StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,778
of 17,790 indexed, latest versions
Container images
4,358
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,778 of 17,790 indexed charts deploy, on 4,358 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+268 more0.44.04,358
OSV records
GO-2026-5024

Charts affected

3,778 by stars
ChartLatestAffected imagesRadar Score
pgvectorcagriekinVerified publisher2.1.01 of 3See more

pgvector cagriekin 2.1.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

4,056
camel-dashboard-operatorcamel-dashboardVerified publisher0.1.01 of 1See more

camel-dashboard-operator camel-dashboard 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

520
blackbox-exportercamptocamp31.0.01 of 1See more

blackbox-exporter camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.25.0b04a9fef4fa0
golang.org/x/sys@v0.19.0
0.44.0

Open the chart page →

913
capsulecapsuleOfficialVerified publisher0.14.61 of 2See more

capsule capsule 0.14.6

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,238
capsule-proxycapsule-proxyOfficialVerified publisher0.14.11 of 2See more

capsule-proxy capsule-proxy 0.14.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,224
fluxcd-webuiccowleyVerified publisher0.0.21 of 2See more

fluxcd-webui ccowley 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
adrianberger/fluxcd-webui:latest76848c0d2780
golang.org/x/sys@v0.0.0-20200814200057-3d37ad5750ed
0.44.0

Open the chart page →

3,509
celestia-nodecelestia-node0.1.71 of 1See more

celestia-node celestia-node 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.16.041177982c584
golang.org/x/sys@v0.22.0
0.44.0

Open the chart page →

1,810
cert-estuarycert-estuaryVerified publisher0.2.11 of 1See more

cert-estuary cert-estuary 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/hsn723/cert-estuary:0.2.00c4b6132b0ad
golang.org/x/sys@v0.43.0
0.44.0

Open the chart page →

268
finops-stackcert-managerVerified publisher0.0.57 of 12See more

finops-stack cert-manager 0.0.5

7 of the 12 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:11.1.3b23b588cf7cb
golang.org/x/sys@v0.21.0
0.44.0
ghcr.io/kyverno/background-controller:v1.12.506ed5db6cd33
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/cleanup-controller:v1.12.5b914032ef9ad
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/kyverno:v1.12.5a61c7022abcf
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/kyverno-cli:v1.12.5832a32779e6d
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/kyvernopre:v1.12.563f7eaf5aa8a
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/reports-controller:v1.12.5c62e3347611c
golang.org/x/sys@v0.19.0
0.44.0

Open the chart page →

12,611
cert-manager-webhook-arvancloudcert-manager-webhook-arvancloudVerified publisher0.1.11 of 1See more

cert-manager-webhook-arvancloud cert-manager-webhook-arvancloud 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/mohammadv184/cert-manager-webhook-arvancloud:latest179bee5ef8b2
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,074
cert-manager-webhook-gandicert-manager-webhook-gandi0.6.01 of 1See more

cert-manager-webhook-gandi cert-manager-webhook-gandi 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/sintef/cert-manager-webhook-gandi:0.6.06819b34ccac8
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,031
cert-vaultcert-vaultOfficialVerified publisher2.12.04 of 7See more

cert-vault cert-vault 2.12.0

4 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
golang.org/x/sys@v0.29.0
0.44.0
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
golang.org/x/sys@v0.28.0
0.44.0
library/postgres:1767f41722b7a8
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

16,056
chatclichatcliVerified publisher1.205.01 of 2See more

chatcli chatcli 1.205.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.31.10e0b2d217d1d2
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,028
passbolt-hachristianhuthVerified publisher6.0.13 of 4See more

passbolt-ha christianhuth 6.0.1

3 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
golang.org/x/sys@v0.33.0
0.44.0
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
golang.org/x/sys@v0.33.0
0.44.0
passbolt/passbolt:3.4.0-ce-non-root655547e17263
golang.org/x/sys@v0.0.0-20200413165638-669c56c373c4
0.44.0

Open the chart page →

10,931
squestchristianhuthVerified publisher6.6.72 of 4See more

squest christianhuth 6.6.7

2 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
golang.org/x/sys@v0.33.0
0.44.0
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

10,039
typo3christianhuthVerified publisher7.7.11 of 2See more

typo3 christianhuth 7.7.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

8,597
challengerchronicleVerified publisher0.1.11 of 1See more

challenger chronicle 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/challenger-go:0.1.2c8d5a3c0e966
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

977
spectrechronicleVerified publisher0.3.81 of 1See more

spectre chronicle 0.3.8

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/spectre:0.68.34e872bc016e8
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

