StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,207
of 17,792 indexed, latest versions
Container images
4,872
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,207 of 17,792 indexed charts deploy, on 4,872 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+186 more1.25.124,872
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,207 by stars
ChartLatestAffected imagesRadar Score
cloudfront-tenant-operatorcloudfront-tenant-operatorVerified publisher0.3.01 of 1See more

cloudfront-tenant-operator cloudfront-tenant-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/dsp0x4/cloudfront-tenant-operator:0.3.0eb40174cd20d
stdlib@go1.26.2
1.25.12

Open the chart page →

276
hcloud-csi-mgmtcloudhippieVerified publisher2.10.02 of 5See more

hcloud-csi-mgmt cloudhippie 2.10.0

2 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
stdlib@go1.26.3
1.25.12
registry.k8s.io/sig-storage/csi-resizer:v2.2.1ea1d25e23479
stdlib@go1.26.3
1.25.12

Open the chart page →

597
mercurecloudnativeapp1.0.21 of 1See more

mercure cloudnativeapp 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
dunglas/mercure:v0916834e49961
stdlib@go1.26.3
1.25.12

Open the chart page →

1,105
cp4d-deployercloud-native-toolkit1.0.01 of 1See more

cp4d-deployer cloud-native-toolkit 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
stdlib@go1.19.10
1.25.12

Open the chart page →

25,513
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
stdlib@go1.17.5
1.25.12

Open the chart page →

6,704
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
stdlib@go1.18.1
1.25.12

Open the chart page →

6,930
pact-brokercloud-native-toolkit0.3.01 of 1See more

pact-broker cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.101.0.0a3021fc42834
stdlib@go1.14.4
1.25.12

Open the chart page →

2,814
robot-shopcloud-native-toolkit1.1.12 of 12See more

robot-shop cloud-native-toolkit 1.1.1

2 of the 12 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.25.12
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.25.12

Open the chart page →

29,602
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad5 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

5 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
stdlib@go1.20.12
1.25.12
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
stdlib@go1.23.8
1.25.12
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
stdlib@go1.19.1
1.25.12
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
stdlib@go1.24.6
1.25.12
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
stdlib@go1.23.8
1.25.12

Open the chart page →

18,374
cloud-provider-kubevirtcloud-provider-kubevirtVerified publisher0.2.01 of 1See more

cloud-provider-kubevirt cloud-provider-kubevirt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/kubevirt/kubevirt-cloud-controller-manager:v0.6.037ad4c475941
stdlib@go1.24.13
1.25.12

Open the chart page →

663
k8s-monitoring-appcloudscriptVerified publisher1.0.01 of 1See more

k8s-monitoring-app cloudscript 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cloudscript-technology/k8s-monitoring-app:v0.0.25cab66a6b3574
stdlib@go1.24.10
1.25.12

Open the chart page →

1,294
cloudvaultcloudvaultOfficialVerified publisher1.0.21 of 3See more

cloudvault cloudvault 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:18.3-alpine54451ecb8ab3
stdlib@go1.24.6
1.25.12

Open the chart page →

2,185
ctrox-csi-s3cloudve0.1.01 of 4See more

ctrox-csi-s3 cloudve 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
stdlib@go1.16.13
1.25.12

Open the chart page →

3,143
galaxycloudve6.8.61 of 3See more

galaxy cloudve 6.8.6

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
tusproject/tusd:v1.13.0f8088058b80f
stdlib@go1.21.0
1.25.12

Open the chart page →

5,603
galaxy-cvmfs-csicloudve2.5.12 of 3See more

galaxy-cvmfs-csi cloudve 2.5.1

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.10.1f25af73ee708
stdlib@go1.21.5
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.25.12

Open the chart page →

1,515
galaxy-depscloudve1.1.16 of 7See more

galaxy-deps cloudve 1.1.1

6 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
stdlib@go1.24.5
1.25.12
bitnamilegacy/rabbitmq-cluster-operator:1.14.0-scratch-r567ac64a9623a
stdlib@go1.17
1.25.12
bitnamilegacy/rmq-messaging-topology-operator:1.7.1-scratch-r33c26208691a1
stdlib@go1.17
1.25.12
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
stdlib@go1.23.4
1.25.12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.25.12

