StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,327
of 17,821 indexed, latest versions
Container images
5,001
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,327 of 17,821 indexed charts deploy, on 5,001 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.125,001
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,327 by stars
ChartLatestAffected imagesRadar Score
nfs-subdir-external-provisionerbook-k8sinfra-v24.0.181 of 1See more

nfs-subdir-external-provisioner book-k8sinfra-v2 4.0.18

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfs-subdir-external-provisioner:v4.0.03ce0fdba4d8e
stdlib@go1.15
1.25.12

Open the chart page →

2,746
prometheusbook-k8sinfra-v226.0.16 of 6See more

prometheus book-k8sinfra-v2 26.0.1

6 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prom/prometheus:v3.0.1565ee8650122
stdlib@go1.23.3
1.25.12
quay.io/prometheus-operator/prometheus-config-reloader:v0.78.2944b2c67345c
stdlib@go1.23.3
1.25.12
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
stdlib@go1.21.7
1.25.12
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.12
quay.io/prometheus/pushgateway:v1.10.07a4d0696a24e
stdlib@go1.23.1
1.25.12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.12

Open the chart page →

5,324
pyroscopebook-k8sinfra-v21.10.03 of 3See more

pyroscope book-k8sinfra-v2 1.10.0

3 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/alloy:v1.1.1c3dac4e26471
stdlib@go1.22.3
1.25.12
grafana/pyroscope:1.10.0319bf32ae06b
stdlib@go1.22.7
1.25.12
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
stdlib@go1.21.1
1.25.12

Open the chart page →

3,268
redisbook-k8sinfra-v21.0.01 of 1See more

redis book-k8sinfra-v2 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/redis:7.0.4091a7b5de688
stdlib@go1.16.7
1.25.12

Open the chart page →

1,732
tempobook-k8sinfra-v21.10.31 of 1See more

tempo book-k8sinfra-v2 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/tempo:2.5.0f0200a9bff6d
stdlib@go1.21.3
1.25.12

Open the chart page →

1,877
boundary-softsciboundary-softsci0.2.41 of 1See more

boundary-softsci boundary-softsci 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
hashicorp/boundary:latest76a201954ca0
stdlib@go1.25.7
1.25.12

Open the chart page →

879
branchdbbranch-dbVerified publisher0.1.42 of 3See more

branchdb branch-db 0.1.4

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/masucchi/branchdb:0.1.47ea1820c1da1
stdlib@go1.26.4
1.25.12
ghcr.io/masucchi/branchdb-operator:0.1.4c16578615a43
stdlib@go1.26.4
1.25.12

Open the chart page →

517
bitmagnetbrandan-schmitz-helm-chartsVerified publisher1.0.62 of 2See more

bitmagnet brandan-schmitz-helm-charts 1.0.6

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:16-alpine721873c34ceb
stdlib@go1.24.6
1.25.12
ghcr.io/bitmagnet-io/bitmagnet:v0.10.0cf2c16fac5b5
stdlib@go1.23.6
1.25.12

Open the chart page →

1,684
Filebrowserbrandan-schmitz-helm-chartsVerified publisher1.3.11 of 1See more

Filebrowser brandan-schmitz-helm-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.63.15-s6dbac07403040
stdlib@go1.26.4
1.25.12

Open the chart page →

989
pagesbrian-pages1.0.01 of 3See more

pages brian-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
pagesbrixton-mayuribhavsar23-pages1.0.01 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
pagesbrixton-pages1.0.01 of 3See more

pages brixton-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
tautullibryanalves0.1.01 of 1See more

tautulli bryanalves 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
tautulli/tautulli:latest670e68dd9efc
stdlib@go1.24.4
1.25.12

Open the chart page →

1,956
node-appbryopsida0.5.11 of 2See more

node-app bryopsida 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
stdlib@go1.24.3
1.25.12

Open the chart page →

73,199
buildkitbuildkit0.1.01 of 1See more

buildkit buildkit 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
moby/buildkit:master-rootless07115a67cd22
stdlib@go1.25.7
1.25.12

