StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,322
of 17,813 indexed, latest versions
Container images
4,983
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,322 of 17,813 indexed charts deploy, on 4,983 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+188 more1.25.124,983
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,322 by stars
ChartLatestAffected imagesRadar Score
periscopeperiscopeVerified publisher1.1.61 of 1See more

periscope periscope 1.1.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/gnana997/periscope:1.1.621b284fb00f2
stdlib@go1.26.4
1.25.12

Open the chart page →

865
pgbouncerpgbouncer-helm0.6.01 of 2See more

pgbouncer pgbouncer-helm 0.6.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
apache/airflow:airflow-pgbouncer-exporter-2025.03.05-0.18.0adf7260c2c5f
stdlib@go1.23.7
1.25.12

Open the chart page →

471
spirephilips-labsVerified publisher0.12.25 of 6See more

spire philips-labs 0.12.2

5 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/spiffe/spiffe-csi-driver:0.2.34144101005b2
stdlib@go1.20.1
1.25.12
ghcr.io/spiffe/spire-agent:1.6.062517726d0c4
stdlib@go1.20.1
1.25.12
ghcr.io/spiffe/spire-controller-manager:0.2.25e90b2d092df
stdlib@go1.20.1
1.25.12
ghcr.io/spiffe/spire-server:1.6.0635b9024cad2
stdlib@go1.20.1
1.25.12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.6.2a13bff2ed69a
stdlib@go1.19
1.25.12

Open the chart page →

7,271
full-housephilmtd1.3.11 of 1See more

full-house philmtd 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
philmtd/full-house:1.9.0d68a6bb8a2bf
stdlib@go1.26.3
1.25.12

Open the chart page →

117
chadbotphntom0.2.31 of 1See more

chadbot phntom 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
phntom/chadbot:0.2.397c28e4178ad
stdlib@go1.21.5
1.25.12

Open the chart page →

1,104
chartmuseumphntom4.0.201 of 1See more

chartmuseum phntom 4.0.20

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
phntom/chartmuseum:v0.16.053883b65d9b7
stdlib@go1.19.3
1.25.12

Open the chart page →

2,949
phonebook-chartphonebook-chart0.1.01 of 3See more

phonebook-chart phonebook-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.12

Open the chart page →

3,032
phpipamphpipam-helmVerified publisher1.0.121 of 3See more

phpipam phpipam-helm 1.0.12

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.0.40d58ac93387f6
stdlib@go1.18.2
1.25.12

Open the chart page →

3,781
pipelinewise-operatorpipelinewise-operatorVerified publisher0.5.11 of 1See more

pipelinewise-operator pipelinewise-operator 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
dirathea/pipelinewise-operator:v0.5.08d4c9f773ae1
stdlib@go1.15.8
1.25.12

Open the chart page →

2,122
matomopockostVerified publisher1.3.01 of 3See more

matomo pockost 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
stdlib@go1.24.6
1.25.12

Open the chart page →

5,311
podtracepodtraceOfficialVerified publisher0.14.81 of 2See more

podtrace podtrace 0.14.8

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
alpine/k8s:1.37.0b421c2e9419e
stdlib@go1.24.0
1.25.12

Open the chart page →

624
secrets-store-csi-driver-provider-awsportefaix-hub0.4.01 of 1See more

secrets-store-csi-driver-provider-aws portefaix-hub 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Open the chart page →

2,213
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
stdlib@go1.14.4
1.25.12

Open the chart page →

32,365
postfix-exporterpostfix-exporterVerified publisher0.2.01 of 1See more

postfix-exporter postfix-exporter 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/hsn723/postfix_exporter:0.20.0b7da7c554018
stdlib@go1.26.2
1.25.12

Open the chart page →

419
postgres-backuppostgres-backup0.3.02 of 2See more

postgres-backup postgres-backup 0.3.0

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.25.12
nerzhul/mc-arm64:2020.10.034215df511f31
stdlib@go1.15.2
1.25.12

Open the chart page →

5,471
postgresqlpostgresqlVerified publisher0.3.172 of 2See more

postgresql postgresql 0.3.17

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:18.6-alpined3e1620b530c
stdlib@go1.24.6
1.25.12
pgautoupgrade/pgautoupgrade:18-alpine48b448825656
stdlib@go1.24.6
1.25.12

Open the chart page →

1,270
postgresqlpostgresql-helm0.1.21 of 1See more

postgresql postgresql-helm 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:16a3b7f434b2dc
stdlib@go1.24.6
1.25.12

