StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,764
of 17,792 indexed, latest versions
Container images
4,327
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,764 of 17,792 indexed charts deploy, on 4,327 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+268 more0.44.04,327
OSV records
GO-2026-5024

Charts affected

3,764 by stars
ChartLatestAffected imagesRadar Score
pageshelm-repo1.0.01 of 3See more

pages helm-repo 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

20,242
steampipehelm-steampipeVerified publisher2.4.11 of 1See more

steampipe helm-steampipe 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

3,154
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

6,085
goshimmerhiveroad0.2.141 of 1See more

goshimmer hiveroad 0.2.14

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
iotaledger/goshimmer:v0.8.6b02a8f77474f
golang.org/x/sys@v0.0.0-20210909193231-528a39cd75f3
0.44.0

Open the chart page →

2,550
cratedb-adapterhmdmph0.1.01 of 1See more

cratedb-adapter hmdmph 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
0.44.0

Open the chart page →

2,920
printserverhmediadeVerified publisher1.0.22 of 4See more

printserver hmediade 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.9.5b3aba22b1da8
golang.org/x/sys@v0.15.0
0.44.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20231011-8b53cabe0a7943503b45d
golang.org/x/sys@v0.13.0
0.44.0

Open the chart page →

10,948
imageproxyhmphuVerified publisher0.1.11 of 1See more

imageproxy hmphu 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
willnorris/imageproxy:latest21d0c90f4c31
golang.org/x/sys@v0.0.0-20210806184541-e5e7981a1069
0.44.0

Open the chart page →

2,147
cert-managerhomeenterpriseinc1.10.13 of 3See more

cert-manager homeenterpriseinc 1.10.1

3 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.10.1b5657161d2c2
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0
quay.io/jetstack/cert-manager-controller:v1.10.11143471c90db
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0
quay.io/jetstack/cert-manager-webhook:v1.10.164121721c665
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0

Open the chart page →

4,734
honeydipperhoneydipperVerified publisher0.1.111 of 2See more

honeydipper honeydipper 0.1.11

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/redis:5fc5ecd863862
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
0.44.0

Open the chart page →

1,731
hoppscotchhoppscotch0.1.11 of 1See more

hoppscotch hoppscotch 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
golang.org/x/sys@v0.14.0
0.44.0

Open the chart page →

3,621
paperlesshpVerified publisher0.1.21 of 5See more

paperless hp 0.1.2

1 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
apache/tika:3.3.1.090b7fa1dc018
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

26,984
hammerspace-csihscsi1.2.86 of 6See more

hammerspace-csi hscsi 1.2.8

6 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
hammerspaceinc/csi-plugin:v1.2.8-rc2395bee4504fc
golang.org/x/sys@v0.31.0
0.44.0
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
golang.org/x/sys@v0.28.0
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
golang.org/x/sys@v0.28.0
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v5.2.0d5e46da8aff7
golang.org/x/sys@v0.29.0
0.44.0
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
golang.org/x/sys@v0.32.0
0.44.0
registry.k8s.io/sig-storage/csi-snapshotter:v8.0.25f051159c95f
golang.org/x/sys@v0.24.0
0.44.0

Open the chart page →

4,498
eoloplanthttpd-eoloplant0.1.03 of 7See more

eoloplant httpd-eoloplant 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
golang.org/x/sys@v0.5.0
0.44.0
library/mongo:5.0.6-focal8e70544b6c76
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
0.44.0
library/mysql:8.0.28fc77d54cacef
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
0.44.0

Open the chart page →

32,372
cac-systemhuangchengwu-helm-chart0.1.07 of 9See more

cac-system huangchengwu-helm-chart 0.1.0

7 of the 9 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
huangchengwu6904/hi-app:cac-16910478061b932f8221a9
golang.org/x/sys@v0.8.0
0.44.0
quay.io/jetstack/cert-manager-cainjector:v1.12.0e0a5b06b231c
golang.org/x/sys@v0.8.0
0.44.0
quay.io/jetstack/cert-manager-controller:v1.12.04a9d0264055b
golang.org/x/sys@v0.8.0
0.44.0
quay.io/jetstack/cert-manager-ctl:v1.12.08d54fe9d0c0d
golang.org/x/sys@v0.8.0
0.44.0
quay.io/jetstack/cert-manager-webhook:v1.12.0ec4306b243d9
golang.org/x/sys@v0.8.0
0.44.0
quay.io/metallb/controller:v0.13.101b33357b3595
golang.org/x/sys@v0.8.0
0.44.0
quay.io/metallb/speaker:v0.13.1000406ccb1fa0
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

