StackRadar

CVE-2026-33186

Critical

Advisory

Published 18 Mar 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,636
of 17,792 indexed, latest versions
Container images
1,984
deployed by those charts
Fix available
1 of 1
affected package

gRPC-Go has an authorization bypass via missing leading slash in :path

Carried by container images the latest versions of 1,636 of 17,792 indexed charts deploy, on 1,984 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+107 more1.79.31,984
OSV records
GHSA-p77j-4mvh-x3m3
Also known as
GO-2026-4762

Charts affected

1,636 by stars
ChartLatestAffected imagesRadar Score
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
conduction/conduction-ui-php:dev2744565516e8
google.golang.org/grpc@v1.27.0
1.79.3

Open the chart page →

12,915
betaalservicecontacten-catalog1.0.01 of 3See more

betaalservice contacten-catalog 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
conduction/betaalservice-php:latestece1ab544c57
google.golang.org/grpc@v1.27.0
1.79.3

Open the chart page →

7,218
contactmoment-componentcontactmoment-component0.1.01 of 4See more

contactmoment-component contactmoment-component 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
conduction/contactmoment-component-php:deve1d4ad1e22a8
google.golang.org/grpc@v1.27.0
1.79.3

Open the chart page →

8,417
containers-security-chartscontainers-security0.1.01 of 7See more

containers-security-charts containers-security 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
falcosecurity/falcosidekick:2.27.0828ee36cb13a
google.golang.org/grpc@v1.49.0
1.79.3

Open the chart page →

9,153
coordimap-agentcoordimap-agentVerified publisher0.4.31 of 1See more

coordimap-agent coordimap-agent 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
coordimap/coordimap-agent:latest7748fd0fae9f
google.golang.org/grpc@v1.67.1
1.79.3

Open the chart page →

625
cortezacorteza1.1.01 of 3See more

corteza corteza 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.4cb9f200de5d2
google.golang.org/grpc@v1.61.1
1.79.3

Open the chart page →

8,441
corteza-all-in-onecorteza0.1.01 of 2See more

corteza-all-in-one corteza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.08eb7a26605c9
google.golang.org/grpc@v1.61.1
1.79.3

Open the chart page →

4,691
cosanetcosanet1.0.01 of 1See more

cosanet cosanet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
google.golang.org/grpc@v1.75.0
1.79.3

Open the chart page →

2,220
ociscosmicrocks0.7.01 of 2See more

ocis cosmicrocks 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
owncloud/ocis:7.1.388e7c854517d
google.golang.org/grpc@v1.68.0
1.79.3

Open the chart page →

1,932
cosmo-traefikcosmoVerified publisher0.9.11 of 2See more

cosmo-traefik cosmo 0.9.1

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
library/traefik:v2.10.11489caffaedb
google.golang.org/grpc@v1.49.0
1.79.3

Open the chart page →

3,678
cospacecospace0.0.341 of 3See more

cospace cospace 0.0.34

1 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/twigex/cospace:lateste5ecfd607e42
google.golang.org/grpc@v1.62.0
1.79.3

Open the chart page →

2,282
katibcowboysysopVerified publisher2.4.23 of 4See more

katib cowboysysop 2.4.2

3 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
kubeflowkatib/katib-controller:v0.12.012a28c8a0b41
google.golang.org/grpc@v1.32.0
1.79.3
kubeflowkatib/katib-db-manager:v0.12.0db88bf09d88e
google.golang.org/grpc@v1.32.0
1.79.3
kubeflowkatib/katib-ui:v0.12.0129f0aaba976
google.golang.org/grpc@v1.32.0
1.79.3

Open the chart page →

6,563
kfservingcowboysysopVerified publisher1.3.11 of 3See more

kfserving cowboysysop 1.3.1

1 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
kfserving/kfserving-controller:v0.6.163d79d04c2e3
google.golang.org/grpc@v1.31.1
1.79.3

