StackRadar

CVE-2026-39823

Medium

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.003
24th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,899
of 17,792 indexed, latest versions
Container images
4,479
deployed by those charts
Fix available
1 of 2
affected packages

Bypass of meta content URL escaping causes XSS in html/template

Carried by container images the latest versions of 3,899 of 17,792 indexed charts deploy, on 4,479 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,479
OSV records
DEBIAN-CVE-2026-39823GO-2026-4982
Also known as
BIT-golang-2026-39823

Charts affected

3,899 by stars
ChartLatestAffected imagesRadar Score
fabric-operatorkubebb0.1.01 of 1See more

fabric-operator kubebb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
stdlib@go1.18.4
1.25.10

Open the chart page →

3,995
ingress-nginxkubebb4.7.02 of 2See more

ingress-nginx kubebb 4.7.0

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.0744ae2afd433
stdlib@go1.20.1
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

3,099
kubebbkubebb0.0.11 of 1See more

kubebb kubebb 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
kubebb/core:lateste366c34a9b8d
stdlib@go1.21.6
1.25.10

Open the chart page →

1,758
kubebb-corekubebb0.1.271 of 1See more

kubebb-core kubebb 0.1.27

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
kubebb/core:v0.1.62b9e7f451d6b
stdlib@go1.20.10
1.25.10

Open the chart page →

1,947
miniokubebb5.0.102 of 2See more

minio kubebb 5.0.10

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
stdlib@go1.19.4
1.25.10
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
stdlib@go1.19.4
1.25.10

Open the chart page →

7,471
tdsfkubebb5.7.01 of 3See more

tdsf kubebb 5.7.0

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
kubebb/mesh-operator:v5.7.0163ebbfc7a82
stdlib@go1.18.4
1.25.10

Open the chart page →

6,502
tekton-operatorkubebb0.64.02 of 2See more

tekton-operator kubebb 0.64.0

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
hyperledgerk8s/tekton-operator-webhook:v0.64.02237cb80f52b
stdlib@go1.18.7
1.25.10
hyperledgerk8s/tektoncd-operator:v0.64.0d0a3a35a138d
stdlib@go1.18.7
1.25.10

Open the chart page →

2,420
u4a-componentkubebb0.2.106 of 8See more

u4a-component kubebb 0.2.10

6 of the 8 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
kubebb/capsule-ce:v0.1.2-20221122a3dba2a95cef
stdlib@go1.18.8
1.25.10
kubebb/iam-controller:v0.2.0-202401288ffbfa2d67e9
stdlib@go1.20.7
1.25.10
kubebb/iam-provider:v0.2.0-202401280ba03fcee3a7
stdlib@go1.17.13
1.25.10
kubebb/kube-oidc-proxy-ce:v0.3.0-2022100858d5efec568b
stdlib@go1.18
1.25.10
kubebb/oidc-server:v0.2.02b5894ef1e2f
stdlib@go1.17.8
1.25.10
kubebb/resource-viewer:v0.2.065bb40b353db
stdlib@go1.18.7
1.25.10

Open the chart page →

13,834
weaviatekubebb16.3.01 of 1See more

weaviate kubebb 16.3.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
semitechnologies/weaviate:1.19.17a00d226f063
stdlib@go1.19.9
1.25.10

Open the chart page →

1,876
apecloud-mcpkubeblocksVerified publisher0.1.01 of 1See more

apecloud-mcp kubeblocks 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
apecloud/apecloud-mcp:0.1.094041b080510
stdlib@go1.23.7
1.25.10

Open the chart page →

1,108
apelcoud-mcpkubeblocksVerified publisher0.1.01 of 1See more

apelcoud-mcp kubeblocks 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
apecloud/apecloud-mcp:0.1.094041b080510
stdlib@go1.23.7
1.25.10

Open the chart page →

1,108
argo-workflowskubeblocksVerified publisher0.40.142 of 2See more

argo-workflows kubeblocks 0.40.14

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/argoproj/argocli:v3.5.591b9825f09a8
stdlib@go1.21.7
1.25.10
quay.io/argoproj/workflow-controller:v3.5.56ab0da144235
stdlib@go1.21.7
1.25.10

