StackRadar

CVE-2026-33814

Unscored

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,202
of 17,828 indexed, latest versions
Container images
4,829
deployed by those charts
Fix available
2 of 2
affected packages

Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net

Carried by container images the latest versions of 4,202 of 17,828 indexed charts deploy, on 4,829 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.104,668
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+220 more0.53.03,685
OSV records
GO-2026-4918
Also known as
BIT-golang-2026-33814

Charts affected

4,202 by stars
ChartLatestAffected imagesRadar Score
tyk-stacktyk-helm5.3.03 of 7See more

tyk-stack tyk-helm 5.3.0

3 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
tykio/tyk-k8s-bootstrap-post:v2.2.055b4d31c7a01
golang.org/x/net@v0.23.0
stdlib@go1.22.7
0.53.0
1.25.10
tykio/tyk-k8s-bootstrap-pre-delete:v2.2.01489b58f642b
golang.org/x/net@v0.23.0
stdlib@go1.22.7
0.53.0
1.25.10
tykio/tyk-k8s-bootstrap-pre-install:v2.2.0205215b815a4
stdlib@go1.22.7
1.25.10

Open the chart page →

3,193
typhoontyphoonVerified publisher0.2.32 of 2See more

typhoon typhoon 0.2.3

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/zeiss/typhoon/controller:0.2.34fdf4edfda45
golang.org/x/net@v0.35.0
stdlib@go1.24.0
0.53.0
1.25.10
ghcr.io/zeiss/typhoon/typhoon-webhook:0.2.378f9b82050bc
golang.org/x/net@v0.35.0
stdlib@go1.24.0
0.53.0
1.25.10

Open the chart page →

1,691
deep-learning-toolsuninettsigma29.1.21 of 3See more

deep-learning-tools uninettsigma2 9.1.2

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
golang.org/x/net@v0.51.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

1,572
desktop-vncuninettsigma22.0.21 of 2See more

desktop-vnc uninettsigma2 2.0.2

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
golang.org/x/net@v0.51.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

476
jupyteruninettsigma21.1.41 of 2See more

jupyter uninettsigma2 1.1.4

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
golang.org/x/net@v0.51.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

476
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.301249fc292e84
golang.org/x/net@v0.23.0
stdlib@go1.22.9
0.53.0
1.25.10

Open the chart page →

8,717
miniouninettsigma21.2.01 of 1See more

minio uninettsigma2 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
golang.org/x/net@v0.1.0
stdlib@go1.19.2
0.53.0
1.25.10

Open the chart page →

4,998
rstudiouninettsigma21.3.61 of 3See more

rstudio uninettsigma2 1.3.6

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
golang.org/x/net@v0.51.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

847
sparkuninettsigma21.1.41 of 3See more

spark uninettsigma2 1.1.4

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
golang.org/x/net@v0.51.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

847
agent-sandbox-controllerunique-oci-agent-sandbox-controller1.0.11 of 2See more

agent-sandbox-controller unique-oci-agent-sandbox-controller 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.k8s.io/agent-sandbox/sandbox-router-go:v1.0.125b1a0939630
stdlib@go1.26.2
1.25.10

Open the chart page →

174
kenerunxwaresVerified publisher2026.2.51 of 1See more

kener unxwares 2026.2.5

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
stdlib@go1.20.7
1.25.10

Open the chart page →

5,283
opencloudunxwaresVerified publisher0.2.32 of 13See more

opencloud unxwares 0.2.3

2 of the 13 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:alpine77f585114c32
stdlib@go1.24.6
1.25.10
opencloudeu/opencloud-rolling:2.1.0f9634bb04905
golang.org/x/net@v0.38.0
stdlib@go1.24.2
0.53.0
1.25.10

Open the chart page →

44,581
upcloud-csiupcloud-csiVerified publisher1.18.01 of 7See more

upcloud-csi upcloud-csi 1.18.0

1 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-resizer:v2.2.0a2d40c1c3ccb
golang.org/x/net@v0.49.0
0.53.0