1,535
access-managerckotzbauerVerified publisher0.14.31 of 1See more

access-manager ckotzbauer 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/ckotzbauer/access-managerdigest-pinneddd584fcda0ff
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

643
clamav-restclamav-rest-apiVerified publisher0.1.01 of 1See more

clamav-rest clamav-rest-api 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ajilaag/clamav-rest:latestad689c7b75b1
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

515
claude-code-hubclaude-code-hub0.1.01 of 4See more

claude-code-hub claude-code-hub 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

2,195
cloudbees-sidecar-injectorcloudbees2.3.32 of 2See more

cloudbees-sidecar-injector cloudbees 2.3.3

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cloudbees/cert-requester:2.3.31d44fb4f799b
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0
cloudbees/sidecar-injector:2.3.38f102ef0383a
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0

Open the chart page →

3,268
cloudflow-enterprise-componentscloudflow-helm-charts0.0.0-NIGHTLY011220202 of 9See more

cloudflow-enterprise-components cloudflow-helm-charts 0.0.0-NIGHTLY01122020

2 of the 9 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
0.44.0
prom/prometheus:v2.21.0d43417c260e5
golang.org/x/sys@v0.0.0-20200821140526-fda516888d29
0.44.0

Open the chart page →

4,265
cnpg-sandboxcloudnative-pgVerified publisher0.6.13 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

3 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:8.3.5cd7cb4345aa7
golang.org/x/sys@v0.0.0-20210908233432-aa78b53d3365
0.44.0
ghcr.io/cloudnative-pg/cloudnative-pg:1.17.14dd365800b62
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0
quay.io/prometheus-operator/prometheus-operator:v0.54.0be2aef39a2f8
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0

Open the chart page →

7,597
pgbenchcloudnative-pgVerified publisher0.1.01 of 1See more

pgbench cloudnative-pg 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
0.44.0

Open the chart page →

2,713
grafanacloudposse0.2.61 of 1See more

grafana cloudposse 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
golang.org/x/sys@v0.41.0
0.44.0

Open the chart page →

728
openstack-manila-csicloud-provider-openstack2.36.35 of 5See more

openstack-manila-csi cloud-provider-openstack 2.36.3

5 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
golang.org/x/sys@v0.43.0
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
golang.org/x/sys@v0.33.0
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
golang.org/x/sys@v0.33.0
0.44.0
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
golang.org/x/sys@v0.32.0
0.44.0
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
golang.org/x/sys@v0.32.0
0.44.0

Open the chart page →

3,785
cloudttycloudtty0.8.92 of 2See more

cloudtty cloudtty 0.8.9

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cloudtty/cloudshell:v0.8.900984ba0f0eb
golang.org/x/sys@v0.31.0
0.44.0
ghcr.io/cloudtty/cloudshell-operator:v0.8.9e43ad91f0684
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

3,985
cluster-api-visualizercluster-api-visualizer1.5.01 of 1See more

cluster-api-visualizer cluster-api-visualizer 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/jont828/cluster-api-visualizer:v1.5.0678ba6833297
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

558
clustereye-stackclustereyeVerified publisher0.1.12 of 5See more

clustereye-stack clustereye 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
johnblack77/clustereye-api:latest9b8dbc0264ac
golang.org/x/sys@v0.41.0
0.44.0
library/postgres:17-alpine18cfe3ef5e68
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

4,906
clusternet-hubclusternet1.0.01 of 1See more

clusternet-hub clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,403
clusternet-schedulerclusternet1.0.01 of 1See more

clusternet-scheduler clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,403
cluster-setupcluster-setup1.5.07 of 8See more

cluster-setup cluster-setup 1.5.0

7 of the 8 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
golang.org/x/sys@v0.32.0
0.44.0
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
golang.org/x/sys@v0.13.0
0.44.0
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
golang.org/x/sys@v0.28.0
0.44.0
quay.io/jetstack/cert-manager-cainjector:v1.17.2ec56edb1161d
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-controller:v1.17.22c314feeb5e8
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-startupapicheck:v1.17.2e18989b4f912
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-webhook:v1.17.237b16a9dff00
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

10,111
cockroachdb-chartcockroachdbv226.3.11 of 1See more

cockroachdb-chart cockroachdbv2 26.3.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

703
istio-allcode4devsVerified publisher1.2.04 of 6See more

istio-all code4devs 1.2.0

4 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
golang.org/x/sys@v0.25.0
0.44.0
istio/pilot:1.24.2-distroless137e44e3d1d2
golang.org/x/sys@v0.25.0
0.44.0
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
golang.org/x/sys@v0.19.0
0.44.0
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
golang.org/x/sys@v0.22.0
0.44.0

