StackRadar

CVE-2026-39820

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,940
of 17,790 indexed, latest versions
Container images
4,539
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatentation in consumeComment in net/mail

Carried by container images the latest versions of 3,940 of 17,790 indexed charts deploy, on 4,539 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,539
OSV records
DEBIAN-CVE-2026-39820GO-2026-4986
Also known as
BIT-golang-2026-39820

Charts affected

3,940 by stars
ChartLatestAffected imagesRadar Score
flyte-depsflyte1.16.81 of 3See more

flyte-deps flyte 1.16.8

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kubernetesui/dashboard:v2.2.0148991563e37
stdlib@go1.15.1
1.25.10

Open the chart page →

2,245
flyte-devboxflyte0.1.07 of 13See more

flyte-devbox flyte 0.1.0

7 of the 13 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controllerdigest-pinned0d5f740b4224
stdlib@go1.24.6
1.25.10
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhookdigest-pinned697668be7893
stdlib@go1.24.6
1.25.10
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned031408ec516f
stdlib@go1.24.3
1.25.10
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned3502bb5aa60f
stdlib@go1.24.3
1.25.10
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler-hpadigest-pinned7405faeb7636
stdlib@go1.24.3
1.25.10
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned5b93308a392c
stdlib@go1.24.3
1.25.10
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinned50831d9aaa69
stdlib@go1.24.3
1.25.10

Open the chart page →

4,678
csp-reporterfoomoVerified publisher2.2.01 of 1See more

csp-reporter foomo 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
foomo/csp-reporter:1.3.0e436da524785
stdlib@go1.18
1.25.10

Open the chart page →

1,408
forkliftforklift0.1.42 of 2See more

forklift forklift 0.1.4

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wuhan005/forklift:daemon4e6da210e449
stdlib@go1.19.8
1.25.10
wuhan005/forklift:controllerbfbe82d59850
stdlib@go1.19.8
1.25.10

Open the chart page →

1,814
ledgerformance1.2.01 of 1See more

ledger formance 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
stdlib@go1.18.10
1.25.10

Open the chart page →

4,650
forwardforward1.3.11 of 1See more

forward forward 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
udhos/forward:1.1.312e120d39fdb
stdlib@go1.20.5
1.25.10

Open the chart page →

2,212
maxscalefour-allportalVerified publisher4.1.162 of 3See more

maxscale four-allportal 4.1.16

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:10.6.12-debian-11-r1643a70df0e7c6
stdlib@go1.19.7
1.25.10
bitnamilegacy/mysqld-exporter:0.14.0-debian-11-r10304768b637c94
stdlib@go1.17.8
1.25.10

Open the chart page →

6,610
readium-lcpserverfpetr0.0.51 of 3See more

readium-lcpserver fpetr 0.0.5

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/fpetr/readium-lcp-server-docker-helm/lcpserver:1.9.0324f9b7b689c
stdlib@go1.22.0
1.25.10

Open the chart page →

1,373
readium-lsdserverfpetr0.0.11 of 2See more

readium-lsdserver fpetr 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/fpetr/readium-lcp-server-docker-helm/lsdserver:1.9.0cdba39e3f3d0
stdlib@go1.22.0
1.25.10

Open the chart page →

1,373
ff-testfrankframework0.7.61 of 2See more

ff-test frankframework 0.7.6

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:17-bookworm051f7b7b3abd
stdlib@go1.24.6
1.25.10

Open the chart page →

1,759
frank2examplefrankframework0.7.41 of 2See more

frank2example frankframework 0.7.4

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:17-bookworm051f7b7b3abd
stdlib@go1.24.6
1.25.10

Open the chart page →

1,759
free5gc-amffree5gc-amfVerified publisher0.1.31 of 1See more

free5gc-amf free5gc-amf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/amf:v3.4.31bc96ff5a2a6
stdlib@go1.21.8
1.25.10

Open the chart page →

902
free5gc-ausffree5gc-ausfVerified publisher0.1.31 of 1See more

free5gc-ausf free5gc-ausf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/ausf:v3.4.3687ff4daf5da
stdlib@go1.21.8
1.25.10

Open the chart page →

911
free5gc-chffree5gc-chfVerified publisher0.1.31 of 1See more

free5gc-chf free5gc-chf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/chf:v3.4.3e2a4dd98a4ed
stdlib@go1.21.8
1.25.10

