StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,327
of 17,821 indexed, latest versions
Container images
5,001
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,327 of 17,821 indexed charts deploy, on 5,001 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.125,001
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,327 by stars
ChartLatestAffected imagesRadar Score
paperless-ngxmt1905027.6.142 of 4See more

paperless-ngx mt190502 7.6.14

2 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.12
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
stdlib@go1.24.4
1.25.12

Open the chart page →

12,164
umamimt1905028.1.41 of 3See more

umami mt190502 8.1.4

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.12

Open the chart page →

4,008
vaultwardenmt1905027.3.41 of 3See more

vaultwarden mt190502 7.3.4

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.12

Open the chart page →

4,754
vikunjamt1905027.1.22 of 3See more

vikunja mt190502 7.1.2

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.12
vikunja/vikunja:0.24.6ed1f3ed467fe
stdlib@go1.23.4
1.25.12

Open the chart page →

2,961
mongodbmulti-chart-app0.1.01 of 1See more

mongodb multi-chart-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mongo:7b096b4cb9269
stdlib@go1.24.6
1.25.12

Open the chart page →

2,007
my-multi-chart-appmulti-chart-app0.1.01 of 2See more

my-multi-chart-app multi-chart-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mongo:7b096b4cb9269
stdlib@go1.24.6
1.25.12

Open the chart page →

3,894
multusmultusVerified publisher0.2.02 of 2See more

multus multus 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.1.409fdfb7ce090
stdlib@go1.23.4
1.25.12
ghcr.io/k8snetworkplumbingwg/multus-dynamic-networks-controller:v0.3.72a2bb32c0ea8
stdlib@go1.22.12
1.25.12

Open the chart page →

1,866
devops-demomungari-development-charts1.0.42 of 4See more

devops-demo mungari-development-charts 1.0.4

2 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.12
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
stdlib@go1.18.4
1.25.12

Open the chart page →

8,960
pagesmuthu-pages1.0.01 of 3See more

pages muthu-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
approuvezmvisonneau0.1.11 of 1See more

approuvez mvisonneau 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/mvisonneau/approuvez:v0.1.0441da62e6cb3
stdlib@go1.15.6
1.25.12

Open the chart page →

1,979
unpollermvisonneau0.1.01 of 1See more

unpoller mvisonneau 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
golift/unifi-poller:v2.9.2585a29a06d05
stdlib@go1.21.0
1.25.12

Open the chart page →

1,190
ingress-nginxmxytest4.15.12 of 2See more

ingress-nginx mxytest 4.15.1

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
stdlib@go1.26.1
1.25.12
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.901038e7de14b
stdlib@go1.26.1
1.25.12

Open the chart page →

1,542
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
stdlib@go1.18
1.25.12

Open the chart page →

102,096
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
stdlib@go1.18
1.25.12

Open the chart page →

102,096
authmyaVerified publisher22.4.31 of 1See more

auth mya 22.4.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cesanta/docker_auth:1.6.04d16885f3d4c
stdlib@go1.13.7
1.25.12

Open the chart page →

2,382
clickhousemyaVerified publisher0.2403.11 of 1See more

clickhouse mya 0.2403.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.2ed9640bfff07
stdlib@go1.19.10
1.25.12

Open the chart page →

3,620
cognativemyaVerified publisher0.2403.33 of 3See more

cognative mya 0.2403.3

3 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.2ed9640bfff07
stdlib@go1.19.10
1.25.12
grafana/grafana:10.4.0f9811e4e687f
stdlib@go1.21.8
1.25.12
otel/opentelemetry-collector-contrib:0.96.07ef2a2ff46b9
stdlib@go1.21.7
1.25.12

Open the chart page →

7,408
giteamyaVerified publisher23.12.51 of 1See more

gitea mya 23.12.5

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gitea/gitea:1.21.6ac73e0da341f
stdlib@go1.21.7
1.25.12

