StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,789
of 17,805 indexed, latest versions
Container images
4,336
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,789 of 17,805 indexed charts deploy, on 4,336 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+268 more0.44.04,336
OSV records
GO-2026-5024

Charts affected

3,789 by stars
ChartLatestAffected imagesRadar Score
cert-vaultcert-vaultOfficialVerified publisher2.12.04 of 7See more

cert-vault cert-vault 2.12.0

4 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
golang.org/x/sys@v0.29.0
0.44.0
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
golang.org/x/sys@v0.28.0
0.44.0
library/postgres:1767f41722b7a8
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

16,224
chatclichatcliVerified publisher1.205.11 of 2See more

chatcli chatcli 1.205.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.31.10e0b2d217d1d2
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,028
passbolt-hachristianhuthVerified publisher6.0.13 of 4See more

passbolt-ha christianhuth 6.0.1

3 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
golang.org/x/sys@v0.33.0
0.44.0
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
golang.org/x/sys@v0.33.0
0.44.0
passbolt/passbolt:3.4.0-ce-non-root655547e17263
golang.org/x/sys@v0.0.0-20200413165638-669c56c373c4
0.44.0

Open the chart page →

11,031
squestchristianhuthVerified publisher6.6.82 of 4See more

squest christianhuth 6.6.8

2 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
golang.org/x/sys@v0.33.0
0.44.0
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

10,173
typo3christianhuthVerified publisher7.7.11 of 2See more

typo3 christianhuth 7.7.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

8,689
challengerchronicleVerified publisher0.1.11 of 1See more

challenger chronicle 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/challenger-go:0.1.2c8d5a3c0e966
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

978
spectrechronicleVerified publisher0.3.81 of 1See more

spectre chronicle 0.3.8

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/spectre:0.68.34e872bc016e8
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

1,548
access-managerckotzbauerVerified publisher0.14.31 of 1See more

access-manager ckotzbauer 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/ckotzbauer/access-managerdigest-pinneddd584fcda0ff
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

643
clamav-restclamav-rest-apiVerified publisher0.1.01 of 1See more

clamav-rest clamav-rest-api 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ajilaag/clamav-rest:latestad689c7b75b1
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

515
claude-code-hubclaude-code-hub0.1.01 of 4See more

claude-code-hub claude-code-hub 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

2,360
cloudbees-sidecar-injectorcloudbees2.3.32 of 2See more

cloudbees-sidecar-injector cloudbees 2.3.3

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cloudbees/cert-requester:2.3.31d44fb4f799b
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0
cloudbees/sidecar-injector:2.3.38f102ef0383a
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0

Open the chart page →

3,268
cloudflow-enterprise-componentscloudflow-helm-charts0.0.0-NIGHTLY011220202 of 9See more

cloudflow-enterprise-components cloudflow-helm-charts 0.0.0-NIGHTLY01122020

2 of the 9 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
0.44.0
prom/prometheus:v2.21.0d43417c260e5
golang.org/x/sys@v0.0.0-20200821140526-fda516888d29
0.44.0

Open the chart page →

4,265
cnpg-sandboxcloudnative-pgVerified publisher0.6.13 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

3 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:8.3.5cd7cb4345aa7
golang.org/x/sys@v0.0.0-20210908233432-aa78b53d3365
0.44.0
ghcr.io/cloudnative-pg/cloudnative-pg:1.17.14dd365800b62
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0
quay.io/prometheus-operator/prometheus-operator:v0.54.0be2aef39a2f8
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0

Open the chart page →

7,598
pgbenchcloudnative-pgVerified publisher0.1.01 of 1See more

pgbench cloudnative-pg 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
0.44.0

Open the chart page →

2,714
grafanacloudposse0.2.61 of 1See more

grafana cloudposse 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
golang.org/x/sys@v0.41.0
0.44.0

Open the chart page →

745
openstack-manila-csicloud-provider-openstack2.36.35 of 5See more

openstack-manila-csi cloud-provider-openstack 2.36.3

5 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
golang.org/x/sys@v0.43.0
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
golang.org/x/sys@v0.33.0
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
golang.org/x/sys@v0.33.0
0.44.0
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
golang.org/x/sys@v0.32.0
0.44.0
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
golang.org/x/sys@v0.32.0
0.44.0

Open the chart page →

3,785
cloudttycloudtty0.8.102 of 2See more

cloudtty cloudtty 0.8.10

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cloudtty/cloudshell:v0.8.1023e8d178e02c
golang.org/x/sys@v0.37.0
0.44.0
ghcr.io/cloudtty/cloudshell-operator:v0.8.1014f036e33ef1
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

3,026
cluster-api-visualizercluster-api-visualizer1.5.01 of 1See more

cluster-api-visualizer cluster-api-visualizer 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/jont828/cluster-api-visualizer:v1.5.0678ba6833297
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

