StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
—
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,510
of 17,926 indexed, latest versions
Container images
5,123
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,510 of 17,926 indexed charts deploy, on 5,123 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+191 more1.25.125,123
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,510 by stars
ChartLatestAffected imagesRadar Score
finops-stackcert-managerVerified publisher0.0.57 of 12See more

finops-stack cert-manager 0.0.5

7 of the 12 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:11.1.3b23b588cf7cb
stdlib@go1.22.4
1.25.12
ghcr.io/kyverno/background-controller:v1.12.506ed5db6cd33
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/cleanup-controller:v1.12.5b914032ef9ad
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/kyverno:v1.12.5a61c7022abcf
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/kyverno-cli:v1.12.5832a32779e6d
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/kyvernopre:v1.12.563f7eaf5aa8a
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/reports-controller:v1.12.5c62e3347611c
stdlib@go1.21.12
1.25.12

Open the chart page →

12,887
cert-manager-webhook-arvancloudcert-manager-webhook-arvancloudVerified publisher0.1.11 of 1See more

cert-manager-webhook-arvancloud cert-manager-webhook-arvancloud 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/mohammadv184/cert-manager-webhook-arvancloud:latest179bee5ef8b2
stdlib@go1.24.4
1.25.12

Open the chart page →

1,081
cert-manager-webhook-gandicert-manager-webhook-gandi0.6.01 of 1See more

cert-manager-webhook-gandi cert-manager-webhook-gandi 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/sintef/cert-manager-webhook-gandi:0.6.06819b34ccac8
stdlib@go1.22.0
1.25.12

Open the chart page →

1,039
cert-vaultcert-vaultOfficialVerified publisher2.12.04 of 7See more

cert-vault cert-vault 2.12.0

4 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
stdlib@go1.23.7
1.25.12
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
stdlib@go1.23.7
1.25.12
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
stdlib@go1.23.7
1.25.12
library/postgres:17f4c66b820c6f
stdlib@go1.24.6
1.25.12

Open the chart page →

16,556
chatclichatcliVerified publisher1.211.21 of 2See more

chatcli chatcli 1.211.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.31.10e0b2d217d1d2
stdlib@go1.23.10
1.25.12

Open the chart page →

1,033
chatcli-operatorchatcli-operatorVerified publisher1.211.21 of 2See more

chatcli-operator chatcli-operator 1.211.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.31.10e0b2d217d1d2
stdlib@go1.23.10
1.25.12

Open the chart page →

1,026
passbolt-hachristianhuthVerified publisher6.0.13 of 4See more

passbolt-ha christianhuth 6.0.1

3 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
stdlib@go1.24.6
1.25.12
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
stdlib@go1.24.6
1.25.12
passbolt/passbolt:3.4.0-ce-non-root655547e17263
stdlib@go1.14.4
1.25.12

Open the chart page →

11,414
shlink-backendchristianhuthVerified publisher11.12.11 of 1See more

shlink-backend christianhuth 11.12.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
shlinkio/shlink:5.1.7844e1f2b6455
stdlib@go1.26.4
1.25.12

Open the chart page →

341
squestchristianhuthVerified publisher6.6.82 of 4See more

squest christianhuth 6.6.8

2 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
stdlib@go1.25.0
1.25.12
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
stdlib@go1.25.0
1.25.12

Open the chart page →

10,676
typo3christianhuthVerified publisher7.8.01 of 2See more

typo3 christianhuth 7.8.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
stdlib@go1.24.6
1.25.12

Open the chart page →

9,169
challengerchronicleVerified publisher0.1.21 of 1See more

challenger chronicle 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/challenger-go:0.1.2c8d5a3c0e966
stdlib@go1.22.12
1.25.12

Open the chart page →

990
erpcchronicleVerified publisher0.7.11 of 1See more

erpc chronicle 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/erpc/erpc:0.1.18bfed3d49a08
stdlib@go1.26.4
1.25.12