Open the chart page →

1,270
rethinkdbpozetron1.1.91 of 1See more

rethinkdb pozetron 1.1.9

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
pozetroninc/rethinkdb-cluster:v2.4.16b06a098f994
stdlib@go1.16.9
1.25.12

Open the chart page →

2,913
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.12

Open the chart page →

2,549
home-assistantpree-helm-chartsVerified publisher1.81.01 of 1See more

home-assistant pree-helm-charts 1.81.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.3d89226851697
stdlib@go1.25.6
1.25.12

Open the chart page →

2,162
preparrpreparr0.19.71 of 6See more

preparr preparr 0.19.7

1 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
stdlib@go1.24.6
1.25.12

Open the chart page →

1,128
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
stdlib@go1.18.2
1.25.12

Open the chart page →

5,559
projectionprojectionVerified publisher0.3.21 of 1See more

projection projection 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/projection-operator/projection:0.3.2d06374430a17
stdlib@go1.26.3
1.25.12

Open the chart page →

218
prometheus-druid-exporterprometheus-communityVerified publisher1.2.01 of 1See more

prometheus-druid-exporter prometheus-community 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/opstree/druid-exporter:v0.119f01c9c5c2e3
stdlib@go1.15.15
1.25.12

Open the chart page →

1,179
prometheus-pingmesh-exporterprometheus-communityVerified publisher0.5.01 of 1See more

prometheus-pingmesh-exporter prometheus-community 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
dongjiang1989/pingmesh-agent:v1.2.2c82de0272da0
stdlib@go1.22.9
1.25.12

Open the chart page →

856
prometheus-sql-exporterprometheus-communityVerified publisher0.5.01 of 1See more

prometheus-sql-exporter prometheus-community 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/justwatchcom/sql_exporter:v0.8c4b1d3d0f052
stdlib@go1.24.4
1.25.12

Open the chart page →

1,352
prometheusprometheus-worawutchan13.0.05 of 6See more

prometheus prometheus-worawutchan 13.0.0

5 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.25.12
prom/pushgateway:v1.3.0c0d39b8d4cfe
stdlib@go1.15.2
1.25.12
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.12
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.25.12
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
stdlib@go1.15.3
1.25.12

Open the chart page →

9,952
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prowlercloud/prowler-api:5.31.14f252d579be2
stdlib@go1.26.3-X:jsonv2
1.25.12

Open the chart page →

8,489
operatorpunchplatform8.1.131 of 1See more

operator punchplatform 8.1.13

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/punchplatform/operator:8.1-dev2a9536c8cee2
stdlib@go1.22.0
1.25.12

Open the chart page →

719
kubernetes-dashboardpyalive-cdmswebappVerified publisher5.8.01 of 1See more

kubernetes-dashboard pyalive-cdmswebapp 5.8.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
kubernetesui/dashboard:v2.6.1290bebc3cd96
stdlib@go1.19
1.25.12

Open the chart page →

1,663
go-kube-downscalerpy-kube-downscalerVerified publisher1.3.41 of 1See more

go-kube-downscaler py-kube-downscaler 1.3.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/caas-team/gokubedownscaler:1.3.4cea3dd2f1312
stdlib@go1.25.10
1.25.12

Open the chart page →

234
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
stdlib@go1.26.4
1.25.12

Open the chart page →

56,582
qt-vaultqt-vaultVerified publisher0.1.21 of 1See more

qt-vault qt-vault 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/mcman2017/qt-vault:v0.1.2852edf54c850
stdlib@go1.24.11
1.25.12

Open the chart page →

305
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
stdlib@go1.19.4
1.25.12

Open the chart page →

6,930
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
stdlib@go1.22.2
1.25.12

Open the chart page →

2,854
jobs-managerraczylo-comVerified publisher0.1.151 of 1See more

jobs-manager raczylo-com 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/lukaszraczylo/jobs-manager-operator:0.1.15e6239e2838d7
stdlib@go1.25.0
1.25.12

Open the chart page →

501
kube-images-syncraczylo-comVerified publisher0.5.571 of 1See more

kube-images-sync raczylo-com 0.5.57

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/lukaszraczylo/kubernetes-images-sync-operator:0.5.57a424948c8143
stdlib@go1.25.5
1.25.12

Open the chart page →

415
velero-s3-deploymentradar-baseVerified publisher0.4.22 of 4See more

velero-s3-deployment radar-base 0.4.2

2 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
velero/velero:v1.9.0277fbfaf8dcf
stdlib@go1.18
1.25.12
velero/velero-plugin-for-aws:v1.5.03d2ea7aab32d
stdlib@go1.17.11
1.25.12

