StackRadar

CVE-2026-39820

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,033
of 17,813 indexed, latest versions
Container images
4,618
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatentation in consumeComment in net/mail

Carried by container images the latest versions of 4,033 of 17,813 indexed charts deploy, on 4,618 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+181 more1.25.104,618
OSV records
DEBIAN-CVE-2026-39820GO-2026-4986
Also known as
BIT-golang-2026-39820

Charts affected

4,033 by stars
ChartLatestAffected imagesRadar Score
curvefs-csikubesphere-testVerified publisher0.1.01 of 3See more

curvefs-csi kubesphere-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.25.10

Open the chart page →

2,832
minio-gatewaykubesphere-testVerified publisher0.1.01 of 1See more

minio-gateway kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
stdlib@go1.24.6
1.25.10

Open the chart page →

1,201
mongodbkubesphere-testVerified publisher0.3.21 of 2See more

mongodb kubesphere-test 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
mikefarah/yq:2.4.16fc625c402de
stdlib@go1.13.3
1.25.10

Open the chart page →

9,651
online-boutiquekubesphere-testVerified publisher0.1.08 of 11See more

online-boutique kubesphere-test 0.1.0

8 of the 11 container images this version deploys carry CVE-2026-39820.

Open the chart page →

26,093
openelbkubesphere-testVerified publisher0.2.42 of 2See more

openelb kubesphere-test 0.2.4

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kubesphere/openelb:v0.4.4ed7311a0f9e4
stdlib@go1.15.15
1.25.10
kubespheredev/kube-webhook-certgen:v1.1.123a03c9c381f
stdlib@go1.16.9
1.25.10

Open the chart page →

4,339
porterkubesphere-testVerified publisher0.2.21 of 2See more

porter kubesphere-test 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kubesphere/porter:v0.4.38d1ed5ee1d2e
stdlib@go1.15.15
1.25.10

Open the chart page →

2,793
snapshot-controllerkubesphere-testVerified publisher0.2.01 of 1See more

snapshot-controller kubesphere-test 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
csiplugin/snapshot-controller:v4.0.000fcc441ea9f
stdlib@go1.15
1.25.10

Open the chart page →

2,221
kubestellar-consolekubestellar-consoleVerified publisher0.3.411 of 2See more

kubestellar-console kubestellar-console 0.3.41

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
alpine/k8s:1.32.47e1e7d5b7a96
stdlib@go1.20.4
1.25.10

Open the chart page →

4,618
kubestellar-uikubestellaruiVerified publisher0.1.12 of 4See more

kubestellar-ui kubestellarui 0.1.1

2 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/redis:7.0-alpinec9d92d840fd0
stdlib@go1.18.2
1.25.10
mavrick1/kubestellar-b:latest45ca0429a1d4
stdlib@go1.20.3
1.25.10

Open the chart page →

5,072
terraform-controllerkubevela0.8.01 of 1See more

terraform-controller kubevela 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
oamdev/terraform-controller:v0.8.070447f4d360a
stdlib@go1.16.4
1.25.10

Open the chart page →

3,820
vector-controllerkubevela0.2.32 of 2See more

vector-controller kubevela 0.2.3

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
oamdev/kube-webhook-certgen:v2.4.1231c423c2b17
stdlib@go1.17.11
1.25.10
oamdev/vector-controller:v0.2.39dd8be44ffc9
stdlib@go1.17.13
1.25.10

Open the chart page →

4,820
vela-prismkubevela1.6.03 of 3See more

vela-prism kubevela 1.6.0

3 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
oamdev/cluster-gateway:v1.4.0dc97164c4c1f
stdlib@go1.17.10
1.25.10
oamdev/kube-webhook-certgen:v2.331e0892f3583
stdlib@go1.16.9
1.25.10
oamdev/vela-prism:v1.6.06db6a937647d
stdlib@go1.19.3
1.25.10

Open the chart page →

6,107
vela-workflowkubevela0.7.21 of 1See more

vela-workflow kubevela 0.7.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
oamdev/kube-webhook-certgen:v2.4.1231c423c2b17
stdlib@go1.17.11
1.25.10

Open the chart page →

1,435
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.10

Open the chart page →

8,931
kube-workload-restarterkube-workload-restarterVerified publisher0.0.41 of 1See more

kube-workload-restarter kube-workload-restarter 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
andreacioni/kube-workload-restarter:0.0.242938b310090a
stdlib@go1.20.2
1.25.10