Open the chart page →

389
spectrechronicleVerified publisher0.3.91 of 1See more

spectre chronicle 0.3.9

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/spectre:0.68.34e872bc016e8
stdlib@go1.25.5
1.25.12

Open the chart page →

1,610
access-managerckotzbauerVerified publisher0.14.31 of 1See more

access-manager ckotzbauer 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/ckotzbauer/access-managerdigest-pinneddd584fcda0ff
stdlib@go1.22.1
1.25.12

Open the chart page →

647
clairclair0.0.31 of 1See more

clair clair 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/projectquay/clair:4.7.28d38ffa8fad7
stdlib@go1.20.9
1.25.12

Open the chart page →

3,327
clamav-restclamav-rest-apiVerified publisher0.1.01 of 1See more

clamav-rest clamav-rest-api 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ajilaag/clamav-rest:latestad689c7b75b1
stdlib@go1.26.0
1.25.12

Open the chart page →

515
claude-code-hubclaude-code-hub0.1.01 of 4See more

claude-code-hub claude-code-hub 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:18-alpine6c538e7206ea
stdlib@go1.24.6
1.25.12

Open the chart page →

1,962
cloudbees-sidecar-injectorcloudbees2.3.32 of 2See more

cloudbees-sidecar-injector cloudbees 2.3.3

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cloudbees/cert-requester:2.3.31d44fb4f799b
stdlib@go1.20.1
1.25.12
cloudbees/sidecar-injector:2.3.38f102ef0383a
stdlib@go1.20.1
1.25.12

Open the chart page →

3,258
cloudflow-enterprise-componentscloudflow-helm-charts0.0.0-NIGHTLY011220202 of 9See more

cloudflow-enterprise-components cloudflow-helm-charts 0.0.0-NIGHTLY01122020

2 of the 9 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.25.12
prom/prometheus:v2.21.0d43417c260e5
stdlib@go1.15.2
1.25.12

Open the chart page →

4,264
cnpg-sandboxcloudnative-pgVerified publisher0.6.13 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

3 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:8.3.5cd7cb4345aa7
stdlib@go1.17.6
1.25.12
ghcr.io/cloudnative-pg/cloudnative-pg:1.17.14dd365800b62
stdlib@go1.18.6
1.25.12
quay.io/prometheus-operator/prometheus-operator:v0.54.0be2aef39a2f8
stdlib@go1.17.6
1.25.12

Open the chart page →

7,619
pgbenchcloudnative-pgVerified publisher0.1.01 of 1See more

pgbench cloudnative-pg 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
stdlib@go1.16.7
1.25.12

Open the chart page →

2,733
bastioncloudposse0.2.01 of 2See more

bastion cloudposse 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cloudposse/bastion:latest0d9507e8a760
stdlib@go1.13.3
1.25.12

Open the chart page →

1,755
grafanacloudposse0.2.61 of 1See more

grafana cloudposse 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:latestac461fb352ab
stdlib@go1.26.4
1.25.12

Open the chart page →

624
cloudttycloudtty0.8.102 of 2See more

cloudtty cloudtty 0.8.10

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cloudtty/cloudshell:v0.8.1023e8d178e02c
stdlib@go1.25.2
1.25.12
ghcr.io/cloudtty/cloudshell-operator:v0.8.1014f036e33ef1
stdlib@go1.21.11
1.25.12

Open the chart page →

3,272
cluster-api-provider-oxidecluster-api-provider-oxide0.2.31 of 1See more

cluster-api-provider-oxide cluster-api-provider-oxide 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/oxidecomputer/cluster-api-provider-oxide:0.2.37b05d3bbfbfa
stdlib@go1.26.4
1.25.12

Open the chart page →

133
cluster-api-visualizercluster-api-visualizer1.5.01 of 1See more

cluster-api-visualizer cluster-api-visualizer 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/jont828/cluster-api-visualizer:v1.5.0678ba6833297
stdlib@go1.24.11
1.25.12

