StackRadar

CVE-2026-33186

Critical

Advisory

Published 18 Mar 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,639
of 17,790 indexed, latest versions
Container images
1,988
deployed by those charts
Fix available
1 of 1
affected package

gRPC-Go has an authorization bypass via missing leading slash in :path

Carried by container images the latest versions of 1,639 of 17,790 indexed charts deploy, on 1,988 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+107 more1.79.31,988
OSV records
GHSA-p77j-4mvh-x3m3
Also known as
GO-2026-4762

Charts affected

1,639 by stars
ChartLatestAffected imagesRadar Score
gloo-meshsolo-gloo-mesh1.1.21 of 1See more

gloo-mesh solo-gloo-mesh 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
google.golang.org/grpc@v1.37.0
1.79.3

Open the chart page →

3,259
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
google.golang.org/grpc@v1.43.0
1.79.3

Open the chart page →

30,759
datadogspartan0.1.01 of 1See more

datadog spartan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
google.golang.org/grpc@v1.67.1
1.79.3

Open the chart page →

3,272
spinnakerspinnakerVerified publisher2.2.132 of 4See more

spinnaker spinnaker 2.2.13

2 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
google.golang.org/grpc@v1.26.0
1.79.3
minio/minio:RELEASE.2020-01-03T19-12-21Zf00aa6ef2b72
google.golang.org/grpc@v1.22.0
1.79.3

Open the chart page →

6,836
ambassador-manifestssqream-chartsVerified publisher0.6.31 of 1See more

ambassador-manifests sqream-charts 0.6.3

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
datawire/aes:3.11.195ec30b3c732
google.golang.org/grpc@v1.60.1
1.79.3

Open the chart page →

2,415
servicexssl-hep1.8.51 of 16See more

servicex ssl-hep 1.8.5

1 of the 16 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2022.12.12-debian-11-r90f7c8ac484ac
google.golang.org/grpc@v1.50.1
1.79.3

Open the chart page →

65,130
retail-store-sample-catalog-chartstacksimplifyVerified publisher2.0.01 of 1See more

retail-store-sample-catalog-chart stacksimplify 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
public.ecr.aws/aws-containers/retail-store-sample-catalog:1.3.0b654b266fa32
google.golang.org/grpc@v1.73.0
1.79.3

Open the chart page →

759
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
google.golang.org/grpc@v1.35.0
1.79.3

Open the chart page →

28,165
external-secretsstakaterVerified publisher0.3.12-40dbdfc1 of 1See more

external-secrets stakater 0.3.12-40dbdfc

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v0.3.1156a1ea4490ba
google.golang.org/grpc@v1.27.0
1.79.3

Open the chart page →

2,081
vaultstakaterVerified publisher0.8.41 of 2See more

vault stakater 0.8.4

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.4dfc3500beb0e
google.golang.org/grpc@v1.29.1
1.79.3

Open the chart page →

5,864
workshop-operatorstakaterVerified publisher0.0.381 of 2See more

workshop-operator stakater 0.0.38

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
stakater/workshop-operator:v0.0.3897bf456cc97c
google.golang.org/grpc@v1.29.1
1.79.3

Open the chart page →

6,671
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
prom/prometheus:v2.52.05c435642ca4d
google.golang.org/grpc@v1.63.2
1.79.3

Open the chart page →

18,426
erigonstakewise2.61.21 of 3See more

erigon stakewise 2.61.2

1 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
erigontech/erigon:v2.61.288706754b627
google.golang.org/grpc@v1.63.2
1.79.3

Open the chart page →

2,854
ipfsstakewise2.2.01 of 2See more

ipfs stakewise 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ipfs/kubo:v0.33.21a30f5ed8579
google.golang.org/grpc@v1.67.1
1.79.3

Open the chart page →

1,239
v3-backendstakewise3.6.01 of 5See more

v3-backend stakewise 3.6.0

1 of the 5 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ipfs/kubo:v0.33.21a30f5ed8579
google.golang.org/grpc@v1.67.1
1.79.3

Open the chart page →

1,239
cost-analyzerstatcan1.82.24 of 9See more

cost-analyzer statcan 1.82.2

4 of the 9 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
grafana/grafana:7.5.609bb407e26ab
google.golang.org/grpc@v1.36.0
1.79.3
prom/prometheus:v2.22.2f7ffebdd428b
google.golang.org/grpc@v1.32.0
1.79.3
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
google.golang.org/grpc@v1.27.1
1.79.3
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
google.golang.org/grpc@v1.19.1
1.79.3

Open the chart page →

16,508
prometheus-operatorstatcan0.2.22 of 7See more

prometheus-operator statcan 0.2.2

2 of the 7 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
google.golang.org/grpc@v1.27.1
1.79.3
squareup/ghostunnel:v1.5.270f4cf270425
google.golang.org/grpc@v1.24.0
1.79.3