Open the chart page →

3,837
kubernetes-mcpcowboysysopVerified publisher2.0.01 of 1See more

kubernetes-mcp cowboysysop 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/manusa/kubernetes_mcp_server:v0.0.47150f76e844d9
google.golang.org/grpc@v1.68.1
1.79.3

Open the chart page →

1,831
external-service-operatorcrowdfox0.1.01 of 1See more

external-service-operator crowdfox 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
crowdfox/external-service-operator:v1.1.06fa7e8063d27
google.golang.org/grpc@v1.27.0
1.79.3

Open the chart page →

4,631
electric-mailcryptexlabsVerified publisher0.0.11 of 5See more

electric-mail cryptexlabs 0.0.1

1 of the 5 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
google.golang.org/grpc@v1.29.1
1.79.3

Open the chart page →

5,980
purple-piecryptexlabsVerified publisher0.0.11 of 4See more

purple-pie cryptexlabs 0.0.1

1 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
google.golang.org/grpc@v1.29.1
1.79.3

Open the chart page →

5,980
csghubcsghubVerified publisher2.5.05See more

csghub csghub 2.5.0

5 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
grafana/loki:3.4.258a6c186ce78
google.golang.org/grpc@v1.70.0
1.79.3
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
google.golang.org/grpc@v1.67.1
1.79.3
opencsghq/lws:v0.6.1de15437db41b
google.golang.org/grpc@v1.65.0
1.79.3
quay.io/argoproj/argocli:v3.7.11577fc18f86ad
google.golang.org/grpc@v1.72.2
1.79.3
quay.io/argoproj/workflow-controller:v3.7.11c46aa0ded8ed
google.golang.org/grpc@v1.72.2
1.79.3

Open the chart page →

rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
google.golang.org/grpc@v1.49.0
1.79.3

Open the chart page →

15,419
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.4.121994f40e0da
google.golang.org/grpc@v1.29.1
1.79.3

Open the chart page →

13,944
csi-driver-ipfscsi-driver-ipfs0.2.05 of 6See more

csi-driver-ipfs csi-driver-ipfs 0.2.0

5 of the 6 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
google.golang.org/grpc@v1.78.0
1.79.3
registry.k8s.io/sig-storage/csi-provisioner:v6.1.1d992c36d4ddd
google.golang.org/grpc@v1.75.1
1.79.3
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
google.golang.org/grpc@v1.78.0
1.79.3
registry.k8s.io/sig-storage/csi-snapshotter:v8.5.0da081c27e8a6
google.golang.org/grpc@v1.78.0
1.79.3
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
google.golang.org/grpc@v1.78.0
1.79.3

Open the chart page →

3,675
secrets-store-csi-driver-provider-awscustom0.2.01 of 1See more

secrets-store-csi-driver-provider-aws custom 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r2-35-g41dc61e-2022.12.16.20.38363bd65cd707
google.golang.org/grpc@v1.49.0
1.79.3

Open the chart page →

1,239
irods-csi-drivercyverse0.12.03 of 4See more

irods-csi-driver cyverse 0.12.0

3 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.9.12cddcc716c19
google.golang.org/grpc@v1.59.0
1.79.3
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
google.golang.org/grpc@v1.40.0
1.79.3
registry.k8s.io/sig-storage/livenessprobe:v2.11.082adbebdf5d5
google.golang.org/grpc@v1.58.0
1.79.3

Open the chart page →

5,288
jupyterhubd4nVerified publisher3.3.72 of 7See more

jupyterhub d4n 3.3.7

2 of the 7 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
google.golang.org/grpc@v1.65.0
1.79.3
registry.k8s.io/kube-scheduler:v1.28.1146cf7475c8da
google.golang.org/grpc@v1.56.3
1.79.3

