StackRadar

CVE-2026-39821

High

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,642
of 17,813 indexed, latest versions
Container images
5,366
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: git-lfs security update

Carried by container images the latest versions of 4,642 of 17,813 indexed charts deploy, on 5,366 images.

Affected packageAffected versionsFixed inImages
git-lfsrpm2.13.3-3.el8_60:3.4.1-11.el8_101
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+191 more1.25.135,324
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+220 more0.55.03,744
OSV records
RHSA-2026:30853GO-2026-5026

Charts affected

4,642 by stars
ChartLatestAffected imagesRadar Score
uptimekumahelm-l3st86Verified publisher0.1.101 of 1See more

uptimekuma helm-l3st86 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.1396510915e6be
golang.org/x/net@v0.19.0
stdlib@go1.19.6
0.55.0
1.25.13

Open the chart page →

4,249
helm-operatorhelm-operatorVerified publisher0.0.21 of 1See more

helm-operator helm-operator 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
bsgrigorov/helm-operator:latest45ab095f09c8
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
stdlib@go1.15.12
0.55.0
1.25.13

Open the chart page →

6,987
spirehelm-spireVerified publisher0.30.24 of 10See more

spire helm-spire 0.30.2

4 of the 10 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/spiffe/spiffe-csi-driver:0.2.79dfe4f0caff0
golang.org/x/net@v0.34.0
stdlib@go1.24.0
0.55.0
1.25.13
ghcr.io/spiffe/spiffe-helper:0.11.01c92e5998ad3
golang.org/x/net@v0.42.0
stdlib@go1.25.3
0.55.0
1.25.13
ghcr.io/spiffe/spire-controller-manager:0.7.0d7b9e710f542
stdlib@go1.26.5
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
golang.org/x/net@v0.40.0
stdlib@go1.24.6
0.55.0
1.25.13

Open the chart page →

1,688
helmuphelmupVerified publisher0.1.01 of 3See more

helmup helmup 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
sirrend/helmup-engine:0.1.13699e79e3d4e2
golang.org/x/net@v0.15.0
stdlib@go1.20.4
0.55.0
1.25.13

Open the chart page →

16,780
hivemq-platform-operatorhivemqOfficialVerified publisher0.2.261 of 1See more

hivemq-platform-operator hivemq 0.2.26

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
hivemq/hivemq-platform-operator:2.2.2a919f990141b
stdlib@go1.26.5
1.25.13

Open the chart page →

950
hiverhiverVerified publisher0.1.459 of 10See more

hiver hiver 0.1.45

9 of the 10 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
hiversh/antigravity:0.1.45-microvm0e36d98402bc
stdlib@go1.26.5
1.25.13
hiversh/browser:0.1.45-microvmb5048c6342ce
stdlib@go1.26.5
1.25.13
hiversh/claude:0.1.45-microvm2fbf9f264498
stdlib@go1.26.5
1.25.13
hiversh/codex:0.1.45-microvm4f43130f51e5
stdlib@go1.26.5
1.25.13
hiversh/controller:0.1.45b0b85f8942c7
stdlib@go1.19.8
1.25.13
hiversh/copilot:0.1.45-microvm50c07b84f298
stdlib@go1.26.5
1.25.13
hiversh/node:0.1.45-alpine-microvm836a37641941
stdlib@go1.26.5
1.25.13
hiversh/openclaw:0.1.45-microvm958b7ebb4eb4
stdlib@go1.19.8
1.25.13
hiversh/python:0.1.45-3.13-alpine-microvm63a5ae179a9f
stdlib@go1.19.8
1.25.13

Open the chart page →

22,269
cratedb-adapter-v2hmdmph0.2.11 of 1See more

cratedb-adapter-v2 hmdmph 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/net@v0.0.0-20210423184538-5f58ad60dda6
stdlib@go1.16.3
0.55.0
1.25.13

