StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
—
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,510
of 17,926 indexed, latest versions
Container images
5,123
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,510 of 17,926 indexed charts deploy, on 5,123 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+191 more1.25.125,123
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,510 by stars
ChartLatestAffected imagesRadar Score
core-dump-handlercore-dump-handler9.0.01 of 1See more

core-dump-handler core-dump-handler 9.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/icdh/core-dump-handler:v9.0.0cc79b9e2a1c8
stdlib@go1.16.6
1.25.12

Open the chart page →

3,132
cosmocosmo-platformOfficialVerified publisher0.20.06 of 10See more

cosmo cosmo-platform 0.20.0

6 of the 10 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r56dabb4a2088c
stdlib@go1.24.6
1.25.12
bitnamilegacy/redis:7.2.4-debian-12-r1670cafc5a71e8
stdlib@go1.21.10
1.25.12
ghcr.io/wundergraph/cosmo/controlplane:0.133.149800ff775f3
stdlib@go1.22.3
1.25.12
ghcr.io/wundergraph/cosmo/graphqlmetrics:0.33.0efb69ec3330c
stdlib@go1.23.6
1.25.12
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
stdlib@go1.23.6
1.25.12
ghcr.io/wundergraph/cosmo/studio:0.111.0454f4384713a
stdlib@go1.20.7
1.25.12

Open the chart page →

30,656
crossviewcrossviewOfficialVerified publisher4.6.01 of 2See more

crossview crossview 4.6.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
stdlib@go1.24.6
1.25.12

Open the chart page →

1,496
dapr-dashboarddapr0.15.01 of 1See more

dapr-dashboard dapr 0.15.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
daprio/dashboard:0.15.04be696707bd1
stdlib@go1.21.13
1.25.12

Open the chart page →

1,306
deepflowdeepflow6.2.2015 of 8See more

deepflow deepflow 6.2.201

5 of the 8 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
stdlib@go1.18.3
1.25.12
deepflowce/deepflow-init-grafana:v6.2.27cd16719eb57
stdlib@go1.19.3
1.25.12
deepflowce/deepflow-server:v6.2.21477e7334d13
stdlib@go1.18.10
1.25.12
deepflowce/mysql:8.0.313d7ae561cf60
stdlib@go1.16.7
1.25.12
grafana/grafana:9.3.6e5a9655dabef
stdlib@go1.19.4
1.25.12

Open the chart page →

16,250
hoppscotchdeliveryheroVerified publisher0.3.21 of 1See more

hoppscotch deliveryhero 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.8.2f1da831950b7
stdlib@go1.21.10
1.25.12

Open the chart page →

3,571
kube-benchdeliveryheroVerified publisher0.1.171 of 1See more

kube-bench deliveryhero 0.1.17

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.8.0ea3e33bc3c4e
stdlib@go1.21.7
1.25.12

Open the chart page →

1,644
listmonkdeliveryheroVerified publisher0.1.121 of 1See more

listmonk deliveryhero 0.1.12

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
listmonk/listmonk:v2.1.0d2eac77ddfad
stdlib@go1.17.6
1.25.12

Open the chart page →

2,543
prometheus-locust-exporterdeliveryheroVerified publisher1.2.31 of 1See more

prometheus-locust-exporter deliveryhero 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
containersol/locust_exporter:v0.4.1a914972d19ad
stdlib@go1.15.8
1.25.12

Open the chart page →

1,278
zabbix-kubernetes-discoverydjerfyVerified publisher1.4.201 of 1See more

zabbix-kubernetes-discovery djerfy 1.4.20

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
stdlib@go1.23.1
1.25.12

Open the chart page →

4,444
bscdysnixVerified publisher0.6.591 of 4See more

bsc dysnix 0.6.59

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/bnb-chain/bsc:1.6.2fd0e3ec7d960
stdlib@go1.24.9
1.25.12

Open the chart page →

1,990
imagepullsecret-patcherempathyco1.0.01 of 1See more

imagepullsecret-patcher empathyco 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/titansoft/imagepullsecret-patcher:v0.1421e6d6a155dc
stdlib@go1.13.15
1.25.12

Open the chart page →

2,267
postgres-pgdump-backupeugen0.7.61 of 1See more

postgres-pgdump-backup eugen 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
traefik/whoami:v1.11.0200689790a0a
stdlib@go1.24.1
1.25.12

Open the chart page →

354
openshift-secured-appeximiaitVerified publisher0.5.01 of 1See more

openshift-secured-app eximiait 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
stdlib@go1.20.10
1.25.12

