StackRadar

CVE-2026-39823

Medium

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,006
of 17,805 indexed, latest versions
Container images
4,576
deployed by those charts
Fix available
1 of 2
affected packages

Bypass of meta content URL escaping causes XSS in html/template

Carried by container images the latest versions of 4,006 of 17,805 indexed charts deploy, on 4,576 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+180 more1.25.104,576
OSV records
DEBIAN-CVE-2026-39823GO-2026-4982
Also known as
BIT-golang-2026-39823

Charts affected

4,006 by stars
ChartLatestAffected imagesRadar Score
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

5,942
ingress-helm-chartnotesprojectchart0.1.02 of 2See more

ingress-helm-chart notesprojectchart 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
stdlib@go1.20.5
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

2,957
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
stdlib@go1.17.10
1.25.10

Open the chart page →

4,559
keycloak-helm-chartnotesprojectchart0.1.01 of 2See more

keycloak-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,688
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

6,905
registration-ms-helm-chartnotesprojectchart0.1.01 of 2See more

registration-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

5,968
user-data-ms-helm-chartnotesprojectchart0.1.01 of 2See more

user-data-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

5,925
vault-helm-chartnotesprojectchart0.1.01 of 1See more

vault-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/vault:1.13.3f98ac9dd97b0
stdlib@go1.20.4
1.25.10

Open the chart page →

2,257
notification-componentnotification-component1.0.01 of 4See more

notification-component notification-component 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
stdlib@go1.13.10
1.25.10

Open the chart page →

7,539
clusterfannousefreakVerified publisher0.1.21 of 1See more

clusterfan nousefreak 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/nousefreak/clusterfan:v0.1.04ea05e2a7b57
stdlib@go1.17.5
1.25.10

Open the chart page →

1,791
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
stdlib@go1.15.5
1.25.10

Open the chart page →

4,862
nfs-server-provisionernovum-rgi-charts1.1.21 of 1See more

nfs-server-provisioner novum-rgi-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
stdlib@go1.13.4
1.25.10

Open the chart page →

2,807
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
stdlib@go1.17.11
1.25.10

Open the chart page →

27,579
nri-memory-policynri-pluginsVerified publisher0.14.01 of 1See more

nri-memory-policy nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-memory-policy:v0.14.0531d21ec4ba2
stdlib@go1.26.0
1.25.10

Open the chart page →

272
nri-memory-qosnri-pluginsOfficialVerified publisher0.14.01 of 1See more

nri-memory-qos nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-memory-qos:v0.14.0c7c5c24ed894
stdlib@go1.26.0
1.25.10

Open the chart page →

272
nri-resctrl-monnri-pluginsVerified publisher0.14.01 of 1See more

nri-resctrl-mon nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-resctrl-mon:v0.14.0a9c9775fab70
stdlib@go1.26.0
1.25.10

Open the chart page →

272
nri-resource-annotatornri-pluginsVerified publisher0.14.01 of 1See more

nri-resource-annotator nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-resource-annotator:v0.14.08100a19e85f7
stdlib@go1.26.0
1.25.10

Open the chart page →

235
nri-resource-policy-templatenri-pluginsVerified publisher0.14.01 of 1See more

nri-resource-policy-template nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-resource-policy-template:v0.14.00edfc075277b
stdlib@go1.26.0
1.25.10

Open the chart page →

303
nri-sgx-epcnri-pluginsVerified publisher0.14.01 of 1See more

nri-sgx-epc nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-sgx-epc:v0.14.0b4c4d0d83c14
stdlib@go1.26.0
1.25.10

Open the chart page →

272
cnaos-pvc-populatornutanix-helm-releasesVerified publisher1.1.0-174-prod1 of 2See more

cnaos-pvc-populator nutanix-helm-releases 1.1.0-174-prod

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
stdlib@go1.17.3
1.25.10

Open the chart page →

1,839
nai-knative-istio-controllernutanix-helm-releasesVerified publisher1.13.12 of 2See more

nai-knative-istio-controller nutanix-helm-releases 1.13.1

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
stdlib@go1.21.5
1.25.10
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
stdlib@go1.21.5
1.25.10

Open the chart page →

1,566
nai-knative-servingnutanix-helm-releasesVerified publisher1.13.14 of 4See more

nai-knative-serving nutanix-helm-releases 1.13.1

4 of the 4 container images this version deploys carry CVE-2026-39823.

