StackRadar

CVE-2026-39821

High

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,528
of 17,803 indexed, latest versions
Container images
5,282
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: git-lfs security update

Carried by container images the latest versions of 4,528 of 17,803 indexed charts deploy, on 5,282 images.

Affected packageAffected versionsFixed inImages
git-lfsrpm2.13.3-3.el8_60:3.4.1-11.el8_101
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+190 more1.25.135,243
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+220 more0.55.03,683
OSV records
RHSA-2026:30853GO-2026-5026

Charts affected

4,528 by stars
ChartLatestAffected imagesRadar Score
statpinggeek-cookbookVerified publisher6.2.01 of 2See more

statping geek-cookbook 6.2.0

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
stdlib@go1.14.13
0.55.0
1.25.13

Open the chart page →

3,378
syncthinggeek-cookbookVerified publisher3.5.21 of 1See more

syncthing geek-cookbook 3.5.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
syncthing/syncthing:1.18.2966433161272
golang.org/x/net@v0.0.0-20210716203947-853a461950ff
stdlib@go1.17
0.55.0
1.25.13

Open the chart page →

2,611
tautulligeek-cookbookVerified publisher11.4.21 of 1See more

tautulli geek-cookbook 11.4.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
stdlib@go1.16.7
1.25.13

Open the chart page →

10,820
traefik-forward-authgeek-cookbookVerified publisher2.2.21 of 1See more

traefik-forward-auth geek-cookbook 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:2.2.0e875194d67e2
golang.org/x/net@v0.0.0-20190930134127-c5a3c61f89f3
stdlib@go1.13.12
0.55.0
1.25.13

Open the chart page →

2,234
unifigeek-cookbookVerified publisher5.1.31 of 1See more

unifi geek-cookbook 5.1.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.4.162b3edc809a3ff
stdlib@go1.20.4
1.25.13

Open the chart page →

11,969
ghost-on-kubernetesghost-on-kubernetes-helmVerified publisher1.1.22 of 3See more

ghost-on-kubernetes ghost-on-kubernetes-helm 1.1.2

2 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/mysql:8.4b3b90af2a655
stdlib@go1.24.6
1.25.13
ghcr.io/sredevopsorg/ghost-on-kubernetes:maindd991bafa85e
stdlib@go1.26.4
1.25.13

Open the chart page →

1,487
gitlab-runnergitlab-jh0.93.01 of 1See more

gitlab-runner gitlab-jh 0.93.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.4.0a4838319e55b
golang.org/x/net@v0.54.0
stdlib@go1.26.5
0.55.0
1.25.13

Open the chart page →

280
gitvotegitvoteVerified publisher1.5.02 of 6See more

gitvote gitvote 1.5.0

2 of the 6 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
stdlib@go1.24.6
1.25.13
ghcr.io/cncf/gitvote/dbmigrator:v1.5.0f1e7efe440da
stdlib@go1.25.3
1.25.13

Open the chart page →

5,678
etcdgroundhog2k1.1.121 of 2See more

etcd groundhog2k 1.1.12

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/coreos/etcd:v3.7.13c66a5191d37
stdlib@go1.26.5
1.25.13

Open the chart page →

143
nacosgujunxiang0.1.51 of 1See more

nacos gujunxiang 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
nacos/nacos-server:latest1c191c30c8cd
stdlib@go1.26.5
1.25.13

Open the chart page →

1,888
nzbhydra2halkeye2.30.11 of 2See more

nzbhydra2 halkeye 2.30.1

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
binhex/arch-nzbhydra2:3.1.0-1-01fb8952921ab6
stdlib@go1.14
1.25.13

Open the chart page →

6,702
unifi-pollerhalkeye0.1.21 of 1See more

unifi-poller halkeye 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
golift/unifi-poller:2.0.0cafac968b540
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
stdlib@go1.13.7
0.55.0
1.25.13

Open the chart page →

1,654
whoamiharrytangVerified publisher0.2.01 of 1See more

whoami harrytang 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
traefik/whoami:v1.11.0200689790a0a
stdlib@go1.24.1
1.25.13