Open the chart page →

1,924
phonebook-chartusuladams2Verified publisher0.2.11 of 3See more

phonebook-chart usuladams2 0.2.1

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.10

Open the chart page →

3,179
kiamuswitch6.1.21 of 1See more

kiam uswitch 6.1.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/uswitch/kiam:v4.0be3a5846922d
golang.org/x/net@v0.0.0-20201216054612-986b41b23924
stdlib@go1.13.8
0.53.0
1.25.10

Open the chart page →

2,973
utho-app-operator-chartutho-operatorVerified publisher0.1.61 of 2See more

utho-app-operator-chart utho-operator 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
utho/utho-app-operator:0.1.46e8a690e8b7a
golang.org/x/net@v0.26.0
stdlib@go1.22.8
0.53.0
1.25.10

Open the chart page →

491
gohttpserverutkuozdemirVerified publisher0.2.01 of 1See more

gohttpserver utkuozdemir 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
codeskyblue/gohttpserver:latestcaa862590e34
golang.org/x/net@v0.0.0-20201021035429-f5854403a974
stdlib@go1.16.3
0.53.0
1.25.10

Open the chart page →

1,899
transmission-exporterutkuozdemirVerified publisher1.1.01 of 1See more

transmission-exporter utkuozdemir 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
metalmatze/transmission-exporter:0.3.090d6acb6d47d
stdlib@go1.13
1.25.10

Open the chart page →

1,647
proxyv2flyVerified publisher0.0.61 of 1See more

proxy v2fly 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
v2fly/v2fly-core:latestd06727b221fe
golang.org/x/net@v0.46.0
stdlib@go1.24.2
0.53.0
1.25.10

Open the chart page →

1,436
vals-operatorvals-operatorVerified publisher0.8.11 of 1See more

vals-operator vals-operator 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/digitalis-io/vals-operator:v0.8.17c776499b8c9
golang.org/x/net@v0.49.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

730
vault-raft-snapshot-agentvault-raft-snapshot-agentVerified publisher0.6.91 of 1See more

vault-raft-snapshot-agent vault-raft-snapshot-agent 0.6.9

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
golang.org/x/net@v0.38.0
stdlib@go1.23.10
0.53.0
1.25.10

Open the chart page →

1,267
vault-sync-operatorvault-sync-operatorVerified publisher0.1.11 of 1See more

vault-sync-operator vault-sync-operator 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/danieldonoghue/vault-sync-operator:v0.0.1-beta.38d7ec69a193c
golang.org/x/net@v0.52.0
stdlib@go1.25.9
0.53.0
1.25.10

Open the chart page →

277
evolution-apivcnngrVerified publisher1.0.01 of 5See more

evolution-api vcnngr 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
evoapicloud/evolution-api:latest966625532d90
stdlib@go1.23.12
1.25.10

Open the chart page →

3,764
openldap-havcnngrVerified publisher1.0.01 of 3See more

openldap-ha vcnngr 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
golang.org/x/net@v0.0.0-20201010224723-4f7140c49acb
stdlib@go1.15.5
0.53.0
1.25.10

Open the chart page →

5,517
simple-prima-notavcnngrVerified publisher0.5.31 of 4See more

simple-prima-nota vcnngr 0.5.3

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:16-alpine721873c34ceb
stdlib@go1.24.6
1.25.10

Open the chart page →

4,892
devportalveecode-platform-nextVerified publisher0.1.231 of 1See more

devportal veecode-platform-next 0.1.23

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
veecode/devportaldigest-pinneda72cf5cb47b8
golang.org/x/net@v0.48.0
0.53.0

Open the chart page →

1,853
velero-clientvelero-clientVerified publisher1.4.21 of 1See more

velero-client velero-client 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/velero-client/velero-client:1.4.203015f863a3e
golang.org/x/net@v0.49.0
0.53.0

Open the chart page →

548
velocityvelocity1.0.01 of 2See more

velocity velocity 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.10

Open the chart page →

1,001
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10

Open the chart page →

7,518
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10

Open the chart page →

7,536
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10

Open the chart page →

7,439
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
stdlib@go1.13.10
0.53.0
1.25.10