Open the chart page →

1,816
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.48 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

8 of the 9 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
stdlib@go1.22.7
1.25.10
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
stdlib@go1.21.1
1.25.10
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
stdlib@go1.23.12
1.25.10
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
stdlib@go1.22.10
1.25.10
ghcr.io/kubiyabot/kubiya-operator:runner_v26bf945565865
stdlib@go1.25.1
1.25.10
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
stdlib@go1.21.5
1.25.10
ghcr.io/kubiyabot/workflow-engine:v1.46.2560a16a56d4e
stdlib@go1.23.12
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.10

Open the chart page →

20,582
lethe-stackkuossOfficialVerified publisher0.2.32 of 3See more

lethe-stack kuoss 0.2.3

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/kuoss/eventrouter:v0.4.1300b48beff3ae
stdlib@go1.23.12
1.25.10
ghcr.io/kuoss/lethe:v0.3.1c59f082ba8b2
stdlib@go1.23.12
1.25.10

Open the chart page →

1,762
ctrlmeshkusionstackVerified publisher0.2.01 of 1See more

ctrlmesh kusionstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
stdlib@go1.20.14
1.25.10

Open the chart page →

3,489
kuperatorkusionstackVerified publisher0.7.41 of 1See more

kuperator kusionstack 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kusionstack/kuperator:v0.7.4d2f72ae1d2f2
stdlib@go1.24.13
1.25.10

Open the chart page →

980
kusionkusionstackVerified publisher0.14.12 of 3See more

kusion kusionstack 0.14.1

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
stdlib@go1.22.10
1.25.10
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

63,775
operatingkusionstackVerified publisher0.5.11 of 1See more

operating kusionstack 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kusionstack/operating:v0.5.0c28bd96b986b
stdlib@go1.19.13
1.25.10

Open the chart page →

1,882
sample-operatorkusionstackVerified publisher0.1.21 of 1See more

sample-operator kusionstack 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
chaerr/kridge:demo-operator-v0.1.266833deec017
stdlib@go1.20.7
1.25.10

Open the chart page →

2,523
azure-key-vault-helperkvalitetsitVerified publisher2.0.21 of 1See more

azure-key-vault-helper kvalitetsit 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/go-loop:1.1.0d07f449d75ed
stdlib@go1.25.1
1.25.10

Open the chart page →

307
dynatrace-operatorkvalitetsitVerified publisher1.3.01 of 1See more

dynatrace-operator kvalitetsit 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
stdlib@go1.22.5
1.25.10

Open the chart page →

1,320
kitarguskvalitetsitVerified publisher0.0.0-2026-03-09-091234-10013c41 of 1See more

kitargus kvalitetsit 0.0.0-2026-03-09-091234-10013c4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/kitargus:2026-03-09-091234-10013c4c5cde2d9371c
stdlib@go1.25.8
1.25.10

Open the chart page →

962
krakendkvalitetsitVerified publisher0.0.31 of 1See more

krakend kvalitetsit 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
stdlib@go1.24.2
1.25.10

Open the chart page →

1,519
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
stdlib@go1.14.1
1.25.10

Open the chart page →

16,733
metadockvalitetsitVerified publisher0.0.72 of 2See more

metadoc kvalitetsit 0.0.7

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/metadoc-app:maine89e351733ad
stdlib@go1.19.5
1.25.10
kvalitetsit/metadoc-web:mainf57e7553f5bd
stdlib@go1.16
1.25.10

Open the chart page →

4,036
nsp-prometheus-exporterkvalitetsitVerified publisher1.0.191 of 2See more

nsp-prometheus-exporter kvalitetsit 1.0.19

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/nsp-prometheus-exporter:1.0.190b397ff954ec
stdlib@go1.15.3
1.25.10

Open the chart page →

2,064
openidkvalitetsitVerified publisher1.7.21 of 2See more

openid kvalitetsit 1.7.2

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.14.368336da945bd
stdlib@go1.25.7
1.25.10

Open the chart page →

592
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/stakit-frontend:0.2.5fd5c4f60ef80
stdlib@go1.19.3
1.25.10

Open the chart page →

7,863
kvkkvkservice0.1.01 of 4See more

kvk kvkservice 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
conduction/kvk-php:dev8f177f9f8a7b
stdlib@go1.13.10
1.25.10