11,221
mariadbhuangchengwu-helm-chart0.1.01 of 1See more

mariadb huangchengwu-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

1,924
prometheushuangchengwu-helm-chart0.1.01 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
0.44.0

Open the chart page →

16,495
skywalking-v1huangchengwu-helm-chart0.1.01 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.9.1b4ec8c18d079
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
0.44.0

Open the chart page →

20,741
tdenginehuangchengwu-helm-chart3.0.21 of 1See more

tdengine huangchengwu-helm-chart 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
tdengine/tdengine:3.0.2.24140a4021ddb
golang.org/x/sys@v0.0.0-20220610221304-9f5ed59c137d
0.44.0

Open the chart page →

3,755
sing-boxhuscker-chartsVerified publisher1.0.71 of 1See more

sing-box huscker-charts 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/sagernet/sing-box:v1.12.03c1ee82d450d
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,444
jaegerhuseyinbabalVerified publisher0.1.01 of 3See more

jaeger huseyinbabal 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:latestab6f1a1f0fb4
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

1,492
kubetaghuseyinbabalVerified publisher1.0.21 of 2See more

kubetag huseyinbabal 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/huseyinbabal/kubetag:lateste161eddc59a0
golang.org/x/sys@v0.39.0
0.44.0

Open the chart page →

1,277
mocktailhuseyinnurbaki0.2.11 of 1See more

mocktail huseyinnurbaki 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
hhaluk/mocktail:2.0.3350d19360038
golang.org/x/sys@v0.0.0-20211124211545-fe61309f8881
0.44.0

Open the chart page →

1,606
vcbackendi4trustVerified publisher0.0.81 of 1See more

vcbackend i4trust 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
wistefan/vcbackend:0.0.13bd436164b51
golang.org/x/sys@v0.2.0
0.44.0

Open the chart page →

1,848
vcverifieri4trustVerified publisher1.0.231 of 1See more

vcverifier i4trust 1.0.23

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/fiware/vcverifier:2.0.1cd36290dc849
golang.org/x/sys@v0.6.0
0.44.0

Open the chart page →

1,784
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
golang.org/x/sys@v0.6.0
0.44.0

Open the chart page →

7,938
stoloniamalryz0.10.01 of 2See more

stolon iamalryz 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
sorintlab/stolon:v0.16.0-pg1236b45c0f97fc
golang.org/x/sys@v0.0.0-20200124204421-9fbb57f87de9
0.44.0

Open the chart page →

4,052
ibexaibexaVerified publisher3.11.12 of 10See more

ibexa ibexa 3.11.1

2 of the 10 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:8.0.41bf577825b52a
golang.org/x/sys@v0.13.0
0.44.0
registry.gitlab.com/xrow-public/ci-tools/kubectl:main9357cfeef63c
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

5,986
ibm-microclimateibm-charts0.1.02 of 8See more

ibm-microclimate ibm-charts 0.1.0

2 of the 8 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/sys@v0.31.0
0.44.0
library/postgres:9.6caddd35b05cd
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
0.44.0

Open the chart page →

57,759
ibm-ucv-prodibm-helm5.2.61 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

1 of the 16 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/nginx:1.27.1934d1acd5ca8
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

12,161
metamcpicoretechVerified publisher0.3.101 of 2See more

metamcp icoretech 0.3.10

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

1,649
multicaicoretechVerified publisher0.4.432 of 5See more

multica icoretech 0.4.43

2 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
golang.org/x/sys@v0.1.0
0.44.0
pgvector/pgvector:pg17cf134a767f47
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

