StackRadar

CVE-2026-39823

Medium

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.003
24th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,940
of 17,790 indexed, latest versions
Container images
4,539
deployed by those charts
Fix available
1 of 2
affected packages

Bypass of meta content URL escaping causes XSS in html/template

Carried by container images the latest versions of 3,940 of 17,790 indexed charts deploy, on 4,539 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,539
OSV records
DEBIAN-CVE-2026-39823GO-2026-4982
Also known as
BIT-golang-2026-39823

Charts affected

3,940 by stars
ChartLatestAffected imagesRadar Score
stornxstornxVerified publisher1.1.19 of 9See more

stornx stornx 1.1.1

9 of the 9 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
stdlib@go1.24.13
1.25.10
alazidis/stornx:1.1.1602d4f7f090c
stdlib@go1.25.7
1.25.10
istio/pilot:1.29.1f8b0e412ac4a
stdlib@go1.25.8
1.25.10
quay.io/kiali/kiali:v2.23.07652b1285f50
stdlib@go1.25.0
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.90.0e5aab3be6873
stdlib@go1.25.8
1.25.10
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
stdlib@go1.25.3
1.25.10
quay.io/prometheus/prometheus:v3.10.07571a304e67f
stdlib@go1.26.0
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.10
registry.k8s.io/metrics-server/metrics-server:v0.8.089258156d0e9
stdlib@go1.24.4
1.25.10

Open the chart page →

11,735
stunner-gateway-operatorstunner1.1.02 of 2See more

stunner-gateway-operator stunner 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
l7mp/stunner-auth-server:1.1.02f8114477ba6
stdlib@go1.23.8
1.25.10
l7mp/stunner-gateway-operator:1.1.0c34f7c931491
stdlib@go1.23.8
1.25.10

Open the chart page →

1,292
hlf-k8ssubstraVerified publisher10.2.44 of 7See more

hlf-k8s substra 10.2.4

4 of the 7 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:1.5.0f270dfeee91d
stdlib@go1.15.7
1.25.10
jwilder/dockerize:latestf94fb59fb4f6
stdlib@go1.25.5
1.25.10
ghcr.io/substra/fabric-peer:0.2.4f681e0343a31
stdlib@go1.18.10
1.25.10
ghcr.io/substra/fabric-tools:0.2.43491a0f31c4a
stdlib@go1.18.10
1.25.10

Open the chart page →

12,030
supabasesupabse0.8.04 of 11See more

supabase supabse 0.8.0

4 of the 11 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
stdlib@go1.25.1
1.25.10
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.10
supabase/gotrue:v2.189.0385184459f57
stdlib@go1.25.8
1.25.10
supabase/postgres:17.6.1.136f371b5f3f2ac
stdlib@go1.26.1
1.25.10

Open the chart page →

18,327
Grafanasurajwarbhe-grafana0.1.01 of 1See more

Grafana surajwarbhe-grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
surajwarbhe/grafana:v185248611e9f1
stdlib@go1.14.3
1.25.10

Open the chart page →

2,604
switchboardswitchboardVerified publisher0.7.41 of 1See more

switchboard switchboard 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/borchero/switchboard:0.7.454a193b757da
stdlib@go1.26.1
1.25.10

Open the chart page →

844
synology-proxy-operatorsynology-proxy-operatorVerified publisher0.0.81 of 1See more

synology-proxy-operator synology-proxy-operator 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/phoeluga/synology-proxy-operator:0.0.8b26510b26b31
stdlib@go1.26.2
1.25.10

Open the chart page →

210
hello-appsysintelligentVerified publisher2.0.11 of 1See more

hello-app sysintelligent 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
sysintelligent/hello-app:2.0.177fb30df847d
stdlib@go1.19.3
1.25.10

Open the chart page →

1,880
headscaleszpadel-chartsVerified publisher0.30.21 of 3See more

headscale szpadel-charts 0.30.2

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/tale/headplane:0.6.39476cc5adb12
stdlib@go1.25.1
1.25.10

Open the chart page →

1,880
tenuretenureVerified publisher1.0.62 of 2See more

tenure tenure 1.0.6

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
mongodb/mongodb-atlas-local:8925c3d34f0c6
stdlib@go1.25.9
1.25.10
tenureai/tenure:v1.0.285f5b222df9a5
stdlib@go1.26.2
1.25.10

Open the chart page →

2,563
terraform-controllerterraform-controller0.0.201 of 1See more

terraform-controller terraform-controller 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
absaoss/terraform-controller:v0.0.20ad538a1285a0
stdlib@go1.14.8
1.25.10

Open the chart page →

3,538
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
stdlib@go1.20.6
1.25.10

Open the chart page →

9,119
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
stdlib@go1.20.6
1.25.10