Open the chart page →

8,545
freescoutl4gVerified publisher0.1.01 of 3See more

freescout l4g 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
tiredofit/freescout:php8.2-1.17.725b7cc0658f07
stdlib@go1.22.2
1.25.10

Open the chart page →

5,337
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
stdlib@go1.14
1.25.10

Open the chart page →

26,562
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
stdlib@go1.24.3
1.25.10

Open the chart page →

2,281
everest-lakefs-csi-driverlakefsVerified publisher1.3.02 of 3See more

everest-lakefs-csi-driver lakefs 1.3.0

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/csi-components/csi-node-driver-registrar:v2.16.0-eksbuild.3592d7034d6c7
stdlib@go1.26.1
1.25.10
public.ecr.aws/csi-components/livenessprobe:v2.18.0-eksbuild.38e307f4e5820
stdlib@go1.26.1
1.25.10

Open the chart page →

866
lambdapinglambdaping1.0.41 of 1See more

lambdaping lambdaping 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
udhos/lambdaping:1.0.46bd2cf2ac732
stdlib@go1.23.4
1.25.10

Open the chart page →

1,347
pageslatif-pages1.0.01 of 3See more

pages latif-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,285
cachelavaOfficialVerified publisher1.1.11 of 1See more

cache lava 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/lavanet/lava/lavap:v2.5.089028adefcff
stdlib@go1.20.14
1.25.10

Open the chart page →

1,386
pageslavanya-pages1.0.01 of 3See more

pages lavanya-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,285
listmonklbenicio-communityVerified publisher0.1.01 of 1See more

listmonk lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
listmonk/listmonk:latestf535d59e1499
stdlib@go1.26.1
1.25.10

Open the chart page →

720
pinglbenicio-communityVerified publisher0.1.11 of 1See more

ping lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
stdlib@go1.25.5
1.25.10

Open the chart page →

600
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
stdlib@go1.20.5
1.25.10

Open the chart page →

33,925
metallblectures-k8sinfra0.10.22 of 2See more

metallb lectures-k8sinfra 0.10.2

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.10.221164241c045
stdlib@go1.16.5
1.25.10
quay.io/metallb/speaker:v0.10.258cb99053bb3
stdlib@go1.16.5
1.25.10

Open the chart page →

5,408
prometheuslectures-k8sinfra15.8.55 of 6See more

prometheus lectures-k8sinfra 15.8.5

5 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.10
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.25.10
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
stdlib@go1.16.7
1.25.10
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
stdlib@go1.17.3
1.25.10
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
stdlib@go1.18.4
1.25.10

Open the chart page →

9,115
grafanaleechistest5.3.01 of 1See more

grafana leechistest 5.3.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.25.10

Open the chart page →

3,199
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.10

Open the chart page →

4,496
prometheusleechistest11.6.04 of 6See more

prometheus leechistest 11.6.0

4 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.25.10
prom/prometheus:v2.19.0bfad037f95e5
stdlib@go1.14.4
1.25.10
prom/pushgateway:v1.2.00a9031142481
stdlib@go1.13.8
1.25.10
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.25.10

Open the chart page →

8,495
kube-benchlemontechVerified publisher0.1.01 of 1See more

kube-bench lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.9c329d73fea58
stdlib@go1.19
1.25.10

Open the chart page →

1,633
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
stdlib@go1.19
1.25.10