Open the chart page →

353
monitoring-stackhaukitechVerified publisher0.1.113 of 3See more

monitoring-stack haukitech 0.1.11

3 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-operator:v0.77.1dde69a8b6f4b
golang.org/x/net@v0.29.0
stdlib@go1.23.1
0.55.0
1.25.13
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
golang.org/x/net@v0.23.0
stdlib@go1.22.5
0.55.0
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
golang.org/x/net@v0.29.0
stdlib@go1.23.3
0.55.0
1.25.13

Open the chart page →

2,165
prometheus-operatorhaukitechVerified publisher0.1.41 of 1See more

prometheus-operator haukitech 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-operator:v0.77.1dde69a8b6f4b
golang.org/x/net@v0.29.0
stdlib@go1.23.1
0.55.0
1.25.13

Open the chart page →

561
headscaleheadscaleVerified publisher1.0.193 of 3See more

headscale headscale 1.0.19

3 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
alpine/k8s:1.36.244ef4942e171
golang.org/x/net@v0.53.0
stdlib@go1.26.3
0.55.0
1.25.13
ghcr.io/juanfont/headscale:0.29.30e7f1c6e4ce6
stdlib@go1.26.5
1.25.13
ghcr.io/juanfont/headscale:0.29.3-debug842cd94b754b
stdlib@go1.26.5
1.25.13

Open the chart page →

3,485
health-exporterhealth-exporterVerified publisher0.3.41 of 1See more

health-exporter health-exporter 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/snapp-incubator/health-exporter:0.3.252a0d8f6278c
golang.org/x/net@v0.0.0-20210913180222-943fd674d43e
stdlib@go1.17.2
0.55.0
1.25.13

Open the chart page →

1,558
netbirdhelmforgeVerified publisher1.0.101 of 4See more

netbird helmforge 1.0.10

1 of the 4 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

3,089
simple-krr-dashboardhelm-simple-krr-dashboardVerified publisher1.6.21 of 3See more

simple-krr-dashboard helm-simple-krr-dashboard 1.6.2

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.2ec8f734b0a10
golang.org/x/net@v0.47.0
stdlib@go1.25.7
0.55.0
1.25.13

Open the chart page →

2,274
helm-watchdog-pod-deletehelm-watchdog-pod-delete0.3.01 of 1See more

helm-watchdog-pod-delete helm-watchdog-pod-delete 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
golang.org/x/net@v0.38.0
stdlib@go1.24.6
0.55.0
1.25.13

Open the chart page →

1,153
home-assistanthome-assistantVerified publisher0.5.101 of 3See more

home-assistant home-assistant 0.5.10

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
golang.org/x/net@v0.49.0
stdlib@go1.25.6
0.55.0
1.25.13

Open the chart page →

2,344
hpe-cosi-driverhpe-storageVerified publisher2.0.02 of 2See more

hpe-cosi-driver hpe-storage 2.0.0

2 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/hpestorage/cosi-driver:v2.0.0a4d2667f2b6e
golang.org/x/net@v0.48.0
stdlib@go1.25.0
0.55.0
1.25.13
registry.k8s.io/sig-storage/objectstorage-sidecar:v0.2.2c7166a73a303
golang.org/x/net@v0.40.0
stdlib@go1.24.11
0.55.0
1.25.13

Open the chart page →

1,696
inference-manager-engineinference-manager-engine1.46.01 of 1See more

inference-manager-engine inference-manager-engine 1.46.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/inference-manager-engine:1.46.0c46f109c3d0b
golang.org/x/net@v0.48.0
stdlib@go1.25.9
0.55.0
1.25.13

Open the chart page →

266
frpc-ingressinfinity-server0.4.11 of 1See more

frpc-ingress infinity-server 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
springhack/frpc_ingress:latest4aceb821da88
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.19.5
0.55.0
1.25.13

Open the chart page →

2,623
infrahub-enterpriseinfrahub-enterpriseVerified publisher4.19.21 of 5See more

infrahub-enterprise infrahub-enterprise 4.19.2

1 of the 5 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
stdlib@go1.25.0
1.25.13

