StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,327
of 17,821 indexed, latest versions
Container images
5,001
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,327 of 17,821 indexed charts deploy, on 5,001 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.125,001
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,327 by stars
ChartLatestAffected imagesRadar Score
endpoint-auth-servicefiware0.1.43 of 4See more

endpoint-auth-service fiware 0.1.4

3 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
expediagroup/kubernetes-sidecar-injector:1.0.1193a00ec8dd4
stdlib@go1.18.3
1.25.12
quay.io/fiware/envoy-configmap-updater:0.4.39eabc3f3e1e2
stdlib@go1.18.5
1.25.12
quay.io/fiware/ishare-auth-provider:0.4.3158108f70f95
stdlib@go1.18.5
1.25.12

Open the chart page →

11,852
grafanaflagger1.7.01 of 1See more

grafana flagger 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:7.3.46d42886b3ebe
stdlib@go1.15.5
1.25.12

Open the chart page →

3,374
podinfoflagger6.1.41 of 1See more

podinfo flagger 6.1.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/stefanprodan/podinfo:6.1.3f25ebb9c6788
stdlib@go1.17.9
1.25.12

Open the chart page →

2,817
apm-hubflanksourceVerified publisher0.0.472 of 2See more

apm-hub flanksource 0.0.47

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
flanksource/apm-hub:v0.0.471dacc3195bf9
stdlib@go1.20.7
1.25.12
library/postgres:14816cf7d06ec3
stdlib@go1.24.6
1.25.12

Open the chart page →

5,794
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
stdlib@go1.25.5
1.25.12

Open the chart page →

5,545
canary-checkerflanksourceVerified publisher1.2.01 of 2See more

canary-checker flanksource 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
flanksource/canary-checker-ui:v1.4.281764c84e550db
stdlib@go1.20.7
1.25.12

Open the chart page →

4,633
facetflanksourceVerified publisher0.1.721 of 1See more

facet flanksource 0.1.72

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/flanksource/facet:0.1.7237237038be15
stdlib@go1.23.12
1.25.12

Open the chart page →

21,582
flanksource-uiflanksourceVerified publisher1.4.3191 of 1See more

flanksource-ui flanksource 1.4.319

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
flanksource/incident-manager-ui:v1.4.319953948a194c9
stdlib@go1.23.5
1.25.12

Open the chart page →

2,617
mission-controlflanksourceVerified publisher0.1.3383 of 8See more

mission-control flanksource 0.1.338

3 of the 8 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
stdlib@go1.25.4
1.25.12
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
stdlib@go1.23.5
1.25.12
public.ecr.aws/k4y9r6y5/kratos:v25.4.0e8014c6c58b6
stdlib@go1.25.2
1.25.12

Open the chart page →

9,061
mission-control-tenantflanksourceVerified publisher1.0.923 of 3See more

mission-control-tenant flanksource 1.0.92

3 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
flanksource/vcluster-sync-host-secrets:v0.1.6bd3294c20a60
stdlib@go1.17.13
1.25.12
rancher/k3s:v1.28.2-k3s18c2599ecfca8
stdlib@go1.20.8
1.25.12
ghcr.io/loft-sh/vcluster:0.16.484f70425f4dd
stdlib@go1.20.8
1.25.12

Open the chart page →

5,726
flask-contactsflask-contacts-generic1.0.11 of 3See more

flask-contacts flask-contacts-generic 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

5,841
flask-appflask-mysqlVerified publisher1.0.11 of 2See more

flask-app flask-mysql 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.12

Open the chart page →

4,045
floating-serverfloating-server1.6.31 of 2See more

floating-server floating-server 1.6.3

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
censedata/floating-server:v1.6.3ebfffb9dd4c0
stdlib@go1.24.3
1.25.12

Open the chart page →

1,598
floriapp-mongodbfloriapp1.0.01 of 1See more

floriapp-mongodb floriapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.25.12

Open the chart page →

8,070
fluent-operatorfluent-operatorVerified publisher0.1.01 of 2See more

fluent-operator fluent-operator 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
kubesphere/fluent-operator:v1.0.2702df77228c6
stdlib@go1.16.6
1.25.12

Open the chart page →

2,632
uptime-kumafluent-operatorVerified publisher0.1.01 of 1See more

uptime-kuma fluent-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
louislam/uptime-kuma:13d632903e6af
stdlib@go1.20.5
1.25.12

Open the chart page →

3,531
fluxcd-helm-upgraderfluxcd-helm-upgraderVerified publisher0.7.71 of 1See more

fluxcd-helm-upgrader fluxcd-helm-upgrader 0.7.7

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
kenchrcum/fluxcd-helm-upgrader:0.7.7c326e28a8f5f
stdlib@go1.25.9
1.25.12

