StackRadar

CVE-2026-39822

Unscored

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,327
of 17,821 indexed, latest versions
Container images
5,001
deployed by those charts
Fix available
1 of 1
affected package

Root escape via symlink plus trailing slash in os

Carried by container images the latest versions of 4,327 of 17,821 indexed charts deploy, on 5,001 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.125,001
OSV records
GO-2026-4970
Also known as
BIT-golang-2026-39822

Charts affected

4,327 by stars
ChartLatestAffected imagesRadar Score
appmesh-jaegeraws1.0.31 of 1See more

appmesh-jaeger aws 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.2942822be7888b
stdlib@go1.17.3
1.25.12

Open the chart page →

2,488
appmesh-prometheusaws1.0.31 of 2See more

appmesh-prometheus aws 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.25.12

Open the chart page →

2,947
aws-node-termination-handler-2aws0.2.02 of 2See more

aws-node-termination-handler-2 aws 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/controller:v2.0.0-beta9637c80dd23f
stdlib@go1.19.3
1.25.12
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/webhook:v2.0.0-beta86b0f7243250
stdlib@go1.19.3
1.25.12

Open the chart page →

2,967
aws-sigv4-proxy-admission-controlleraws0.1.21 of 1See more

aws-sigv4-proxy-admission-controller aws 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
public.ecr.aws/aws-observability/aws-sigv4-proxy-admission-controller:1.067b89ae52240
stdlib@go1.15.3
1.25.12

Open the chart page →

2,141
axelor-open-suiteaxelor-open-suiteVerified publisher7.2.581 of 2See more

axelor-open-suite axelor-open-suite 7.2.58

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
stdlib@go1.21.2
1.25.12

Open the chart page →

9,740
axonops-developer-operatoraxonops-developer-operator0.1.01 of 1See more

axonops-developer-operator axonops-developer-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/axonops/axonops-developer-operator:v0.1.0b3d6600c8ba5
stdlib@go1.22.10
1.25.12

Open the chart page →

750
axonops-operatoraxonops-operator0.1.01 of 1See more

axonops-operator axonops-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/axonops/axonops-operator:0.1.0e0cdb993f0b1
stdlib@go1.25.9
1.25.12

Open the chart page →

312
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
stdlib@go1.17.9
1.25.12

Open the chart page →

4,577
azurefile-csi-driverazurefile-csi-driverVerified publisher1.35.71 of 7See more

azurefile-csi-driver azurefile-csi-driver 1.35.7

1 of the 7 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/azurefile-csi:v1.35.7c3c80b940df6
stdlib@go1.25.11
1.25.12

Open the chart page →

657
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
stdlib@go1.15
1.25.12

Open the chart page →

5,566
helm-controllerazureorkestra0.1.12 of 2See more

helm-controller azureorkestra 0.1.1

2 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
fluxcd/helm-controller:v0.9.092b891e495d8
stdlib@go1.15.10
1.25.12
fluxcd/source-controller:v0.10.031a8c79a6803
stdlib@go1.15.10
1.25.12

Open the chart page →

7,726
keptn-addonsazureorkestra0.1.04 of 4See more

keptn-addons azureorkestra 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
keptn/distributor:0.8.36bc3df9e0d6a
stdlib@go1.16.2
1.25.12
keptn/distributor:0.8.472e17527a4f9
stdlib@go1.16.2
1.25.12
keptncontrib/prometheus-service:0.6.029969dd547de
stdlib@go1.13.7
1.25.12
keptnsandbox/job-executor-service:0.1.36e6d323dd7ae
stdlib@go1.16.2
1.25.12

Open the chart page →

10,633
prometheusazureorkestra14.8.05 of 6See more

prometheus azureorkestra 14.8.0

5 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.12
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.25.12
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.12
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
stdlib@go1.15.8
1.25.12
quay.io/prometheus/prometheus:v2.26.038d40a760569
stdlib@go1.16.2
1.25.12

Open the chart page →

9,675
webserverazureorkestra1.0.01 of 1See more

webserver azureorkestra 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
nmalhotr/webserver:v1.0.03419361fb0dd
stdlib@go1.13.10
1.25.12

Open the chart page →

3,038
krakendbaboulinet0.1.341 of 1See more

krakend baboulinet 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
devopsfaith/krakend:2.7.09219cda867e2
stdlib@go1.22.5
1.25.12

Open the chart page →

1,323
ragflowbaboulinet0.1.12 of 5See more

ragflow baboulinet 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.0.39ccb8f749bb5e
stdlib@go1.18.2
1.25.12
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
stdlib@go1.21.5
1.25.12

Open the chart page →

6,089
prometheus-blackbox-exporterbackbox-exporter7.8.01 of 1See more

prometheus-blackbox-exporter backbox-exporter 7.8.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.23.0ca04aa9d9093
stdlib@go1.19.3
1.25.12