Open the chart page →

10,738
inlets-operatorinlets0.17.201 of 1See more

inlets-operator inlets 0.17.20

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/inlets/inlets-operator:0.17.2208265c006973
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.55.0
1.25.13

Open the chart page →

504
coreinstill-aiOfficialVerified publisher0.1.7511 of 15See more

core instill-ai 0.1.75

11 of the 15 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
stdlib@go1.19.3
0.55.0
1.25.13
instill/api-gateway:9bfdc88b53eaa51c523
golang.org/x/net@v0.47.0
stdlib@go1.25.6
0.55.0
1.25.13
instill/artifact-backend:b28766ac4a393e601ed
golang.org/x/net@v0.33.0
stdlib@go1.25.6
0.55.0
1.25.13
instill/console:0.68.54cd70e2df5c6
stdlib@go1.23.10
1.25.13
instill/mgmt-backend:d0933d4ebe12f77a3f9
golang.org/x/net@v0.47.0
stdlib@go1.25.6
0.55.0
1.25.13
instill/model-backend:611f0f2e980125e5ba5
golang.org/x/net@v0.47.0
stdlib@go1.25.6
0.55.0
1.25.13
library/influxdb:2.3.0-alpined7f5dd5f70e2
golang.org/x/net@v0.0.0-20220401154927-543a649e0bdd
stdlib@go1.18.3
0.55.0
1.25.13
library/postgres:15-alpinefe0737ba566a
stdlib@go1.24.6
1.25.13
library/registry:2.8.3a3d8aaa63ed8
stdlib@go1.20.8
1.25.13
openfga/openfga:v1.9.25e94966c11df
golang.org/x/net@v0.40.0
stdlib@go1.24.5
0.55.0
1.25.13
temporalio/admin-tools:1.28cfde8170c92f
golang.org/x/net@v0.48.0
stdlib@go1.25.8
0.55.0
1.25.13

Open the chart page →

31,447
intel-gpu-resource-driverintelVerified publisher0.7.01 of 1See more

intel-gpu-resource-driver intel 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
intel/intel-gpu-resource-driver:v0.7.0e158711e32ce
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.55.0
1.25.13

Open the chart page →

565
jenkins-operatorjenkins0.8.11 of 1See more

jenkins-operator jenkins 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/jenkins-kubernetes-operator/operator:v0.8.171cb50263c3b
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.6
0.55.0
1.25.13

Open the chart page →

2,211
amazon-eks-pod-identity-webhookjkroepkeVerified publisher2.6.51 of 1See more

amazon-eks-pod-identity-webhook jkroepke 2.6.5

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
public.ecr.aws/eks/amazon-eks-pod-identity-webhook:v0.6.173071570e8e8c
golang.org/x/net@v0.49.0
stdlib@go1.26.3
0.55.0
1.25.13

Open the chart page →

152
rustrial-k8s-gitops-secrets-controllerk8s-gitops-secrets0.6.01 of 1See more

rustrial-k8s-gitops-secrets-controller k8s-gitops-secrets 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
rustrial/k8s-gitops-secrets-controller:0.6.093326a322a01
stdlib@go1.26.4
1.25.13

Open the chart page →

74
calibre-webk8s-home-lab-repo9.1.11 of 1See more

calibre-web k8s-home-lab-repo 9.1.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
stdlib@go1.17.8
1.25.13

Open the chart page →

4,577
home-assistantk8s-home-lab-repo16.3.11 of 1See more

home-assistant k8s-home-lab-repo 16.3.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
golang.org/x/net@v0.49.0
stdlib@go1.25.6
0.55.0
1.25.13

Open the chart page →

4,671
wireguardk8s-home-lab-repo1.6.01 of 1See more

wireguard k8s-home-lab-repo 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
stdlib@go1.18.5
1.25.13

Open the chart page →

7,511
k8s-sftp-gcsk8s-sftp-gcsVerified publisher0.1.41 of 1See more

k8s-sftp-gcs k8s-sftp-gcs 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
danuk/k8s-sftp-gcs:latestdd0e6585c44f
stdlib@go1.18.4
1.25.13