Open the chart page →

2,885
calicokubeblocksVerified publisher3.28.03 of 3See more

calico kubeblocks 3.28.0

3 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
calico/cni:v3.28.0cef0c907b8f4
stdlib@go1.22.2
1.25.10
calico/kube-controllers:v3.28.08f04e4772a2b
stdlib@go1.22.3
1.25.10
calico/node:v3.28.0385bf6391fea
stdlib@go1.22.3
1.25.10

Open the chart page →

3,308
casdoor-helm-chartskubeblocksVerified publisher1.753.01 of 1See more

casdoor-helm-charts kubeblocks 1.753.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
casbin/casdoor:v1.753.0770ad9ec3190
stdlib@go1.20.12
1.25.10

Open the chart page →

2,306
chaos-meshkubeblocksVerified publisher2.7.24 of 4See more

chaos-mesh kubeblocks 2.7.2

4 of the 4 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-coredns:v0.2.678dc63bc5b89
stdlib@go1.19.7
1.25.10
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
stdlib@go1.16.2
1.25.10
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
stdlib@go1.20.8
1.25.10
ghcr.io/chaos-mesh/chaos-mesh:v2.7.28bc853c7414c
stdlib@go1.20.8
1.25.10

Open the chart page →

13,572
ciliumkubeblocksVerified publisher1.15.12 of 2See more

cilium kubeblocks 1.15.1

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.15.1351d6685dc6f
stdlib@go1.21.7
1.25.10
quay.io/cilium/operator-generic:v1.15.1819c7281f5a4
stdlib@go1.21.6
1.25.10

Open the chart page →

5,130
dt-platformkubeblocksVerified publisher0.1.21 of 1See more

dt-platform kubeblocks 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
apecloud/dt-platform:0.1.1d48bcbd38066
stdlib@go1.19.11
1.25.10

Open the chart page →

880
geminikubeblocksVerified publisher0.13.43 of 8See more

gemini kubeblocks 0.13.4

3 of the 8 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.10
prom/alertmanager:v0.28.0d5155cfac40a
stdlib@go1.23.4
1.25.10
victoriametrics/vmalert:v1.95.1a83e5db0897a
stdlib@go1.21.4
1.25.10

Open the chart page →

3,103
gemini-schedulerkubeblocksVerified publisher0.1.11 of 1See more

gemini-scheduler kubeblocks 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
apecloud/gemini-scheduler:0.1.15832d1a9097a
stdlib@go1.22.7
1.25.10

Open the chart page →

1,419
grafanakubeblocksVerified publisher6.59.41 of 1See more

grafana kubeblocks 6.59.4

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
grafana/grafana:10.1.11b9ca4bbc4a2
stdlib@go1.20.8
1.25.10

Open the chart page →

3,568
ingress-nginxkubeblocksVerified publisher4.12.12 of 2See more

ingress-nginx kubeblocks 4.12.1

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
stdlib@go1.24.1
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.5.2e8825994b7a2
stdlib@go1.24.1
1.25.10

Open the chart page →

1,477
jupyterhubkubeblocksVerified publisher0.1.02 of 7See more

jupyterhub kubeblocks 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
jupyterhub/k8s-image-awaiter:3.0.1-0.dev.git.6287.hbfb05cd6a395326989c3
stdlib@go1.18.10
1.25.10
registry.k8s.io/kube-scheduler:v1.23.143e149d206076
stdlib@go1.17.13
1.25.10

Open the chart page →

7,357
kubeblocks-csi-driverkubeblocksVerified publisher0.1.31 of 6See more

kubeblocks-csi-driver kubeblocks 0.1.3

1 of the 6 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
apecloud/kubeblocks-csi-driver:0.1.3c93655ccb2d7
stdlib@go1.19.13
1.25.10

Open the chart page →

2,090
kubetrankubeblocksVerified publisher0.1.01 of 1See more

kubetran kubeblocks 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
apecloud/kubetran-platform:latest32bd92c7f7fa
stdlib@go1.20.8
1.25.10

Open the chart page →

1,207
lokikubeblocksVerified publisher5.39.03 of 5See more

loki kubeblocks 5.39.0

3 of the 5 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
grafana/agent-operator:v0.34.1045c9125634c
stdlib@go1.20.4
1.25.10
grafana/loki:2.9.26074e01dbe03
stdlib@go1.21.3
1.25.10
grafana/loki-canary:2.9.24249db29b992
stdlib@go1.21.3
1.25.10