558
clustereye-stackclustereyeVerified publisher0.1.12 of 5See more

clustereye-stack clustereye 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
johnblack77/clustereye-api:latest9b8dbc0264ac
golang.org/x/sys@v0.41.0
0.44.0
library/postgres:17-alpine18cfe3ef5e68
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

5,062
clusternet-hubclusternet1.0.01 of 1See more

clusternet-hub clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,554
clusternet-schedulerclusternet1.0.01 of 1See more

clusternet-scheduler clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,554
cluster-setupcluster-setup1.5.07 of 8See more

cluster-setup cluster-setup 1.5.0

7 of the 8 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
golang.org/x/sys@v0.32.0
0.44.0
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
golang.org/x/sys@v0.13.0
0.44.0
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
golang.org/x/sys@v0.28.0
0.44.0
quay.io/jetstack/cert-manager-cainjector:v1.17.2ec56edb1161d
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-controller:v1.17.22c314feeb5e8
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-startupapicheck:v1.17.2e18989b4f912
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-webhook:v1.17.237b16a9dff00
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

10,463
cockroachdb-chartcockroachdbv226.3.11 of 1See more

cockroachdb-chart cockroachdbv2 26.3.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

703
istio-allcode4devsVerified publisher1.2.04 of 6See more

istio-all code4devs 1.2.0

4 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
golang.org/x/sys@v0.25.0
0.44.0
istio/pilot:1.24.2-distroless137e44e3d1d2
golang.org/x/sys@v0.25.0
0.44.0
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
golang.org/x/sys@v0.19.0
0.44.0
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
golang.org/x/sys@v0.22.0
0.44.0

Open the chart page →

4,837
istio-control-planecode4devsVerified publisher1.0.02 of 3See more

istio-control-plane code4devs 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
golang.org/x/sys@v0.25.0
0.44.0
istio/pilot:1.24.2-distroless137e44e3d1d2
golang.org/x/sys@v0.25.0
0.44.0

Open the chart page →

2,379
maintenancecodewithemadVerified publisher0.1.61 of 1See more

maintenance codewithemad 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/caddy:2.9-alpineb4e3952384eb
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

1,484
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
0.44.0

Open the chart page →

7,314
cortex-tenantcortex-tenantVerified publisher0.8.11 of 1See more

cortex-tenant cortex-tenant 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/blind-oracle/cortex-tenant:v2.0.09f8896ffc15b
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

786
cosmo-controller-managercosmoVerified publisher0.9.01 of 2See more

cosmo-controller-manager cosmo 0.9.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-controller-manager:v0.9.08c7fa5552028
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,943
cosmo-dashboardcosmoVerified publisher0.9.11 of 1See more

cosmo-dashboard cosmo 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-dashboard:v0.9.16a1c4a81a924
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,954
cp-schema-registrycp-schema-registryVerified publisher1.0.01 of 1See more

cp-schema-registry cp-schema-registry 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
golang.org/x/sys@v0.7.0
0.44.0

Open the chart page →

1,913
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
golang.org/x/sys@v0.0.0-20210220050731-9a76102bfb43
0.44.0

Open the chart page →

6,481
chalk-operatorcrashoverride-helm-chartsVerified publisher0.1.11 of 1See more

chalk-operator crashoverride-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/crashappsec/chalk-operator:v0.1.128eee62e9bfa
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

382
duplicaticronce0.1.01 of 1See more

duplicati cronce 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
0.44.0

Open the chart page →

3,040
cronjob-scale-down-operatorcronschedules0.4.41 of 1See more

cronjob-scale-down-operator cronschedules 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cronschedules/cronjob-scale-down-operator:0.4.41c4e803d7169
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

451
cruisekubecruisekubeOfficialVerified publisher0.3.41 of 5See more

cruisekube cruisekube 0.3.4

1 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.5.2e8825994b7a2
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

440
revadcs3orgOfficialVerified publisher1.6.11 of 1See more

revad cs3org 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cs3org/revad:v1.24.0e80a4d67b352
golang.org/x/sys@v0.5.0
0.44.0

Open the chart page →

1,714
cubefscubefs3.2.06 of 10See more

cubefs cubefs 3.2.0

6 of the 10 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/sys@v0.0.0-20191010194322-b09406accb47
0.44.0
ghcr.io/cubefs/cfs-csi-driver:3.2.0.150.08723616a976a
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
0.44.0
registry.k8s.io/sig-storage/csi-resizer:v1.3.06e0546563b18
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0

Open the chart page →

15,936
CubeUniversecubeuniverseVerified publisher0.1.01 of 1See more

CubeUniverse cubeuniverse 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
tksky1/cubeuniverse:0.1alphaec7b889f380f
golang.org/x/sys@v0.3.0
0.44.0