Open the chart page →

10,581
galaxy-k8s-monitorcloudve0.1.11 of 1See more

galaxy-k8s-monitor cloudve 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
afgane/galaxy-k8s-monitor:latest457173db5640
stdlib@go1.24.13
1.25.12

Open the chart page →

313
galaxykubemancloudve2.10.14 of 7See more

galaxykubeman cloudve 2.10.1

4 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
stdlib@go1.17.13
1.25.12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.25.12
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
stdlib@go1.16.2
1.25.12

Open the chart page →

16,134
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.25.12

Open the chart page →

14,304
openstack-cinder-csicloudve1.2.01 of 5See more

openstack-cinder-csi cloudve 1.2.0

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
k8scloudprovider/cinder-csi-plugin:latesta30c7a2a594a
stdlib@go1.17.10
1.25.12

Open the chart page →

2,068
proxyinjectorcloudve0.0.231 of 1See more

proxyinjector cloudve 0.0.23

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.25.12

Open the chart page →

2,853
pulsarcloudve0.2.01 of 2See more

pulsar cloudve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
stdlib@go1.22.7
1.25.12

Open the chart page →

6,204
argo-cdcluster-deploy0.3.22 of 3See more

argo-cd cluster-deploy 0.3.2

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
stdlib@go1.26.4
1.25.12
quay.io/argoprojlabs/argocd-image-updater:v1.2.13c56f354fac5
stdlib@go1.26.3
1.25.12

Open the chart page →

3,752
argo-eventscluster-deploy0.1.01 of 1See more

argo-events cluster-deploy 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
stdlib@go1.24.11
1.25.12

Open the chart page →

1,042
authentikcluster-deploy0.2.01 of 1See more

authentik cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
stdlib@go1.26.2
1.25.12

Open the chart page →

2,509
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
stdlib@go1.20.2
1.25.12

Open the chart page →

8,072
mla-external-secretscluster-deploy0.3.01 of 1See more

mla-external-secrets cluster-deploy 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v2.1.0ec40c3d9c48f
stdlib@go1.25.7
1.25.12

Open the chart page →

723
monitoringcluster-deploy0.3.09 of 11See more

monitoring cluster-deploy 0.3.0

9 of the 11 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:12.4.1e932bd6ed0e0
stdlib@go1.25.8
1.25.12
grafana/loki:3.6.73c8fd3570dd9
stdlib@go1.24.13
1.25.12
grafana/loki-canary:3.6.70dac7d5cb383
stdlib@go1.24.13
1.25.12
prom/memcached-exporter:v0.15.592a6ad5a3d3e
stdlib@go1.25.6
1.25.12
quay.io/prometheus-operator/prometheus-config-reloader:v0.89.0cb4ac6a56555
stdlib@go1.25.6
1.25.12
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
stdlib@go1.25.3
1.25.12
quay.io/prometheus/prometheus:v3.10.07571a304e67f
stdlib@go1.26.0
1.25.12
quay.io/prometheus/pushgateway:v1.11.249ed9fdf3780
stdlib@go1.25.3
1.25.12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.12

Open the chart page →

8,219
clusterfactoryclusterfactory0.2.02 of 5See more

clusterfactory clusterfactory 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gitea/act_runner:0.3.1c2a169c5e998
stdlib@go1.26.1
1.25.12
jenkins/jenkins:2.541.3-jdk21c4098086090c
stdlib@go1.25.3
1.25.12

Open the chart page →

7,193
gitea-jenkinsclusterfactory0.1.12 of 5See more

gitea-jenkins clusterfactory 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gitea/act_runner:latestb5c35d6bdbb9
stdlib@go1.26.2
1.25.12
jenkins/jenkins:2.541.3-jdk21c4098086090c
stdlib@go1.25.3
1.25.12

