StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,298
of 17,821 indexed, latest versions
Container images
4,958
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,298 of 17,821 indexed charts deploy, on 4,958 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+188 more1.25.124,958
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,298 by stars
ChartLatestAffected imagesRadar Score
rabbitmq-cluster-operatoralekcVerified publisher2.9.01 of 1See more

rabbitmq-cluster-operator alekc 2.9.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
rabbitmqoperator/cluster-operator:2.19.2840be4bad78e
stdlib@go1.25.8
1.25.12

Open the chart page →

257
smokeping-exporteralekcVerified publisher0.3.01 of 1See more

smokeping-exporter alekc 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/superq/smokeping-prober:v0.12.02524b895bdae
stdlib@go1.26.4
1.25.12

Open the chart page →

298
valkey-operatoralekcVerified publisher0.4.01 of 1See more

valkey-operator alekc 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/hyperspike/valkey-operator:v0.0.617d8c669f11a4
stdlib@go1.25.2
1.25.12

Open the chart page →

333
vault-operatoralekcVerified publisher1.26.11 of 1See more

vault-operator alekc 1.26.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/bank-vaults/vault-operator:v1.24.06f622c5fb8a9
stdlib@go1.26.3
1.25.12

Open the chart page →

543
mautrix-signalalexanderbadel0.1.11 of 2See more

mautrix-signal alexanderbadel 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
signald/signald:0.18.20ffad7ccc2eb
stdlib@go1.18.1
1.25.12

Open the chart page →

2,099
qbittorrentalexmorbo-qbittorrentVerified publisher1.2.11 of 1See more

qbittorrent alexmorbo-qbittorrent 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:36bfc606bba2064de6ede0ff2764cbb52edff70dba6f0b4cf6c8
stdlib@go1.20.2
1.25.12

Open the chart page →

889
quialexmorbo-quiVerified publisher0.1.01 of 1See more

qui alexmorbo-qui 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/autobrr/qui:v1.14.110b7945d4f09
stdlib@go1.25.7
1.25.12

Open the chart page →

1,619
slskdalexmorbo-slskdVerified publisher0.3.01 of 1See more

slskd alexmorbo-slskd 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
stdlib@go1.22.2
1.25.12

Open the chart page →

1,756
gotifyalexvanderberkelVerified publisher0.7.11 of 1See more

gotify alexvanderberkel 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/gotify/server:3.1.144fc5bbd1c06
stdlib@go1.26.0
1.25.12

Open the chart page →

320
alluredeckalluredeckVerified publisher0.24.01 of 2See more

alluredeck alluredeck 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/mkutlak/alluredeck-api:0.41.0fa429df90c68
stdlib@go1.26.4
1.25.12

Open the chart page →

1,301
book-serveral-masood-helm-charts0.1.01 of 1See more

book-server al-masood-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
almasood/book-server:latest6ffac9b63cdf
stdlib@go1.24.6
1.25.12

Open the chart page →

494
gitlab-code-review-notifieralmorgvVerified publisher0.1.21 of 2See more

gitlab-code-review-notifier almorgv 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
almorgv/gitlab-code-review-notifier:0.1.25f2a7d2b44d8
stdlib@go1.14.15
1.25.12

Open the chart page →

2,116
flux-suspension-exporteralpineworks0.1.11 of 1See more

flux-suspension-exporter alpineworks 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/flux-suspension-exporter:v1.0.0341f0a6cd2b6
stdlib@go1.24.0
1.25.12

Open the chart page →

572
flux-suspensions-exporteralpineworks0.1.01 of 1See more

flux-suspensions-exporter alpineworks 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/flux-suspension-exporter:v1.0.0341f0a6cd2b6
stdlib@go1.24.0
1.25.12

Open the chart page →

572
glancealpineworks0.1.11 of 1See more

glance alpineworks 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
glanceapp/glance:v0.8.46df86a7e8868
stdlib@go1.24.3
1.25.12

Open the chart page →

1,152
ipalpineworks0.1.21 of 1See more

ip alpineworks 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/ip:v1.0.04e0d4d51f0bc
stdlib@go1.24.2
1.25.12

Open the chart page →

548
katalogalpineworks0.1.22 of 5See more

katalog alpineworks 0.1.2

2 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/katalog-backend:v1.0.77e7a26393cd1
stdlib@go1.23.3
1.25.12
ghcr.io/alpineworks/katalog-migrations:v1.0.562c44a384e13
stdlib@go1.23.1
1.25.12

Open the chart page →

4,576
katalog-agentalpineworks0.1.21 of 1See more

katalog-agent alpineworks 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/katalog-agent:v1.0.48f50bd568c2b
stdlib@go1.23.3
1.25.12

