StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,207
of 17,797 indexed, latest versions
Container images
4,886
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,207 of 17,797 indexed charts deploy, on 4,886 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+186 more1.25.124,886
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,207 by stars
ChartLatestAffected imagesRadar Score
pageslavanya-pages1.0.01 of 3See more

pages lavanya-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,262
kubernetes-dashboardlbenicio-communityVerified publisher7.14.94 of 5See more

kubernetes-dashboard lbenicio-community 7.14.9

4 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
lbenicio/kubernetes-dashboard-api:1.14.951d3d30206c8
stdlib@go1.25.11
1.25.12
lbenicio/kubernetes-dashboard-auth:1.4.1378c63efd9dcd
stdlib@go1.25.11
1.25.12
lbenicio/kubernetes-dashboard-scraper:1.2.69202e96ad403
stdlib@go1.25.11
1.25.12
lbenicio/kubernetes-dashboard-web:1.7.142797937bc2a5
stdlib@go1.25.11
1.25.12

Open the chart page →

2,318
listmonklbenicio-communityVerified publisher0.1.01 of 1See more

listmonk lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
listmonk/listmonk:latestf535d59e1499
stdlib@go1.26.1
1.25.12

Open the chart page →

720
pinglbenicio-communityVerified publisher0.1.11 of 1See more

ping lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
stdlib@go1.25.5
1.25.12

Open the chart page →

600
speedtestlbenicio-communityVerified publisher0.1.01 of 1See more

speedtest lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/d0ugal/internet-perf-exporter:v0.2.91f5c9a96fe52a
stdlib@go1.26.4
1.25.12

Open the chart page →

300
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
stdlib@go1.20.5
1.25.12

Open the chart page →

33,613
metallblectures-k8sinfra0.10.22 of 2See more

metallb lectures-k8sinfra 0.10.2

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.10.221164241c045
stdlib@go1.16.5
1.25.12
quay.io/metallb/speaker:v0.10.258cb99053bb3
stdlib@go1.16.5
1.25.12

Open the chart page →

5,406
prometheuslectures-k8sinfra15.8.55 of 6See more

prometheus lectures-k8sinfra 15.8.5

5 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.12
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.25.12
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
stdlib@go1.16.7
1.25.12
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
stdlib@go1.17.3
1.25.12
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
stdlib@go1.18.4
1.25.12

Open the chart page →

9,100
grafanaleechistest5.3.01 of 1See more

grafana leechistest 5.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.25.12

Open the chart page →

3,198
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.12

Open the chart page →

4,445
prometheusleechistest11.6.04 of 6See more

prometheus leechistest 11.6.0

4 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.25.12
prom/prometheus:v2.19.0bfad037f95e5
stdlib@go1.14.4
1.25.12
prom/pushgateway:v1.2.00a9031142481
stdlib@go1.13.8
1.25.12
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.25.12

Open the chart page →

8,492
kube-benchlemontechVerified publisher0.1.01 of 1See more

kube-bench lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.9c329d73fea58
stdlib@go1.19
1.25.12

Open the chart page →

1,632
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
stdlib@go1.19
1.25.12

Open the chart page →

4,280
adguard-homelib42Verified publisher2.0.01 of 1See more

adguard-home lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.65d765078d2140
stdlib@go1.24.6
1.25.12

Open the chart page →

1,061
libredb-studiolibredb-studio-oci0.1.641 of 1See more

libredb-studio libredb-studio-oci 0.1.64

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.16.0fa925884368a
stdlib@go1.24.4
1.25.12

Open the chart page →

1,163
librenmslibrenms10.1.12 of 5See more

librenms librenms 10.1.1

2 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
stdlib@go1.24.6
1.25.12
librenms/librenms:26.8.28194a4a9ff49
stdlib@go1.24.6
1.25.12

Open the chart page →

3,149
kltlifecycle-toolkitOfficialVerified publisher0.2.64 of 4See more

klt lifecycle-toolkit 0.2.6

4 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/keptn/certificate-operator:v1.1.08fdd311a6d33
stdlib@go1.20.4
1.25.12
ghcr.io/keptn/lifecycle-operator:v0.8.2487bfc37c4b4
stdlib@go1.20.4
1.25.12
ghcr.io/keptn/metrics-operator:v0.8.2acf22310e9dd
stdlib@go1.20.4
1.25.12
ghcr.io/keptn/scheduler:v0.8.20f7d277bb2b2
stdlib@go1.20.4
1.25.12

