StackRadar

CVE-2026-33814

Unscored

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,042
of 17,790 indexed, latest versions
Container images
4,671
deployed by those charts
Fix available
2 of 2
affected packages

Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net

Carried by container images the latest versions of 4,042 of 17,790 indexed charts deploy, on 4,671 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,520
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+218 more0.53.03,575
OSV records
GO-2026-4918
Also known as
BIT-golang-2026-33814

Charts affected

4,042 by stars
ChartLatestAffected imagesRadar Score
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
stdlib@go1.24.4
1.25.10

Open the chart page →

8,510
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.4
0.53.0
1.25.10
platform9community/api-gateway:latest40a4970de568
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.4
0.53.0
1.25.10
platform9community/customers-service:latest2089811e5cc6
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.4
0.53.0
1.25.10
platform9community/vets-service:latestd1165c94dfb3
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.15.11
0.53.0
1.25.10
platform9community/visits-service:latest8d11b50368c6
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.4
0.53.0
1.25.10

Open the chart page →

41,902
prometheus-rabbitmq-exporterprometheus-communityVerified publisher2.1.21 of 1See more

prometheus-rabbitmq-exporter prometheus-community 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
kbudde/rabbitmq-exporter:1.0.012f27d6d84e6
stdlib@go1.21.8
1.25.10

Open the chart page →

469
pyrrarlex0.15.01 of 1See more

pyrra rlex 0.15.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/pyrra-dev/pyrra:v0.8.10e02ef538ef0
golang.org/x/net@v0.31.0
stdlib@go1.23.3
0.53.0
1.25.10

Open the chart page →

953
k8s-infrasignoz0.17.11 of 1See more

k8s-infra signoz 0.17.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.139.0faf125d656fa
golang.org/x/net@v0.46.0
stdlib@go1.25.3
0.53.0
1.25.10

Open the chart page →

1,039
helm-exportersstarcher0.5.01 of 1See more

helm-exporter sstarcher 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sstarcher/helm-exporter:0.5.011769d01ba35
golang.org/x/net@v0.0.0-20191028085509-fe3aa8a45271
stdlib@go1.13.6
0.53.0
1.25.10

Open the chart page →

4,154
gatustwin1.5.01 of 1See more

gatus twin 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
twinproduction/gatus:v5.34.03fff895e77d3
golang.org/x/net@v0.47.0
stdlib@go1.25.5
0.53.0
1.25.10

Open the chart page →

721
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
stdlib@go1.24.6
1.25.10

Open the chart page →

7,333
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
golang.org/x/net@v0.10.0
stdlib@go1.20.6
0.53.0
1.25.10

Open the chart page →

5,669
home-assistantalekcVerified publisher2.11.21 of 1See more

home-assistant alekc 2.11.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
golang.org/x/net@v0.49.0
stdlib@go1.25.6
0.53.0
1.25.10

Open the chart page →

2,139
home-assistantandrenarchyVerified publisher14.104.01See more

home-assistant andrenarchy 14.104.0

1 container image this version deploys carries CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
golang.org/x/net@v0.49.0
stdlib@go1.25.6
0.53.0
1.25.10

Open the chart page →

astarte-operatorastarteOfficialVerified publisher26.5.21 of 1See more

astarte-operator astarte 26.5.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
astarte/astarte-kubernetes-operator:26.5.1e3ff1b3c0c98
golang.org/x/net@v0.30.0
stdlib@go1.24.13
0.53.0
1.25.10

Open the chart page →

695
awx-operatorawx-operator-helm3.2.12 of 2See more

awx-operator awx-operator-helm 3.2.1

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
golang.org/x/net@v0.20.0
stdlib@go1.20.12
0.53.0
1.25.10
quay.io/brancz/kube-rbac-proxy:v0.15.02c7b120590cb
golang.org/x/net@v0.17.0
stdlib@go1.21.3
0.53.0
1.25.10