Open the chart page →

620
buildkit-privilegedbuildkit-privileged0.1.01 of 1See more

buildkit-privileged buildkit-privileged 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
moby/buildkit:masterbc964521ee58
stdlib@go1.25.7
1.25.12

Open the chart page →

403
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mongo:latest5d7043a4ffe0
stdlib@go1.24.6
1.25.12

Open the chart page →

11,605
butane-operatorbutane-operatorVerified publisher0.3.02 of 2See more

butane-operator butane-operator 0.3.0

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/naval-group/butane-operator:v0.1.1-rc285818b510780
stdlib@go1.26.0
1.25.12
registry.k8s.io/kubebuilder/kube-rbac-proxy:v0.16.0771a9a173e03
stdlib@go1.21.7
1.25.12

Open the chart page →

1,411
butlercibutlerciVerified publisher0.1.01 of 1See more

butlerci butlerci 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
etejeda/butlerci:0.1.0737d58183abc
stdlib@go1.16.3
1.25.12

Open the chart page →

2,375
accelerationbuttahtoastVerified publisher0.1.01 of 1See more

acceleration buttahtoast 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
goharbor/harbor-acceld:0.2.13451103a6c8d8
stdlib@go1.21.5
1.25.12

Open the chart page →

1,409
fluobuttahtoastVerified publisher0.1.01 of 1See more

fluo buttahtoast 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/flatcar/flatcar-linux-update-operator:v0.10.0-rc1f9063e20b1f6
stdlib@go1.20.6
1.25.12

Open the chart page →

1,299
kubermatic-operatorbuttahtoastVerified publisher2.24.51 of 1See more

kubermatic-operator buttahtoast 2.24.5

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/kubermatic/kubermatic:v2.24.5ebba936046ab
stdlib@go1.20.6
1.25.12

Open the chart page →

2,781
kubevirt-managerbuttahtoastVerified publisher0.1.31 of 1See more

kubevirt-manager buttahtoast 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
kubevirtmanager/kubevirt-manager:1.3.3df3ea27d4a9e
stdlib@go1.21.7
1.25.12

Open the chart page →

1,497
mariadbbysamioVerified publisher1.0.21 of 1See more

mariadb bysamio 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mariadb:12.0.2607835cd628b
stdlib@go1.24.6
1.25.12

Open the chart page →

2,978
miniobysamioVerified publisher1.0.31 of 1See more

minio bysamio 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
stdlib@go1.24.6
1.25.12

Open the chart page →

1,201
payloadboxbyteforkVerified publisher0.0.41 of 1See more

payloadbox bytefork 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/bytefork/payloadbox:0.0.73e0164e975b3
stdlib@go1.26.3
1.25.12

Open the chart page →

88
caddycaddyVerified publisher0.0.41 of 1See more

caddy caddy 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/caddy:2.11.2-alpine834468128c76
stdlib@go1.26.0
1.25.12

Open the chart page →

1,706
etcdcagriekinVerified publisher0.1.51 of 1See more

etcd cagriekin 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/coreos/etcd:v3.5.16d967d98a12dc
stdlib@go1.22.7
1.25.12

Open the chart page →

907
kafkacagriekinVerified publisher0.2.01 of 2See more

kafka cagriekin 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
danielqsj/kafka-exporter:v1.9.04150e46b2e96
stdlib@go1.24.0
1.25.12

Open the chart page →

2,404
rediscagriekinVerified publisher1.5.21 of 2See more

redis cagriekin 1.5.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.67.0120f7ec77293
stdlib@go1.23.4
1.25.12

Open the chart page →

1,428
ct-singlecalltelemetry0.8.44 of 7See more

ct-single calltelemetry 0.8.4

4 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/nats:2.8.4-alpine988010f74b61
stdlib@go1.17.10
1.25.12
natsio/nats-box:0.11.09fbf7bf684e4
stdlib@go1.18.1
1.25.12
natsio/nats-server-config-reloader:0.7.2911ce7ed2f55
stdlib@go1.19
1.25.12
natsio/prometheus-nats-exporter:0.10.016048afb67a5
stdlib@go1.19
1.25.12