2,591
tolgeeicoretechVerified publisher0.49.01See more

tolgee icoretech 0.49.0

1 container image this version deploys carries CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:18.369e8582b781c
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

monitoring-stackict-platformVerified publisher0.4.010 of 13See more

monitoring-stack ict-platform 0.4.0

10 of the 13 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/loki:3.6.73c8fd3570dd9
golang.org/x/sys@v0.38.0
0.44.0
prom/memcached-exporter:v0.15.4b6763ecb3c47
golang.org/x/sys@v0.36.0
0.44.0
ghcr.io/grafana/alloy-operator:1.7.02ce23f948e02
golang.org/x/sys@v0.37.0
0.44.0
ghcr.io/grafana/grafana-operator:v5.22.2d45fc24e8f43
golang.org/x/sys@v0.41.0
0.44.0
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
golang.org/x/sys@v0.31.0
0.44.0
ghcr.io/jkroepke/kube-webhook-certgen:1.8.043401e216e89
golang.org/x/sys@v0.42.0
0.44.0
quay.io/prometheus-operator/prometheus-operator:v0.90.152a6a92d915e
golang.org/x/sys@v0.42.0
0.44.0
quay.io/prometheus/node-exporter:v1.11.10f422f62c15f
golang.org/x/sys@v0.42.0
0.44.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
golang.org/x/sys@v0.39.0
0.44.0
registry.k8s.io/kubectl:v1.31.099b37df34bc4
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

9,629
ingress-nginxifmethod-helm-charts4.12.12 of 2See more

ingress-nginx ifmethod-helm-charts 4.12.1

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
golang.org/x/sys@v0.31.0
0.44.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.5.2e8825994b7a2
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

1,477
eoloserverihuertas2021-vmartinp2021-helm0.1.03 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
golang.org/x/sys@v0.5.0
0.44.0
library/mongo:5.0.6-focal8e70544b6c76
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
0.44.0
library/mysql:8.0.28fc77d54cacef
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
0.44.0

Open the chart page →

27,822
bluesky-pdsijmacd1.0.02 of 2See more

bluesky-pds ijmacd 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/bluesky-social/pds:0.4d95725b24dbe
golang.org/x/sys@v0.35.0
0.44.0

Open the chart page →

9,038
ikigaiikigai-chartVerified publisher0.0.93 of 58See more

ikigai ikigai-chart 0.0.9

3 of the 58 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kuberay/operator:v1.0.04e6ac8a3a2c4
golang.org/x/sys@v0.13.0
0.44.0
rabbitmqoperator/cluster-operator:2.6.08651dd3cec51
golang.org/x/sys@v0.14.0
0.44.0
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
golang.org/x/sys@v0.0.0-20220906165534-d0df966e6959
0.44.0

Open the chart page →

37,874
ilum-apiilumVerified publisher6.7.31 of 1See more

ilum-api ilum 6.7.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ilum/api:6.7.3624fd09528c8
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

2,196
ilum-jupyterhubilumVerified publisher4.3.11 of 6See more

ilum-jupyterhub ilum 4.3.1

1 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/kube-scheduler:v1.30.1474a5cf9cfa9f
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

1,843
ilum-otel-collectorilumVerified publisher0.1.01 of 1See more

ilum-otel-collector ilum 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.113.05ac3e0ba2b0b
golang.org/x/sys@v0.26.0
0.44.0

Open the chart page →

1,394
plausible-analyticsimioVerified publisher0.4.21 of 5See more

plausible-analytics imio 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:17.6-alpineef257d85f76e
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

10,502
apexkube-agentimprowisedVerified publisher1.4.01 of 2See more

apexkube-agent improwised 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
masipcat/wireguard-go:0.0.20230223769f7bb64694
golang.org/x/sys@v0.2.0
0.44.0

Open the chart page →

3,353
frigateimprowisedVerified publisher1.1.01 of 1See more

frigate improwised 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/blakeblackshear/frigate:0.13.07a5244e4c8dc
golang.org/x/sys@v0.6.0
0.44.0