Open the chart page →

9,868
cadvisorckotzbauerVerified publisher2.4.31 of 1See more

cadvisor ckotzbauer 2.4.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
gcr.io/cadvisor/cadvisor:v0.52.1f40e65878e25
golang.org/x/net@v0.33.0
stdlib@go1.24.1
0.53.0
1.25.10

Open the chart page →

961
passboltcnieg1.1.171 of 2See more

passbolt cnieg 1.1.17

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
stdlib@go1.14.4
1.25.10

Open the chart page →

3,544
codercoderOfficialVerified publisher1.44.61 of 2See more

coder coder 1.44.6

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
coderenvs/coder-service:1.44.61deffc4670e6
golang.org/x/net@v0.24.0
stdlib@go1.21.9
0.53.0
1.25.10

Open the chart page →

6,847
dronecommunity-chartsVerified publisher0.1.52 of 2See more

drone community-charts 0.1.5

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
drone/drone:2.28.255897c8fb22d
golang.org/x/net@v0.42.0
stdlib@go1.24.13
0.53.0
1.25.10
drone/drone-runner-kube:1.0.0-rc.34359bf2bb3dc
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.16.15
0.53.0
1.25.10

Open the chart page →

2,728
cloudflare-operatorcontainerooVerified publisher1.10.71 of 1See more

cloudflare-operator containeroo 1.10.7

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/containeroo/cloudflare-operator:v1.10.60eda6d237a84
stdlib@go1.26.0
1.25.10

Open the chart page →

222
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
stdlib@go1.25.0
1.25.10
getconvoy/convoy:v26.7.6f4934cc05e31
stdlib@go1.26.2
1.25.10

Open the chart page →

5,915
cortexcortex3.3.81 of 4See more

cortex cortex 3.3.8

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/cortexproject/cortex:v1.21.18577eb292a01
golang.org/x/net@v0.49.0
stdlib@go1.25.8
0.53.0
1.25.10

Open the chart page →

3,921
whoamicowboysysopVerified publisher6.0.01 of 1See more

whoami cowboysysop 6.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
traefik/whoami:v1.11.0200689790a0a
stdlib@go1.24.1
1.25.10

Open the chart page →

353
doris-operatordorisVerified publisher25.8.01 of 1See more

doris-operator doris 25.8.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
apache/doris:operator-latest3a4422656592
golang.org/x/net@v0.33.0
stdlib@go1.23.12
0.53.0
1.25.10

Open the chart page →

438
uptime-kumaduyet0.1.71 of 1See more

uptime-kuma duyet 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.18.5a84767d7934f
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
stdlib@go1.18.5
0.53.0
1.25.10

Open the chart page →

4,515
emqx-operatoremqx-operator2.3.22 of 2See more

emqx-operator emqx-operator 2.3.2

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
alpine/k8s:1.31.49c4976d47656
golang.org/x/net@v0.31.0
stdlib@go1.23.2
0.53.0
1.25.10
ghcr.io/emqx/emqx-operator:2.3.23333ed546165
golang.org/x/net@v0.47.0
stdlib@go1.24.13
0.53.0
1.25.10

Open the chart page →

4,532
kube-routerenixVerified publisher1.10.01 of 1See more

kube-router enix 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
cloudnativelabs/kube-router:v1.6.00ec7cd73f43f
golang.org/x/net@v0.4.0
stdlib@go1.19.5
0.53.0
1.25.10

Open the chart page →

2,344
gethethereum-helm-chartsVerified publisher1.1.41 of 2See more

geth ethereum-helm-charts 1.1.4

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ethereum/client-go:stableb8ab3451a117
golang.org/x/net@v0.50.0
0.53.0

Open the chart page →

616
gotifygotifyVerified publisher0.8.11 of 1See more

gotify gotify 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
gotify/server:2.9.1a3af47067ce6
golang.org/x/net@v0.48.0
stdlib@go1.26.0
0.53.0
1.25.10

