StackRadar

CVE-2026-39820

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,939
of 17,787 indexed, latest versions
Container images
4,537
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatentation in consumeComment in net/mail

Carried by container images the latest versions of 3,939 of 17,787 indexed charts deploy, on 4,537 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,537
OSV records
DEBIAN-CVE-2026-39820GO-2026-4986
Also known as
BIT-golang-2026-39820

Charts affected

3,939 by stars
ChartLatestAffected imagesRadar Score
authz-pdplabs64io-helm-chartsVerified publisher0.6.01 of 1See more

authz-pdp labs64io-helm-charts 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/cerbos/cerbos:0.51.08d35a64e4a99
stdlib@go1.25.6
1.25.10

Open the chart page →

800
checkoutlabs64io-helm-chartsVerified publisher0.8.01 of 3See more

checkout labs64io-helm-charts 0.8.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,638
payment-gatewaylabs64io-helm-chartsVerified publisher0.8.01 of 2See more

payment-gateway labs64io-helm-charts 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

2,708
lagoon-remotelagoon-chartsVerified publisher0.106.01 of 1See more

lagoon-remote lagoon-charts 0.106.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
stdlib@go1.24.3
1.25.10

Open the chart page →

2,113
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
stdlib@go1.13.10
1.25.10

Open the chart page →

7,510
lgtmlgtmVerified publisher0.27.01 of 9See more

lgtm lgtm 0.27.0

1 of the 9 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
stdlib@go1.25.7
1.25.10

Open the chart page →

1,004
lgtm-stacklgtm-stackVerified publisher0.1.33 of 8See more

lgtm-stack lgtm-stack 0.1.3

3 of the 8 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/grafana:13.1.0121a7a9ece6d
stdlib@go1.25.7
1.25.10
minio/mc:RELEASE.2024-01-16T16-06-34Z591b097ea2d4
stdlib@go1.21.6
1.25.10
minio/minio:RELEASE.2024-01-18T22-51-28Z551682a57a94
stdlib@go1.21.6
1.25.10

Open the chart page →

5,614
keptn-cert-managerlifecycle-toolkitVerified publisher0.3.01 of 1See more

keptn-cert-manager lifecycle-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/keptn/certificate-operator:v3.0.0b82064b0e339
stdlib@go1.23.3
1.25.10

Open the chart page →

507
keptn-lifecycle-operatorlifecycle-toolkitVerified publisher0.6.01 of 1See more

keptn-lifecycle-operator lifecycle-toolkit 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/keptn/lifecycle-operator:v2.0.0866ced256a8c
stdlib@go1.23.3
1.25.10

Open the chart page →

595
keptn-metrics-operatorlifecycle-toolkitVerified publisher0.5.01 of 1See more

keptn-metrics-operator lifecycle-toolkit 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/keptn/metrics-operator:v2.1.0dc48471c7cf8
stdlib@go1.23.3
1.25.10

Open the chart page →

825
kube-iptables-tailerlifen-chartsVerified publisher0.2.31 of 1See more

kube-iptables-tailer lifen-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
stdlib@go1.13.8
1.25.10

Open the chart page →

4,456
linkerd-jaegerlinkerd2-edgeVerified publisher30.14.11-edge2 of 4See more

linkerd-jaeger linkerd2-edge 30.14.11-edge

2 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.3104d224a9999b
stdlib@go1.17.6
1.25.10
otel/opentelemetry-collector-contrib:0.83.071fcef33ae71
stdlib@go1.20.7
1.25.10

Open the chart page →

4,389
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
stdlib@go1.23.8
1.25.10

Open the chart page →

7,915
go-hello-worldloafoe0.14.01 of 1See more

go-hello-world loafoe 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/loafoe/go-hello-world:v2.13.0d3fb171f20e1
stdlib@go1.25.3
1.25.10

Open the chart page →

672
jspolicyloftVerified publisher0.2.21 of 1See more

jspolicy loft 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
loftsh/jspolicy:0.2.225deb9bd2683
stdlib@go1.17.13
1.25.10

Open the chart page →

2,309
vcluster-eksloftVerified publisher0.0.0-ci.33 of 4See more

vcluster-eks loft 0.0.0-ci.3

3 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/eks-distro/etcd-io/etcd:v3.5.6-eks-1-24-7efa6dee17ed2
stdlib@go1.16.15
1.25.10
public.ecr.aws/eks-distro/kubernetes/kube-apiserver:v1.24.9-eks-1-24-772e06b605692
stdlib@go1.18.9
1.25.10
public.ecr.aws/eks-distro/kubernetes/kube-controller-manager:v1.24.9-eks-1-24-7eaea8c230432
stdlib@go1.18.9
1.25.10