Open the chart page →

590
versitygwalpineworks0.1.21 of 1See more

versitygw alpineworks 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
versity/versitygw:v1.0.145192635d0353
stdlib@go1.24.3
1.25.12

Open the chart page →

1,261
versitygw-webhook-pulsar-proxyalpineworks0.1.11 of 1See more

versitygw-webhook-pulsar-proxy alpineworks 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/versitygw-webhook-pulsar-proxy:v1.0.06e9ced773732
stdlib@go1.24.4
1.25.12

Open the chart page →

908
pagesalstom-pages-app1.0.01 of 3See more

pages alstom-pages-app 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,285
amorphieamorphie0.1.28 of 18See more

amorphie amorphie 0.1.2

8 of the 18 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
burganbank/vault-initializer:v19259c34e4037
stdlib@go1.22.2
1.25.12
daprio/dashboard:0.14.07ba5d51e5b97
stdlib@go1.19.13
1.25.12
daprio/injector:1.11.2763b9b70b0c8
stdlib@go1.20.6
1.25.12
daprio/operator:1.11.2c584428aa12d
stdlib@go1.20.6
1.25.12
daprio/placement:1.11.2d8e1446da996
stdlib@go1.20.6
1.25.12
daprio/sentry:1.11.21f507c1a181b
stdlib@go1.20.6
1.25.12
hashicorp/vault:1.15.26b4e5dadf082
stdlib@go1.21.3
1.25.12
hashicorp/vault-k8s:1.3.15d74a885ae3e
stdlib@go1.21.3
1.25.12

Open the chart page →

28,437
sliding-sync-proxyananace-chartsVerified publisher0.2.131 of 2See more

sliding-sync-proxy ananace-charts 0.2.13

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
stdlib@go1.20.14
1.25.12

Open the chart page →

1,607
anchore-admission-controlleranchore-charts0.9.01 of 2See more

anchore-admission-controller anchore-charts 0.9.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
stdlib@go1.20.14
1.25.12

Open the chart page →

7,644
kaianchore-charts0.5.11 of 1See more

kai anchore-charts 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
anchore/kai:v0.5.08aad6d0912dd
stdlib@go1.19.7
1.25.12

Open the chart page →

1,326
cert-manager-webhook-inwxandibraeuVerified publisher0.9.01 of 1See more

cert-manager-webhook-inwx andibraeu 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/andibraeu/cert-manager-webhook-inwx:v0.9.0f015e745983e
stdlib@go1.25.7
1.25.12

Open the chart page →

607
music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
stdlib@go1.25.7
1.25.12

Open the chart page →

5,919
buildkit-serviceandrcunsVerified publisher1.8.01 of 1See more

buildkit-service andrcuns 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
moby/buildkit:v0.31.0a095b3d11ce1
stdlib@go1.26.4
1.25.12

Open the chart page →

1,300
pagesandrei-pages1.0.01 of 3See more

pages andrei-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,285
terjangandylibrianVerified publisher0.0.31 of 1See more

terjang andylibrian 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/andylibrian/terjang:latest20a46b199247
stdlib@go1.16.4
1.25.12

Open the chart page →

1,986
chirpstack-packet-multiplexerangelnu3.0.01 of 1See more

chirpstack-packet-multiplexer angelnu 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/angelnu/chirpstack-packet-multiplexer:latest0c84c2d71006
stdlib@go1.13.15
1.25.12

Open the chart page →

2,240
dnsmadeeasy-webhookangelnu6.0.71 of 1See more

dnsmadeeasy-webhook angelnu 6.0.7

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/angelnu/dnsmadeeasy-webhook:v1.9.0a5ca158b1f02
stdlib@go1.24.1
1.25.12

Open the chart page →

818
games-on-whalesangelnu2.0.01 of 7See more

games-on-whales angelnu 2.0.0

1 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
stdlib@go1.18.2
1.25.12

Open the chart page →

118,407
maddyangelnu5.0.01 of 1See more

maddy angelnu 5.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/foxcpp/maddy:0.9.5de42151adff6
stdlib@go1.23.12
1.25.12

Open the chart page →

919
cert-manager-webhook-safednsansgroupVerified publisher1.3.01 of 1See more

cert-manager-webhook-safedns ansgroup 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ansgroup/cert-manager-webhook-safedns:v1.0.1cd6b0ef2b309
stdlib@go1.13.15
1.25.12

