StackRadar

CVE-2026-33814

Unscored

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,202
of 17,828 indexed, latest versions
Container images
4,829
deployed by those charts
Fix available
2 of 2
affected packages

Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net

Carried by container images the latest versions of 4,202 of 17,828 indexed charts deploy, on 4,829 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.104,668
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+220 more0.53.03,685
OSV records
GO-2026-4918
Also known as
BIT-golang-2026-33814

Charts affected

4,202 by stars
ChartLatestAffected imagesRadar Score
ghostmt1905028.25.12 of 3See more

ghost mt190502 8.25.1

2 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/ghost:6.25.12654b1e90413
stdlib@go1.24.6
1.25.10
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.10

Open the chart page →

5,040
keycloakmt1905021.4.61 of 3See more

keycloak mt190502 1.4.6

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

3,006
maddymt1905024.1.21 of 1See more

maddy mt190502 4.1.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
foxcpp/maddy:0.9.2a4b839985b9b
golang.org/x/net@v0.34.0
stdlib@go1.23.12
0.53.0
1.25.10

Open the chart page →

1,045
memosmt1905027.3.22 of 3See more

memos mt190502 7.3.2

2 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10
neosmemo/memos:0.26.23eefcc231141
golang.org/x/net@v0.49.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

2,665
minifluxmt1905021.1.62 of 3See more

miniflux mt190502 1.1.6

2 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:1886c951e05bf5
stdlib@go1.24.6
1.25.10
miniflux/miniflux:2.2.18a3ca6bbc1f74
golang.org/x/net@v0.52.0
stdlib@go1.26.1
0.53.0
1.25.10

Open the chart page →

2,313
nightscoutmt1905021.1.01 of 3See more

nightscout mt190502 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
stdlib@go1.21.12
1.25.10

Open the chart page →

6,695
open-webuimt1905022.3.101 of 3See more

open-webui mt190502 2.3.10

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,696
paperless-ngxmt1905027.6.142 of 4See more

paperless-ngx mt190502 7.6.14

2 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
stdlib@go1.24.4
1.25.10

Open the chart page →

12,302
umamimt1905028.1.41 of 3See more

umami mt190502 8.1.4

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

4,086
vaultwardenmt1905027.3.41 of 3See more

vaultwarden mt190502 7.3.4

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

4,828
vikunjamt1905027.1.22 of 3See more

vikunja mt190502 7.1.2

2 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10
vikunja/vikunja:0.24.6ed1f3ed467fe
golang.org/x/net@v0.27.0
stdlib@go1.23.4
0.53.0
1.25.10

Open the chart page →

3,039
mongodbmulti-chart-app0.1.01 of 1See more

mongodb multi-chart-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mongo:7b096b4cb9269
stdlib@go1.24.6
1.25.10

Open the chart page →

2,029
my-multi-chart-appmulti-chart-app0.1.01 of 2See more

my-multi-chart-app multi-chart-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mongo:7b096b4cb9269
stdlib@go1.24.6
1.25.10

Open the chart page →

3,994
multusmultusVerified publisher0.2.02 of 2See more

multus multus 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.1.409fdfb7ce090
golang.org/x/net@v0.23.0
stdlib@go1.23.4
0.53.0
1.25.10
ghcr.io/k8snetworkplumbingwg/multus-dynamic-networks-controller:v0.3.72a2bb32c0ea8
golang.org/x/net@v0.30.0
stdlib@go1.22.12
0.53.0
1.25.10

Open the chart page →

1,868
devops-demomungari-development-charts1.0.42 of 4See more

devops-demo mungari-development-charts 1.0.4

2 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
stdlib@go1.24.6
1.25.10
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.18.4
0.53.0
1.25.10

Open the chart page →

8,606
pagesmuthu-pages1.0.01 of 3See more

pages muthu-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,350
approuvezmvisonneau0.1.11 of 1See more

approuvez mvisonneau 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/mvisonneau/approuvez:v0.1.0441da62e6cb3
golang.org/x/net@v0.0.0-20190311183353-d8887717615a
stdlib@go1.15.6
0.53.0
1.25.10