Open the chart page →

1,003
free5gc-nrffree5gc-nrfVerified publisher0.1.31 of 1See more

free5gc-nrf free5gc-nrf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/nrf:v3.4.399e46b860efb
stdlib@go1.21.8
1.25.10

Open the chart page →

919
free5gc-nssffree5gc-nssfVerified publisher0.1.31 of 1See more

free5gc-nssf free5gc-nssf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/nssf:v3.4.3dfe8c68c04b4
stdlib@go1.21.8
1.25.10

Open the chart page →

911
free5gc-pcffree5gc-pcfVerified publisher0.1.31 of 1See more

free5gc-pcf free5gc-pcf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/pcf:v3.4.3f712e8ecd927
stdlib@go1.21.8
1.25.10

Open the chart page →

903
free5gc-smffree5gc-smfVerified publisher0.1.31 of 1See more

free5gc-smf free5gc-smf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/smf:v3.4.360e38baa4b10
stdlib@go1.21.8
1.25.10

Open the chart page →

918
free5gc-udmfree5gc-udmVerified publisher0.1.31 of 1See more

free5gc-udm free5gc-udm 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/udm:v3.4.32f68df062a50
stdlib@go1.21.8
1.25.10

Open the chart page →

911
free5gc-udrfree5gc-udrVerified publisher0.1.31 of 1See more

free5gc-udr free5gc-udr 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/udr:v3.4.3c0783bcdcbdc
stdlib@go1.21.8
1.25.10

Open the chart page →

919
free5gc-upffree5gc-upfVerified publisher0.1.31 of 1See more

free5gc-upf free5gc-upf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/upf:v3.4.3b6b362a39fdd
stdlib@go1.21.8
1.25.10

Open the chart page →

1,074
free5gc-webuifree5gc-webuiVerified publisher0.1.31 of 1See more

free5gc-webui free5gc-webui 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
free5gc/webui:v3.4.39adeb18492cb
stdlib@go1.21.8
1.25.10

Open the chart page →

1,256
powerdnsfsdrw080.1.31 of 4See more

powerdns fsdrw08 0.1.3

1 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
pschiffe/pdns-mysql:alpined196c796cafb
stdlib@go1.21.5
1.25.10

Open the chart page →

1,958
aptlyg0dscookie0.4.01 of 2See more

aptly g0dscookie 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
stdlib@go1.18.3
1.25.10

Open the chart page →

3,482
icinga2g0dscookie0.2.01 of 1See more

icinga2 g0dscookie 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
stdlib@go1.18.1
1.25.10

Open the chart page →

4,429
passboltg0dscookie0.5.22 of 2See more

passbolt g0dscookie 0.5.2

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mariadb:10.79a48ac9f196f
stdlib@go1.16.7
1.25.10
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
stdlib@go1.14.4
1.25.10

Open the chart page →

7,986
borgmaticgabe565Verified publisher0.10.11 of 1See more

borgmatic gabe565 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
stdlib@go1.23.5
1.25.10

Open the chart page →

2,438
castsponsorskipgabe565Verified publisher0.8.11 of 1See more

castsponsorskip gabe565 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
stdlib@go1.23.4
1.25.10

Open the chart page →

1,237
generic-device-plugingabe565Verified publisher0.1.31 of 1See more

generic-device-plugin gabe565 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:latestdc192e164c69
stdlib@go1.26.2
1.25.10

Open the chart page →

260
gotifygabe565Verified publisher0.4.01 of 1See more

gotify gabe565 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/gotify/server:2.6.104f4c4bb7cdd
stdlib@go1.23.3
1.25.10

Open the chart page →

763
hammondgabe565Verified publisher0.6.41 of 1See more

hammond gabe565 0.6.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.25.10

Open the chart page →

1,807
limogabe565Verified publisher0.8.01 of 1See more

limo gabe565 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/gabe565/limo:latest6dfdbc9853bb
stdlib@go1.20.12
1.25.10

Open the chart page →

1,330
matrimonygabe565Verified publisher0.7.01 of 1See more

matrimony gabe565 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/gabe565/matrimony:latestd39a9d7c3e1b
stdlib@go1.22.0
1.25.10

Open the chart page →

1,136
podgrabgabe565Verified publisher0.5.21 of 1See more

podgrab gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
stdlib@go1.15.2
1.25.10

Open the chart page →

2,401
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
stdlib@go1.19.8
1.25.10

Open the chart page →

13,250
smarter-device-managergabe565Verified publisher0.5.21 of 1See more

smarter-device-manager gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.11826b984e75d4
stdlib@go1.19.1
1.25.10

