StackRadar

CVE-2026-33814

Unscored

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,155
of 17,813 indexed, latest versions
Container images
4,778
deployed by those charts
Fix available
2 of 2
affected packages

Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net

Carried by container images the latest versions of 4,155 of 17,813 indexed charts deploy, on 4,778 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+181 more1.25.104,618
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+218 more0.53.03,640
OSV records
GO-2026-4918
Also known as
BIT-golang-2026-33814

Charts affected

4,155 by stars
ChartLatestAffected imagesRadar Score
metabasehelmforgeVerified publisher1.2.291 of 3See more

metabase helmforge 1.2.29

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,726
middlewarehelmforgeVerified publisher1.2.62 of 4See more

middleware helmforge 1.2.6

2 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10
middlewareeng/middleware:0.3.1747d880812f1
stdlib@go1.17.13
1.25.10

Open the chart page →

9,920
minecrafthelmforgeVerified publisher1.5.41 of 1See more

minecraft helmforge 1.5.4

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
itzg/minecraft-server:2026.9.1e8640538dac5
stdlib@go1.22.2
1.25.10

Open the chart page →

4,216
mongodbhelmforgeVerified publisher1.8.11 of 1See more

mongodb helmforge 1.8.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mongo:8.3.981a1c8842a09
stdlib@go1.24.6
1.25.10

Open the chart page →

987
moodlehelmforgeVerified publisher1.1.01 of 2See more

moodle helmforge 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

6,400
mysqlhelmforgeVerified publisher2.0.31 of 1See more

mysql helmforge 2.0.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
stdlib@go1.24.6
1.25.10

Open the chart page →

463
netboxhelmforgeVerified publisher2.0.11 of 4See more

netbox helmforge 2.0.1

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

4,472
nextcloudhelmforgeVerified publisher1.1.01 of 3See more

nextcloud helmforge 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie10037cee1d5e
stdlib@go1.24.6
1.25.10

Open the chart page →

5,818
olivetinhelmforgeVerified publisher1.2.21 of 2See more

olivetin helmforge 1.2.2

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
jamesread/olivetin:3000.20.0f3066e207efd
stdlib@go1.26.0
1.25.10

Open the chart page →

273
opencuthelmforgeVerified publisher1.1.91 of 5See more

opencut helmforge 1.1.9

1 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

3,858
paprahelmforgeVerified publisher1.0.01 of 1See more

papra helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
stdlib@go1.20.7
1.25.10

Open the chart page →

2,609
pimcorehelmforgeVerified publisher2.0.11 of 6See more

pimcore helmforge 2.0.1

1 of the 6 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
stdlib@go1.24.6
1.25.10

Open the chart page →

3,258
reactive-resumehelmforgeVerified publisher1.0.01 of 4See more

reactive-resume helmforge 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

3,158
ryothelmforgeVerified publisher1.0.02 of 2See more

ryot helmforge 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
golang.org/x/net@v0.33.0
stdlib@go1.23.1
0.53.0
1.25.10

Open the chart page →

6,170
strapihelmforgeVerified publisher2.3.141 of 3See more

strapi helmforge 2.3.14

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

2,146
supersethelmforgeVerified publisher1.3.62 of 5See more

superset helmforge 1.3.6

2 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
helmforge/kubectl:1.35.3c3f97e954c47
golang.org/x/net@v0.47.0
stdlib@go1.25.7
0.53.0
1.25.10
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

5,896
twentyhelmforgeVerified publisher1.0.11 of 5See more

twenty helmforge 1.0.1

1 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

3,737
wallabaghelmforgeVerified publisher1.3.62 of 3See more

wallabag helmforge 1.3.6

2 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.10
wallabag/wallabag:2.6.144a527e027e0d
stdlib@go1.25.1
1.25.10

Open the chart page →

2,834
zookeeperhelmforgeVerified publisher1.0.21 of 1See more

zookeeper helmforge 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5f258365d4882
stdlib@go1.18.1
1.25.10

Open the chart page →

3,169
openbashelm-openbasVerified publisher1.8.143 of 7See more

openbas helm-openbas 1.8.14

3 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
openbas/caldera-server:5.1.0a277796d9724
golang.org/x/net@v0.14.0
stdlib@go1.19.8
0.53.0
1.25.10
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
golang.org/x/net@v0.29.0
stdlib@go1.23.4
0.53.0
1.25.10
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
golang.org/x/net@v0.29.0
stdlib@go1.23.4
0.53.0
1.25.10

