StackRadar

CVE-2026-39820

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,939
of 17,787 indexed, latest versions
Container images
4,537
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatentation in consumeComment in net/mail

Carried by container images the latest versions of 3,939 of 17,787 indexed charts deploy, on 4,537 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,537
OSV records
DEBIAN-CVE-2026-39820GO-2026-4986
Also known as
BIT-golang-2026-39820

Charts affected

3,939 by stars
ChartLatestAffected imagesRadar Score
authz-pdplabs64io-helm-chartsVerified publisher0.6.01 of 1See more

authz-pdp labs64io-helm-charts 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/cerbos/cerbos:0.51.08d35a64e4a99
stdlib@go1.25.6
1.25.10

Open the chart page →

800
checkoutlabs64io-helm-chartsVerified publisher0.8.01 of 3See more

checkout labs64io-helm-charts 0.8.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,638
payment-gatewaylabs64io-helm-chartsVerified publisher0.8.01 of 2See more

payment-gateway labs64io-helm-charts 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

2,708
lagoon-remotelagoon-chartsVerified publisher0.106.01 of 1See more

lagoon-remote lagoon-charts 0.106.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
stdlib@go1.24.3
1.25.10

Open the chart page →

2,113
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
stdlib@go1.13.10
1.25.10

Open the chart page →

7,510
lgtmlgtmVerified publisher0.27.01 of 9See more

lgtm lgtm 0.27.0

1 of the 9 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
stdlib@go1.25.7
1.25.10

Open the chart page →

1,004
lgtm-stacklgtm-stackVerified publisher0.1.33 of 8See more

lgtm-stack lgtm-stack 0.1.3

3 of the 8 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/grafana:13.1.0121a7a9ece6d
stdlib@go1.25.7
1.25.10
minio/mc:RELEASE.2024-01-16T16-06-34Z591b097ea2d4
stdlib@go1.21.6
1.25.10
minio/minio:RELEASE.2024-01-18T22-51-28Z551682a57a94
stdlib@go1.21.6
1.25.10

Open the chart page →

5,614
keptn-cert-managerlifecycle-toolkitVerified publisher0.3.01 of 1See more

keptn-cert-manager lifecycle-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/keptn/certificate-operator:v3.0.0b82064b0e339
stdlib@go1.23.3
1.25.10

Open the chart page →

507
keptn-lifecycle-operatorlifecycle-toolkitVerified publisher0.6.01 of 1See more

keptn-lifecycle-operator lifecycle-toolkit 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/keptn/lifecycle-operator:v2.0.0866ced256a8c
stdlib@go1.23.3
1.25.10

Open the chart page →

595
keptn-metrics-operatorlifecycle-toolkitVerified publisher0.5.01 of 1See more

keptn-metrics-operator lifecycle-toolkit 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/keptn/metrics-operator:v2.1.0dc48471c7cf8
stdlib@go1.23.3
1.25.10

Open the chart page →

825
kube-iptables-tailerlifen-chartsVerified publisher0.2.31 of 1See more

kube-iptables-tailer lifen-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
stdlib@go1.13.8
1.25.10

Open the chart page →

4,456
linkerd-jaegerlinkerd2-edgeVerified publisher30.14.11-edge2 of 4See more

linkerd-jaeger linkerd2-edge 30.14.11-edge

2 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.3104d224a9999b
stdlib@go1.17.6
1.25.10
otel/opentelemetry-collector-contrib:0.83.071fcef33ae71
stdlib@go1.20.7
1.25.10

Open the chart page →

4,389
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
stdlib@go1.23.8
1.25.10

Open the chart page →

7,915
go-hello-worldloafoe0.14.01 of 1See more

go-hello-world loafoe 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/loafoe/go-hello-world:v2.13.0d3fb171f20e1
stdlib@go1.25.3
1.25.10

Open the chart page →

672
jspolicyloftVerified publisher0.2.21 of 1See more

jspolicy loft 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
loftsh/jspolicy:0.2.225deb9bd2683
stdlib@go1.17.13
1.25.10

Open the chart page →

2,309
vcluster-eksloftVerified publisher0.0.0-ci.33 of 4See more

vcluster-eks loft 0.0.0-ci.3

3 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/eks-distro/etcd-io/etcd:v3.5.6-eks-1-24-7efa6dee17ed2
stdlib@go1.16.15
1.25.10
public.ecr.aws/eks-distro/kubernetes/kube-apiserver:v1.24.9-eks-1-24-772e06b605692
stdlib@go1.18.9
1.25.10
public.ecr.aws/eks-distro/kubernetes/kube-controller-manager:v1.24.9-eks-1-24-7eaea8c230432
stdlib@go1.18.9
1.25.10