Open the chart page →

5,862
metallbkubeblocksVerified publisher0.14.42 of 3See more

metallb kubeblocks 0.14.4

2 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.14.4bbef1ee3e7d3
stdlib@go1.21.8
1.25.10
quay.io/metallb/speaker:v0.14.437611bde45a2
stdlib@go1.21.8
1.25.10

Open the chart page →

2,600
metrics-serverkubeblocksVerified publisher3.12.01 of 1See more

metrics-server kubeblocks 3.12.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
registry.k8s.io/metrics-server/metrics-server:v0.7.01c0419326500
stdlib@go1.21.6
1.25.10

Open the chart page →

1,137
nvidia-gpu-exporterkubeblocksVerified publisher0.3.11 of 1See more

nvidia-gpu-exporter kubeblocks 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
stdlib@go1.17
1.25.10

Open the chart page →

4,502
openebskubeblocksVerified publisher3.10.03 of 3See more

openebs kubeblocks 3.10.0

3 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
stdlib@go1.19.3
1.25.10
openebs/node-disk-operator:2.1.06afe2123c457
stdlib@go1.19.3
1.25.10
openebs/provisioner-localpv:3.5.0aea39e49bb97
stdlib@go1.19.13
1.25.10

Open the chart page →

10,587
postgres-operatorkubeblocksVerified publisher1.12.21 of 1See more

postgres-operator kubeblocks 1.12.2

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/zalando/postgres-operator:v1.12.2d81cda253f5c
stdlib@go1.22.3
1.25.10

Open the chart page →

1,555
prometheuskubeblocksVerified publisher15.16.16 of 6See more

prometheus kubeblocks 15.16.1

6 of the 6 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.10
prom/pushgateway:v1.4.33496e0f85943
stdlib@go1.18.2
1.25.10
quay.io/prometheus/alertmanager:v0.24.0088464f949de
stdlib@go1.17.8
1.25.10
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
stdlib@go1.17.3
1.25.10
quay.io/prometheus/prometheus:v2.39.14748e26f9369
stdlib@go1.19.2
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
stdlib@go1.18.3
1.25.10

Open the chart page →

10,309
smartfs-csi-driverkubeblocksVerified publisher0.1.21 of 6See more

smartfs-csi-driver kubeblocks 0.1.2

1 of the 6 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
stdlib@go1.19.13
1.25.10

Open the chart page →

9,256
snapshot-controllerkubeblocksVerified publisher1.7.21 of 1See more

snapshot-controller kubeblocks 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v6.2.198bab4eaf23c
stdlib@go1.19
1.25.10

Open the chart page →

1,128
spiderpoolkubeblocksVerified publisher1.2.04 of 4See more

spiderpool kubeblocks 1.2.0

4 of the 4 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.1.409fdfb7ce090
stdlib@go1.23.4
1.25.10
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
stdlib@go1.25.7
1.25.10
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
stdlib@go1.25.7
1.25.10
ghcr.io/spidernet-io/spiderpool/spiderpool-plugins:19f19457ae7cec86457b0411543a3cf21dd9f95a8edc39be1e22
stdlib@go1.25.7
1.25.10

Open the chart page →

8,470
vaultkubeblocksVerified publisher0.30.02 of 2See more

vault kubeblocks 0.30.0

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
hashicorp/vault:1.19.0bbb7f98dc67d
stdlib@go1.23.6
1.25.10
hashicorp/vault-k8s:1.6.2103a2d817a74
stdlib@go1.23.6
1.25.10

Open the chart page →

2,751
victoria-metrics-alertkubeblocksVerified publisher0.8.3-reload3 of 3See more

victoria-metrics-alert kubeblocks 0.8.3-reload

3 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.10
victoriametrics/vmalert:v1.95.1a83e5db0897a
stdlib@go1.21.4
1.25.10
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.25.10

Open the chart page →

3,715
kube-botblocker-operatorkube-botblockerVerified publisher0.2.21 of 2See more

kube-botblocker-operator kube-botblocker 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/gustavojst/kube-botblocker:0.2.04de059bb32ac
stdlib@go1.24.4
1.25.10