Open the chart page →

568
docmosthelmforgeVerified publisher1.2.121See more

docmost helmforge 1.2.12

1 container image this version deploys carries CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

wordpresshelmforgeVerified publisher3.0.61 of 3See more

wordpress helmforge 3.0.6

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
stdlib@go1.24.6
1.25.10

Open the chart page →

4,179
korkorVerified publisher0.2.161 of 1See more

kor kor 0.2.16

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
yonahdissen/kor:latest1a85158c82bb
stdlib@go1.26.0
1.25.10

Open the chart page →

222
kubelet-csr-approverkubelet-csr-approverOfficialVerified publisher1.2.151 of 1See more

kubelet-csr-approver kubelet-csr-approver 1.2.15

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/postfinance/kubelet-csr-approver:v1.2.156469ef517d2b
golang.org/x/net@v0.49.0
0.53.0

Open the chart page →

64
logging-operatorkube-loggingVerified publisher4.2.31 of 1See more

logging-operator kube-logging 4.2.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/kube-logging/logging-operator:4.2.20dd85dcb1f73
golang.org/x/net@v0.10.0
stdlib@go1.20.5
0.53.0
1.25.10

Open the chart page →

880
myipkuossOfficialVerified publisher0.2.21 of 1See more

myip kuoss 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/kuoss/myip:v0.1.7760f5ccae493
golang.org/x/net@v0.38.0
stdlib@go1.23.8
0.53.0
1.25.10

Open the chart page →

660
keptnlifecycle-toolkitOfficialVerified publisher0.11.03 of 3See more

keptn lifecycle-toolkit 0.11.0

3 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/keptn/certificate-operator:v3.0.0b82064b0e339
golang.org/x/net@v0.30.0
stdlib@go1.23.3
0.53.0
1.25.10
ghcr.io/keptn/lifecycle-operator:v2.0.0866ced256a8c
golang.org/x/net@v0.30.0
stdlib@go1.23.3
0.53.0
1.25.10
ghcr.io/keptn/metrics-operator:v2.1.0dc48471c7cf8
golang.org/x/net@v0.37.0
stdlib@go1.23.3
0.53.0
1.25.10

Open the chart page →

1,927
lightrun-helm-chartlightrun-helm-chartOfficialVerified publisher3.52.01 of 9See more

lightrun-helm-chart lightrun-helm-chart 3.52.0

1 of the 9 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.4.108dbcf531a03a
stdlib@go1.24.6
1.25.10

Open the chart page →

463
mattermost-operatormattermostVerified publisher1.0.51 of 1See more

mattermost-operator mattermost 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
mattermost/mattermost-operator:v1.25.4bac00a2bbd33
golang.org/x/net@v0.41.0
stdlib@go1.24.13
0.53.0
1.25.10

Open the chart page →

273
meshery-operatormesheryOfficialVerified publisher1.0.701 of 2See more

meshery-operator meshery 1.0.70

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
alpine/k8s:1.35.6b7a12c5ddf26
golang.org/x/net@v0.38.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

2,416
missing-container-metricsmissing-container-metrics0.1.11 of 1See more

missing-container-metrics missing-container-metrics 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.16.2
0.53.0
1.25.10

Open the chart page →

2,409
tailscale-relaymvisonneau0.2.71 of 1See more

tailscale-relay mvisonneau 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
mvisonneau/tailscale:v1.68.1fc45ad8abf10
golang.org/x/net@v0.24.0
stdlib@go1.22.4
0.53.0
1.25.10

Open the chart page →

1,356
system-upgrade-controllernimbolus0.7.01 of 1See more

system-upgrade-controller nimbolus 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
rancher/system-upgrade-controller:v0.18.09813f85653c8
golang.org/x/net@v0.44.0
stdlib@go1.25.3
0.53.0
1.25.10

Open the chart page →

318
ketoory0.64.01 of 1See more

keto ory 0.64.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
oryd/keto:v26.2.0bfdb8b9e283a
golang.org/x/net@v0.48.0
stdlib@go1.26.0
0.53.0
1.25.10

