

6 of the 6 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
prom/prometheus:v3.0.1565ee8650122
stdlib@go1.23.3
1.25.9
quay.io/prometheus-operator/prometheus-config-reloader:v0.78.2944b2c67345c
stdlib@go1.23.3
1.25.9
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
stdlib@go1.21.7
1.25.9
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.9
quay.io/prometheus/pushgateway:v1.10.07a4d0696a24e
stdlib@go1.23.1
1.25.9
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.9

Open the chart page →

5,312
pyroscopebook-k8sinfra-v21.10.03 of 3See more

pyroscope book-k8sinfra-v2 1.10.0

3 of the 3 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
grafana/alloy:v1.1.1c3dac4e26471
stdlib@go1.22.3
1.25.9
grafana/pyroscope:1.10.0319bf32ae06b
stdlib@go1.22.7
1.25.9
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
stdlib@go1.21.1
1.25.9

Open the chart page →

3,257
redisbook-k8sinfra-v21.0.01 of 1See more

redis book-k8sinfra-v2 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
library/redis:7.0.4091a7b5de688
stdlib@go1.16.7
1.25.9

Open the chart page →

1,731
tempobook-k8sinfra-v21.10.31 of 1See more

tempo book-k8sinfra-v2 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
grafana/tempo:2.5.0f0200a9bff6d
stdlib@go1.21.3
1.25.9

Open the chart page →

1,867
boundary-softsciboundary-softsci0.2.41 of 1See more

boundary-softsci boundary-softsci 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
hashicorp/boundary:latest76a201954ca0
stdlib@go1.25.7
1.25.9

Open the chart page →

734
bitmagnetbrandan-schmitz-helm-chartsVerified publisher1.0.62 of 2See more

bitmagnet brandan-schmitz-helm-charts 1.0.6

2 of the 2 container images this version deploys carry CVE-2026-32289.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.9
ghcr.io/bitmagnet-io/bitmagnet:v0.10.0cf2c16fac5b5
stdlib@go1.23.6
1.25.9

Open the chart page →

1,721

Container images carrying it

4,403 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
aquasec/kube-bench:v0.6.176672264accce
stdlib@go1.20.4
1.25.9
1
aquasec/kube-bench:v0.15.07a8fa32dce21
stdlib@go1.26.0
1.25.9
1
aquasec/kube-bench:v0.6.9c329d73fea58
stdlib@go1.19
1.25.9
1
aquasec/postee:2.12.0-amd640795cba777e7
stdlib@go1.18.10
1.25.9
1
aquasec/postee-ui:2.12.0-amd64c0467c3941dc
stdlib@go1.18.10
1.25.9
1
aquasec/starboard-operator:0.15.4be34f709e1ce
stdlib@go1.17.8
1.25.9
1
aquasec/tracee:0.24.1cfbbfee972e6
stdlib@go1.24.9
1.25.9
1
aquasec/trivy:0.43.1944a04445179
stdlib@go1.19.10
1.25.9
1
aquasec/trivy:0.32.0973d0df16189
stdlib@go1.19
1.25.9
1
aquasec/trivy:0.69.3bcc376de8d77
stdlib@go1.25.7
1.25.9
1
archivebox/archivebox:0.7.41a5a37331091
stdlib@go1.24.6
1.25.9
1
arconixforge/mongodb-secure-backup:v1.1c08d7c438966
stdlib@go1.22.10
1.25.9
1
aristidetm/basic-notebook:3.6.5469dbc951224
stdlib@go1.22.5
1.25.9
1
artifacthub/db-migrator:v1.19.02a746b289fcd
stdlib@go1.22.4
1.25.9
1
artifacthub/hub:v1.19.0111918d8c399
stdlib@go1.22.4
1.25.9
1
artifacthub/scanner:v1.23.02d8365601f0e
stdlib@go1.25.7
1.25.9
1
artifacthub/scanner:v1.19.0323d026e78c3
stdlib@go1.21.8
1.25.9
1
artifacthub/tracker:v1.23.05368d21a6e5c
stdlib@go1.24.4
1.25.9
1
artifacthub/tracker:v1.19.06596c8c4d955
stdlib@go1.22.4
1.25.9
1
artur9010/wait-for:v1.0.06b4de3ce8b0e
stdlib@go1.22.4
1.25.9
1
arunvelsriram/utils:latest655ad18fd8d6
stdlib@go1.23.8
1.25.9
1
assistiot/authorization_db:latestc3adbab6a3e7
stdlib@go1.18.2
1.25.9
1
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
stdlib@go1.14.12
1.25.9
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
stdlib@go1.18.2
1.25.9
1
assistiot/data_integrity_verification:1.0.0eb7f5d765ab6
stdlib@go1.17.13
1.25.9
1
assistiot/distributed_broker:1.0.033e02dad168f
stdlib@go1.17.13
1.25.9
1
assistiot/dlt_based_fl:1.1.04bc3d92788ed
stdlib@go1.17.13
1.25.9
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
stdlib@go1.17.10
1.25.9
1
assistiot/identity-manager_db:latest0d3e6d35f168
stdlib@go1.18.2
1.25.9
1
assistiot/logging_auditing:1.0.0790dbb198e86
stdlib@go1.17.13
1.25.9
1
assistiot/open_api_backend:1.1.230812ba93555
stdlib@go1.18.6
1.25.9
1
assistiot/smart-orchestrator_helm:latest9bb46ea14e8e
stdlib@go1.22.1
1.25.9
1
astarte/astarte-kubernetes-operator:26.5.1e3ff1b3c0c98
stdlib@go1.24.13
1.25.9
1
atlassian/bamboo:12.1.114af4bb6c8d46
stdlib@go1.22.2
1.25.9
1
atlassian/bamboo-agent-base:12.1.1151c2d7274eef
stdlib@go1.22.2
1.25.9
1
automatischio/automatisch:0.15.03bace7a12d5f
stdlib@go1.23.8
1.25.9
1
avaprotocol/ap-avs:1.2.0c430ea5c37d6
stdlib@go1.22.5
1.25.9
1
aveshasystems/spiffe-csi-driver:0.2.753fc6d009e04
stdlib@go1.22.2
1.25.9
1
b3log/siyuan:v3.1.2595c0d129bc19
stdlib@go1.24.1
1.25.9
1
baserow/backend:1.31.1e0b3c8130b91
stdlib@go1.19.8
1.25.9
1
baserow/baserow:1.30.1df0c42eb67e8
stdlib@go1.21.5
1.25.9
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
stdlib@go1.17.8
1.25.9
1
beanbag/reviewboard:latest6b840f546e1c
stdlib@go1.18.1
1.25.9
1
bedag/goblackhole:0.2.0447a88598f4c
stdlib@go1.16.6
1.25.9
1
beopenit/door-agent:v3.0.5d24c323fe7c3
stdlib@go1.23.12
1.25.9
1
beopenit/door-cd-operator:v3.0.4d3999cb8d026
stdlib@go1.23.9
1.25.9
1
beopenit/door-helm:v3.0.1b4d9f9bee224
stdlib@go1.19.13
1.25.9
1
beopenit/onboarding-operator-kubernetes:v3.0.275a48144e682
stdlib@go1.18.10
1.25.9
1
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
stdlib@go1.24.11
1.25.9
1
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
stdlib@go1.23.5
1.25.9
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.