Open the chart page →

1,226
transsmutegabe565Verified publisher1.1.01 of 1See more

transsmute gabe565 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/gabe565/transsmute:latestc8ac95a30c31
stdlib@go1.24.1
1.25.10

Open the chart page →

801
guacamolegabibbo970.3.01 of 3See more

guacamole gabibbo97 0.3.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
stdlib@go1.24.6
1.25.10

Open the chart page →

6,437
galoygaloymoney0.34.74 of 24See more

galoy galoymoney 0.34.7

4 of the 24 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.25.10
oryd/hydra:v2.2.02c93beb5e5f2
stdlib@go1.21.5
1.25.10
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.25.10
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.25.10

Open the chart page →

8,700
galoy-depsgaloymoney0.10.208 of 9See more

galoy-deps galoymoney 0.10.20

8 of the 9 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
stdlib@go1.18.9
1.25.10
otel/opentelemetry-collector-k8s:0.111.032b3c8296dcc
stdlib@go1.23.2
1.25.10
quay.io/jetstack/cert-manager-cainjector:v1.14.39395dec77fcf
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-controller:v1.14.364adcb95ce09
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-startupapicheck:v1.14.3df8677135139
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
stdlib@go1.21.7
1.25.10
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
stdlib@go1.20.5
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

11,982
lndgaloymoney0.10.61 of 3See more

lnd galoymoney 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.25.10

Open the chart page →

2,161
monitoringgaloymoney0.12.215 of 6See more

monitoring galoymoney 0.12.21

5 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
stdlib@go1.23.1
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
stdlib@go1.23.2
1.25.10
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.10
quay.io/prometheus/prometheus:v2.55.0378f4e037035
stdlib@go1.23.2
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.25.10

Open the chart page →

5,310
galoygaloymoney20.34.74 of 24See more

galoy galoymoney2 0.34.7

4 of the 24 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.25.10
oryd/hydra:v2.2.02c93beb5e5f2
stdlib@go1.21.5
1.25.10
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.25.10
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.25.10

Open the chart page →

8,700
galoy-depsgaloymoney20.10.208 of 9See more

galoy-deps galoymoney2 0.10.20

8 of the 9 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
stdlib@go1.18.9
1.25.10
otel/opentelemetry-collector-k8s:0.111.032b3c8296dcc
stdlib@go1.23.2
1.25.10
quay.io/jetstack/cert-manager-cainjector:v1.14.39395dec77fcf
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-controller:v1.14.364adcb95ce09
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-startupapicheck:v1.14.3df8677135139
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
stdlib@go1.21.7
1.25.10
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
stdlib@go1.20.5
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

11,982
lndgaloymoney20.10.61 of 3See more

lnd galoymoney2 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.25.10

Open the chart page →

2,161
monitoringgaloymoney20.12.215 of 6See more

monitoring galoymoney2 0.12.21

5 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
stdlib@go1.23.1
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
stdlib@go1.23.2
1.25.10
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.10
quay.io/prometheus/prometheus:v2.55.0378f4e037035
stdlib@go1.23.2
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.25.10

Open the chart page →

5,310
gameserver-operatorgameserver-operator0.3.01 of 1See more

gameserver-operator gameserver-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/idebeijer/gameserver-operator:latest1b099cfe9e5e
stdlib@go1.25.7
1.25.10

Open the chart page →

376
pagesgary-pages1.0.01 of 3See more

pages gary-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,242
alertmanager-discordgeek-cookbookVerified publisher1.3.21 of 1See more

alertmanager-discord geek-cookbook 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
rogerrum/alertmanager-discord:1.0.3827593369625
stdlib@go1.17.4
1.25.10

Open the chart page →

1,045
anonaddygeek-cookbookVerified publisher6.0.01 of 1See more

anonaddy geek-cookbook 6.0.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
anonaddy/anonaddy:0.12.3957a95565166
stdlib@go1.18.3
1.25.10