Open the chart page →

9,119
base-clusterteuto-netVerified publisher12.4.01 of 1See more

base-cluster teuto-net 12.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:1.33.4261a9ed843eb
stdlib@go1.24.5
1.25.10

Open the chart page →

436
tocktock0.6.31 of 9See more

tock tock 0.6.3

1 of the 9 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.5-debian-11-r66fe59ed5d79f
stdlib@go1.20.12
1.25.10

Open the chart page →

13,017
goalerttokens-studioVerified publisher0.0.51 of 2See more

goalert tokens-studio 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
goalert/goalert:v0.32.008d57388b0cb
stdlib@go1.22.1
1.25.10

Open the chart page →

1,476
tor-snowflake-proxytor-snowflake-proxyVerified publisher1.2.01 of 1See more

tor-snowflake-proxy tor-snowflake-proxy 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
thetorproject/snowflake-proxy:v2.11.01ddc5069d354
stdlib@go1.23.7
1.25.10

Open the chart page →

740
spa-reloadertoucanVerified publisher0.1.01 of 1See more

spa-reloader toucan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
toucansoftware/spa-reloader:latestc187b1fba501
stdlib@go1.13.15
1.25.10

Open the chart page →

2,245
traefik-hubtraefikOfficialVerified publisher4.2.01 of 1See more

traefik-hub traefik 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/traefik/traefik-hub:v2.11.0322f5f8cc105
stdlib@go1.21.8
1.25.10

Open the chart page →

3,171
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
stdlib@go1.14.7
1.25.10

Open the chart page →

5,286
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
stdlib@go1.22.8
1.25.10

Open the chart page →

4,075
boundaryundergridVerified publisher0.1.02 of 3See more

boundary undergrid 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v1.684edcf796267
stdlib@go1.18.1
1.25.10
hashicorp/boundary:0.8.1fb70bd9210ff
stdlib@go1.17.10
1.25.10

Open the chart page →

4,965
taigaunxwaresVerified publisher2026.3.82 of 6See more

taiga unxwares 2026.3.8

2 of the 6 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
stdlib@go1.24.4
1.25.10
taigaio/taiga-protected:latestfd4568a97a59
stdlib@go1.24.4
1.25.10

Open the chart page →

9,193
upbot-operatorupbot-operator0.0.202 of 2See more

upbot-operator upbot-operator 0.0.20

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
alpine/k8s:1.28.13e5c0b053fed7
stdlib@go1.22.5
1.25.10
ghcr.io/upbothq/upbot-operator:v0.0.20e5da24947c91
stdlib@go1.24.9
1.25.10

Open the chart page →

4,477
user-componentuser-component1.2.01 of 4See more

user-component user-component 1.2.0

1 of the 4 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
stdlib@go1.13.10
1.25.10

Open the chart page →

7,313
user-manager-serveruser-manager-server1.27.11 of 1See more

user-manager-server user-manager-server 1.27.1

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/user-manager-server:1.27.1628a14449241
stdlib@go1.23.12
1.25.10

Open the chart page →

757
phonebook-chartusuladamsVerified publisher0.1.51 of 3See more

phonebook-chart usuladams 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.10

Open the chart page →

3,176
v2ray-proxyv2ray-proxy0.2.41 of 1See more

v2ray-proxy v2ray-proxy 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
pinclr/v2ray-proxy:latestf37f250b7091
stdlib@go1.20.2
1.25.10

Open the chart page →

1,961
vault-gcp-secretsvault-gcp-secrets1.19.51 of 1See more

vault-gcp-secrets vault-gcp-secrets 1.19.5

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/tjm/vault-gcp-secrets:v1.19.59f157fe035f1
stdlib@go1.24.3
1.25.10

Open the chart page →

2,299
vearchvearch3.3.42 of 4See more

vearch vearch 3.3.4

2 of the 4 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.25.10
vearch/vearch:3.3.40768af33f9d9
stdlib@go1.19.9
1.25.10

Open the chart page →

5,022
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
stdlib@go1.22.3
1.25.10

Open the chart page →

5,259
riveruivirtualrootVerified publisher0.1.31 of 1See more

riverui virtualroot 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/riverqueue/riverui:0.5.32dc54179b25a
stdlib@go1.23.0
1.25.10

Open the chart page →

1,135
go-egvoid-xmh1.1.13 of 3See more

go-eg void-xmh 1.1.1

3 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
voidxmh/xmh-auther:v193e42a569ca8
stdlib@go1.16.5
1.25.10
voidxmh/xmh-cacher:v11b7397412320
stdlib@go1.16.5
1.25.10
voidxmh/xmh-ui:v12ff3f2146547
stdlib@go1.16.5
1.25.10

