StackRadar

CVE-2026-39820

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,033
of 17,813 indexed, latest versions
Container images
4,618
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatentation in consumeComment in net/mail

Carried by container images the latest versions of 4,033 of 17,813 indexed charts deploy, on 4,618 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+181 more1.25.104,618
OSV records
DEBIAN-CVE-2026-39820GO-2026-4986
Also known as
BIT-golang-2026-39820

Charts affected

4,033 by stars
ChartLatestAffected imagesRadar Score
curvefs-csikubesphere-testVerified publisher0.1.01 of 3See more

curvefs-csi kubesphere-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.25.10

Open the chart page →

2,832
minio-gatewaykubesphere-testVerified publisher0.1.01 of 1See more

minio-gateway kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
stdlib@go1.24.6
1.25.10

Open the chart page →

1,201
mongodbkubesphere-testVerified publisher0.3.21 of 2See more

mongodb kubesphere-test 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
mikefarah/yq:2.4.16fc625c402de
stdlib@go1.13.3
1.25.10

Open the chart page →

9,651
online-boutiquekubesphere-testVerified publisher0.1.08 of 11See more

online-boutique kubesphere-test 0.1.0

8 of the 11 container images this version deploys carry CVE-2026-39820.

Open the chart page →

26,093
openelbkubesphere-testVerified publisher0.2.42 of 2See more

openelb kubesphere-test 0.2.4

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kubesphere/openelb:v0.4.4ed7311a0f9e4
stdlib@go1.15.15
1.25.10
kubespheredev/kube-webhook-certgen:v1.1.123a03c9c381f
stdlib@go1.16.9
1.25.10

Open the chart page →

4,339
porterkubesphere-testVerified publisher0.2.21 of 2See more

porter kubesphere-test 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kubesphere/porter:v0.4.38d1ed5ee1d2e
stdlib@go1.15.15
1.25.10

Open the chart page →

2,793
snapshot-controllerkubesphere-testVerified publisher0.2.01 of 1See more

snapshot-controller kubesphere-test 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
csiplugin/snapshot-controller:v4.0.000fcc441ea9f
stdlib@go1.15
1.25.10

Open the chart page →

2,221
kubestellar-consolekubestellar-consoleVerified publisher0.3.411 of 2See more

kubestellar-console kubestellar-console 0.3.41

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
alpine/k8s:1.32.47e1e7d5b7a96
stdlib@go1.20.4
1.25.10

Open the chart page →

4,618
kubestellar-uikubestellaruiVerified publisher0.1.12 of 4See more

kubestellar-ui kubestellarui 0.1.1

2 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/redis:7.0-alpinec9d92d840fd0
stdlib@go1.18.2
1.25.10
mavrick1/kubestellar-b:latest45ca0429a1d4
stdlib@go1.20.3
1.25.10

Open the chart page →

5,072
terraform-controllerkubevela0.8.01 of 1See more

terraform-controller kubevela 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
oamdev/terraform-controller:v0.8.070447f4d360a
stdlib@go1.16.4
1.25.10

Open the chart page →

3,820
vector-controllerkubevela0.2.32 of 2See more

vector-controller kubevela 0.2.3

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
oamdev/kube-webhook-certgen:v2.4.1231c423c2b17
stdlib@go1.17.11
1.25.10
oamdev/vector-controller:v0.2.39dd8be44ffc9
stdlib@go1.17.13
1.25.10

Open the chart page →

4,820
vela-prismkubevela1.6.03 of 3See more

vela-prism kubevela 1.6.0

3 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
oamdev/cluster-gateway:v1.4.0dc97164c4c1f
stdlib@go1.17.10
1.25.10
oamdev/kube-webhook-certgen:v2.331e0892f3583
stdlib@go1.16.9
1.25.10
oamdev/vela-prism:v1.6.06db6a937647d
stdlib@go1.19.3
1.25.10

Open the chart page →

6,107
vela-workflowkubevela0.7.21 of 1See more

vela-workflow kubevela 0.7.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
oamdev/kube-webhook-certgen:v2.4.1231c423c2b17
stdlib@go1.17.11
1.25.10

Open the chart page →

1,435
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.10

Open the chart page →

8,931
kube-workload-restarterkube-workload-restarterVerified publisher0.0.41 of 1See more

kube-workload-restarter kube-workload-restarter 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
andreacioni/kube-workload-restarter:0.0.242938b310090a
stdlib@go1.20.2
1.25.10