Open the chart page →

1,502
backlokto-operatorbacklokto0.0.11 of 1See more

backlokto-operator backlokto 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
piblokto/backlokto-operator:v0.0.20963cda71e393
stdlib@go1.20.14
1.25.12

Open the chart page →

694
backup-operatorbackup-operatorVerified publisher1.2.31 of 1See more

backup-operator backup-operator 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/universal-backup-operator/backup-operator:1.2.306292b289dda
stdlib@go1.22.4
1.25.12

Open the chart page →

862
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
conduction/balance-registration-php:devc36094a41369
stdlib@go1.13.10
1.25.12

Open the chart page →

8,419
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
stdlib@go1.24.4
1.25.12

Open the chart page →

4,015
qbittorrent-vpnbdclark-helm-chartsVerified publisher0.7.61 of 2See more

qbittorrent-vpn bdclark-helm-charts 0.7.6

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
qmcgaw/gluetun:v3.41.11a5bf4b4820a
stdlib@go1.25.7
1.25.12

Open the chart page →

1,011
bluesky-pdsbear0.4.2081 of 1See more

bluesky-pds bear 0.4.208

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
stdlib@go1.25.7
1.25.12

Open the chart page →

2,154
helm-samplebehnambm-helm-chart1.0.11 of 3See more

helm-sample behnambm-helm-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.12

Open the chart page →

2,702
berichtserviceberichtservice1.0.01 of 3See more

berichtservice berichtservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
stdlib@go1.13.10
1.25.12

Open the chart page →

7,354
pagesberrutig-pages1.0.01 of 3See more

pages berrutig-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.12

Open the chart page →

20,287
trident-operatorberyju-org21.10.01 of 1See more

trident-operator beryju-org 21.10.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
netapp/trident-operator:21.10.049cfe552d9c2
stdlib@go1.16.9
1.25.12

Open the chart page →

2,079
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
stdlib@go1.25.3
1.25.12

Open the chart page →

7,438
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
stdlib@go1.25.3
1.25.12

Open the chart page →

5,308
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
stdlib@go1.17.6
1.25.12

Open the chart page →

74,996
mx-notifierbicarus-labs1.1.91 of 1See more

mx-notifier bicarus-labs 1.1.9

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bicarus/mx-notifier:1.1.8bed688d16762
stdlib@go1.17.6
1.25.12

Open the chart page →

3,785
wg-access-serverbicarus-labs0.9.91 of 1See more

wg-access-server bicarus-labs 0.9.9

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bicarus/wg-access-server:v0.8.206cab48e9334
stdlib@go1.19.3
1.25.12

Open the chart page →

2,756
tenzu-frontbiru-scop3.1.01 of 1See more

tenzu-front biru-scop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
stdlib@go1.26.3
1.25.12

Open the chart page →

863
bitpokebitpokeVerified publisher1.8.191 of 1See more

bitpoke bitpoke 1.8.19

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
stdlib@go1.21.1
1.25.12

Open the chart page →

2,271
stackbitpokeVerified publisher0.12.46 of 6See more

stack bitpoke 0.12.4

6 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
stdlib@go1.17.13
1.25.12
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
stdlib@go1.19.9
1.25.12
bitpoke/stack-default-backend:latestc5eed1ddf692
stdlib@go1.16.6
1.25.12
bitpoke/wordpress-operator:v0.12.27fb3aad37b5f
stdlib@go1.17.13
1.25.12
registry.k8s.io/ingress-nginx/controller:v1.3.154f7fe2c6c5a
stdlib@go1.18.2
1.25.12
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.3.0549e71a6ca24
stdlib@go1.18.2
1.25.12

Open the chart page →

9,904
wordpress-operatorbitpokeVerified publisher0.12.41 of 1See more

wordpress-operator bitpoke 0.12.4

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bitpoke/wordpress-operator:v0.12.421284d1df473
stdlib@go1.17.13
1.25.12

Open the chart page →

1,124
baserowblackbird-cloudVerified publisher1.0.172 of 6See more

baserow blackbird-cloud 1.0.17

2 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
stdlib@go1.19.8
1.25.12
caddy/ingress:v0.2.118d1366fc0e9
stdlib@go1.21.4
1.25.12

Open the chart page →

10,240
prometheus-domain-exporterblackbox-domain-exporter1.0.01 of 1See more

prometheus-domain-exporter blackbox-domain-exporter 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
bulich/domain-exporter:latest6d0b780f7c7b
stdlib@go1.20.4
1.25.12

