StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
—
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,503
of 17,939 indexed, latest versions
Container images
5,117
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,503 of 17,939 indexed charts deploy, on 5,117 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+191 more1.25.125,117
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,503 by stars
ChartLatestAffected imagesRadar Score
fireflylsst-sqre0.3.71 of 2See more

firefly lsst-sqre 0.3.7

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/redis:5fc5ecd863862
stdlib@go1.16.7
1.25.12

Open the chart page →

1,733
sasquatchlsst-sqre0.1.132 of 6See more

sasquatch lsst-sqre 0.1.13

2 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/kapacitor:1.6.37232f6388a4d
stdlib@go1.17.2
1.25.12
quay.io/influxdb/chronograf:1.9.3c2ed16080689
stdlib@go1.16.4
1.25.12

Open the chart page →

9,369
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gcr.io/cloudsql-docker/gce-proxy:1.17a85176b8e7cc
stdlib@go1.13.5
1.25.12

Open the chart page →

6,978
telegraf-dslsst-sqre1.0.231 of 1See more

telegraf-ds lsst-sqre 1.0.23

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/telegraf:1.19-alpineaddb86c0c520
stdlib@go1.16.6
1.25.12

Open the chart page →

3,795
xteveluiscajl0.1.61 of 1See more

xteve luiscajl 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
dnsforge/xteve:latest4d9a685c8c28
stdlib@go1.16.2
1.25.12

Open the chart page →

4,323
lumenvox-external-serviceslumenvox8.0.03 of 3See more

lumenvox-external-services lumenvox 8.0.0

3 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mongo:8.2.12e0ce8c35124d
stdlib@go1.25.9
1.25.12
library/postgres:17.5aadf2c0696f5
stdlib@go1.18.2
1.25.12
library/rabbitmq:4.1.8-management3574a8edaca3
stdlib@go1.22.2
1.25.12

Open the chart page →

6,785
ratelimitlumiumcoVerified publisher0.0.41 of 2See more

ratelimit lumiumco 0.0.4

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:a90e0e5d5966cbc14d5d
stdlib@go1.24.5
1.25.12

Open the chart page →

1,031
lynxpromptlynxpromptVerified publisher0.1.21 of 3See more

lynxprompt lynxprompt 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:17-alpineb0f9560a2de0
stdlib@go1.24.6
1.25.12

Open the chart page →

1,781
as212510-netm0nsterrr-as212510-netVerified publisher4.0.21 of 1See more

as212510-net m0nsterrr-as212510-net 4.0.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/m0nsterrr/as212510.net:v4.0.4e7b1d39c0dbc
stdlib@go1.26.4
1.25.12

Open the chart page →

72
qbittorrentm0nsterrr-qbittorrentVerified publisher7.1.21 of 2See more

qbittorrent m0nsterrr-qbittorrent 7.1.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:0.2.066c8d5c270eb
stdlib@go1.26.1
1.25.12

Open the chart page →

780
recyclarrm0nsterrr-recyclarrVerified publisher2.7.21 of 1See more

recyclarr m0nsterrr-recyclarr 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/recyclarr/recyclarr:8.7.26e69e009e1cd
stdlib@go1.26.3
1.25.12

Open the chart page →

269
argusm0sh1-helm-charts0.5.01 of 1See more

argus m0sh1-helm-charts 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
releaseargus/argus:0.29.0e07088252d03
stdlib@go1.25.5
1.25.12

Open the chart page →

1,490
gitea-runnerm0sh1-helm-charts0.2.32 of 2See more

gitea-runner m0sh1-helm-charts 0.2.3

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gitea/act_runner:0.3.08368754bb612
stdlib@go1.26.0
1.25.12
library/docker:29.3.0-dind-alpine3.231ba18449911d
stdlib@go1.25.7
1.25.12

Open the chart page →

4,300
wudm0sh1-helm-charts0.2.01 of 1See more

wud m0sh1-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
getwud/wud:8.1.1b1cd01c43839
stdlib@go1.15.15
1.25.12

Open the chart page →

6,738
kube-benchm9sweeperVerified publisher1.6.01 of 1See more

kube-bench m9sweeper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.176672264accce
stdlib@go1.20.4
1.25.12

Open the chart page →

1,397
m9sweeperm9sweeperVerified publisher1.6.02 of 6See more

m9sweeper m9sweeper 1.6.0

2 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
kubesec/kubesec:v2.13.0c0f3b0673578
stdlib@go1.19.7
1.25.12
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
stdlib@go1.21.5
1.25.12