Open the chart page →

1,979
unpollermvisonneau0.1.01 of 1See more

unpoller mvisonneau 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
golift/unifi-poller:v2.9.2585a29a06d05
golang.org/x/net@v0.15.0
stdlib@go1.21.0
0.53.0
1.25.10

Open the chart page →

1,191
ingress-nginxmxytest4.15.12 of 2See more

ingress-nginx mxytest 4.15.1

2 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
golang.org/x/net@v0.52.0
stdlib@go1.26.1
0.53.0
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.901038e7de14b
golang.org/x/net@v0.52.0
stdlib@go1.26.1
0.53.0
1.25.10

Open the chart page →

1,542
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
stdlib@go1.18
1.25.10

Open the chart page →

100,521
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
stdlib@go1.18
1.25.10

Open the chart page →

100,521
authmyaVerified publisher22.4.31 of 1See more

auth mya 22.4.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/net@v0.0.0-20190813141303-74dc4d7220e7
stdlib@go1.13.7
0.53.0
1.25.10

Open the chart page →

2,382
clickhousemyaVerified publisher0.2403.11 of 1See more

clickhouse mya 0.2403.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.2ed9640bfff07
stdlib@go1.19.10
1.25.10

Open the chart page →

3,640
cognativemyaVerified publisher0.2403.33 of 3See more

cognative mya 0.2403.3

3 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.2ed9640bfff07
stdlib@go1.19.10
1.25.10
grafana/grafana:10.4.0f9811e4e687f
golang.org/x/net@v0.20.0
stdlib@go1.21.8
0.53.0
1.25.10
otel/opentelemetry-collector-contrib:0.96.07ef2a2ff46b9
golang.org/x/net@v0.21.0
stdlib@go1.21.7
0.53.0
1.25.10

Open the chart page →

7,429
giteamyaVerified publisher23.12.51 of 1See more

gitea mya 23.12.5

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
gitea/gitea:1.21.6ac73e0da341f
golang.org/x/net@v0.20.0
stdlib@go1.21.7
0.53.0
1.25.10

Open the chart page →

3,438
redismyaVerified publisher22.4.101 of 2See more

redis mya 22.4.10

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
stdlib@go1.17.7
1.25.10

Open the chart page →

1,051
redis-queuemyaVerified publisher22.4.61 of 2See more

redis-queue mya 22.4.6

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
stdlib@go1.17.7
1.25.10

Open the chart page →

1,051
redis-raftmyaVerified publisher22.5.41 of 2See more

redis-raft mya 22.5.4

1 of the 2 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
stdlib@go1.17.7
1.25.10

Open the chart page →

1,051
myhelmappmyhelmapp0.1.11 of 1See more

myhelmapp myhelmapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
tobirachel/node-project3:v17d9f37154994
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
stdlib@go1.17.5
0.53.0
1.25.10

Open the chart page →

3,369
Practica_4_helmmy-heml-appVerified publisher0.1.03 of 7See more

Practica_4_helm my-heml-app 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
golang.org/x/net@v0.7.0
stdlib@go1.18.10
0.53.0
1.25.10
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.10
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.10

Open the chart page →

28,034
grafana-chartmy-personal-grafana0.1.01 of 1See more

grafana-chart my-personal-grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
golang.org/x/net@v0.51.0
stdlib@go1.25.7
0.53.0
1.25.10

Open the chart page →

745
influxdbmy-personal-influxdb20.1.01 of 1See more

influxdb my-personal-influxdb2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
golang.org/x/net@v0.38.0
stdlib@go1.18.2
0.53.0
1.25.10

Open the chart page →

3,913
phonebook-chartmy-phonebook-chart0.1.01 of 3See more

phonebook-chart my-phonebook-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.10

Open the chart page →

3,035
mychartmysqlweb0.1.01 of 1See more

mychart mysqlweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
qichenxu4pd/mysqlweb:1.2d758d41d9c6b
stdlib@go1.18.2
1.25.10