Open the chart page →

1,409
bdbablackduck2026.6.34 of 9See more

bdba blackduck 2026.6.3

4 of the 9 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
blackducksoftware/bdba-pgupgrader:2026.6.35c97f3a3f8b7
stdlib@go1.18.2
1.25.12
library/postgres:15.18-bookworme8db9bd3e9e1
stdlib@go1.24.6
1.25.12
library/rabbitmq:4.2.87561d672fae4
stdlib@go1.22.2
1.25.12
versity/versitygw:v1.6.0d6ec798f66ca
stdlib@go1.26.4
1.25.12

Open the chart page →

9,974
blackduck-alertblackduck8.4.01 of 4See more

blackduck-alert blackduck 8.4.0

1 of the 4 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert-db:8.4.06310fac39d53
stdlib@go1.24.6
1.25.12

Open the chart page →

4,329
firehoseblip-firehoseVerified publisher0.0.183 of 11See more

firehose blip-firehose 0.0.18

3 of the 11 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
blipai/deckard:0.0.28737d5d19a312
stdlib@go1.18.10
1.25.12
hashicorp/vault:1.15.26b4e5dadf082
stdlib@go1.21.3
1.25.12
hashicorp/vault-k8s:1.3.15d74a885ae3e
stdlib@go1.21.3
1.25.12

Open the chart page →

13,551
blob-csi-driverblob-csi-driverVerified publisher1.27.91 of 5See more

blob-csi-driver blob-csi-driver 1.27.9

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/blob-csi:v1.27.9f99f5f7ae5fb
stdlib@go1.26.4
1.25.12

Open the chart page →

382
bnkrbnkr1.0.51 of 2See more

bnkr bnkr 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
engrmth/bnkr:2.1.06d8464e6f0e8
stdlib@go1.15.8
1.25.12

Open the chart page →

15,345
colosseumbook-k8sinfra-v21.0.181 of 5See more

colosseum book-k8sinfra-v2 1.0.18

1 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-nti:logc947c3629371
stdlib@go1.23.12
1.25.12

Open the chart page →

27,611
csi-driver-nfsbook-k8sinfra-v24.12.16 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

6 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
stdlib@go1.24.6
1.25.12
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
stdlib@go1.24.2
1.25.12
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
stdlib@go1.24.2
1.25.12
registry.k8s.io/sig-storage/csi-snapshotter:v8.3.0bc7be893ecc3
stdlib@go1.24.2
1.25.12
registry.k8s.io/sig-storage/livenessprobe:v2.17.09b75b9ade162
stdlib@go1.24.6
1.25.12
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
stdlib@go1.23.6
1.25.12

Open the chart page →

6,312
grafanabook-k8sinfra-v28.8.21 of 1See more

grafana book-k8sinfra-v2 8.8.2

1 of the 1 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:11.4.0d8ea37798ccc
stdlib@go1.23.1
1.25.12

Open the chart page →

1,825
jaegerbook-k8sinfra-v23.4.04 of 5See more

jaeger book-k8sinfra-v2 3.4.0

4 of the 5 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
stdlib@go1.21.5
1.25.12
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.25.12
jaegertracing/jaeger-collector:1.53.07f1269222903
stdlib@go1.21.5
1.25.12
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
stdlib@go1.21.5
1.25.12

Open the chart page →

19,390
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
stdlib@go1.21.8
1.25.12

Open the chart page →

8,400
kube-prometheus-stackbook-k8sinfra-v265.5.15 of 6See more

kube-prometheus-stack book-k8sinfra-v2 65.5.1

5 of the 6 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
grafana/grafana:11.2.2-security-01464eac539793
stdlib@go1.22.7
1.25.12
quay.io/prometheus-operator/prometheus-operator:v0.77.2af92db7eac86
stdlib@go1.23.2
1.25.12
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.12
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
stdlib@go1.19.4
1.25.12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.25.12

Open the chart page →

6,066
metallbbook-k8sinfra-v20.13.102 of 3See more

metallb book-k8sinfra-v2 0.13.10

2 of the 3 container images this version deploys carry CVE-2026-39822.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.13.101b33357b3595
stdlib@go1.19.5
1.25.12
quay.io/metallb/speaker:v0.13.1000406ccb1fa0
stdlib@go1.19.5
1.25.12

