StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,226
of 17,790 indexed, latest versions
Container images
4,913
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,226 of 17,790 indexed charts deploy, on 4,913 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+186 more1.25.124,913
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,226 by stars
ChartLatestAffected imagesRadar Score
dltbrokerassist-iot-distributed-broker0.2.05 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

5 of the 9 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
assistiot/distributed_broker:1.0.033e02dad168f
stdlib@go1.17.13
1.25.12
hyperledger/fabric-ca:latesta70b6ba64a08
stdlib@go1.26.4
1.25.12
hyperledger/fabric-orderer:2.46ec3fe59ea55
stdlib@go1.18.10
1.25.12
hyperledger/fabric-peer:2.46ff36af21eb1
stdlib@go1.18.10
1.25.12
hyperledger/fabric-tools:2.4b1194f509085
stdlib@go1.18.10
1.25.12

Open the chart page →

77,883
dltloggingassist-iot-logging-auditing0.2.05 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

5 of the 9 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
assistiot/logging_auditing:1.0.0790dbb198e86
stdlib@go1.17.13
1.25.12
hyperledger/fabric-ca:latesta70b6ba64a08
stdlib@go1.26.4
1.25.12
hyperledger/fabric-orderer:2.46ec3fe59ea55
stdlib@go1.18.10
1.25.12
hyperledger/fabric-peer:2.46ff36af21eb1
stdlib@go1.18.10
1.25.12
hyperledger/fabric-tools:2.4b1194f509085
stdlib@go1.18.10
1.25.12

Open the chart page →

77,863
astradnsastradnsVerified publisher0.2.92 of 2See more

astradns astradns 0.2.9

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
stdlib@go1.26.1
1.25.12
ghcr.io/astradns/astradns-operator:v0.2.909e58b62416a
stdlib@go1.26.1
1.25.12

Open the chart page →

2,649
deployautoml0.1.02 of 3See more

deploy automl 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
amd64/mysql:5.7e20a653e0f51
stdlib@go1.18.2
1.25.12
muonsoft/openapi-mock:latestc9afe1295484
stdlib@go1.20.2
1.25.12

Open the chart page →

2,947
cso-proxyav1o-chartsVerified publisher0.1.31 of 1See more

cso-proxy av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
stdlib@go1.17.5
1.25.12

Open the chart page →

4,308
dex-k8sav1o-chartsVerified publisher0.2.11 of 1See more

dex-k8s av1o-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
stdlib@go1.16.2
1.25.12

Open the chart page →

3,398
kube-image-webhookav1o-chartsVerified publisher0.1.31 of 1See more

kube-image-webhook av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
stdlib@go1.18.1
1.25.12

Open the chart page →

3,731
prismav1o-chartsVerified publisher0.3.11 of 1See more

prism av1o-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.gitlab.com/av1o/go-prism:4fdcff7d3870c28e5f024b6947cb552d4b956ee27a6f84b81c4e
stdlib@go1.16.2
1.25.12

Open the chart page →

1,276
kubebrowseravistoOfficialVerified publisher1.4.01 of 1See more

kubebrowser avisto 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/kubebrowser:0.10.0a354b8dc7e6a
stdlib@go1.24.1
1.25.12

Open the chart page →

677
generic-appb3oVerified publisher0.1.61 of 1See more

generic-app b3o 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
containous/whoami:latest7d6a3c8f9147
stdlib@go1.14
1.25.12

Open the chart page →

1,280
db-backupballe-petersen0.1.41 of 1See more

db-backup balle-petersen 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
tobiasbp/db-backup:0.0.314bee6e33a26
stdlib@go1.13.10
1.25.12

Open the chart page →

4,821
music-assistantbdclark-helm-chartsVerified publisher0.4.131 of 1See more

music-assistant bdclark-helm-charts 0.4.13

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.10.3885872224fa5
stdlib@go1.25.5
1.25.12