Open the chart page →

1,607
k8statusk8statusOfficialVerified publisher0.17.01 of 1See more

k8status k8status 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/stenic/k8status:0.17.093298e03089e
golang.org/x/net@v0.26.0
stdlib@go1.23.12
0.55.0
1.25.13

Open the chart page →

712
kanister-operatorkanister0.118.01 of 1See more

kanister-operator kanister 0.118.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/kanisterio/controller:0.118.0d22616a5998b
golang.org/x/net@v0.41.0
stdlib@go1.25.6
0.55.0
1.25.13

Open the chart page →

1,188
kiali-operatorkiali2.32.01 of 1See more

kiali-operator kiali 2.32.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/kiali/kiali-operator:v2.32.096c5264d54ab
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.55.0
1.25.13

Open the chart page →

1,109
kividb-operator-chartkividb-operatorVerified publisher0.3.02 of 2See more

kividb-operator-chart kividb-operator 0.3.0

2 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/kividbio/kividb-operator:0.3.0f115e5ab1746
stdlib@go1.26.5
1.25.13
quay.io/kividbio/kividb-operator-gui:0.3.0bdf0760ab965
stdlib@go1.26.5
1.25.13

Open the chart page →

112
mysqldumpkokuwa7.0.31 of 1See more

mysqldump kokuwa 7.0.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/kokuwaio/gcloud-mysql:v3.2.1963098135c550
stdlib@go1.26.1
1.25.13

Open the chart page →

847
kraken-cikraken-ciVerified publisher1.7.362 of 10See more

kraken-ci kraken-ci 1.7.36

2 of the 10 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/postgres:115d2aa4a7b5f9
stdlib@go1.16.7
1.25.13
minio/minio:RELEASE.2022-10-24T18-35-07Zf9576903f19d
golang.org/x/net@v0.1.0
stdlib@go1.19.2
0.55.0
1.25.13

Open the chart page →

7,355
kubearmorkubearmor1.7.42 of 4See more

kubearmor kubearmor 1.7.4

2 of the 4 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
kubearmor/kubearmor:stablea08141311045
stdlib@go1.26.4
1.25.13
kubearmor/kubearmor-relay-server:latest2dd4809d7c11
golang.org/x/net@v0.53.0
stdlib@go1.25.9
0.55.0
1.25.13

Open the chart page →

1,385
kubebadgeskubebadges0.1.31 of 2See more

kubebadges kubebadges 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
neosu/kubebadges:v0.0.5256530d8e5c6
golang.org/x/net@v0.17.0
stdlib@go1.21.3
0.55.0
1.25.13

Open the chart page →

1,801
pyroscopekubeblocksVerified publisher0.2.921 of 1See more

pyroscope kubeblocks 0.2.92

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
apecloud/pyroscope:0.37.2dbca95a15bc1
golang.org/x/net@v0.1.0
stdlib@go1.19.6
0.55.0
1.25.13

Open the chart page →

1,620
kubepatternkubepattern0.0.51 of 1See more

kubepattern kubepattern 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/kubepattern/kubepattern:0.0.50762baa6d9b0
golang.org/x/net@v0.47.0
stdlib@go1.25.8
0.55.0
1.25.13

Open the chart page →

241
kuberay-operatorkuberay-operator1.7.01 of 1See more

kuberay-operator kuberay-operator 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/kuberay/operator:v1.7.04a779237ef1c
stdlib@go1.26.5
1.25.13

Open the chart page →

412
skywalkingkubesphere-testVerified publisher3.1.02 of 4See more

skywalking kubesphere-test 3.1.0

2 of the 4 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.1.0-es7641237e0299b
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
stdlib@go1.13.3
0.55.0
1.25.13
apache/skywalking-ui:8.1.067d50e4deff4
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
stdlib@go1.13.3
0.55.0
1.25.13

Open the chart page →

18,050
kubeviouskubevious1.2.23 of 7See more

kubevious kubevious 1.2.2

3 of the 7 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
kubevious/ui:1.2.16233e84bdd59
golang.org/x/net@v0.0.0-20220812165438-1d4ff48094d1
stdlib@go1.19.1
0.55.0
1.25.13
library/mysql:8.0.303c1aab708f6e
stdlib@go1.16.7
1.25.13
redislabs/redisearch:2.4.1433561794c5c8
stdlib@go1.16.7
1.25.13

