StackRadar

CVE-2026-39821

High

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,671
of 17,828 indexed, latest versions
Container images
5,406
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: git-lfs security update

Carried by container images the latest versions of 4,671 of 17,828 indexed charts deploy, on 5,406 images.

Affected packageAffected versionsFixed inImages
git-lfsrpm2.13.3-3.el8_60:3.4.1-11.el8_101
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+193 more1.25.135,364
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+222 more0.55.03,790
OSV records
RHSA-2026:30853GO-2026-5026

Charts affected

4,671 by stars
ChartLatestAffected imagesRadar Score
myweatherhelmmyweather1.3.111 of 7See more

myweatherhelm myweather 1.3.11

1 of the 7 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.25.13

Open the chart page →

18,270
fargate-sidecar-injectormziyaboVerified publisher0.1.51 of 1See more

fargate-sidecar-injector mziyabo 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
mziyabo/fargate-eks-sidecar-injector:latest3067dce17983
golang.org/x/net@v0.7.0
stdlib@go1.19.13
0.55.0
1.25.13

Open the chart page →

1,394
victoria-metrics-singlenaps0.0.61 of 1See more

victoria-metrics-single naps 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
victoriametrics/victoria-metrics:v1.34.7b50d5c0153f9
stdlib@go1.14.1
1.25.13

Open the chart page →

1,316
pagesnarain1.0.01 of 3See more

pages narain 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.13

Open the chart page →

20,350
pagesnarasimha-pages1.0.01 of 3See more

pages narasimha-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.13

Open the chart page →

20,350
traefik-forward-auth-openidnas-helm-chartsVerified publisher1.0.11 of 1See more

traefik-forward-auth-openid nas-helm-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:latestb364aa6a4117
golang.org/x/net@v0.0.0-20190930134127-c5a3c61f89f3
stdlib@go1.13.15
0.55.0
1.25.13

Open the chart page →

2,198
nats-kafkanatsVerified publisher0.15.41 of 1See more

nats-kafka nats 0.15.4

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
natsio/nats-kafka:1.4.2bb241956b0dc
golang.org/x/net@v0.18.0
stdlib@go1.20
0.55.0
1.25.13

Open the chart page →

1,732
nats-operatornatsVerified publisher0.8.31 of 1See more

nats-operator nats 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
natsio/nats-operator:0.8.31261dae38389
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.10
0.55.0
1.25.13

Open the chart page →

2,355
account-servernatz-operatorVerified publisher0.9.51 of 1See more

account-server natz-operator 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/zeiss/natz-operator/account-server:0.9.5b380b5f17c3f
golang.org/x/net@v0.35.0
stdlib@go1.23.3
0.55.0
1.25.13

Open the chart page →

746
navidromenavidrome0.2.51 of 1See more

navidrome navidrome 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
deluan/navidrome:0.41.1fc4d8b6ad9f9
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
stdlib@go1.16.2
0.55.0
1.25.13

Open the chart page →

3,319
pagesnavin-brixton1.0.01 of 3See more

pages navin-brixton 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.13

Open the chart page →

20,350
incorencsaVerified publisher1.38.02 of 29See more

incore ncsa 1.38.0

2 of the 29 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
stdlib@go1.21.10
1.25.13
bitnamilegacy/mongodb:4.4.5e3c9d6b4bc92
stdlib@go1.15.8
1.25.13

Open the chart page →

15,562
jupyterhub-metricsncsaVerified publisher1.3.04 of 5See more

jupyterhub-metrics ncsa 1.3.0

4 of the 5 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
grafana/grafana:latestac461fb352ab
golang.org/x/net@v0.51.0
stdlib@go1.26.4
0.55.0
1.25.13
library/postgres:15-alpinea46e076249ce
stdlib@go1.24.6
1.25.13
timescale/timescaledb:latest-pg156343bdc87ca1
stdlib@go1.24.6
1.25.13
ghcr.io/ncsa/jupyterhub-metrics/collector:1.3.0dcb8c731bb1b
golang.org/x/net@v0.47.0
stdlib@go1.25.6
0.55.0
1.25.13

Open the chart page →

3,212
uptime-kumancsaVerified publisher1.7.31 of 1See more

uptime-kuma ncsa 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.5c74379ac4509
stdlib@go1.20.5
1.25.13

Open the chart page →

30,720
neo4j-reverse-proxyneo4j-helm-chartsVerified publisher2026.9.01 of 1See more

neo4j-reverse-proxy neo4j-helm-charts 2026.9.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
neo4j/helm-charts-reverse-proxy:2026.09.00c6c9ee5f7dc
stdlib@go1.24.13
1.25.13

