StackRadar

CVE-2026-33814

Unscored

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,202
of 17,828 indexed, latest versions
Container images
4,829
deployed by those charts
Fix available
2 of 2
affected packages

Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net

Carried by container images the latest versions of 4,202 of 17,828 indexed charts deploy, on 4,829 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.104,668
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+220 more0.53.03,685
OSV records
GO-2026-4918
Also known as
BIT-golang-2026-33814

Charts affected

4,202 by stars
ChartLatestAffected imagesRadar Score
seldon-core-analyticsseldon1.17.14 of 8See more

seldon-core-analytics seldon 1.17.1

4 of the 8 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.14.3
0.53.0
1.25.10
prom/alertmanager:v0.20.07e4e9f7a0954
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
stdlib@go1.13.5
0.53.0
1.25.10
prom/prometheus:v2.18.15880ec936055
golang.org/x/net@v0.0.0-20200421231249-e086a090c8fd
stdlib@go1.14.2
0.53.0
1.25.10
prom/pushgateway:v1.0.1a5df60347882
stdlib@go1.13.5
1.25.10

Open the chart page →

10,753
postgresself-hosters-by-nightVerified publisher0.14.31 of 1See more

postgres self-hosters-by-night 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
stdlib@go1.24.6
1.25.10

Open the chart page →

2,445
semaphoresemaphore-light1.0.01 of 1See more

semaphore semaphore-light 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
semaphoreui/semaphore:latest3996804607eb
golang.org/x/net@v0.47.0
stdlib@go1.23.3
0.53.0
1.25.10

Open the chart page →

1,869
s3managersergeyshevch0.1.01 of 1See more

s3manager sergeyshevch 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/sergeyshevch/s3manager:feature_refactoringff59fcdf44eb
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.18
0.53.0
1.25.10

Open the chart page →

2,164
ansible-semaphoresergiotocaliniVerified publisher1.2.01 of 1See more

ansible-semaphore sergiotocalini 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
semaphoreui/semaphore:v2.9.645b50bc11833f
golang.org/x/net@v0.21.0
stdlib@go1.21.8
0.53.0
1.25.10

Open the chart page →

3,335
cortezasergiotocaliniVerified publisher1.0.11 of 1See more

corteza sergiotocalini 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.60bcdcbcd3c63
golang.org/x/net@v0.33.0
stdlib@go1.24.1
0.53.0
1.25.10

Open the chart page →

3,378
miniosergiotocaliniVerified publisher1.0.01 of 1See more

minio sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
golang.org/x/net@v0.12.0
stdlib@go1.19.11
0.53.0
1.25.10

Open the chart page →

4,352
rdpgwsergiotocaliniVerified publisher1.0.01 of 1See more

rdpgw sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bolkedebruin/rdpgw:masterc0dc0589373a
golang.org/x/net@v0.48.0
stdlib@go1.24.13
0.53.0
1.25.10

Open the chart page →

687
service-binding-operatorservice-binding-operator-helm-chart1.4.11 of 1See more

service-binding-operator service-binding-operator-helm-chart 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/redhat-developer/servicebinding-operatordigest-pinned16286ac84ddd
golang.org/x/net@v0.17.0
stdlib@go1.20.6
0.53.0
1.25.10

Open the chart page →

796
serviceexampleserviceexample0.1.03 of 5See more

serviceexample serviceexample 0.1.0

3 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/nats:2.9.20-alpined6c6ae7df4a0
stdlib@go1.19.11
1.25.10
natsio/nats-box:0.13.559cf2e949181
stdlib@go1.19.5
1.25.10
natsio/nats-server-config-reloader:0.11.0c3a755eab2cc
stdlib@go1.20.5
1.25.10

Open the chart page →

5,451
service-exampleservice-example-10.1.05 of 7See more

service-example service-example-1 0.1.0

5 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.10
library/nats:2.9.11-alpineccbe811b8575
stdlib@go1.19.4
1.25.10
natsio/nats-box:0.13.3c507bd7e3831
golang.org/x/net@v0.4.0
stdlib@go1.19.4
0.53.0
1.25.10
natsio/nats-server-config-reloader:0.8.06bdaceb63aa5
stdlib@go1.19.4
1.25.10
natsio/prometheus-nats-exporter:0.10.1bce728062c4f
stdlib@go1.19.3
1.25.10

Open the chart page →

9,169
serviceexampleserviceexample-chart0.3.01 of 4See more

serviceexample serviceexample-chart 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.10