Open the chart page →

2,921
holoinsightholoinsight0.2.52 of 6See more

holoinsight holoinsight 0.2.5

2 of the 6 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
holoinsight/otelcontribcol:latest42ba8dc3113c
golang.org/x/net@v0.8.0
stdlib@go1.19
0.55.0
1.25.13
library/mysql:885b9bf2e29cf
stdlib@go1.24.6
1.25.13

Open the chart page →

27,899
holoinsight-agentholoinsight0.2.51 of 2See more

holoinsight-agent holoinsight 0.2.5

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
holoinsight/agent:latest5c3994e742f8
golang.org/x/net@v0.5.0
stdlib@go1.22.1
0.55.0
1.25.13

Open the chart page →

1,804
openprojecthomeenterpriseinc0.5.01 of 1See more

openproject homeenterpriseinc 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
openproject/community:12.0.2734743d11094
stdlib@go1.17
1.25.13

Open the chart page →

6,818
honeycombhoneycomb1.9.31 of 1See more

honeycomb honeycomb 1.9.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
honeycombio/honeycomb-kubernetes-agent:2.7.448c38d0870f2
golang.org/x/net@v0.38.0
stdlib@go1.24.3
0.55.0
1.25.13

Open the chart page →

437
hpe-greenlake-file-csi-driverhpe-storageVerified publisher2.6.45 of 7See more

hpe-greenlake-file-csi-driver hpe-storage 2.6.4

5 of the 7 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
golang.org/x/net@v0.32.0
stdlib@go1.23.1
0.55.0
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
golang.org/x/net@v0.40.0
stdlib@go1.24.6
0.55.0
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v6.1.0e5900dc98b0d
golang.org/x/net@v0.43.0
stdlib@go1.24.6
0.55.0
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v1.12.0ab774734705a
golang.org/x/net@v0.28.0
stdlib@go1.22.5
0.55.0
1.25.13
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
golang.org/x/net@v0.39.0
stdlib@go1.24.6
0.55.0
1.25.13

Open the chart page →

6,313
htnn-controllerhtnnVerified publisher0.5.01 of 1See more

htnn-controller htnn 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
golang.org/x/net@v0.24.0
stdlib@go1.21.12
0.55.0
1.25.13

Open the chart page →

4,372
demoryhuseyinbabalOfficialVerified publisher0.7.01 of 1See more

demory huseyinbabal 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
huseyinbabal/demory:0.0.0-rc.20ae8eb4053c60
golang.org/x/net@v0.0.0-20210907225631-ff17edfbf26d
stdlib@go1.17.2
0.55.0
1.25.13

Open the chart page →

1,580
hybrid-csi-pluginhybrid-csi-plugin0.1.111 of 1See more

hybrid-csi-plugin hybrid-csi-plugin 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/hybrid-csi-provisioner:v0.3.1221e07794a8a
golang.org/x/net@v0.48.0
stdlib@go1.25.5
0.55.0
1.25.13

Open the chart page →

380
spoolmanideaplexusVerified publisher2.7.11 of 1See more

spoolman ideaplexus 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
stdlib@go1.19.8
1.25.13

Open the chart page →

1,853
idle-reaperidle-reaperVerified publisher0.1.41 of 1See more

idle-reaper idle-reaper 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/b100to/idle-reaper:0.1.447b4a0e091f0
golang.org/x/net@v0.49.0
0.55.0

Open the chart page →

148
backendikusi-bk-chart1.0.31 of 3See more

backend ikusi-bk-chart 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/postgres:15dfbbb0ad8cab
stdlib@go1.24.6
1.25.13

Open the chart page →

5,730
ilum-coreilumOfficialVerified publisher6.7.32 of 5See more

ilum-core ilum 6.7.3

2 of the 5 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
golang.org/x/net@v0.38.0
stdlib@go1.24.6
0.55.0
1.25.13
ilum/mongodb:6.0.542b6d774c37d
golang.org/x/net@v0.8.0
stdlib@go1.20.12
0.55.0
1.25.13