Open the chart page →

10,714
stablecalltelemetry0.7.14 of 9See more

stable calltelemetry 0.7.1

4 of the 9 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/nats:2.8.4-alpine988010f74b61
stdlib@go1.17.10
1.25.12
natsio/nats-box:0.11.09fbf7bf684e4
stdlib@go1.18.1
1.25.12
natsio/nats-server-config-reloader:0.7.2911ce7ed2f55
stdlib@go1.19
1.25.12
natsio/prometheus-nats-exporter:0.10.016048afb67a5
stdlib@go1.19
1.25.12

Open the chart page →

7,706
stable-hacalltelemetry0.11.43 of 7See more

stable-ha calltelemetry 0.11.4

3 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/nats:2.10.12-alpinebca70839d953
stdlib@go1.21.8
1.25.12
natsio/nats-box:0.14.2e808e0644ce1
stdlib@go1.21.5
1.25.12
natsio/nats-server-config-reloader:0.14.10d50270fa374
stdlib@go1.20.5
1.25.12

Open the chart page →

4,706
pagescamden-pages1.0.01 of 3See more

pages camden-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
camellia-redis-proxycamellia-redis-proxy1.4.01 of 2See more

camellia-redis-proxy camellia-redis-proxy 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/redis:5.0fc5ecd863862
stdlib@go1.16.7
1.25.12

Open the chart page →

8,129
geoservercamptocamp20.0.31 of 12See more

geoserver camptocamp2 0.0.3

1 of the 12 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
stdlib@go1.18.2
1.25.12

Open the chart page →

88,815
bucket-clonercamptocamp31.0.41 of 1See more

bucket-cloner camptocamp3 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
camptocamp/bucket-cloner:latestacfafc308d88
stdlib@go1.16.5
1.25.12

Open the chart page →

4,527
getconfigcamptocamp30.1.11 of 1See more

getconfig camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.3.08c21390be87d
stdlib@go1.17.10
1.25.12

Open the chart page →

2,202
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/prometheus-puppetdb-sd:0.14.0414c0c99fd06
stdlib@go1.23.5
1.25.12

Open the chart page →

6,189
redisoperatorcamptocamp33.0.11 of 1See more

redisoperator camptocamp3 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/spotahome/redis-operator:latest8c772955184e
stdlib@go1.20.7
1.25.12

Open the chart page →

1,194
s3-exportercamptocamp32.2.01 of 1See more

s3-exporter camptocamp3 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ribbybibby/s3-exporter:v0.5.0998184c51a00
stdlib@go1.15.15
1.25.12

Open the chart page →

1,184
snyk-exportercamptocamp30.1.41 of 1See more

snyk-exporter camptocamp3 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/lunarway/snyk_exporter:v1.11.155e5cc5aaa0a
stdlib@go1.17.7
1.25.12

Open the chart page →

1,080
ssl-exportercamptocamp30.1.01 of 1See more

ssl-exporter camptocamp3 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ribbybibby/ssl-exporter:2.4.2718abe7f5e79
stdlib@go1.18.3
1.25.12

Open the chart page →

1,633
terraboardcamptocamp32.4.01 of 1See more

terraboard camptocamp3 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/terraboard:v2.3.0df53e2c8998c
stdlib@go1.21.3
1.25.12

Open the chart page →

1,337
apachecamptocamp-apache0.4.01 of 2See more

apache camptocamp-apache 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/lusitaniae/apache-exporter:latest438b1b6177eb
stdlib@go1.25.11
1.25.12

Open the chart page →

1,534
caninecanine0.1.106 of 7See more

canine canine 0.1.10

6 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/traefik:v3.7.16b9cbca6fac4
stdlib@go1.25.10
1.25.12
ghcr.io/caninehq/canine:latesta058034ca006
stdlib@go1.22.7
1.25.12
quay.io/jetstack/cert-manager-cainjector:v1.15.3e0ce8ae280c8
stdlib@go1.22.5
1.25.12
quay.io/jetstack/cert-manager-controller:v1.15.3eee34b3de2dd
stdlib@go1.22.5
1.25.12
quay.io/jetstack/cert-manager-startupapicheck:v1.15.34cbc1b022a23
stdlib@go1.22.5
1.25.12
quay.io/jetstack/cert-manager-webhook:v1.15.3fdcb9ac4963f
stdlib@go1.22.5
1.25.12