Open the chart page →

12,237
sn-platform-slimstreamnative1.11.442 of 6See more

sn-platform-slim streamnative 1.11.44

2 of the 6 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
google.golang.org/grpc@v1.45.0
1.79.3
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
google.golang.org/grpc@v1.53.0
1.79.3

Open the chart page →

10,182
supabase-operatorstrrl-helm2026.7.251 of 1See more

supabase-operator strrl-helm 2026.7.25

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/strrl/supabase-operator:2026.7.2587d083ab8980
google.golang.org/grpc@v1.75.0
1.79.3

Open the chart page →

223
wonder-mesh-netstrrl-helm2026.629.02 of 3See more

wonder-mesh-net strrl-helm 2026.629.0

2 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
headscale/headscale:0.27.1cd37b3001857
google.golang.org/grpc@v1.75.1
1.79.3
ghcr.io/strrl/wonder-mesh-net:v2026.629.0625b140372fd
google.golang.org/grpc@v1.75.1
1.79.3

Open the chart page →

5,017
stunner-prometheusstunner0.2.11 of 4See more

stunner-prometheus stunner 0.2.1

1 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.18.1e6a323504999
google.golang.org/grpc@v1.65.0
1.79.3

Open the chart page →

3,026
group-challengesubshell-labVerified publisher2.1.01 of 2See more

group-challenge subshell-lab 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.29.17d12c7c8fc66
google.golang.org/grpc@v1.73.0
1.79.3

Open the chart page →

2,579
orchestratorsubstraVerified publisher8.8.01 of 3See more

orchestrator substra 8.8.0

1 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
google.golang.org/grpc@v1.62.1
1.79.3

Open the chart page →

3,003
lingosubstratusVerified publisher0.2.11 of 1See more

lingo substratus 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/substratusai/lingo:v0.2.12c807cd41ed4
google.golang.org/grpc@v1.62.1
1.79.3

Open the chart page →

1,474
scaleway-webhooksudaVerified publisher0.0.21 of 1See more

scaleway-webhook suda 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
google.golang.org/grpc@v1.27.0
1.79.3

Open the chart page →

2,347
nocodbsudermanjr0.1.01 of 1See more

nocodb sudermanjr 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
nocodb/nocodb:0.84.15f9b799933aa8
google.golang.org/grpc@v1.40.1
1.79.3

Open the chart page →

2,063
qbittorrentsudo-kraken-qbittorrentVerified publisher5.1.51 of 2See more

qbittorrent sudo-kraken-qbittorrent 5.1.5

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:36bfc606bba2064de6ede0ff2764cbb52edff70dba6f0b4cf6c8
google.golang.org/grpc@v1.56.3
1.79.3

Open the chart page →

2,130
supabase-operatorsupabse0.1.31 of 1See more

supabase-operator supabse 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/supabase-community/supabase-operator:v0.1.3253a6dcbf4f0
google.golang.org/grpc@v1.72.2
1.79.3

Open the chart page →

223
nfs-provisionersupporttools0.11.01 of 1See more

nfs-provisioner supporttools 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
openebs/provisioner-nfs:0.11.04f41dd782761
google.golang.org/grpc@v1.55.0
1.79.3

Open the chart page →

2,673
surogate-hubsurogate-hubVerified publisher2.1.51 of 1See more

surogate-hub surogate-hub 2.1.5

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
google.golang.org/grpc@v1.75.0
1.79.3

Open the chart page →

3,372
grafanasvtech-public-helm-charts1.0.01 of 2See more

grafana svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
google.golang.org/grpc@v1.45.0
1.79.3

Open the chart page →

10,949
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
google.golang.org/grpc@v1.53.0
1.79.3

Open the chart page →

18,828
switchbladeswitchblade0.0.191 of 1See more

switchblade switchblade 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
public.ecr.aws/boundless-software/switchblade:release-v0.0.19-lcm01d8413d5075
google.golang.org/grpc@v1.60.1
1.79.3

Open the chart page →

1,360
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
google.golang.org/grpc@v1.68.1
1.79.3

Open the chart page →

8,251
agentssynapse0.1.304 of 9See more

agents synapse 0.1.30

4 of the 9 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.42.07d32a4eddec7
google.golang.org/grpc@v1.52.1
1.79.3
ghcr.io/synapsecns/sanguine/agents:6e3887fc2a05aff0d159453cedbfbe5024b910bf81a9ebc899a4
google.golang.org/grpc@v1.53.0
1.79.3
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
google.golang.org/grpc@v1.64.0
1.79.3
ghcr.io/synapsecns/sanguine/scribe:6e3887fc2a05aff0d159453cedbfbe5024b910bf5e0a3dfa9f96
google.golang.org/grpc@v1.53.0
1.79.3

