StackRadar

CVE-2026-33814

Unscored

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,155
of 17,813 indexed, latest versions
Container images
4,778
deployed by those charts
Fix available
2 of 2
affected packages

Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net

Carried by container images the latest versions of 4,155 of 17,813 indexed charts deploy, on 4,778 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+181 more1.25.104,618
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+218 more0.53.03,640
OSV records
GO-2026-4918
Also known as
BIT-golang-2026-33814

Charts affected

4,155 by stars
ChartLatestAffected imagesRadar Score
volcanovolcano-sh1.15.23 of 3See more

volcano volcano-sh 1.15.2

3 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
volcanosh/vc-controller-manager:v1.15.26a6bc2560d51
stdlib@go1.25.0
1.25.10
volcanosh/vc-scheduler:v1.15.2afab36286a17
stdlib@go1.25.0
1.25.10
volcanosh/vc-webhook-manager:v1.15.22fff65aad011
golang.org/x/net@v0.47.0
stdlib@go1.25.0
0.53.0
1.25.10

Open the chart page →

1,542
postgresappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,699
voteappvoting-app-helm-charts-repoVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

8,394
postgresappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,699
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

8,394
vpa-managervpa-managerVerified publisher0.4.91 of 1See more

vpa-manager vpa-manager 0.4.9

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/jcluppnow/vpa-manager:0.6.4e459d2fba277
golang.org/x/net@v0.27.0
stdlib@go1.22.7
0.53.0
1.25.10

Open the chart page →

491
vulcanvulcan0.2.21 of 2See more

vulcan vulcan 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
mitre/vulcan:latest2bc4dfb8150f
stdlib@go1.25.5
1.25.10

Open the chart page →

1,550
cert-manager-webhook-vultrvultrVerified publisher1.0.01 of 1See more

cert-manager-webhook-vultr vultr 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.16.3
0.53.0
1.25.10

Open the chart page →

2,508
vultr-csivultrVerified publisher2.0.01 of 4See more

vultr-csi vultr 2.0.0

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
vultr/vultr-csi:v0.3.041d26735d437
golang.org/x/net@v0.0.0-20210917221730-978cfadd31cf
stdlib@go1.16.8
0.53.0
1.25.10

Open the chart page →

2,354
websitewaldo-visionVerified publisher0.33.01 of 2See more

website waldo-vision 0.33.0

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
stdlib@go1.20.2
1.25.10

Open the chart page →

3,480
aih-scannerwallarmVerified publisher2.7.112 of 2See more

aih-scanner wallarm 2.7.11

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wallarm/aih-scanner:2.7.11f1cb26db1f5b
golang.org/x/net@v0.51.0
stdlib@go1.26.2
0.53.0
1.25.10
wallarm/aih-webhook:2.7.116363a9cd2ad8
stdlib@go1.26.2
1.25.10

Open the chart page →

4,088
gateway-control-planewallarmVerified publisher0.2.02 of 2See more

gateway-control-plane wallarm 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
timescale/timescaledb:latest-pg17bc8527e62f70
stdlib@go1.26.2
1.25.10
wallarm/gateway-control-plane:0.2.0a321bc974a19
stdlib@go1.24.13
1.25.10

Open the chart page →

1,456
kongwallarmVerified publisher4.6.33 of 7See more

kong wallarm 4.6.3

3 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wallarm/ingress-python:4.6.0-15cb2ae08b40f
stdlib@go1.18.2
1.25.10
wallarm/ingress-ruby:4.6.0-1aecdb35c4def
stdlib@go1.18.3
1.25.10
wallarm/kong-kubernetes-ingress-controller:2.8b55ff6cecbd5
golang.org/x/net@v0.4.0
stdlib@go1.19.4
0.53.0
1.25.10

Open the chart page →

74,867
kong-previewwallarmVerified publisher4.2.32 of 5See more

kong-preview wallarm 4.2.3

2 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
kong/kubernetes-ingress-controller:2.1.160e4102ab2da
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.17.5
0.53.0
1.25.10
wallarm/ingress-ruby:4.2.1-195ea2632326c
stdlib@go1.18.3
1.25.10