Open the chart page →

3,304
vcluster-k0sloftVerified publisher0.0.0-ci.31 of 2See more

vcluster-k0s loft 0.0.0-ci.3

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
stdlib@go1.19.4
1.25.10

Open the chart page →

3,138
log2rbac-operatorlog2rbac-operator0.0.51 of 1See more

log2rbac-operator log2rbac-operator 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jkremser/log2rbac:v0.0.5e35cf56ef183
stdlib@go1.17.6
1.25.10

Open the chart page →

1,938
logclilogcliVerified publisher0.1.01 of 1See more

logcli logcli 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
grafana/logcli:main-c90366d-amd643d85bb66e39b
stdlib@go1.16.2
1.25.10

Open the chart page →

2,947
lumenvoxlumenvox7.1.010 of 11See more

lumenvox lumenvox 7.1.0

10 of the 11 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
lumenvox/admin-portal:7.112310cf52f79
stdlib@go1.26.2
1.25.10
lumenvox/archive:7.15114f08ab8ef
stdlib@go1.26.2
1.25.10
lumenvox/cloud-init-tools:7.1de940e2ec601
stdlib@go1.26.2
1.25.10
lumenvox/configuration:7.182bf01d9ebec
stdlib@go1.26.2
1.25.10
lumenvox/deployment:7.1dadac2a74be6
stdlib@go1.26.2
1.25.10
lumenvox/file-store:7.138aa8711c9ef
stdlib@go1.26.2
1.25.10
lumenvox/license:7.135d0b1ac053e
stdlib@go1.26.2
1.25.10
lumenvox/management-api:7.16420a6e7d6c2
stdlib@go1.26.2
1.25.10
lumenvox/resource:7.193fd6ff1d62c
stdlib@go1.26.2
1.25.10
lumenvox/storage:7.1c961fe78e2ca
stdlib@go1.26.2
1.25.10

Open the chart page →

4,284
voice-biometricslumenvox2.0.18 of 26See more

voice-biometrics lumenvox 2.0.1

8 of the 26 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.10
library/traefik:v2.57d5a6ae66572
stdlib@go1.17.6
1.25.10
lumenvox/cloud-init-tools:2.0.07ff037a71c50
stdlib@go1.17.3
1.25.10
lumenvox/cloud-license:2.0.09a69862e1248
stdlib@go1.17.3
1.25.10
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.25.10
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.10
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
stdlib@go1.15.8
1.25.10
quay.io/prometheus/prometheus:v2.26.038d40a760569
stdlib@go1.16.2
1.25.10

Open the chart page →

71,216
dnsbl-exporterluzillaVerified publisher0.5.01 of 2See more

dnsbl-exporter luzilla 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/luzilla/dnsbl_exporter:v0.12.0ecba7360ff12
stdlib@go1.25.0
1.25.10

Open the chart page →

1,147
lynqlynqVerified publisher1.1.221 of 1See more

lynq lynq 1.1.22

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/k8s-lynq/lynq:1.1.22229b05e3c717
stdlib@go1.24.13
1.25.10

Open the chart page →

621
magentomagento3.2.35 of 12See more

magento magento 3.2.3

5 of the 12 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
stdlib@go1.18.2
1.25.10
library/rabbitmq:4.1.0-management935b3f84c1e4
stdlib@go1.22.2
1.25.10
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
stdlib@go1.24.6
1.25.10
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
stdlib@go1.24.6
1.25.10
longhornio/longhorn-ui:v1.10.0e60f36161511
stdlib@go1.24.6
1.25.10

Open the chart page →

13,582
mcp-orchestratormagertronVerified publisher3.8.231 of 6See more

mcp-orchestrator magertron 3.8.23

1 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.10

Open the chart page →

1,704
goblackholemainVerified publisher0.0.41 of 1See more

goblackhole main 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
bedag/goblackhole:0.2.0447a88598f4c
stdlib@go1.16.6
1.25.10

Open the chart page →

1,972
plane-enterprisemakeplaneOfficialVerified publisher3.7.23 of 13See more

plane-enterprise makeplane 3.7.2

3 of the 13 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:15.7-alpine468d34fefd63
stdlib@go1.18.2
1.25.10
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
stdlib@go1.24.6
1.25.10
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
stdlib@go1.24.6
1.25.10

Open the chart page →

4,942
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
stdlib@go1.13.10
1.25.10