Open the chart page →

4,811
istio-control-planecode4devsVerified publisher1.0.02 of 3See more

istio-control-plane code4devs 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
golang.org/x/sys@v0.25.0
0.44.0
istio/pilot:1.24.2-distroless137e44e3d1d2
golang.org/x/sys@v0.25.0
0.44.0

Open the chart page →

2,373
maintenancecodewithemadVerified publisher0.1.61 of 1See more

maintenance codewithemad 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/caddy:2.9-alpineb4e3952384eb
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

1,476
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
0.44.0

Open the chart page →

7,313
cortex-tenantcortex-tenantVerified publisher0.8.11 of 1See more

cortex-tenant cortex-tenant 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/blind-oracle/cortex-tenant:v2.0.09f8896ffc15b
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

786
cosmo-controller-managercosmoVerified publisher0.9.01 of 2See more

cosmo-controller-manager cosmo 0.9.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-controller-manager:v0.9.08c7fa5552028
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,926
cosmo-dashboardcosmoVerified publisher0.9.11 of 1See more

cosmo-dashboard cosmo 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-dashboard:v0.9.16a1c4a81a924
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,938
cp-schema-registrycp-schema-registryVerified publisher1.0.01 of 1See more

cp-schema-registry cp-schema-registry 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
golang.org/x/sys@v0.7.0
0.44.0

Open the chart page →

1,883
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
golang.org/x/sys@v0.0.0-20210220050731-9a76102bfb43
0.44.0

Open the chart page →

6,480
chalk-operatorcrashoverride-helm-chartsVerified publisher0.1.11 of 1See more

chalk-operator crashoverride-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/crashappsec/chalk-operator:v0.1.128eee62e9bfa
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

375
duplicaticronce0.1.01 of 1See more

duplicati cronce 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
0.44.0

Open the chart page →

3,026
cronjob-scale-down-operatorcronschedules0.4.41 of 1See more

cronjob-scale-down-operator cronschedules 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cronschedules/cronjob-scale-down-operator:0.4.41c4e803d7169
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

444
cruisekubecruisekubeOfficialVerified publisher0.3.41 of 5See more

cruisekube cruisekube 0.3.4

1 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.5.2e8825994b7a2
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

440
revadcs3orgOfficialVerified publisher1.6.11 of 1See more

revad cs3org 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cs3org/revad:v1.24.0e80a4d67b352
golang.org/x/sys@v0.5.0
0.44.0

Open the chart page →

1,711
cubefscubefs3.2.06 of 10See more

cubefs cubefs 3.2.0

6 of the 10 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/sys@v0.0.0-20191010194322-b09406accb47
0.44.0
ghcr.io/cubefs/cfs-csi-driver:3.2.0.150.08723616a976a
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
0.44.0
registry.k8s.io/sig-storage/csi-resizer:v1.3.06e0546563b18
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0

Open the chart page →

15,931
CubeUniversecubeuniverseVerified publisher0.1.01 of 1See more

CubeUniverse cubeuniverse 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
tksky1/cubeuniverse:0.1alphaec7b889f380f
golang.org/x/sys@v0.3.0
0.44.0