Open the chart page →

14,442
cert-managercanine1.15.34 of 4See more

cert-manager canine 1.15.3

4 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.15.3e0ce8ae280c8
stdlib@go1.22.5
1.25.12
quay.io/jetstack/cert-manager-controller:v1.15.3eee34b3de2dd
stdlib@go1.22.5
1.25.12
quay.io/jetstack/cert-manager-startupapicheck:v1.15.34cbc1b022a23
stdlib@go1.22.5
1.25.12
quay.io/jetstack/cert-manager-webhook:v1.15.3fdcb9ac4963f
stdlib@go1.22.5
1.25.12

Open the chart page →

2,909
traefikcanine40.2.01 of 1See more

traefik canine 40.2.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/traefik:v3.7.16b9cbca6fac4
stdlib@go1.25.10
1.25.12

Open the chart page →

1,058
capi2argo-cluster-operatorcapi2argo1.5.01 of 1See more

capi2argo-cluster-operator capi2argo 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/dntosas/capi2argo-cluster-operator:v1.5.0fb8c6457ef6e
stdlib@go1.25.6
1.25.12

Open the chart page →

281
capsule-argo-addoncapsule-argo-addonVerified publisher0.7.52 of 2See more

capsule-argo-addon capsule-argo-addon 0.7.5

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
stdlib@go1.22.5
1.25.12
ghcr.io/peak-scale/capsule-argo-addon:0.7.5087a80163971
stdlib@go1.24.13
1.25.12