Open the chart page →

12,193
openshift-secured-pgadmineximiaitVerified publisher0.2.01 of 2See more

openshift-secured-pgadmin eximiait 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
stdlib@go1.20.10
1.25.12

Open the chart page →

14,751
openshift-secured-redisInsighteximiaitVerified publisher0.9.21 of 2See more

openshift-secured-redisInsight eximiait 0.9.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
stdlib@go1.20.10
1.25.12

Open the chart page →

14,033
keydbfinkinfridomVerified publisher0.48.31 of 1See more

keydb finkinfridom 0.48.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
stdlib@go1.16.7
1.25.12

Open the chart page →

5,441
flyte-binaryflyte2.0.501 of 4See more

flyte-binary flyte 2.0.50

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:15-alpinef7d23353e1b1
stdlib@go1.24.6
1.25.12

Open the chart page →

4,281
flyte-coreflyte2.0.501 of 3See more

flyte-core flyte 2.0.50

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:15-alpinef7d23353e1b1
stdlib@go1.24.6
1.25.12

Open the chart page →

438
frp-operatorfrpVerified publisher1.0.41 of 1See more

frp-operator frp 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/aureum-cloud/frp-operator:v1.0.196b01d7e7025
stdlib@go1.24.13
1.25.12

Open the chart page →

388
frp-operatorfrp-operator1.9.01 of 1See more

frp-operator frp-operator 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/zufardhiyaulhaq/frp-operator:v0.11.0cd25ee354df2
stdlib@go1.23.12
1.25.12

Open the chart page →

550
ascii-moviegabe565Verified publisher0.16.41 of 1See more

ascii-movie gabe565 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
stdlib@go1.24.0
1.25.12

Open the chart page →

1,153
domain-watchgabe565Verified publisher1.1.01 of 1See more

domain-watch gabe565 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/gabe565/domain-watch:latest34c5a1e351d6
stdlib@go1.24.1
1.25.12

Open the chart page →

966
blockygeek-cookbookVerified publisher10.5.21 of 1See more

blocky geek-cookbook 10.5.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
stdlib@go1.17.7
1.25.12

Open the chart page →

3,041
error-pagesgeek-cookbookVerified publisher1.2.21 of 1See more

error-pages geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/tarampampam/error-pages:2.6.013e73da04ee4
stdlib@go1.17.6
1.25.12

Open the chart page →

1,112
intel-gpu-plugingeek-cookbookVerified publisher4.4.21 of 1See more

intel-gpu-plugin geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
intel/intel-gpu-plugin:0.20.0143f0a45e174
stdlib@go1.15.10
1.25.12

Open the chart page →

1,753
mealiegeek-cookbookVerified publisher5.1.21 of 2See more

mealie geek-cookbook 5.1.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
stdlib@go1.17.10
1.25.12

Open the chart page →

7,750
multusgeek-cookbookVerified publisher3.5.22 of 3See more

multus geek-cookbook 3.5.2

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/cni-plugins:v0.9.1241592d93640
stdlib@go1.15.8
1.25.12
ghcr.io/k8snetworkplumbingwg/multus-cni:v3.7.1e72aa733faf2
stdlib@go1.13.10
1.25.12

Open the chart page →

4,767
plexgeek-cookbookVerified publisher6.4.31 of 1See more

plex geek-cookbook 6.4.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
stdlib@go1.18.4
1.25.12

Open the chart page →

10,018
signal-cli-rest-apigeek-cookbookVerified publisher1.2.21 of 1See more

signal-cli-rest-api geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
stdlib@go1.17.8
1.25.12

Open the chart page →

10,485
smarter-device-managergeek-cookbookVerified publisher6.5.21 of 1See more

smarter-device-manager geek-cookbook 6.5.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.7864fc338571e
stdlib@go1.16.4
1.25.12

Open the chart page →

2,345
statpinggeek-cookbookVerified publisher6.2.01 of 2See more

statping geek-cookbook 6.2.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
stdlib@go1.14.13
1.25.12

Open the chart page →

3,380
syncthinggeek-cookbookVerified publisher3.5.21 of 1See more

syncthing geek-cookbook 3.5.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
syncthing/syncthing:1.18.2966433161272
stdlib@go1.17
1.25.12

Open the chart page →

2,607
tautulligeek-cookbookVerified publisher11.4.21 of 1See more

tautulli geek-cookbook 11.4.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
stdlib@go1.16.7
1.25.12

Open the chart page →

11,090
traefik-forward-authgeek-cookbookVerified publisher2.2.21 of 1See more

traefik-forward-auth geek-cookbook 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:2.2.0e875194d67e2
stdlib@go1.13.12
1.25.12