Open the chart page →

16,683
miniod4nVerified publisher5.2.12 of 2See more

minio d4n 5.2.1

2 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-04-29T09-56-05Zc574fac67f60
google.golang.org/grpc@v1.63.2
1.79.3
quay.io/minio/minio:RELEASE.2024-06-04T19-20-08Zc6b68f158628
google.golang.org/grpc@v1.63.2
1.79.3

Open the chart page →

2,659
cloudflareddamounVerified publisher3.3.01 of 1See more

cloudflared damoun 3.3.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2024.5.05d5f70a59d5e
google.golang.org/grpc@v1.63.0
1.79.3

Open the chart page →

1,313
grafana-agentdandydev-chartsVerified publisher0.19.21 of 1See more

grafana-agent dandydev-charts 0.19.2

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
grafana/agent:v0.20.0825c09373d27
google.golang.org/grpc@v1.41.0
1.79.3

Open the chart page →

3,246
dapr-agentsdapr-agents-devVerified publisher0.1.513 of 31See more

dapr-agents dapr-agents-dev 0.1.5

13 of the 31 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
grafana/grafana:12.3.39e1e77ade304
google.golang.org/grpc@v1.78.0
1.79.3
grafana/loki:3.6.5847c287ada0e
google.golang.org/grpc@v1.75.1
1.79.3
grafana/loki-canary:3.6.5fbb984bab741
google.golang.org/grpc@v1.75.1
1.79.3
grafana/tempo:2.9.065a578975943
google.golang.org/grpc@v1.75.0
1.79.3
otel/opentelemetry-collector-contrib:0.145.0a7343f018690
google.golang.org/grpc@v1.78.0
1.79.3
ghcr.io/dapr/injector:1.17.0-rc.37a2fd888ed5f
google.golang.org/grpc@v1.73.0
1.79.3
ghcr.io/dapr/operator:1.17.0-rc.3d5cc61cbe735
google.golang.org/grpc@v1.73.0
1.79.3
ghcr.io/dapr/placement:1.17.0-rc.3a237b43cd5c6
google.golang.org/grpc@v1.73.0
1.79.3
ghcr.io/dapr/scheduler:1.17.0-rc.36c62e01e736b
google.golang.org/grpc@v1.73.0
1.79.3
ghcr.io/dapr/sentry:1.17.0-rc.3bf79b03591e0
google.golang.org/grpc@v1.73.0
1.79.3
ghcr.io/kagent-dev/kagent/tools:0.0.13c8882543f693
google.golang.org/grpc@v1.76.0
1.79.3
ghcr.io/kagent-dev/kmcp/controller:0.2.283276357d448
google.golang.org/grpc@v1.65.0
1.79.3
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
google.golang.org/grpc@v1.75.1
1.79.3

Open the chart page →

22,355
dns-mesh-controllerdashdns2.0.81 of 2See more

dns-mesh-controller dashdns 2.0.8

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
emirozbir/dashdns-controller:v2.0.5d3a5c1063425
google.golang.org/grpc@v1.68.1
1.79.3

Open the chart page →

1,103
dasherdasher0.1.11 of 1See more

dasher dasher 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/flohansen/dasher-server:latest7cde8c3fa2d1
google.golang.org/grpc@v1.64.0
1.79.3

Open the chart page →

1,096
dask-gatewaydask2026.3.01 of 2See more

dask-gateway dask 2026.3.0

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
library/traefik:3.3.5104204dadedf
google.golang.org/grpc@v1.67.1
1.79.3

Open the chart page →

2,002
cloudwatch-agent-prometheusdasmeta0.2.21 of 1See more

cloudwatch-agent-prometheus dasmeta 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
google.golang.org/grpc@v1.28.0
1.79.3

Open the chart page →

2,985
spqr-routerdasmeta0.1.11 of 1See more

spqr-router dasmeta 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
pgsharding/spqr-router:nightly-2.8.3-1839-f66048d84734940216d3
google.golang.org/grpc@v1.77.0
1.79.3