Open the chart page →

3,766
nutanix-flow-cninutanix-helm-releasesVerified publisher1.1.04 of 7See more

nutanix-flow-cni nutanix-helm-releases 1.1.0

4 of the 7 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/nats:2.10-alpineb83efabe3e7d
stdlib@go1.24.2
1.25.10
natsio/nats-box:0.14.1a67913df95f1
stdlib@go1.21.3
1.25.10
natsio/nats-server-config-reloader:0.13.0b3359eeb10bf
stdlib@go1.20.5
1.25.10
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.1.39751856cacc8
stdlib@go1.21.13
1.25.10

Open the chart page →

4,999
firecrawlobeoneVerified publisher3.0.72 of 5See more

firecrawl obeone 3.0.7

2 of the 5 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/firecrawl/firecrawl:2.11.35987ebe1dc85b0
stdlib@go1.24.13
1.25.10
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
stdlib@go1.24.6
1.25.10

Open the chart page →

10,178
observabilitysecobservabilitysec0.0.11 of 2See more

observabilitysec observabilitysec 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
jdvalencia422/observabilitysec:latesta80b6e47a7b8
stdlib@go1.18.4
1.25.10

Open the chart page →

1,179
lensoci-ai-incubations0.1.1411 of 16See more

lens oci-ai-incubations 0.1.14

11 of the 16 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
stdlib@go1.22.7
1.25.10
grafana/grafana:12.1.1a1701c218024
stdlib@go1.24.6
1.25.10
library/postgres:134689940c6838
stdlib@go1.24.6
1.25.10
quay.io/jetstack/cert-manager-cainjector:v1.13.2858fee0c4af0
stdlib@go1.20.10
1.25.10
quay.io/jetstack/cert-manager-controller:v1.13.29c67cf8c92d8
stdlib@go1.20.10
1.25.10
quay.io/jetstack/cert-manager-webhook:v1.13.20a9470447ebf
stdlib@go1.20.10
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.85.0ebb560bcb6bd
stdlib@go1.24.6
1.25.10
quay.io/prometheus/prometheus:v3.5.063805ebb8d2b
stdlib@go1.24.5
1.25.10
quay.io/prometheus/pushgateway:v1.11.103738d278e08
stdlib@go1.24.1
1.25.10
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
stdlib@go1.24.6
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.2050a34002d5b
stdlib@go1.24.6
1.25.10

Open the chart page →

17,265
ocisocis-community0.1.01 of 1See more

ocis ocis-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
owncloud/ocis:8.0.1b38fd8fdd58f
stdlib@go1.25.7
1.25.10

Open the chart page →

2,357
cluster-gateway-addon-managerocm-helm-chartsVerified publisher1.4.01 of 1See more

cluster-gateway-addon-manager ocm-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
oamdev/cluster-gateway-addon-manager:v1.4.01bcae00bd7b0
stdlib@go1.17.10
1.25.10

Open the chart page →

1,607
cluster-proxyocm-helm-chartsVerified publisher0.12.01 of 1See more

cluster-proxy ocm-helm-charts 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/cluster-proxy:v0.12.035f9c3ad644a
stdlib@go1.22.4
1.25.10

Open the chart page →

1,351
dynamic-scoring-frameworkocm-helm-chartsVerified publisher0.1.02 of 2See more

dynamic-scoring-framework ocm-helm-charts 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/dynamic-scoring-addon:latest7e571a08ec1a
stdlib@go1.24.13
1.25.10
quay.io/open-cluster-management/dynamic-scoring-controller:latest587f5bc8f2ed
stdlib@go1.24.13
1.25.10