Open the chart page →

4,282

Container images carrying it

4,618 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
kubeshop/kusk-gateway-api:v1.5.4126c713cf7d8
stdlib@go1.18.10
1.25.10
1
kubeshop/kusk-gateway-api-websocket:v1.5.43b4f8345ca5c
stdlib@go1.18.10
1.25.10
1
kubeshop/testkube-api-server:0.11.160ad97f07a78b
stdlib@go1.17.8
1.25.10
1
kubeshop/testkube-api-server:2.1.162e97dc620d9b4
stdlib@go1.23.10
1.25.10
1
kubeshop/testkube-logs-server:latest094186b19698
stdlib@go1.24.1
1.25.10
1
kubeshop/testkube-minio:2025.10d8e1af6aca99
stdlib@go1.26.0
1.25.10
1
kubeshop/testkube-operator:2.1.154def0d0f0d4ab
stdlib@go1.23.9
1.25.10
1
kubeshop/tracetest:v1.7.173d7e3a2db43
stdlib@go1.21.13
1.25.10
1
kubesphere/fluentbit-operator:v0.9.0b87db3c57cb3
stdlib@go1.13.15
1.25.10
1
kubesphere/fluent-operator:v1.0.2702df77228c6
stdlib@go1.16.6
1.25.10
1
kubesphere/ks-extensions-museum:latest29681958f220
stdlib@go1.20.12
1.25.10
1
kubesphere/kubectl:v1.27.1649b445b1b732
stdlib@go1.18.10
1.25.10
1
kubesphere/openelb:v0.5.0b5b665c4672c
stdlib@go1.15.15
1.25.10
1
kubesphere/openelb:v0.4.4ed7311a0f9e4
stdlib@go1.15.15
1.25.10
1
kubesphere/porter:v0.4.38d1ed5ee1d2e
stdlib@go1.15.15
1.25.10
1
kubesphere/pvc-autoresizer:v0.19a18a16c7b87
stdlib@go1.16.10
1.25.10
1
kubesphere/storageclass-accessor:v0.1.1eac8f273a9b6
stdlib@go1.16.10
1.25.10
1
kubestar/event-exporter:latest656606941255
stdlib@go1.20.14
1.25.10
1
kubesuite/kubereport:latest0262424ee702
stdlib@go1.22.0
1.25.10
1
kubevious/ui:1.2.16233e84bdd59
stdlib@go1.19.1
1.25.10
1
kubevip/kube-vip-cloud-provider:v0.0.12f8f4e3401f76
stdlib@go1.24.2
1.25.10
1
kubevirtmanager/kubevirt-manager:1.5.41b98f1b5977a
stdlib@go1.25.5
1.25.10
1
kubevirtmanager/kubevirt-manager:1.3.3df3ea27d4a9e
stdlib@go1.21.7
1.25.10
1
kudobuilder/controller:v0.9.069072d979708
stdlib@go1.13
1.25.10
1
kupnu4x/kube-vault-controller:1.2.03be59109f3d6
stdlib@go1.21.1
1.25.10
1
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
stdlib@go1.20.14
1.25.10
1
kusionstack/karpor:v0.6.4b707d3bf0abd
stdlib@go1.22.12
1.25.10
1
kusionstack/kuperator:v0.7.4d2f72ae1d2f2
stdlib@go1.24.13
1.25.10
1
kusionstack/kusion:v0.14.0126c8f0b0976
stdlib@go1.22.10
1.25.10
1
kusionstack/operating:v0.5.0c28bd96b986b
stdlib@go1.19.13
1.25.10
1
kvalitetsit/go-loop:1.1.0d07f449d75ed
stdlib@go1.25.1
1.25.10
1
kvalitetsit/kitargus:2026-03-09-091234-10013c4c5cde2d9371c
stdlib@go1.25.8
1.25.10
1
kvalitetsit/metadoc-app:maine89e351733ad
stdlib@go1.19.5
1.25.10
1
kvalitetsit/metadoc-web:mainf57e7553f5bd
stdlib@go1.16
1.25.10
1
kvalitetsit/nsp-prometheus-exporter:1.0.190b397ff954ec
stdlib@go1.15.3
1.25.10
1
kvalitetsit/stakit-frontend:0.2.5fd5c4f60ef80
stdlib@go1.19.3
1.25.10
1
l7mp/stunner-auth-server:1.1.02f8114477ba6
stdlib@go1.23.8
1.25.10
1
l7mp/stunner-gateway-operator:1.1.0c34f7c931491
stdlib@go1.23.8
1.25.10
1
langgenius/dify-ee-audit:3.9.8-ubi9e99aed151fc5
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-collector:3.9.8-ubi9a9b91fd62c94
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-enterprise:3.9.8-ubi9c392a36a4ef7
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-gateway:3.9.8-ubi99e314c29a61f
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-plugin-connector:3.9.8-ubi91848d8f1f144
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-plugin-crd:3.9.8-ubi96f4e0e5f6e5a
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-plugin-daemon-serverless:3.9.8-ubi9d2b8df196d08
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-plugin-manager:3.9.8-ubi9207b343013a0
stdlib@go1.26.2
1.25.10
1
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
stdlib@go1.25.5
1.25.10
1
langgenius/dify-sandbox:0.2.124e65e8a351a2
stdlib@go1.23.3
1.25.10
1
langgenius/dify-sandbox:0.2.15750e1111426e
stdlib@go1.24.13
1.25.10
1
langgenius/dify-web:1.10.1-fix.1c306ac577912
stdlib@go1.23.5
1.25.10
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.