Open the chart page →

3,702
chirpstackbeeinventor0.1.103 of 5See more

chirpstack beeinventor 0.1.10

3 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
chirpstack/chirpstack-application-server:3.17.6e0b23dfd24d6
stdlib@go1.17.8
1.25.12
chirpstack/chirpstack-gateway-bridge:3.13.2ce3f2cdca8a9
stdlib@go1.17.5
1.25.12
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
stdlib@go1.17.8
1.25.12

Open the chart page →

7,821
livekit-serverbeeinventor1.0.01 of 2See more

livekit-server beeinventor 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
livekit/livekit-server:v1.0.08391fd1b834f
stdlib@go1.17.10
1.25.12

Open the chart page →

2,609
cloudflare-tunnel-operatorbeezlabs0.2.01 of 1See more

cloudflare-tunnel-operator beezlabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/beezlabs-org/cloudflare-tunnel-operator:v0.1.09afcd070940f
stdlib@go1.17.12
1.25.12

Open the chart page →

1,595
helm-dashboardbeluga-cloudVerified publisher2.4.01 of 1See more

helm-dashboard beluga-cloud 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/helm-dashboard/dashboard:1.3.39ab9a675c405
stdlib@go1.20.8
1.25.12

Open the chart page →

2,908
yatai-image-builderbentomlVerified publisher3.0.441 of 1See more

yatai-image-builder bentoml 3.0.44

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/bentoml/yatai-image-builder:3.0.4401d8538c4f48
stdlib@go1.24.13
1.25.12

Open the chart page →

492
aramid-indexerbiatec-repoVerified publisher3.9.04 of 5See more

aramid-indexer biatec-repo 3.9.0

4 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
stdlib@go1.24.6
1.25.12
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
stdlib@go1.23.9
1.25.12
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
stdlib@go1.26.3
1.25.12
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
stdlib@go1.26.3
1.25.12

Open the chart page →

13,544
aramid-participationbiatec-repoVerified publisher4.4.11 of 1See more

aramid-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
stdlib@go1.25.3
1.25.12

Open the chart page →

7,246
aramid-relaybiatec-repoVerified publisher4.4.11 of 1See more

aramid-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
stdlib@go1.23.11
1.25.12

Open the chart page →

5,117
voimain-participationbiatec-repoVerified publisher4.4.11 of 1See more

voimain-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
stdlib@go1.25.3
1.25.12

Open the chart page →

7,246
self-hostbitwarden2.4.11 of 11See more

self-host bitwarden 2.4.1

1 of the 11 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
stdlib@go1.23.1
1.25.12

Open the chart page →

5,269
prometheus-airbyte-exporterbotify-helm-chartsVerified publisher0.7.11 of 1See more

prometheus-airbyte-exporter botify-helm-charts 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
stdlib@go1.21.6
1.25.12

Open the chart page →

2,919
boundaryboundary-chart0.3.121 of 1See more

boundary boundary-chart 0.3.12

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
hashicorp/boundary:0.15.3339b78b61750
stdlib@go1.21.8
1.25.12

Open the chart page →

1,630
syncthingbrandan-schmitz-helm-chartsVerified publisher2.1.01 of 1See more

syncthing brandan-schmitz-helm-charts 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
syncthing/syncthing:2.1.1775c4aac4862
stdlib@go1.26.3
1.25.12

Open the chart page →

1,230
brpservicebrpservice1.1.01 of 4See more

brpservice brpservice 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
stdlib@go1.13.10
1.25.12

Open the chart page →

7,839
btrfs-nfs-csibtrfs-nfs-csi0.4.06 of 7See more

btrfs-nfs-csi btrfs-nfs-csi 0.4.0

6 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
stdlib@go1.25.7
1.25.12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
stdlib@go1.25.7
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
stdlib@go1.24.2
1.25.12
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
stdlib@go1.25.7
1.25.12
registry.k8s.io/sig-storage/csi-snapshotter:v8.5.0da081c27e8a6
stdlib@go1.25.7
1.25.12
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
stdlib@go1.25.7
1.25.12