Open the chart page →

10,056
magistralamagistrala-devopsVerified publisher0.16.214 of 42See more

magistrala magistrala-devops 0.16.2

14 of the 42 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
stdlib@go1.21.5
1.25.12
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.25.12
jaegertracing/jaeger-collector:1.53.07f1269222903
stdlib@go1.21.5
1.25.12
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
stdlib@go1.21.5
1.25.12
library/nats:2.10.17-alpineb7752304692b
stdlib@go1.22.4
1.25.12
natsio/nats-box:0.14.31cc420186664
stdlib@go1.22.1
1.25.12
natsio/nats-server-config-reloader:0.15.05b21830a9e9d
stdlib@go1.22.4
1.25.12
prom/alertmanager:v0.28.0d5155cfac40a
stdlib@go1.23.4
1.25.12
timescale/timescaledb:latest-pg12645fd9e92d76
stdlib@go1.18.7
1.25.12
quay.io/prometheus-operator/prometheus-config-reloader:v0.79.2193280a33bc1
stdlib@go1.23.4
1.25.12
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.12
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
stdlib@go1.23.4
1.25.12
quay.io/prometheus/pushgateway:v1.11.099392035ae99
stdlib@go1.23.4
1.25.12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.12

Open the chart page →

25,120
docker-mailservermailserverVerified publisher0.2.654 of 9See more

docker-mailserver mailserver 0.2.65

4 of the 9 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jeboehm/mailserver-filter:5.0.92e756949e537d
stdlib@go1.24.1
1.25.12
jeboehm/mailserver-mda:5.0.92d03fb7bae0a2
stdlib@go1.24.1
1.25.12
jeboehm/mailserver-mta:5.0.925fb2f31c940d
stdlib@go1.24.1
1.25.12
jeboehm/mailserver-web:5.0.929da13edf5aa8
stdlib@go1.24.1
1.25.12

Open the chart page →

11,767
demoshopmakaira2.4.01 of 4See more

demoshop makaira 2.4.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:80744ee5ef89c
stdlib@go1.24.6
1.25.12

Open the chart page →

4,101
mangadev-hello-worldmangadev0.3.01 of 1See more

mangadev-hello-world mangadev 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
wagnermanganelli164/webserver-hello-world:0.3.0d4ef27a4f180
stdlib@go1.22.5
1.25.12

Open the chart page →

884
novosgamarcusrepo0.1.11 of 2See more

novosga marcusrepo 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.12

Open the chart page →

3,329
whoamimario-fVerified publisher1.0.11 of 1See more

whoami mario-f 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
containous/whoami:v1.5.07d6a3c8f9147
stdlib@go1.14
1.25.12

Open the chart page →

1,281
consumermarthydavidVerified publisher0.1.61 of 1See more

consumer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-consumer:0.0.4e07644865dd1
stdlib@go1.23.0
1.25.12

Open the chart page →

827
producermarthydavidVerified publisher0.1.61 of 1See more

producer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-producer:0.0.454b242c7bf2b
stdlib@go1.23.0
1.25.12

Open the chart page →

827
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
stdlib@go1.21.5
1.25.12

Open the chart page →

4,285
kruisematrixone-operatorVerified publisher1.8.32 of 2See more

kruise matrixone-operator 1.8.3

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
openkruise/kruise-helm-hook:v0.1.0edc7cf9428fd
stdlib@go1.20.14
1.25.12
openkruise/kruise-manager:v1.8.30482722b4e56
stdlib@go1.22.11
1.25.12

Open the chart page →

1,955
matrix-sliding-syncmatrix-sliding-sync0.2.31 of 1See more

matrix-sliding-sync matrix-sliding-sync 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
stdlib@go1.20.14
1.25.12

Open the chart page →

1,609
focalboardmattermostVerified publisher0.5.01 of 1See more

focalboard mattermost 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mattermost/focalboard:0.6.7f2f987dada52
stdlib@go1.16.4
1.25.12

Open the chart page →

4,050
mattermost-calls-offloadermattermostVerified publisher0.2.11 of 1See more

mattermost-calls-offloader mattermost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mattermost/calls-offloader:v0.9.0b440b282599e
stdlib@go1.22.7
1.25.12

Open the chart page →

1,419
mattermost-chaos-enginemattermostVerified publisher0.2.01 of 1See more

mattermost-chaos-engine mattermost 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mattermost/mattermost-app-chaosengine:c153e436268954edd67
stdlib@go1.16.8
1.25.12