Open the chart page →

996
kueue-addonocm-helm-chartsVerified publisher0.1.41 of 1See more

kueue-addon ocm-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/kueue-addon:v0.1.47f728514fead
stdlib@go1.24.6
1.25.10

Open the chart page →

1,619
multicluster-meshocm-helm-chartsVerified publisher0.0.21 of 1See more

multicluster-mesh ocm-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
stdlib@go1.19.13
1.25.10

Open the chart page →

2,132
my-bloody-jenkinsodavid0.1.2181 of 1See more

my-bloody-jenkins odavid 0.1.218

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
odavid/my-bloody-jenkins:2.462.3-306e7ab3bbc948e
stdlib@go1.22.5
1.25.10

Open the chart page →

5,838
aspromokgoloveVerified publisher2.0.01 of 1See more

asprom okgolove 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
okgolove/asprom:1.10.1974d2e5eb150
stdlib@go1.14.11
1.25.10

Open the chart page →

1,869
cmsmsoleds-helm-chartsVerified publisher0.1.61 of 1See more

cmsms oleds-helm-charts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.7-debian-12-r290dc6acb7b2e
stdlib@go1.23.10
1.25.10

Open the chart page →

2,903
hive-metastoreolehrgfVerified publisher0.1.01 of 1See more

hive-metastore olehrgf 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
stdlib@go1.13.4
1.25.10

Open the chart page →

8,549
paperless-ngxoli-the-devVerified publisher1.1.11 of 1See more

paperless-ngx oli-the-dev 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
stdlib@go1.24.4
1.25.10

Open the chart page →

4,757
exposecontrollerolli-aiVerified publisher1.0.51 of 1See more

exposecontroller olli-ai 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
olliai/exposecontroller:1.0.5a470d96525e4
stdlib@go1.16.3
1.25.10

Open the chart page →

2,862
k8s-replicatorolli-aiVerified publisher1.3.01 of 1See more

k8s-replicator olli-ai 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
olliai/k8s-replicator:1.3.05716f2a8bd4c
stdlib@go1.17.2
1.25.10

Open the chart page →

2,826
apicurioone-acre-fundVerified publisher2.3.02 of 5See more

apicurio one-acre-fund 2.3.0

2 of the 5 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
stdlib@go1.16.7
1.25.10
jwilder/dockerize:latestf94fb59fb4f6
stdlib@go1.25.5
1.25.10

Open the chart page →

18,671
nocodbone-acre-fundVerified publisher0.4.62 of 3See more

nocodb one-acre-fund 0.4.6

2 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
stdlib@go1.24.6
1.25.10
nocodb/nocodb:0.258.06779a4ddedf2
stdlib@go1.21.10
1.25.10

Open the chart page →

4,242
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
stdlib@go1.23.8
1.25.10

Open the chart page →

6,190
one-green-coreone-green-coreVerified publisher0.0.73 of 8See more

one-green-core one-green-core 0.0.7

3 of the 8 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
grafana/grafana:8.5.3ecc1b80b8ca2
stdlib@go1.17.9
1.25.10
library/influxdb:2.0.8ba10ac9ba17a
stdlib@go1.16.5
1.25.10
library/telegraf:1.20.428e98eece020
stdlib@go1.17.3
1.25.10

Open the chart page →

9,585
ontoserverontoserverVerified publisher0.5.21 of 2See more

ontoserver ontoserver 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
stdlib@go1.24.6
1.25.10

Open the chart page →

1,688
onyx-stackonyx0.3.14 of 12See more

onyx-stack onyx 0.3.1

4 of the 12 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
vespaengine/vespa:8.526.1569b160f58211
stdlib@go1.24.2
1.25.10
ghcr.io/kedacore/keda:2.17.272dc058e478d
stdlib@go1.23.8
1.25.10
ghcr.io/kedacore/keda-admission-webhooks:2.17.2c8227c6edb4d
stdlib@go1.23.8
1.25.10
ghcr.io/kedacore/keda-metrics-apiserver:2.17.2f312f50ddc57
stdlib@go1.23.8
1.25.10