Open the chart page →

25,603
release-cleanerhelm-release-cleanerVerified publisher1.0.01 of 1See more

release-cleaner helm-release-cleaner 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
alpine/helm:4.1.0905a068da431
golang.org/x/net@v0.48.0
stdlib@go1.25.6
0.53.0
1.25.10

Open the chart page →

2,022
pageshelm-repo1.0.01 of 3See more

pages helm-repo 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,285
steampipehelm-steampipeVerified publisher2.4.11 of 1See more

steampipe helm-steampipe 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
golang.org/x/net@v0.48.0
stdlib@go1.26.1
0.53.0
1.25.10

Open the chart page →

3,216
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
golang.org/x/net@v0.37.0
stdlib@go1.24.3
0.53.0
1.25.10

Open the chart page →

6,129
postgres-backup-localheywood8-helm-chartsVerified publisher0.1.131 of 1See more

postgres-backup-local heywood8-helm-charts 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
prodrigestivill/postgres-backup-local:12-alpine-8d72d2d6ed2afadc326
stdlib@go1.16
1.25.10

Open the chart page →

2,435
goshimmerhiveroad0.2.141 of 1See more

goshimmer hiveroad 0.2.14

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
iotaledger/goshimmer:v0.8.6b02a8f77474f
golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc2
stdlib@go1.17.2
0.53.0
1.25.10

Open the chart page →

2,552
cratedb-adapterhmdmph0.1.01 of 1See more

cratedb-adapter hmdmph 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/net@v0.0.0-20210423184538-5f58ad60dda6
stdlib@go1.16.3
0.53.0
1.25.10

Open the chart page →

2,921
printserverhmediadeVerified publisher1.0.22 of 4See more

printserver hmediade 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.9.5b3aba22b1da8
golang.org/x/net@v0.17.0
stdlib@go1.21.5
0.53.0
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20231011-8b53cabe0a7943503b45d
golang.org/x/net@v0.16.0
stdlib@go1.21.3
0.53.0
1.25.10

Open the chart page →

11,031
imageproxyhmphuVerified publisher0.1.11 of 1See more

imageproxy hmphu 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
willnorris/imageproxy:latest21d0c90f4c31
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
stdlib@go1.16.8
0.53.0
1.25.10

Open the chart page →

2,148
cert-managerhomeenterpriseinc1.10.13 of 3See more

cert-manager homeenterpriseinc 1.10.1

3 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.10.1b5657161d2c2
golang.org/x/net@v0.0.0-20220921155015-db77216a4ee9
stdlib@go1.19.3
0.53.0
1.25.10
quay.io/jetstack/cert-manager-controller:v1.10.11143471c90db
golang.org/x/net@v0.0.0-20220921155015-db77216a4ee9
stdlib@go1.19.3
0.53.0
1.25.10
quay.io/jetstack/cert-manager-webhook:v1.10.164121721c665
golang.org/x/net@v0.0.0-20220921155015-db77216a4ee9
stdlib@go1.19.3
0.53.0
1.25.10

Open the chart page →

4,736
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
stdlib@go1.19.8
1.25.10

Open the chart page →

16,640
honeydipperhoneydipperVerified publisher0.1.111 of 2See more

honeydipper honeydipper 0.1.11

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/redis:5fc5ecd863862
stdlib@go1.16.7
1.25.10

Open the chart page →

1,732
hoppscotchhoppscotch0.1.11 of 1See more

hoppscotch hoppscotch 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
golang.org/x/net@v0.17.0
stdlib@go1.21.10
0.53.0
1.25.10

Open the chart page →

3,645
paperlesshpVerified publisher0.1.23 of 5See more

paperless hp 0.1.2

3 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
apache/tika:3.3.1.090b7fa1dc018
golang.org/x/net@v0.40.0
stdlib@go1.26.2
0.53.0
1.25.10
gotenberg/gotenberg:8.3467097317623a
stdlib@go1.26.2
1.25.10
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
stdlib@go1.24.4
1.25.10