Open the chart page →

14,233
kubevpnkubevpn-charts2.11.91 of 1See more

kubevpn kubevpn-charts 2.11.9

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/kubenetworks/kubevpn:v2.11.93feb9da85270
golang.org/x/net@v0.52.0
0.55.0

Open the chart page →

1,683
kubewallkubewallVerified publisher0.0.231 of 1See more

kubewall kubewall 0.0.23

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/kubewall/kubewall:0.0.23d9a03cfb557b
golang.org/x/net@v0.53.0
stdlib@go1.26.4
0.55.0
1.25.13

Open the chart page →

155

Container images carrying it

5,282 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
librenms/librenms:22.4.14f1f3d667cc7
stdlib@go1.16.12
1.25.13
1
librenms/librenms:26.8.28194a4a9ff49
stdlib@go1.24.6
1.25.13
1
lifailon/openrouter-bot:latestea37e4b6b952
stdlib@go1.25.0
1.25.13
1
lightstep/microsatellite:2024-01-22_17-52-59Zc800e05e1eff
golang.org/x/net@v0.20.0
stdlib@go1.22.1
0.55.0
1.25.13
1
linode/linode-blockstorage-csi-driver:v1.1.409f3282bf53d
stdlib@go1.26.5
1.25.13
1
linode/linode-cloud-controller-manager:v0.9.8cd8c17512206
stdlib@go1.26.4
1.25.13
1
linuxserver/calibre-web:0.6.24241009026e6f
stdlib@go1.17.8
1.25.13
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
stdlib@go1.16.7
1.25.13
1
linuxserver/cloud9:latest45c5fe102ff3
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
stdlib@go1.17.11
0.55.0
1.25.13
1
linuxserver/plex:1.43.41f6f97d76e7b
stdlib@go1.26.5
1.25.13
1
linuxserver/smokeping:2.9.02f4488c9afcd
golang.org/x/net@v0.6.0
stdlib@go1.24.12
0.55.0
1.25.13
1
linuxserver/smokeping:2.8.2b7f906899cd3
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.22.5
0.55.0
1.25.13
1
linuxserver/unifi-network-application:10.6.101-ls145ccadcad5c640
stdlib@go1.26.5
1.25.13
1
linuxserver/wireguard:latestbf03578ef731
golang.org/x/net@v0.47.0
stdlib@go1.26.3
0.55.0
1.25.13
1
linuxserver/wireguard:1.0.20260223-r0-ls122dca67384e3e9
golang.org/x/net@v0.47.0
0.55.0
1
lishimeng/hufu:v1.2.13d5752dac834
golang.org/x/net@v0.12.0
stdlib@go1.20.7
0.55.0
1.25.13
1
lishimeng/owl-console:v0.11.2c79a67657baf
golang.org/x/net@v0.17.0
stdlib@go1.21.3
0.55.0
1.25.13
1
lishimeng/owl-messager:v0.11.23d00485e64dc
golang.org/x/net@v0.17.0
stdlib@go1.21.3
0.55.0
1.25.13
1
lishimeng/passport:v0.2.163e7d05ded625
golang.org/x/net@v0.8.0
stdlib@go1.20.7
0.55.0
1.25.13
1
lishimeng/passport-profile:v0.2.160970dfe5dc8f
golang.org/x/net@v0.8.0
stdlib@go1.20.7
0.55.0
1.25.13
1
lishimeng/tabby:v1.0.48145c3dc83c8
golang.org/x/net@v0.8.0
stdlib@go1.20.6
0.55.0
1.25.13
1
lishimeng/tree:v0.2.89b2f8be6c7d3
golang.org/x/net@v0.8.0
stdlib@go1.20.6
0.55.0
1.25.13
1
lishimeng/zoo:v0.4.0e0b8d2d8ca28
golang.org/x/net@v0.14.0
stdlib@go1.20.8
0.55.0
1.25.13
1
listmonk/listmonk:v6.0.0bf3903d54a46
golang.org/x/net@v0.47.0
stdlib@go1.24.1
0.55.0
1.25.13
1
litestream/litestream:0.3c5a1e1b01916
golang.org/x/net@v0.14.0
stdlib@go1.21.3