Open the chart page →

2,907
wallarm-ingress-rcwallarmVerified publisher4.8.42 of 2See more

wallarm-ingress-rc wallarm 4.8.4

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
golang.org/x/net@v0.10.0
stdlib@go1.20.5
0.53.0
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
golang.org/x/net@v0.7.0
stdlib@go1.20.1
0.53.0
1.25.10

Open the chart page →

2,635
wallarm-node-nextwallarmVerified publisher0.5.32 of 2See more

wallarm-node-next wallarm 0.5.3

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wallarm/node-helpers:5.0.2-1097cadc42336
golang.org/x/net@v0.26.0
stdlib@go1.22.7
0.53.0
1.25.10
wallarm/node-next:0.5.24314f3d2b918
golang.org/x/net@v0.28.0
stdlib@go1.22.7
0.53.0
1.25.10

Open the chart page →

2,413
wallarm-oobwallarmVerified publisher0.23.03 of 3See more

wallarm-oob wallarm 0.23.0

3 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wallarm/ebpf-agent:0.11.0-rc0c8920e60c726
golang.org/x/net@v0.22.0
stdlib@go1.22.1
0.53.0
1.25.10
wallarm/node-helpers:6.10.1aecd88b24c51
golang.org/x/net@v0.48.0
stdlib@go1.25.7
0.53.0
1.25.10
wallarm/node-native-processing:0.23.07db2da8fce0b
golang.org/x/net@v0.50.0
stdlib@go1.26.0
0.53.0
1.25.10

Open the chart page →

2,842
pageswalter1.0.01 of 3See more

pages walter 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,285
consulwarjiang1.3.02 of 2See more

consul warjiang 1.3.0

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
golang.org/x/net@v0.17.0
stdlib@go1.20.10
0.53.0
1.25.10
hashicorp/consul-k8s-control-plane:1.3.00e4452f0f265
golang.org/x/net@v0.17.0
stdlib@go1.20.10
0.53.0
1.25.10

Open the chart page →

4,102
eth-validatorwateim1.4.51 of 3See more

eth-validator wateim 1.4.5

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wateim/lighthouse-launch:latest2520149ee574
golang.org/x/net@v0.33.0
stdlib@go1.23.8
0.53.0
1.25.10

Open the chart page →

5,142
prometheus-storage-adapterwavefront0.1.61 of 2See more

prometheus-storage-adapter wavefront 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wavefronthq/prometheus-storage-adapter:latestded77b38c7c6
golang.org/x/net@v0.17.0
stdlib@go1.18
0.53.0
1.25.10

Open the chart page →

1,285
wavefront-hpa-adapterwavefront0.2.101 of 1See more

wavefront-hpa-adapter wavefront 0.2.10

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wavefronthq/wavefront-hpa-adapter:0.9.12af5fef9a4768
golang.org/x/net@v0.17.0
stdlib@go1.18
0.53.0
1.25.10

Open the chart page →

1,692
wazuhwazuh-helm-eksVerified publisher1.2.101 of 6See more

wazuh wazuh-helm-eks 1.2.10

1 of the 6 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.14.45a065930682d
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.14.12
0.53.0
1.25.10

Open the chart page →

5,623
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.14.12
0.53.0
1.25.10

Open the chart page →

11,209
anubiswbstack0.1.01 of 1See more

anubis wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/techarohq/anubis:v1.21.3940ac71ef6fc
golang.org/x/net@v0.42.0
stdlib@go1.24.5
0.53.0
1.25.10

Open the chart page →

481
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
golang.org/x/net@v0.5.0
stdlib@go1.20.1
0.53.0
1.25.10

Open the chart page →

6,302
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
stdlib@go1.19.12
1.25.10

Open the chart page →

9,456
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.25.10

Open the chart page →

9,329
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.25.10

Open the chart page →

9,329
azure-janitorwebdevopsVerified publisher1.0.131 of 1See more

azure-janitor webdevops 1.0.13

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
webdevops/azure-janitor:24.9.02446baee7b69
golang.org/x/net@v0.29.0
stdlib@go1.23.1
0.53.0
1.25.10

Open the chart page →

802
azure-keyvault-exporterwebdevopsVerified publisher1.0.121 of 1See more

azure-keyvault-exporter webdevops 1.0.12

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
webdevops/azure-keyvault-exporter:24.9.1f333704ecd60
golang.org/x/net@v0.29.0
stdlib@go1.23.1
0.53.0
1.25.10