Open the chart page →

499
kubeclaritykubeclarity2.23.33 of 5See more

kubeclarity kubeclarity 2.23.3

3 of the 5 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/openclarity/grype-server:v0.6.079412399f301
stdlib@go1.20.4
1.25.10
ghcr.io/openclarity/kubeclarity:v2.23.314450f52a708
stdlib@go1.21.6
1.25.10
ghcr.io/openclarity/kubeclarity-sbom-db:v2.23.3cef2b88bfc76
stdlib@go1.21.6
1.25.10

Open the chart page →

5,520
airflow-operatorkubedoopVerified publisher0.4.01 of 1See more

airflow-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/airflow-operator:0.4.0b716ef483b75
stdlib@go1.25.8
1.25.10

Open the chart page →

415
commons-operatorkubedoopVerified publisher0.4.01 of 1See more

commons-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/commons-operator:0.4.01a353def9fe1
stdlib@go1.25.8
1.25.10

Open the chart page →

366
dolphinscheduler-operatorkubedoopVerified publisher0.4.01 of 1See more

dolphinscheduler-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/dolphinscheduler-operator:0.4.0d0a4e55eeb7f
stdlib@go1.25.8
1.25.10

Open the chart page →

358
hbase-operatorkubedoopVerified publisher0.4.01 of 1See more

hbase-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hbase-operator:0.4.069e9a1b0daf8
stdlib@go1.25.8
1.25.10

Open the chart page →

366
hdfs-operatorkubedoopVerified publisher0.4.01 of 1See more

hdfs-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hdfs-operator:0.4.0eb3c2928250e
stdlib@go1.25.8
1.25.10

Open the chart page →

415
hive-operatorkubedoopVerified publisher0.4.01 of 1See more

hive-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hive-operator:0.4.0d66ba9149c22
stdlib@go1.25.8
1.25.10

Open the chart page →

358
kafka-operatorkubedoopVerified publisher0.4.01 of 1See more

kafka-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/kafka-operator:0.4.00a0b4c39c1ba
stdlib@go1.25.8
1.25.10

Open the chart page →

456
listener-operatorkubedoopVerified publisher0.4.06 of 6See more

listener-operator kubedoop 0.4.0

6 of the 6 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/listener-csi-driver:0.4.0b69bed123b02
stdlib@go1.25.8
1.25.10
quay.io/zncdatadev/listener-operator:0.4.068b92dae8d75
stdlib@go1.25.8
1.25.10
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
stdlib@go1.22.5
1.25.10
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
stdlib@go1.22.5
1.25.10
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
stdlib@go1.22.6
1.25.10
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.12.00d23a6fd60c4
stdlib@go1.22.5
1.25.10

Open the chart page →

4,472
nifi-operatorkubedoopVerified publisher0.4.01 of 1See more

nifi-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/nifi-operator:0.4.0bb4e26ff5e2f
stdlib@go1.25.8
1.25.10

Open the chart page →

366
secret-operatorkubedoopVerified publisher0.4.05 of 5See more

secret-operator kubedoop 0.4.0

5 of the 5 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/secret-csi-driver:0.4.0604a7d98ab58
stdlib@go1.25.8
1.25.10
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
stdlib@go1.22.5
1.25.10
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
stdlib@go1.22.5
1.25.10
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
stdlib@go1.22.6
1.25.10
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.12.00d23a6fd60c4
stdlib@go1.22.5
1.25.10

Open the chart page →

4,414
spark-k8s-operatorkubedoopVerified publisher0.4.01 of 1See more

spark-k8s-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/spark-k8s-operator:0.4.0d3f2b10c4a6d
stdlib@go1.25.8
1.25.10

Open the chart page →

388
superset-operatorkubedoopVerified publisher0.4.01 of 1See more

superset-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/zncdatadev/superset-operator:0.4.0102e66e32218
stdlib@go1.25.8
1.25.10