Open the chart page →

2,450
fluxer-helmfluxer-helm0.3.04 of 18See more

fluxer-helm fluxer-helm 0.3.0

4 of the 18 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
chrislusf/seaweedfs:4.346620371e8af8
stdlib@go1.25.11
1.25.12
library/postgres:16-alpine721873c34ceb
stdlib@go1.24.6
1.25.12
livekit/livekit-server:v1.12.0b1281e66e35e
stdlib@go1.26.4
1.25.12
ghcr.io/fluxerapp/fluxer-static:2026.812.125337cfe98ae544df
stdlib@go1.25.0
1.25.12

Open the chart page →

27,662
flyte-depsflyte1.16.81 of 3See more

flyte-deps flyte 1.16.8

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
kubernetesui/dashboard:v2.2.0148991563e37
stdlib@go1.15.1
1.25.12

Open the chart page →

2,246
flyte-devboxflyte0.1.07 of 13See more

flyte-devbox flyte 0.1.0

7 of the 13 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controllerdigest-pinned0d5f740b4224
stdlib@go1.24.6
1.25.12
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhookdigest-pinned697668be7893
stdlib@go1.24.6
1.25.12
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned031408ec516f
stdlib@go1.24.3
1.25.12
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned3502bb5aa60f
stdlib@go1.24.3
1.25.12
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler-hpadigest-pinned7405faeb7636
stdlib@go1.24.3
1.25.12
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned5b93308a392c
stdlib@go1.24.3
1.25.12
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinned50831d9aaa69
stdlib@go1.24.3
1.25.12

Open the chart page →

4,672
csp-reporterfoomoVerified publisher2.2.01 of 1See more

csp-reporter foomo 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
foomo/csp-reporter:1.3.0e436da524785
stdlib@go1.18
1.25.12

Open the chart page →

1,409
forkliftforklift0.1.42 of 2See more

forklift forklift 0.1.4

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
wuhan005/forklift:daemon4e6da210e449
stdlib@go1.19.8
1.25.12
wuhan005/forklift:controllerbfbe82d59850
stdlib@go1.19.8
1.25.12

Open the chart page →

1,816
ledgerformance1.2.01 of 1See more

ledger formance 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
stdlib@go1.18.10
1.25.12

Open the chart page →

4,682
forwardforward1.3.11 of 1See more

forward forward 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
udhos/forward:1.1.312e120d39fdb
stdlib@go1.20.5
1.25.12

Open the chart page →

2,215
maxscalefour-allportalVerified publisher4.1.162 of 3See more

maxscale four-allportal 4.1.16

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:10.6.12-debian-11-r1643a70df0e7c6
stdlib@go1.19.7
1.25.12
bitnamilegacy/mysqld-exporter:0.14.0-debian-11-r10304768b637c94
stdlib@go1.17.8
1.25.12

Open the chart page →

6,614
readium-lcpserverfpetr0.0.51 of 3See more

readium-lcpserver fpetr 0.0.5

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/fpetr/readium-lcp-server-docker-helm/lcpserver:1.9.0324f9b7b689c
stdlib@go1.22.0
1.25.12

Open the chart page →

1,373
readium-lsdserverfpetr0.0.11 of 2See more

readium-lsdserver fpetr 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/fpetr/readium-lcp-server-docker-helm/lsdserver:1.9.0cdba39e3f3d0
stdlib@go1.22.0
1.25.12

Open the chart page →

1,373
ff-testfrankframework0.7.61 of 2See more

ff-test frankframework 0.7.6

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:17-bookworm051f7b7b3abd
stdlib@go1.24.6
1.25.12

Open the chart page →

1,809
frank2examplefrankframework0.7.41 of 2See more

frank2example frankframework 0.7.4

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:17-bookworm051f7b7b3abd
stdlib@go1.24.6
1.25.12

Open the chart page →

1,809
free5gc-amffree5gc-amfVerified publisher0.1.31 of 1See more

free5gc-amf free5gc-amf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/amf:v3.4.31bc96ff5a2a6
stdlib@go1.21.8
1.25.12

Open the chart page →

903
free5gc-ausffree5gc-ausfVerified publisher0.1.31 of 1See more

free5gc-ausf free5gc-ausf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/ausf:v3.4.3687ff4daf5da
stdlib@go1.21.8
1.25.12

Open the chart page →

911
free5gc-chffree5gc-chfVerified publisher0.1.31 of 1See more

free5gc-chf free5gc-chf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/chf:v3.4.3e2a4dd98a4ed
stdlib@go1.21.8
1.25.12

Open the chart page →

1,004
free5gc-nrffree5gc-nrfVerified publisher0.1.31 of 1See more

free5gc-nrf free5gc-nrf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/nrf:v3.4.399e46b860efb
stdlib@go1.21.8
1.25.12