Open the chart page →

4,124
serviceexampleservice-example-helm-chart0.1.01 of 4See more

serviceexample service-example-helm-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.10

Open the chart page →

2,367
service-exampleservice-example-jt0.1.14 of 9See more

service-example service-example-jt 0.1.1

4 of the 9 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/nats:2.12.2-alpine2d5fce3229ae
stdlib@go1.25.4
1.25.10
natsio/nats-box:0.19.28031d190c7ee
golang.org/x/net@v0.44.0
stdlib@go1.25.2
0.53.0
1.25.10
natsio/nats-server-config-reloader:0.20.147094fcae2f4
stdlib@go1.24.8
1.25.10
natsio/prometheus-nats-exporter:0.17.326c826662ac8
stdlib@go1.24.2
1.25.10

Open the chart page →

7,595
ccx-monitoringseveralnines0.6.215 of 7See more

ccx-monitoring severalnines 0.6.21

5 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
grafana/grafana:12.3.12175aaa91c96
golang.org/x/net@v0.46.0
stdlib@go1.25.5
0.53.0
1.25.10
victoriametrics/victoria-metrics:v1.120.0a1cb2f3dfd45
golang.org/x/net@v0.40.0
stdlib@go1.24.4
0.53.0
1.25.10
victoriametrics/vmalert:v1.96.0150cd08fde94
golang.org/x/net@v0.19.0
stdlib@go1.21.5
0.53.0
1.25.10
quay.io/prometheus/alertmanager:v0.26.0361db356b330
golang.org/x/net@v0.10.0
stdlib@go1.20.7
0.53.0
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.1af8220f53493
golang.org/x/net@v0.17.0
stdlib@go1.20.10
0.53.0
1.25.10

Open the chart page →

7,748
apache-shardingsphere-operator-chartsshardingsphere0.3.01 of 2See more

apache-shardingsphere-operator-charts shardingsphere 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
apache/shardingsphere-operator:0.3.0ffe68d6b99c0
golang.org/x/net@v0.10.0
stdlib@go1.19.10
0.53.0
1.25.10

Open the chart page →

1,699
first-chartshashkist-test0.1.01 of 3See more

first-chart shashkist-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:latestade067ae2fb1
stdlib@go1.24.6
1.25.10

Open the chart page →

3,103
shopwareshopware-storeVerified publisher2.1.21 of 5See more

shopware shopware-store 2.1.2

1 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.14.03232ae01d0ff
golang.org/x/net@v0.19.0
stdlib@go1.21.7
0.53.0
1.25.10

Open the chart page →

4,138
bffshortlink0.2.11 of 1See more

bff shortlink 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.gitlab.com/shortlink-org/shortlink/bff:latestf2194e526915
golang.org/x/net@v0.49.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

1,699
linkshortlink0.7.31 of 1See more

link shortlink 0.7.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.gitlab.com/shortlink-org/shortlink/link:latest86d87291ffd4
golang.org/x/net@v0.49.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

1,683
pagesshrutiujlan-pages1.0.01 of 3See more

pages shrutiujlan-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,350
hedgedocsi-gitops0.12.31 of 2See more

hedgedoc si-gitops 0.12.3

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:18.43a82e1f56c8f
stdlib@go1.24.6
1.25.10

Open the chart page →

2,710
nut-exportersi-gitops0.5.01 of 1See more

nut-exporter si-gitops 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/druggeri/nut_exporter:3.3.0276460d141c7
golang.org/x/net@v0.35.0
0.53.0

Open the chart page →

813
backendsignalen4.24.02 of 4See more

backend signalen 4.24.0

2 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
stdlib@go1.16.7
1.25.10
bitnamilegacy/rabbitmq:3.10.7-debian-11-r4cf93e2772250
stdlib@go1.16.7
1.25.10

Open the chart page →

11,775
alertmanagersignoz0.5.21 of 1See more

alertmanager signoz 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
signoz/alertmanager:0.5.07bc7de2e33c2
golang.org/x/net@v0.0.0-20210726213435-c6fcb2dbf985
stdlib@go1.14
0.53.0
1.25.10

Open the chart page →

2,182
postgresqlsignoz0.0.21 of 1See more

postgresql signoz 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
stdlib@go1.24.6
1.25.10

Open the chart page →

1,696
zookeepersignoz0.0.11 of 1See more

zookeeper signoz 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
signoz/zookeeper:3.7.1fcc4a3288154
stdlib@go1.21.2
1.25.10