Open the chart page →

7,244
cctpsynapse0.3.01 of 4See more

cctp synapse 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/cctp-relayer:b5a1dd5288f1a18eb05994e130d626fed45a56fc2f1408c94168
google.golang.org/grpc@v1.53.0
1.79.3

Open the chart page →

1,815
explorersynapse0.2.162 of 6See more

explorer synapse 0.2.16

2 of the 6 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/explorer:latest00131e3d1eaf
google.golang.org/grpc@v1.64.0
1.79.3
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
google.golang.org/grpc@v1.64.0
1.79.3

Open the chart page →

8,556
omnirpcsynapse0.2.921 of 2See more

omnirpc synapse 0.2.92

1 of the 2 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
google.golang.org/grpc@v1.64.0
1.79.3

Open the chart page →

1,121
promexportersynapse0.1.11 of 1See more

promexporter synapse 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/promexporter:4a9aad096c2bd1160e56e5472ddac77fa0cde2e9416c1c5aeb86
google.golang.org/grpc@v1.55.0
1.79.3

Open the chart page →

1,704
screenersynapse0.2.51 of 4See more

screener synapse 0.2.5

1 of the 4 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/screener-api:latestb3de2050460a
google.golang.org/grpc@v1.64.0
1.79.3

Open the chart page →

1,091
scribesynapse0.2.162 of 7See more

scribe synapse 0.2.16

2 of the 7 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
google.golang.org/grpc@v1.64.0
1.79.3
ghcr.io/synapsecns/sanguine/scribe:latest81edba952403
google.golang.org/grpc@v1.64.0
1.79.3

Open the chart page →

2,680
sinnersynapse0.1.01 of 6See more

sinner synapse 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/sinner:latest3e98a98f6074
google.golang.org/grpc@v1.59.0
1.79.3

Open the chart page →

1,955
ccm-hcloudsyself1.0.111 of 1See more

ccm-hcloud syself 1.0.11

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
hetznercloud/hcloud-cloud-controller-manager:v1.13.0ed5ee5f83973
google.golang.org/grpc@v1.40.0
1.79.3

Open the chart page →

1,706
ccm-hetznersyself2.0.71 of 1See more

ccm-hetzner syself 2.0.7

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/syself/hetzner-cloud-controller-manager:v2.0.77d4a5e29c387
google.golang.org/grpc@v1.68.1
1.79.3

Open the chart page →

702
csi-hcloudsyself1.3.15 of 6See more

csi-hcloud syself 1.3.1

5 of the 6 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.9.05aaefc24f315
google.golang.org/grpc@v1.72.1
1.79.3
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.14.05244abbe87e0
google.golang.org/grpc@v1.72.1
1.79.3
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
google.golang.org/grpc@v1.72.1
1.79.3
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
google.golang.org/grpc@v1.69.2
1.79.3
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
google.golang.org/grpc@v1.72.0
1.79.3

Open the chart page →

2,460
hcloud-csisyself0.1.11 of 6See more

hcloud-csi syself 0.1.1

1 of the 6 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
hetznercloud/hcloud-csi-driver:1.6.01475d525f9a4
google.golang.org/grpc@v1.33.0
1.79.3

Open the chart page →

2,910
topolvmsyself1.3.01 of 1See more

topolvm syself 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/topolvm/topolvm-with-sidecar:0.35.0b354978c440d
google.golang.org/grpc@v1.64.0
1.79.3

Open the chart page →

3,570
lokit3n1.0.01 of 1See more

loki t3n 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
grafana/loki:1.5.0922b3f412fdd
google.golang.org/grpc@v1.26.0
1.79.3

Open the chart page →

2,869
promtailt3n1.0.01 of 1See more

promtail t3n 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
grafana/promtail:1.5.046e88d390cd6
google.golang.org/grpc@v1.26.0
1.79.3

Open the chart page →

2,821
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33186.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
google.golang.org/grpc@v1.27.0
1.79.3