Open the chart page →

3,606
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.10

Open the chart page →

19,192
mcpmcp-chartsVerified publisher0.0.232 of 7See more

mcp mcp-charts 0.0.23

2 of the 7 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
stdlib@go1.25.4
1.25.10
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
stdlib@go1.25.4
1.25.10

Open the chart page →

6,994
traefik-forward-authmesosphere0.3.102 of 2See more

traefik-forward-auth mesosphere 0.3.10

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
stdlib@go1.15.11
1.25.10
mesosphere/traefik-forward-auth:3.1.05456581d7b76
stdlib@go1.14.15
1.25.10

Open the chart page →

5,308
metadata-injectormetadata-injector-operator0.0.11 of 1See more

metadata-injector metadata-injector-operator 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ruslanguns/metadata-injector-operator:v0.0.16c77e4675e07
stdlib@go1.22.11
1.25.10

Open the chart page →

561
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
stdlib@go1.14.6
1.25.10

Open the chart page →

3,254
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
stdlib@go1.23.4
1.25.10

Open the chart page →

4,184
librenmsmidokura-communityVerified publisher0.3.21 of 6See more

librenms midokura-community 0.3.2

1 of the 6 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
librenms/librenms:22.4.14f1f3d667cc7
stdlib@go1.16.12
1.25.10

Open the chart page →

8,967
chartmuseummike75151.2.01 of 1See more

chartmuseum mike7515 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
stdlib@go1.17.8
1.25.10

Open the chart page →

3,168
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
stdlib@go1.15.7
1.25.10

Open the chart page →

6,915
mimir-syncmimir-sync3.1.01 of 1See more

mimir-sync mimir-sync 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/antnsn/mal-sync:v1.0.52f06e72cef36
stdlib@go1.23.7
1.25.10

Open the chart page →

1,293
miniapiminiapi1.3.21 of 1See more

miniapi miniapi 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
udhos/miniapi:1.3.28a7042db82ce
stdlib@go1.23.2
1.25.10

Open the chart page →

854
mlflow-servermlflowserver0.1.91 of 3See more

mlflow-server mlflowserver 0.1.9

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
stdlib@go1.25.5
1.25.10

Open the chart page →

5,804
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
stdlib@go1.25.4
1.25.10

Open the chart page →

11,108
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
stdlib@go1.24.0
1.25.10

Open the chart page →

2,678
model-manager-servermodel-manager-server1.27.01 of 1See more

model-manager-server model-manager-server 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-server:1.27.0c057dcdd9ef3
stdlib@go1.23.12
1.25.10

Open the chart page →

733
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
stdlib@go1.19.12
1.25.10

Open the chart page →

13,763
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.10
library/redmine:6.1.204ac44a2595b
stdlib@go1.24.6
1.25.10

Open the chart page →

7,552
podsyncmy0nVerified publisher1.5.41 of 2See more

podsync my0n 1.5.4

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
tdeutsch/podsync:v2.4.2b67186f4c9a5
stdlib@go1.19.3
1.25.10

Open the chart page →

2,059
maddymyaVerified publisher22.4.121 of 2See more

maddy mya 22.4.12

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
foxcpp/maddy:0.7.16ab538e2f28b
stdlib@go1.19.13
1.25.10

Open the chart page →

1,412
registrymyaVerified publisher22.4.111 of 1See more

registry mya 22.4.11

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
distribution/distribution:2.8.3f84b2078238f
stdlib@go1.20.8
1.25.10

Open the chart page →

899
simple-gowikimy-helm-chartsVerified publisher0.2.01 of 1See more

simple-gowiki my-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
forchaladtest/mygowiki:1.0.170827eaecad1
stdlib@go1.22.6
1.25.10

Open the chart page →

399
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
stdlib@go1.18.1
1.25.10