Open the chart page →

3,226
bucket-backup-restorebucket-backup-restore0.1.01 of 2See more

bucket-backup-restore bucket-backup-restore 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
abohatyrenko/bucket-backup-restore:latestfa98af15a13e
stdlib@go1.21.4
1.25.12

Open the chart page →

2,049
agentbuildkite0.6.41 of 1See more

agent buildkite 0.6.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
buildkite/agent:3.25.0aec38cfaae0e
stdlib@go1.14.7
1.25.12

Open the chart page →

2,670
buildkite-agent-metricsbuildkite-agent-metrics0.1.01 of 1See more

buildkite-agent-metrics buildkite-agent-metrics 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/buildkite/agent-metrics:v5.11.016e7f5c7161e
stdlib@go1.25.1
1.25.12

Open the chart page →

1,541
buildkit-fleetbuildkit-fleetVerified publisher0.1.21 of 1See more

buildkit-fleet buildkit-fleet 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
moby/buildkit:v0.33.0-rootless80b15f0735e8
stdlib@go1.25.7
1.25.12

Open the chart page →

910
static-httpserverbyjgVerified publisher0.2.01 of 1See more

static-httpserver byjg 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
byjg/static-httpserver:latest562cc8b9c40b
stdlib@go1.26.1
1.25.12

Open the chart page →

677
argocd-source-trackercableship0.0.91 of 1See more

argocd-source-tracker cableship 0.0.9

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cableship/argocd-source-tracker:0.0.6ff7dd45aa774
stdlib@go1.24.2
1.25.12

Open the chart page →

1,490
chart-sentinelcableship0.0.121 of 1See more

chart-sentinel cableship 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/cableship/chart-sentinel:0.1.0a037f1042b28
stdlib@go1.24.2
1.25.12

Open the chart page →

1,490
pgcagriekinVerified publisher2.1.01 of 2See more

pg cagriekin 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
stdlib@go1.24.4
1.25.12

Open the chart page →

2,309
pgvectorcagriekinVerified publisher2.1.02 of 3See more

pgvector cagriekin 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
stdlib@go1.24.4
1.25.12
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
stdlib@go1.24.6
1.25.12

Open the chart page →

4,056
camel-dashboard-operatorcamel-dashboardVerified publisher0.1.01 of 1See more

camel-dashboard-operator camel-dashboard 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
stdlib@go1.25.9
1.25.12

Open the chart page →

520
blackbox-exportercamptocamp31.0.01 of 1See more

blackbox-exporter camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.25.0b04a9fef4fa0
stdlib@go1.22.2
1.25.12

Open the chart page →

913
capsulecapsuleOfficialVerified publisher0.14.62 of 2See more

capsule capsule 0.14.6

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
stdlib@go1.22.5
1.25.12
ghcr.io/projectcapsule/capsule:v0.14.6ac02588e65e8
stdlib@go1.26.4
1.25.12

Open the chart page →

1,238
capsule-proxycapsule-proxyOfficialVerified publisher0.14.12 of 2See more

capsule-proxy capsule-proxy 0.14.1

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
stdlib@go1.22.5
1.25.12
ghcr.io/projectcapsule/capsule-proxy:v0.14.17c90292e3172
stdlib@go1.26.4
1.25.12

Open the chart page →

1,224
fluxcd-webuiccowleyVerified publisher0.0.21 of 2See more

fluxcd-webui ccowley 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
adrianberger/fluxcd-webui:latest76848c0d2780
stdlib@go1.16.2
1.25.12

Open the chart page →

3,509
celestia-nodecelestia-node0.1.71 of 1See more

celestia-node celestia-node 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.16.041177982c584
stdlib@go1.23.0
1.25.12

Open the chart page →

1,810
cert-estuarycert-estuaryVerified publisher0.2.11 of 1See more

cert-estuary cert-estuary 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/hsn723/cert-estuary:0.2.00c4b6132b0ad
stdlib@go1.26.2
1.25.12

Open the chart page →

268
cert-manager-google-cas-issuercert-managerOfficialVerified publisher0.12.01 of 1See more

cert-manager-google-cas-issuer cert-manager 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-google-cas-issuer:v0.12.08bd9cdb714a6
stdlib@go1.26.4
1.25.12

