StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,765
of 17,797 indexed, latest versions
Container images
4,328
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,765 of 17,797 indexed charts deploy, on 4,328 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+268 more0.44.04,328
OSV records
GO-2026-5024

Charts affected

3,765 by stars
ChartLatestAffected imagesRadar Score
smartfs-csi-driverkubeblocksVerified publisher0.1.21 of 6See more

smartfs-csi-driver kubeblocks 0.1.2

1 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
golang.org/x/sys@v0.6.0
0.44.0

Open the chart page →

9,256
snapshot-controllerkubeblocksVerified publisher1.7.21 of 1See more

snapshot-controller kubeblocks 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v6.2.198bab4eaf23c
golang.org/x/sys@v0.3.0
0.44.0

Open the chart page →

1,128
spiderpoolkubeblocksVerified publisher1.2.04 of 4See more

spiderpool kubeblocks 1.2.0

4 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.1.409fdfb7ce090
golang.org/x/sys@v0.18.0
0.44.0
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
golang.org/x/sys@v0.0.0-20210902050250-f475640dd07b
0.44.0
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
golang.org/x/sys@v0.0.0-20210902050250-f475640dd07b
0.44.0
ghcr.io/spidernet-io/spiderpool/spiderpool-plugins:19f19457ae7cec86457b0411543a3cf21dd9f95a8edc39be1e22
golang.org/x/sys@v0.35.0
0.44.0

Open the chart page →

8,484
vaultkubeblocksVerified publisher0.30.02 of 2See more

vault kubeblocks 0.30.0

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
hashicorp/vault:1.19.0bbb7f98dc67d
golang.org/x/sys@v0.30.0
0.44.0
hashicorp/vault-k8s:1.6.2103a2d817a74
golang.org/x/sys@v0.30.0
0.44.0

Open the chart page →

2,751
victoria-metrics-alertkubeblocksVerified publisher0.8.3-reload3 of 3See more

victoria-metrics-alert kubeblocks 0.8.3-reload

3 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
0.44.0
victoriametrics/vmalert:v1.95.1a83e5db0897a
golang.org/x/sys@v0.14.0
0.44.0
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/sys@v0.3.0
0.44.0

Open the chart page →

3,715
kube-botblocker-operatorkube-botblockerVerified publisher0.2.21 of 2See more

kube-botblocker-operator kube-botblocker 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/gustavojst/kube-botblocker:0.2.04de059bb32ac
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

500
kubeclaritykubeclarity2.23.33 of 5See more

kubeclarity kubeclarity 2.23.3

3 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/openclarity/grype-server:v0.6.079412399f301
golang.org/x/sys@v0.11.0
0.44.0
ghcr.io/openclarity/kubeclarity:v2.23.314450f52a708
golang.org/x/sys@v0.15.0
0.44.0
ghcr.io/openclarity/kubeclarity-sbom-db:v2.23.3cef2b88bfc76
golang.org/x/sys@v0.13.0
0.44.0

Open the chart page →

5,521
airflow-operatorkubedoopVerified publisher0.4.01 of 1See more

airflow-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/airflow-operator:0.4.0b716ef483b75
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

415
commons-operatorkubedoopVerified publisher0.4.01 of 1See more

commons-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/commons-operator:0.4.01a353def9fe1
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

366
dolphinscheduler-operatorkubedoopVerified publisher0.4.01 of 1See more

dolphinscheduler-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/dolphinscheduler-operator:0.4.0d0a4e55eeb7f
golang.org/x/sys@v0.43.0
0.44.0

Open the chart page →

358
hbase-operatorkubedoopVerified publisher0.4.01 of 1See more

hbase-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hbase-operator:0.4.069e9a1b0daf8
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

366
hdfs-operatorkubedoopVerified publisher0.4.01 of 1See more

hdfs-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hdfs-operator:0.4.0eb3c2928250e
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

415
hive-operatorkubedoopVerified publisher0.4.01 of 1See more

hive-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hive-operator:0.4.0d66ba9149c22
golang.org/x/sys@v0.43.0
0.44.0