Open the chart page →

7,464
phpipamvquieVerified publisher1.0.31 of 3See more

phpipam vquie 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/mariadb:10.11.21c33370a599c
stdlib@go1.16.7
1.25.10

Open the chart page →

7,072
vultr-ccmvultrVerified publisher1.3.01 of 1See more

vultr-ccm vultr 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
stdlib@go1.16.7
1.25.10

Open the chart page →

3,041
waardepapierenwaardepapieren1.0.01 of 3See more

waardepapieren waardepapieren 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
stdlib@go1.13.10
1.25.10

Open the chart page →

8,087
waardepapieren-baliewaardepapieren-balie1.0.01 of 3See more

waardepapieren-balie waardepapieren-balie 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
stdlib@go1.13.10
1.25.10

Open the chart page →

7,880
waardepapieren-registerwaardepapieren-register1.1.01 of 4See more

waardepapieren-register waardepapieren-register 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
stdlib@go1.13.10
1.25.10

Open the chart page →

7,438
waldurwaldur-chartsVerified publisher8.1.21 of 3See more

waldur waldur-charts 8.1.2

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.10

Open the chart page →

4,901
azure-metrics-exporterwebdevopsVerified publisher1.2.111 of 1See more

azure-metrics-exporter webdevops 1.2.11

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
webdevops/azure-metrics-exporter:25.12.01d3b453fba99
stdlib@go1.25.5
1.25.10

Open the chart page →

509
webhookswebhooks0.1.51 of 1See more

webhooks webhooks 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
stdlib@go1.20.1
1.25.10

Open the chart page →

2,031
webhook-testerwebhook-testerVerified publisher2.3.01 of 1See more

webhook-tester webhook-tester 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/tarampampam/webhook-tester:2.3.085818267b450
stdlib@go1.26.2
1.25.10

Open the chart page →

217
well-knownwell-knownOfficialVerified publisher1.9.01 of 1See more

well-known well-known 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/stenic/well-known:1.9.0708811e91895
stdlib@go1.24.13
1.25.10

Open the chart page →

259
cockroachdbwenerme22.0.31 of 3See more

cockroachdb wenerme 22.0.3

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
stdlib@go1.23.12
1.25.10

Open the chart page →

763
frpswenerme1.0.11 of 1See more

frps wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
wener/frps:v0.37.05c92cc9e8597
stdlib@go1.17.3
1.25.10

Open the chart page →

3,359
ingress-nginxwenerme4.15.12 of 2See more

ingress-nginx wenerme 4.15.1

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
stdlib@go1.26.1
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.901038e7de14b
stdlib@go1.26.1
1.25.10

Open the chart page →

1,548
kube-prometheus-stackwenerme91.4.11 of 6See more

kube-prometheus-stack wenerme 91.4.1

1 of the 6 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
grafana/grafana:13.2.2-distroless69a5d2d957ca
stdlib@go1.25.7
1.25.10

Open the chart page →

655
natswenerme2.14.61 of 3See more

nats wenerme 2.14.6

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
natsio/nats-server-config-reloader:0.23.064cb6c858e79
stdlib@go1.25.6
1.25.10

Open the chart page →

2,315
prometheus-blackbox-exporterwenerme11.18.01 of 1See more

prometheus-blackbox-exporter wenerme 11.18.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
stdlib@go1.25.5
1.25.10

Open the chart page →

600
wharf-ainowharf-helmVerified publisher0.1.55 of 7See more

wharf-aino wharf-helm 0.1.5

5 of the 7 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
stdlib@go1.18.1
1.25.10
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
stdlib@go1.18.2
1.25.10
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
stdlib@go1.18.2
1.25.10
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
stdlib@go1.18.2
1.25.10
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
stdlib@go1.18.2
1.25.10