Open the chart page →

553
clustereye-stackclustereyeVerified publisher0.1.11 of 5See more

clustereye-stack clustereye 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:17-alpinef02121de6f74
stdlib@go1.24.6
1.25.12

Open the chart page →

4,747
clusternet-hubclusternet1.0.01 of 1See more

clusternet-hub clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
stdlib@go1.23.8
1.25.12

Open the chart page →

1,580
clusternet-schedulerclusternet1.0.01 of 1See more

clusternet-scheduler clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
stdlib@go1.23.8
1.25.12

Open the chart page →

1,580
cluster-setupcluster-setup1.5.07 of 8See more

cluster-setup cluster-setup 1.5.0

7 of the 8 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
stdlib@go1.24.3
1.25.12
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
stdlib@go1.18.2
1.25.12
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
stdlib@go1.22.7
1.25.12
quay.io/jetstack/cert-manager-cainjector:v1.17.2ec56edb1161d
stdlib@go1.23.8
1.25.12
quay.io/jetstack/cert-manager-controller:v1.17.22c314feeb5e8
stdlib@go1.23.8
1.25.12
quay.io/jetstack/cert-manager-startupapicheck:v1.17.2e18989b4f912
stdlib@go1.23.8
1.25.12
quay.io/jetstack/cert-manager-webhook:v1.17.237b16a9dff00
stdlib@go1.23.8
1.25.12

Open the chart page →

10,682
cockroachdb-chartcockroachdbv226.3.21 of 1See more

cockroachdb-chart cockroachdbv2 26.3.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.10b0fcc6c8147a
stdlib@go1.26.2
1.25.12

Open the chart page →

291
istio-allcode4devsVerified publisher1.2.04 of 6See more

istio-all code4devs 1.2.0

4 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
stdlib@go1.23.2
1.25.12
istio/pilot:1.24.2-distroless137e44e3d1d2
stdlib@go1.23.2
1.25.12
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
stdlib@go1.22.5
1.25.12
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
stdlib@go1.22.6
1.25.12

Open the chart page →

4,860
istio-control-planecode4devsVerified publisher1.0.02 of 3See more

istio-control-plane code4devs 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
stdlib@go1.23.2
1.25.12
istio/pilot:1.24.2-distroless137e44e3d1d2
stdlib@go1.23.2
1.25.12

Open the chart page →

2,402
maintenancecodewithemadVerified publisher0.1.61 of 1See more

maintenance codewithemad 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/caddy:2.9-alpineb4e3952384eb
stdlib@go1.23.4
1.25.12

Open the chart page →

1,531
dawarichcogitriVerified publisher2.9.21 of 3See more

dawarich cogitri 2.9.2

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
freikin/dawarich:1.15.2e58334ca5697
stdlib@go1.24.4
1.25.12

Open the chart page →

6,281
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
stdlib@go1.13.10
1.25.12

Open the chart page →

7,338
cortex-tenantcortex-tenantVerified publisher0.8.11 of 1See more

cortex-tenant cortex-tenant 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/blind-oracle/cortex-tenant:v2.0.09f8896ffc15b
stdlib@go1.25.1
1.25.12

Open the chart page →

788
cosmo-controller-managercosmoVerified publisher0.9.01 of 2See more

cosmo-controller-manager cosmo 0.9.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-controller-manager:v0.9.08c7fa5552028
stdlib@go1.20.5
1.25.12

Open the chart page →

1,964
cosmo-dashboardcosmoVerified publisher0.9.11 of 1See more

cosmo-dashboard cosmo 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-dashboard:v0.9.16a1c4a81a924
stdlib@go1.20.5
1.25.12

Open the chart page →

1,977
cp-schema-registrycp-schema-registryVerified publisher1.0.01 of 1See more

cp-schema-registry cp-schema-registry 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
stdlib@go1.25.4
1.25.12