Open the chart page →

358
kafka-operatorkubedoopVerified publisher0.4.01 of 1See more

kafka-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/kafka-operator:0.4.00a0b4c39c1ba
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

456
listener-operatorkubedoopVerified publisher0.4.06 of 6See more

listener-operator kubedoop 0.4.0

6 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/listener-csi-driver:0.4.0b69bed123b02
golang.org/x/sys@v0.43.0
0.44.0
quay.io/zncdatadev/listener-operator:0.4.068b92dae8d75
golang.org/x/sys@v0.43.0
0.44.0
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
golang.org/x/sys@v0.23.0
0.44.0
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
golang.org/x/sys@v0.23.0
0.44.0
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
golang.org/x/sys@v0.21.0
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.12.00d23a6fd60c4
golang.org/x/sys@v0.24.0
0.44.0

Open the chart page →

4,472
nifi-operatorkubedoopVerified publisher0.4.01 of 1See more

nifi-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/nifi-operator:0.4.0bb4e26ff5e2f
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

366
secret-operatorkubedoopVerified publisher0.4.05 of 5See more

secret-operator kubedoop 0.4.0

5 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/secret-csi-driver:0.4.0604a7d98ab58
golang.org/x/sys@v0.38.0
0.44.0
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
golang.org/x/sys@v0.23.0
0.44.0
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
golang.org/x/sys@v0.23.0
0.44.0
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
golang.org/x/sys@v0.21.0
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.12.00d23a6fd60c4
golang.org/x/sys@v0.24.0
0.44.0

Open the chart page →

4,414
spark-k8s-operatorkubedoopVerified publisher0.4.01 of 1See more

spark-k8s-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/spark-k8s-operator:0.4.0d3f2b10c4a6d
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

388
superset-operatorkubedoopVerified publisher0.4.01 of 1See more

superset-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/superset-operator:0.4.0102e66e32218
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

366
zookeeper-operatorkubedoopVerified publisher0.4.01 of 1See more

zookeeper-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/zncdatadev/zookeeper-operator:0.4.0b4f33d89ac45
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

366
kube-ecr-secrets-operatorkube-ecr-secrets-operatorVerified publisher0.4.01 of 2See more

kube-ecr-secrets-operator kube-ecr-secrets-operator 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/zak905/kube-ecr-secrets-operator/controller-manager:0.2.11d078e45bac70
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

64
cephfs-csikubegems1.0.81 of 6See more

cephfs-csi kubegems 1.0.8

1 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.44.0

Open the chart page →

4,452
chartmuseumkubegems3.8.01 of 1See more

chartmuseum kubegems 3.8.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.14.0878ef6a31fa0
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0

Open the chart page →

3,526
gatewaykubegems0.3.22 of 2See more

gateway kubegems 0.3.2

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubegems/ingress-nginx-operator:v0.2.0cc67357beeeb
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.44.0
kubegems/kube-rbac-proxy:v0.8.0941f557ed1ee
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0

Open the chart page →

3,506
giteakubegems5.0.81 of 2See more

gitea kubegems 5.0.8

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
gitea/gitea:1.16.8b0bdf102b485
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0

Open the chart page →

3,400
juicefs-csi-driverkubegems0.19.22 of 6See more

juicefs-csi-driver kubegems 0.19.2

2 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
juicedata/csi-dashboard:v0.23.03e4daf9626d5
golang.org/x/sys@v0.13.0
0.44.0
juicedata/juicefs-csi-driver:v0.23.0d915e899e322
golang.org/x/sys@v0.13.0
0.44.0

Open the chart page →

4,839
juicefs-tenantkubegems1.0.11 of 3See more

juicefs-tenant kubegems 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubegems/redis:7.2.5-debian-12-r2870ee3a77add
golang.org/x/sys@v0.2.0
0.44.0