Open the chart page →

2,080

Container images carrying it

5,001 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
stdlib@go1.23.7
1.25.12
1
ghcr.io/linuxoid69/school-bot:v0.3.3c8872438f1e0
stdlib@go1.23.3
1.25.12
1
ghcr.io/linuxserver/calibre-web:latest0767226fcf20
stdlib@go1.17.8
1.25.12
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
stdlib@go1.17.8
1.25.12
1
ghcr.io/linuxserver/code-server:version-v3.11.1a385ba5cb161
stdlib@go1.16.4
1.25.12
1
ghcr.io/linuxserver/digikam:version-7.3.055b4c7f320ae
stdlib@go1.16.9
1.25.12
1
ghcr.io/linuxserver/doublecommander:version-0.8.2-1d92969a929c2
stdlib@go1.16.9
1.25.12
1
ghcr.io/linuxserver/duplicati:lateste1fdac6133ad
stdlib@go1.24.9
1.25.12
1
ghcr.io/linuxserver/filezilla:version-3.51.0-r15103cdd266ce
stdlib@go1.15.12
1.25.12
1
ghcr.io/linuxserver/mstream:version-v5.2.522c012bcc43c
stdlib@go1.15.5
1.25.12
1
ghcr.io/linuxserver/remmina:version-1.2.0-rcgit.29dfsg-1ubuntu105955792e00f
stdlib@go1.17.11
1.25.12
1
ghcr.io/linuxserver/sqlitebrowser:version-3.12.2-02876202105241947ubuntu18.04.1426e79828c4b
stdlib@go1.16.12
1.25.12
1
ghcr.io/lldap/lldap:2025-05-193de697c3ba57
stdlib@go1.18.2
1.25.12
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
stdlib@go1.24.3
1.25.12
1
ghcr.io/lloesche/valheim-server:latestc885aa902faf
stdlib@go1.24.1
1.25.12
1
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
stdlib@go1.22.5
1.25.12
1
ghcr.io/loafoe/go-hello-world:v2.13.0d3fb171f20e1
stdlib@go1.25.3
1.25.12
1
ghcr.io/loafoe/go-ocpp-server:v0.2.145bb960674ab
stdlib@go1.21.13
1.25.12
1
ghcr.io/loafoe/mcp-notifier:v0.2.0ea958b832415
stdlib@go1.26.4
1.25.12
1
ghcr.io/loafoe/mt-mcp-grafana:v0.1.12332d9b47475
stdlib@go1.26.2
1.25.12
1
ghcr.io/loafoe/mt-mcp-proxy:v0.1.0221835f9340f
stdlib@go1.26.4
1.25.12
1
ghcr.io/loafoe/picoclaw:v0.0.1942e1b6862913
stdlib@go1.26.2
1.25.12
1
ghcr.io/loafoe/solgate:v0.0.12b3256cbc7b68
stdlib@go1.21.0
1.25.12
1
ghcr.io/lockdep/stackradar-scanner:0.4.073cbeb990cf4
stdlib@go1.25.7
1.25.12
1
ghcr.io/loft-sh/agent:3.2.45c109914ff73
stdlib@go1.18.10
1.25.12
1
ghcr.io/loft-sh/central-hostpath-mapper:0.2.9fa6dba122171
stdlib@go1.23.2
1.25.12
1
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
stdlib@go1.20.10
1.25.12
1
ghcr.io/loft-sh/kubernetes:v1.35.090097a08b87c
stdlib@go1.24.11
1.25.12
1
ghcr.io/loft-sh/license-server:0.6.069ce001bb4b0
stdlib@go1.24.3
1.25.12
1
ghcr.io/loft-sh/loft:0.0.0-ci.14b69bcdaa8492
stdlib@go1.20.7
1.25.12
1
ghcr.io/loft-sh/vcluster:0.16.484f70425f4dd
stdlib@go1.20.8
1.25.12
1
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
stdlib@go1.22.0
1.25.12
1
ghcr.io/loft-sh/vcluster-hpm:0.2.7f65f6810ea23
stdlib@go1.24.2
1.25.12
1
ghcr.io/loft-sh/vcluster-platform:4.12.19bc88940affc
stdlib@go1.26.3
1.25.12
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
stdlib@go1.24.2
1.25.12
1
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
stdlib@go1.23.12
1.25.12
1
ghcr.io/loxilb-io/loxilb:latesta475b43946b3
stdlib@go1.22.5
1.25.12
1
ghcr.io/luisico/cert-manager-webhook-infoblox-wapi:1.5ded797477896
stdlib@go1.16.15
1.25.12
1
ghcr.io/lukaszraczylo/jobs-manager-operator:0.1.15e6239e2838d7
stdlib@go1.25.0
1.25.12
1
ghcr.io/lukaszraczylo/kubemirror:0.9.2265f266df3289
stdlib@go1.26.4
1.25.12
1
ghcr.io/lukaszraczylo/kubernetes-images-sync-operator:0.5.57a424948c8143
stdlib@go1.25.5
1.25.12
1
ghcr.io/luzifer/cert-manager-desec-webhook:v1.0.1fa1f6b2e9a6e
stdlib@go1.23.4
1.25.12
1
ghcr.io/luzifer/ots:v1.21.5c94f6c9ed173
stdlib@go1.26.2
1.25.12
1
ghcr.io/luzilla/dnsbl_exporter:v0.7.0-rc3d9767232a55e
stdlib@go1.20.14
1.25.12
1
ghcr.io/luzilla/dnsbl_exporter:v0.12.0ecba7360ff12
stdlib@go1.25.0
1.25.12
1
ghcr.io/m0nsterrr/as212510.net:v4.0.4e7b1d39c0dbc
stdlib@go1.26.4
1.25.12
1
ghcr.io/m0nsterrr/cert-manager-webhook-infomaniak:v0.1.5990dbf506d41
stdlib@go1.26.4
1.25.12
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
stdlib@go1.21.5
1.25.12
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
stdlib@go1.20.12
1.25.12
1
ghcr.io/madeddie/opds-aggregator:latest60c56021c552
stdlib@go1.24.13
1.25.12
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.