Open the chart page →

4,680
kube-iptables-tailerlifen0.2.31 of 1See more

kube-iptables-tailer lifen 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
stdlib@go1.13.8
1.25.12

Open the chart page →

4,467
op-scim-bridgelifen1.0.31 of 2See more

op-scim-bridge lifen 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
1password/scim:v2.3.129d0c6cb67eb
stdlib@go1.16.8
1.25.12

Open the chart page →

2,777
op-scim-bridgelifen-chartsVerified publisher1.0.31 of 2See more

op-scim-bridge lifen-charts 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
1password/scim:v2.3.129d0c6cb67eb
stdlib@go1.16.8
1.25.12

Open the chart page →

2,777
lightsteplightstep-microsat2.0.211 of 1See more

lightstep lightstep-microsat 2.0.21

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
lightstep/microsatellite:2024-01-22_17-52-59Zc800e05e1eff
stdlib@go1.22.1
1.25.12

Open the chart page →

1,127
komgalinkding0.2.31 of 1See more

komga linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gotson/komga:1.22.0ba892ab3e082
stdlib@go1.17.8
1.25.12

Open the chart page →

3,134
linkerd-preview-vizlinkerd-buoyantVerified publisher25.4.34 of 5See more

linkerd-preview-viz linkerd-buoyant 25.4.3

4 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/buoyantio/metrics-api:preview-25.4.32cef2a3f97da
stdlib@go1.24.2
1.25.12
ghcr.io/buoyantio/prometheus:v2.55.12659f4c2ebb7
stdlib@go1.23.2
1.25.12
ghcr.io/buoyantio/tap:preview-25.4.3e02a8bd9e2c3
stdlib@go1.24.2
1.25.12
ghcr.io/buoyantio/web:preview-25.4.33ee1b62aa111
stdlib@go1.24.2
1.25.12

Open the chart page →

3,454
linkerd-dashboardlinkerd-dashboardOfficial0.11.11 of 2See more

linkerd-dashboard linkerd-dashboard 0.11.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/buoyantio/prometheus:v3.3.1e2b8aa62b648
stdlib@go1.24.2
1.25.12

Open the chart page →

1,050
linode-blockstorage-csi-driverlinode-blockstorage-csi-driverOfficialVerified publisher1.1.44 of 5See more

linode-blockstorage-csi-driver linode-blockstorage-csi-driver 1.1.4

4 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
stdlib@go1.25.7
1.25.12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
stdlib@go1.25.7
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v6.2.06be9f63ca4ca
stdlib@go1.25.7
1.25.12
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
stdlib@go1.25.7
1.25.12

Open the chart page →

2,967
ccm-linodelinode-cloud-controller-managerOfficialVerified publisher0.9.81 of 1See more

ccm-linode linode-cloud-controller-manager 0.9.8

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
linode/linode-cloud-controller-manager:v0.9.8cd8c17512206
stdlib@go1.26.4
1.25.12

Open the chart page →

160
school-botlinuxoid690.1.01 of 1See more

school-bot linuxoid69 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/linuxoid69/school-bot:v0.3.3c8872438f1e0
stdlib@go1.23.3
1.25.12

Open the chart page →

772
liqo-upgrade-operatorliqo-upgrade-operatorVerified publisher0.1.01 of 1See more

liqo-upgrade-operator liqo-upgrade-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
kazem26/liqo-upgrade-operator:v0.1268b7c6a59dd
stdlib@go1.24.13
1.25.12

Open the chart page →

375
listmonklistmonk-chartVerified publisher2.0.12 of 2See more

listmonk listmonk-chart 2.0.1

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
stdlib@go1.24.6
1.25.12
listmonk/listmonk:v6.0.0bf3903d54a46
stdlib@go1.24.1
1.25.12

Open the chart page →

3,109
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
stdlib@go1.20.7
1.25.12

Open the chart page →

10,814
livekit-recorderlivekit-server0.3.131 of 1See more

livekit-recorder livekit-server 0.3.13

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
livekit/livekit-recorder:v0.3.13ecf1409c75e0
stdlib@go1.16.2
1.25.12

Open the chart page →

2,136
livekit-serverlivekit-server1.9.01 of 1See more

livekit-server livekit-server 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
livekit/livekit-server:v1.9.03602a85840d5
stdlib@go1.24.3
1.25.12

Open the chart page →

1,560
pagesliviu884422-pages1.0.01 of 3See more

pages liviu884422-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,262
llmarinerllmariner1.53.115 of 21See more

llmariner llmariner 1.53.1

15 of the 21 container images this version deploys carry CVE-2026-39822.