Open the chart page →

2,923
local-static-provisionersig-storage-local-static-provisioner2.9.01 of 1See more

local-static-provisioner sig-storage-local-static-provisioner 2.9.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
stdlib@go1.25.5
1.25.10

Open the chart page →

1,276
ctlogsigstoreVerified publisher0.2.683 of 4See more

ctlog sigstore 0.2.68

3 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sigstore/scaffolding/createctconfig:v0.7.313a061734c5be
golang.org/x/net@v0.46.0
stdlib@go1.25.0
0.53.0
1.25.10
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
golang.org/x/net@v0.46.0
stdlib@go1.25.0
0.53.0
1.25.10
ghcr.io/sigstore/scaffolding/ct_server:v0.7.3166664ba563e7
golang.org/x/net@v0.46.0
stdlib@go1.25.0
0.53.0
1.25.10

Open the chart page →

2,752
ctlog-tilessigstoreVerified publisher0.1.71 of 1See more

ctlog-tiles sigstore 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/transparency-dev/tesseract/posix:v0.1.2b044edd23888
stdlib@go1.25.8
1.25.10

Open the chart page →

280
sigstore-probersigstoreVerified publisher0.3.11 of 1See more

sigstore-prober sigstore 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sigstore/sigstore-probers/prober:v1.0.1d1e914e6d6b9
stdlib@go1.26.0
1.25.10

Open the chart page →

431
trilliansigstoreVerified publisher0.3.204 of 5See more

trillian sigstore 0.3.20

4 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
gcr.io/trillian-opensource-ci/db_serverdigest-pinned2a685a38dd01
stdlib@go1.18.2
1.25.10
ghcr.io/sigstore/scaffolding/createdbdigest-pinned3cee6c78973b
golang.org/x/net@v0.46.0
stdlib@go1.25.0
0.53.0
1.25.10
ghcr.io/sigstore/scaffolding/trillian_log_serverdigest-pinned5a878e4e4f03
stdlib@go1.26.0
1.25.10
ghcr.io/sigstore/scaffolding/trillian_log_signerdigest-pinned28c5ff40963f
stdlib@go1.26.0
1.25.10

Open the chart page →

2,758
tsasigstoreVerified publisher2.1.31 of 1See more

tsa sigstore 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sigstore/timestamp-server:v2.1.08637f0482ed1
stdlib@go1.25.1
1.25.10

Open the chart page →

610
tufsigstoreVerified publisher0.1.321 of 1See more

tuf sigstore 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sigstore/scaffolding/serverdigest-pinnedae8eb69c7b70
golang.org/x/net@v0.46.0
stdlib@go1.25.0
0.53.0
1.25.10

Open the chart page →

769
counter-dhlsikademo0.3.01 of 3See more

counter-dhl sikademo 0.3.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ondrejsika/counter:latestd95eaeee2172
golang.org/x/net@v0.46.0
stdlib@go1.26.2
0.53.0
1.25.10

Open the chart page →

4,545
test-hello-worldsikademo0.1.01 of 1See more

test-hello-world sikademo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
stdlib@go1.26.2
1.25.10

Open the chart page →

1,218
hello-worldsikalabs0.17.01 of 1See more

hello-world sikalabs 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sikalabs/hello-world-server:latestcf8538bf6489
stdlib@go1.26.2
1.25.10

Open the chart page →

1,218
hello-world-examplesikalabs0.1.31 of 1See more

hello-world-example sikalabs 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
stdlib@go1.26.2
1.25.10

Open the chart page →

1,218
keycloak-configuratorsikalabs0.2.01 of 1See more

keycloak-configurator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
hashicorp/terraform:1.44dcb45513699
golang.org/x/net@v0.6.0
stdlib@go1.19.6
0.53.0
1.25.10

Open the chart page →

2,871
loggensikalabs0.1.01 of 1See more

loggen sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sikalabs/slu:v0.72.07bd267f30247
golang.org/x/net@v0.19.0
stdlib@go1.21.4
0.53.0
1.25.10

Open the chart page →

2,348
metrics-generatorsikalabs0.2.01 of 1See more

metrics-generator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sikalabs/slu:v0.34.0fdc0c6711add
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.17.6
0.53.0
1.25.10

Open the chart page →

2,382
olmsikalabs0.3.01 of 2See more

olm sikalabs 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned40d0363f4aa6
golang.org/x/net@v0.25.0
stdlib@go1.22.3
0.53.0
1.25.10