Open the chart page →

2,077
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
stdlib@go1.16.5
1.25.12

Open the chart page →

6,556
chalk-operatorcrashoverride-helm-chartsVerified publisher0.1.11 of 1See more

chalk-operator crashoverride-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/crashappsec/chalk-operator:v0.1.128eee62e9bfa
stdlib@go1.24.13
1.25.12

Open the chart page →

388
duplicaticronce0.1.01 of 1See more

duplicati cronce 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
stdlib@go1.14.4
1.25.12

Open the chart page →

3,042
cronjob-scale-down-operatorcronschedules0.4.41 of 1See more

cronjob-scale-down-operator cronschedules 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cronschedules/cronjob-scale-down-operator:0.4.41c4e803d7169
stdlib@go1.25.0
1.25.12

Open the chart page →

458
cruisekubecruisekubeOfficialVerified publisher0.3.41 of 5See more

cruisekube cruisekube 0.3.4

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.5.2e8825994b7a2
stdlib@go1.24.1
1.25.12

Open the chart page →

457
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
stdlib@go1.19.8
1.25.12

Open the chart page →

14,608
revadcs3orgOfficialVerified publisher1.6.11 of 1See more

revad cs3org 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cs3org/revad:v1.24.0e80a4d67b352
stdlib@go1.20.4
1.25.12

Open the chart page →

1,733
cubefscubefs3.2.06 of 10See more

cubefs cubefs 3.2.0

6 of the 10 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.25.12
ghcr.io/cubefs/cfs-csi-driver:3.2.0.150.08723616a976a
stdlib@go1.18.4
1.25.12
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
stdlib@go1.17.3
1.25.12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
stdlib@go1.17.3
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.25.12
registry.k8s.io/sig-storage/csi-resizer:v1.3.06e0546563b18
stdlib@go1.16.2
1.25.12

Open the chart page →

17,254
CubeUniversecubeuniverseVerified publisher0.1.01 of 1See more

CubeUniverse cubeuniverse 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
tksky1/cubeuniverse:0.1alphaec7b889f380f
stdlib@go1.20.3
1.25.12

Open the chart page →

2,223
cview-issuercview-issuerVerified publisher0.0.421 of 1See more

cview-issuer cview-issuer 0.0.42

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
devsecurely/cview-issuer:0.0.42eecd4314e933
stdlib@go1.25.10
1.25.12