Open the chart page →

13,482

Container images carrying it

4,539 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
kubernetesui/dashboard-web:1.4.04445b31a2c25
stdlib@go1.22.3
1.25.10
1
kubernetesui/dashboard-web:1.7.0cc7c31bd2d84
stdlib@go1.23.9
1.25.10
1
kubernetesui/metrics-scraper:v1.0.876049887f07a
stdlib@go1.18.2
1.25.10
1
kubesec/kubesec:latest025a365d9f18
stdlib@go1.23.3
1.25.10
1
kubesec/kubesec:v2.13.0c0f3b0673578
stdlib@go1.19.7
1.25.10
1
kubeshop/kube-webhook-certgen:0.0.7866827c379ae
stdlib@go1.23.6
1.25.10
1
kubeshop/kusk-gateway:v1.5.48b5bfd57a3ce
stdlib@go1.19.4
1.25.10
1
kubeshop/kusk-gateway-api:v1.5.4126c713cf7d8
stdlib@go1.18.10
1.25.10
1
kubeshop/kusk-gateway-api-websocket:v1.5.43b4f8345ca5c
stdlib@go1.18.10
1.25.10
1
kubeshop/testkube-api-server:0.11.160ad97f07a78b
stdlib@go1.17.8
1.25.10
1
kubeshop/testkube-api-server:2.1.162e97dc620d9b4
stdlib@go1.23.10
1.25.10
1
kubeshop/testkube-logs-server:latest094186b19698
stdlib@go1.24.1
1.25.10
1
kubeshop/testkube-minio:2025.10d8e1af6aca99
stdlib@go1.26.0
1.25.10
1
kubeshop/testkube-operator:2.1.154def0d0f0d4ab
stdlib@go1.23.9
1.25.10
1
kubeshop/tracetest:v1.7.173d7e3a2db43
stdlib@go1.21.13
1.25.10
1
kubesphere/fluentbit-operator:v0.9.0b87db3c57cb3
stdlib@go1.13.15
1.25.10
1
kubesphere/fluent-operator:v1.0.2702df77228c6
stdlib@go1.16.6
1.25.10
1
kubesphere/ks-extensions-museum:latest29681958f220
stdlib@go1.20.12
1.25.10
1
kubesphere/kubectl:v1.27.1649b445b1b732
stdlib@go1.18.10
1.25.10
1
kubesphere/openelb:v0.5.0b5b665c4672c
stdlib@go1.15.15
1.25.10
1
kubesphere/openelb:v0.4.4ed7311a0f9e4
stdlib@go1.15.15
1.25.10
1
kubesphere/porter:v0.4.38d1ed5ee1d2e
stdlib@go1.15.15
1.25.10
1
kubesphere/pvc-autoresizer:v0.19a18a16c7b87
stdlib@go1.16.10
1.25.10
1
kubesphere/storageclass-accessor:v0.1.1eac8f273a9b6
stdlib@go1.16.10
1.25.10
1
kubestar/event-exporter:latest656606941255
stdlib@go1.20.14
1.25.10
1
kubesuite/kubereport:latest0262424ee702
stdlib@go1.22.0
1.25.10
1
kubevious/ui:1.2.16233e84bdd59
stdlib@go1.19.1
1.25.10
1
kubevip/kube-vip-cloud-provider:v0.0.12f8f4e3401f76
stdlib@go1.24.2
1.25.10
1
kubevirtmanager/kubevirt-manager:1.5.41b98f1b5977a
stdlib@go1.25.5
1.25.10
1
kubevirtmanager/kubevirt-manager:1.3.3df3ea27d4a9e
stdlib@go1.21.7
1.25.10
1
kudobuilder/controller:v0.9.069072d979708
stdlib@go1.13
1.25.10
1
kupnu4x/kube-vault-controller:1.2.03be59109f3d6
stdlib@go1.21.1
1.25.10
1
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
stdlib@go1.20.14
1.25.10
1
kusionstack/karpor:v0.6.4b707d3bf0abd
stdlib@go1.22.12
1.25.10
1
kusionstack/kuperator:v0.7.4d2f72ae1d2f2
stdlib@go1.24.13
1.25.10
1
kusionstack/kusion:v0.14.0126c8f0b0976
stdlib@go1.22.10
1.25.10
1
kusionstack/operating:v0.5.0c28bd96b986b
stdlib@go1.19.13
1.25.10
1
kvalitetsit/go-loop:1.1.0d07f449d75ed
stdlib@go1.25.1
1.25.10
1
kvalitetsit/kitargus:2026-03-09-091234-10013c4c5cde2d9371c
stdlib@go1.25.8
1.25.10
1
kvalitetsit/metadoc-app:maine89e351733ad
stdlib@go1.19.5
1.25.10
1
kvalitetsit/metadoc-web:mainf57e7553f5bd
stdlib@go1.16
1.25.10
1
kvalitetsit/nsp-prometheus-exporter:1.0.190b397ff954ec
stdlib@go1.15.3
1.25.10
1
kvalitetsit/stakit-frontend:0.2.5fd5c4f60ef80
stdlib@go1.19.3
1.25.10
1
l7mp/stunner-auth-server:1.1.02f8114477ba6
stdlib@go1.23.8
1.25.10
1
l7mp/stunner-gateway-operator:1.1.0c34f7c931491
stdlib@go1.23.8
1.25.10
1
langgenius/dify-ee-audit:3.9.8-ubi9e99aed151fc5
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-collector:3.9.8-ubi9a9b91fd62c94
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-enterprise:3.9.8-ubi9c392a36a4ef7
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-gateway:3.9.8-ubi99e314c29a61f
stdlib@go1.26.2
1.25.10
1
langgenius/dify-ee-plugin-connector:3.9.8-ubi91848d8f1f144
stdlib@go1.26.2
1.25.10
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.