Open the chart page →

164
finops-stackcert-managerVerified publisher0.0.57 of 12See more

finops-stack cert-manager 0.0.5

7 of the 12 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:11.1.3b23b588cf7cb
stdlib@go1.22.4
1.25.12
ghcr.io/kyverno/background-controller:v1.12.506ed5db6cd33
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/cleanup-controller:v1.12.5b914032ef9ad
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/kyverno:v1.12.5a61c7022abcf
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/kyverno-cli:v1.12.5832a32779e6d
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/kyvernopre:v1.12.563f7eaf5aa8a
stdlib@go1.21.12
1.25.12
ghcr.io/kyverno/reports-controller:v1.12.5c62e3347611c
stdlib@go1.21.12
1.25.12

Open the chart page →

12,611
cert-manager-webhook-arvancloudcert-manager-webhook-arvancloudVerified publisher0.1.11 of 1See more

cert-manager-webhook-arvancloud cert-manager-webhook-arvancloud 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/mohammadv184/cert-manager-webhook-arvancloud:latest179bee5ef8b2
stdlib@go1.24.4
1.25.12

Open the chart page →

1,074
cert-manager-webhook-gandicert-manager-webhook-gandi0.6.01 of 1See more

cert-manager-webhook-gandi cert-manager-webhook-gandi 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/sintef/cert-manager-webhook-gandi:0.6.06819b34ccac8
stdlib@go1.22.0
1.25.12

Open the chart page →

1,031
cert-vaultcert-vaultOfficialVerified publisher2.12.04 of 7See more

cert-vault cert-vault 2.12.0

4 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
stdlib@go1.23.7
1.25.12
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
stdlib@go1.23.7
1.25.12
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
stdlib@go1.23.7
1.25.12
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.12

Open the chart page →

16,056
chatclichatcliVerified publisher1.205.01 of 2See more

chatcli chatcli 1.205.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.31.10e0b2d217d1d2
stdlib@go1.23.10
1.25.12

Open the chart page →

1,028
passbolt-hachristianhuthVerified publisher6.0.13 of 4See more

passbolt-ha christianhuth 6.0.1

3 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
stdlib@go1.24.6
1.25.12
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
stdlib@go1.24.6
1.25.12
passbolt/passbolt:3.4.0-ce-non-root655547e17263
stdlib@go1.14.4
1.25.12

