StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,207
of 17,797 indexed, latest versions
Container images
4,886
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,207 of 17,797 indexed charts deploy, on 4,886 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+186 more1.25.124,886
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,207 by stars
ChartLatestAffected imagesRadar Score
okd-webhookav1o-chartsVerified publisher0.1.01 of 1See more

okd-webhook av1o-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.gitlab.com/av1o/okd-webhook:v0.1.028c3e5eb2650
stdlib@go1.16
1.25.12

Open the chart page →

1,727
botkubeaveshaVerified publisher1.0.01 of 2See more

botkube avesha 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/kubeshop/botkube:v1.0.0669e27a5d1af
stdlib@go1.19.7
1.25.12

Open the chart page →

5,083
istio-discoveryaveshaVerified publisher1.16.01 of 1See more

istio-discovery avesha 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
istio/pilot:1.16.0ac0284d75ec9
stdlib@go1.19.3
1.25.12

Open the chart page →

6,965
kubeslice-workeraveshaVerified publisher1.5.02 of 14See more

kubeslice-worker avesha 1.5.0

2 of the 14 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
aveshasystems/spiffe-csi-driver:0.2.753fc6d009e04
stdlib@go1.22.2
1.25.12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.1f6717ce72a26
stdlib@go1.20.3
1.25.12

Open the chart page →

1,645
amazon-ec2-metadata-mockaws1.11.21 of 1See more

amazon-ec2-metadata-mock aws 1.11.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/aws-ec2/amazon-ec2-metadata-mock:v1.11.2dd02d3569da0
stdlib@go1.17.13
1.25.12

Open the chart page →

860
appmesh-jaegeraws1.0.31 of 1See more

appmesh-jaeger aws 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.2942822be7888b
stdlib@go1.17.3
1.25.12

Open the chart page →

2,487
appmesh-prometheusaws1.0.31 of 2See more

appmesh-prometheus aws 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.25.12

Open the chart page →

2,946
aws-node-termination-handler-2aws0.2.02 of 2See more

aws-node-termination-handler-2 aws 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/controller:v2.0.0-beta9637c80dd23f
stdlib@go1.19.3
1.25.12
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/webhook:v2.0.0-beta86b0f7243250
stdlib@go1.19.3
1.25.12

Open the chart page →

2,966
aws-sigv4-proxy-admission-controlleraws0.1.21 of 1See more

aws-sigv4-proxy-admission-controller aws 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/aws-observability/aws-sigv4-proxy-admission-controller:1.067b89ae52240
stdlib@go1.15.3
1.25.12

Open the chart page →

2,140
axelor-open-suiteaxelor-open-suiteVerified publisher7.2.581 of 2See more

axelor-open-suite axelor-open-suite 7.2.58

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
stdlib@go1.21.2
1.25.12

Open the chart page →

9,730
axonops-developer-operatoraxonops-developer-operator0.1.01 of 1See more

axonops-developer-operator axonops-developer-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/axonops/axonops-developer-operator:v0.1.0b3d6600c8ba5
stdlib@go1.22.10
1.25.12

Open the chart page →

750
axonops-operatoraxonops-operator0.1.01 of 1See more

axonops-operator axonops-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/axonops/axonops-operator:0.1.0e0cdb993f0b1
stdlib@go1.25.9
1.25.12

Open the chart page →

302
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
stdlib@go1.17.9
1.25.12

Open the chart page →

4,575
azurefile-csi-driverazurefile-csi-driverVerified publisher1.35.71 of 7See more

azurefile-csi-driver azurefile-csi-driver 1.35.7

1 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/azurefile-csi:v1.35.76e43ba0bd009
stdlib@go1.25.11
1.25.12

Open the chart page →

1,223
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
stdlib@go1.15
1.25.12

Open the chart page →

5,528
helm-controllerazureorkestra0.1.12 of 2See more

helm-controller azureorkestra 0.1.1

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
fluxcd/helm-controller:v0.9.092b891e495d8
stdlib@go1.15.10
1.25.12
fluxcd/source-controller:v0.10.031a8c79a6803
stdlib@go1.15.10
1.25.12

Open the chart page →

7,723
keptn-addonsazureorkestra0.1.04 of 4See more

keptn-addons azureorkestra 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
keptn/distributor:0.8.36bc3df9e0d6a
stdlib@go1.16.2
1.25.12
keptn/distributor:0.8.472e17527a4f9
stdlib@go1.16.2
1.25.12
keptncontrib/prometheus-service:0.6.029969dd547de
stdlib@go1.13.7
1.25.12
keptnsandbox/job-executor-service:0.1.36e6d323dd7ae
stdlib@go1.16.2
1.25.12