Open the chart page →

2,229
unifigeek-cookbookVerified publisher5.1.31 of 1See more

unifi geek-cookbook 5.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.4.162b3edc809a3ff
stdlib@go1.20.4
1.25.12

Open the chart page →

12,308
ghost-on-kubernetesghost-on-kubernetes-helmVerified publisher1.1.22 of 3See more

ghost-on-kubernetes ghost-on-kubernetes-helm 1.1.2

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.485b9bf2e29cf
stdlib@go1.24.6
1.25.12
ghcr.io/sredevopsorg/ghost-on-kubernetes:main06adb21bfdfc
stdlib@go1.26.4
1.25.12

Open the chart page →

1,458
gitlab-runnergitlab-jh0.93.01 of 1See more

gitlab-runner gitlab-jh 0.93.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.4.0a4838319e55b
stdlib@go1.26.3
1.25.12

Open the chart page →

290
gitvotegitvoteVerified publisher1.5.02 of 6See more

gitvote gitvote 1.5.0

2 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
stdlib@go1.24.6
1.25.12
ghcr.io/cncf/gitvote/dbmigrator:v1.5.0f1e7efe440da
stdlib@go1.25.3
1.25.12

Open the chart page →

5,870
nzbhydra2halkeye2.30.11 of 2See more

nzbhydra2 halkeye 2.30.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
binhex/arch-nzbhydra2:3.1.0-1-01fb8952921ab6
stdlib@go1.14
1.25.12

Open the chart page →

6,701
unifi-pollerhalkeye0.1.21 of 1See more

unifi-poller halkeye 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
golift/unifi-poller:2.0.0cafac968b540
stdlib@go1.13.7
1.25.12

Open the chart page →

1,658
whoamiharrytangVerified publisher0.2.01 of 1See more

whoami harrytang 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
traefik/whoami:v1.11.0200689790a0a
stdlib@go1.24.1
1.25.12

Open the chart page →

354
monitoring-stackhaukitechVerified publisher0.1.113 of 3See more

monitoring-stack haukitech 0.1.11

3 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-operator:v0.77.1dde69a8b6f4b
stdlib@go1.23.1
1.25.12
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.12

Open the chart page →

2,160
prometheus-operatorhaukitechVerified publisher0.1.41 of 1See more

prometheus-operator haukitech 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-operator:v0.77.1dde69a8b6f4b
stdlib@go1.23.1
1.25.12

Open the chart page →

567
headscaleheadscaleVerified publisher1.0.201 of 3See more

headscale headscale 1.0.20

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
alpine/k8s:1.37.0b421c2e9419e
stdlib@go1.24.0
1.25.12

Open the chart page →

1,478
health-exporterhealth-exporterVerified publisher0.3.41 of 1See more

health-exporter health-exporter 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/snapp-incubator/health-exporter:0.3.252a0d8f6278c
stdlib@go1.17.2
1.25.12

Open the chart page →

1,562
netbirdhelmforgeVerified publisher1.0.111 of 4See more

netbird helmforge 1.0.11

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie5a5a84b19854
stdlib@go1.24.6
1.25.12

Open the chart page →

2,542
simple-krr-dashboardhelm-simple-krr-dashboardVerified publisher1.6.21 of 3See more

simple-krr-dashboard helm-simple-krr-dashboard 1.6.2

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.2ec8f734b0a10
stdlib@go1.25.7
1.25.12

Open the chart page →

2,367
helm-watchdog-pod-deletehelm-watchdog-pod-delete0.3.01 of 1See more

helm-watchdog-pod-delete helm-watchdog-pod-delete 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
stdlib@go1.24.6
1.25.12

Open the chart page →

1,195
hermes-agenthermes-agentVerified publisher1.16.01 of 1See more

hermes-agent hermes-agent 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.9.24fca358f12efd
stdlib@go1.24.4
1.25.12