Open the chart page →

1,837
cview-issuercview-issuerVerified publisher0.0.421 of 1See more

cview-issuer cview-issuer 0.0.42

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
devsecurely/cview-issuer:0.0.42eecd4314e933
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

426
cyphernetes-operatorcyphernetes-operatorVerified publisher0.1.01 of 1See more

cyphernetes-operator cyphernetes-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
fatliverfreddy/cyphernetes-operator:lateste79f24ca7371
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

512
dagrondagron-workflowVerified publisher0.9.21 of 3See more

dagron dagron-workflow 0.9.2

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

1,218
dagster-cloud-agentdagster-cloudVerified publisher1.13.231 of 1See more

dagster-cloud-agent dagster-cloud 1.13.23

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
dagster/dagster-cloud-agent:1.13.2322036fc83927
golang.org/x/sys@v0.20.0
0.44.0

Open the chart page →

1,135
aibrixdanchevVerified publisher0.7.02 of 5See more

aibrix danchev 0.7.0

2 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
aibrix/controller-manager:v0.7.076aabbbfda79
golang.org/x/sys@v0.29.0
0.44.0
aibrix/gateway-plugins:v0.7.05b93ea4c753a
golang.org/x/sys@v0.29.0
0.44.0

Open the chart page →

5,437
data-fairdata354-helmVerified publisher1.1.21 of 12See more

data-fair data354-helm 1.1.2

1 of the 12 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
golang.org/x/sys@v0.22.0
0.44.0

Open the chart page →

38,748
extendeddaemonsetdatadogVerified publisher0.3.31 of 1See more

extendeddaemonset datadog 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
datadog/extendeddaemonset:v0.8.0513a4377aed5
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0

Open the chart page →

4,760
datadogdatadog-test2.4.231 of 2See more

datadog datadog-test 2.4.23

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
datadog/agent:7.22.08f20e56b5311
golang.org/x/sys@v0.0.0-20200824131525-c12d262b63d8
0.44.0

Open the chart page →

4,571
dbrepodbrepo1.13.311 of 25See more

dbrepo dbrepo 1.13.3

11 of the 25 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
golang.org/x/sys@v0.25.0
0.44.0
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
golang.org/x/sys@v0.13.0
0.44.0
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
golang.org/x/sys@v0.22.0
0.44.0
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
golang.org/x/sys@v0.22.0
0.44.0
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
golang.org/x/sys@v0.13.0
0.44.0
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
golang.org/x/sys@v0.22.0
0.44.0
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
golang.org/x/sys@v0.32.0
0.44.0
bitnamilegacy/valkey:latest0384ca2eec63
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

53,597
dregsydeliveryheroVerified publisher0.1.51 of 1See more

dregsy deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
xelalex/dregsy:0.4.3574054e1c417
golang.org/x/sys@v0.0.0-20220422013727-9388b58f7150
0.44.0

Open the chart page →

2,978
gripmockdeliveryheroVerified publisher1.1.31 of 1See more

gripmock deliveryhero 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
tkpd/gripmock:1.10.174441dadcfbd
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
0.44.0