Open the chart page →

4,314
knative-servingkubegems1.0.17 of 8See more

knative-serving kubegems 1.0.1

7 of the 8 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourierdigest-pinned197fbb71d1f1
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned08315309da4b
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned105bdd14ecaa
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedbac158dfb0c7
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mappingdigest-pinnede384a295069b
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhookdigest-pinned15f1ce7f35b4
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinned1282a399cbb9
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0

Open the chart page →

10,469
kubegems-edgekubegems1.24.101 of 1See more

kubegems-edge kubegems 1.24.10

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubegems/kubegems:v1.24.10a730bcf9322a
golang.org/x/sys@v0.15.0
0.44.0

Open the chart page →

3,390
kubegems-multus-cnikubegems2.4.11 of 2See more

kubegems-multus-cni kubegems 2.4.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.2.16bebbda31416
golang.org/x/sys@v0.23.0
0.44.0

Open the chart page →

1,398
kubegems-paikubegems1.0.181 of 1See more

kubegems-pai kubegems 1.0.18

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubegems/mysql:8.0.33-debian-11-r019cb195b9a50
golang.org/x/sys@v0.2.0
0.44.0

Open the chart page →

1,053
logging-operatorkubegems3.17.61 of 1See more

logging-operator kubegems 3.17.6

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/logging-operator:3.17.623c2d4d54a64
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0

Open the chart page →

1,800
prometheus-adapterkubegems4.14.11 of 1See more

prometheus-adapter kubegems 4.14.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
golang.org/x/sys@v0.19.0
0.44.0

Open the chart page →

937
prometheus-blackbox-exporterkubegems7.1.31 of 1See more

prometheus-blackbox-exporter kubegems 7.1.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.22.0608acee5704a
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0

Open the chart page →

1,635
volcanokubegems1.12.13 of 3See more

volcano kubegems 1.12.1

3 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
volcanosh/vc-controller-manager:v1.12.13815883c32f6
golang.org/x/sys@v0.32.0
0.44.0
volcanosh/vc-scheduler:v1.12.1b24ea8af2d16
golang.org/x/sys@v0.32.0
0.44.0
volcanosh/vc-webhook-manager:v1.12.1f8b50088a732
golang.org/x/sys@v0.26.0
0.44.0

Open the chart page →

5,036
xpai-schedulerkubegems1.12.11 of 2See more

xpai-scheduler kubegems 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
projecthami/volcano-vgpu-device-plugin:v1.9.40c94118d1d98
golang.org/x/sys@v0.0.0-20200413165638-669c56c373c4
0.44.0

Open the chart page →

2,324
gptchat-api-feishubotkubegemsapp0.1.13 of 3See more

gptchat-api-feishubot kubegemsapp 0.1.1

3 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubegems/chatgpt-api:latestf3c492a938ad
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
kubegems/chatgpt-api-feishubot:latest7c93c84b2055
golang.org/x/sys@v0.3.0
0.44.0
kubegems/chatgpt-api-proxy:latest8905c9dbbb5d
golang.org/x/sys@v0.3.0
0.44.0

Open the chart page →

8,490
kubeintellectkubeintellectVerified publisher2.5.01 of 2See more

kubeintellect kubeintellect 2.5.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/mskazemi/kubeintellect:2.5.0b5d7681d1b9d
golang.org/x/sys@v0.26.0
0.44.0

Open the chart page →

1,890
kubelet-summary-exporterkubelet-summary-exporter1.0.01 of 1See more

kubelet-summary-exporter kubelet-summary-exporter 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/salesforce/kubelet-summary-exporter:sha-c2bf90d377e09d2dd72
golang.org/x/sys@v0.6.0
0.44.0

Open the chart page →

1,016
log-generatorkube-loggingVerified publisher0.6.01 of 1See more

log-generator kube-logging 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/kube-logging/log-generator:v0.6.08324bbc0ec08
golang.org/x/sys@v0.5.0
0.44.0

Open the chart page →

1,269
logging-demokube-loggingVerified publisher4.0.31 of 1See more

logging-demo kube-logging 4.0.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/kube-logging/log-generator:v0.4.105aa441b20aa
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
0.44.0