Open the chart page →

3,438
redismyaVerified publisher22.4.101 of 2See more

redis mya 22.4.10

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
stdlib@go1.17.7
1.25.12

Open the chart page →

1,051
redis-queuemyaVerified publisher22.4.61 of 2See more

redis-queue mya 22.4.6

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
stdlib@go1.17.7
1.25.12

Open the chart page →

1,051
redis-raftmyaVerified publisher22.5.41 of 2See more

redis-raft mya 22.5.4

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
stdlib@go1.17.7
1.25.12

Open the chart page →

1,051
myhelmappmyhelmapp0.1.11 of 1See more

myhelmapp myhelmapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
tobirachel/node-project3:v17d9f37154994
stdlib@go1.17.5
1.25.12

Open the chart page →

3,369
Practica_4_helmmy-heml-appVerified publisher0.1.03 of 7See more

Practica_4_helm my-heml-app 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.25.12
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.12
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.12

Open the chart page →

27,947
grafana-chartmy-personal-grafana0.1.01 of 1See more

grafana-chart my-personal-grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
stdlib@go1.26.3
1.25.12

Open the chart page →

745
influxdbmy-personal-influxdb20.1.01 of 1See more

influxdb my-personal-influxdb2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
stdlib@go1.18.2
1.25.12

Open the chart page →

3,924
phonebook-chartmy-phonebook-chart0.1.01 of 3See more

phonebook-chart my-phonebook-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.12

Open the chart page →

3,035
mychartmysqlweb0.1.01 of 1See more

mychart mysqlweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
qichenxu4pd/mysqlweb:1.2d758d41d9c6b
stdlib@go1.18.2
1.25.12

Open the chart page →

1,157
myweatherhelmmyweather1.3.111 of 7See more

myweatherhelm myweather 1.3.11

1 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.25.12

Open the chart page →

18,211
fargate-sidecar-injectormziyaboVerified publisher0.1.51 of 1See more

fargate-sidecar-injector mziyabo 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mziyabo/fargate-eks-sidecar-injector:latest3067dce17983
stdlib@go1.19.13
1.25.12

Open the chart page →

1,394
victoria-metrics-singlenaps0.0.61 of 1See more

victoria-metrics-single naps 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
victoriametrics/victoria-metrics:v1.34.7b50d5c0153f9
stdlib@go1.14.1
1.25.12

Open the chart page →

1,316
pagesnarain1.0.01 of 3See more

pages narain 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
pagesnarasimha-pages1.0.01 of 3See more

pages narasimha-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
traefik-forward-auth-openidnas-helm-chartsVerified publisher1.0.11 of 1See more

traefik-forward-auth-openid nas-helm-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:latestb364aa6a4117
stdlib@go1.13.15
1.25.12

Open the chart page →

2,198
nats-kafkanatsVerified publisher0.15.41 of 1See more

nats-kafka nats 0.15.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
natsio/nats-kafka:1.4.2bb241956b0dc
stdlib@go1.20
1.25.12

Open the chart page →

1,732
nats-operatornatsVerified publisher0.8.31 of 1See more

nats-operator nats 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
natsio/nats-operator:0.8.31261dae38389
stdlib@go1.16.10
1.25.12

Open the chart page →

2,355
account-servernatz-operatorVerified publisher0.9.51 of 1See more

account-server natz-operator 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/zeiss/natz-operator/account-server:0.9.5b380b5f17c3f
stdlib@go1.23.3
1.25.12

Open the chart page →

746
navidromenavidrome0.2.51 of 1See more

navidrome navidrome 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
deluan/navidrome:0.41.1fc4d8b6ad9f9
stdlib@go1.16.2
1.25.12

Open the chart page →

3,318
pagesnavin-brixton1.0.01 of 3See more

pages navin-brixton 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
incorencsaVerified publisher1.38.02 of 29See more

incore ncsa 1.38.0

2 of the 29 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
stdlib@go1.21.10
1.25.12
bitnamilegacy/mongodb:4.4.5e3c9d6b4bc92
stdlib@go1.15.8
1.25.12