Open the chart page →

27,657
wallabaghpVerified publisher0.1.71 of 1See more

wallabag hp 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wallabag/wallabag:2.6.144a527e027e0d
stdlib@go1.25.1
1.25.10

Open the chart page →

1,135
hammerspace-csihscsi1.2.86 of 6See more

hammerspace-csi hscsi 1.2.8

6 of the 6 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
hammerspaceinc/csi-plugin:v1.2.8-rc2395bee4504fc
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.53.0
1.25.10
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
golang.org/x/net@v0.32.0
stdlib@go1.23.1
0.53.0
1.25.10
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
golang.org/x/net@v0.32.0
stdlib@go1.23.1
0.53.0
1.25.10
registry.k8s.io/sig-storage/csi-provisioner:v5.2.0d5e46da8aff7
golang.org/x/net@v0.34.0
stdlib@go1.23.1
0.53.0
1.25.10
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
golang.org/x/net@v0.39.0
stdlib@go1.24.2
0.53.0
1.25.10
registry.k8s.io/sig-storage/csi-snapshotter:v8.0.25f051159c95f
golang.org/x/net@v0.28.0
stdlib@go1.22.5
0.53.0
1.25.10

Open the chart page →

4,519
eoloplanthttpd-eoloplant0.1.03 of 7See more

eoloplant httpd-eoloplant 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
golang.org/x/net@v0.7.0
stdlib@go1.18.10
0.53.0
1.25.10
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.10
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.10

Open the chart page →

32,551
http-headershttp-headers1.2.11 of 1See more

http-headers http-headers 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
stdlib@go1.19.2
1.25.10

Open the chart page →

2,009
cac-systemhuangchengwu-helm-chart0.1.07 of 9See more

cac-system huangchengwu-helm-chart 0.1.0

7 of the 9 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
huangchengwu6904/hi-app:cac-16910478061b932f8221a9
golang.org/x/net@v0.10.0
stdlib@go1.20.4
0.53.0
1.25.10
quay.io/jetstack/cert-manager-cainjector:v1.12.0e0a5b06b231c
golang.org/x/net@v0.9.0
stdlib@go1.20.4
0.53.0
1.25.10
quay.io/jetstack/cert-manager-controller:v1.12.04a9d0264055b
golang.org/x/net@v0.9.0
stdlib@go1.20.4
0.53.0
1.25.10
quay.io/jetstack/cert-manager-ctl:v1.12.08d54fe9d0c0d
golang.org/x/net@v0.9.0
stdlib@go1.20.4
0.53.0
1.25.10
quay.io/jetstack/cert-manager-webhook:v1.12.0ec4306b243d9
golang.org/x/net@v0.9.0
stdlib@go1.20.4
0.53.0
1.25.10
quay.io/metallb/controller:v0.13.101b33357b3595
golang.org/x/net@v0.8.0
stdlib@go1.19.5
0.53.0
1.25.10
quay.io/metallb/speaker:v0.13.1000406ccb1fa0
golang.org/x/net@v0.8.0
stdlib@go1.19.5
0.53.0
1.25.10

Open the chart page →

11,265
mariadbhuangchengwu-helm-chart0.1.01 of 1See more

mariadb huangchengwu-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
stdlib@go1.24.6
1.25.10

Open the chart page →

1,948
prometheushuangchengwu-helm-chart0.1.01 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.16.9
0.53.0
1.25.10

Open the chart page →

16,577
skywalking-v1huangchengwu-helm-chart0.1.01 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.9.1b4ec8c18d079
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.16.9
0.53.0
1.25.10

Open the chart page →

20,796
tdenginehuangchengwu-helm-chart3.0.21 of 1See more

tdengine huangchengwu-helm-chart 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
tdengine/tdengine:3.0.2.24140a4021ddb
golang.org/x/net@v0.0.0-20220607020251-c690dde0001d
stdlib@go1.17.6
0.53.0
1.25.10

Open the chart page →

3,775
sing-boxhuscker-chartsVerified publisher1.0.71 of 1See more

sing-box huscker-charts 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sagernet/sing-box:v1.12.03c1ee82d450d
golang.org/x/net@v0.42.0
stdlib@go1.24.5
0.53.0
1.25.10