Open the chart page →

6,982
cluster-monitor-agentcluster-monitor-agent0.10.21 of 1See more

cluster-monitor-agent cluster-monitor-agent 0.10.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/cluster-monitor-agent:0.10.26769c2275a43
stdlib@go1.23.11
1.25.12

Open the chart page →

475
cluster-monitor-servercluster-monitor-server0.10.21 of 1See more

cluster-monitor-server cluster-monitor-server 0.10.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/cluster-monitor-server:0.10.22d28f9e3eab4
stdlib@go1.23.11
1.25.12

Open the chart page →

753
clusternet-controller-managerclusternet1.0.01 of 1See more

clusternet-controller-manager clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-controller-manager:v1.0.02ce077d3d02d
stdlib@go1.23.8
1.25.12

Open the chart page →

1,403
cluster-network-policy-operatorcluster-network-policy-operatorVerified publisher1.1.01 of 1See more

cluster-network-policy-operator cluster-network-policy-operator 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/desuuuu/cluster-network-policy-operator:v1.1.0d943d13c5281
stdlib@go1.26.0
1.25.12

Open the chart page →

228
cluster-octopuscluster-octopus1.0.01 of 1See more

cluster-octopus cluster-octopus 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cgtysylr/cluster-octopus:1.0.0aec0f8a38a77
stdlib@go1.20.8
1.25.12

Open the chart page →

1,040
clusterpedia-coreclusterpedia0.1.13 of 3See more

clusterpedia-core clusterpedia 0.1.1

3 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/clusterpedia-io/clusterpedia/apiserver:v0.6.03d089d9078f8
stdlib@go1.19.4
1.25.12
ghcr.io/clusterpedia-io/clusterpedia/clustersynchro-manager:v0.6.082cc9a77f6d6
stdlib@go1.19.4
1.25.12
ghcr.io/clusterpedia-io/clusterpedia/controller-manager:v0.6.081669df338e0
stdlib@go1.19.4
1.25.12

Open the chart page →

3,132
d2-prometheus-exportercmacraeVerified publisher0.1.01 of 1See more

d2-prometheus-exporter cmacrae 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cmacrae/d2-prometheus-exporter:v0.1.0fc5fecba436e
stdlib@go1.15
1.25.12

Open the chart page →

1,299
kovecmacraeVerified publisher0.2.01 of 1See more

kove cmacrae 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.2.0185bfaae750c
stdlib@go1.17
1.25.12

Open the chart page →

2,089
kove-deprecationscmacraeVerified publisher0.1.21 of 1See more

kove-deprecations cmacrae 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.1.0db1244edefc8
stdlib@go1.16
1.25.12

Open the chart page →

2,203
lgtmcmacraeVerified publisher0.1.01 of 1See more

lgtm cmacrae 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cmacrae/lgtm:0.1.0dec8d490fe40
stdlib@go1.14.1
1.25.12

Open the chart page →

1,909
storage-local-pathcnapVerified publisher1.0.11 of 1See more

storage-local-path cnap 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.3534ff0847cc47
stdlib@go1.26.1
1.25.12

Open the chart page →

753
storage-piraeuscnapVerified publisher1.0.11 of 1See more

storage-piraeus cnap 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/piraeusdatastore/piraeus-operator:v2.10.5dd68a66332de
stdlib@go1.26.1
1.25.12