Open the chart page →

423

Container images carrying it

5,123 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/ingress-nginx/controller:v1.11.3d56f135b6462
stdlib@go1.22.8
1.25.12
1
registry.k8s.io/ingress-nginx/controller:v1.10.1e24f39d3eed6
stdlib@go1.22.2
1.25.12
1
registry.k8s.io/ingress-nginx/controller:v1.12.0e6b8de175acd
stdlib@go1.23.4
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.2050a34002d5b
stdlib@go1.24.6
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.33d671cf20a35
stdlib@go1.25.1
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.044d1d0e9f19c
stdlib@go1.21.6
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.3.0549e71a6ca24
stdlib@go1.18.2
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.5.0aaafd456bda1
stdlib@go1.23.4
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.1e63459ec5965
stdlib@go1.24.6
1.25.12
1
registry.k8s.io/kas-network-proxy/proxy-server:v0.0.37c2f596cae3c6
stdlib@go1.19.6
1.25.12
1
registry.k8s.io/kro/kro:v0.9.4eaf9fbaddd9d
stdlib@go1.26.3
1.25.12
1
registry.k8s.io/kube-apiserver:v1.25.0f6902791fb9a
stdlib@go1.19
1.25.12
1
registry.k8s.io/kubebuilder/kube-rbac-proxy:v0.16.0771a9a173e03
stdlib@go1.21.7
1.25.12
1
registry.k8s.io/kube-controller-manager:v1.25.066ce7d460e53
stdlib@go1.19
1.25.12
1
registry.k8s.io/kubectl:1.33.4261a9ed843eb
stdlib@go1.24.5
1.25.12
1
registry.k8s.io/kubectl:v1.32.73c5268158974
stdlib@go1.23.10
1.25.12
1
registry.k8s.io/kubectl:v1.35.64d8c68e8c2bf
stdlib@go1.25.11
1.25.12
1
registry.k8s.io/kubectl:v1.34.159bafa07ff3a
stdlib@go1.24.6
1.25.12
1
registry.k8s.io/kubectl:v1.32.08ccae74fc039
stdlib@go1.23.3
1.25.12
1
registry.k8s.io/kubectl:v1.36.2b0d792e0d8df
stdlib@go1.26.4
1.25.12
1
registry.k8s.io/kubectl:v1.36.1d08f476d04d0
stdlib@go1.26.2
1.25.12
1
registry.k8s.io/kube-scheduler:v1.26.110684e23172d9
stdlib@go1.20.11
1.25.12
1
registry.k8s.io/kube-scheduler:v1.28.73ae5620a33bb
stdlib@go1.21.7
1.25.12
1
registry.k8s.io/kube-scheduler:v1.23.143e149d206076
stdlib@go1.17.13
1.25.12
1
registry.k8s.io/kube-scheduler:v1.28.1146cf7475c8da
stdlib@go1.21.11
1.25.12
1
registry.k8s.io/kube-scheduler:v1.25.09330c53feca7
stdlib@go1.19
1.25.12
1
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.05658d0011a41
stdlib@go1.19.4
1.25.12
1
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.2ec5732e28f15
stdlib@go1.19.7
1.25.12
1
registry.k8s.io/kwok/kwok:v0.8.06d25aa8fbdfe
stdlib@go1.26.0
1.25.12
1
registry.k8s.io/metrics-server/metrics-server:v0.7.01c0419326500
stdlib@go1.21.6
1.25.12
1
registry.k8s.io/metrics-server/metrics-server:v0.7.1db3800085a09
stdlib@go1.21.8
1.25.12
1
registry.k8s.io/nfd/node-feature-discovery:v0.16.619ebca8b3804
stdlib@go1.22.8
1.25.12
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
stdlib@go1.23.2
1.25.12
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
stdlib@go1.25.5
1.25.12
1
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.11.1e6a43c83ab16
stdlib@go1.20.4
1.25.12
1
registry.k8s.io/provider-os/cinder-csi-plugin:v1.36.078adaeb154c7
stdlib@go1.26.2
1.25.12
1
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
stdlib@go1.26.2
1.25.12
1
registry.k8s.io/provider-os/openstack-cloud-controller-manager:v1.36.0e354e40db2d0
stdlib@go1.26.2
1.25.12
1
registry.k8s.io/sig-storage/csi-attacher:v4.1.008721106b949
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-attacher:v4.5.19dcd469f02bb
stdlib@go1.21.5
1.25.12
1
registry.k8s.io/sig-storage/csi-external-health-monitor-controller:v0.7.080b9ba94aa2a
stdlib@go1.18
1.25.12
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.9.12cddcc716c19
stdlib@go1.20.5
1.25.12
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.7.04a4cae5118c4
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.6.2a13bff2ed69a
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.0.1e07f914c32f0
stdlib@go1.15
1.25.12
1
registry.k8s.io/sig-storage/csi-provisioner:v5.0.27b9cdb5830d0
stdlib@go1.22.5
1.25.12
1
registry.k8s.io/sig-storage/csi-provisioner:v3.4.0e468dddcd275
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-provisioner:v3.3.0ee3b525d5b89
stdlib@go1.18
1.25.12
1
registry.k8s.io/sig-storage/csi-resizer:v1.7.03a7bdf5d1057
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-resizer:v1.6.0425d8f1b7693
stdlib@go1.18
1.25.12
1

syft 1.42.1 · advisories as of 28 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.