Open the chart page →

801
azure-loganalytics-exporterwebdevopsVerified publisher1.0.131 of 1See more

azure-loganalytics-exporter webdevops 1.0.13

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
webdevops/azure-loganalytics-exporter:25.12.0051845d06d85
golang.org/x/net@v0.48.0
stdlib@go1.25.5
0.53.0
1.25.10

Open the chart page →

509
azure-resourcegraph-exporterwebdevopsVerified publisher1.1.51 of 1See more

azure-resourcegraph-exporter webdevops 1.1.5

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
webdevops/azure-resourcegraph-exporter:24.9.0381136dda026
golang.org/x/net@v0.29.0
stdlib@go1.23.1
0.53.0
1.25.10

Open the chart page →

786
azure-resourcemanager-exporterwebdevopsVerified publisher1.3.61 of 1See more

azure-resourcemanager-exporter webdevops 1.3.6

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
webdevops/azure-resourcemanager-exporter:26.1.0d3e1842ad419
golang.org/x/net@v0.48.0
stdlib@go1.25.5
0.53.0
1.25.10

Open the chart page →

536
azure-scheduledevents-managerwebdevopsVerified publisher1.0.171 of 1See more

azure-scheduledevents-manager webdevops 1.0.17

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
webdevops/azure-scheduledevents-manager:24.9.0-kubernetes7acd46a8a972
golang.org/x/net@v0.26.0
stdlib@go1.22.5
0.53.0
1.25.10

Open the chart page →

1,124
kube-pool-managerwebdevopsVerified publisher1.0.161 of 1See more

kube-pool-manager webdevops 1.0.16

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
webdevops/kube-pool-manager:24.9.04fad7e14ad67
golang.org/x/net@v0.29.0
stdlib@go1.23.1
0.53.0
1.25.10

Open the chart page →

499
pagerduty-exporterwebdevopsVerified publisher1.1.81 of 1See more

pagerduty-exporter webdevops 1.1.8

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
webdevops/pagerduty-exporter:25.12.183b95faf10a0
golang.org/x/net@v0.48.0
stdlib@go1.25.5
0.53.0
1.25.10

Open the chart page →

509
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mariadb:10ce66c7be32a0
stdlib@go1.24.6
1.25.10

Open the chart page →

10,208
jenkinswebencryptor1.9.181 of 1See more

jenkins webencryptor 1.9.18

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/net@v0.38.0
stdlib@go1.25.3
0.53.0
1.25.10

Open the chart page →

2,549
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
stdlib@go1.21.12
1.25.10

Open the chart page →

28,827
generic-webhookwebhooks0.1.11 of 1See more

generic-webhook webhooks 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
stdlib@go1.20.1
1.25.10

Open the chart page →

2,031
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10

Open the chart page →

7,563
ambassadorwener6.9.51 of 2See more

ambassador wener 6.9.5

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
datawire/aes:1.14.48588eafe6862
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.15
0.53.0
1.25.10

Open the chart page →

4,130
apisixwener2.17.01 of 3See more

apisix wener 2.17.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bitnamilegacy/etcd:latest99b408c15272
golang.org/x/net@v0.38.0
stdlib@go1.23.10
0.53.0
1.25.10

Open the chart page →

3,187
argo-cdwener10.9.22 of 3See more

argo-cd wener 10.9.2

2 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.45.18499afd690c4
golang.org/x/net@v0.50.0
stdlib@go1.25.6
0.53.0
1.25.10
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
golang.org/x/net@v0.40.0
stdlib@go1.26.2
0.53.0
1.25.10

Open the chart page →

3,043
argo-eventswener2.4.271 of 1See more

argo-events wener 2.4.27

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-events:v1.9.11fa07b2c9ece6
golang.org/x/net@v0.47.0
stdlib@go1.25.6
0.53.0
1.25.10

Open the chart page →

1,093
argo-workflowswener2.0.71 of 3See more

argo-workflows wener 2.0.7

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-workflows-crdinstaller:v4.1.4111ea7bba0ec
golang.org/x/net@v0.49.0
0.53.0