Open the chart page →

1,157
myweatherhelmmyweather1.3.111 of 7See more

myweatherhelm myweather 1.3.11

1 of the 7 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.25.10

Open the chart page →

18,270
fargate-sidecar-injectormziyaboVerified publisher0.1.51 of 1See more

fargate-sidecar-injector mziyabo 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
mziyabo/fargate-eks-sidecar-injector:latest3067dce17983
golang.org/x/net@v0.7.0
stdlib@go1.19.13
0.53.0
1.25.10

Open the chart page →

1,394
victoria-metrics-singlenaps0.0.61 of 1See more

victoria-metrics-single naps 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
victoriametrics/victoria-metrics:v1.34.7b50d5c0153f9
stdlib@go1.14.1
1.25.10

Open the chart page →

1,316
pagesnarain1.0.01 of 3See more

pages narain 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,350
pagesnarasimha-pages1.0.01 of 3See more

pages narasimha-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,350
traefik-forward-auth-openidnas-helm-chartsVerified publisher1.0.11 of 1See more

traefik-forward-auth-openid nas-helm-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:latestb364aa6a4117
golang.org/x/net@v0.0.0-20190930134127-c5a3c61f89f3
stdlib@go1.13.15
0.53.0
1.25.10

Open the chart page →

2,198
nats-kafkanatsVerified publisher0.15.41 of 1See more

nats-kafka nats 0.15.4

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
natsio/nats-kafka:1.4.2bb241956b0dc
golang.org/x/net@v0.18.0
stdlib@go1.20
0.53.0
1.25.10

Open the chart page →

1,732
nats-operatornatsVerified publisher0.8.31 of 1See more

nats-operator nats 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
natsio/nats-operator:0.8.31261dae38389
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.10
0.53.0
1.25.10

Open the chart page →

2,355
account-servernatz-operatorVerified publisher0.9.51 of 1See more

account-server natz-operator 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
ghcr.io/zeiss/natz-operator/account-server:0.9.5b380b5f17c3f
golang.org/x/net@v0.35.0
stdlib@go1.23.3
0.53.0
1.25.10

Open the chart page →

746
navidromenavidrome0.2.51 of 1See more

navidrome navidrome 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
deluan/navidrome:0.41.1fc4d8b6ad9f9
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
stdlib@go1.16.2
0.53.0
1.25.10

Open the chart page →

3,319
pagesnavin-brixton1.0.01 of 3See more

pages navin-brixton 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,350
incorencsaVerified publisher1.38.02 of 29See more

incore ncsa 1.38.0

2 of the 29 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
stdlib@go1.21.10
1.25.10
bitnamilegacy/mongodb:4.4.5e3c9d6b4bc92
stdlib@go1.15.8
1.25.10

Open the chart page →

15,562
jupyterhub-metricsncsaVerified publisher1.3.04 of 5See more

jupyterhub-metrics ncsa 1.3.0

4 of the 5 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
grafana/grafana:latestac461fb352ab
golang.org/x/net@v0.51.0
stdlib@go1.25.7
0.53.0
1.25.10
library/postgres:15-alpinea46e076249ce
stdlib@go1.24.6
1.25.10
timescale/timescaledb:latest-pg156343bdc87ca1
stdlib@go1.24.6
1.25.10
ghcr.io/ncsa/jupyterhub-metrics/collector:1.3.0dcb8c731bb1b
golang.org/x/net@v0.47.0
stdlib@go1.25.6
0.53.0
1.25.10

Open the chart page →

3,212
uptime-kumancsaVerified publisher1.7.31 of 1See more

uptime-kuma ncsa 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.5c74379ac4509
stdlib@go1.20.5
1.25.10

Open the chart page →

30,720
neo4j-reverse-proxyneo4j-helm-chartsVerified publisher2026.9.01 of 1See more

neo4j-reverse-proxy neo4j-helm-charts 2026.9.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
neo4j/helm-charts-reverse-proxy:2026.09.00c6c9ee5f7dc
stdlib@go1.24.13
1.25.10

Open the chart page →

467
redisneomanexlabsVerified publisher1.1.01 of 1See more

redis neomanexlabs 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-33814.