Open the chart page →

1,268
log-socketkube-loggingVerified publisher0.1.21 of 1See more

log-socket kube-logging 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/log-socket:latesta514736d2d4d
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0

Open the chart page →

1,220
kubemacpoolkubemacpoolVerified publisher0.3.01 of 1See more

kubemacpool kubemacpool 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/kubevirt/kubemacpool:v0.45.0eebb65b8a12c
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

1,625
kube-netlagkube-netlagVerified publisher1.1.01 of 1See more

kube-netlag kube-netlag 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

1,498
kube-node-readykube-node-ready0.5.01 of 1See more

kube-node-ready kube-node-ready 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/imunhatep/kube-node-ready:0.5.07439f6f9f85c
golang.org/x/sys@v0.35.0
0.44.0

Open the chart page →

399
apm-serverkube-opsVerified publisher0.1.21 of 1See more

apm-server kube-ops 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
elastic/apm-server:7.17.6c7a1c63257d0
golang.org/x/sys@v0.0.0-20220818161305-2296e01440c6
0.44.0

Open the chart page →

7,216
lokikube-opsVerified publisher1.7.31 of 1See more

loki kube-ops 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/kube-ops/loki:2.2.14fbd63194674
golang.org/x/sys@v0.0.0-20201223074533-0d417f636930
0.44.0

Open the chart page →

2,653
promtailkube-opsVerified publisher1.5.11 of 2See more

promtail kube-ops 1.5.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/kube-ops/promtail:2.2.134de6387233b
golang.org/x/sys@v0.0.0-20201223074533-0d417f636930
0.44.0

Open the chart page →

4,157
kube-ovnkube-ovn-test1.14.01 of 1See more

kube-ovn kube-ovn-test 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubeovn/kube-ovn:v1.14.06722b54eb5c0
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

5,025
kuberay-apiserverkuberay-operator1.7.01 of 2See more

kuberay-apiserver kuberay-operator 1.7.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/kuberay/security-proxy:nightly4525b5acd23c
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