Open the chart page →

467
redisneomanexlabsVerified publisher1.1.01 of 1See more

redis neomanexlabs 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.25.13

Open the chart page →

1,435
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
stdlib@go1.17.9
0.55.0
1.25.13

Open the chart page →

6,999
neosyncneosyncVerified publisher0.5.412 of 3See more

neosync neosync 0.5.41

2 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
golang.org/x/net@v0.37.0
stdlib@go1.24.5
0.55.0
1.25.13
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
golang.org/x/net@v0.37.0
stdlib@go1.24.5
0.55.0
1.25.13

Open the chart page →

7,329
apineosync-apiVerified publisher0.5.411 of 1See more

api neosync-api 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
golang.org/x/net@v0.37.0
stdlib@go1.24.5
0.55.0
1.25.13

Open the chart page →

2,888
workerneosync-workerVerified publisher0.5.411 of 1See more

worker neosync-worker 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
golang.org/x/net@v0.37.0
stdlib@go1.24.5
0.55.0
1.25.13

Open the chart page →

2,866
bluesky-pdsnerkho-helm-charts0.4.21 of 1See more

bluesky-pds nerkho-helm-charts 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
stdlib@go1.25.6
1.25.13

Open the chart page →

2,402
core-keeper-dedicatednerkho-helm-charts0.1.11 of 1See more

core-keeper-dedicated nerkho-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
escaping/core-keeper-dedicated:latest87fa79255962
stdlib@go1.24.4
1.25.13

Open the chart page →

3,970
kubernetes-operatornetbird0.3.11 of 1See more

kubernetes-operator netbird 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
netbirdio/kubernetes-operator:0.3.157740157b4d7
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.55.0
1.25.13

Open the chart page →

210
netbirdnetbird1.9.03 of 4See more

netbird netbird 1.9.0

3 of the 4 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
netbirdio/management:0.46.0b0adc4ad4ec6
golang.org/x/net@v0.39.0
stdlib@go1.23.9
0.55.0
1.25.13
netbirdio/relay:0.46.0d32f82514a24
golang.org/x/net@v0.39.0
stdlib@go1.23.9
0.55.0
1.25.13
netbirdio/signal:0.46.0e8f392611152
golang.org/x/net@v0.39.0
stdlib@go1.23.9
0.55.0
1.25.13

Open the chart page →

6,500
netris-dpu-agentnetrisai0.1.01 of 1See more

netris-dpu-agent netrisai 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
netrisai/bare-metal-dpu-agent:4.7.0.003c271efe749d0
golang.org/x/net@v0.50.0
stdlib@go1.26.1
0.55.0
1.25.13

Open the chart page →

1,621
iamdnetsocVerified publisher0.6.11 of 2See more

iamd netsoc 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/netsoc/iamd:1.1.22fe6b69b20d7
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
stdlib@go1.16.6
0.55.0
1.25.13

Open the chart page →

2,892
shhdnetsocVerified publisher0.1.71 of 1See more

shhd netsoc 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/netsoc/shhd:0.1.60bb44992b62c
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.17
0.55.0
1.25.13

Open the chart page →

3,989
webspacednetsocVerified publisher0.2.82 of 2See more

webspaced netsoc 0.2.8

2 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
stdlib@go1.16.5
0.55.0
1.25.13
ghcr.io/netsoc/webspaced:0.5.1edc238a538a0
golang.org/x/net@v0.0.0-20210716203947-853a461950ff
stdlib@go1.16.8
0.55.0
1.25.13

Open the chart page →

5,196
neurofaceneurofaceVerified publisher1.4.21 of 3See more

neuroface neuroface 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
openvino/model_server:2025.2.11e7cd1d70cc1
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.55.0
1.25.13

Open the chart page →

7,686
agent-controlnewrelic0.0.921 of 1See more

agent-control newrelic 0.0.92

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
newrelic/newrelic-agent-control-cli:0.48.01a448492b55a
golang.org/x/net@v0.38.0
stdlib@go1.24.6
0.55.0
1.25.13

Open the chart page →

3,922
agent-control-bootstrapnewrelic1.8.161 of 1See more

agent-control-bootstrap newrelic 1.8.16

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
newrelic/newrelic-agent-control-cli:1.24.047520b65d6b2
stdlib@go1.26.5
1.25.13