Open the chart page →

2,496
ddosifyanteonVerified publisher1.7.55 of 13See more

ddosify anteon 1.7.5

5 of the 13 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
chrislusf/seaweedfs:3.56ed80f00fde46
stdlib@go1.20.8
1.25.12
ddosify/selfhosted_hammer:1.4.2a97a1b8a66af
stdlib@go1.18.1
1.25.12
library/influxdb:2.6.1-alpine44a366dd7724
stdlib@go1.19.4
1.25.12
library/redis:7.2.4-alpinec8bb255c3559
stdlib@go1.18.2
1.25.12
prom/prometheus:v2.37.98176adea328e
stdlib@go1.19.11
1.25.12

Open the chart page →

26,306
antmediaantmediaVerified publisher3.1.03 of 4See more

antmedia antmedia 3.1.0

3 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mongo:8.002a0cc7939f5
stdlib@go1.24.6
1.25.12
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
stdlib@go1.19.2
1.25.12
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.25.12

Open the chart page →

4,644
ingress-nginxantmediaVerified publisher4.4.02 of 2See more

ingress-nginx antmedia 4.4.0

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
stdlib@go1.19.2
1.25.12
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.25.12

Open the chart page →

3,324
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:latestac461fb352ab
stdlib@go1.26.4
1.25.12

Open the chart page →

2,480
nfs-server-provisioneranvibo1.3.01 of 1See more

nfs-server-provisioner anvibo 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
stdlib@go1.15
1.25.12

Open the chart page →

2,731
glauthanza-labsVerified publisher1.0.11 of 1See more

glauth anza-labs 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/glauth/glauth:v2.5.209c782ca5984
stdlib@go1.25.0
1.25.12

Open the chart page →

1,327
apipingapiping1.5.01 of 1See more

apiping apiping 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
udhos/apiping:1.5.041ab9bae6f3b
stdlib@go1.25.4
1.25.12

Open the chart page →

1,151
apishiftapishiftVerified publisher0.3.01 of 4See more

apishift apishift 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
stdlib@go1.23.6
1.25.12

Open the chart page →

2,996
api-usage-cleanerapi-usage-cleaner1.16.01 of 1See more

api-usage-cleaner api-usage-cleaner 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/api-usage-cleaner:1.16.0d47f43484055
stdlib@go1.23.12
1.25.12

Open the chart page →

596
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.12
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.12

Open the chart page →

19,830
app-mobilityappmo0.1.03 of 5See more

app-mobility appmo 0.1.0

3 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
stdlib@go1.18.5
1.25.12
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
stdlib@go1.18.5
1.25.12
velero/velero:v1.8.18d784580931c
stdlib@go1.16.6
1.25.12

Open the chart page →

12,562
app-movies-seriesapp-movies-seriesVerified publisher0.1.01 of 2See more

app-movies-series app-movies-series 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:14.32d1e636f0778
stdlib@go1.16.7
1.25.12

Open the chart page →

3,170
accounts-uiappscodeVerified publisher2026.9.111 of 1See more

accounts-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
stdlib@go1.25.3
1.25.12

Open the chart page →

2,716
aceappscodeVerified publisher2026.9.112 of 2See more

ace appscode 2026.9.11

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
stdlib@go1.25.3
1.25.12
ghcr.io/appscode/kubectl-nonroot:1.340b26892cec94
stdlib@go1.24.13
1.25.12

Open the chart page →

3,018
ace-installerappscodeVerified publisher2026.9.112 of 2See more

ace-installer appscode 2026.9.11

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/registry:3.1.11be55279f18a
stdlib@go1.25.9
1.25.12
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
stdlib@go1.25.3
1.25.12

