StackRadar

CVE-2026-39820

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,079
of 17,828 indexed, latest versions
Container images
4,668
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatentation in consumeComment in net/mail

Carried by container images the latest versions of 4,079 of 17,828 indexed charts deploy, on 4,668 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.104,668
OSV records
DEBIAN-CVE-2026-39820GO-2026-4986
Also known as
BIT-golang-2026-39820

Charts affected

4,079 by stars
ChartLatestAffected imagesRadar Score
proxyv2flyVerified publisher0.0.61 of 1See more

proxy v2fly 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
v2fly/v2fly-core:latestd06727b221fe
stdlib@go1.24.2
1.25.10

Open the chart page →

1,436
vals-operatorvals-operatorVerified publisher0.8.11 of 1See more

vals-operator vals-operator 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/digitalis-io/vals-operator:v0.8.17c776499b8c9
stdlib@go1.25.7
1.25.10

Open the chart page →

730
vault-raft-snapshot-agentvault-raft-snapshot-agentVerified publisher0.6.91 of 1See more

vault-raft-snapshot-agent vault-raft-snapshot-agent 0.6.9

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
stdlib@go1.23.10
1.25.10

Open the chart page →

1,267
vault-sync-operatorvault-sync-operatorVerified publisher0.1.11 of 1See more

vault-sync-operator vault-sync-operator 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/danieldonoghue/vault-sync-operator:v0.0.1-beta.38d7ec69a193c
stdlib@go1.25.9
1.25.10

Open the chart page →

277
evolution-apivcnngrVerified publisher1.0.01 of 5See more

evolution-api vcnngr 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
evoapicloud/evolution-api:latest966625532d90
stdlib@go1.23.12
1.25.10

Open the chart page →

3,764
openldap-havcnngrVerified publisher1.0.01 of 3See more

openldap-ha vcnngr 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.25.10

Open the chart page →

5,517
simple-prima-notavcnngrVerified publisher0.5.31 of 4See more

simple-prima-nota vcnngr 0.5.3

1 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:16-alpine721873c34ceb
stdlib@go1.24.6
1.25.10

Open the chart page →

4,892
velocityvelocity1.0.01 of 2See more

velocity velocity 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.10

Open the chart page →

1,001
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
stdlib@go1.13.10
1.25.10

Open the chart page →

7,518
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
stdlib@go1.13.10
1.25.10

Open the chart page →

7,536
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
stdlib@go1.13.10
1.25.10

Open the chart page →

7,439
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
stdlib@go1.13.10
1.25.10

Open the chart page →

7,439
homarrvhdirkVerified publisher0.1.51 of 1See more

homarr vhdirk 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:lateste103abadfb52
stdlib@go1.22.5
1.25.10

Open the chart page →

2,805
scrutinyvhdirkVerified publisher0.1.31 of 1See more

scrutiny vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
stdlib@go1.20.14
1.25.10

Open the chart page →

4,433
bugsinkvictorlane0.3.71 of 2See more

bugsink victorlane 0.3.7

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mariadb:12.0-noble607835cd628b
stdlib@go1.24.6
1.25.10

Open the chart page →

4,219
n8nvictorlane1.0.181 of 1See more

n8n victorlane 1.0.18

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
n8nio/n8n:1.115.1ed16e560c40e
stdlib@go1.24.6
1.25.10

Open the chart page →

6,507
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
stdlib@go1.21.7
1.25.10

Open the chart page →

67,865
pagesvictor-pages1.0.01 of 3See more

pages victor-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,350
kube-monitoring-telegram-botviento-repository1.0.01 of 1See more

kube-monitoring-telegram-bot viento-repository 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
stdlib@go1.16.4
1.25.10

Open the chart page →

7,928
vineyard-operatorvineyardVerified publisher0.24.22 of 2See more

vineyard-operator vineyard 0.24.2

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
vineyardcloudnative/vineyard-operator:latest9d419aa18faa
stdlib@go1.19.13
1.25.10
ghcr.io/v6d-io/v6d/kube-rbac-proxy:v0.13.0a2523c532c0c
stdlib@go1.18.3
1.25.10

Open the chart page →

4,573
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
stdlib@go1.17.8
1.25.10

Open the chart page →

7,892
ciliumvks-helm-chartsVerified publisher1.17.143 of 3See more

cilium vks-helm-charts 1.17.14

3 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
stdlib@go1.25.8
1.25.10
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
stdlib@go1.25.8
1.25.10
quay.io/cilium/operator-generic:v1.17.14773886ec9337
stdlib@go1.25.8
1.25.10