Open the chart page →

817
oathkeeperory0.64.01 of 1See more

oathkeeper ory 0.64.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
oryd/oathkeeper:v26.2.0467329abde34
golang.org/x/net@v0.48.0
stdlib@go1.26.0
0.53.0
1.25.10

Open the chart page →

769
passboltpassbolt2.1.13 of 6See more

passbolt passbolt 2.1.1

3 of the 6 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
stdlib@go1.25.0
1.25.10
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
stdlib@go1.25.0
1.25.10
library/mariadb:latestdd9b303aed4f
stdlib@go1.24.6
1.25.10

Open the chart page →

13,455
redis-enterprise-operatorredis-enterprise-operator-officialOfficialVerified publisher8.0.18-111 of 1See more

redis-enterprise-operator redis-enterprise-operator-official 8.0.18-11

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
redislabs/operator:8.0.18-119078e713bb6a
golang.org/x/net@v0.51.0
stdlib@go1.26.1
0.53.0
1.25.10

Open the chart page →

914
backstagerhdh-chartVerified publisher4.0.11 of 2See more

backstage rhdh-chart 4.0.1

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/rhdh/rhdh-hub-rhel9:latest0b26358f5793
golang.org/x/net@v0.48.0
0.53.0

Open the chart page →

1,357
rekorsigstoreVerified publisher1.8.66See more

rekor sigstore 1.8.6

6 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/redisdigest-pinned148bb5411c18
stdlib@go1.18.2
1.25.10
gcr.io/trillian-opensource-ci/db_serverdigest-pinned2a685a38dd01
stdlib@go1.18.2
1.25.10
ghcr.io/sigstore/scaffolding/createdbdigest-pinned3cee6c78973b
golang.org/x/net@v0.46.0
stdlib@go1.25.0
0.53.0
1.25.10
ghcr.io/sigstore/scaffolding/createtreedigest-pinnede5232e8c9122
golang.org/x/net@v0.46.0
stdlib@go1.25.0
0.53.0
1.25.10
ghcr.io/sigstore/scaffolding/trillian_log_serverdigest-pinned5a878e4e4f03
stdlib@go1.26.0
1.25.10
ghcr.io/sigstore/scaffolding/trillian_log_signerdigest-pinned28c5ff40963f
stdlib@go1.26.0
1.25.10

Open the chart page →

mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
stdlib@go1.26.1
1.25.10

Open the chart page →

2,927
swo-k8s-collectorsolarwindsOfficialVerified publisher5.3.02 of 3See more

swo-k8s-collector solarwinds 5.3.0

2 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/opentelemetry-ebpf-instrumentation/ebpf-instrument:v0.9.026f82b148dfe
stdlib@go1.25.9
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.06b2f0b6f2f86
golang.org/x/net@v0.51.0
stdlib@go1.26.2
0.53.0
1.25.10

Open the chart page →

2,347
sops-operatorsops-operatorVerified publisher0.10.11 of 2See more

sops-operator sops-operator 0.10.1

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
golang.org/x/net@v0.26.0
stdlib@go1.22.5
0.53.0
1.25.10

Open the chart page →

1,250
thehivestrangebee-helmOfficialVerified publisher1.0.74See more

thehive strangebee-helm 1.0.7

4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
golang.org/x/net@v0.42.0
stdlib@go1.24.6
0.53.0
1.25.10
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
golang.org/x/net@v0.42.0
stdlib@go1.25.0
0.53.0
1.25.10
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
golang.org/x/net@v0.42.0
stdlib@go1.24.6
0.53.0
1.25.10
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
golang.org/x/net@v0.39.0
stdlib@go1.24.6
0.53.0
1.25.10