Open the chart page →

686
adot-exporter-for-eks-on-ec2dasmeta-adot0.15.51 of 1See more

adot-exporter-for-eks-on-ec2 dasmeta-adot 0.15.5

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
amazon/aws-otel-collector:v0.27.0d8ab0eef5074
google.golang.org/grpc@v1.53.0
1.79.3

Open the chart page →

1,933
datadog-csi-driverdatadogVerified publisher0.17.01 of 2See more

datadog-csi-driver datadog 0.17.0

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.0.1e07f914c32f0
google.golang.org/grpc@v1.27.0
1.79.3

Open the chart page →

2,055
agent-helmdatasaker0.1.85 of 6See more

agent-helm datasaker 0.1.8

5 of the 6 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
datasaker/dsk-container-agent:latest08b52999f67b
google.golang.org/grpc@v1.57.0
1.79.3
datasaker/dsk-k8s-agent:latest2542ee73be51
google.golang.org/grpc@v1.50.1
1.79.3
datasaker/dsk-kube-state-agent:latestd6d2eb48589d
google.golang.org/grpc@v1.58.3
1.79.3
datasaker/dsk-node-agent:latest1b95913b6729
google.golang.org/grpc@v1.58.3
1.79.3
datasaker/dsk-process-agent:latest2f38720a637d
google.golang.org/grpc@v1.58.3
1.79.3

Open the chart page →

7,606
ambassador-agentdatawire1.0.221 of 1See more

ambassador-agent datawire 1.0.22

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ambassador/ambassador-agent:1.0.227a1ea0d934fb
google.golang.org/grpc@v1.59.0
1.79.3

Open the chart page →

964
ambassador-operatordatawire0.3.01 of 1See more

ambassador-operator datawire 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
datawire/ambassador-operator:v1.3.0f95ae710d75c
google.golang.org/grpc@v1.24.0
1.79.3

Open the chart page →

7,494
eg-edge-stackdatawire0.0.13 of 7See more

eg-edge-stack datawire 0.0.1

3 of the 7 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ambassador/aes-authsvc:v4.0.0-preview.12a4598b03a6a
google.golang.org/grpc@v1.56.2
1.79.3
ambassador/aes-eg-ext:v4.0.0-preview.1b7eb1be3345d
google.golang.org/grpc@v1.56.2
1.79.3
envoyproxy/gateway:v0.5.02a9f99d28567
google.golang.org/grpc@v1.56.2
1.79.3

Open the chart page →

15,861
defactopsdefactops1.0.91 of 2See more

defactops defactops 1.0.9

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
defactops/defactops-ui:1.0.16825cdf9ba706
google.golang.org/grpc@v1.62.1
1.79.3

Open the chart page →

4,538
cortex-gatewaydeliveryheroVerified publisher0.1.91 of 1See more

cortex-gateway deliveryhero 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
goelankit/cortex-gateway:v1.1.00d9a82dcf026
google.golang.org/grpc@v1.45.0
1.79.3

Open the chart page →

2,241
k8s-cloudwatch-adapterdeliveryheroVerified publisher0.2.21 of 1See more

k8s-cloudwatch-adapter deliveryhero 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
google.golang.org/grpc@v1.23.1
1.79.3

Open the chart page →

2,475
kyvernodevopstalesVerified publisher2.5.12 of 2See more

kyverno devopstales 2.5.1

2 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/kyverno/kyverno:v1.7.19c73f1841ebc
google.golang.org/grpc@v1.46.0
1.79.3
ghcr.io/kyverno/kyvernopre:v1.7.1185d2eebc60c
google.golang.org/grpc@v1.46.0
1.79.3

Open the chart page →

4,735
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
google.golang.org/grpc@v1.64.0
1.79.3