Open the chart page →

4,247
corednsvks-helm-chartsVerified publisher1.45.01 of 1See more

coredns vks-helm-charts 1.45.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
coredns/coredns:1.13.19b9128672209
stdlib@go1.25.2
1.25.10

Open the chart page →

923
vm-console-proxyvm-console-proxyVerified publisher0.2.01 of 1See more

vm-console-proxy vm-console-proxy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/kubevirt/vm-console-proxy:v0.8.08d6b4b6e99bd
stdlib@go1.22.4
1.25.10

Open the chart page →

646
go-devvoid-xmh1.0.11 of 1See more

go-dev void-xmh 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
voidxmh/golang:1.19-alpine-dev423c6195fab2
stdlib@go1.19
1.25.10

Open the chart page →

1,155
muthurvojtechpastyrikVerified publisher0.10.01 of 1See more

muthur vojtechpastyrik 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/vojtechpastyrik/muthur:0.10.0b5a06a6e13b9
stdlib@go1.26.1
1.25.10

Open the chart page →

320
muthur-collectorvojtechpastyrikVerified publisher0.11.01 of 1See more

muthur-collector vojtechpastyrik 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/vojtechpastyrik/muthur-collector:0.11.00a580fe3a032
stdlib@go1.26.1
1.25.10

Open the chart page →

320
volantmqvolantmq0.1.21 of 1See more

volantmq volantmq 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
volantmq/volantmq:v0.4.0-rc.69bfe7857ebc3
stdlib@go1.13.6
1.25.10

Open the chart page →

2,551
volcanovolcano-sh1.15.23 of 3See more

volcano volcano-sh 1.15.2

3 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
volcanosh/vc-controller-manager:v1.15.26a6bc2560d51
stdlib@go1.25.0
1.25.10
volcanosh/vc-scheduler:v1.15.2afab36286a17
stdlib@go1.25.0
1.25.10
volcanosh/vc-webhook-manager:v1.15.22fff65aad011
stdlib@go1.25.0
1.25.10

Open the chart page →

1,542
postgresappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,696
voteappvoting-app-helm-charts-repoVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
stdlib@go1.24.6
1.25.10

Open the chart page →

7,518
postgresappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,696
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
stdlib@go1.24.6
1.25.10

Open the chart page →

7,518
vpa-managervpa-managerVerified publisher0.4.91 of 1See more

vpa-manager vpa-manager 0.4.9

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
quay.io/jcluppnow/vpa-manager:0.6.4e459d2fba277
stdlib@go1.22.7
1.25.10

Open the chart page →

491
vulcanvulcan0.2.21 of 2See more

vulcan vulcan 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
mitre/vulcan:latest2bc4dfb8150f
stdlib@go1.25.5
1.25.10

Open the chart page →

1,551
cert-manager-webhook-vultrvultrVerified publisher1.0.01 of 1See more

cert-manager-webhook-vultr vultr 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
stdlib@go1.16.3
1.25.10

Open the chart page →

2,508
vultr-csivultrVerified publisher2.0.01 of 4See more

vultr-csi vultr 2.0.0

1 of the 4 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
vultr/vultr-csi:v0.3.041d26735d437
stdlib@go1.16.8
1.25.10

Open the chart page →

2,355
websitewaldo-visionVerified publisher0.33.01 of 2See more

website waldo-vision 0.33.0

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
stdlib@go1.20.2
1.25.10

Open the chart page →

3,480
aih-scannerwallarmVerified publisher2.7.112 of 2See more

aih-scanner wallarm 2.7.11

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wallarm/aih-scanner:2.7.11f1cb26db1f5b
stdlib@go1.26.2
1.25.10
wallarm/aih-webhook:2.7.116363a9cd2ad8
stdlib@go1.26.2
1.25.10

Open the chart page →

4,107
gateway-control-planewallarmVerified publisher0.2.02 of 2See more

gateway-control-plane wallarm 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
timescale/timescaledb:latest-pg17c79fa5891443
stdlib@go1.26.2
1.25.10
wallarm/gateway-control-plane:0.2.0a321bc974a19
stdlib@go1.24.13
1.25.10

Open the chart page →

1,220
kongwallarmVerified publisher4.6.33 of 7See more

kong wallarm 4.6.3

3 of the 7 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wallarm/ingress-python:4.6.0-15cb2ae08b40f
stdlib@go1.18.2
1.25.10
wallarm/ingress-ruby:4.6.0-1aecdb35c4def
stdlib@go1.18.3
1.25.10
wallarm/kong-kubernetes-ingress-controller:2.8b55ff6cecbd5
stdlib@go1.19.4
1.25.10