Open the chart page →

3,304
vcluster-k0sloftVerified publisher0.0.0-ci.31 of 2See more

vcluster-k0s loft 0.0.0-ci.3

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
stdlib@go1.19.4
1.25.10

Open the chart page →

3,138
log2rbac-operatorlog2rbac-operator0.0.51 of 1See more

log2rbac-operator log2rbac-operator 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jkremser/log2rbac:v0.0.5e35cf56ef183
stdlib@go1.17.6
1.25.10

Open the chart page →

1,938
logclilogcliVerified publisher0.1.01 of 1See more

logcli logcli 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/logcli:main-c90366d-amd643d85bb66e39b
stdlib@go1.16.2
1.25.10

Open the chart page →

2,947
lumenvoxlumenvox7.1.010 of 11See more

lumenvox lumenvox 7.1.0

10 of the 11 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
lumenvox/admin-portal:7.112310cf52f79
stdlib@go1.26.2
1.25.10
lumenvox/archive:7.15114f08ab8ef
stdlib@go1.26.2
1.25.10
lumenvox/cloud-init-tools:7.1de940e2ec601
stdlib@go1.26.2
1.25.10
lumenvox/configuration:7.182bf01d9ebec
stdlib@go1.26.2
1.25.10
lumenvox/deployment:7.1dadac2a74be6
stdlib@go1.26.2
1.25.10
lumenvox/file-store:7.138aa8711c9ef
stdlib@go1.26.2
1.25.10
lumenvox/license:7.135d0b1ac053e
stdlib@go1.26.2
1.25.10
lumenvox/management-api:7.16420a6e7d6c2
stdlib@go1.26.2
1.25.10
lumenvox/resource:7.193fd6ff1d62c
stdlib@go1.26.2
1.25.10
lumenvox/storage:7.1c961fe78e2ca
stdlib@go1.26.2
1.25.10

Open the chart page →

4,284
voice-biometricslumenvox2.0.18 of 26See more

voice-biometrics lumenvox 2.0.1

8 of the 26 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.10
library/traefik:v2.57d5a6ae66572
stdlib@go1.17.6
1.25.10
lumenvox/cloud-init-tools:2.0.07ff037a71c50
stdlib@go1.17.3
1.25.10
lumenvox/cloud-license:2.0.09a69862e1248
stdlib@go1.17.3
1.25.10
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.25.10
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.10
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
stdlib@go1.15.8
1.25.10
quay.io/prometheus/prometheus:v2.26.038d40a760569
stdlib@go1.16.2
1.25.10

Open the chart page →

71,216
dnsbl-exporterluzillaVerified publisher0.5.01 of 2See more

dnsbl-exporter luzilla 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/luzilla/dnsbl_exporter:v0.12.0ecba7360ff12
stdlib@go1.25.0
1.25.10

Open the chart page →

1,147
lynqlynqVerified publisher1.1.221 of 1See more

lynq lynq 1.1.22

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/k8s-lynq/lynq:1.1.22229b05e3c717
stdlib@go1.24.13
1.25.10

Open the chart page →

621
magentomagento3.2.35 of 12See more

magento magento 3.2.3

5 of the 12 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
stdlib@go1.18.2
1.25.10
library/rabbitmq:4.1.0-management935b3f84c1e4
stdlib@go1.22.2
1.25.10
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
stdlib@go1.24.6
1.25.10
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
stdlib@go1.24.6
1.25.10
longhornio/longhorn-ui:v1.10.0e60f36161511
stdlib@go1.24.6
1.25.10

Open the chart page →

13,582
mcp-orchestratormagertronVerified publisher3.8.231 of 6See more

mcp-orchestrator magertron 3.8.23

1 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.10

Open the chart page →

1,704
goblackholemainVerified publisher0.0.41 of 1See more

goblackhole main 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
bedag/goblackhole:0.2.0447a88598f4c
stdlib@go1.16.6
1.25.10

Open the chart page →

1,972
plane-enterprisemakeplaneOfficialVerified publisher3.7.23 of 13See more

plane-enterprise makeplane 3.7.2

3 of the 13 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:15.7-alpine468d34fefd63
stdlib@go1.18.2
1.25.10
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
stdlib@go1.24.6
1.25.10
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
stdlib@go1.24.6
1.25.10

Open the chart page →

4,942
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
stdlib@go1.13.10
1.25.10

Open the chart page →

3,606
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.10

Open the chart page →

19,192
mcpmcp-chartsVerified publisher0.0.232 of 7See more

mcp mcp-charts 0.0.23

2 of the 7 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
stdlib@go1.25.4
1.25.10
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
stdlib@go1.25.4
1.25.10