Open the chart page →

259
athens-proxywener0.5.22 of 2See more

athens-proxy wener 0.5.2

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
gomods/athens:v0.11.0efb811df7844
golang.org/x/net@v0.0.0-20200222125558-5a598a2470a0
stdlib@go1.13.10
0.53.0
1.25.10
jaegertracing/all-in-one:latestab6f1a1f0fb4
golang.org/x/net@v0.47.0
stdlib@go1.25.4
0.53.0
1.25.10

Open the chart page →

5,009
cadencewener0.23.02 of 5See more

cadence wener 0.23.0

2 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ubercadence/server:0.23.22ac5491d13bb
golang.org/x/net@v0.0.0-20201031054903-ff519b6c9102
stdlib@go1.13.6
0.53.0
1.25.10
ghcr.io/banzaicloud/tcheck:latest0147d87c2019
golang.org/x/net@v0.0.0-20170114055629-f2499483f923
stdlib@go1.15.2
0.53.0
1.25.10

Open the chart page →

10,152
cockroachdbwener22.0.31 of 3See more

cockroachdb wener 22.0.3

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
golang.org/x/net@v0.38.0
stdlib@go1.23.12
0.53.0
1.25.10

Open the chart page →

770

Container images carrying it

4,778 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
flanksource/canary-checker-ui:v1.4.281764c84e550db
stdlib@go1.20.7
1.25.10
1
flanksource/incident-manager-ui:v1.4.319953948a194c9
stdlib@go1.23.5
1.25.10
1
flanksource/vcluster-sync-host-secrets:v0.1.6bd3294c20a60
golang.org/x/net@v0.7.0
stdlib@go1.17.13
0.53.0
1.25.10
1
flashbots/mev-boost:1.8.07c486b5789da
stdlib@go1.22.6
1.25.10
1
flashcatcloud/nightingale:8.5.1421acb36181b
golang.org/x/net@v0.47.0
stdlib@go1.24.0
0.53.0
1.25.10
1
flashcatcloud/nightingale:8.0.0-beta.11ea1b0aaabe09
golang.org/x/net@v0.34.0
stdlib@go1.23.9
0.53.0
1.25.10
1
fleetdm/fleet:v4.66.012e644b7f40e
golang.org/x/net@v0.36.0
stdlib@go1.23.4
0.53.0
1.25.10
1
flomesh/fsm-ingress-pipy:0.2.11cc39c96711c4
golang.org/x/net@v0.10.0
stdlib@go1.19.13
0.53.0
1.25.10
1
flomesh/fsm-manager:0.2.1122f849c70b25
golang.org/x/net@v0.10.0
stdlib@go1.19.13
0.53.0
1.25.10
1
flomesh/osm-edge-bootstrap:1.3.9b188e128cbfe
golang.org/x/net@v0.5.0
stdlib@go1.19.13
0.53.0
1.25.10
1
flomesh/osm-edge-controller:1.3.9add7a4da4622
golang.org/x/net@v0.5.0
stdlib@go1.19.13
0.53.0
1.25.10
1
flomesh/osm-edge-injector:1.3.947287e3ad324
golang.org/x/net@v0.5.0
stdlib@go1.19.13
0.53.0
1.25.10
1
flomesh/osm-edge-preinstall:1.3.9bd224d55ed0f
golang.org/x/net@v0.5.0
stdlib@go1.19.13
0.53.0
1.25.10
1
fluxcd/helm-controller:v0.9.092b891e495d8
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.10
0.53.0
1.25.10
1
fluxcd/source-controller:v0.10.031a8c79a6803
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.10
0.53.0
1.25.10
1
fluxninja/aperture-operator:2.34.0356d7aa86632
golang.org/x/net@v0.19.0
stdlib@go1.21.5
0.53.0
1.25.10
1
fonoster/routr-edgeport:2.13.6d08a8a574a50
golang.org/x/net@v0.7.0
stdlib@go1.21.0
0.53.0
1.25.10
1
foomo/csp-reporter:1.3.0e436da524785
stdlib@go1.18
1.25.10
1
forchaladtest/mygowiki:1.0.170827eaecad1
stdlib@go1.22.6
1.25.10
1
fortio/fortio:latest_releasefc8221136fe2
golang.org/x/net@v0.40.0