Open the chart page →

1,837

Container images carrying it

4,358 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
envoyproxy/ratelimit:6f5de117b6cb6e16f8c9
golang.org/x/sys@v0.0.0-20191120155948-bd437916bb0e
0.44.0
1
envoyproxy/ratelimit:4d2efd61ede09a75a84c
golang.org/x/sys@v0.0.0-20191120155948-bd437916bb0e
0.44.0
1
epamedp/admin-console-operator:2.14.090f9921d8d58
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
1
epamedp/codebase-operator:2.12.0-MDTU-DDM-SNAPSHOT.1096028c86f0dd
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
1
epamedp/edp-admin-console:2.14.0616c678ba3e7
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
1
epamedp/edp-argocd-operator:0.2.0976a662a5e72
golang.org/x/sys@v0.0.0-20220708085239-5a0f0661e09d
0.44.0
1
epamedp/edp-headlamp:0.25.093417e18bb1a
golang.org/x/sys@v0.16.0
0.44.0
1
epamedp/edp-tekton:0.2.4924939850655
golang.org/x/sys@v0.1.0
0.44.0
1
epamedp/gerrit-operator:2.11.0-MDTU-DDM-SNAPSHOT.2b71fb39e0c9e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
1
epamedp/jenkins-operator:2.15.328ef56bc0ca3
golang.org/x/sys@v0.13.0
0.44.0
1
epamedp/jenkins-operator:2.11.0-MDTU-DDM-SNAPSHOT.1ff25e9fe4419
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
1
epamedp/keycloak-operator:1.11.0-MDTU-DDM-SNAPSHOT.105d352199e12e
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
1
epamedp/nexus-operator:2.11.0-MDTU-DDM-SNAPSHOT.1449a53804699
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
0.44.0
1
epamedp/perf-operator:2.13.0bd2079b7bfcb
golang.org/x/sys@v0.6.0
0.44.0
1
epamedp/reconciler:2.12.0d33e938b6d59
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
1
epamedp/tekton-custom-task:0.2.067d896676f45
golang.org/x/sys@v0.30.0
0.44.0
1
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0
1
erenozcan17/go_backend:v4.250b4f23422b6
golang.org/x/sys@v0.11.0
0.44.0
1
erigontech/erigon:v2.61.288706754b627
golang.org/x/sys@v0.28.0
0.44.0
1
etejeda/butlerci:0.1.0737d58183abc
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
0.44.0
1
ethereum/client-go:v1.15.101f36ca5922a5
golang.org/x/sys@v0.30.0
0.44.0
1
ethereum/client-go:v1.16.532b878e4144a
golang.org/x/sys@v0.36.0
0.44.0
1
ethereum/client-go:v1.10.186d6d12a40465
golang.org/x/sys@v0.0.0-20211019181941-9d821ace8654
0.44.0
1
ethereum/client-go:v1.14.8886ec69b35b0
golang.org/x/sys@v0.20.0
0.44.0
1
ethereum/client-go:stableb8ab3451a117
golang.org/x/sys@v0.41.0
0.44.0
1
ethereum/client-go:v1.10.23cce21b423165
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
1
ethereum/client-go:v1.10.15d99fbb9585c7
golang.org/x/sys@v0.0.0-20210816183151-1e6c022a8912
0.44.0
1
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
ethereumoptimism/l2geth:0.5.315577036dc36d
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
0.44.0
1
ethersphere/bee:2.2.0a884fd84b72f
golang.org/x/sys@v0.20.0
0.44.0
1
ethersphere/ethproxy:latest3a8a3926caa2
golang.org/x/sys@v0.0.0-20221010170243-090e33056c14
0.44.0
1
ethersphere/onboarding-faucet:0.3.0513154aab230
golang.org/x/sys@v0.0.0-20210816183151-1e6c022a8912
0.44.0
1
ethpandaops/armiarma:master1a9c3264f0a9
golang.org/x/sys@v0.18.0
0.44.0
1
ethpandaops/blob-me-baby:latestad26158420dd
golang.org/x/sys@v0.13.0
0.44.0
1
ethpandaops/cbt:latest5377ffb3091a
golang.org/x/sys@v0.42.0
0.44.0
1
ethpandaops/cbt-api:latest9dc0b50e6c27
golang.org/x/sys@v0.42.0
0.44.0
1
ethpandaops/contributoor:latest1edd4074fd79
golang.org/x/sys@v0.43.0
0.44.0
1
ethpandaops/dugtrio:1.0.0e261d1734e9f
golang.org/x/sys@v0.11.0
0.44.0
1
ethpandaops/ethereum-address-metrics-exporter:latest431cd3790ed2
golang.org/x/sys@v0.37.0
0.44.0
1
ethpandaops/ethereumjs:masterfb84b718500f
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
ethpandaops/ethereum-metrics-exporter:0.21.0d1780db2e286
golang.org/x/sys@v0.2.0
0.44.0
1
ethpandaops/ethereum-validator-metrics-exporter:latest38448e9d4aef
golang.org/x/sys@v0.9.0
0.44.0
1
ethpandaops/forky:debian-latestc937f4ba737c
golang.org/x/sys@v0.42.0
0.44.0
1
ethpandaops/rpc-snooper:latestc0b30fcf64bc
golang.org/x/sys@v0.36.0
0.44.0
1
ethpandaops/service-authenticatoor:main27b8e5ea3125
golang.org/x/sys@v0.43.0
0.44.0
1
ethpandaops/slashoor:latesta71967db581f
golang.org/x/sys@v0.20.0
0.44.0
1
ethpandaops/splitoor:latest989da6bea4bd
golang.org/x/sys@v0.31.0
0.44.0
1
ethpandaops/stubbies:latest9f1d6aec0d04
golang.org/x/sys@v0.5.0
0.44.0
1
ethpandaops/xatu-cbt-api:latestf7dec2e07091
golang.org/x/sys@v0.36.0
0.44.0
1
evcc/evcc:0.300.8ddf2a25afce5
golang.org/x/sys@v0.40.0
0.44.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.