Container imageDigestPackageFixed in
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.25.10

Open the chart page →

1,435

Container images carrying it

4,829 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/nnstd/glauth:2.52e6e09fa77dd
golang.org/x/net@v0.41.0
stdlib@go1.24.5
0.53.0
1.25.10
1
ghcr.io/nnstd/seaweedfs-operator:1.43ebe2fd253f6
golang.org/x/net@v0.42.0
stdlib@go1.24.5
0.53.0
1.25.10
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
golang.org/x/net@v0.6.0
stdlib@go1.19.4
0.53.0
1.25.10
1
ghcr.io/nousefreak/clusterfan:v0.1.04ea05e2a7b57
stdlib@go1.17.5
1.25.10
1
ghcr.io/o0th/cert-manager-webhook-bunny:1.0.2fe7ce555a12d
golang.org/x/net@v0.34.0
stdlib@go1.23.5
0.53.0
1.25.10
1
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.24.6
0.53.0
1.25.10
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
golang.org/x/net@v0.38.0
stdlib@go1.24.7
0.53.0
1.25.10
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.53.0
1.25.10
1
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--powerpipe:latesta16ab5ca10a7
golang.org/x/net@v0.48.0
stdlib@go1.26.1
0.53.0
1.25.10
1
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--steampipe:latestc0c8d53df9f3
golang.org/x/net@v0.48.0
stdlib@go1.26.1
0.53.0
1.25.10
1
ghcr.io/okteto/backend:0.0.0-2026-08-2406f2f6f4ed76
golang.org/x/net@v0.47.0
0.53.0
1
ghcr.io/okteto/buildkit:0.0.0-2026-08-03:0.0.0-2026-08-17:0.0.0-2026-08-2414527ca5d2a9
golang.org/x/net@v0.35.0
stdlib@go1.25.7
0.53.0
1.25.10
1
ghcr.io/okteto/okteto:3.22.04585017f52f6
golang.org/x/net@v0.47.0
stdlib@go1.24.0
0.53.0
1.25.10
1
ghcr.io/oliverbaehler/cloudflare-tunnel-ingress-controller:0.2.30aec31e36d95
golang.org/x/net@v0.37.0
stdlib@go1.23.7
0.53.0
1.25.10
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
golang.org/x/net@v0.33.0
stdlib@go1.22.0
0.53.0
1.25.10
1
ghcr.io/omkar-shelke25/admission-webhook-no-latest:sha-33165455976a1d3236a
golang.org/x/net@v0.38.0
0.53.0
1
ghcr.io/onedr0p/exportarr:v1.6.160cf3d44aa0b
stdlib@go1.21.6
1.25.10
1
ghcr.io/openappsec/smartsync:latest580d68c50cc7
stdlib@go1.18.10
1.25.10
1
ghcr.io/openappsec/smartsync-shared-files:latest30c1daa0b33e
stdlib@go1.18.10
1.25.10
1
ghcr.io/openclarity/grype-server:v0.6.079412399f301
golang.org/x/net@v0.14.0
stdlib@go1.20.4
0.53.0
1.25.10
1
ghcr.io/openclarity/kubeclarity:v2.23.314450f52a708
golang.org/x/net@v0.19.0
stdlib@go1.21.6
0.53.0
1.25.10
1
ghcr.io/openclarity/kubeclarity-sbom-db:v2.23.3cef2b88bfc76
golang.org/x/net@v0.17.0
stdlib@go1.21.6
0.53.0
1.25.10
1
ghcr.io/openconfig/gnmic:0.45.0d422a9ebd4a2
golang.org/x/net@v0.50.0
stdlib@go1.24.12
0.53.0
1.25.10
1