Open the chart page →

920
free5gc-nssffree5gc-nssfVerified publisher0.1.31 of 1See more

free5gc-nssf free5gc-nssf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/nssf:v3.4.3dfe8c68c04b4
stdlib@go1.21.8
1.25.12

Open the chart page →

911
free5gc-pcffree5gc-pcfVerified publisher0.1.31 of 1See more

free5gc-pcf free5gc-pcf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/pcf:v3.4.3f712e8ecd927
stdlib@go1.21.8
1.25.12

Open the chart page →

904
free5gc-smffree5gc-smfVerified publisher0.1.31 of 1See more

free5gc-smf free5gc-smf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/smf:v3.4.360e38baa4b10
stdlib@go1.21.8
1.25.12

Open the chart page →

919
free5gc-udmfree5gc-udmVerified publisher0.1.31 of 1See more

free5gc-udm free5gc-udm 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/udm:v3.4.32f68df062a50
stdlib@go1.21.8
1.25.12

Open the chart page →

911
free5gc-udrfree5gc-udrVerified publisher0.1.31 of 1See more

free5gc-udr free5gc-udr 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/udr:v3.4.3c0783bcdcbdc
stdlib@go1.21.8
1.25.12

Open the chart page →

920
free5gc-upffree5gc-upfVerified publisher0.1.31 of 1See more

free5gc-upf free5gc-upf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/upf:v3.4.3b6b362a39fdd
stdlib@go1.21.8
1.25.12

Open the chart page →

1,075
free5gc-webuifree5gc-webuiVerified publisher0.1.31 of 1See more

free5gc-webui free5gc-webui 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
free5gc/webui:v3.4.39adeb18492cb
stdlib@go1.21.8
1.25.12

Open the chart page →

1,257
powerdnsfsdrw080.1.31 of 4See more

powerdns fsdrw08 0.1.3

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
pschiffe/pdns-mysql:alpined196c796cafb
stdlib@go1.21.5
1.25.12

Open the chart page →

1,960
aptlyg0dscookie0.4.01 of 2See more

aptly g0dscookie 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
stdlib@go1.18.3
1.25.12

Open the chart page →

3,483
icinga2g0dscookie0.2.01 of 1See more

icinga2 g0dscookie 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
stdlib@go1.18.1
1.25.12

Open the chart page →

4,435
passboltg0dscookie0.5.22 of 2See more

passbolt g0dscookie 0.5.2

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mariadb:10.79a48ac9f196f
stdlib@go1.16.7
1.25.12
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
stdlib@go1.14.4
1.25.12

Open the chart page →

8,029
borgmaticgabe565Verified publisher0.10.11 of 1See more

borgmatic gabe565 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
stdlib@go1.23.5
1.25.12

Open the chart page →

2,585
castsponsorskipgabe565Verified publisher0.8.11 of 1See more

castsponsorskip gabe565 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
stdlib@go1.23.4
1.25.12

Open the chart page →

1,383
generic-device-plugingabe565Verified publisher0.1.31 of 1See more

generic-device-plugin gabe565 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:latestdc192e164c69
stdlib@go1.26.2
1.25.12

Open the chart page →

260
gotifygabe565Verified publisher0.4.01 of 1See more

gotify gabe565 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/gotify/server:2.6.104f4c4bb7cdd
stdlib@go1.23.3
1.25.12

Open the chart page →

763
hammondgabe565Verified publisher0.6.41 of 1See more

hammond gabe565 0.6.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.25.12

Open the chart page →

1,807
limogabe565Verified publisher0.8.01 of 1See more

limo gabe565 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/gabe565/limo:latest6dfdbc9853bb
stdlib@go1.20.12
1.25.12