Open the chart page →

996
agent-control-cdnewrelic1.0.03 of 3See more

agent-control-cd newrelic 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flux-cli:v2.5.1274a179fd402
golang.org/x/net@v0.35.0
stdlib@go1.23.6
0.55.0
1.25.13
ghcr.io/fluxcd/helm-controller:v1.2.062eaa9c9a929
golang.org/x/net@v0.34.0
stdlib@go1.23.6
0.55.0
1.25.13
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
golang.org/x/net@v0.34.0
stdlib@go1.23.6
0.55.0
1.25.13

Open the chart page →

5,520
nexus-freenexus-freeVerified publisher1.0.31 of 1See more

nexus-free nexus-free 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/fossa/postgres:17.2-15af45ac79f38
stdlib@go1.18.2
1.25.13

Open the chart page →

1,123
nexus-tasksnexus-tasks2.0.01 of 5See more

nexus-tasks nexus-tasks 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/ashvinbambhaniya/nexus-tasks-backend:2.0.0f80349eb018b
golang.org/x/net@v0.52.0
stdlib@go1.26.0
0.55.0
1.25.13

Open the chart page →

3,932
nginx-examplengrok-ingress-helm0.3.01 of 2See more

nginx-example ngrok-ingress-helm 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
wernight/ngrok:latestd211f29ebcfe
golang.org/x/net@v0.17.0
stdlib@go1.21.6
0.55.0
1.25.13

Open the chart page →

2,722
digikamnicholaswildeVerified publisher1.0.01 of 1See more

digikam nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/digikam:version-7.3.055b4c7f320ae
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.16.9
0.55.0
1.25.13

Open the chart page →

24,394
doublecommandernicholaswildeVerified publisher1.0.21 of 1See more

doublecommander nicholaswilde 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/doublecommander:version-0.8.2-1d92969a929c2
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.16.9
0.55.0
1.25.13

Open the chart page →

25,571
filezillanicholaswildeVerified publisher1.0.11 of 1See more

filezilla nicholaswilde 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/filezilla:version-3.51.0-r15103cdd266ce
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
stdlib@go1.15.12
0.55.0
1.25.13

Open the chart page →

3,177
golinksnicholaswildeVerified publisher1.0.01 of 1See more

golinks nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/golinks:version-154c5818e67b26324c5
stdlib@go1.16.5
1.25.13

Open the chart page →

1,118
notesnicholaswildeVerified publisher1.0.01 of 1See more

notes nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/notes:version-ee287b9ab9bc16465bc
golang.org/x/net@v0.0.0-20210610132358-84b48f89b13b
stdlib@go1.16.5
0.55.0
1.25.13

Open the chart page →

1,482
olivetinnicholaswildeVerified publisher1.0.21 of 1See more

olivetin nicholaswilde 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/olivetin:version-2021-07-19e1d5c8a01008
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.16.5
0.55.0
1.25.13

Open the chart page →

1,670
podgrabnicholaswildeVerified publisher0.1.01 of 1See more

podgrab nicholaswilde 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
golang.org/x/net@v0.0.0-20210614182718-04defd469f4e
stdlib@go1.15.2
0.55.0
1.25.13

Open the chart page →

2,402
remminanicholaswildeVerified publisher0.1.41 of 1See more

remmina nicholaswilde 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/remmina:version-1.2.0-rcgit.29dfsg-1ubuntu105955792e00f
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
stdlib@go1.17.11
0.55.0
1.25.13

Open the chart page →

22,447
sqlitebrowsernicholaswildeVerified publisher1.0.11 of 1See more

sqlitebrowser nicholaswilde 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/sqlitebrowser:version-3.12.2-02876202105241947ubuntu18.04.1426e79828c4b
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.12
0.55.0
1.25.13

Open the chart page →

23,673
staticnicholaswildeVerified publisher1.0.01 of 1See more

static nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/static:version-ee8a20cd1d47c730bc4
stdlib@go1.16.5
1.25.13

Open the chart page →

1,155
todonicholaswildeVerified publisher0.1.01 of 1See more

todo nicholaswilde 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/todo:941c0d3-ls1d7ba1341a940
stdlib@go1.14.15
1.25.13

Open the chart page →

1,230
twtxtnicholaswildeVerified publisher1.0.01 of 1See more

twtxt nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/twtxt:version-0.1.158736a73ca10
golang.org/x/net@v0.0.0-20200822124328-c89045814202
stdlib@go1.16.5
0.55.0
1.25.13

Open the chart page →

2,334
wikinicholaswildeVerified publisher1.0.01 of 1See more

wiki nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/wiki:version-900b76a6c4f261d8f5e
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
stdlib@go1.16.5
0.55.0
1.25.13