Open the chart page →

3,729
rbac-serverrbac-server1.19.11 of 1See more

rbac-server rbac-server 1.19.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/rbac-server:1.19.1df1adeb86679
stdlib@go1.23.12
1.25.12

Open the chart page →

705
rclonercloneVerified publisher2.2.01 of 1See more

rclone rclone 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
rclone/rclone:1.6874c51b8817e5
stdlib@go1.23.3
1.25.12

Open the chart page →

1,680
redis-enterprise-operatorredis-enterprise-operatorVerified publisher7.13.4-121 of 1See more

redis-enterprise-operator redis-enterprise-operator 7.13.4-12

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
redislabs/operator:7.4.2-2ecb101af0506
stdlib@go1.21.5
1.25.12

Open the chart page →

2,637
redis-chartredis-ha-chartVerified publisher0.1.51 of 2See more

redis-chart redis-ha-chart 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
truebyteinnovationllp/redis-exporter:v1.86.01c6a945af653
stdlib@go1.25.11
1.25.12

Open the chart page →

231
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
stdlib@go1.22.6
1.25.12

Open the chart page →

2,710
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
stdlib@go1.24.6
1.25.12

Open the chart page →

4,407
kminionredpanda-dataOfficialVerified publisher0.15.21 of 1See more

kminion redpanda-data 0.15.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
redpandadata/kminion:v2.3.0c05fa976428e
stdlib@go1.25.8
1.25.12

Open the chart page →

924
docker-registry-mirrorregistry-mirror1.0.11 of 1See more

docker-registry-mirror registry-mirror 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/registry:2.8.3a3d8aaa63ed8
stdlib@go1.20.8
1.25.12

Open the chart page →

550
reportportalreportportal-ioOfficialVerified publisher26.8.127 of 15See more

reportportal reportportal-io 26.8.12

7 of the 15 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
stdlib@go1.24.2
1.25.12
library/postgres:18.4a02db8cac496
stdlib@go1.24.6
1.25.12
library/rabbitmq:4.3.4-managementeb5295d08332
stdlib@go1.22.2
1.25.12
rancher/kubectl:v1.36.206c7a7a97727
stdlib@go1.26.4
1.25.12
reportportal/k8s-wait-for:latest06cdf299b397
stdlib@go1.26.4
1.25.12
reportportal/migrations:5.15.4464468240d7b
stdlib@go1.24.6
1.25.12
reportportal/service-index:5.15.1b1860ed33071
stdlib@go1.26.2
1.25.12

Open the chart page →

12,320
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:9.6caddd35b05cd
stdlib@go1.16.7
1.25.12

Open the chart page →

6,649
resurfaceresurfaceioVerified publisher3.9.02 of 3See more

resurface resurfaceio 3.9.0

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
haproxytech/kubernetes-ingress:1.11.4c5f8a41ef0d4
stdlib@go1.22.2
1.25.12
resurfaceio/resurface:3.7.84d5cda2f64109
stdlib@go1.23.0
1.25.12

Open the chart page →

7,247
retyc-csiretyc-csi0.2.02 of 3See more

retyc-csi retyc-csi 0.2.0

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
stdlib@go1.26.3
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
stdlib@go1.26.3
1.25.12