Open the chart page →

10,629
prometheusazureorkestra14.8.05 of 6See more

prometheus azureorkestra 14.8.0

5 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.12
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.25.12
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.12
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
stdlib@go1.15.8
1.25.12
quay.io/prometheus/prometheus:v2.26.038d40a760569
stdlib@go1.16.2
1.25.12

Open the chart page →

9,669
webserverazureorkestra1.0.01 of 1See more

webserver azureorkestra 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
nmalhotr/webserver:v1.0.03419361fb0dd
stdlib@go1.13.10
1.25.12

Open the chart page →

3,037
krakendbaboulinet0.1.341 of 1See more

krakend baboulinet 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
devopsfaith/krakend:2.7.09219cda867e2
stdlib@go1.22.5
1.25.12

Open the chart page →

1,198
ragflowbaboulinet0.1.12 of 5See more

ragflow baboulinet 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.0.39ccb8f749bb5e
stdlib@go1.18.2
1.25.12
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
stdlib@go1.21.5
1.25.12

Open the chart page →

5,909
prometheus-blackbox-exporterbackbox-exporter7.8.01 of 1See more

prometheus-blackbox-exporter backbox-exporter 7.8.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.23.0ca04aa9d9093
stdlib@go1.19.3
1.25.12

Open the chart page →

1,501
backlokto-operatorbacklokto0.0.11 of 1See more

backlokto-operator backlokto 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
piblokto/backlokto-operator:v0.0.20963cda71e393
stdlib@go1.20.14
1.25.12

Open the chart page →

694
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
conduction/balance-registration-php:devc36094a41369
stdlib@go1.13.10
1.25.12

Open the chart page →

8,417
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
stdlib@go1.24.4
1.25.12

Open the chart page →

4,071
qbittorrent-vpnbdclark-helm-chartsVerified publisher0.7.61 of 2See more

qbittorrent-vpn bdclark-helm-charts 0.7.6

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
qmcgaw/gluetun:v3.41.11a5bf4b4820a
stdlib@go1.25.7
1.25.12

Open the chart page →

1,010
bluesky-pdsbear0.4.2081 of 1See more

bluesky-pds bear 0.4.208

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
stdlib@go1.25.7
1.25.12

Open the chart page →

2,138
helm-samplebehnambm-helm-chart1.0.11 of 3See more

helm-sample behnambm-helm-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.12

Open the chart page →

2,757
berichtserviceberichtservice1.0.01 of 3See more

berichtservice berichtservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
stdlib@go1.13.10
1.25.12

Open the chart page →

7,352
pagesberrutig-pages1.0.01 of 3See more

pages berrutig-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,262
trident-operatorberyju-org21.10.01 of 1See more

trident-operator beryju-org 21.10.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
netapp/trident-operator:21.10.049cfe552d9c2
stdlib@go1.16.9
1.25.12

Open the chart page →

2,079
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
stdlib@go1.25.3
1.25.12

Open the chart page →

7,266
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
stdlib@go1.25.3
1.25.12

Open the chart page →

5,138
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
stdlib@go1.17.6
1.25.12

Open the chart page →

8,086
mx-notifierbicarus-labs1.1.91 of 1See more

mx-notifier bicarus-labs 1.1.9

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bicarus/mx-notifier:1.1.8bed688d16762
stdlib@go1.17.6
1.25.12

Open the chart page →

3,771
wg-access-serverbicarus-labs0.9.91 of 1See more

wg-access-server bicarus-labs 0.9.9

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bicarus/wg-access-server:v0.8.206cab48e9334
stdlib@go1.19.3
1.25.12

Open the chart page →

2,755
tenzu-frontbiru-scop3.1.01 of 1See more

tenzu-front biru-scop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
stdlib@go1.26.3
1.25.12

Open the chart page →

846
bitpokebitpokeVerified publisher1.8.191 of 1See more

bitpoke bitpoke 1.8.19

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
stdlib@go1.21.1
1.25.12

Open the chart page →

2,343
stackbitpokeVerified publisher0.12.46 of 6See more

stack bitpoke 0.12.4

6 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
stdlib@go1.17.13
1.25.12
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
stdlib@go1.19.9
1.25.12
bitpoke/stack-default-backend:latestc5eed1ddf692
stdlib@go1.16.6
1.25.12
bitpoke/wordpress-operator:v0.12.27fb3aad37b5f
stdlib@go1.17.13
1.25.12
registry.k8s.io/ingress-nginx/controller:v1.3.154f7fe2c6c5a
stdlib@go1.18.2
1.25.12
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.3.0549e71a6ca24
stdlib@go1.18.2
1.25.12