Open the chart page →

4,789

Container images carrying it

4,539 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/mysql:8.4.2ac80b6e09e5b
stdlib@go1.18.2
1.25.10
2
library/mysql:9.7.2b2cf29815e62
stdlib@go1.24.6
1.25.10
2
library/nats:2.9.17-alpine1a7b320b2942
stdlib@go1.19.9
1.25.10
2
library/nats:2.10.7-alpine1bcddab51b80
stdlib@go1.21.5
1.25.10
2
library/nats:2.10.5-alpine85319e5e541b
stdlib@go1.21.4
1.25.10
2
library/nats:2.8.4-alpine988010f74b61
stdlib@go1.17.10
1.25.10
2
library/postgres:17-bookworm051f7b7b3abd
stdlib@go1.24.6
1.25.10
2
library/postgres:16.109f23e02d766
stdlib@go1.18.2
1.25.10
2
library/postgres:18.11090bc3a8ccf
stdlib@go1.24.6
1.25.10
2
library/postgres:16.24aea012537ed
stdlib@go1.18.2
1.25.10
2
library/postgres:18.06f3e42ad37de
stdlib@go1.24.6
1.25.10
2
library/postgres:9.6caddd35b05cd
stdlib@go1.16.7
1.25.10
2
library/postgres:16.4e62fbf9d3e2b
stdlib@go1.18.2
1.25.10
2
library/postgres:13-alpinefb9065b6e3e2
stdlib@go1.24.6
1.25.10
2
library/rabbitmq:4.1.0-management935b3f84c1e4
stdlib@go1.22.2
1.25.10
2
library/redis148bb5411c18
stdlib@go1.18.2
1.25.10
2
library/redis:7.2.3a7cee7c8178f
stdlib@go1.18.2
1.25.10
2
library/redmine:6.1.3-trixief474a901faec
stdlib@go1.24.6
1.25.10
2
library/traefik:v2.57d5a6ae66572
stdlib@go1.17.6
1.25.10
2
library/zookeeper:3.9.5f258365d4882
stdlib@go1.18.1
1.25.10
2
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.25.10
2
listmonk/listmonk:v2.1.0d2eac77ddfad
stdlib@go1.17.6
1.25.10
2
listmonk/listmonk:latest:v6.2.0f535d59e1499
stdlib@go1.26.1
1.25.10
2
louislam/uptime-kuma:2.3.29aeb4e51d038
stdlib@go1.20.5
1.25.10
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
stdlib@go1.20.5
1.25.10
2
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
stdlib@go1.24.5
1.25.10
2
maxrocketinternet/soti-mobicontrol-exporter:0.61a281b76efa3
stdlib@go1.14
1.25.10
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
stdlib@go1.15.2
1.25.10
2
mesosphere/kubectl:v1.35.0-alpineea01a9387771
stdlib@go1.25.5
1.25.10
2
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
stdlib@go1.15.5
1.25.10
2
minio/operator:v4.3.754393e03f3b2
stdlib@go1.17.4
1.25.10
2
moby/buildkit:v0.32.2-rootless504731e577c2
stdlib@go1.25.7
1.25.10
2
natsio/nats-account-server:1.0.0a3381560aab6
stdlib@go1.16.6
1.25.10
2
natsio/nats-box:0.11.09fbf7bf684e4
stdlib@go1.18.1
1.25.10
2
natsio/nats-server-config-reloader:0.21.110ff229eaf52
stdlib@go1.25.5
1.25.10
2
natsio/nats-server-config-reloader:0.7.2911ce7ed2f55
stdlib@go1.19
1.25.10
2
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
stdlib@go1.19.4
1.25.10
2
natsio/prometheus-nats-exporter:0.10.016048afb67a5
stdlib@go1.19
1.25.10
2
natsio/prometheus-nats-exporter:0.17.326c826662ac8
stdlib@go1.24.2
1.25.10
2
natsio/prometheus-nats-exporter:0.11.031c02aac089a
stdlib@go1.20.3
1.25.10
2
netapp/trident-protect-utils:v2.0.0cd0c18d8f9ec
stdlib@go1.24.12
1.25.10
2
obolnetwork/charon:v1.10.0278c7e2897b6
stdlib@go1.26.1
1.25.10
2
oliver006/redis_exporter:v1.9.04af75e9f16f6
stdlib@go1.14.4
1.25.10
2
opencloudeu/opencloud-rolling:2.1.0f9634bb04905
stdlib@go1.24.2
1.25.10
2
opencsghq/postgres:15.19b98600564e07
stdlib@go1.24.6
1.25.10
2
opendatacube/ows:latest668cbb41473c
stdlib@go1.22.2
1.25.10
2
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
stdlib@go1.24.5
1.25.10
2
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
stdlib@go1.19.3
1.25.10
2
openebs/node-disk-operator:2.1.06afe2123c457
stdlib@go1.19.3
1.25.10
2
openebs/provisioner-localpv:4.6.099f5116f5cb8
stdlib@go1.25.0
1.25.10
2

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.