Open the chart page →

7,480

Container images carrying it

1,988 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/jetstack/cert-manager-webhook:v1.11.06730d96fc382
google.golang.org/grpc@v1.49.0
1.79.3
2
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
google.golang.org/grpc@v1.60.1
1.79.3
2
quay.io/jetstack/cert-manager-webhook:v1.15.3fdcb9ac4963f
google.golang.org/grpc@v1.64.1
1.79.3
2
quay.io/kubevirt/kubevirt-cloud-controller-manager:v0.6.037ad4c475941
google.golang.org/grpc@v1.78.0
1.79.3
2
quay.io/metallb/controller:v0.16.1f51ab515de9c
google.golang.org/grpc@v1.72.1
1.79.3
2
quay.io/metallb/frr-k8s:v0.0.251cb06fb2d553
google.golang.org/grpc@v1.68.1
1.79.3
2
quay.io/metallb/speaker:v0.16.116561e96531e
google.golang.org/grpc@v1.72.1
1.79.3
2
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
google.golang.org/grpc@v1.58.0
1.79.3
2
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
google.golang.org/grpc@v1.50.1
1.79.3
2
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
google.golang.org/grpc@v1.58.0
1.79.3
2
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
google.golang.org/grpc@v1.54.0
1.79.3
2
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
google.golang.org/grpc@v1.52.3
1.79.3
2
quay.io/oauth2-proxy/oauth2-proxy:v7.3.08c21390be87d
google.golang.org/grpc@v1.27.0
1.79.3
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
google.golang.org/grpc@v1.27.1
1.79.3
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
google.golang.org/grpc@v1.35.0
1.79.3
2
quay.io/prometheus/blackbox-exporter:v0.24.03af31f8bd1ad
google.golang.org/grpc@v1.55.0
1.79.3
2
quay.io/prometheus/prometheus:v2.53.0075b1ba2c4eb
google.golang.org/grpc@v1.64.0
1.79.3
2
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
google.golang.org/grpc@v1.69.0
1.79.3
2
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
google.golang.org/grpc@v1.32.0
1.79.3
2
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
google.golang.org/grpc@v1.56.2
1.79.3
2
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
google.golang.org/grpc@v1.46.2
1.79.3
2
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
google.golang.org/grpc@v1.65.0
1.79.3
2
quay.io/thanos/thanos:v0.39.21d022ef4b8ef
google.golang.org/grpc@v1.63.2
1.79.3
2
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
google.golang.org/grpc@v1.65.0
1.79.3
2
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
google.golang.org/grpc@v1.65.0
1.79.3
2
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
google.golang.org/grpc@v1.72.1
1.79.3
2
registry.k8s.io/etcd:3.5.6-0dd75ec974b0a
google.golang.org/grpc@v1.41.0
1.79.3
2
registry.k8s.io/kube-apiserver:v1.26.199e1ed9fbc8a
google.golang.org/grpc@v1.49.0
1.79.3
2
registry.k8s.io/kube-controller-manager:v1.26.140adecbe3a40
google.golang.org/grpc@v1.49.0
1.79.3
2
registry.k8s.io/kube-scheduler:v1.30.1474a5cf9cfa9f
google.golang.org/grpc@v1.58.3
1.79.3
2
registry.k8s.io/metrics-server/metrics-server:v0.8.089258156d0e9
google.golang.org/grpc@v1.72.0
1.79.3
2
registry.k8s.io/sig-storage/csi-attacher:v4.9.05aaefc24f315
google.golang.org/grpc@v1.72.1
1.79.3
2
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
google.golang.org/grpc@v1.40.0
1.79.3
2
registry.k8s.io/sig-storage/csi-attacher:v4.0.09a685020911e
google.golang.org/grpc@v1.47.0
1.79.3
2
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
google.golang.org/grpc@v1.69.0
1.79.3
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.10103eee7c35e
google.golang.org/grpc@v1.40.0
1.79.3
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
google.golang.org/grpc@v1.40.0
1.79.3
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.6.0f1c25991bac2
google.golang.org/grpc@v1.50.1
1.79.3
2
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
google.golang.org/grpc@v1.40.0
1.79.3
2
registry.k8s.io/sig-storage/csi-provisioner:v6.1.1d992c36d4ddd
google.golang.org/grpc@v1.75.1
1.79.3
2
registry.k8s.io/sig-storage/csi-provisioner:v6.1.0e5900dc98b0d
google.golang.org/grpc@v1.75.1
1.79.3
2
registry.k8s.io/sig-storage/csi-resizer:v1.5.08f7520bd957e
google.golang.org/grpc@v1.40.0
1.79.3
2
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
google.golang.org/grpc@v1.40.0
1.79.3
2
registry.k8s.io/sig-storage/csi-resizer:v1.9.0f1f352df9787
google.golang.org/grpc@v1.54.0
1.79.3
2
registry.k8s.io/sig-storage/csi-snapshotter:v6.0.1ad16874e2140
google.golang.org/grpc@v1.40.0
1.79.3
2
registry.k8s.io/sig-storage/csi-snapshotter:v8.3.0bc7be893ecc3
google.golang.org/grpc@v1.69.0
1.79.3
2
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.0dd788d79cf4c
google.golang.org/grpc@v1.68.0
1.79.3
2
registry.k8s.io/sig-storage/livenessprobe:v2.15.02c5f9dc4ea5a
google.golang.org/grpc@v1.69.0
1.79.3
2
registry.k8s.io/sig-storage/livenessprobe:v2.17.09b75b9ade162
google.golang.org/grpc@v1.72.1
1.79.3
2
registry.k8s.io/sig-storage/livenessprobe:v2.8.0cacee2b5c36d
google.golang.org/grpc@v1.48.0
1.79.3
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.