Open the chart page →

2,794

Container images carrying it

4,336 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/devhatro/clamav-api:1.0.2ff0cd9db78d3
golang.org/x/sys@v0.20.0
0.44.0
1
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
golang.org/x/sys@v0.7.0
0.44.0
1
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
golang.org/x/sys@v0.40.0
0.44.0
1
ghcr.io/devplayer0/lxd8s:0.3.1e159ba41aede
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
0.44.0
1
ghcr.io/devplayer0/octolxd:0.1.119b18fd97eab
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
0.44.0
1
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
golang.org/x/sys@v0.32.0
0.44.0
1
ghcr.io/dexidp/dex:v2.35.313964b29d63e
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0
1
ghcr.io/dexidp/dex:v2.44.05d0656fce7d4
golang.org/x/sys@v0.34.0
0.44.0
1
ghcr.io/dexidp/dex:v2.42.18186d6dd81f4
golang.org/x/sys@v0.30.0
0.44.0
1
ghcr.io/dexidp/dex:v2.37.0f579d00721b0
golang.org/x/sys@v0.9.0
0.44.0
1
ghcr.io/digitalis-io/vals-operator:v0.8.17c776499b8c9
golang.org/x/sys@v0.40.0
0.44.0
1
ghcr.io/dirien/minecraft-exporter:0.24.061d89bf99ff7
golang.org/x/sys@v0.42.0
0.44.0
1
ghcr.io/distribution/distribution:3.0.04ba3adf47f5c
golang.org/x/sys@v0.31.0
0.44.0
1
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
0.44.0
1
ghcr.io/djcass44/gitlab-goproxy:v0.1.8a43323732181
golang.org/x/sys@v0.8.0
0.44.0
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
golang.org/x/sys@v0.24.0
0.44.0
1
ghcr.io/dntosas/capi2argo-cluster-operator:v1.5.0fb8c6457ef6e
golang.org/x/sys@v0.33.0
0.44.0
1
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
0.44.0
1
ghcr.io/doodlescheduling/k8s-pause:v0.1.16b3215e37738
golang.org/x/sys@v0.0.0-20211210111614-af8b64212486
0.44.0
1
ghcr.io/doodlescheduling/k8svault-controller:v0.2.0627e5e211766
golang.org/x/sys@v0.0.0-20211109184856-51b60fd695b3
0.44.0
1
ghcr.io/doodlescheduling/saml-exporter:v0.5.03d5a99841bc2
golang.org/x/sys@v0.30.0
0.44.0
1
ghcr.io/douban/aliyun-exporter:mainb7c694331362
golang.org/x/sys@v0.9.0
0.44.0
1
ghcr.io/douban/qiniu-exporter:maind1da3bcfad7d
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
1
ghcr.io/douban/ucloud-exporter:mainb4bb8a9021a2
golang.org/x/sys@v0.0.0-20220731174439-a90be440212d
0.44.0
1
ghcr.io/douban/upyun-exporter:main6810900c9c4a
golang.org/x/sys@v0.40.0
0.44.0
1
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
golang.org/x/sys@v0.20.0
0.44.0
1
ghcr.io/druggeri/nut_exporter:3.3.0276460d141c7
golang.org/x/sys@v0.30.0
0.44.0
1
ghcr.io/dsp0x4/cloudfront-tenant-operator:0.3.0eb40174cd20d
golang.org/x/sys@v0.42.0
0.44.0
1
ghcr.io/dysnix/bitnami/mongodb:4.4.11-debian-10-r5073116e61007
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
0.44.0
1
ghcr.io/edgelesssys/continuum/continuum-proxy24c76f294a80
golang.org/x/sys@v0.28.0
0.44.0
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
0.44.0
1
ghcr.io/einstack/glide:0.0.1-alpineab3f7d0a1d50
golang.org/x/sys@v0.15.0
0.44.0
1
ghcr.io/element-hq/ess-helm/matrix-tools:0.3.20eac0521be29
golang.org/x/sys@v0.30.0
0.44.0
1
ghcr.io/eminaktas/oom-tracer:v0.1.0c90ca8389c87
golang.org/x/sys@v0.35.0
0.44.0
1
ghcr.io/emissary-ingress/emissary:4.1.04a981156abee
golang.org/x/sys@v0.41.0
0.44.0
1
ghcr.io/emqx/emqx-operator:2.3.23333ed546165
golang.org/x/sys@v0.38.0
0.44.0
1
ghcr.io/eosc-lot-1/logrotate:3-alpineb0e20d200f89
golang.org/x/sys@v0.17.0
0.44.0
1
ghcr.io/epinio/epinio-ui:v1.7.1-0.0.1d3de52dfb0b4
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0
1
ghcr.io/erpc/erpc:0.0.49f5654f745d4c
golang.org/x/sys@v0.31.0
0.44.0
1
ghcr.io/estahn/k8s-image-swapper:1.5.102f5be9cde5f9
golang.org/x/sys@v0.16.0
0.44.0
1
ghcr.io/ethpandaops/benchmarkoor:latest5470b2ec3161
golang.org/x/sys@v0.41.0
0.44.0
1
ghcr.io/ethpandaops/dispatchoor-api:latesta0b272f6682a
golang.org/x/sys@v0.39.0
0.44.0
1
ghcr.io/eumel8/rancher-servicemonitor:0.2.1f34428cac187
golang.org/x/sys@v0.18.0
0.44.0
1
ghcr.io/evilgn0me/ingressmonitorcontroller:v0.0.50bbfa4db14b9
golang.org/x/sys@v0.38.0
0.44.0
1
ghcr.io/exalsius/exalsius-operator:0.12.0d24a579a3c75
golang.org/x/sys@v0.41.0
0.44.0
1
ghcr.io/external-secrets/external-secrets:v0.3.1156a1ea4490ba
golang.org/x/sys@v0.0.0-20211102061401-a2f17f7b995c
0.44.0
1
ghcr.io/external-secrets/external-secrets:v2.4.19440a40b3947
golang.org/x/sys@v0.42.0
0.44.0
1
ghcr.io/external-secrets/external-secrets:v2.1.0ec40c3d9c48f
golang.org/x/sys@v0.40.0
0.44.0
1
ghcr.io/extrality/cert-manager-webhook-namecheap:lateste3552fa0c68a
golang.org/x/sys@v0.8.0
0.44.0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
golang.org/x/sys@v0.16.0
0.44.0
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.