Open the chart page →

6,994
traefik-forward-authmesosphere0.3.102 of 2See more

traefik-forward-auth mesosphere 0.3.10

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
stdlib@go1.15.11
1.25.10
mesosphere/traefik-forward-auth:3.1.05456581d7b76
stdlib@go1.14.15
1.25.10

Open the chart page →

5,308
metadata-injectormetadata-injector-operator0.0.11 of 1See more

metadata-injector metadata-injector-operator 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ruslanguns/metadata-injector-operator:v0.0.16c77e4675e07
stdlib@go1.22.11
1.25.10

Open the chart page →

561
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
stdlib@go1.14.6
1.25.10

Open the chart page →

3,254
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
stdlib@go1.23.4
1.25.10

Open the chart page →

4,184
librenmsmidokura-communityVerified publisher0.3.21 of 6See more

librenms midokura-community 0.3.2

1 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
librenms/librenms:22.4.14f1f3d667cc7
stdlib@go1.16.12
1.25.10

Open the chart page →

8,967
chartmuseummike75151.2.01 of 1See more

chartmuseum mike7515 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
stdlib@go1.17.8
1.25.10

Open the chart page →

3,168
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
stdlib@go1.15.7
1.25.10

Open the chart page →

6,915
mimir-syncmimir-sync3.1.01 of 1See more

mimir-sync mimir-sync 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/antnsn/mal-sync:v1.0.52f06e72cef36
stdlib@go1.23.7
1.25.10

Open the chart page →

1,293
miniapiminiapi1.3.21 of 1See more

miniapi miniapi 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
udhos/miniapi:1.3.28a7042db82ce
stdlib@go1.23.2
1.25.10

Open the chart page →

854
mlflow-servermlflowserver0.1.91 of 3See more

mlflow-server mlflowserver 0.1.9

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
stdlib@go1.25.5
1.25.10

Open the chart page →

5,804
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
stdlib@go1.25.4
1.25.10

Open the chart page →

11,108
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
stdlib@go1.24.0
1.25.10

Open the chart page →

2,678
model-manager-servermodel-manager-server1.27.01 of 1See more

model-manager-server model-manager-server 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-server:1.27.0c057dcdd9ef3
stdlib@go1.23.12
1.25.10

Open the chart page →

733
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
stdlib@go1.19.12
1.25.10

Open the chart page →

13,763
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10
library/redmine:6.1.204ac44a2595b
stdlib@go1.24.6
1.25.10

Open the chart page →

7,552
podsyncmy0nVerified publisher1.5.41 of 2See more

podsync my0n 1.5.4

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
tdeutsch/podsync:v2.4.2b67186f4c9a5
stdlib@go1.19.3
1.25.10

Open the chart page →

2,059
maddymyaVerified publisher22.4.121 of 2See more

maddy mya 22.4.12

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
foxcpp/maddy:0.7.16ab538e2f28b
stdlib@go1.19.13
1.25.10

Open the chart page →

1,412
registrymyaVerified publisher22.4.111 of 1See more

registry mya 22.4.11

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
distribution/distribution:2.8.3f84b2078238f
stdlib@go1.20.8
1.25.10

Open the chart page →

899
simple-gowikimy-helm-chartsVerified publisher0.2.01 of 1See more

simple-gowiki my-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
forchaladtest/mygowiki:1.0.170827eaecad1
stdlib@go1.22.6
1.25.10

Open the chart page →

399
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
stdlib@go1.18.1
1.25.10