Open the chart page →

3,857

Container images carrying it

5,001 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/aerokube/moon-conf:2.5.19ca307b30080
stdlib@go1.20.4
1.25.12
1
quay.io/aerokube/moon-ui:2.8.156425d4f8b9c
stdlib@go1.26.1
1.25.12
1
quay.io/aerokube/moon-ui:2.0.589990b146824
stdlib@go1.20.5
1.25.12
1
quay.io/aerokube/reloader:1.0.1e4a3661416a5
stdlib@go1.22.2
1.25.12
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
stdlib@go1.20.12
1.25.12
1
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
stdlib@go1.26.4
1.25.12
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
stdlib@go1.16.5
1.25.12
1
quay.io/argoproj/argocd:v2.10.783c86003b781
stdlib@go1.20.10
1.25.12
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
stdlib@go1.22.7
1.25.12
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
stdlib@go1.22.7
1.25.12
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
stdlib@go1.20.4
1.25.12
1
quay.io/argoproj/argocli:v3.7.11577fc18f86ad
stdlib@go1.25.5
1.25.12
1
quay.io/argoproj/argocli:v3.7.16efd1cb89dc1
stdlib@go1.24.6
1.25.12
1
quay.io/argoproj/argocli:v3.5.591b9825f09a8
stdlib@go1.21.7
1.25.12
1
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
stdlib@go1.24.11
1.25.12
1
quay.io/argoprojlabs/argocd-extension-metrics:v1.0.30d614816c4b7
stdlib@go1.21.11
1.25.12
1
quay.io/argoprojlabs/argocd-image-updater:v1.2.13c56f354fac5
stdlib@go1.26.3
1.25.12
1
quay.io/argoprojlabs/argocd-operator:v0.18.0a09814522a72
stdlib@go1.25.10
1.25.12
1
quay.io/argoprojlabs/argocd-operator:v0.4.0cf8faa986789
stdlib@go1.18.4
1.25.12
1
quay.io/argoprojlabs/argocd-rbac-operator:v0.2.451dded00137a
stdlib@go1.24.9
1.25.12
1
quay.io/argoproj/workflow-controller:v3.7.166388d1b2f08
stdlib@go1.24.6
1.25.12
1
quay.io/argoproj/workflow-controller:v3.5.56ab0da144235
stdlib@go1.21.7
1.25.12
1
quay.io/argoproj/workflow-controller:v3.7.11c46aa0ded8ed
stdlib@go1.25.5
1.25.12
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
stdlib@go1.15.12
1.25.12
1
quay.io/backube/snapscheduler:3.5.035ac95c51780
stdlib@go1.24.3
1.25.12
1
quay.io/backube/volsync:0.16.00d03a6aad575
stdlib@go1.25.11
1.25.12
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
stdlib@go1.18.4
1.25.12
1
quay.io/bentoml/yatai:1.1.13a5dc9d91de0d
stdlib@go1.20.7
1.25.12
1
quay.io/bentoml/yatai-deployment:1.1.212342cfe8c2a9
stdlib@go1.19.13
1.25.12
1
quay.io/bentoml/yatai-image-builder:3.0.4401d8538c4f48
stdlib@go1.24.13
1.25.12
1
quay.io/brancz/kube-rbac-proxy:v0.15.02c7b120590cb
stdlib@go1.21.3
1.25.12
1
quay.io/brancz/kube-rbac-proxy:v0.16.02c8f8c357ff8
stdlib@go1.21.7
1.25.12
1
quay.io/brancz/kube-rbac-proxy:v0.18.0754ab2a723c8
stdlib@go1.22.4
1.25.12
1
quay.io/brancz/kube-rbac-proxy:v0.20.1f5fbfec6a2b2
stdlib@go1.25.4
1.25.12
1
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
stdlib@go1.25.9
1.25.12
1
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
stdlib@go1.17.5
1.25.12
1
quay.io/cephcsi/ceph-csi-operator:v0.5.014fe2f1bffc3
stdlib@go1.25.7
1.25.12
1
quay.io/cephcsi/ceph-csi-operator:v1.0.4c62933fd4083
stdlib@go1.25.11
1.25.12
1
quay.io/chriscowley/openldap_exporter:v2.1.16c308e9732e1
stdlib@go1.15.7
1.25.12
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
stdlib@go1.21.7
1.25.12
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
stdlib@go1.24.2
1.25.12
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
stdlib@go1.25.8
1.25.12
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
stdlib@go1.25.8
1.25.12
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
stdlib@go1.24.7
1.25.12
1
quay.io/cilium/hubble-relay:v1.18.26079308ee15e
stdlib@go1.24.7
1.25.12
1
quay.io/cilium/hubble-ui-backend:v0.13.3db1454e45dc3
stdlib@go1.24.5
1.25.12
1
quay.io/cilium/operator-generic:v1.17.14773886ec9337
stdlib@go1.25.8
1.25.12
1
quay.io/cilium/operator-generic:v1.15.1819c7281f5a4
stdlib@go1.21.6
1.25.12
1
quay.io/cilium/operator-generic:v1.18.2cb4e4ffc5789
stdlib@go1.24.7
1.25.12
1
quay.io/cilium/tetragon:v1.1.096fac2482898
stdlib@go1.22.2
1.25.12
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.