Open the chart page →

1,163
signpostsikalabs0.5.01 of 1See more

signpost sikalabs 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sikalabs/signpost:v0.7.0c8b0e21d61b4
stdlib@go1.24.6
1.25.10

Open the chart page →

316
bytesafe-cesimcube1.0.41 of 3See more

bytesafe-ce simcube 1.0.4

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bytesafe/bytesafe-ce:v1.0.4ee287384c005
golang.org/x/net@v0.10.0
stdlib@go1.20.5
0.53.0
1.25.10

Open the chart page →

1,502
keydbsinextraVerified publisher0.31.01 of 1See more

keydb sinextra 0.31.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
stdlib@go1.18.10
0.53.0
1.25.10

Open the chart page →

2,173
mongosqldsinextraVerified publisher0.3.71 of 1See more

mongosqld sinextra 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosqld:2.14.230b826375ed42
stdlib@go1.23.8
1.25.10

Open the chart page →

2,645
mongosyncsinextraVerified publisher0.4.01 of 1See more

mongosync sinextra 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
golang.org/x/net@v0.41.0
stdlib@go1.24.4
0.53.0
1.25.10

Open the chart page →

2,907
pgbouncersinextraVerified publisher0.17.01 of 1See more

pgbouncer sinextra 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
stdlib@go1.24.6
1.25.10

Open the chart page →

1,979
system-upgrade-controllersinextraVerified publisher0.6.11 of 1See more

system-upgrade-controller sinextra 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
rancher/system-upgrade-controller:v0.19.234fa058fe453
golang.org/x/net@v0.48.0
stdlib@go1.25.8
0.53.0
1.25.10

Open the chart page →

253
tailscalesinextraVerified publisher0.18.11 of 2See more

tailscale sinextra 0.18.1

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.k8s.io/coredns/coredns:v1.13.294caebb89dcf
golang.org/x/net@v0.47.0
stdlib@go1.25.5
0.53.0
1.25.10