Open the chart page →

72,415
kong-previewwallarmVerified publisher4.2.32 of 5See more

kong-preview wallarm 4.2.3

2 of the 5 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
kong/kubernetes-ingress-controller:2.1.160e4102ab2da
stdlib@go1.17.5
1.25.10
wallarm/ingress-ruby:4.2.1-195ea2632326c
stdlib@go1.18.3
1.25.10

Open the chart page →

2,907
wallarm-ingress-rcwallarmVerified publisher4.8.42 of 2See more

wallarm-ingress-rc wallarm 4.8.4

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
stdlib@go1.20.5
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

2,636
wallarm-node-nextwallarmVerified publisher0.5.32 of 2See more

wallarm-node-next wallarm 0.5.3

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wallarm/node-helpers:5.0.2-1097cadc42336
stdlib@go1.22.7
1.25.10
wallarm/node-next:0.5.24314f3d2b918
stdlib@go1.22.7
1.25.10

Open the chart page →

2,414
wallarm-oobwallarmVerified publisher0.23.03 of 3See more

wallarm-oob wallarm 0.23.0

3 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wallarm/ebpf-agent:0.11.0-rc0c8920e60c726
stdlib@go1.22.1
1.25.10
wallarm/node-helpers:6.10.1aecd88b24c51
stdlib@go1.25.7
1.25.10
wallarm/node-native-processing:0.23.07db2da8fce0b
stdlib@go1.26.0
1.25.10

Open the chart page →

2,842
pageswalter1.0.01 of 3See more

pages walter 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,350
consulwarjiang1.3.02 of 2See more

consul warjiang 1.3.0

2 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
stdlib@go1.20.10
1.25.10
hashicorp/consul-k8s-control-plane:1.3.00e4452f0f265
stdlib@go1.20.10
1.25.10

Open the chart page →

4,102
eth-validatorwateim1.4.51 of 3See more

eth-validator wateim 1.4.5

1 of the 3 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wateim/lighthouse-launch:latest2520149ee574
stdlib@go1.23.8
1.25.10

Open the chart page →

4,945
prometheus-storage-adapterwavefront0.1.61 of 2See more

prometheus-storage-adapter wavefront 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wavefronthq/prometheus-storage-adapter:latestded77b38c7c6
stdlib@go1.18
1.25.10

Open the chart page →

1,285
wavefront-hpa-adapterwavefront0.2.101 of 1See more

wavefront-hpa-adapter wavefront 0.2.10

1 of the 1 container images this version deploys carry CVE-2026-39820.

Container imageDigestPackageFixed in
wavefronthq/wavefront-hpa-adapter:0.9.12af5fef9a4768
stdlib@go1.18
1.25.10