Open the chart page →

6,751
oom-traceroom-tracerVerified publisher0.1.01 of 1See more

oom-tracer oom-tracer 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/eminaktas/oom-tracer:v0.1.0c90ca8389c87
stdlib@go1.25.1
1.25.10

Open the chart page →

1,126
opa-nginxopa-nginx0.0.32 of 2See more

opa-nginx opa-nginx 0.0.3

2 of the 2 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
openpolicyagent/opa:0.53.16a58dea59933
stdlib@go1.20.4
1.25.10
richardjennings/opa-nginx:0.0.366424aca125d
stdlib@go1.20.5
1.25.10

Open the chart page →

2,207
opds-shelfopds-shelfVerified publisher0.4.02 of 3See more

opds-shelf opds-shelf 0.4.0

2 of the 3 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/calibre-web:latest0767226fcf20
stdlib@go1.17.8
1.25.10
ghcr.io/madeddie/opds-aggregator:latest60c56021c552
stdlib@go1.24.13
1.25.10

Open the chart page →

4,414
open-cacheopen-cacheVerified publisher0.1.01 of 1See more

open-cache open-cache 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/atolat/open-cache:latestd6105dd73eb4
stdlib@go1.25.8
1.25.10

Open the chart page →

448
raspberrymaticopenccuVerified publisher3.83.61 of 1See more

raspberrymatic openccu 3.83.6

1 of the 1 container images this version deploys carry CVE-2026-39823.

Container imageDigestPackageFixed in
ghcr.io/jens-maus/raspberrymatic:3.83.6.202508244b22b4f407c4
stdlib@go1.24.4
1.25.10