Open the chart page →

1,082

Container images carrying it

4,829 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/chaos-mesh/chaos-mesh:v2.8.0091b906a0b13
golang.org/x/net@v0.44.0
stdlib@go1.24.4
0.53.0
1.25.10
1
ghcr.io/chaos-mesh/chaos-mesh:v2.5.1700bb42ac21d
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.18
0.53.0
1.25.10
1
ghcr.io/chaos-mesh/chaos-mesh:v2.7.28bc853c7414c
golang.org/x/net@v0.17.0
stdlib@go1.20.8
0.53.0
1.25.10
1
ghcr.io/chaos-mesh/chaos-mesh:v2.8.49e48285bb44c
golang.org/x/net@v0.52.0
0.53.0
1
ghcr.io/chaos-mesh/chaos-mesh:v2.8.3bdb31f3121a2
golang.org/x/net@v0.52.0
0.53.0
1
ghcr.io/chatwoot/pgvector:14.4.0-debian-11-r0f759f1510d09
stdlib@go1.16.7
1.25.10
1
ghcr.io/chronicleprotocol/challenger-go:0.1.2c8d5a3c0e966
stdlib@go1.22.12
1.25.10
1
ghcr.io/chronicleprotocol/gofer:0.613915d2e41e04
golang.org/x/net@v0.38.0
stdlib@go1.24.6
0.53.0
1.25.10
1
ghcr.io/chronicleprotocol/oracles-updates-exporter:0.0.4992d0e793af6
stdlib@go1.19.13
1.25.10
1
ghcr.io/chronicleprotocol/spectre:0.68.34e872bc016e8
golang.org/x/net@v0.47.0
stdlib@go1.25.5
0.53.0
1.25.10
1
ghcr.io/chronicleprotocol/spire:0.68.379df4fb20322
golang.org/x/net@v0.47.0
stdlib@go1.25.5
0.53.0
1.25.10
1
ghcr.io/chrxmvtik/gitlab-mr-conform:0.5.2b2eb79fc99cb
golang.org/x/net@v0.51.0
stdlib@go1.25.9
0.53.0
1.25.10
1
ghcr.io/cisco-open/cluster-registry-controller:v0.2.12937eff91df1e
golang.org/x/net@v0.7.0
stdlib@go1.18
0.53.0
1.25.10
1
ghcr.io/ckotzbauer/access-managerdd584fcda0ff
golang.org/x/net@v0.22.0
stdlib@go1.22.1
0.53.0
1.25.10
1
ghcr.io/ckotzbauer/chekrf299baf467b5
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
stdlib@go1.17.3
0.53.0
1.25.10
1
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
golang.org/x/net@v0.23.0
stdlib@go1.23.7
0.53.0
1.25.10
1
ghcr.io/cleanuparr/cleanuparr:2.10.68136c3beda7a
stdlib@go1.22.2
1.25.10
1
ghcr.io/cloudflare/ebpf_exporter:v2.3.075370b2ec2bb
stdlib@go1.21.5
1.25.10
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.53.0
1.25.10
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
stdlib@go1.13.15
0.53.0
1.25.10
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd7
stdlib@go1.14.7
0.53.0
1.25.10
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.53.0
1.25.10
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.7
0.53.0
1.25.10
1
ghcr.io/cloudnative-pg/cloudnative-pg:1.28.034198e85b6e6
golang.org/x/net@v0.47.0
stdlib@go1.25.5
0.53.0
1.25.10
1
ghcr.io/cloudnative-pg/cloudnative-pg:1.17.14dd365800b62
golang.org/x/net@v0.0.0-20221002022538-bcab6841153b
stdlib@go1.18.6
0.53.0
1.25.10
1
ghcr.io/cloudnative-pg/cloudnative-pg:1.21.19f707d91de1c
golang.org/x/net@v0.17.0
stdlib@go1.21.3
0.53.0
1.25.10
1
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
stdlib@go1.16.7
1.25.10
1
ghcr.io/cloudscript-technology/dumpscript:v0.0.42-alpine-edgefce5b6fd161c
golang.org/x/net@v0.47.0
stdlib@go1.26.2
0.53.0
1.25.10
1
ghcr.io/cloudscript-technology/k8s-monitoring-app:v0.0.25cab66a6b3574
golang.org/x/net@v0.38.0
stdlib@go1.24.10
0.53.0
1.25.10
1
ghcr.io/cloudtty/cloudshell:v0.8.1023e8d178e02c
golang.org/x/net@v0.45.0
stdlib@go1.25.2
0.53.0
1.25.10
1
ghcr.io/cloudtty/cloudshell-operator:v0.8.1014f036e33ef1
golang.org/x/net@v0.25.0
stdlib@go1.21.11
0.53.0
1.25.10
1
ghcr.io/clusternet/clusternet-controller-manager:v1.0.02ce077d3d02d
golang.org/x/net@v0.42.0
stdlib@go1.23.8
0.53.0
1.25.10
1
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
golang.org/x/net@v0.42.0
stdlib@go1.23.8
0.53.0
1.25.10
1
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
golang.org/x/net@v0.42.0
stdlib@go1.23.8
0.53.0
1.25.10
1
ghcr.io/clusterpedia-io/clusterpedia/apiserver:v0.6.03d089d9078f8
stdlib@go1.19.4
1.25.10
1
ghcr.io/clusterpedia-io/clusterpedia/clustersynchro-manager:v0.6.082cc9a77f6d6
stdlib@go1.19.4
1.25.10
1
ghcr.io/clusterpedia-io/clusterpedia/controller-manager:v0.6.081669df338e0
stdlib@go1.19.4
1.25.10
1
ghcr.io/cmacrae/kove:v0.2.0185bfaae750c
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.17
0.53.0
1.25.10
1
ghcr.io/cmacrae/kove:v0.1.0db1244edefc8
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.16
0.53.0
1.25.10
1
ghcr.io/cncf/clowarden/dbmigrator:v0.2.3c022fd42de45
stdlib@go1.25.3
1.25.10
1
ghcr.io/cncf/gitvote/dbmigrator:v1.5.0f1e7efe440da
stdlib@go1.25.3
1.25.10
1
ghcr.io/cndoit18/lxcfs-agent:latest:v0.2.8154741f8596e
golang.org/x/net@v0.38.0
stdlib@go1.24.1
0.53.0
1.25.10
1
ghcr.io/cohdi/dynamic-device-scaler:v0.2.2b487e1d74632
golang.org/x/net@v0.49.0
0.53.0
1
ghcr.io/comet-ml/opik/opik-python-backend:2.2.723345830b0178
golang.org/x/net@v0.47.0
stdlib@go1.25.8
0.53.0
1.25.10
1
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10
1
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10
1
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10
1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10
1
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10
1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.