Open the chart page →

Container images carrying it

4,671 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
grafana/agent:v0.40.3f6cbec9409be
golang.org/x/net@v0.20.0
stdlib@go1.22.1
0.53.0
1.25.10
1
grafana/agent-operator:v0.34.1045c9125634c
golang.org/x/net@v0.10.0
stdlib@go1.20.4
0.53.0
1.25.10
1
grafana/alloy:v1.5.101a63f4e032c
golang.org/x/net@v0.31.0
stdlib@go1.22.7
0.53.0
1.25.10
1
grafana/alloy:v1.4.306bdcbb51fc2
golang.org/x/net@v0.29.0
stdlib@go1.22.7
0.53.0
1.25.10
1
grafana/alloy:v1.11.38c7256f412fe
golang.org/x/net@v0.43.0
stdlib@go1.24.6
0.53.0
1.25.10
1
grafana/alloy:v1.1.1c3dac4e26471
golang.org/x/net@v0.24.0
stdlib@go1.22.3
0.53.0
1.25.10
1
grafana/alloy:v1.14.0f50931848bd8
golang.org/x/net@v0.50.0
stdlib@go1.25.7
0.53.0
1.25.10
1
grafana/beyla:1.3.336d07f8d276e
golang.org/x/net@v0.21.0
stdlib@go1.21.7
0.53.0
1.25.10
1
grafana/beyla-k8s-cache:253b2f561cb1b
golang.org/x/net@v0.48.0
stdlib@go1.25.3
0.53.0
1.25.10
1
grafana/grafana:6.6.0052147d7e0ec
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13.4
0.53.0
1.25.10
1
grafana/grafana:10.1.50679e877ba20
golang.org/x/net@v0.12.0
stdlib@go1.20.10
0.53.0
1.25.10
1
grafana/grafana:7.5.609bb407e26ab
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
stdlib@go1.16.1
0.53.0
1.25.10
1
grafana/grafana:13.0.10f86bada30d6
golang.org/x/net@v0.52.0
stdlib@go1.26.0
0.53.0
1.25.10
1
grafana/grafana:7.3.315b977f5207d
golang.org/x/net@v0.0.0-20200813134508-3edf25e44fcc
stdlib@go1.15.1
0.53.0
1.25.10
1
grafana/grafana:9.4.71a359d92f40e
golang.org/x/net@v0.4.0
stdlib@go1.20.1
0.53.0
1.25.10
1
grafana/grafana:10.1.11b9ca4bbc4a2
golang.org/x/net@v0.12.0
stdlib@go1.20.8
0.53.0
1.25.10
1
grafana/grafana:13.0.1-security-012d1f9ae67c17
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.53.0
1.25.10
1
grafana/grafana:12.2.22ebef928d7e5
golang.org/x/net@v0.45.0
stdlib@go1.25.3
0.53.0
1.25.10
1
grafana/grafana:12.2.135c41e0fd029
golang.org/x/net@v0.45.0
stdlib@go1.25.3
0.53.0
1.25.10
1
grafana/grafana:9.5.239c849cebccc
golang.org/x/net@v0.8.0
stdlib@go1.20.4
0.53.0
1.25.10
1
grafana/grafana:11.2.2-security-01464eac539793
golang.org/x/net@v0.28.0
stdlib@go1.22.7
0.53.0
1.25.10
1
grafana/grafana:11.5.15781759b3d27
golang.org/x/net@v0.34.0
stdlib@go1.23.5
0.53.0
1.25.10
1
grafana/grafana:11.6.062d2b9d20a19
golang.org/x/net@v0.36.0
stdlib@go1.23.7
0.53.0
1.25.10
1
grafana/grafana:8.0.3696823fbc561
golang.org/x/net@v0.0.0-20210521195947-fe42d452be8f
stdlib@go1.16.1
0.53.0
1.25.10
1
grafana/grafana:10.2.36b5b37eb35bb
golang.org/x/net@v0.19.0
stdlib@go1.21.3
0.53.0
1.25.10
1
grafana/grafana:7.3.46d42886b3ebe