Open the chart page →

2,159
kore-boardimprowisedVerified publisher0.5.83 of 4See more

kore-board improwised 0.5.8

3 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.backend:v0.5.5455f6e7a26fd
golang.org/x/sys@v0.0.0-20220722155257-8c9f86f7a55f
0.44.0
ghcr.io/kore3lab/kore-board.metrics-scraper:v0.5.547f88b18fb7c
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
0.44.0
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
golang.org/x/sys@v0.0.0-20220722155257-8c9f86f7a55f
0.44.0

Open the chart page →

16,230
fpga-cloudinaccelVerified publisher1.2.23 of 3See more

fpga-cloud inaccel 1.2.2

3 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
inaccel/cloud-init:latesta5d3d0af05c1
golang.org/x/sys@v0.16.0
0.44.0
inaccel/device-selector:latest44b4f274f40b
golang.org/x/sys@v0.17.0
0.44.0
inaccel/kubevirt-hack:latestbdfd61803a70
golang.org/x/sys@v0.16.0
0.44.0

Open the chart page →

3,165
fpga-operatorinaccelVerified publisher2.8.23 of 7See more

fpga-operator inaccel 2.8.2

3 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
inaccel/daemon:latest093e1ea90ab8
golang.org/x/sys@v0.15.0
0.44.0
inaccel/mkrt:latest187fd448b6f2
golang.org/x/sys@v0.8.0
0.44.0
inaccel/reef:latestc967218739f3
golang.org/x/sys@v0.16.0
0.44.0

Open the chart page →

5,770
infisical-agent-injectorinfisical-charts0.1.121 of 1See more

infisical-agent-injector infisical-charts 0.1.12

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
infisical/infisical-agent-injector:v0.1.12718dd5bee7cb
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

761
infisical-csi-providerinfisical-charts0.2.31 of 1See more

infisical-csi-provider infisical-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
infisical/infisical-csi-provider:v0.0.9e3390e677db6
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

636
infisical-pki-issuerinfisical-charts1.0.01 of 1See more

infisical-pki-issuer infisical-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
infisical/pki-issuer:latestff38294270e3
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

573
chronografinfluxdata1.2.61 of 1See more

chronograf influxdata 1.2.6

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/chronograf:1.9.496d8a3f65a4f
golang.org/x/sys@v0.0.0-20210503080704-8803ae5d1324
0.44.0