Open the chart page →

12,158
llm-dllm-dVerified publisher1.0.231 of 2See more

llm-d llm-d 1.0.23

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
stdlib@go1.24.3
1.25.12

Open the chart page →

2,540
home-assistantlmatfyVerified publisher0.1.381 of 1See more

home-assistant lmatfy 0.1.38

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2026.75a531753cea9
stdlib@go1.25.6
1.25.12

Open the chart page →

2,446
go-ocpp-serverloafoe0.2.11 of 1See more

go-ocpp-server loafoe 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/loafoe/go-ocpp-server:v0.2.145bb960674ab
stdlib@go1.21.13
1.25.12

Open the chart page →

399
mcp-notifierloafoe0.2.01 of 1See more

mcp-notifier loafoe 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/loafoe/mcp-notifier:v0.2.0ea958b832415
stdlib@go1.26.4
1.25.12

Open the chart page →

72
mt-mcp-grafanaloafoe0.10.02 of 2See more

mt-mcp-grafana loafoe 0.10.0

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/mcp-grafana:0.14.042f541f22063
stdlib@go1.26.3
1.25.12
ghcr.io/loafoe/mt-mcp-grafana:v0.1.12332d9b47475
stdlib@go1.26.2
1.25.12

Open the chart page →

1,940
otlp-gatewayloafoe0.0.22 of 2See more

otlp-gateway loafoe 0.0.2

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/jimmidyson/configmap-reload:v0.13.1ca0c14eef541
stdlib@go1.22.4
1.25.12
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
stdlib@go1.22.5
1.25.12

Open the chart page →

2,162
patch-operatorloafoe0.11.31 of 2See more

patch-operator loafoe 0.11.3

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
stdlib@go1.15.15
1.25.12

Open the chart page →

4,911
picoclawloafoe0.1.11 of 2See more

picoclaw loafoe 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/loafoe/picoclaw:v0.0.1942e1b6862913
stdlib@go1.26.2
1.25.12

Open the chart page →

479
solgateloafoe0.0.121 of 1See more

solgate loafoe 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/loafoe/solgate:v0.0.12b3256cbc7b68
stdlib@go1.21.0
1.25.12

Open the chart page →

2,108
tempo-distributedloafoe1.20.11 of 2See more

tempo-distributed loafoe 1.20.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/tempo:2.6.0f55a8a1937ff
stdlib@go1.22.6
1.25.12

Open the chart page →

2,027
local-path-exporterlocal-path-exporterVerified publisher0.2.31 of 1See more

local-path-exporter local-path-exporter 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/tmusial99/local-path-exporter:1.1.082476692c680
stdlib@go1.26.4
1.25.12

Open the chart page →

68
weather-app-chartlocal-weatherapp0.1.02 of 4See more

weather-app-chart local-weatherapp 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:8.0.36-debian-11-r38aad73aa0c6d
stdlib@go1.21.6
1.25.12
youssef11gaber10/deployment-auth-go:latest6597b26959d2
stdlib@go1.26.1
1.25.12

Open the chart page →

5,908
ocatiecataloguslocatiecatalogus1.0.01 of 3See more

ocatiecatalogus locatiecatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/ocatiecatalogus-php:latestc22764cbfa97
stdlib@go1.13.10
1.25.12

Open the chart page →

7,519
locust-pluginslocust-pluginsVerified publisher0.0.42 of 3See more

locust-plugins locust-plugins 0.0.4

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
sky5367/locust-plugins-grafana:latestd51bf68d4b26
stdlib@go1.21.8
1.25.12
sky5367/locust-plugins-timescale:latestd3150f201471
stdlib@go1.18.7
1.25.12

Open the chart page →

7,544
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
stdlib@go1.20.5
1.25.12