golang.org/x/net@v0.0.0-20200813134508-3edf25e44fcc
stdlib@go1.15.5
0.53.0
1.25.10
1
grafana/grafana:12.3.070d9599b186c
golang.org/x/net@v0.46.0
stdlib@go1.25.3
0.53.0
1.25.10
1
grafana/grafana:7.2.1733842cca5bd
golang.org/x/net@v0.0.0-20200813134508-3edf25e44fcc
stdlib@go1.15.1
0.53.0
1.25.10
1
grafana/grafana:12.2.074144189b384
golang.org/x/net@v0.43.0
stdlib@go1.24.6
0.53.0
1.25.10
1
grafana/grafana:9.4.376dcf36e7d2a
golang.org/x/net@v0.4.0
stdlib@go1.19.4
0.53.0
1.25.10
1
grafana/grafana:10.3.38640e5038e83
golang.org/x/net@v0.19.0
stdlib@go1.21.5
0.53.0
1.25.10
1
grafana/grafana:11.5.28b37a2f028f1
golang.org/x/net@v0.34.0
stdlib@go1.23.5
0.53.0
1.25.10
1
grafana/grafana:9.1.19746858c20e6
golang.org/x/net@v0.0.0-20220615171555-694bf12d69de
stdlib@go1.17.12
0.53.0
1.25.10
1
grafana/grafana:12.1.1a1701c218024
golang.org/x/net@v0.41.0
stdlib@go1.24.6
0.53.0
1.25.10
1
grafana/grafana:9.0.1a738d0744784
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
stdlib@go1.17.11
0.53.0
1.25.10
1
grafana/grafana:10.4.19a9043254ba16
golang.org/x/net@v0.40.0
stdlib@go1.24.3
0.53.0
1.25.10
1
grafana/grafana:13.1.3ab5cb380e3ff
golang.org/x/net@v0.49.0
0.53.0
1
grafana/grafana:11.1.3b23b588cf7cb
golang.org/x/net@v0.26.0
stdlib@go1.22.4
0.53.0
1.25.10
1
grafana/grafana:12.0.2b5b59bfc7561
golang.org/x/net@v0.40.0
stdlib@go1.24.4
0.53.0
1.25.10
1
grafana/grafana:12.3.2ba93c9d192e5
golang.org/x/net@v0.47.0
stdlib@go1.25.6
0.53.0
1.25.10
1
grafana/grafana:6.5.1befcd84da2c1
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
stdlib@go1.13.1
0.53.0
1.25.10
1
grafana/grafana:8.3.5cd7cb4345aa7
golang.org/x/net@v0.0.0-20210903162142-ad29c8ab022f
stdlib@go1.17.6
0.53.0
1.25.10
1
grafana/grafana:8.3.4cf81d2c753c8
golang.org/x/net@v0.0.0-20210903162142-ad29c8ab022f
stdlib@go1.17.6
0.53.0
1.25.10
1
grafana/grafana:7.4.5d322192ed2fa
golang.org/x/net@v0.0.0-20201022231255-08b38378de70
stdlib@go1.15.6
0.53.0
1.25.10
1
grafana/grafana:8.5.3ecc1b80b8ca2
golang.org/x/net@v0.0.0-20211118161319-6a13c67c3ce4
stdlib@go1.17.9
0.53.0
1.25.10
1
grafana/grafana:10.4.0f9811e4e687f
golang.org/x/net@v0.20.0
stdlib@go1.21.8
0.53.0
1.25.10
1
grafana/grafana:11.3.1fa801ab6e1ae
golang.org/x/net@v0.29.0
stdlib@go1.23.1
0.53.0
1.25.10
1
grafana/kubernetes-diff-logger:0.0.598f6d1cd1e25
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
stdlib@go1.16.5
0.53.0
1.25.10
1
grafana/logcli:main-c90366d-amd643d85bb66e39b
golang.org/x/net@v0.0.0-20210505214959-0714010a04ed
stdlib@go1.16.2
0.53.0
1.25.10
1
grafana/loki:2.9.1035b02acc6765
golang.org/x/net@v0.26.0
stdlib@go1.22.5
0.53.0
1.25.10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.