Open the chart page →

9,900
wordpress-operatorbitpokeVerified publisher0.12.41 of 1See more

wordpress-operator bitpoke 0.12.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitpoke/wordpress-operator:v0.12.421284d1df473
stdlib@go1.17.13
1.25.12

Open the chart page →

1,124
baserowblackbird-cloudVerified publisher1.0.172 of 6See more

baserow blackbird-cloud 1.0.17

2 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
stdlib@go1.19.8
1.25.12
caddy/ingress:v0.2.118d1366fc0e9
stdlib@go1.21.4
1.25.12

Open the chart page →

10,234
prometheus-domain-exporterblackbox-domain-exporter1.0.01 of 1See more

prometheus-domain-exporter blackbox-domain-exporter 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bulich/domain-exporter:latest6d0b780f7c7b
stdlib@go1.20.4
1.25.12

Open the chart page →

1,408
bdbablackduck2026.6.34 of 9See more

bdba blackduck 2026.6.3

4 of the 9 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
blackducksoftware/bdba-pgupgrader:2026.6.35c97f3a3f8b7
stdlib@go1.18.2
1.25.12
library/postgres:15.18-bookworme8db9bd3e9e1
stdlib@go1.24.6
1.25.12
library/rabbitmq:4.2.87561d672fae4
stdlib@go1.22.2
1.25.12
versity/versitygw:v1.6.0d6ec798f66ca
stdlib@go1.26.4
1.25.12

Open the chart page →

9,718
blackduck-alertblackduck8.4.01 of 4See more

blackduck-alert blackduck 8.4.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert-db:8.4.06310fac39d53
stdlib@go1.24.6
1.25.12

Open the chart page →

4,284
firehoseblip-firehoseVerified publisher0.0.183 of 11See more

firehose blip-firehose 0.0.18

3 of the 11 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
blipai/deckard:0.0.28737d5d19a312
stdlib@go1.18.10
1.25.12
hashicorp/vault:1.15.26b4e5dadf082
stdlib@go1.21.3
1.25.12
hashicorp/vault-k8s:1.3.15d74a885ae3e
stdlib@go1.21.3
1.25.12

Open the chart page →

13,527
blob-csi-driverblob-csi-driverVerified publisher1.27.91 of 5See more

blob-csi-driver blob-csi-driver 1.27.9

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/blob-csi:v1.27.9f9e20264150a
stdlib@go1.26.4
1.25.12

Open the chart page →

851
bnkrbnkr1.0.51 of 2See more

bnkr bnkr 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
engrmth/bnkr:2.1.06d8464e6f0e8
stdlib@go1.15.8
1.25.12

Open the chart page →

15,312
colosseumbook-k8sinfra-v21.0.181 of 5See more

colosseum book-k8sinfra-v2 1.0.18

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-nti:logc947c3629371
stdlib@go1.23.12
1.25.12

Open the chart page →

27,239
csi-driver-nfsbook-k8sinfra-v24.12.16 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

6 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
stdlib@go1.24.6
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
stdlib@go1.24.2
1.25.12
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
stdlib@go1.24.2
1.25.12
registry.k8s.io/sig-storage/csi-snapshotter:v8.3.0bc7be893ecc3
stdlib@go1.24.2
1.25.12
registry.k8s.io/sig-storage/livenessprobe:v2.17.09b75b9ade162
stdlib@go1.24.6
1.25.12
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
stdlib@go1.23.6
1.25.12

Open the chart page →

6,269
grafanabook-k8sinfra-v28.8.21 of 1See more

grafana book-k8sinfra-v2 8.8.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:11.4.0d8ea37798ccc
stdlib@go1.23.1
1.25.12