0.55.0
1.25.13
1
livekit/ingress:v1.2.21ab01641b366
golang.org/x/net@v0.18.0
stdlib@go1.20.7
0.55.0
1.25.13
1
livekit/livekit-recorder:v0.3.13ecf1409c75e0
golang.org/x/net@v0.0.0-20211004195052-b30845b58a23
stdlib@go1.16.2
0.55.0
1.25.13
1
livekit/livekit-server:v1.9.03602a85840d5
golang.org/x/net@v0.40.0
stdlib@go1.24.3
0.55.0
1.25.13
1
livekit/livekit-server:v1.0.08391fd1b834f
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
stdlib@go1.17.10
0.55.0
1.25.13
1
lmierzwa/karma:v0.503751e5eed656
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
stdlib@go1.13.4
0.55.0
1.25.13
1
lmierzwa/karma:v0.70d417abe7ddb5
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.15.2
0.55.0
1.25.13
1
localstack/localstack:3.19d278167f2b7
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.18.10
0.55.0
1.25.13
1
loeken/home-assistant:2026.5.14ce6abc553b3
golang.org/x/net@v0.49.0
stdlib@go1.23.3
0.55.0
1.25.13
1
loftsh/directclusterendpoint:1.14.0310cc7d690f5
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
stdlib@go1.16.6
0.55.0
1.25.13
1
loftsh/jspolicy:0.2.225deb9bd2683
golang.org/x/net@v0.0.0-20210825183410-e898025ed96a
stdlib@go1.17.13
0.55.0
1.25.13
1
loftsh/virtual-cluster:0.0.28023b13bf5898
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.15.11
0.55.0
1.25.13
1
logiqai/flash:v3.10.265b996bc7bdc
golang.org/x/net@v0.20.0
stdlib@go1.21.13
0.55.0
1.25.13
1
logiqai/flash-discovery:v2.0.3f5b551bca98e
golang.org/x/net@v0.0.0-20200324143707-d3edc9973b7e
stdlib@go1.18.9
0.55.0
1.25.13
1
logiqai/logiqctl:2.0.4798306811f2d
golang.org/x/net@v0.0.0-20200226121028-0de0cce0169b
stdlib@go1.13.7
0.55.0
1.25.13
1
logiqai/tracing:v1.35.2-lq1-c3e149f6781b8
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
stdlib@go1.18.2
0.55.0
1.25.13
1
logiqai/tracing:v1.35.2-lq1-q4a746ff04d6a
golang.org/x/net@v0.0.0-20220412020605-290c469a71a5
stdlib@go1.18.2
0.55.0
1.25.13
1
lokxy/lokxy:v0.9.0e4ac800dc55d
stdlib@go1.26.4
1.25.13
1
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
golang.org/x/net@v0.44.0
stdlib@go1.24.6
0.55.0
1.25.13
1
longhornio/longhorn-manager:v1.2.3dca34321452c
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
stdlib@go1.14.1
0.55.0
1.25.13
1
longhornio/longhorn-manager:v1.1.1ede61fe2a472
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
stdlib@go1.14.1
0.55.0
1.25.13
1
longhornio/longhorn-manager:v1.12.0fd245bae2e82
golang.org/x/net@v0.53.0
stdlib@go1.25.10
0.55.0
1.25.13
1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
golang.org/x/net@v0.43.0
stdlib@go1.24.6
0.55.0
1.25.13
1
longhornio/longhorn-share-manager:v1.12.0cb9d6863e4c6
golang.org/x/net@v0.49.0
stdlib@go1.26.3
0.55.0
1.25.13
1
longhornio/longhorn-ui:v1.12.03870d52a2b0a
stdlib@go1.25.10
1.25.13
1
longhornio/longhorn-ui:v1.10.0e60f36161511
stdlib@go1.24.6
1.25.13
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.