Open the chart page →

3,729

Container images carrying it

4,537 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/redis:7.0.10-debian-11-r059293f5206b7
stdlib@go1.19.7
1.25.10
1
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
stdlib@go1.23.7
1.25.10
1
bitnamilegacy/redis:7.2.4-debian-12-r1670cafc5a71e8
stdlib@go1.21.10
1.25.10
1
bitnamilegacy/redis:6.2.7-debian-11-r37788b908dd0d
stdlib@go1.18.2
1.25.10
1
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
stdlib@go1.21.9
1.25.10
1
bitnamilegacy/redis:7.0.8-debian-11-r0bf01d031ba8c
stdlib@go1.18.2
1.25.10
1
bitnamilegacy/redis:8.0.2-debian-12-r4cdc2efa9c306
stdlib@go1.24.4
1.25.10
1
bitnamilegacy/redis:7.2.1-debian-11-r0fa288394f402
stdlib@go1.19.12
1.25.10
1
bitnamilegacy/redis-cluster:7.4.3-debian-12-r0a53d023fdfaf
stdlib@go1.23.8
1.25.10
1
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
stdlib@go1.23.7
1.25.10
1
bitnamilegacy/rmq-messaging-topology-operator:1.7.1-scratch-r33c26208691a1
stdlib@go1.17
1.25.10
1
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
stdlib@go1.24.1
1.25.10
1
bitnamilegacy/thanos:0.37.1-debian-12-r05bf82b98c82c
stdlib@go1.23.4
1.25.10
1
bitnamilegacy/valkey:latest0384ca2eec63
stdlib@go1.23.10
1.25.10
1
bitnamilegacy/valkey:8.1.3-debian-12-r34f0191fba7d3
stdlib@go1.24.6
1.25.10
1
bitnamilegacy/valkey:8.1.3-debian-12-r1a185655855b3
stdlib@go1.24.4
1.25.10
1
bitnamilegacy/zookeeper:3.7.2-debian-11-r5cbf54314c401
stdlib@go1.21.5
1.25.10
1
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
stdlib@go1.18.2
1.25.10
1
bitnami/mariadb:11.7.216a7dae804fb
stdlib@go1.22.12
1.25.10
1
bitnami/mongodb:8.0.8b3bd5b6be9a0
stdlib@go1.23.7
1.25.10
1
bitnami/redis:7.4.24e65bf641805
stdlib@go1.23.8
1.25.10
1
bitnami/sealed-secrets-controller:v0.18.50516f987fae2
stdlib@go1.18.6
1.25.10
1
bitnami/sealed-secrets-controller:0.31.0-debian-12-r074eaff41382b
stdlib@go1.24.6
1.25.10
1
bitpoke/stack-default-backend:latestc5eed1ddf692
stdlib@go1.16.6
1.25.10
1
bitpoke/wordpress-operator:v0.12.421284d1df473
stdlib@go1.17.13
1.25.10
1
bitpoke/wordpress-operator:v0.12.27fb3aad37b5f
stdlib@go1.17.13
1.25.10
1
blackducksoftware/bdba-pgupgrader:2026.6.35c97f3a3f8b7
stdlib@go1.18.2
1.25.10
1
blackducksoftware/blackduck-alert-db:8.4.06310fac39d53
stdlib@go1.24.6
1.25.10
1
blipai/deckard:0.0.28737d5d19a312
stdlib@go1.18.10
1.25.10
1
bloomberg/goldpinger:3.10.08520120f5598
stdlib@go1.21.9
1.25.10
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
stdlib@go1.22.11
1.25.10
1
bluenviron/mediamtx:1.17.19e39256d1ba3
stdlib@go1.25.8
1.25.10
1
bolkedebruin/rdpgw:masterc0dc0589373a
stdlib@go1.24.13
1.25.10
1
bonovoo/secrethor:1.1.2bb93b68fcd17
stdlib@go1.24.2
1.25.10
1
breton/cool:dev41b1bb483aa2
stdlib@go1.19.2
1.25.10
1
bsgrigorov/helm-operator:latest45ab095f09c8
stdlib@go1.15.12
1.25.10
1
btcpayserver/tor:0.4.8.10e9585b68dc6b
stdlib@go1.16.5
1.25.10
1
buddyspencer/gickup:0.10.386b656f19b0c1
stdlib@go1.22.5
1.25.10
1
buddyspencer/gickup:0.10.309e7dbf923c12
stdlib@go1.21.9
1.25.10
1
buildkite/agent:3.25.0aec38cfaae0e
stdlib@go1.14.7
1.25.10
1
bulich/domain-exporter:latest6d0b780f7c7b
stdlib@go1.20.4
1.25.10
1
burganbank/vault-initializer:v19259c34e4037
stdlib@go1.22.2
1.25.10
1
burningalchemist/sql_exporter:0.16.0b8e4757c7def
stdlib@go1.23.2
1.25.10
1
byjg/static-httpserver:latest562cc8b9c40b
stdlib@go1.26.1
1.25.10
1
bytesafe/bytesafe-ce:v1.0.4ee287384c005
stdlib@go1.20.5
1.25.10
1
caarlos0/domain_exporter:v1.23.0d11dec138900
stdlib@go1.21.6
1.25.10
1
calico/cni:v3.28.0cef0c907b8f4
stdlib@go1.22.2
1.25.10
1
calico/cni:v3.28.1e486870cfde8
stdlib@go1.22.5
1.25.10
1
calico/kube-controllers:v3.28.08f04e4772a2b
stdlib@go1.22.3
1.25.10
1
calico/kube-controllers:v3.28.1eadb3a25109a
stdlib@go1.22.5
1.25.10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.