Open the chart page →

7,439
homarrvhdirkVerified publisher0.1.51 of 1See more

homarr vhdirk 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:lateste103abadfb52
stdlib@go1.22.5
1.25.10

Open the chart page →

2,805
scrutinyvhdirkVerified publisher0.1.31 of 1See more

scrutiny vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
stdlib@go1.20.14
0.53.0
1.25.10

Open the chart page →

4,433
bugsinkvictorlane0.3.71 of 2See more

bugsink victorlane 0.3.7

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mariadb:12.0-noble607835cd628b
stdlib@go1.24.6
1.25.10

Open the chart page →

4,219
n8nvictorlane1.0.181 of 1See more

n8n victorlane 1.0.18

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
n8nio/n8n:1.115.1ed16e560c40e
stdlib@go1.24.6
1.25.10

Open the chart page →

6,507
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
stdlib@go1.21.7
0.53.0
1.25.10

Open the chart page →

67,865
pagesvictor-pages1.0.01 of 3See more

pages victor-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,350
kube-monitoring-telegram-botviento-repository1.0.01 of 1See more

kube-monitoring-telegram-bot viento-repository 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.4
0.53.0
1.25.10

Open the chart page →

7,928
vineyard-operatorvineyardVerified publisher0.24.22 of 2See more

vineyard-operator vineyard 0.24.2

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
vineyardcloudnative/vineyard-operator:latest9d419aa18faa
golang.org/x/net@v0.23.0
stdlib@go1.19.13
0.53.0
1.25.10
ghcr.io/v6d-io/v6d/kube-rbac-proxy:v0.13.0a2523c532c0c
golang.org/x/net@v0.0.0-20220624214902-1bab6f366d9e
stdlib@go1.18.3
0.53.0
1.25.10

Open the chart page →

4,573
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
stdlib@go1.17.8
1.25.10

Open the chart page →

7,892
ciliumvks-helm-chartsVerified publisher1.17.143 of 3See more

cilium vks-helm-charts 1.17.14

3 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
golang.org/x/net@v0.47.0
stdlib@go1.25.8
0.53.0
1.25.10
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
golang.org/x/net@v0.49.0
stdlib@go1.25.8
0.53.0
1.25.10
quay.io/cilium/operator-generic:v1.17.14773886ec9337
golang.org/x/net@v0.47.0
stdlib@go1.25.8
0.53.0
1.25.10

Open the chart page →

4,247
corednsvks-helm-chartsVerified publisher1.45.01 of 1See more

coredns vks-helm-charts 1.45.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
coredns/coredns:1.13.19b9128672209
golang.org/x/net@v0.45.0
stdlib@go1.25.2
0.53.0
1.25.10

Open the chart page →

923
vm-console-proxyvm-console-proxyVerified publisher0.2.01 of 1See more

vm-console-proxy vm-console-proxy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/kubevirt/vm-console-proxy:v0.8.08d6b4b6e99bd
golang.org/x/net@v0.34.0
stdlib@go1.22.4
0.53.0
1.25.10

Open the chart page →

646
go-devvoid-xmh1.0.11 of 1See more

go-dev void-xmh 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
voidxmh/golang:1.19-alpine-dev423c6195fab2
stdlib@go1.19
1.25.10

Open the chart page →

1,155
muthurvojtechpastyrikVerified publisher0.10.01 of 1See more

muthur vojtechpastyrik 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/vojtechpastyrik/muthur:0.10.0b5a06a6e13b9
golang.org/x/net@v0.51.0
stdlib@go1.26.1
0.53.0
1.25.10

Open the chart page →

320
muthur-collectorvojtechpastyrikVerified publisher0.11.01 of 1See more

muthur-collector vojtechpastyrik 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/vojtechpastyrik/muthur-collector:0.11.00a580fe3a032
golang.org/x/net@v0.51.0
stdlib@go1.26.1
0.53.0
1.25.10

Open the chart page →

320
volantmqvolantmq0.1.21 of 1See more

volantmq volantmq 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
volantmq/volantmq:v0.4.0-rc.69bfe7857ebc3
stdlib@go1.13.6
1.25.10