Open the chart page →

15,395
jupyterhub-metricsncsaVerified publisher1.3.04 of 5See more

jupyterhub-metrics ncsa 1.3.0

4 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:latestac461fb352ab
stdlib@go1.26.4
1.25.12
library/postgres:15-alpinea46e076249ce
stdlib@go1.24.6
1.25.12
timescale/timescaledb:latest-pg156343bdc87ca1
stdlib@go1.24.6
1.25.12
ghcr.io/ncsa/jupyterhub-metrics/collector:1.3.0dcb8c731bb1b
stdlib@go1.25.6
1.25.12

Open the chart page →

3,212
uptime-kumancsaVerified publisher1.7.31 of 1See more

uptime-kuma ncsa 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.5c74379ac4509
stdlib@go1.20.5
1.25.12

Open the chart page →

30,728
neo4j-reverse-proxyneo4j-helm-chartsVerified publisher2026.8.11 of 1See more

neo4j-reverse-proxy neo4j-helm-charts 2026.8.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
neo4j/helm-charts-reverse-proxy:2026.08.1ea1b8444808d
stdlib@go1.24.13
1.25.12

Open the chart page →

467
redisneomanexlabsVerified publisher1.1.01 of 1See more

redis neomanexlabs 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.25.12

Open the chart page →

1,435
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
stdlib@go1.17.9
1.25.12

Open the chart page →

6,997
neosyncneosyncVerified publisher0.5.412 of 3See more

neosync neosync 0.5.41

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
stdlib@go1.24.5
1.25.12
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
stdlib@go1.24.5
1.25.12

Open the chart page →

7,336
apineosync-apiVerified publisher0.5.411 of 1See more

api neosync-api 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
stdlib@go1.24.5
1.25.12

Open the chart page →

2,892
workerneosync-workerVerified publisher0.5.411 of 1See more

worker neosync-worker 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
stdlib@go1.24.5
1.25.12

Open the chart page →

2,869
bluesky-pdsnerkho-helm-charts0.4.21 of 1See more

bluesky-pds nerkho-helm-charts 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
stdlib@go1.25.6
1.25.12

Open the chart page →

2,402
core-keeper-dedicatednerkho-helm-charts0.1.11 of 1See more

core-keeper-dedicated nerkho-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
escaping/core-keeper-dedicated:latest87fa79255962
stdlib@go1.24.4
1.25.12

Open the chart page →

3,973
kubernetes-operatornetbird0.3.11 of 1See more

kubernetes-operator netbird 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
netbirdio/kubernetes-operator:0.3.157740157b4d7
stdlib@go1.26.2
1.25.12