Open the chart page →

1,816
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.48 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

8 of the 9 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
stdlib@go1.22.7
1.25.10
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
stdlib@go1.21.1
1.25.10
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
stdlib@go1.23.12
1.25.10
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
stdlib@go1.22.10
1.25.10
ghcr.io/kubiyabot/kubiya-operator:runner_v26bf945565865
stdlib@go1.25.1
1.25.10
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
stdlib@go1.21.5
1.25.10
ghcr.io/kubiyabot/workflow-engine:v1.46.2560a16a56d4e
stdlib@go1.23.12
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.10

Open the chart page →

20,582
lethe-stackkuossOfficialVerified publisher0.2.32 of 3See more

lethe-stack kuoss 0.2.3

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/kuoss/eventrouter:v0.4.1300b48beff3ae
stdlib@go1.23.12
1.25.10
ghcr.io/kuoss/lethe:v0.3.1c59f082ba8b2
stdlib@go1.23.12
1.25.10

Open the chart page →

1,762
ctrlmeshkusionstackVerified publisher0.2.01 of 1See more

ctrlmesh kusionstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
stdlib@go1.20.14
1.25.10

Open the chart page →

3,489
kuperatorkusionstackVerified publisher0.7.41 of 1See more

kuperator kusionstack 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kusionstack/kuperator:v0.7.4d2f72ae1d2f2
stdlib@go1.24.13
1.25.10

Open the chart page →

980
kusionkusionstackVerified publisher0.14.12 of 3See more

kusion kusionstack 0.14.1

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
stdlib@go1.22.10
1.25.10
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

63,775
operatingkusionstackVerified publisher0.5.11 of 1See more

operating kusionstack 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kusionstack/operating:v0.5.0c28bd96b986b
stdlib@go1.19.13
1.25.10

Open the chart page →

1,882
sample-operatorkusionstackVerified publisher0.1.21 of 1See more

sample-operator kusionstack 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
chaerr/kridge:demo-operator-v0.1.266833deec017
stdlib@go1.20.7
1.25.10

Open the chart page →

2,523
azure-key-vault-helperkvalitetsitVerified publisher2.0.21 of 1See more

azure-key-vault-helper kvalitetsit 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/go-loop:1.1.0d07f449d75ed
stdlib@go1.25.1
1.25.10

Open the chart page →

307
dynatrace-operatorkvalitetsitVerified publisher1.3.01 of 1See more

dynatrace-operator kvalitetsit 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
stdlib@go1.22.5
1.25.10

Open the chart page →

1,320
kitarguskvalitetsitVerified publisher0.0.0-2026-03-09-091234-10013c41 of 1See more

kitargus kvalitetsit 0.0.0-2026-03-09-091234-10013c4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/kitargus:2026-03-09-091234-10013c4c5cde2d9371c
stdlib@go1.25.8
1.25.10

Open the chart page →

962
krakendkvalitetsitVerified publisher0.0.31 of 1See more

krakend kvalitetsit 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
stdlib@go1.24.2
1.25.10

Open the chart page →

1,519
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
stdlib@go1.14.1
1.25.10

Open the chart page →

16,733
metadockvalitetsitVerified publisher0.0.72 of 2See more

metadoc kvalitetsit 0.0.7

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/metadoc-app:maine89e351733ad
stdlib@go1.19.5
1.25.10
kvalitetsit/metadoc-web:mainf57e7553f5bd
stdlib@go1.16
1.25.10

Open the chart page →

4,036
nsp-prometheus-exporterkvalitetsitVerified publisher1.0.191 of 2See more

nsp-prometheus-exporter kvalitetsit 1.0.19

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/nsp-prometheus-exporter:1.0.190b397ff954ec
stdlib@go1.15.3
1.25.10

Open the chart page →

2,064
openidkvalitetsitVerified publisher1.7.21 of 2See more

openid kvalitetsit 1.7.2

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.14.368336da945bd
stdlib@go1.25.7
1.25.10

Open the chart page →

592
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kvalitetsit/stakit-frontend:0.2.5fd5c4f60ef80
stdlib@go1.19.3
1.25.10

Open the chart page →

7,863
kvkkvkservice0.1.01 of 4See more

kvk kvkservice 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
conduction/kvk-php:dev8f177f9f8a7b
stdlib@go1.13.10
1.25.10