Open the chart page →

4,113
mattermost-push-proxymattermostVerified publisher0.14.31 of 1See more

mattermost-push-proxy mattermost 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mattermost/mattermost-push-proxy:6.3.045c53061c74e
stdlib@go1.21.13
1.25.12

Open the chart page →

896
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
stdlib@go1.24.5
1.25.12

Open the chart page →

4,226
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
stdlib@go1.22.8
1.25.12

Open the chart page →

8,923
mayastormayastorVerified publisher2.12.114 of 31See more

mayastor mayastor 2.12.1

14 of the 31 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
stdlib@go1.24.1
1.25.12
grafana/loki:3.4.258a6c186ce78
stdlib@go1.23.6
1.25.12
library/nats:2.9.17-alpine1a7b320b2942
stdlib@go1.19.9
1.25.12
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
stdlib@go1.19.4
1.25.12
natsio/prometheus-nats-exporter:0.11.031c02aac089a
stdlib@go1.20.3
1.25.12
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
stdlib@go1.24.5
1.25.12
openebs/provisioner-localpv:4.6.099f5116f5cb8
stdlib@go1.25.0
1.25.12
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
stdlib@go1.23.7
1.25.12
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.25.12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
stdlib@go1.23.1
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v5.2.0d5e46da8aff7
stdlib@go1.23.1
1.25.12
registry.k8s.io/sig-storage/csi-resizer:v1.13.28ddd178ba5d0
stdlib@go1.23.1
1.25.12
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.0dd788d79cf4c
stdlib@go1.23.1
1.25.12
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.12

Open the chart page →

19,286
eoloplantmca-eoloplaner0.1.02 of 7See more

eoloplant mca-eoloplaner 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.12
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.12

Open the chart page →

30,581
claude-code-apimcp-helmVerified publisher0.1.11 of 1See more

claude-code-api mcp-helm 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
arbuzov/claude-code-api:0.1.02d7dd8070610
stdlib@go1.23.10
1.25.12

Open the chart page →

4,266
mcp-kubernetesmcp-helmVerified publisher0.2.71 of 1See more

mcp-kubernetes mcp-helm 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mcp/kubernetes:latest5ffbf7f0a8aa
stdlib@go1.26.3
1.25.12

Open the chart page →

6,010
mdai-event-hubmdai-event-hubVerified publisher0.1.111 of 1See more

mdai-event-hub mdai-event-hub 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/p3k6k6h3/mdai-event-hub:0.1.1118cae836e9c7
stdlib@go1.25.11
1.25.12

Open the chart page →

431
mdai-gatewaymdai-gatewayVerified publisher0.1.101 of 1See more

mdai-gateway mdai-gateway 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/p3k6k6h3/mdai-gateway:0.1.100dfb323978f6
stdlib@go1.25.11
1.25.12

Open the chart page →

416
mdai-hubmdai-hubVerified publisher0.10.111 of 14See more

mdai-hub mdai-hub 0.10.1

11 of the 14 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/nats:2.14.0-alpinedf3dbf761551
stdlib@go1.26.2
1.25.12
natsio/nats-box:0.19.55d513bf0bb82
stdlib@go1.26.2
1.25.12
natsio/nats-server-config-reloader:0.23.064cb6c858e79
stdlib@go1.25.6
1.25.12
natsio/prometheus-nats-exporter:0.19.25387a5923572
stdlib@go1.25.6
1.25.12
ghcr.io/jkroepke/kube-webhook-certgen:1.8.38ce13c365c8e
stdlib@go1.26.3
1.25.12
ghcr.io/open-telemetry/opentelemetry-operator/opentelemetry-operator:0.148.0590e50477b76
stdlib@go1.25.8
1.25.12
public.ecr.aws/p3k6k6h3/mdai-event-hub:0.1.1118cae836e9c7
stdlib@go1.25.11
1.25.12
public.ecr.aws/p3k6k6h3/mdai-gateway:0.1.100dfb323978f6
stdlib@go1.25.11
1.25.12
quay.io/prometheus-operator/prometheus-operator:v0.91.09e53e1313921
stdlib@go1.25.9
1.25.12
quay.io/prometheus/node-exporter:v1.11.1-distroless6112664fd761
stdlib@go1.26.1
1.25.12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.06b2f0b6f2f86
stdlib@go1.26.2
1.25.12

Open the chart page →

9,025
mdai-s3-logs-readermdai-s3-logs-readerVerified publisher0.0.81 of 1See more

mdai-s3-logs-reader mdai-s3-logs-reader 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/decisiveai/mdai-s3-logs-reader:0.0.8d1e35167eec5
stdlib@go1.24.10
1.25.12