Open the chart page →

3,560
ilum-jupyterilumVerified publisher6.7.31 of 2See more

ilum-jupyter ilum 6.7.3

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
bitnamisecure/gitdigest-pinned72ae5bd9715f
golang.org/x/net@v0.38.0
stdlib@go1.24.6
0.55.0
1.25.13

Open the chart page →

645
odooimioVerified publisher3.1.01 of 3See more

odoo imio 3.1.0

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/postgres:17.10ebba4f4de37f
stdlib@go1.24.6
1.25.13

Open the chart page →

3,138
immichimmich-helm0.3.01 of 4See more

immich immich-helm 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
stdlib@go1.18.2
1.25.13

Open the chart page →

16,013
webhook-broker-chartimytech0.2.41 of 1See more

webhook-broker-chart imytech 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
public.ecr.aws/optimizely/webhook-broker:v0.2.3cfc92cc2de65
golang.org/x/net@v0.33.0
stdlib@go1.23.0
0.55.0
1.25.13

Open the chart page →

1,254
inbucketinbucketVerified publisher2.5.01 of 1See more

inbucket inbucket 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
inbucket/inbucket:3.0.01f10a0efea69
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
stdlib@go1.17.1
0.55.0
1.25.13

Open the chart page →

2,168
inference-manager-serverinference-manager-server1.46.01 of 1See more

inference-manager-server inference-manager-server 1.46.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/inference-manager-server:1.46.00bbb5f5ddf71
golang.org/x/net@v0.48.0
stdlib@go1.25.9
0.55.0
1.25.13

Open the chart page →

257
telegraf-operatorinfluxdata1.4.01 of 1See more

telegraf-operator influxdata 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/influxdb/telegraf-operator:v1.3.11eec10ef37cc3
golang.org/x/net@v0.17.0
stdlib@go1.18.10
0.55.0
1.25.13

Open the chart page →

925
valkey-clusterinnagoVerified publisher1.1.01 of 2See more

valkey-cluster innago 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.66.0d98e6db8094f
stdlib@go1.23.2
1.25.13

Open the chart page →

2,679
supersetinseefrlab1.4.01 of 4See more

superset inseefrlab 1.4.0

1 of the 4 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
golang.org/x/net@v0.47.0
stdlib@go1.25.5
0.55.0
1.25.13

Open the chart page →

7,136
intel-device-plugins-operatorintelVerified publisher0.36.01 of 1See more

intel-device-plugins-operator intel 0.36.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
intel/intel-deviceplugin-operator:0.36.09879685d0b5b
stdlib@go1.26.3
1.25.13

Open the chart page →

88
interlinkinterlink0.6.11 of 2See more

interlink interlink 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
golang.org/x/net@v0.38.0
stdlib@go1.24.5
0.55.0
1.25.13

Open the chart page →

2,494
irsa-managerirsa-managerVerified publisher0.3.21 of 1See more

irsa-manager irsa-manager 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/kkb0318/irsa-manager:0.3.296d600ae97b4
golang.org/x/net@v0.27.0
stdlib@go1.22.7
0.55.0
1.25.13

Open the chart page →

821
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
stdlib@go1.16.6
0.55.0
1.25.13

Open the chart page →

74,816
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
stdlib@go1.16.6
0.55.0
1.25.13

Open the chart page →

74,891
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
stdlib@go1.16.6
0.55.0
1.25.13

Open the chart page →

74,836
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
stdlib@go1.16.6
0.55.0
1.25.13

Open the chart page →

74,836
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
golang.org/x/net@v0.0.0-20210323141857-08027d57d8cf
stdlib@go1.16.6
0.55.0
1.25.13

Open the chart page →

75,117
istio-ratelimitistio-ratelimitVerified publisher0.0.51 of 2See more

istio-ratelimit istio-ratelimit 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:4d2efd61ede09a75a84c
golang.org/x/net@v0.0.0-20191209160850-c0dbc17a3553
stdlib@go1.14.15
0.55.0
1.25.13