Open the chart page →

2,551
volcanovolcano-sh1.15.23 of 3See more

volcano volcano-sh 1.15.2

3 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
volcanosh/vc-controller-manager:v1.15.26a6bc2560d51
stdlib@go1.25.0
1.25.10
volcanosh/vc-scheduler:v1.15.2afab36286a17
stdlib@go1.25.0
1.25.10
volcanosh/vc-webhook-manager:v1.15.22fff65aad011
golang.org/x/net@v0.47.0
stdlib@go1.25.0
0.53.0
1.25.10

Open the chart page →

1,542
postgresappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,696

Container images carrying it

4,829 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/fluxerapp/fluxer-static:2026.812.125337cfe98ae544df
golang.org/x/net@v0.42.0
stdlib@go1.25.0
0.53.0
1.25.10
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
stdlib@go1.20.12
1.25.10
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
stdlib@go1.23.8
1.25.10
1
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
golang.org/x/net@v0.0.0-20220927171203-f486391704dc
stdlib@go1.19.1
0.53.0
1.25.10
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
golang.org/x/net@v0.4.0
stdlib@go1.18.10
0.53.0
1.25.10
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
golang.org/x/net@v0.41.0
stdlib@go1.24.6
0.53.0
1.25.10
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
stdlib@go1.23.8
1.25.10
1
ghcr.io/foxcpp/maddy:0.9.5de42151adff6
golang.org/x/net@v0.34.0
stdlib@go1.23.12
0.53.0
1.25.10
1
ghcr.io/fpetr/readium-lcp-server-docker-helm/lcpserver:1.9.0324f9b7b689c
golang.org/x/net@v0.17.0
stdlib@go1.22.0
0.53.0
1.25.10
1
ghcr.io/fpetr/readium-lcp-server-docker-helm/lsdserver:1.9.0cdba39e3f3d0
golang.org/x/net@v0.17.0
stdlib@go1.22.0
0.53.0
1.25.10
1
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
stdlib@go1.18.3
1.25.10
1
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
stdlib@go1.18.1
0.53.0
1.25.10
1
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
stdlib@go1.24.0
1.25.10
1
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
golang.org/x/net@v0.32.0
stdlib@go1.23.4
0.53.0
1.25.10
1
ghcr.io/gabe565/domain-watch:latest34c5a1e351d6
golang.org/x/net@v0.36.0
stdlib@go1.24.1
0.53.0
1.25.10
1
ghcr.io/gabe565/limo:latest6dfdbc9853bb
stdlib@go1.20.12
1.25.10
1
ghcr.io/gabe565/matrimony:latestd39a9d7c3e1b
stdlib@go1.22.0
1.25.10
1
ghcr.io/gabe565/transsmute:latestc8ac95a30c31
golang.org/x/net@v0.38.0
stdlib@go1.24.1
0.53.0
1.25.10
1
ghcr.io/geek-cookbook/webhook-receiver:2.8.172e7e77f8091
golang.org/x/net@v0.15.0
stdlib@go1.21.3
0.53.0
1.25.10
1
ghcr.io/georgmangold/console:v1.8.158f4f180aa6e
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.53.0
1.25.10
1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
stdlib@go1.19.8
1.25.10
1
ghcr.io/gijsvandulmen/k8qu:1.4e897b18db13d
golang.org/x/net@v0.26.0
stdlib@go1.22.6
0.53.0
1.25.10
1
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
golang.org/x/net@v0.43.0
stdlib@go1.25.4
0.53.0
1.25.10
1