258

Container images carrying it

4,328 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
bsgrigorov/helm-operator:latest45ab095f09c8
golang.org/x/sys@v0.0.0-20210119212857-b64e53b001e4
0.44.0
1
btcpayserver/tor:0.4.8.10e9585b68dc6b
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
0.44.0
1
buddyspencer/gickup:0.10.386b656f19b0c1
golang.org/x/sys@v0.31.0
0.44.0
1
buddyspencer/gickup:0.10.309e7dbf923c12
golang.org/x/sys@v0.19.0
0.44.0
1
buildkite/agent:3.25.0aec38cfaae0e
golang.org/x/sys@v0.0.0-20201009025420-dfb3f7c4e634
0.44.0
1
bulich/domain-exporter:latest6d0b780f7c7b
golang.org/x/sys@v0.8.0
0.44.0
1
burganbank/vault-initializer:v19259c34e4037
golang.org/x/sys@v0.18.0
0.44.0
1
burningalchemist/sql_exporter:0.16.0b8e4757c7def
golang.org/x/sys@v0.26.0
0.44.0
1
bytesafe/bytesafe-ce:v1.0.4ee287384c005
golang.org/x/sys@v0.8.0
0.44.0
1
caarlos0/domain_exporter:v1.23.0d11dec138900
golang.org/x/sys@v0.16.0
0.44.0
1
calico/cni:v3.28.0cef0c907b8f4
golang.org/x/sys@v0.19.0
0.44.0
1
calico/cni:v3.28.1e486870cfde8
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
0.44.0
1
calico/kube-controllers:v3.28.08f04e4772a2b
golang.org/x/sys@v0.19.0
0.44.0
1
calico/kube-controllers:v3.28.1eadb3a25109a
golang.org/x/sys@v0.19.0
0.44.0
1
calico/node:v3.28.0385bf6391fea
golang.org/x/sys@v0.19.0
0.44.0
1
calico/node:v3.28.1d8c644a8a3ee
golang.org/x/sys@v0.19.0
0.44.0
1
camptocamp/bucket-cloner:latestacfafc308d88
golang.org/x/sys@v0.0.0-20210423185535-09eb48e85fd7
0.44.0
1
captnbp/freebox-exporter:1.0.0-r01600c5a253e0
golang.org/x/sys@v0.13.0
0.44.0
1
casbin/casdoor:v1.224.066f836ef778b
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
1
casbin/casdoor:v1.753.0770ad9ec3190
golang.org/x/sys@v0.18.0
0.44.0
1
castopod/castopod:1.12.101fd37280cbb2
golang.org/x/sys@v0.6.0
0.44.0
1
castopod/castopod:1.15.54e4f0440520f
golang.org/x/sys@v0.40.0
0.44.0
1
cbeneke/hcloud-fip-controller:v0.4.1dc658078d7ba
golang.org/x/sys@v0.0.0-20200124204421-9fbb57f87de9
0.44.0
1
censedata/floating-server:v1.6.3ebfffb9dd4c0
golang.org/x/sys@v0.33.0
0.44.0
1
cesanta/docker_auth:1.14.098e0307e0d2d
golang.org/x/sys@v0.31.0
0.44.0
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
golang.org/x/sys@v0.0.0-20191120155948-bd437916bb0e
0.44.0
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
golang.org/x/sys@v0.0.0-20190813064441-fde4db37ae7a
0.44.0
1
cgtysylr/cluster-octopus:1.0.0aec0f8a38a77
golang.org/x/sys@v0.10.0
0.44.0
1
chaerr/kridge:demo-operator-v0.1.266833deec017
golang.org/x/sys@v0.5.0
0.44.0
1
chainflag/eth-faucet:latestac642796bcb6
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
chainsafe/lodestar:latest5593f6e97912
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
chainsafe/lodestar:v1.27.07b9fe4aa8073
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
chandanteekinavar/findery-market-payment-service:1.0c96f759b6ce4
golang.org/x/sys@v0.20.0
0.44.0
1
chaosnative/cle-auth-server:2.7.072ee352bc333
golang.org/x/sys@v0.0.0-20201119102817-f84b799fce68
0.44.0
1
chaosnative/cle-license-module:2.7.062cf6adc355e
golang.org/x/sys@v0.0.0-20210823070655-63515b42dcdf
0.44.0
1
chaosnative/cle-server:2.7.0e7bcff4a20c0
golang.org/x/sys@v0.0.0-20211117180635-dee7805ff2e1
0.44.0
1
charmcli/soft-serve:v0.4.039523c1a6ba8
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.44.0
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
golang.org/x/sys@v0.13.0
0.44.0
1
chibisafe/chibisafe-server:latest3da4fcbc1a18
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
chirpstack/chirpstack-application-server:3.17.6e0b23dfd24d6
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0
1
chirpstack/chirpstack-application-server:3fb7667fe037f
golang.org/x/sys@v0.0.0-20220722155257-8c9f86f7a55f
0.44.0
1
chirpstack/chirpstack-gateway-bridge:3.13.2ce3f2cdca8a9
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0
1
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
golang.org/x/sys@v0.6.0
0.44.0
1
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0
1
chriseaton/adventureworks:latest54c3384ce701
golang.org/x/sys@v0.25.0
0.44.0
1
chrislusf/seaweedfs:3.64634b094b2183
golang.org/x/sys@v0.18.0
0.44.0
1
chrislusf/seaweedfs:3.56ed80f00fde46
golang.org/x/sys@v0.12.0
0.44.0
1
chriswells0/first-mate:1.0.5f3918ec8471c
golang.org/x/sys@v0.6.0
0.44.0
1
circleci/container-agent:34d8d0ae5efc3
golang.org/x/sys@v0.6.0
0.44.0
1
circleci/runner:launch-agent9bdc62f02162
golang.org/x/sys@v0.15.0
0.44.0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.