Open the chart page →

1,789
cert-managernicklasfrahm-cert-managerVerified publisher0.1.24 of 4See more

cert-manager nicklasfrahm-cert-manager 0.1.2

4 of the 4 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.18.2af59e01ad975
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.55.0
1.25.13
quay.io/jetstack/cert-manager-controller:v1.18.281316365dc0b
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.55.0
1.25.13
quay.io/jetstack/cert-manager-startupapicheck:v1.18.21075e0974151
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.55.0
1.25.13
quay.io/jetstack/cert-manager-webhook:v1.18.29431f0d8b510
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.55.0
1.25.13

Open the chart page →

2,856
ciliumnicklasfrahm-ciliumVerified publisher0.7.45 of 6See more

cilium nicklasfrahm-cilium 0.7.4

5 of the 6 container images this version deploys carry CVE-2026-39821.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.18.2858f807ea4e2
golang.org/x/net@v0.41.0
stdlib@go1.24.2
0.55.0
1.25.13
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
golang.org/x/net@v0.41.0
stdlib@go1.24.7
0.55.0
1.25.13
quay.io/cilium/hubble-relay:v1.18.26079308ee15e
golang.org/x/net@v0.42.0
stdlib@go1.24.7
0.55.0
1.25.13
quay.io/cilium/hubble-ui-backend:v0.13.3db1454e45dc3
golang.org/x/net@v0.42.0
stdlib@go1.24.5
0.55.0
1.25.13
quay.io/cilium/operator-generic:v1.18.2cb4e4ffc5789
golang.org/x/net@v0.42.0
stdlib@go1.24.7
0.55.0
1.25.13