Open the chart page →

1,820
kubernetes-event-exporteritakurahVerified publisher0.2.31 of 1See more

kubernetes-event-exporter itakurah 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/itakurah/kubernetes-event-exporter:v1.78abb52b66557
golang.org/x/net@v0.17.0
stdlib@go1.20.14
0.55.0
1.25.13

Open the chart page →

1,142
statpingitscontainedVerified publisher0.1.91 of 1See more

statping itscontained 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
statping/statping:v0.90.6532f26fffca46
golang.org/x/net@v0.0.0-20200625001655-4c5254603344
stdlib@go1.14.8
0.55.0
1.25.13

Open the chart page →

3,538
traefik-forward-authitscontainedVerified publisher1.0.21 of 1See more

traefik-forward-auth itscontained 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:2.2.0e875194d67e2
golang.org/x/net@v0.0.0-20190930134127-c5a3c61f89f3
stdlib@go1.13.12
0.55.0
1.25.13

Open the chart page →

2,235
jenkinsjenkins-cicd-tool0.1.01 of 1See more

jenkins jenkins-cicd-tool 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/net@v0.38.0
stdlib@go1.25.3
0.55.0
1.25.13

Open the chart page →

2,549
jessejesse-chartVerified publisher0.0.462 of 6See more

jesse jesse-chart 0.0.46

2 of the 6 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
alpine/git:latest6f3b5029566d
golang.org/x/net@v0.54.0
stdlib@go1.26.3
0.55.0
1.25.13
library/postgres:alpined3e1620b530c
stdlib@go1.24.6
1.25.13

Open the chart page →

3,442
jetic-operatorjetic-operatorVerified publisher2.0.21 of 1See more

jetic-operator jetic-operator 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
apache/camel-k:1.10.43bb13d14f64a
golang.org/x/net@v0.0.0-20220520000938-2e3eb7b945c2
stdlib@go1.17.13
0.55.0
1.25.13

Open the chart page →

9,410
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
golang.org/x/net@v0.17.0
stdlib@go1.21.8
0.55.0
1.25.13

Open the chart page →

7,452
forecastlejmmaloney41.1.1201 of 1See more

forecastle jmmaloney4 1.1.120

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
stakater/forecastle:v1.0.13886b24cdef409
golang.org/x/net@v0.10.0
stdlib@go1.22.1
0.55.0
1.25.13

Open the chart page →

1,814
job-manager-dispatcherjob-manager-dispatcher1.27.01 of 1See more

job-manager-dispatcher job-manager-dispatcher 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-dispatcher:1.27.0582508903cb0
golang.org/x/net@v0.38.0
stdlib@go1.23.12
0.55.0
1.25.13

Open the chart page →

479
job-manager-serverjob-manager-server1.27.01 of 1See more

job-manager-server job-manager-server 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-server:1.27.0fe9de719f91e
golang.org/x/net@v0.38.0
stdlib@go1.23.12
0.55.0
1.25.13

Open the chart page →

757
hncjouveVerified publisher0.8.31 of 1See more

hnc jouve 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-multitenancy/hnc-manager:v1.1.08ab8229f6a89
golang.org/x/net@v0.3.0
stdlib@go1.20.5
0.55.0
1.25.13

Open the chart page →

1,078
joylive-injectorjoyliveOfficialVerified publisher1.3.51 of 2See more

joylive-injector joylive 1.3.5

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
otel/opentelemetry-collector:0.100.09e36620d6c2c
golang.org/x/net@v0.24.0
stdlib@go1.22.2
0.55.0
1.25.13

Open the chart page →

1,290
ejabberdjuniorjpdj0.1.481 of 1See more

ejabberd juniorjpdj 0.1.48

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/juniorjpdj/containers/ejabberd-captcha:26.07-r110c57cbc7ad0
stdlib@go1.25.12
1.25.13