Open the chart page →

2,204

Container images carrying it

4,327 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
gcr.io/k8s-staging-sig-storage/csi-provisioner:v3.2.14ad5fcdbe7e9
golang.org/x/sys@v0.0.0-20220406163625-3f8b81556e12
0.44.0
2
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
golang.org/x/sys@v0.0.0-20190801041406-cbf593c0f2f3
0.44.0
2
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller0d5f740b4224
golang.org/x/sys@v0.32.0
0.44.0
2
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook697668be7893
golang.org/x/sys@v0.32.0
0.44.0
2
gcr.io/knative-releases/knative.dev/serving/cmd/activator031408ec516f
golang.org/x/sys@v0.32.0
0.44.0
2
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler3502bb5aa60f
golang.org/x/sys@v0.32.0
0.44.0
2
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler-hpa7405faeb7636
golang.org/x/sys@v0.32.0
0.44.0
2
gcr.io/knative-releases/knative.dev/serving/cmd/controller5b93308a392c
golang.org/x/sys@v0.32.0
0.44.0
2
gcr.io/knative-releases/knative.dev/serving/cmd/webhook50831d9aaa69
golang.org/x/sys@v0.32.0
0.44.0
2
ghcr.io/alpineworks/flux-suspension-exporter:v1.0.0341f0a6cd2b6
golang.org/x/sys@v0.29.0
0.44.0
2
ghcr.io/appscode/grafana-tools:v0.8.077c9d29080eb
golang.org/x/sys@v0.43.0
0.44.0
2
ghcr.io/appscode/kube-auth-manager:v0.0.1789692ab9193
golang.org/x/sys@v0.6.0
0.44.0
2
ghcr.io/appscode/kubectl-nonroot:1.3183d43cc41590
golang.org/x/sys@v0.21.0
0.44.0
2
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0
2
ghcr.io/appscode/license-proxyserver:v0.1.1e192ad567e0b
golang.org/x/sys@v0.40.0
0.44.0
2
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
golang.org/x/sys@v0.39.0
0.44.0
2
ghcr.io/astriaorg/astria-geth:latest4249e403225a
golang.org/x/sys@v0.21.0
0.44.0
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
golang.org/x/sys@v0.21.0
0.44.0
2
ghcr.io/buoyantio/prometheus:v2.55.12659f4c2ebb7
golang.org/x/sys@v0.25.0
0.44.0
2
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
golang.org/x/sys@v0.35.0
0.44.0
2
ghcr.io/chaos-mesh/chaos-coredns:v0.2.838bfdf5e3774
golang.org/x/sys@v0.0.0-20210917161153-d61c044b1678
0.44.0
2
ghcr.io/chaos-mesh/chaos-coredns:v0.2.678dc63bc5b89
golang.org/x/sys@v0.0.0-20210917161153-d61c044b1678
0.44.0
2
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.1b5210df46c05
golang.org/x/sys@v0.30.0
0.44.0
2
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
golang.org/x/sys@v0.0.0-20220928140112-f11e5e49a4ec
0.44.0
2
ghcr.io/cosmos/gaia:v25.1.0f115777d1112
golang.org/x/sys@v0.33.0
0.44.0
2
ghcr.io/cubed-it/inlets:4.0.0f02325f099bc
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
0.44.0
2
ghcr.io/danopstech/speedtest_exporter:v0.0.599efbe55412b
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
0.44.0
2
ghcr.io/dergeberl/kubeteach:v0.2.3-alphacf4428a3c79e
golang.org/x/sys@v0.1.0
0.44.0
2
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0
2
ghcr.io/eosc-lot-1/curl-jq:8156beafae7ca
golang.org/x/sys@v0.12.0
0.44.0
2
ghcr.io/fluxcd/flux-cli:v2.9.1020edbaee890
golang.org/x/sys@v0.40.0
0.44.0
2
ghcr.io/glassflow/glassflow-etl-k8s-operator:v3.2.1e70364e88629
golang.org/x/sys@v0.35.0
0.44.0
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
golang.org/x/sys@v0.19.0
0.44.0
2
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.1c137478627cc
golang.org/x/sys@v0.26.0
0.44.0
2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
golang.org/x/sys@v0.13.0
0.44.0
2
ghcr.io/jkroepke/kube-webhook-certgen:1.7.47a62bba56a7c
golang.org/x/sys@v0.39.0
0.44.0
2
ghcr.io/jont828/cluster-api-visualizer:v1.5.0678ba6833297
golang.org/x/sys@v0.34.0
0.44.0
2
ghcr.io/juniorjpdj/containers/openssl-kubectl:1.36.1-r358afba209ea0
golang.org/x/sys@v0.40.0
0.44.0
2
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.1.409fdfb7ce090
golang.org/x/sys@v0.18.0
0.44.0
2
ghcr.io/keptn/certificate-operator:v3.0.0b82064b0e339
golang.org/x/sys@v0.26.0
0.44.0
2
ghcr.io/keptn/lifecycle-operator:v2.0.0866ced256a8c
golang.org/x/sys@v0.26.0
0.44.0
2
ghcr.io/keptn/metrics-operator:v2.1.0dc48471c7cf8
golang.org/x/sys@v0.31.0
0.44.0
2
ghcr.io/klicktipp/kubectl:1.36.30c2402d92b5c
golang.org/x/sys@v0.40.0
0.44.0
2
ghcr.io/kluster-manager/cluster-auth:v0.5.1fba6fb872281
golang.org/x/sys@v0.39.0
0.44.0
2
ghcr.io/konpyutaika/docker-images/nifikop:v1.14.1-release6bb00c592a82
golang.org/x/sys@v0.31.0
0.44.0
2
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
golang.org/x/sys@v0.13.0
0.44.0
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
golang.org/x/sys@v0.31.0
0.44.0
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
golang.org/x/sys@v0.31.0
0.44.0
2
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
golang.org/x/sys@v0.13.0
0.44.0
2
ghcr.io/rabbitmq/messaging-topology-operator:1.19.124c4649ef3ef
golang.org/x/sys@v0.43.0
0.44.0
2

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.