Open the chart page →

334
door-agentcnoVerified publisher3.0.1511 of 15See more

door-agent cno 3.0.15

11 of the 15 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
beopenit/door-agent:v3.0.5d24c323fe7c3
stdlib@go1.23.12
1.25.12
beopenit/door-cd-operator:v3.0.4d3999cb8d026
stdlib@go1.23.9
1.25.12
beopenit/door-helm:v3.0.1b4d9f9bee224
stdlib@go1.19.13
1.25.12
beopenit/onboarding-operator-kubernetes:v3.0.275a48144e682
stdlib@go1.18.10
1.25.12
doorcloud/apim-operator:v3.0.44e6ef8d72c3e
stdlib@go1.22.12
1.25.12
envoyproxy/ratelimit:6f5de117b6cb6e16f8c9
stdlib@go1.14.13
1.25.12
library/docker:27-cli851f91d24121
stdlib@go1.23.5
1.25.12
library/docker:27-dindaa3df78ecf32
stdlib@go1.22.11
1.25.12
ghcr.io/projectcontour/contour:v1.30.0b12824d7eb58
stdlib@go1.22.5
1.25.12
ghcr.io/projectcontour/contour:v1.33.0cd6e13fa882d
stdlib@go1.25.1
1.25.12
quay.io/brancz/kube-rbac-proxy:v0.13.1738c854322f5
stdlib@go1.19.1
1.25.12

Open the chart page →

19,454
cobbler-tftpcobbler0.1.11 of 1See more

cobbler-tftp cobbler 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cobbler/cobbler-tftp:v0.1.0a7fef3ca80baa4
stdlib@go1.25.10
1.25.12

Open the chart page →

304
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
stdlib@go1.25.0
1.25.12

Open the chart page →

13,312
coderstudio-strapi-devcoderstudio-strapi-devVerified publisher0.0.12 of 3See more

coderstudio-strapi-dev coderstudio-strapi-dev 0.0.1

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
stdlib@go1.24.6
1.25.12
rcdelacruz/my-strapi-app:js-amd6438007f358355
stdlib@go1.19.4
1.25.12

Open the chart page →

5,142
docker-composecoderstudio-strapi-devVerified publisher0.0.12 of 3See more

docker-compose coderstudio-strapi-dev 0.0.1

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
stdlib@go1.24.6
1.25.12
rcdelacruz/my-strapi-app:js-amd6438007f358355
stdlib@go1.19.4
1.25.12

Open the chart page →

5,142
strapi-devcoderstudio-strapi-devVerified publisher0.0.12 of 3See more

strapi-dev coderstudio-strapi-dev 0.0.1

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
stdlib@go1.24.6
1.25.12
rcdelacruz/my-strapi-app:js-amd6438007f358355
stdlib@go1.19.4
1.25.12

Open the chart page →

5,142
coder-ai-gatewaycoder-v2Verified publisher2.37.11 of 1See more

coder-ai-gateway coder-v2 2.37.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/coder/coder:v2.37.10c6994bb4c5a
stdlib@go1.25.10
1.25.12

Open the chart page →

194
coder-provisionercoder-v2OfficialVerified publisher2.37.11 of 1See more

coder-provisioner coder-v2 2.37.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/coder/coder:v2.37.10c6994bb4c5a
stdlib@go1.25.10
1.25.12