Open the chart page →

9,685
argocddevtron1.8.12 of 3See more

argocd devtron 1.8.1

2 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
google.golang.org/grpc@v1.15.0
1.79.3
quay.io/dexidp/dex:v2.25.07bcf286807b8
google.golang.org/grpc@v1.26.0
1.79.3

Open the chart page →

10,484
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
google.golang.org/grpc@v1.43.0
1.79.3

Open the chart page →

13,011
argo-workflowdevtron0.1.61 of 1See more

argo-workflow devtron 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
google.golang.org/grpc@v1.53.0
1.79.3

Open the chart page →

1,587
devtron-enterprisedevtron48.0.07 of 28See more

devtron-enterprise devtron 48.0.0

7 of the 28 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
google.golang.org/grpc@v1.36.1
1.79.3
quay.io/devtron/dex:v2.30.22e4c14d1b444
google.golang.org/grpc@v1.34.0
1.79.3
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
google.golang.org/grpc@v1.57.1
1.79.3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
google.golang.org/grpc@v1.27.1
1.79.3
quay.io/devtron/kubectl:latest2ad610626658
google.golang.org/grpc@v1.47.0
1.79.3
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
google.golang.org/grpc@v1.51.0
1.79.3
quay.io/devtron/silver-surfer:e3b9a2f6-1191-387899640e2dc4316
google.golang.org/grpc@v1.67.1
1.79.3

Open the chart page →

68,695
devtron-in-clustercddevtron0.10.22 of 2See more

devtron-in-clustercd devtron 0.10.2

2 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
google.golang.org/grpc@v1.33.1
1.79.3
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
google.golang.org/grpc@v1.53.0
1.79.3

Open the chart page →

5,055
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
google.golang.org/grpc@v1.20.1
1.79.3