Open the chart page →

3,374

Container images carrying it

4,958 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/loft-sh/loft:0.0.0-ci.14b69bcdaa8492
stdlib@go1.20.7
1.25.12
1
ghcr.io/loft-sh/vcluster:0.16.484f70425f4dd
stdlib@go1.20.8
1.25.12
1
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
stdlib@go1.22.0
1.25.12
1
ghcr.io/loft-sh/vcluster-hpm:0.2.7f65f6810ea23
stdlib@go1.24.2
1.25.12
1
ghcr.io/loft-sh/vcluster-platform:4.12.19bc88940affc
stdlib@go1.26.3
1.25.12
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
stdlib@go1.24.2
1.25.12
1
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
stdlib@go1.23.12
1.25.12
1
ghcr.io/luisico/cert-manager-webhook-infoblox-wapi:1.5ded797477896
stdlib@go1.16.15
1.25.12
1
ghcr.io/lukaszraczylo/jobs-manager-operator:0.1.15e6239e2838d7
stdlib@go1.25.0
1.25.12
1
ghcr.io/lukaszraczylo/kubemirror:0.9.2265f266df3289
stdlib@go1.26.4
1.25.12
1
ghcr.io/lukaszraczylo/kubernetes-images-sync-operator:0.5.57a424948c8143
stdlib@go1.25.5
1.25.12
1
ghcr.io/luzifer/cert-manager-desec-webhook:v1.0.1fa1f6b2e9a6e
stdlib@go1.23.4
1.25.12
1
ghcr.io/luzifer/ots:v1.21.5c94f6c9ed173
stdlib@go1.26.2
1.25.12
1
ghcr.io/luzilla/dnsbl_exporter:v0.7.0-rc3d9767232a55e
stdlib@go1.20.14
1.25.12
1
ghcr.io/luzilla/dnsbl_exporter:v0.12.0ecba7360ff12
stdlib@go1.25.0
1.25.12
1
ghcr.io/m0nsterrr/as212510.net:v4.0.4e7b1d39c0dbc
stdlib@go1.26.4
1.25.12
1
ghcr.io/m0nsterrr/cert-manager-webhook-infomaniak:v0.1.5990dbf506d41
stdlib@go1.26.4
1.25.12
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
stdlib@go1.21.5
1.25.12
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
stdlib@go1.20.12
1.25.12
1
ghcr.io/madeddie/opds-aggregator:latest60c56021c552
stdlib@go1.24.13
1.25.12
1
ghcr.io/mailcow/prometheus-exporter:2.1.0cb76395b84eb
stdlib@go1.23.12
1.25.12
1
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
stdlib@go1.22.7
1.25.12
1
ghcr.io/manzil-infinity180/frontend-dumpstore:226f28ca3efa6d3691044813cd09085e28d4a7b44e6394b715d9
stdlib@go1.20.12
1.25.12
1
ghcr.io/martabal/qbittorrent-exporter:v2.0.1ddf2bff9b357
stdlib@go1.26.3
1.25.12
1
ghcr.io/marthydavid/kafka-keda-golang-consumer:0.0.4e07644865dd1
stdlib@go1.23.0
1.25.12
1
ghcr.io/marthydavid/kafka-keda-golang-producer:0.0.454b242c7bf2b
stdlib@go1.23.0
1.25.12
1
ghcr.io/masucchi/branchdb:0.1.47ea1820c1da1
stdlib@go1.26.4
1.25.12
1
ghcr.io/masucchi/branchdb-operator:0.1.4c16578615a43
stdlib@go1.26.4
1.25.12
1
ghcr.io/matanbaruch/cursor-admin-api-exporter:0.1.8ba3a29fc479a
stdlib@go1.24.5
1.25.12
1
ghcr.io/matrix-org/dendrite-monolith:v0.9.43267d27d392f
stdlib@go1.18.5
1.25.12
1
ghcr.io/mattn/picoclaw:latest517556c8b144
stdlib@go1.26.0
1.25.12
1
ghcr.io/mcman2017/qt-vault:v0.1.2852edf54c850
stdlib@go1.24.11
1.25.12
1
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
stdlib@go1.24.4
1.25.12
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
stdlib@go1.24.4
1.25.12
1
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
stdlib@go1.24.4
1.25.12
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
stdlib@go1.19.8
1.25.12
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
stdlib@go1.24.4
1.25.12
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
stdlib@go1.24.0
1.25.12
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
stdlib@go1.24.0
1.25.12
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
stdlib@go1.23.1
1.25.12
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
stdlib@go1.23.1
1.25.12
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
stdlib@go1.22.3
1.25.12
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
stdlib@go1.13.4
1.25.12
1
ghcr.io/mesosphere/dkp-container-images/objectstorage-controller:v0.2.23c708e508197
stdlib@go1.24.11
1.25.12
1
ghcr.io/metio/jaas:2026.6.15e28772028e56
stdlib@go1.26.4
1.25.12
1
ghcr.io/metio/stageset-controller:2026.6.14234b66bb3319
stdlib@go1.26.4
1.25.12
1
ghcr.io/metrico/gigapipe:v4.1.6caeb2652ce5e
stdlib@go1.26.2
1.25.12
1
ghcr.io/mgumz/mtr-exporter:0.4.0f4691c8fe8eb
stdlib@go1.22.8
1.25.12
1
ghcr.io/middleware-labs/agent-kube-go:dev17369c4cd390
stdlib@go1.18.9
1.25.12
1
ghcr.io/middleware-labs/mw-auto-injector:0.1.18512248e17e8
stdlib@go1.23.12
1.25.12
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.