Open the chart page →

8,545
freescoutl4gVerified publisher0.1.01 of 3See more

freescout l4g 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
tiredofit/freescout:php8.2-1.17.725b7cc0658f07
stdlib@go1.22.2
1.25.10

Open the chart page →

5,337
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
stdlib@go1.14
1.25.10

Open the chart page →

26,562
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
stdlib@go1.24.3
1.25.10

Open the chart page →

2,281
everest-lakefs-csi-driverlakefsVerified publisher1.3.02 of 3See more

everest-lakefs-csi-driver lakefs 1.3.0

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/csi-components/csi-node-driver-registrar:v2.16.0-eksbuild.3592d7034d6c7
stdlib@go1.26.1
1.25.10
public.ecr.aws/csi-components/livenessprobe:v2.18.0-eksbuild.38e307f4e5820
stdlib@go1.26.1
1.25.10

Open the chart page →

866
lambdapinglambdaping1.0.41 of 1See more

lambdaping lambdaping 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
udhos/lambdaping:1.0.46bd2cf2ac732
stdlib@go1.23.4
1.25.10

Open the chart page →

1,347
pageslatif-pages1.0.01 of 3See more

pages latif-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,285
cachelavaOfficialVerified publisher1.1.11 of 1See more

cache lava 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/lavanet/lava/lavap:v2.5.089028adefcff
stdlib@go1.20.14
1.25.10

Open the chart page →

1,386
pageslavanya-pages1.0.01 of 3See more

pages lavanya-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,285
listmonklbenicio-communityVerified publisher0.1.01 of 1See more

listmonk lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
listmonk/listmonk:latestf535d59e1499
stdlib@go1.26.1
1.25.10

Open the chart page →

720
pinglbenicio-communityVerified publisher0.1.11 of 1See more

ping lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
stdlib@go1.25.5
1.25.10

Open the chart page →

600
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
stdlib@go1.20.5
1.25.10

Open the chart page →

33,925
metallblectures-k8sinfra0.10.22 of 2See more

metallb lectures-k8sinfra 0.10.2

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.10.221164241c045
stdlib@go1.16.5
1.25.10
quay.io/metallb/speaker:v0.10.258cb99053bb3
stdlib@go1.16.5
1.25.10

Open the chart page →

5,408
prometheuslectures-k8sinfra15.8.55 of 6See more

prometheus lectures-k8sinfra 15.8.5

5 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.10
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.25.10
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
stdlib@go1.16.7
1.25.10
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
stdlib@go1.17.3
1.25.10
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
stdlib@go1.18.4
1.25.10

Open the chart page →

9,115
grafanaleechistest5.3.01 of 1See more

grafana leechistest 5.3.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.25.10

Open the chart page →

3,199
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.10

Open the chart page →

4,496
prometheusleechistest11.6.04 of 6See more

prometheus leechistest 11.6.0

4 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.25.10
prom/prometheus:v2.19.0bfad037f95e5
stdlib@go1.14.4
1.25.10
prom/pushgateway:v1.2.00a9031142481
stdlib@go1.13.8
1.25.10
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.25.10

Open the chart page →

8,495
kube-benchlemontechVerified publisher0.1.01 of 1See more

kube-bench lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.9c329d73fea58
stdlib@go1.19
1.25.10

Open the chart page →

1,633
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
stdlib@go1.19
1.25.10