Open the chart page →

5,711

Container images carrying it

5,123 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/ingress-nginx/controller:v1.11.3d56f135b6462
stdlib@go1.22.8
1.25.12
1
registry.k8s.io/ingress-nginx/controller:v1.10.1e24f39d3eed6
stdlib@go1.22.2
1.25.12
1
registry.k8s.io/ingress-nginx/controller:v1.12.0e6b8de175acd
stdlib@go1.23.4
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.2050a34002d5b
stdlib@go1.24.6
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.33d671cf20a35
stdlib@go1.25.1
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.044d1d0e9f19c
stdlib@go1.21.6
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.3.0549e71a6ca24
stdlib@go1.18.2
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.5.0aaafd456bda1
stdlib@go1.23.4
1.25.12
1
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.1e63459ec5965
stdlib@go1.24.6
1.25.12
1
registry.k8s.io/kas-network-proxy/proxy-server:v0.0.37c2f596cae3c6
stdlib@go1.19.6
1.25.12
1
registry.k8s.io/kro/kro:v0.9.4eaf9fbaddd9d
stdlib@go1.26.3
1.25.12
1
registry.k8s.io/kube-apiserver:v1.25.0f6902791fb9a
stdlib@go1.19
1.25.12
1
registry.k8s.io/kubebuilder/kube-rbac-proxy:v0.16.0771a9a173e03
stdlib@go1.21.7
1.25.12
1
registry.k8s.io/kube-controller-manager:v1.25.066ce7d460e53
stdlib@go1.19
1.25.12
1
registry.k8s.io/kubectl:1.33.4261a9ed843eb
stdlib@go1.24.5
1.25.12
1
registry.k8s.io/kubectl:v1.32.73c5268158974
stdlib@go1.23.10
1.25.12
1
registry.k8s.io/kubectl:v1.35.64d8c68e8c2bf
stdlib@go1.25.11
1.25.12
1
registry.k8s.io/kubectl:v1.34.159bafa07ff3a
stdlib@go1.24.6
1.25.12
1
registry.k8s.io/kubectl:v1.32.08ccae74fc039
stdlib@go1.23.3
1.25.12
1
registry.k8s.io/kubectl:v1.36.2b0d792e0d8df
stdlib@go1.26.4
1.25.12
1
registry.k8s.io/kubectl:v1.36.1d08f476d04d0
stdlib@go1.26.2
1.25.12
1
registry.k8s.io/kube-scheduler:v1.26.110684e23172d9
stdlib@go1.20.11
1.25.12
1
registry.k8s.io/kube-scheduler:v1.28.73ae5620a33bb
stdlib@go1.21.7
1.25.12
1
registry.k8s.io/kube-scheduler:v1.23.143e149d206076
stdlib@go1.17.13
1.25.12
1
registry.k8s.io/kube-scheduler:v1.28.1146cf7475c8da
stdlib@go1.21.11
1.25.12
1
registry.k8s.io/kube-scheduler:v1.25.09330c53feca7
stdlib@go1.19
1.25.12
1
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.05658d0011a41
stdlib@go1.19.4
1.25.12
1
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.2ec5732e28f15
stdlib@go1.19.7
1.25.12
1
registry.k8s.io/kwok/kwok:v0.8.06d25aa8fbdfe
stdlib@go1.26.0
1.25.12
1
registry.k8s.io/metrics-server/metrics-server:v0.7.01c0419326500
stdlib@go1.21.6
1.25.12
1
registry.k8s.io/metrics-server/metrics-server:v0.7.1db3800085a09
stdlib@go1.21.8
1.25.12
1
registry.k8s.io/nfd/node-feature-discovery:v0.16.619ebca8b3804
stdlib@go1.22.8
1.25.12
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
stdlib@go1.23.2
1.25.12
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
stdlib@go1.25.5
1.25.12
1
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.11.1e6a43c83ab16
stdlib@go1.20.4
1.25.12
1
registry.k8s.io/provider-os/cinder-csi-plugin:v1.36.078adaeb154c7
stdlib@go1.26.2
1.25.12
1
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
stdlib@go1.26.2
1.25.12
1
registry.k8s.io/provider-os/openstack-cloud-controller-manager:v1.36.0e354e40db2d0
stdlib@go1.26.2
1.25.12
1
registry.k8s.io/sig-storage/csi-attacher:v4.1.008721106b949
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-attacher:v4.5.19dcd469f02bb
stdlib@go1.21.5
1.25.12
1
registry.k8s.io/sig-storage/csi-external-health-monitor-controller:v0.7.080b9ba94aa2a
stdlib@go1.18
1.25.12
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.9.12cddcc716c19
stdlib@go1.20.5
1.25.12
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.7.04a4cae5118c4
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.6.2a13bff2ed69a
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.0.1e07f914c32f0
stdlib@go1.15
1.25.12
1
registry.k8s.io/sig-storage/csi-provisioner:v5.0.27b9cdb5830d0
stdlib@go1.22.5
1.25.12
1
registry.k8s.io/sig-storage/csi-provisioner:v3.4.0e468dddcd275
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-provisioner:v3.3.0ee3b525d5b89
stdlib@go1.18
1.25.12
1
registry.k8s.io/sig-storage/csi-resizer:v1.7.03a7bdf5d1057
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/csi-resizer:v1.6.0425d8f1b7693
stdlib@go1.18
1.25.12
1

syft 1.42.1 · advisories as of 28 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.