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
golang.org/x/net@v0.44.0
stdlib@go1.25.4
0.53.0
1.25.10
1
ghcr.io/glassflow/glassflow-etl-be:v3.2.020f066d0f631
golang.org/x/net@v0.52.0
stdlib@go1.25.0
0.53.0
1.25.10
1
ghcr.io/glassflow/glassflow-etl-migration:v3.2.07db1a1bf3dae
golang.org/x/net@v0.47.0
stdlib@go1.25.4
0.53.0
1.25.10
1
ghcr.io/glassflow/kafka-kerberos-gateway:latest2ae01c524a6e
stdlib@go1.21.13
1.25.10
1
ghcr.io/glauth/glauth:v2.5.209c782ca5984
golang.org/x/net@v0.17.0
stdlib@go1.25.0
0.53.0
1.25.10
1
ghcr.io/gnana997/periscope:1.1.621b284fb00f2
stdlib@go1.26.2
1.25.10
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
golang.org/x/net@v0.47.0
stdlib@go1.25.5
0.53.0
1.25.10
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.53.0
1.25.10
1
ghcr.io/gochain/rpc-proxy/rpc-proxy:latestca01f5ab95f7
golang.org/x/net@v0.38.0
stdlib@go1.23.11
0.53.0
1.25.10
1
ghcr.io/gomenhashai/gomenhashai:v1.3.36f031172a5ec
golang.org/x/net@v0.49.0
stdlib@go1.26.0
0.53.0
1.25.10
1
ghcr.io/gotify/server:2.6.104f4c4bb7cdd
golang.org/x/net@v0.25.0
stdlib@go1.23.3
0.53.0
1.25.10
1
ghcr.io/gotway/gotway:v0.0.137ed73c1979ee
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.18.3
0.53.0
1.25.10
1
ghcr.io/grafana/alloy-operator:1.3.02088dcb22aaa
golang.org/x/net@v0.41.0
stdlib@go1.24.5
0.53.0
1.25.10
1
ghcr.io/grafana/alloy-operator:1.7.02ce23f948e02
golang.org/x/net@v0.46.0
stdlib@go1.24.10
0.53.0
1.25.10
1
ghcr.io/grafana/alloy-operator:1.8.1ae85d68749c7
golang.org/x/net@v0.49.0
stdlib@go1.25.8
0.53.0
1.25.10
1
ghcr.io/grafana/grafana-operator:v5.18.00af2faec9d6f
golang.org/x/net@v0.38.0
stdlib@go1.24.2
0.53.0
1.25.10
1
ghcr.io/grafana/grafana-operator:v5.22.2d45fc24e8f43
golang.org/x/net@v0.51.0
stdlib@go1.26.1
0.53.0
1.25.10
1
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
golang.org/x/net@v0.30.0
stdlib@go1.24.9
0.53.0
1.25.10
1
ghcr.io/grafana/tempo-operator/tempo-operator:v0.4.02627be646391
golang.org/x/net@v0.12.0
stdlib@go1.21.0
0.53.0
1.25.10
1
ghcr.io/grycap/oscar:latest0c58ff972451
golang.org/x/net@v0.51.0
0.53.0
1
ghcr.io/gurucomputing/headscale-ui:2026.03.17015f5ba04bcb
golang.org/x/net@v0.42.0
stdlib@go1.25.8
0.53.0
1.25.10
1
ghcr.io/haedalwang/kubescout:0.1.107d51f838f0d
golang.org/x/net@v0.48.0
stdlib@go1.25.5
0.53.0
1.25.10
1
ghcr.io/haydercyber/secrets-bridge:0.2.04709f1bb3039
golang.org/x/net@v0.47.0
stdlib@go1.24.13
0.53.0
1.25.10
1
ghcr.io/hay-kot/homebox:v0.9.2e6e0fbd7cca9
golang.org/x/net@v0.9.0
stdlib@go1.20.4
0.53.0
1.25.10
1
ghcr.io/heimops/mimir-operator:latest4e1a3ef1fe82
golang.org/x/net@v0.17.0
stdlib@go1.24.13
0.53.0
1.25.10
1
ghcr.io/helm/chartmuseum:v0.16.071d1f1c0179e
golang.org/x/net@v0.10.0
stdlib@go1.20.4
0.53.0
1.25.10
1
ghcr.io/helm/chartmuseum:v0.14.0878ef6a31fa0
golang.org/x/net@v0.0.0-20220121210141-e204ce36a2ba
stdlib@go1.17.6
0.53.0
1.25.10
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.