Open the chart page →

4,282

Container images carrying it

4,618 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
wallarm/kong-kubernetes-ingress-controller:2.8b55ff6cecbd5
stdlib@go1.19.4
1.25.10
1
wallarm/node-helpers:5.0.2-1097cadc42336
stdlib@go1.22.7
1.25.10
1
wallarm/node-helpers:6.10.1aecd88b24c51
stdlib@go1.25.7
1.25.10
1
wallarm/node-native-processing:0.23.07db2da8fce0b
stdlib@go1.26.0
1.25.10
1
wallarm/node-next:0.5.24314f3d2b918
stdlib@go1.22.7
1.25.10
1
wateim/lighthouse-launch:latest2520149ee574
stdlib@go1.23.8
1.25.10
1
wavefronthq/prometheus-storage-adapter:latestded77b38c7c6
stdlib@go1.18
1.25.10
1
wavefronthq/wavefront-hpa-adapter:0.9.12af5fef9a4768
stdlib@go1.18
1.25.10
1
wazuh/wazuh-manager:4.11.11da5c38c6a78
stdlib@go1.14.12
1.25.10
1
wazuh/wazuh-manager:4.4.121994f40e0da
stdlib@go1.18.9
1.25.10
1
wazuh/wazuh-manager:4.14.45a065930682d
stdlib@go1.14.12
1.25.10
1
wazuh/wazuh-manager:4.14.3f09282d281f6
stdlib@go1.14.12
1.25.10
1
weaveworks/flagger:1.0.0-rc.5174307de1b36
stdlib@go1.14.2
1.25.10
1
weaveworks/flagger:0.19.0a9c2e9df4227
stdlib@go1.13.1
1.25.10
1
weaveworks/flagger-loadtester:0.9.03cdac6928a63
stdlib@go1.13.1
1.25.10
1
webdevops/azure-janitor:24.9.02446baee7b69
stdlib@go1.23.1
1.25.10
1
webdevops/azure-keyvault-exporter:24.9.1f333704ecd60
stdlib@go1.23.1
1.25.10
1
webdevops/azure-loganalytics-exporter:25.12.0051845d06d85
stdlib@go1.25.5
1.25.10
1
webdevops/azure-metrics-exporter:25.12.01d3b453fba99
stdlib@go1.25.5
1.25.10
1
webdevops/azure-resourcegraph-exporter:24.9.0381136dda026
stdlib@go1.23.1
1.25.10
1
webdevops/azure-resourcemanager-exporter:26.1.0d3e1842ad419
stdlib@go1.25.5
1.25.10
1
webdevops/azure-scheduledevents-manager:24.9.0-kubernetes7acd46a8a972
stdlib@go1.22.5
1.25.10
1
webdevops/kube-pool-manager:24.9.04fad7e14ad67
stdlib@go1.23.1
1.25.10
1
webdevops/pagerduty-exporter:25.12.183b95faf10a0
stdlib@go1.25.5
1.25.10
1
weblate/weblate:3.11.3-182848df56ecd
stdlib@go1.13.5
1.25.10
1
wernight/ngrok:latestd211f29ebcfe
stdlib@go1.21.6
1.25.10
1
willnorris/imageproxy:latest21d0c90f4c31
stdlib@go1.16.8
1.25.10
1
wistefan/vcbackend:0.0.13bd436164b51
stdlib@go1.18.3
1.25.10
1
wolveix/satisfactory-server:v1.9.1199be1064b18
stdlib@go1.18.1
1.25.10
1
wolveix/satisfactory-server:v1.9.9464d11e36e10
stdlib@go1.18.1
1.25.10
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
stdlib@go1.20.12
1.25.10
1
wuhan005/forklift:daemon4e6da210e449
stdlib@go1.19.8
1.25.10
1
wuhan005/forklift:controllerbfbe82d59850
stdlib@go1.19.8
1.25.10
1
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
stdlib@go1.13
1.25.10
1
xosphere/xonodepools:1.0.71458097b6f85
stdlib@go1.26.2
1.25.10
1
xperimental/nextcloud-exporter:0.9.13e90a3897651
stdlib@go1.26.1
1.25.10
1
yandex/clickhouse-server:latest1cbf75aabe1e
stdlib@go1.16.7
1.25.10
1
yetiplatform/bloomcheck:dev85683ddfccbb
stdlib@go1.24.2
1.25.10
1
ygqygq2/mysql-exec-sql:latest54f30def1558
stdlib@go1.18.2
1.25.10
1
yidadaa/chatgpt-next-web:latesteaaa469ddeeb
stdlib@go1.20.12
1.25.10
1
ymuski/geo-checker:5.0.05ba7fd8c7bdc
stdlib@go1.25.3
1.25.10
1
yonahdissen/kor:latest1a85158c82bb
stdlib@go1.26.0
1.25.10
1
youssef11gaber10/deployment-auth-go:latest6597b26959d2
stdlib@go1.26.1
1.25.10
1
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
stdlib@go1.24.10
1.25.10
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
stdlib@go1.18.1
1.25.10
1
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
stdlib@go1.24.10
1.25.10
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
stdlib@go1.18.1
1.25.10
1
zachomedia/cert-manager-webhook-pdns:v2.5.54940e227a39b
stdlib@go1.26.1
1.25.10
1
zahoriaut/zahori-scheduler:1.0.047d0979b1184
stdlib@go1.20.5
1.25.10
1
zeetdev/tailscale-relay:v1.24.21967aa2840b6
stdlib@go1.18.1-ts710a0d8610
1.25.10
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.