Open the chart page →

2,433

Container images carrying it

4,576 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
lumenvox/cloud-init-tools:7.1de940e2ec601
stdlib@go1.26.2
1.25.10
1
lumenvox/cloud-license:2.0.09a69862e1248
stdlib@go1.17.3
1.25.10
1
lumenvox/configuration:7.182bf01d9ebec
stdlib@go1.26.2
1.25.10
1
lumenvox/deployment:7.1dadac2a74be6
stdlib@go1.26.2
1.25.10
1
lumenvox/file-store:7.138aa8711c9ef
stdlib@go1.26.2
1.25.10
1
lumenvox/license:7.135d0b1ac053e
stdlib@go1.26.2
1.25.10
1
lumenvox/management-api:7.16420a6e7d6c2
stdlib@go1.26.2
1.25.10
1
lumenvox/resource:7.193fd6ff1d62c
stdlib@go1.26.2
1.25.10
1
lumenvox/storage:7.1c961fe78e2ca
stdlib@go1.26.2
1.25.10
1
macropower/osrs_ge_exporter:v0.3c77ab5ea955c
stdlib@go1.21.0
1.25.10
1
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
stdlib@go1.19.2
1.25.10
1
macropower/wakatime-exporter:0.1.0dbb05debb785
stdlib@go1.14.6
1.25.10
1
maldridge/alertmanager-irc-relay:v0.4.1391de2b76128
stdlib@go1.16.4
1.25.10
1
manojchaulagain/go-k8s:0.1.0f237b5f637ae
stdlib@go1.20.1
1.25.10
1
mantlenetworkio/l2geth:v0.4.36bf383d14291
stdlib@go1.19.10
1.25.10
1
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
stdlib@go1.20.2
1.25.10
1
masipcat/wireguard-go:latest696206e5954d
stdlib@go1.20.14
1.25.10
1
masipcat/wireguard-go:0.0.20230223769f7bb64694
stdlib@go1.20.14
1.25.10
1
matrixdb/custom-external-provisioner:4622a07d7-202204247e9ffe249a51
stdlib@go1.17.8
1.25.10
1
matrixdb/kubebuilder_kube-rbac-proxy:v0.12.0ed3c7e6291e8
stdlib@go1.18.1
1.25.10
1
matrixdb/rawfile-csi:v0.2.195b2e38e913d
stdlib@go1.17.9
1.25.10
1
matrixdb/sig-storage_csi-node-driver-registrar:v2.2.0ba763bb01ddc
stdlib@go1.16
1.25.10
1
matrixdb/sig-storage_livenessprobe:v2.3.07ab06fe3d8a7
stdlib@go1.16
1.25.10
1
matrixdotorg/synapse:v1.161.06b95dd129e35
stdlib@go1.24.4
1.25.10
1
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
stdlib@go1.19.8
1.25.10
1
mattermost/calls-offloader:v0.9.0b440b282599e
stdlib@go1.22.7
1.25.10
1
mattermost/focalboard:0.9.031078df7a3c8
stdlib@go1.16.5
1.25.10
1
mattermost/focalboard:0.6.7f2f987dada52
stdlib@go1.16.4
1.25.10
1
mattermost/mattermost-app-chaosengine:c153e436268954edd67
stdlib@go1.16.8
1.25.10
1
mattermost/mattermost-operator:v1.25.4bac00a2bbd33
stdlib@go1.24.13
1.25.10
1
mattermost/mattermost-push-proxy:6.3.045c53061c74e
stdlib@go1.21.13
1.25.10
1
mattermost/rtcd:latesta27058aaa53a
stdlib@go1.24.13
1.25.10
1
matthiasluedtke/iconserver:v3.16.0661d607b0fbc
stdlib@go1.21.1
1.25.10
1
mavrick1/kubestellar-b:latest45ca0429a1d4
stdlib@go1.20.3
1.25.10
1
maxrocketinternet/k8s-event-logger:2.70234bdec4626
stdlib@go1.24.13
1.25.10
1
maxrocketinternet/k8s-event-logger:2.111224534789d
stdlib@go1.20.5
1.25.10
1
mbround18/valheim:3.1.070bd4da591cd
stdlib@go1.18.1
1.25.10
1
mccutchen/go-httpbin:v2.15.024528cf5229d
stdlib@go1.23.1
1.25.10
1
mccutchen/go-httpbin:v2.2.25994403ef75b
stdlib@go1.16.2
1.25.10
1
megaease/easegress:latestfad1c7452958
stdlib@go1.26.1
1.25.10
1
mesosphere/dex:v2.37.0-d2iq.1b093d78a21ed
stdlib@go1.20.4
1.25.10
1
mesosphere/dex-controller:v0.16.11b2dd9c0b0fc
stdlib@go1.22.7
1.25.10
1
mesosphere/dex-k8s-authenticator:v1.4.1-d2iqf3d9982cc2fd
stdlib@go1.23.0
1.25.10
1
mesosphere/karma:v0.55-d2iq-proxy4693bb4e0814
stdlib@go1.13.7
1.25.10
1
mesosphere/kommander-federation-authorizedlister:v0.21.263bc411b930b
stdlib@go1.14.5
1.25.10
1
mesosphere/kommander-federation-controller-manager:v0.21.2b036785a8862
stdlib@go1.14.5
1.25.10
1
mesosphere/kommander-federation-utility-apiserver:v0.21.2f9b769c65e24
stdlib@go1.14.5
1.25.10
1
mesosphere/kommander-federation-webhook:v0.21.294af41b6dd9a
stdlib@go1.14.5
1.25.10
1
mesosphere/kommander-licensing-controller-manager:v0.21.28e18bbe407f7
stdlib@go1.14.5
1.25.10
1
mesosphere/kommander-licensing-webhook:v0.21.2265edcd2a1ca
stdlib@go1.14.5
1.25.10
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.