Open the chart page →

33,613
central-hostpath-mapperloftVerified publisher0.2.91 of 1See more

central-hostpath-mapper loft 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/central-hostpath-mapper:0.2.9fa6dba122171
stdlib@go1.23.2
1.25.12

Open the chart page →

924

Container images carrying it

4,886 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
stdlib@go1.19.4
1.25.12
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.25.12
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.0c9f76a75fd00
stdlib@go1.24.4
1.25.12
4
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.16.0e750cd4b43f7
stdlib@go1.24.4
1.25.12
4
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.25.12
4
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
stdlib@go1.22.2
1.25.12
4
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.25.12
4
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
stdlib@go1.23.1
1.25.12
4
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.25.12
4
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
stdlib@go1.24.2
1.25.12
4
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
stdlib@go1.25.7
1.25.12
4
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
stdlib@go1.26.3
1.25.12
4
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.12
4
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.25.12
3
alpine/git:latest:v2.54.06f3b5029566d
stdlib@go1.26.3
1.25.12
3
argoproj/argocd:v1.8.1830e86cacefd
stdlib@go1.14.12
1.25.12
3
bitnamilegacy/kubectl:latestcd354d5b2556
stdlib@go1.24.5
1.25.12
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.25.12
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
stdlib@go1.25.0
1.25.12
3
caddy/ingress:v0.2.118d1366fc0e9
stdlib@go1.21.4
1.25.12
3
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.12
3
cloudflare/cloudflared:2026.8.3:latest51c9cefcb456
stdlib@go1.26.4
1.25.12
3
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
stdlib@go1.25.7
1.25.12
3
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
stdlib@go1.23.12
1.25.12
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.25.12
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.25.12
3
derailed/popeye:v0.22.18e68e22c7663
stdlib@go1.23.5
1.25.12
3
dgraph/dgraph:v21.12.03b55ea83fffe
stdlib@go1.17.3
1.25.12
3
ethpandaops/tracoor:latestd8514b9f4c59
stdlib@go1.24.13
1.25.12
3
goharbor/harbor-core:v2.15.2d7b780d23721
stdlib@go1.26.4
1.25.12
3
goharbor/harbor-jobservice:v2.15.2f71a4452a095
stdlib@go1.26.4
1.25.12
3
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
stdlib@go1.26.4
1.25.12
3
goharbor/registry-photon:v2.15.2c4ebef61ceb5
stdlib@go1.26.4
1.25.12
3
goharbor/trivy-adapter-photon:v2.15.2215c07b71c37
stdlib@go1.26.4
1.25.12
3
grafana/grafana:8.2.500568d89c4f8
stdlib@go1.17
1.25.12
3
grafana/grafana:11.0.00dc5a246ab16
stdlib@go1.21.10
1.25.12
3
grafana/grafana:13.2.1-distroless3600073f45a9
stdlib@go1.26.4
1.25.12
3
grafana/grafana:13.1.17cb8c64c4d57
stdlib@go1.26.3
1.25.12
3
grafana/grafana:11.3.0a0f881232a6f
stdlib@go1.23.1
1.25.12
3
grafana/loki:3.4.258a6c186ce78
stdlib@go1.23.6
1.25.12
3
grafana/loki-canary:3.6.70dac7d5cb383
stdlib@go1.24.13
1.25.12
3
grafana/promtail:2.4.2626900031c4e
stdlib@go1.17.2
1.25.12
3
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.25.12
3
hashicorp/http-echo:1.0.0:latestfcb75f691c8b
stdlib@go1.21.1
1.25.12
3
jacobalberty/unifi:v10.0.162896c0ab82d33
stdlib@go1.24.6
1.25.12
3
jaegertracing/all-in-one:latestab6f1a1f0fb4
stdlib@go1.25.4
1.25.12
3
kubegems/kubegems:v1.24.10a730bcf9322a
stdlib@go1.24.10
1.25.12
3
library/docker:20.10-dind:20-dindaf96c680a7e1
stdlib@go1.19.7
1.25.12
3
library/mariadb:12.3.3ab1c3dd38194
stdlib@go1.24.6
1.25.12
3
library/mysql:latest66aec17cd21a
stdlib@go1.24.6
1.25.12
3

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.