Open the chart page →

366

Container images carrying it

4,479 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/postgres:16.24aea012537ed
stdlib@go1.18.2
1.25.10
2
library/postgres:18.06f3e42ad37de
stdlib@go1.24.6
1.25.10
2
library/postgres:9.6caddd35b05cd
stdlib@go1.16.7
1.25.10
2
library/postgres:16.4e62fbf9d3e2b
stdlib@go1.18.2
1.25.10
2
library/postgres:13-alpinefb9065b6e3e2
stdlib@go1.24.6
1.25.10
2
library/rabbitmq:4.1.0-management935b3f84c1e4
stdlib@go1.22.2
1.25.10
2
library/rabbitmq:4.3.5-management:4-management:managementffd1b50c522a
stdlib@go1.22.2
1.25.10
2
library/redis148bb5411c18
stdlib@go1.18.2
1.25.10
2
library/redis:7.2.3a7cee7c8178f
stdlib@go1.18.2
1.25.10
2
library/redmine:6.1.3-trixief474a901faec
stdlib@go1.24.6
1.25.10
2
library/traefik:v2.57d5a6ae66572
stdlib@go1.17.6
1.25.10
2
library/zookeeper:3.9.5f258365d4882
stdlib@go1.18.1
1.25.10
2
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.25.10
2
listmonk/listmonk:v2.1.0d2eac77ddfad
stdlib@go1.17.6
1.25.10
2
listmonk/listmonk:latest:v6.2.0f535d59e1499
stdlib@go1.26.1
1.25.10
2
louislam/uptime-kuma:2.3.29aeb4e51d038
stdlib@go1.20.5
1.25.10
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
stdlib@go1.20.5
1.25.10
2
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
stdlib@go1.24.5
1.25.10
2
maxrocketinternet/soti-mobicontrol-exporter:0.61a281b76efa3
stdlib@go1.14
1.25.10
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
stdlib@go1.15.2
1.25.10
2
mesosphere/kubectl:v1.35.0-alpineea01a9387771
stdlib@go1.25.5
1.25.10
2
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
stdlib@go1.15.5
1.25.10
2
minio/operator:v4.3.754393e03f3b2
stdlib@go1.17.4
1.25.10
2
moby/buildkit:v0.32.2-rootless504731e577c2
stdlib@go1.25.7
1.25.10
2
natsio/nats-account-server:1.0.0a3381560aab6
stdlib@go1.16.6
1.25.10
2
natsio/nats-box:0.11.09fbf7bf684e4
stdlib@go1.18.1
1.25.10
2
natsio/nats-server-config-reloader:0.21.110ff229eaf52
stdlib@go1.25.5
1.25.10
2
natsio/nats-server-config-reloader:0.7.2911ce7ed2f55
stdlib@go1.19
1.25.10
2
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
stdlib@go1.19.4
1.25.10
2
natsio/prometheus-nats-exporter:0.10.016048afb67a5
stdlib@go1.19
1.25.10
2
natsio/prometheus-nats-exporter:0.17.326c826662ac8
stdlib@go1.24.2
1.25.10
2
natsio/prometheus-nats-exporter:0.11.031c02aac089a
stdlib@go1.20.3
1.25.10
2
netapp/trident-protect-utils:v2.0.0cd0c18d8f9ec
stdlib@go1.24.12
1.25.10
2
obolnetwork/charon:v1.10.0278c7e2897b6
stdlib@go1.26.1
1.25.10
2
oliver006/redis_exporter:v1.9.04af75e9f16f6
stdlib@go1.14.4
1.25.10
2
opencloudeu/opencloud-rolling:2.1.0f9634bb04905
stdlib@go1.24.2
1.25.10
2
opencsghq/postgres:15.19b98600564e07
stdlib@go1.24.6
1.25.10
2
opendatacube/ows:latest668cbb41473c
stdlib@go1.22.2
1.25.10
2
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
stdlib@go1.24.5
1.25.10
2
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
stdlib@go1.19.3
1.25.10
2
openebs/node-disk-operator:2.1.06afe2123c457
stdlib@go1.19.3
1.25.10
2
openebs/provisioner-localpv:4.6.099f5116f5cb8
stdlib@go1.25.0
1.25.10
2
openebs/provisioner-localpv:3.5.0aea39e49bb97
stdlib@go1.19.13
1.25.10
2
openkruise/kruise-helm-hook:v0.1.0edc7cf9428fd
stdlib@go1.20.14
1.25.10
2
openpolicyagent/gatekeeper:v3.4.0-rc.1825370bdb3c3
stdlib@go1.16.2
1.25.10
2
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.25.10
2
oryd/kratos:v1.3.1fe2428f103a6
stdlib@go1.23.2
1.25.10
2
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.25.10
2
osixia/openldap:1.4.0ccd95cc6e61e
stdlib@go1.13.4
1.25.10
2
otel/opentelemetry-collector-contrib:0.96.07ef2a2ff46b9
stdlib@go1.21.7
1.25.10
2

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.