Open the chart page →

210

Container images carrying it

5,001 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/cableship/argocd-source-tracker:0.0.6ff7dd45aa774
stdlib@go1.24.2
1.25.12
1
ghcr.io/cableship/chart-sentinel:0.1.0a037f1042b28
stdlib@go1.24.2
1.25.12
1
ghcr.io/camilorivera/cert-manager-acm-sync:0.7.489a83796a550
stdlib@go1.26.4
1.25.12
1
ghcr.io/camptocamp/prometheus-puppetdb-sd:0.14.0414c0c99fd06
stdlib@go1.23.5
1.25.12
1
ghcr.io/camptocamp/terraboard:v2.3.0df53e2c8998c
stdlib@go1.21.3
1.25.12
1
ghcr.io/caninehq/canine:latesta058034ca006
stdlib@go1.22.7
1.25.12
1
ghcr.io/cedar2025/xboard:latest896e4926e0d7
stdlib@go1.25.10
1.25.12
1
ghcr.io/celestiaorg/celestia-app:v3.7.0-arabica23a9ec9b1879
stdlib@go1.23.6
1.25.12
1
ghcr.io/celestiaorg/celestia-app:v6.1.0-rc0a604aefa3fae
stdlib@go1.24.6
1.25.12
1
ghcr.io/celestiaorg/celestia-node:v0.16.041177982c584
stdlib@go1.23.0
1.25.12
1
ghcr.io/cerbos/cerbos:0.51.08d35a64e4a99
stdlib@go1.25.6
1.25.12
1
ghcr.io/cfgate/cfgate:0.2.0-alpha.5c7025330acec
stdlib@go1.26.3
1.25.12
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
stdlib@go1.22.10
1.25.12
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
stdlib@go1.25.11
1.25.12
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
stdlib@go1.25.11
1.25.12
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
stdlib@go1.16.2
1.25.12
1
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
stdlib@go1.18
1.25.12
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
stdlib@go1.24.4
1.25.12
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
stdlib@go1.20.8
1.25.12
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.5.1448cb346b12c
stdlib@go1.18
1.25.12
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
stdlib@go1.25.11
1.25.12
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.0e7f9e8f1d565
stdlib@go1.24.4
1.25.12
1
ghcr.io/chaos-mesh/chaos-mesh:v2.8.0091b906a0b13
stdlib@go1.24.4
1.25.12
1
ghcr.io/chaos-mesh/chaos-mesh:v2.5.1700bb42ac21d
stdlib@go1.18
1.25.12
1
ghcr.io/chaos-mesh/chaos-mesh:v2.7.28bc853c7414c
stdlib@go1.20.8
1.25.12
1
ghcr.io/chaos-mesh/chaos-mesh:v2.8.49e48285bb44c
stdlib@go1.25.11
1.25.12
1
ghcr.io/chaos-mesh/chaos-mesh:v2.8.3bdb31f3121a2
stdlib@go1.25.11
1.25.12
1
ghcr.io/chatwoot/pgvector:14.4.0-debian-11-r0f759f1510d09
stdlib@go1.16.7
1.25.12
1
ghcr.io/chilledornaments/redirector:latest94d48447d967
stdlib@go1.26.4
1.25.12
1
ghcr.io/chronicleprotocol/challenger-go:0.1.2c8d5a3c0e966
stdlib@go1.22.12
1.25.12
1
ghcr.io/chronicleprotocol/gofer:0.613915d2e41e04
stdlib@go1.24.6
1.25.12
1
ghcr.io/chronicleprotocol/oracles-updates-exporter:0.0.4992d0e793af6
stdlib@go1.19.13
1.25.12
1
ghcr.io/chronicleprotocol/spectre:0.68.34e872bc016e8
stdlib@go1.25.5
1.25.12
1
ghcr.io/chronicleprotocol/spire:0.68.379df4fb20322
stdlib@go1.25.5
1.25.12
1
ghcr.io/chrxmvtik/gitlab-mr-conform:0.5.2b2eb79fc99cb
stdlib@go1.25.9
1.25.12
1
ghcr.io/cisco-open/cluster-registry-controller:v0.2.12937eff91df1e
stdlib@go1.18
1.25.12
1
ghcr.io/ckotzbauer/access-managerdd584fcda0ff
stdlib@go1.22.1
1.25.12
1
ghcr.io/ckotzbauer/chekrf299baf467b5
stdlib@go1.17.3
1.25.12
1
ghcr.io/ckotzbauer/vulnerability-operator:0.28.167008df32715c
stdlib@go1.26.4
1.25.12
1
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
stdlib@go1.23.7
1.25.12
1
ghcr.io/cleanuparr/cleanuparr:2.10.68136c3beda7a
stdlib@go1.22.2
1.25.12
1
ghcr.io/cloudflare/ebpf_exporter:v2.3.075370b2ec2bb
stdlib@go1.21.5
1.25.12
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
stdlib@go1.14.7
1.25.12
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
stdlib@go1.13.15
1.25.12
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
stdlib@go1.14.7
1.25.12
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
stdlib@go1.14.7
1.25.12
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
stdlib@go1.14.7
1.25.12
1
ghcr.io/cloudnative-pg/cloudnative-pg:1.28.034198e85b6e6
stdlib@go1.25.5
1.25.12
1
ghcr.io/cloudnative-pg/cloudnative-pg:1.17.14dd365800b62
stdlib@go1.18.6
1.25.12
1
ghcr.io/cloudnative-pg/cloudnative-pg:1.21.19f707d91de1c
stdlib@go1.21.3
1.25.12
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.