Open the chart page →

1,331

Container images carrying it

5,001 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/fpetr/readium-lcp-server-docker-helm/lsdserver:1.9.0cdba39e3f3d0
stdlib@go1.22.0
1.25.12
1
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
stdlib@go1.18.3
1.25.12
1
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
stdlib@go1.18.1
1.25.12
1
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
stdlib@go1.24.0
1.25.12
1
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
stdlib@go1.23.4
1.25.12
1
ghcr.io/gabe565/domain-watch:latest34c5a1e351d6
stdlib@go1.24.1
1.25.12
1
ghcr.io/gabe565/limo:latest6dfdbc9853bb
stdlib@go1.20.12
1.25.12
1
ghcr.io/gabe565/matrimony:latestd39a9d7c3e1b
stdlib@go1.22.0
1.25.12
1
ghcr.io/gabe565/transsmute:latestc8ac95a30c31
stdlib@go1.24.1
1.25.12
1
ghcr.io/geek-cookbook/webhook-receiver:2.8.172e7e77f8091
stdlib@go1.21.3
1.25.12
1
ghcr.io/georgmangold/console:v1.8.158f4f180aa6e
stdlib@go1.24.4
1.25.12
1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
stdlib@go1.19.8
1.25.12
1
ghcr.io/getsentry/sentry-kubernetes:latestc88fec0dde4a
stdlib@go1.26.4
1.25.12
1
ghcr.io/gijsvandulmen/k8qu:1.4e897b18db13d
stdlib@go1.22.6
1.25.12
1
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
stdlib@go1.25.4
1.25.12
1
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
stdlib@go1.25.4
1.25.12
1
ghcr.io/glassflow/glassflow-etl-be:v3.2.020f066d0f631
stdlib@go1.25.0
1.25.12
1
ghcr.io/glassflow/glassflow-etl-migration:v3.2.07db1a1bf3dae
stdlib@go1.25.4
1.25.12
1
ghcr.io/glassflow/kafka-kerberos-gateway:latest2ae01c524a6e
stdlib@go1.21.13
1.25.12
1
ghcr.io/glauth/glauth:v2.5.209c782ca5984
stdlib@go1.25.0
1.25.12
1
ghcr.io/gnana997/periscope:1.1.621b284fb00f2
stdlib@go1.26.4
1.25.12
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
stdlib@go1.25.5
1.25.12
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
stdlib@go1.26.2
1.25.12
1
ghcr.io/gochain/rpc-proxy/rpc-proxy:latestca01f5ab95f7
stdlib@go1.23.11
1.25.12
1
ghcr.io/gomenhashai/gomenhashai:v1.3.36f031172a5ec
stdlib@go1.26.0
1.25.12
1
ghcr.io/gotify/server:2.6.104f4c4bb7cdd
stdlib@go1.23.3
1.25.12
1
ghcr.io/gotway/gotway:v0.0.137ed73c1979ee
stdlib@go1.18.3
1.25.12
1
ghcr.io/grafana/alloy-operator:1.3.02088dcb22aaa
stdlib@go1.24.5
1.25.12
1
ghcr.io/grafana/alloy-operator:1.7.02ce23f948e02
stdlib@go1.24.10
1.25.12
1
ghcr.io/grafana/alloy-operator:1.12.14ee4b71cf16a
stdlib@go1.26.4
1.25.12
1
ghcr.io/grafana/alloy-operator:1.8.1ae85d68749c7
stdlib@go1.25.8
1.25.12
1
ghcr.io/grafana/grafana-operator:v5.18.00af2faec9d6f
stdlib@go1.24.2
1.25.12
1
ghcr.io/grafana/grafana-operator:v5.22.2d45fc24e8f43
stdlib@go1.26.1
1.25.12
1
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
stdlib@go1.24.9
1.25.12
1
ghcr.io/grafana/tempo-operator/tempo-operator:v0.4.02627be646391
stdlib@go1.21.0
1.25.12
1
ghcr.io/grycap/oscar:latest0c58ff972451
stdlib@go1.25.11
1.25.12
1
ghcr.io/gurucomputing/headscale-ui:2026.03.17015f5ba04bcb
stdlib@go1.25.8
1.25.12
1
ghcr.io/haedalwang/kubescout:0.1.107d51f838f0d
stdlib@go1.25.5
1.25.12
1
ghcr.io/haydercyber/secrets-bridge:0.2.04709f1bb3039
stdlib@go1.24.13
1.25.12
1
ghcr.io/hay-kot/homebox:v0.9.2e6e0fbd7cca9
stdlib@go1.20.4
1.25.12
1
ghcr.io/headlamp-k8s/headlamp:v0.43.05d03caa26df7
stdlib@go1.26.3
1.25.12
1
ghcr.io/heimops/mimir-operator:latest4e1a3ef1fe82
stdlib@go1.24.13
1.25.12
1
ghcr.io/helm/chartmuseum:v0.16.071d1f1c0179e
stdlib@go1.20.4
1.25.12
1
ghcr.io/helm/chartmuseum:v0.14.0878ef6a31fa0
stdlib@go1.17.6
1.25.12
1
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
stdlib@go1.17.8
1.25.12
1
ghcr.io/helm/chartmuseum:v0.16.3c81f105c3682
stdlib@go1.24.1
1.25.12
1
ghcr.io/helmfile/helmfile:v1.8.01808ffb76f37
stdlib@go1.26.4
1.25.12
1
ghcr.io/henrywhitaker3/argo-zombies:v0.4.4316c397906c9
stdlib@go1.26.1
1.25.12
1
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
stdlib@go1.23.3
1.25.12
1
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
stdlib@go1.25.6
1.25.12
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.