Open the chart page →

1,692

Container images carrying it

4,668 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/jetstack/cert-manager-cainjector:v1.16.13c49185718cf
stdlib@go1.23.2
1.25.10
1
quay.io/jetstack/cert-manager-cainjector:v1.14.54ffda7facb4d
stdlib@go1.21.9
1.25.10
1
quay.io/jetstack/cert-manager-cainjector:v1.18.2af59e01ad975
stdlib@go1.24.4
1.25.10
1
quay.io/jetstack/cert-manager-cainjector:v1.10.1b5657161d2c2
stdlib@go1.19.3
1.25.10
1
quay.io/jetstack/cert-manager-cainjector:v1.8.2c010246124c2
stdlib@go1.17.11
1.25.10
1
quay.io/jetstack/cert-manager-cainjector:v1.12.0e0a5b06b231c
stdlib@go1.20.4
1.25.10
1
quay.io/jetstack/cert-manager-cainjector:v1.8.0e7b6203ccb37
stdlib@go1.17.8
1.25.10
1
quay.io/jetstack/cert-manager-cainjector:v1.19.3eb1df56668b6
stdlib@go1.25.6
1.25.10
1
quay.io/jetstack/cert-manager-controller:v1.10.11143471c90db
stdlib@go1.19.3
1.25.10
1
quay.io/jetstack/cert-manager-controller:v1.12.04a9d0264055b
stdlib@go1.20.4
1.25.10
1
quay.io/jetstack/cert-manager-controller:v1.18.281316365dc0b
stdlib@go1.24.4
1.25.10
1
quay.io/jetstack/cert-manager-controller:v1.14.59c0527cab629
stdlib@go1.21.9
1.25.10
1
quay.io/jetstack/cert-manager-controller:v1.19.3a07125af5e83
stdlib@go1.25.6
1.25.10
1
quay.io/jetstack/cert-manager-controller:v1.8.2a20c44021a5d
stdlib@go1.17.11
1.25.10
1
quay.io/jetstack/cert-manager-controller:v1.16.1ae5e14401cde
stdlib@go1.23.2
1.25.10
1
quay.io/jetstack/cert-manager-controller:v1.8.0e1642bf8e933
stdlib@go1.17.8
1.25.10
1
quay.io/jetstack/cert-manager-ctl:v1.13.24d9fce2c050e
stdlib@go1.20.10
1.25.10
1
quay.io/jetstack/cert-manager-ctl:v1.8.0595c548dee6f
stdlib@go1.17.8
1.25.10
1
quay.io/jetstack/cert-manager-ctl:v1.8.281b2d775edad
stdlib@go1.17.11
1.25.10
1
quay.io/jetstack/cert-manager-ctl:v1.12.08d54fe9d0c0d
stdlib@go1.20.4
1.25.10
1
quay.io/jetstack/cert-manager-startupapicheck:v1.14.50f5b104bdd1b
stdlib@go1.21.9
1.25.10
1
quay.io/jetstack/cert-manager-startupapicheck:v1.18.21075e0974151
stdlib@go1.24.4
1.25.10
1
quay.io/jetstack/cert-manager-startupapicheck:v1.16.1b4a5e42f6dbf
stdlib@go1.23.2
1.25.10
1
quay.io/jetstack/cert-manager-startupapicheck:v1.19.3e51a06251338
stdlib@go1.25.6
1.25.10
1
quay.io/jetstack/cert-manager-webhook:v1.19.32625754083d5
stdlib@go1.25.6
1.25.10
1
quay.io/jetstack/cert-manager-webhook:v1.10.164121721c665
stdlib@go1.19.3
1.25.10
1
quay.io/jetstack/cert-manager-webhook:v1.16.16edf44244b2a
stdlib@go1.23.2
1.25.10
1
quay.io/jetstack/cert-manager-webhook:v1.18.29431f0d8b510
stdlib@go1.24.4
1.25.10
1
quay.io/jetstack/cert-manager-webhook:v1.8.2ada7edd90bec
stdlib@go1.17.11
1.25.10
1
quay.io/jetstack/cert-manager-webhook:v1.12.0ec4306b243d9
stdlib@go1.20.4
1.25.10
1
quay.io/jetstack/cert-manager-webhook:v1.14.5ef419261a209
stdlib@go1.21.9
1.25.10
1
quay.io/jetstack/cert-manager-webhook:v1.8.0fd798a5a773e
stdlib@go1.17.8
1.25.10
1
quay.io/jetstack/kube-oidc-proxy:v0.3.0e045b26eb6df
stdlib@go1.14.1
1.25.10
1
quay.io/jiralert/jiralert-linux-amd64:v1.3.01983aa64761a
stdlib@go1.19.6
1.25.10
1
quay.io/jupyterhub/k8s-image-awaiter:3.3.7ada70832a345
stdlib@go1.18.10
1.25.10
1
quay.io/jupyterhub/k8s-image-awaiter:4.4.2c4df1176d152
stdlib@go1.23.12
1.25.10
1
quay.io/jupyterhub/k8s-image-awaiter:3.2.1f65b644ed6db
stdlib@go1.18.10
1.25.10
1
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
stdlib@go1.19.2
1.25.10
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
stdlib@go1.13.8
1.25.10
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
stdlib@go1.13.8
1.25.10
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
stdlib@go1.13.8
1.25.10
1
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
stdlib@go1.22.5
1.25.10
1
quay.io/kiali/kiali:v2.23.07652b1285f50
stdlib@go1.25.0
1.25.10
1
quay.io/kiali/kiali-operator:v2.32.096c5264d54ab
stdlib@go1.23.4
1.25.10
1
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
stdlib@go1.19
1.25.10
1
quay.io/kube-ops/loki:2.2.14fbd63194674
stdlib@go1.15.3
1.25.10
1
quay.io/kube-ops/promtail:2.2.134de6387233b
stdlib@go1.15.3
1.25.10
1
quay.io/kubermatic/kubermatic:v2.24.5ebba936046ab
stdlib@go1.20.6
1.25.10
1
quay.io/kubermatic/machine-controller:v1.57.0476ae867ae56
stdlib@go1.20.5
1.25.10
1
quay.io/kubermatic/operating-system-manager:v1.3.010081473da43
stdlib@go1.20.5
1.25.10
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.