Open the chart page →

415
medewerkercatalogusmedewerkercatalogus1.0.01 of 3See more

medewerkercatalogus medewerkercatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/medewerkercatalogus-php:latest1ea5412bed26
stdlib@go1.13.10
1.25.12

Open the chart page →

7,362
pod-cleanupmediamarktsaturn1.2.11 of 1See more

pod-cleanup mediamarktsaturn 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.34.159bafa07ff3a
stdlib@go1.24.6
1.25.12

Open the chart page →

428
cleanuparrmedia-servarrVerified publisher0.19.41 of 1See more

cleanuparr media-servarr 0.19.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cleanuparr/cleanuparr:2.10.8ec444338a67e
stdlib@go1.22.2
1.25.12

Open the chart page →

1,290
sabnzbdmedia-servarrVerified publisher1.6.31 of 3See more

sabnzbd media-servarr 1.6.3

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/onedr0p/exportarr:v1.6.160cf3d44aa0b
stdlib@go1.21.6
1.25.12

Open the chart page →

553
tinymediamanagermedia-servarrVerified publisher1.6.41 of 2See more

tinymediamanager media-servarr 1.6.4

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.36f332431a2ae
stdlib@go1.24.4
1.25.12

Open the chart page →

8,633
cameramedia-streaming-meshVerified publisher0.2.51 of 3See more

camera media-streaming-mesh 0.2.5

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.12

Open the chart page →

19,385
crdsmedia-streaming-meshVerified publisher0.0.11 of 2See more

crds media-streaming-mesh 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ciscolabs/msm-nc:0710202336d02faad958
stdlib@go1.20.5
1.25.12

Open the chart page →

3,867
ingressmedia-streaming-meshVerified publisher0.1.82 of 2See more

ingress media-streaming-mesh 0.1.8

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.7.07612338342a1
stdlib@go1.20.1
1.25.12
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230312-helm-chart-4.5.2-28-g66a76079401d181618f27
stdlib@go1.20.1
1.25.12

Open the chart page →

3,312
msmmedia-streaming-meshVerified publisher0.1.175 of 6See more

msm media-streaming-mesh 0.1.17

5 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
stdlib@go1.24.0
1.25.12
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
stdlib@go1.24.0
1.25.12
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
stdlib@go1.23.1
1.25.12
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
stdlib@go1.23.1
1.25.12
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
stdlib@go1.22.3
1.25.12

Open the chart page →

12,200

Container images carrying it

5,117 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.15f4bb469fec5
stdlib@go1.23.6
1.25.12
1
registry.k8s.io/sig-storage/csi-snapshotter:v4.2.1818f35653f2e
stdlib@go1.16.2
1.25.12
1
registry.k8s.io/sig-storage/csi-snapshotter:v5.0.189e900a160a9
stdlib@go1.17.3
1.25.12
1
registry.k8s.io/sig-storage/hostpathplugin:v1.9.092257881c1d6
stdlib@go1.18
1.25.12
1
registry.k8s.io/sig-storage/livenessprobe:v2.9.02b10b24dafdc
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/livenessprobe:v2.11.082adbebdf5d5
stdlib@go1.20.5
1.25.12
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
stdlib@go1.23.4
1.25.12
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
stdlib@go1.25.5
1.25.12
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
stdlib@go1.26.4
1.25.12
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
stdlib@go1.23.6
1.25.12
1
registry.k8s.io/sig-storage/nfs-subdir-external-provisioner:v4.0.03ce0fdba4d8e
stdlib@go1.15
1.25.12
1
registry.k8s.io/sig-storage/objectstorage-sidecar:v0.2.2c7166a73a303
stdlib@go1.24.11
1.25.12
1
registry.k8s.io/sig-storage/snapshot-controller:v8.2.1472fa35a89da
stdlib@go1.23.6
1.25.12
1
registry.k8s.io/sig-storage/snapshot-controller:v4.2.195587f8777d7
stdlib@go1.16.2
1.25.12
1
registry.k8s.io/sig-storage/snapshot-controller:v6.2.198bab4eaf23c
stdlib@go1.19
1.25.12
1
registry.k8s.io/sig-storage/snapshot-controller:v6.3.1ce6ca3c0e30b
stdlib@go1.20.5
1.25.12
1
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
stdlib@go1.17.3
1.25.12
1

syft 1.42.1 · advisories as of 29 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.