Open the chart page →

1,446
jaegerhuseyinbabalVerified publisher0.1.01 of 3See more

jaeger huseyinbabal 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:latestab6f1a1f0fb4
golang.org/x/net@v0.47.0
stdlib@go1.25.4
0.53.0
1.25.10

Open the chart page →

1,625
kubetaghuseyinbabalVerified publisher1.0.21 of 2See more

kubetag huseyinbabal 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/huseyinbabal/kubetag:lateste161eddc59a0
golang.org/x/net@v0.47.0
stdlib@go1.25.5
0.53.0
1.25.10

Open the chart page →

1,279
mocktailhuseyinnurbaki0.2.11 of 1See more

mocktail huseyinnurbaki 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
hhaluk/mocktail:2.0.3350d19360038
stdlib@go1.17.7
1.25.10

Open the chart page →

1,607
vcbackendi4trustVerified publisher0.0.81 of 1See more

vcbackend i4trust 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
wistefan/vcbackend:0.0.13bd436164b51
stdlib@go1.18.3
1.25.10

Open the chart page →

1,849
vcverifieri4trustVerified publisher1.0.231 of 1See more

vcverifier i4trust 1.0.23

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/fiware/vcverifier:2.0.1cd36290dc849
golang.org/x/net@v0.8.0
stdlib@go1.19.9
0.53.0
1.25.10

Open the chart page →

1,784
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
golang.org/x/net@v0.8.0
stdlib@go1.20.2
0.53.0
1.25.10