Open the chart page →

11,959

Container images carrying it

1,984 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
google.golang.org/grpc@v1.56.3
1.79.3
1
public.ecr.aws/groundcovercom/temporalio/server:1.29.6-mini-20260702-170f191d0a80e
google.golang.org/grpc@v1.56.3
1.79.3
1
public.ecr.aws/k4y9r6y5/kratos:v25.4.0e8014c6c58b6
google.golang.org/grpc@v1.74.2
1.79.3
1
public.ecr.aws/karpenter/controller:v0.19.3f0e5ab60b2df
google.golang.org/grpc@v1.47.0
1.79.3
1
public.ecr.aws/n8h5y2v5/rad-security/rad-sbom:v1.1.34e97e0e7a2088
google.golang.org/grpc@v1.65.0
1.79.3
1
public.ecr.aws/neuron/neuron-device-plugin:2.23.30.075a6d5ce3bd3
google.golang.org/grpc@v1.60.1
1.79.3
1
public.ecr.aws/optimizely/webhook-broker:v0.2.3cfc92cc2de65
google.golang.org/grpc@v1.65.0
1.79.3
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
google.golang.org/grpc@v1.62.1
1.79.3
1
public.ecr.aws/r3m4q3r9/pleco:0.24.0651739583336
google.golang.org/grpc@v1.58.3
1.79.3
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
google.golang.org/grpc@v1.44.0
1.79.3
1
public.ecr.aws/truefoundrycloud/eks/eks-node-monitoring-agent:v1.5.1-eksbuild.1988c8e1a273a
google.golang.org/grpc@v1.77.0
1.79.3
1
public.ecr.aws/v0r6c2e2/minio:latest08c90bd040bf
google.golang.org/grpc@v1.69.2
1.79.3
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
google.golang.org/grpc@v1.60.1
1.79.3
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
google.golang.org/grpc@v1.45.0
1.79.3
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
google.golang.org/grpc@v1.71.0
1.79.3
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
google.golang.org/grpc@v1.68.1
1.79.3
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
google.golang.org/grpc@v1.58.3
1.79.3
1
quay.io/argoproj/argocli:v3.7.11577fc18f86ad
google.golang.org/grpc@v1.72.2
1.79.3
1
quay.io/argoproj/argocli:v3.7.16efd1cb89dc1
google.golang.org/grpc@v1.72.2
1.79.3
1
quay.io/argoproj/argocli:v3.5.591b9825f09a8
google.golang.org/grpc@v1.59.0
1.79.3
1
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
google.golang.org/grpc@v1.78.0
1.79.3
1
quay.io/argoprojlabs/argocd-rbac-operator:v0.2.451dded00137a
google.golang.org/grpc@v1.71.0
1.79.3
1
quay.io/argoproj/workflow-controller:v3.7.166388d1b2f08
google.golang.org/grpc@v1.72.2
1.79.3
1
quay.io/argoproj/workflow-controller:v3.5.56ab0da144235
google.golang.org/grpc@v1.59.0
1.79.3
1
quay.io/argoproj/workflow-controller:v3.7.11c46aa0ded8ed
google.golang.org/grpc@v1.72.2
1.79.3
1
quay.io/backube/volsync:0.16.00d03a6aad575
google.golang.org/grpc@v1.74.2
1.79.3
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
google.golang.org/grpc@v1.45.0
1.79.3
1
quay.io/brancz/kube-rbac-proxy:v0.15.02c7b120590cb
google.golang.org/grpc@v1.47.0
1.79.3
1
quay.io/brancz/kube-rbac-proxy:v0.16.02c8f8c357ff8
google.golang.org/grpc@v1.58.3
1.79.3
1
quay.io/brancz/kube-rbac-proxy:v0.18.0754ab2a723c8
google.golang.org/grpc@v1.64.0
1.79.3
1
quay.io/brancz/kube-rbac-proxy:v0.20.1f5fbfec6a2b2
google.golang.org/grpc@v1.72.1
1.79.3
1
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
google.golang.org/grpc@v1.42.0
1.79.3
1
quay.io/cephcsi/ceph-csi-operator:v0.5.014fe2f1bffc3
google.golang.org/grpc@v1.72.2
1.79.3
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
google.golang.org/grpc@v1.59.0
1.79.3
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
google.golang.org/grpc@v1.74.2
1.79.3
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
google.golang.org/grpc@v1.79.2
1.79.3
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
google.golang.org/grpc@v1.79.2
1.79.3
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
google.golang.org/grpc@v1.75.0
1.79.3
1
quay.io/cilium/hubble-relay:v1.18.26079308ee15e
google.golang.org/grpc@v1.74.2
1.79.3
1
quay.io/cilium/hubble-ui-backend:v0.13.3db1454e45dc3
google.golang.org/grpc@v1.74.2
1.79.3
1
quay.io/cilium/operator-generic:v1.17.14773886ec9337
google.golang.org/grpc@v1.72.1
1.79.3
1
quay.io/cilium/operator-generic:v1.15.1819c7281f5a4
google.golang.org/grpc@v1.59.0
1.79.3
1
quay.io/cilium/operator-generic:v1.18.2cb4e4ffc5789
google.golang.org/grpc@v1.74.2
1.79.3
1
quay.io/cilium/tetragon:v1.1.096fac2482898
google.golang.org/grpc@v1.63.2
1.79.3
1
quay.io/cilium/tetragon-ci:b6f3056a3f6cf05e366a3e07348f7c0b6265a60f5efd991d218b
google.golang.org/grpc@v1.48.0
1.79.3
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
google.golang.org/grpc@v1.29.0
1.79.3
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
google.golang.org/grpc@v1.27.1
1.79.3
1
quay.io/coreos/etcd:v3.5.11842975891182
google.golang.org/grpc@v1.59.0
1.79.3
1
quay.io/coreos/etcd:v3.5.16d967d98a12dc
google.golang.org/grpc@v1.59.0
1.79.3
1
quay.io/cortexproject/cortex:v1.9.05d1c2cf4c538
google.golang.org/grpc@v1.36.0
1.79.3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.