Open the chart page →

277

Container images carrying it

5,366 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/containers/nri-plugins/nri-memory-qos:v0.14.0c7c5c24ed894
stdlib@go1.26.0
1.25.13
1
ghcr.io/containers/nri-plugins/nri-memtierd:v0.14.09138314e12ba
stdlib@go1.26.0
1.25.13
1
ghcr.io/containers/nri-plugins/nri-resctrl-mon:v0.14.0a9c9775fab70
stdlib@go1.26.0
1.25.13
1
ghcr.io/containers/nri-plugins/nri-resource-annotator:v0.14.08100a19e85f7
stdlib@go1.26.0
1.25.13
1
ghcr.io/containers/nri-plugins/nri-resource-policy-balloons:v0.14.0a8c8297c7274
stdlib@go1.26.0
1.25.13
1
ghcr.io/containers/nri-plugins/nri-resource-policy-template:v0.14.00edfc075277b
stdlib@go1.26.0
1.25.13
1
ghcr.io/containers/nri-plugins/nri-resource-policy-topology-aware:v0.14.0e2443833726a
stdlib@go1.26.0
1.25.13
1
ghcr.io/containers/nri-plugins/nri-sgx-epc:v0.14.0b4c4d0d83c14
stdlib@go1.26.0
1.25.13
1
ghcr.io/coollabsio/minio:RELEASE.2025-10-15T17-29-55Z69b55a1c1c5d
golang.org/x/net@v0.42.0
stdlib@go1.24.6
0.55.0
1.25.13
1
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
golang.org/x/net@v0.43.0
stdlib@go1.25.0
0.55.0
1.25.13
1
ghcr.io/cosmo-workspace/cosmo-controller-manager:v0.9.08c7fa5552028
golang.org/x/net@v0.10.0
stdlib@go1.20.5
0.55.0
1.25.13
1
ghcr.io/cosmo-workspace/cosmo-dashboard:v0.9.16a1c4a81a924
golang.org/x/net@v0.10.0
stdlib@go1.20.5
0.55.0
1.25.13
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
golang.org/x/net@v0.23.0
stdlib@go1.22.5
0.55.0
1.25.13
1
ghcr.io/crashappsec/chalk-operator:v0.1.128eee62e9bfa
golang.org/x/net@v0.38.0
stdlib@go1.24.13
0.55.0
1.25.13
1
ghcr.io/crazygit/cert-manager-alidns-webhook:0.1.4976be6506eb6
golang.org/x/net@v0.47.0
stdlib@go1.25.3
0.55.0
1.25.13
1
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
golang.org/x/net@v0.40.0
stdlib@go1.24.7
0.55.0
1.25.13
1
ghcr.io/crazy-max/diun:4.19.0c94e32b888e4
golang.org/x/net@v0.0.0-20210610132358-84b48f89b13b
stdlib@go1.16.5
0.55.0
1.25.13
1
ghcr.io/crazy-max/samba:4.15.5bed6f4ec2e82
stdlib@go1.17.2
1.25.13
1
ghcr.io/cronschedules/cronjob-scale-down-operator:0.4.41c4e803d7169
golang.org/x/net@v0.52.0
stdlib@go1.25.0
0.55.0
1.25.13
1
ghcr.io/csepulveda/trivy-webhook-aws-security-hub:v0.1.206836b779b060
golang.org/x/net@v0.50.0
stdlib@go1.26.2
0.55.0
1.25.13
1
ghcr.io/ctron/kubectl:1.25e37d61b5277c
golang.org/x/net@v0.17.0
stdlib@go1.20.10
0.55.0
1.25.13
1
ghcr.io/cubefs/cfs-csi-driver:3.2.0.150.08723616a976a
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.18.4
0.55.0
1.25.13
1
ghcr.io/cybozu-go/accurate:2.0.0be4a2680bef4
stdlib@go1.26.3
1.25.13
1
ghcr.io/d0ugal/internet-perf-exporter:v0.2.91f5c9a96fe52a
stdlib@go1.26.4
1.25.13
1
ghcr.io/danieldonoghue/vault-sync-operator:v0.0.1-beta.38d7ec69a193c
golang.org/x/net@v0.52.0