Open the chart page →

1,813

Container images carrying it

4,886 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
goharbor/harbor-registryctl:v2.9.0cce272836449
stdlib@go1.20.7
1.25.12
1
goharbor/harbor-registryctl:v2.14.3ddf6bb429eb6
stdlib@go1.24.13
1.25.12
1
goharbor/notary-server-photon:v2.5.3fd91a4a1273f
stdlib@go1.14.15
1.25.12
1
goharbor/notary-signer-photon:v2.5.3a92b51aa7d6e
stdlib@go1.14.15
1.25.12
1
goharbor/registry-photon:v2.11.15645d459af2b
stdlib@go1.22.6
1.25.12
1
goharbor/registry-photon:v2.14.36533fc396cbc
stdlib@go1.24.13
1.25.12
1
goharbor/registry-photon:v2.9.08a26e8cb7862
stdlib@go1.20.7
1.25.12
1
goharbor/trivy-adapter-photon:v2.14.35c6f7162804c
stdlib@go1.25.7
1.25.12
1
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
stdlib@go1.18.3
1.25.12
1
goharbor/trivy-adapter-photon:v2.9.0dc5b882a7db4
stdlib@go1.20.7
1.25.12
1
golift/unifi-poller:v2.9.5486a63339969
stdlib@go1.21.5
1.25.12
1
golift/unifi-poller:v2.9.2585a29a06d05
stdlib@go1.21.0
1.25.12
1
golift/unifi-poller:2.0.0cafac968b540
stdlib@go1.13.7
1.25.12
1
gomods/athens:v0.17.10f61d1e62359
stdlib@go1.25.9
1.25.12
1
gomods/athens:v0.18.197cc113b34b0
stdlib@go1.24.1
1.25.12
1
gomods/athens:v0.8.1d714c7ff0231
stdlib@go1.13.4
1.25.12
1
gomods/athens:v0.11.0efb811df7844
stdlib@go1.13.10
1.25.12
1
goofball222/pritunl:1.32.3602.807bf26032dfce
stdlib@go1.18.7
1.25.12
1
gophish/gophish:0.12.18a57cd171999
stdlib@go1.15.2
1.25.12
1
gotenberg/gotenberg:8.30206a6c708fc6
stdlib@go1.26.0
1.25.12
1
gotenberg/gotenberg:8.3467097317623a
stdlib@go1.26.2
1.25.12
1
gotify/server:2.1.409c79bc1e403
stdlib@go1.16
1.25.12
1
gotify/server:2.9.1a3af47067ce6
stdlib@go1.26.0
1.25.12
1
gotson/komga:1.22.0ba892ab3e082
stdlib@go1.17.8
1.25.12
1
gradiant/open5gs-dbctl:0.10.3332031245fce
stdlib@go1.22.11
1.25.12
1
grafana/agent:v0.44.23364714a2f64
stdlib@go1.22.11
1.25.12
1
grafana/agent:v0.20.0825c09373d27
stdlib@go1.16
1.25.12
1
grafana/agent:v0.40.3f6cbec9409be
stdlib@go1.22.1
1.25.12
1
grafana/agent-operator:v0.34.1045c9125634c
stdlib@go1.20.4
1.25.12
1
grafana/alloy:v1.5.101a63f4e032c
stdlib@go1.22.7
1.25.12
1
grafana/alloy:v1.4.306bdcbb51fc2
stdlib@go1.22.7
1.25.12
1
grafana/alloy:v1.16.384b76d56c594
stdlib@go1.26.3
1.25.12
1
grafana/alloy:v1.11.38c7256f412fe
stdlib@go1.24.6
1.25.12
1
grafana/alloy:v1.1.1c3dac4e26471
stdlib@go1.22.3
1.25.12
1
grafana/alloy:v1.14.0f50931848bd8
stdlib@go1.25.7
1.25.12
1
grafana/beyla:1.3.336d07f8d276e
stdlib@go1.21.7
1.25.12
1
grafana/beyla:3.32.03ff0f7cf2bbf
stdlib@go1.25.11
1.25.12
1
grafana/beyla-k8s-cache:253b2f561cb1b
stdlib@go1.25.3
1.25.12
1
grafana/cloudcost-exporter:v1.12.0eeb2cfecb23e
stdlib@go1.26.4
1.25.12
1
grafana/grafana:6.6.0052147d7e0ec
stdlib@go1.13.4
1.25.12
1
grafana/grafana:10.1.50679e877ba20
stdlib@go1.20.10
1.25.12
1
grafana/grafana:7.5.609bb407e26ab
stdlib@go1.16.1
1.25.12
1
grafana/grafana:13.0.10f86bada30d6
stdlib@go1.26.0
1.25.12
1
grafana/grafana:7.3.315b977f5207d
stdlib@go1.15.1
1.25.12
1
grafana/grafana:9.4.71a359d92f40e
stdlib@go1.20.1
1.25.12
1
grafana/grafana:10.1.11b9ca4bbc4a2
stdlib@go1.20.8
1.25.12
1
grafana/grafana:13.0.1-security-012d1f9ae67c17
stdlib@go1.26.2
1.25.12
1
grafana/grafana:12.2.22ebef928d7e5
stdlib@go1.25.3
1.25.12
1
grafana/grafana:12.2.135c41e0fd029
stdlib@go1.25.3
1.25.12
1
grafana/grafana:9.5.239c849cebccc
stdlib@go1.20.4
1.25.12
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.