Open the chart page →

1,419

Container images carrying it

4,983 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
stdlib@go1.18.1
1.25.12
1
zachomedia/cert-manager-webhook-pdns:v2.5.54940e227a39b
stdlib@go1.26.1
1.25.12
1
zahoriaut/zahori-scheduler:1.0.047d0979b1184
stdlib@go1.20.5
1.25.12
1
zeetdev/tailscale-relay:v1.24.21967aa2840b6
stdlib@go1.18.1-ts710a0d8610
1.25.12
1
zer0tonin/mikochi:1.11.009872bae1554
stdlib@go1.26.4
1.25.12
1
zufardhiyaulhaq/community-operator-v2:v1.0.07f1bbbe114eb
stdlib@go1.17.12
1.25.12
1
zufardhiyaulhaq/devopsweekly:v2.1.046625567fb60
stdlib@go1.17.13
1.25.12
1
zufardhiyaulhaq/goweekly:v2.0.008dcc130fbea
stdlib@go1.17.12
1.25.12
1
zufardhiyaulhaq/istio-ratelimit-operator:v2.15.0692cfc9d6614
stdlib@go1.19.13
1.25.12
1
zufardhiyaulhaq/javascriptweekly:v2.1.086424bd0b2a4
stdlib@go1.17.13
1.25.12
1
zufardhiyaulhaq/kubernetesweekly:v2.1.0a287ada277c6
stdlib@go1.16.15
1.25.12
1
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
stdlib@go1.16.15
1.25.12
1
zufardhiyaulhaq/nodejsweekly:v1.1.0306859a3f167
stdlib@go1.16.15
1.25.12
1
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
stdlib@go1.13.15
1.25.12
1
gcr.io/cadvisor/cadvisor:v0.47.2e6c562b5e983
stdlib@go1.19.9
1.25.12
1
gcr.io/cadvisor/cadvisor:v0.52.1f40e65878e25
stdlib@go1.24.1
1.25.12
1
gcr.io/cloudsql-docker/gce-proxy:1.17a85176b8e7cc
stdlib@go1.13.5
1.25.12
1
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
stdlib@go1.13.14
1.25.12
1
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
stdlib@go1.22.8
1.25.12
1
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
stdlib@go1.25.8
1.25.12
1
gcr.io/gke-release/custom-metrics-stackdriver-adapter:v0.13.1-gke.06937c0a9b203
stdlib@go1.19.3
1.25.12
1
gcr.io/gloo-mesh/gloo-mesh:1.1.2a4011eae6a0b
stdlib@go1.16.3
1.25.12
1
gcr.io/google-samples/microservices-demo/cartservice:v0.2.3566733b4d2d5
stdlib@go1.15.6
1.25.12
1
gcr.io/google-samples/microservices-demo/checkoutservice:v0.2.30fad1066de77
stdlib@go1.15.10
1.25.12
1
gcr.io/google-samples/microservices-demo/currencyservice:v0.2.349d458a3650f
stdlib@go1.15.6
1.25.12
1
gcr.io/google-samples/microservices-demo/frontend:v0.2.3ca5c0f0771c8
stdlib@go1.15.10
1.25.12
1
gcr.io/google-samples/microservices-demo/paymentservice:v0.2.36eb201217a8f
stdlib@go1.15.6
1.25.12
1
gcr.io/google-samples/microservices-demo/productcatalogservice:v0.2.35a4a0e54c6d0
stdlib@go1.15.10
1.25.12
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
stdlib@go1.15.6
1.25.12
1
gcr.io/google-samples/microservices-demo/shippingservice:v0.2.30cb1707fc503
stdlib@go1.15.6
1.25.12
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
stdlib@go1.16.7
1.25.12
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
stdlib@go1.16.7
1.25.12
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
stdlib@go1.22.5
1.25.12
1
gcr.io/k8s-staging-multitenancy/hnc-manager:v1.1.08ab8229f6a89
stdlib@go1.20.5
1.25.12
1
gcr.io/k8s-staging-sig-storage/objectstorage-controller:v20221027-v0.1.1-8-g300019fa84b574e8027
stdlib@go1.18.3
1.25.12
1
gcr.io/kaniko-project/executor:latest4e7a52dd1f14
stdlib@go1.24.3
1.25.12
1
gcr.io/kasten-images/restorectl:8.0.145a0884f9a90c
stdlib@go1.25.4
1.25.12
1
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/filterd675f211a40f
stdlib@go1.22.8
1.25.12
1
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/ingressec4b544499ba
stdlib@go1.22.8
1.25.12
1
gcr.io/knative-releases/knative.dev/eventing/cmd/mtchannel_broker395f4ff1bd34
stdlib@go1.22.8
1.25.12
1
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhook873b968f02b5
stdlib@go1.14.2
1.25.12
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
stdlib@go1.21.5
1.25.12
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controllere70bc675f977
stdlib@go1.22.8
1.25.12
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.2.0f253b82941c2
stdlib@go1.17.6
1.25.12
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook7d76a6d42d13
stdlib@go1.22.8
1.25.12
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.2.0a705c1ea8e9e
stdlib@go1.17.6
1.25.12
1
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
stdlib@go1.21.5
1.25.12
1
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourier15a601147ef4
stdlib@go1.24.2
1.25.12
1
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourier197fbb71d1f1
stdlib@go1.18.3
1.25.12
1
gcr.io/knative-releases/knative.dev/operator/cmd/operator:v1.22.3733f21dc06f9
stdlib@go1.26.4
1.25.12
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.