stdlib@go1.23.9
0.53.0
1.25.10
1
fosrl/newt:1.10.4ccd2b0e9a049
golang.org/x/net@v0.51.0
stdlib@go1.25.8
0.53.0
1.25.10
1
foundationdb/fdb-kubernetes-operator:v2.3.07d7b6985291e
golang.org/x/net@v0.36.0
stdlib@go1.23.7
0.53.0
1.25.10
1
foxcpp/maddy:0.7.16ab538e2f28b
golang.org/x/net@v0.20.0
stdlib@go1.19.13
0.53.0
1.25.10
1
foxcpp/maddy:v0.5.28fa2bd8f6830
golang.org/x/net@v0.0.0-20211011170408-caeb26a5c8c0
stdlib@go1.17.2
0.53.0
1.25.10
1
foxcpp/maddy:0.9.2a4b839985b9b
golang.org/x/net@v0.34.0
stdlib@go1.23.12
0.53.0
1.25.10
1
foxcpp/maddy:0.8.2eeb5813fc4d1
golang.org/x/net@v0.34.0
stdlib@go1.23.12
0.53.0
1.25.10
1
gabekangas/owncast:0.0.797461aedb580
golang.org/x/net@v0.0.0-20210421230115-4e50805a0758
stdlib@go1.15.2
0.53.0
1.25.10
1
galaxy/cloudman-server:lateste5c265fe9fcd
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.17.13
0.53.0
1.25.10
1
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
golang.org/x/net@v0.33.0
stdlib@go1.22.7
0.53.0
1.25.10
1
galexrt/extended-ceph-exporter:v1.8.05373078a3a08
stdlib@go1.24.8
1.25.10
1
garethgeorge/backrest:v1.14.1b85297975428
stdlib@go1.26.0
1.25.10
1
garugaru/presto-exporter:cb666560e9e82d5ae36aef1e663c3d7f51cca9fc5201314c28f3
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.14.13
0.53.0
1.25.10
1
garugaru/presto-loadbalancer:v0.1.589d66d117029
stdlib@go1.15.2
1.25.10
1
gboxproxy/gbox:v1.0.63a9f4a711d5c
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
stdlib@go1.17.9
0.53.0
1.25.10
1
gdxbsv/traktor:0.0.17675693335054
golang.org/x/net@v0.38.0
stdlib@go1.24.13
0.53.0
1.25.10
1
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
golang.org/x/net@v0.11.0
stdlib@go1.19.11
0.53.0
1.25.10
1
gesellix/couchdb-prometheus-exporter:v27.2.05b891f1fc2b9
stdlib@go1.13.10
1.25.10
1
gesellix/couchdb-prometheus-exporter:v286266d063f5d5
stdlib@go1.13.13
1.25.10
1
getconvoy/convoy:v26.7.6f4934cc05e31
stdlib@go1.26.2
1.25.10
1
getsentry/relay:24.10.0ba7bf9163219
stdlib@go1.19.8
1.25.10
1
ghusta/postgres-world-db:latest879d0919fdcc
stdlib@go1.24.6
1.25.10
1
giantswarm/silence-operator:0.13.0a6cac55aa2d4
golang.org/x/net@v0.37.0
stdlib@go1.24.1
0.53.0
1.25.10
1
gitea/act_runner:0.2.11-dind-rootless6120b1165f3a
golang.org/x/net@v0.27.0
stdlib@go1.22.7
0.53.0
1.25.10
1
gitea/act_runner:nightly7940221bcfc9
golang.org/x/net@v0.50.0
stdlib@go1.26.2
0.53.0
1.25.10
1
gitea/act_runner:latestb5c35d6bdbb9
golang.org/x/net@v0.50.0
stdlib@go1.26.2
0.53.0
1.25.10
1
gitea/act_runner:0.3.1c2a169c5e998
golang.org/x/net@v0.50.0
stdlib@go1.26.1
0.53.0
1.25.10
1
gitea/act_runner:0.2.11c57233403eff
golang.org/x/net@v0.27.0
stdlib@go1.23.1
0.53.0
1.25.10
1
gitea/gitea:1.22.376f516a1a8c2
golang.org/x/net@v0.28.0
stdlib@go1.22.8
0.53.0
1.25.10
1
gitea/gitea:1.12.485416d6f65fe
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
stdlib@go1.14.8
0.53.0
1.25.10
1
gitea/gitea:1.21.6ac73e0da341f
golang.org/x/net@v0.20.0
stdlib@go1.21.7
0.53.0
1.25.10
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.