ghcr.io/openfaas/cron-connector:0.7.0982498e8a41e
stdlib@go1.23.5
1.25.10
1
ghcr.io/openfaas/faas-netes:0.18.1224431adc8e2d
golang.org/x/net@v0.32.0
stdlib@go1.23.4
0.53.0
1.25.10
1
ghcr.io/openfaas/gateway:0.27.1382b15393116e
stdlib@go1.24.6
1.25.10
1
ghcr.io/openfaas/gateway:0.27.14ee0eaecc490c
stdlib@go1.24.13
1.25.10
1
ghcr.io/openfaasltd/federated-gateway:0.2.39066d7b3e6a1
stdlib@go1.21.5
1.25.10
1
ghcr.io/openfaasltd/gcp-pubsub-connector:0.0.18df071f5b719
golang.org/x/net@v0.35.0
stdlib@go1.23.8
0.53.0
1.25.10
1
ghcr.io/openfaasltd/headroom-controller:v0.0.467d587cc2c39
golang.org/x/net@v0.38.0
0.53.0
1
ghcr.io/openfaasltd/jetstream-queue-worker:0.3.37d96366e208b1
stdlib@go1.22.1
1.25.10
1
ghcr.io/openfaasltd/kafka-connector:0.7.160e58eac0e2f7
golang.org/x/net@v0.48.0
stdlib@go1.25.6
0.53.0
1.25.10
1
ghcr.io/openfaasltd/postgres-connector:0.2.3379e583a0a75
stdlib@go1.23.5
1.25.10
1
ghcr.io/openfaasltd/pro-builder:0.6.06c17297f9098
stdlib@go1.24.4
1.25.10
1
ghcr.io/openfaasltd/rabbitmq-connector:0.1.2349f7dca95ec
stdlib@go1.23.5
1.25.10
1
ghcr.io/openfaasltd/sns-connector:0.2.0e9ab76a4ec77
stdlib@go1.21.7
1.25.10
1
ghcr.io/openfaasltd/sqs-connector:0.3.4d44ed3b3128c
stdlib@go1.23.5
1.25.10
1
ghcr.io/openfaas/mqtt-connector:0.4.33311a30b8fe6
golang.org/x/net@v0.0.0-20200425230154-ff2c4b7c35a0
stdlib@go1.18.5
0.53.0
1.25.10
1
ghcr.io/openfaas/nats-connector:0.3.0315e57c0a8d8
stdlib@go1.18.5
1.25.10
1
ghcr.io/openfaas/queue-worker:0.14.2c18da04d70f6
stdlib@go1.23.4
1.25.10
1
ghcr.io/open-feature/flagd:v0.16.032234e63c1d0
golang.org/x/net@v0.52.0
0.53.0
1
ghcr.io/open-feature/flagd:v0.11.1a7ea52f87446
golang.org/x/net@v0.27.0
stdlib@go1.22.5
0.53.0
1.25.10
1
ghcr.io/open-feature/open-feature-operator:v0.9.3b37a442c0497
golang.org/x/net@v0.52.0
0.53.0
1
ghcr.io/openlit/openlit:1.24.02434560e8f0e
golang.org/x/net@v0.48.0
stdlib@go1.25.8
0.53.0
1.25.10
1
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
stdlib@go1.24.13
1.25.10
1
ghcr.io/openlit/openlit-operator:0.0.2457bb5ada68b
golang.org/x/net@v0.43.0
stdlib@go1.24.13
0.53.0
1.25.10
1
ghcr.io/openstack-exporter/openstack-exporter:1.7.0e5146a7dd515
golang.org/x/net@v0.10.0
stdlib@go1.18.10
0.53.0
1.25.10
1
ghcr.io/open-telemetry/demo:1.12.0-productcatalogservice008b9b662289
golang.org/x/net@v0.25.0
stdlib@go1.22.8
0.53.0
1.25.10
1
ghcr.io/open-telemetry/demo:1.12.0-checkoutservice380eccdc29e9
golang.org/x/net@v0.25.0
stdlib@go1.22.8
0.53.0
1.25.10
1
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
golang.org/x/net@v0.19.0
stdlib@go1.21.5
0.53.0
1.25.10
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.