Open the chart page →

7,312

Container images carrying it

5,406 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
stdlib@go1.24.4
1.25.13
1
ghcr.io/paperless-ngx/paperless-ngx:3.2.15fa76604a81d
stdlib@go1.24.4
1.25.13
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
stdlib@go1.24.4
1.25.13
1
ghcr.io/paperless-ngx/paperless-ngx:2.10.1a132c2ac7c57
stdlib@go1.19.8
1.25.13
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
stdlib@go1.19.8
1.25.13
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
stdlib@go1.24.4
1.25.13
1
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
stdlib@go1.20.7
1.25.13
1
ghcr.io/parca-dev/parca:v0.24.23776500fde82
golang.org/x/net@v0.43.0
stdlib@go1.25.1
0.55.0
1.25.13
1
ghcr.io/parca-dev/parca-agent:v0.28.06d6794f45f3e
golang.org/x/net@v0.19.0
stdlib@go1.21.4
0.55.0
1.25.13
1
ghcr.io/parca-dev/parca-agent:v0.42.0adc0eeb4dd05
golang.org/x/net@v0.43.0
stdlib@go1.24.7
0.55.0
1.25.13
1
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
golang.org/x/net@v0.47.0
stdlib@go1.25.4
0.55.0
1.25.13
1
ghcr.io/patricklaabs/sample-application:0.0.1f0935fa2eee3
stdlib@go1.22.0
1.25.13
1
ghcr.io/pbufio/registry:v0.4.177a36c035b4b
golang.org/x/net@v0.45.0
stdlib@go1.25.5
0.55.0
1.25.13
1
ghcr.io/peak-scale/observability-tenancy/cortex-proxy:0.4.11838720c13b2
golang.org/x/net@v0.43.0
stdlib@go1.24.6
0.55.0
1.25.13
1
ghcr.io/peak-scale/observability-tenancy/loki-proxy:0.4.1548e962d0061
golang.org/x/net@v0.43.0
stdlib@go1.24.6
0.55.0
1.25.13
1
ghcr.io/peak-scale/sops-operator:0.10.11da9b716b792
stdlib@go1.26.4
1.25.13
1
ghcr.io/peimanja/artifactory_exporter:v1.16.0d3e3929a3d2b
stdlib@go1.21.13
1.25.13
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
golang.org/x/net@v0.0.0-20220909164309-bea034e7d591
stdlib@go1.18.4
0.55.0
1.25.13
1
ghcr.io/performancecopilot/archive-analysis:latestba9f5a44ad68
golang.org/x/net@v0.19.0
0.55.0
1
ghcr.io/permify/permify:v1.3.5f0c6f7d7daa6
golang.org/x/net@v0.26.0
stdlib@go1.22.4
0.55.0
1.25.13
1
ghcr.io/petersr/spiffile-operator:0.1.4411070249287
stdlib@go1.26.4
1.25.13
1
ghcr.io/pipe-cd/pipecd:v0.39.00fae829caf29
golang.org/x/net@v0.0.0-20191014212845-da9a3fd4c582
stdlib@go1.14.6
0.55.0
1.25.13
1
ghcr.io/pocket-id/pocket-id:v2.7.045bdeaf3fcd6
golang.org/x/net@v0.53.0
stdlib@go1.26.0
0.55.0
1.25.13
1
ghcr.io/podtato-head/entry:latestc3d9d9c98be7
stdlib@go1.19
1.25.13
1
ghcr.io/podtato-head/hat:latestde37ff39a4c0
stdlib@go1.19
1.25.13
1
ghcr.io/podtato-head/left-arm:latest97596c95276a
stdlib@go1.19
1.25.13
1
ghcr.io/podtato-head/left-leg:latest00bb31622b1e
stdlib@go1.19
1.25.13
1
ghcr.io/podtato-head/right-arm:latest5f8f97a60558
stdlib@go1.19
1.25.13
1
ghcr.io/podtato-head/right-leg:latest03e125b9279e
stdlib@go1.19
1.25.13
1
ghcr.io/postfinance/kubelet-csr-approver:v1.2.156469ef517d2b
golang.org/x/net@v0.49.0
0.55.0
1
ghcr.io/predicatelabs/operator:v1.0.5b62113fe1b27
golang.org/x/net@v0.33.0
stdlib@go1.23.5
0.55.0
1.25.13
1
ghcr.io/privacyengineering/collector-go:main7217f1a4fa28
stdlib@go1.17.13
1.25.13
1
ghcr.io/privacyengineering/consumer:main73f59c032812
golang.org/x/net@v0.0.0-20211029224645-99673261e6eb
stdlib@go1.17.13
0.55.0
1.25.13
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
golang.org/x/net@v0.19.0
stdlib@go1.20.11
0.55.0
1.25.13
1
ghcr.io/processone/ejabberd:latest5aeb0faa39cf
stdlib@go1.25.12
1.25.13
1
ghcr.io/projectcapsule/capsule-addon-fluxcd:0.2.2e0baf564b706
golang.org/x/net@v0.32.0
stdlib@go1.23.4
0.55.0
1.25.13
1
ghcr.io/projectcontour/contour:v1.30.0b12824d7eb58
golang.org/x/net@v0.26.0
stdlib@go1.22.5
0.55.0
1.25.13
1
ghcr.io/projectcontour/contour:v1.33.0cd6e13fa882d
golang.org/x/net@v0.43.0
stdlib@go1.25.1
0.55.0
1.25.13
1
ghcr.io/projection-operator/projection:0.3.2d06374430a17
golang.org/x/net@v0.53.0
stdlib@go1.26.3
0.55.0
1.25.13
1
ghcr.io/prophetse7en/clonarr:latest9400d298b37a
stdlib@go1.26.4
1.25.13
1
ghcr.io/prymitive/karma:v0.13190a10c5c6793
stdlib@go1.26.3
1.25.13
1
ghcr.io/prymitive/karma:v0.13298d9ed609118
stdlib@go1.26.5
1.25.13
1
ghcr.io/prymitive/karma:v0.85d06892218680
golang.org/x/net@v0.0.0-20210503060351-7fd8e65b6420
stdlib@go1.16.3
0.55.0
1.25.13
1
ghcr.io/pschichtel/cert-manager-webhook-cloudns:1.1.01020638bbe23
golang.org/x/net@v0.20.0
stdlib@go1.21.6
0.55.0
1.25.13
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
stdlib@go1.26.4
1.25.13
1
ghcr.io/ptrvsrg/csi-driver-ipfs:latest97d2d9ccd7a5
golang.org/x/net@v0.54.0
stdlib@go1.26.4
0.55.0
1.25.13
1
ghcr.io/puckpuck/seashell:1.2ef5e31333821
golang.org/x/net@v0.0.0-20201021035429-f5854403a974
stdlib@go1.20.10
0.55.0
1.25.13
1
ghcr.io/pulumi-labs/pulumi-exporter:0.1.45415d5a46e7d
stdlib@go1.26.4
1.25.13
1
ghcr.io/pulumi/pulumi-esc-csi-provider:0.1.13fb058e93502
golang.org/x/net@v0.32.0
stdlib@go1.23.1
0.55.0
1.25.13
1
ghcr.io/punchplatform/operator:8.1-dev2a9536c8cee2
golang.org/x/net@v0.20.0
stdlib@go1.22.0
0.55.0
1.25.13
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.