Open the chart page →

194

Container images carrying it

4,872 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
amazon/aws-otel-collector:v0.27.0d8ab0eef5074
stdlib@go1.19.6
1.25.12
1
amazon/cloudwatch-agent:1.300032.2b36173b79b02f03a
stdlib@go1.21.5
1.25.12
1
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
stdlib@go1.15.15
1.25.12
1
ambassador/aes-authsvc:v4.0.0-preview.12a4598b03a6a
stdlib@go1.20.6
1.25.12
1
ambassador/aes-eg-ext:v4.0.0-preview.1b7eb1be3345d
stdlib@go1.20.6
1.25.12
1
ambassador/aes-wafsvc:v4.0.0-preview.15fc571509b8c
stdlib@go1.20.6
1.25.12
1
ambassador/ambassador-agent:1.0.227a1ea0d934fb
stdlib@go1.21.5
1.25.12
1
amd64/mysql:5.7e20a653e0f51
stdlib@go1.18.2
1.25.12
1
anamskenneth/recipe_frontend:2025-06-079ecf04f42cc3
stdlib@go1.20.12
1.25.12
1
anchore/anchore-engine:v0.10.0bde9eedf639d
stdlib@go1.16.3
1.25.12
1
anchore/kai:v0.5.08aad6d0912dd
stdlib@go1.19.7
1.25.12
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
stdlib@go1.18.3
1.25.12
1
andrcuns/smocker:0.18.5b4a8eb20581a
stdlib@go1.18.10
1.25.12
1
andreacioni/kube-workload-restarter:0.0.242938b310090a
stdlib@go1.20.2
1.25.12
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
stdlib@go1.18.2
1.25.12
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
stdlib@go1.18.2
1.25.12
1
anonaddy/anonaddy:0.12.3957a95565166
stdlib@go1.18.3
1.25.12
1
ansgroup/cert-manager-webhook-safedns:v1.0.1cd6b0ef2b309
stdlib@go1.13.15
1.25.12
1
ansiblesemaphore/semaphore:v2.8.5303d1f8684027
stdlib@go1.16.3
1.25.12
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
stdlib@go1.25.7
1.25.12
1
anujarosha/hello-go:v1.0.1ed60e46870b6
stdlib@go1.18.3
1.25.12
1
anujdatar/cups:25.07.01685df04a643b
stdlib@go1.19.8
1.25.12
1
apache/airflow:2.8.4-python3.964e58748b6b9
stdlib@go1.21.8
1.25.12
1
apache/airflow:airflow-pgbouncer-exporter-2025.03.05-0.18.0adf7260c2c5f
stdlib@go1.23.7
1.25.12
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
stdlib@go1.22.7
1.25.12
1
apache/airflow:2.8.1e5560ad0b86e
stdlib@go1.19.8
1.25.12
1
apache/apisix-dashboard:2.9.0c010ea7d1694
stdlib@go1.14.15
1.25.12
1
apache/apisix-ingress-controller:1.3.0412f92cde0b3
stdlib@go1.13.8
1.25.12
1
apache/camel-k:1.10.43bb13d14f64a
stdlib@go1.17.13
1.25.12
1
apache/doris:operator-latest3a4422656592
stdlib@go1.23.12
1.25.12
1
apache/shardingsphere-operator:0.3.0ffe68d6b99c0
stdlib@go1.19.10
1.25.12
1
apache/skywalking-oap-server:9.2.0133d35d2c263
stdlib@go1.16.9
1.25.12
1
apache/skywalking-oap-server:8.1.0-es7641237e0299b
stdlib@go1.13.3
1.25.12
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
stdlib@go1.16.9
1.25.12
1
apache/skywalking-ui:8.1.067d50e4deff4
stdlib@go1.13.3
1.25.12
1
apache/solr-operator:v0.9.14db34508137f
stdlib@go1.22.12
1.25.12
1
apache/tika:3.3.1.090b7fa1dc018
stdlib@go1.26.2
1.25.12
1
apache/yunikorn:web-1.9.0288e9c2db7f7
stdlib@go1.26.4
1.25.12
1
apache/yunikorn:scheduler-1.9.096832082e9cf
stdlib@go1.26.4
1.25.12
1
apache/yunikorn:admission-1.9.0fe8f5ec91f6c
stdlib@go1.26.4
1.25.12
1
apecloud/dt-platform:0.1.1d48bcbd38066
stdlib@go1.19.11
1.25.12
1
apecloud/gemini-scheduler:0.1.15832d1a9097a
stdlib@go1.22.7
1.25.12
1
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
stdlib@go1.20.11
1.25.12
1
apecloud/kubeblocks-csi-driver:0.1.3c93655ccb2d7
stdlib@go1.19.13
1.25.12
1
apecloud/kubetran-platform:latest32bd92c7f7fa
stdlib@go1.20.8
1.25.12
1
apecloud/pyroscope:0.37.2dbca95a15bc1
stdlib@go1.19.6
1.25.12
1
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
stdlib@go1.19.13
1.25.12
1
appwrite/appwrite:1.9.01aaa70127114
stdlib@go1.25.7
1.25.12
1
aquasec/harbor-scanner-trivy:0.31.26e790e233872
stdlib@go1.22.3
1.25.12
1
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
stdlib@go1.16.4
1.25.12
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.