Open the chart page →

10,931

Container images carrying it

4,913 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
stdlib@go1.25.5
1.25.12
1
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
stdlib@go1.18.5
1.25.12
1
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
stdlib@go1.18.5
1.25.12
1
deluan/navidrome:0.49.311a24da08977
stdlib@go1.19.5
1.25.12
1
deluan/navidrome:0.50.02cf4442b0099
stdlib@go1.21.0
1.25.12
1
deluan/navidrome:0.43.04e9ae3bff6aa
stdlib@go1.16.4
1.25.12
1
deluan/navidrome:0.61.29fa40b3d8dec
stdlib@go1.25.9
1.25.12
1
denniswitt/yas3p:0.2.488a235619af6
stdlib@go1.26.1
1.25.12
1
devopsfaith/krakend:2.6.34c678c224f67
stdlib@go1.22.3
1.25.12
1
devopsfaith/krakend:2.7.09219cda867e2
stdlib@go1.22.5
1.25.12
1
devopstales/trivy-operator:2.575136aa7a26e
stdlib@go1.18.10
1.25.12
1
devsecurely/cview-issuer:0.0.42eecd4314e933
stdlib@go1.25.10
1.25.12
1
devspacecloud/manager:0.3.349c397413f7b
stdlib@go1.13.8
1.25.12
1
dexidp/dex:v2.39.1-distroless43655afd1a8f
stdlib@go1.21.6
1.25.12
1
deyaeddin/cert-manager-webhook-hetzner:latest797b0d06210a
stdlib@go1.16.7
1.25.12
1
dgraph/dgraph:v24.1.4b57fa31f9b7f
stdlib@go1.22.12
1.25.12
1
dgraph/ratel:v25.0.34cae1ff95027
stdlib@go1.23.10
1.25.12
1
digitalocean/do-operator:v0.1.65e5deb4db76e
stdlib@go1.18.10
1.25.12
1
dipugodocker/pdf-editor:1.0-backend-rotate316e203b8bf5
stdlib@go1.18.7
1.25.12
1
dipugodocker/pdf-editor:1.0-backend-merge70b07544a604
stdlib@go1.18.7
1.25.12
1
dirathea/pipelinewise-operator:v0.5.08d4c9f773ae1
stdlib@go1.15.8
1.25.12
1
directus/directus:12.0.29c8470ea465c
stdlib@go1.23.12
1.25.12
1
directus/directus:11.1.0e3c8bb975350
stdlib@go1.20.7
1.25.12
1
distribution/distribution:3.1.1bca24727f400
stdlib@go1.25.9
1.25.12
1
distribution/distribution:2.8.3f84b2078238f
stdlib@go1.20.8
1.25.12
1
djjudas21/nova-exporter:0.0.10e9094580885c
stdlib@go1.24.4
1.25.12
1
djkormo/adcs-issuer:2.1.29f34e87e7586
stdlib@go1.22.6
1.25.12
1
dnsforge/xteve:latest4d9a685c8c28
stdlib@go1.16.2
1.25.12
1
dobtc/bitcoin:25.1a870f7cb1105
stdlib@go1.19.8
1.25.12
1
dockerdaemon0901/rolldice:v14e5bfe179c7e
stdlib@go1.21.0
1.25.12
1
documenso/documenso:v1.8.17f16a9449f18
stdlib@go1.20.12
1.25.12
1
dollarshaveclub/furan2:master14a257836529
stdlib@go1.17.2
1.25.12
1
dollarshaveclub/thermite:0.0.31663cbf25fcfe
stdlib@go1.17.1
1.25.12
1
donetick/donetick:v0.1.79a1cc21dd5a37
stdlib@go1.24.13
1.25.12
1
dongjiang1989/cosign-webhook:v1.1.02a3ead6a55dc
stdlib@go1.19.12
1.25.12
1
dongjiang1989/cpusets-controller:v1.1.1dc5bd483874c
stdlib@go1.19.10
1.25.12
1
dongjiang1989/cpusets-device-plugin:v1.1.1923085c65123
stdlib@go1.19.10
1.25.12
1
dongjiang1989/crane-scheduler-controller:mainf0055c05dbee
stdlib@go1.19.9
1.25.12
1
dongjiang1989/lxcfs-webhook:latestc1f19557bdcb
stdlib@go1.26.0
1.25.12
1
dongjiang1989/ns-node-affinity:latest451f7823723c
stdlib@go1.18.5
1.25.12
1
dongjiang1989/pingmesh-agent:latest355fa4be8e97
stdlib@go1.22.9
1.25.12
1
dongjiang1989/pingmesh-agent:v1.2.2c82de0272da0
stdlib@go1.22.9
1.25.12
1
doorcloud/apim-operator:v3.0.44e6ef8d72c3e
stdlib@go1.22.12
1.25.12
1
dossif/redminebot:0.2.296dcd2c0e9f2
stdlib@go1.17.13
1.25.12
1
douz/overlord:latestf2bc7fc068c1
stdlib@go1.14.5
1.25.12
1
dragonflyoss/client:v0.1.82edf3e921f4e0
stdlib@go1.21.5
1.25.12
1
dragonflyoss/manager:v2.1.49c3ef7f10698d
stdlib@go1.21.1
1.25.12
1
dragonflyoss/scheduler:v2.1.49523785c77787
stdlib@go1.21.1
1.25.12
1
dragonflyoss/scheduler:v2.5.2-rc.06d710dc2bae0
stdlib@go1.26.2
1.25.12
1
drone/drone:2.28.255897c8fb22d
stdlib@go1.24.13
1.25.12
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.