stdlib@go1.25.9
0.55.0
1.25.13
1
ghcr.io/daocloud/crproxy/crproxy:v0.8.0ee1eb3c9c9a1
golang.org/x/net@v0.26.0
stdlib@go1.21.11
0.55.0
1.25.13
1
ghcr.io/dapr/injector:1.17.0-rc.37a2fd888ed5f
golang.org/x/net@v0.48.0
stdlib@go1.24.11
0.55.0
1.25.13
1
ghcr.io/dapr/operator:1.17.0-rc.3d5cc61cbe735
golang.org/x/net@v0.48.0
stdlib@go1.24.11
0.55.0
1.25.13
1
ghcr.io/dapr/placement:1.17.0-rc.3a237b43cd5c6
golang.org/x/net@v0.48.0
stdlib@go1.24.11
0.55.0
1.25.13
1
ghcr.io/dapr/scheduler:1.17.0-rc.36c62e01e736b
golang.org/x/net@v0.48.0
stdlib@go1.24.11
0.55.0
1.25.13
1
ghcr.io/dapr/sentry:1.17.0-rc.3bf79b03591e0
golang.org/x/net@v0.48.0
stdlib@go1.24.11
0.55.0
1.25.13
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
golang.org/x/net@v0.17.0
stdlib@go1.21.5
0.55.0
1.25.13
1
ghcr.io/davidkarlsen/flyway-operator:0.2.1366f60b461c0d
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.55.0
1.25.13
1
ghcr.io/dcristobalhmad/kube-secrets-exporter:latesta9043737cb73
golang.org/x/net@v0.23.0
stdlib@go1.22.3
0.55.0
1.25.13
1
ghcr.io/debridmediamanager/zurg-testing:v0.9.3-final5c47ef99443a
golang.org/x/net@v0.20.0
stdlib@go1.22.5
0.55.0
1.25.13
1
ghcr.io/decayofmind/kube-better-node:masterccd2ce03b682
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
stdlib@go1.16.6
0.55.0
1.25.13
1
ghcr.io/deepch/rtsptoweb:v2.2.0f9de3a1a5deb
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
0.55.0
1
ghcr.io/defensia/agent:1.4.57e9d40ae44711
golang.org/x/net@v0.47.0
0.55.0
1
ghcr.io/deliveryhero/field-exporter:v1.4.06b71ba4f9297
golang.org/x/net@v0.26.0
stdlib@go1.22.12
0.55.0
1.25.13
1
ghcr.io/dellnoantechnp/alloy-remote-config/fleet-management:master4371b566d238
golang.org/x/net@v0.48.0
stdlib@go1.25.10
0.55.0
1.25.13
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
stdlib@go1.24.4
1.25.13
1
ghcr.io/depthmark/github-sts:0.0.31de580f136a9
stdlib@go1.26.2
1.25.13
1
ghcr.io/desuuuu/cluster-network-policy-operator:v1.1.0d943d13c5281
stdlib@go1.26.0
1.25.13
1
ghcr.io/devangradadiya/k8s-s3-bucket-operator:0.2.258288de9f9fa
golang.org/x/net@v0.47.0
stdlib@go1.25.8
0.55.0
1.25.13
1
ghcr.io/devhatro/clamav-api:1.0.2ff0cd9db78d3
golang.org/x/net@v0.25.0
stdlib@go1.20.14
0.55.0
1.25.13
1
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
stdlib@go1.25.4
1.25.13
1
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
golang.org/x/net@v0.48.0
stdlib@go1.26.1
0.55.0
1.25.13
1
ghcr.io/devplayer0/lxd8s:0.3.1e159ba41aede
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
stdlib@go1.17
0.55.0
1.25.13
1
ghcr.io/devplayer0/octolxd:0.1.119b18fd97eab
stdlib@go1.16.6
1.25.13
1
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
golang.org/x/net@v0.37.0
stdlib@go1.24.3
0.55.0
1.25.13
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.