Open the chart page →

8,084

Container images carrying it

4,778 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
soldevelo/pgpool:4.6.3-debian-12-r0044d16a65129
stdlib@go1.25.4
1.25.10
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
golang.org/x/net@v0.0.0-20220107192237-5cfca573fb4d
stdlib@go1.18.2
0.53.0
1.25.10
1
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
golang.org/x/net@v0.49.0
stdlib@go1.24.13
0.53.0
1.25.10
1
sophos/nginx-vts-exporter:latestf1073556b29b
stdlib@go1.13.6
1.25.10
1
sorintlab/stolon:v0.16.0-pg1236b45c0f97fc
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.8
0.53.0
1.25.10
1
sosedoff/pgweb:latesta5256d416e2e
golang.org/x/net@v0.47.0
stdlib@go1.24.6
0.53.0
1.25.10
1
speckle/alertmanager-discord:latestf6221ff308e9
stdlib@go1.22.4
1.25.10
1
splatform/stratos-jetstream:4.4.0-bc65c315c886311c331b9
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.13.4
0.53.0
1.25.10
1
splunk/splunk-operator:2.0.0c4e0d3146226
golang.org/x/net@v0.0.0-20211029224645-99673261e6eb
stdlib@go1.17.12
0.53.0
1.25.10
1
springhack/frpc_ingress:latest4aceb821da88
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.19.5
0.53.0
1.25.10
1
sstarcher/ecr-cleaner:0.1.12d43c390cb19
stdlib@go1.14.2
1.25.10
1
sstarcher/helm-exporter:0.5.011769d01ba35
golang.org/x/net@v0.0.0-20191028085509-fe3aa8a45271
stdlib@go1.13.6
0.53.0
1.25.10
1
sstarcher/kube-ebs-tagger:0.1.01f8cae8cfa80
golang.org/x/net@v0.0.0-20191028085509-fe3aa8a45271
stdlib@go1.13.9
0.53.0
1.25.10
1
stakater/forecastle:v2.0.2382cd9572352
golang.org/x/net@v0.51.0
0.53.0
1
stakater/forecastle:v1.0.13886b24cdef409
golang.org/x/net@v0.10.0
stdlib@go1.22.1
0.53.0
1.25.10
1
stakater/gitwebhookproxy:v0.2.79c1226e5270cd
stdlib@go1.13.1
1.25.10
1
stakater/k8s-cost-optimizer:v0.0.5450415ce1b4e
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.17.8
0.53.0
1.25.10
1
stakater/konfigurator:v0.1.393409565b1ef5
golang.org/x/net@v0.17.0
stdlib@go1.17.13
0.53.0
1.25.10
1
stakater/reloader:v1.0.15f4b87a8e56d4
golang.org/x/net@v0.7.0
stdlib@go1.20.1
0.53.0
1.25.10
1
stakater/tronador:v0.0.137ce9acf2722
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.11
0.53.0
1.25.10
1
stakater/whitelister:v0.0.1639107924063e
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.13.1
0.53.0
1.25.10
1
stakater/workshop-operator:v0.0.3897bf456cc97c
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.16.13
0.53.0
1.25.10
1
stakkato95/twitter-service-analytics:0.1.05d48906d66b3
golang.org/x/net@v0.0.0-20220520000938-2e3eb7b945c2
stdlib@go1.18.3
0.53.0
1.25.10
1
stakkato95/twitter-service-graphql:0.1.13cbe857234f2
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
stdlib@go1.18.3
0.53.0
1.25.10
1
stakkato95/twitter-service-tweets:0.1.18412d8a8cac3
stdlib@go1.18.3
1.25.10
1
stakkato95/twitter-service-users:0.1.1456049efee9a
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
stdlib@go1.18.3
0.53.0
1.25.10
1
stashapp/stash:latest24dbd7607174
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.13.15
0.53.0
1.25.10
1
stashapp/stash:v0.31.1df744af5a0c9
golang.org/x/net@v0.47.0
stdlib@go1.24.3
0.53.0
1.25.10
1
stashapp/stash-box:latesta534c8afdf39
golang.org/x/net@v0.38.0
stdlib@go1.23.10
0.53.0
1.25.10
1
statcan/ingress-istio-controller:1.4.0d7d6bd180c46
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.18.10
0.53.0
1.25.10
1
statcan/kubernetes-sidecar-terminator:2.0.2bc361ee7748f
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
stdlib@go1.19.10
0.53.0
1.25.10
1
statping/statping:v0.90.6532f26fffca46
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.8
0.53.0
1.25.10
1
stevenweathers/thunderdome-planning-poker:latestc7eb7b10f186
golang.org/x/net@v0.52.0
0.53.0
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
golang.org/x/net@v0.0.0-20201022231255-08b38378de70
stdlib@go1.15.6
0.53.0
1.25.10
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.10ebcf7f033b54
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13.4
0.53.0
1.25.10
1
streamnative/function-mesh:v0.28.077939c8aa269
golang.org/x/net@v0.48.0
0.53.0
1
streamnative/pulsar_vault_init:v1.0.731533fa9fab7
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.17.11
0.53.0
1.25.10
1
stubin87/tiny-api:v1.1.02e5c42e92ec8
stdlib@go1.19.1
1.25.10
1
su541/cert-manager-desec-webhook:latest371ee33f83c1
golang.org/x/net@v0.7.0
stdlib@go1.19.10
0.53.0
1.25.10
1
subspacecommunity/subspace:1.5.0e2042b63fb35
golang.org/x/net@v0.0.0-20200519113804-d87ec0cfa476
stdlib@go1.14.6
0.53.0
1.25.10
1
summerwind/actions-runner-controller:v0.27.62128f81dbede
golang.org/x/net@v0.12.0
stdlib@go1.20.7
0.53.0
1.25.10
1
sumuduliya/hello-world:latestb7788a2984a3
stdlib@go1.19.13
1.25.10
1
supabase/gotrue:v2.189.0385184459f57
golang.org/x/net@v0.52.0
stdlib@go1.25.8
0.53.0
1.25.10
1
supabase/gotrue:v2.91.07174d551d720
golang.org/x/net@v0.10.0
stdlib@go1.20.7
0.53.0
1.25.10
1
supabase/gotrue:v2.163.0ba4ddc594b0b
golang.org/x/net@v0.23.0
stdlib@go1.22.3
0.53.0
1.25.10
1
supabase/postgres:17.6.1.136f371b5f3f2ac
stdlib@go1.26.1
1.25.10
1
superorbital/cludod:0.0.2-alphad59732f61d6e
golang.org/x/net@v0.0.0-20220111093109-d55c255bac03
stdlib@go1.17.6
0.53.0
1.25.10
1
superque/smokeping-prober:v0.11.028ca636d1dee
golang.org/x/net@v0.51.0
stdlib@go1.26.1
0.53.0
1.25.10
1
supporttools/do-database-metrics-adapter:1.0.2ab55fd5a69c3
stdlib@go1.22.3
1.25.10
1
supporttools/go-redis-proxy:0.0.7cbd45f6b02b8
stdlib@go1.21.6
1.25.10
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.