Open the chart page →

3,729

Container images carrying it

4,537 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
free5gc/chf:v3.4.3e2a4dd98a4ed
stdlib@go1.21.8
1.25.10
2
free5gc/nrf:v3.4.399e46b860efb
stdlib@go1.21.8
1.25.10
2
free5gc/nssf:v3.4.3dfe8c68c04b4
stdlib@go1.21.8
1.25.10
2
free5gc/pcf:v3.4.3f712e8ecd927
stdlib@go1.21.8
1.25.10
2
free5gc/smf:v3.4.360e38baa4b10
stdlib@go1.21.8
1.25.10
2
free5gc/udm:v3.4.32f68df062a50
stdlib@go1.21.8
1.25.10
2
free5gc/udr:v3.4.3c0783bcdcbdc
stdlib@go1.21.8
1.25.10
2
free5gc/upf:v3.4.3b6b362a39fdd
stdlib@go1.21.8
1.25.10
2
free5gc/webui:v3.4.39adeb18492cb
stdlib@go1.21.8
1.25.10
2
friendsofgo/killgrave:0.4.139cfbecca342
stdlib@go1.16.3
1.25.10
2
garugaru/aws-cloudwatch-exporter:latest541852cafda5
stdlib@go1.16.15
1.25.10
2
goelankit/cortex-gateway:v1.1.00d9a82dcf026
stdlib@go1.18
1.25.10
2
gotify/server:3.1.0be44495e4609
stdlib@go1.26.0
1.25.10
2
gotson/komga:1.26.36c2a967bbe9a
stdlib@go1.17.8
1.25.10
2
governify/dashboard:lateste83a17ba5038
stdlib@go1.17
1.25.10
2
grafana/agent-operator:v0.25.1a136c6208aa3
stdlib@go1.18
1.25.10
2
grafana/alloy:v1.8.17790f6f7fbd8
stdlib@go1.24.1
1.25.10
2
grafana/alloy:v1.12.2f94b1c82957a
stdlib@go1.25.5
1.25.10
2
grafana/grafana:9.2.4057896e23443
stdlib@go1.19.3
1.25.10
2
grafana/grafana:11.1.0079600c9517b
stdlib@go1.22.4
1.25.10
2
grafana/grafana:12.3.12175aaa91c96
stdlib@go1.25.5
1.25.10
2
grafana/grafana:8.5.042d3e6bc1865
stdlib@go1.17.9
1.25.10
2
grafana/grafana:7.3.5511bc20bfcd1
stdlib@go1.15.5
1.25.10
2
grafana/grafana:11.1.4886b56d5534e
stdlib@go1.22.4
1.25.10
2
grafana/grafana:12.3.39e1e77ade304
stdlib@go1.25.7
1.25.10
2
grafana/grafana:11.4.0d8ea37798ccc
stdlib@go1.23.1
1.25.10
2
grafana/grafana:12.4.1e932bd6ed0e0
stdlib@go1.25.8
1.25.10
2
grafana/loki:3.6.1144148ad243c0
stdlib@go1.26.2
1.25.10
2
grafana/loki:1.5.0922b3f412fdd
stdlib@go1.13.11
1.25.10
2
grafana/loki:3.1.0d947e68a84d9
stdlib@go1.22.2
1.25.10
2
grafana/loki:2.5.0f9ef133793af
stdlib@go1.17.8
1.25.10
2
grafana/promtail:1.5.046e88d390cd6
stdlib@go1.13.11
1.25.10
2
grafana/tempo:2.5.0f0200a9bff6d
stdlib@go1.21.3
1.25.10
2
hanchuanchuan/goinception:latestb3c0dd26fb50
stdlib@go1.22.1
1.25.10
2
hashicorp/consul:1.14.2e38576edcdfd
stdlib@go1.19.2
1.25.10
2
hashicorp/consul-k8s-control-plane:1.0.2538a3436398d
stdlib@go1.19.2
1.25.10
2
hashicorp/vault:1.8.34db614d40d0e
stdlib@go1.16.7
1.25.10
2
hashicorp/vault:1.15.26b4e5dadf082
stdlib@go1.21.3
1.25.10
2
hashicorp/vault:1.12.18de4d5f31b38
stdlib@go1.19.2
1.25.10
2
hashicorp/vault-k8s:1.3.15d74a885ae3e
stdlib@go1.21.3
1.25.10
2
hashicorp/vault-k8s:1.1.0844337076b72
stdlib@go1.19.3
1.25.10
2
hashicorp/vault-k8s:0.13.1bebb03e8e800
stdlib@go1.16.3
1.25.10
2
helmforge/kubectl:1.35.3c3f97e954c47
stdlib@go1.25.7
1.25.10
2
honestica/kube-iptables-tailer:master-91a393242fb939
stdlib@go1.13.8
1.25.10
2
hoppscotch/hoppscotch:2024.8.2f1da831950b7
stdlib@go1.21.10
1.25.10
2
ilum/api:6.7.3624fd09528c8
stdlib@go1.23.7
1.25.10
2
ilum/mongodb:6.0.542b6d774c37d
stdlib@go1.20.12
1.25.10
2
inaccel/daemon:latest093e1ea90ab8
stdlib@go1.21.6
1.25.10
2
inaccel/mkrt:latest187fd448b6f2
stdlib@go1.21.5
1.25.10
2
inaccel/reef:latestc967218739f3
stdlib@go1.21.6
1.25.10
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.