StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,871
of 17,813 indexed, latest versions
Container images
4,436
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,871 of 17,813 indexed charts deploy, on 4,436 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+272 more0.44.04,436
OSV records
GO-2026-5024

Charts affected

3,871 by stars
ChartLatestAffected imagesRadar Score
cockroachdb-chartcockroachdbv226.3.11 of 1See more

cockroachdb-chart cockroachdbv2 26.3.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

703
istio-allcode4devsVerified publisher1.2.04 of 6See more

istio-all code4devs 1.2.0

4 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
golang.org/x/sys@v0.25.0
0.44.0
istio/pilot:1.24.2-distroless137e44e3d1d2
golang.org/x/sys@v0.25.0
0.44.0
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
golang.org/x/sys@v0.19.0
0.44.0
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
golang.org/x/sys@v0.22.0
0.44.0

Open the chart page →

4,837
istio-control-planecode4devsVerified publisher1.0.02 of 3See more

istio-control-plane code4devs 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
golang.org/x/sys@v0.25.0
0.44.0
istio/pilot:1.24.2-distroless137e44e3d1d2
golang.org/x/sys@v0.25.0
0.44.0

Open the chart page →

2,379
maintenancecodewithemadVerified publisher0.1.61 of 1See more

maintenance codewithemad 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/caddy:2.9-alpineb4e3952384eb
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

1,494
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
0.44.0

Open the chart page →

7,315
cortex-tenantcortex-tenantVerified publisher0.8.11 of 1See more

cortex-tenant cortex-tenant 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/blind-oracle/cortex-tenant:v2.0.09f8896ffc15b
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

786
cosmo-controller-managercosmoVerified publisher0.9.01 of 2See more

cosmo-controller-manager cosmo 0.9.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-controller-manager:v0.9.08c7fa5552028
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,943
cosmo-dashboardcosmoVerified publisher0.9.11 of 1See more

cosmo-dashboard cosmo 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/cosmo-dashboard:v0.9.16a1c4a81a924
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,954
cp-schema-registrycp-schema-registryVerified publisher1.0.01 of 1See more

cp-schema-registry cp-schema-registry 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
golang.org/x/sys@v0.7.0
0.44.0

Open the chart page →

1,973
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
golang.org/x/sys@v0.0.0-20210220050731-9a76102bfb43
0.44.0

Open the chart page →

6,482
chalk-operatorcrashoverride-helm-chartsVerified publisher0.1.11 of 1See more

chalk-operator crashoverride-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/crashappsec/chalk-operator:v0.1.128eee62e9bfa
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

382
duplicaticronce0.1.01 of 1See more

duplicati cronce 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
0.44.0

Open the chart page →

3,040
cronjob-scale-down-operatorcronschedules0.4.41 of 1See more

cronjob-scale-down-operator cronschedules 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cronschedules/cronjob-scale-down-operator:0.4.41c4e803d7169
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

451
cruisekubecruisekubeOfficialVerified publisher0.3.41 of 5See more

cruisekube cruisekube 0.3.4

1 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.5.2e8825994b7a2
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

440
revadcs3orgOfficialVerified publisher1.6.11 of 1See more

revad cs3org 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cs3org/revad:v1.24.0e80a4d67b352
golang.org/x/sys@v0.5.0
0.44.0

Open the chart page →

1,714
cubefscubefs3.2.06 of 10See more

cubefs cubefs 3.2.0

6 of the 10 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/sys@v0.0.0-20191010194322-b09406accb47
0.44.0
ghcr.io/cubefs/cfs-csi-driver:3.2.0.150.08723616a976a
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
0.44.0
registry.k8s.io/sig-storage/csi-resizer:v1.3.06e0546563b18
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0

Open the chart page →

15,938
CubeUniversecubeuniverseVerified publisher0.1.01 of 1See more

CubeUniverse cubeuniverse 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
tksky1/cubeuniverse:0.1alphaec7b889f380f
golang.org/x/sys@v0.3.0
0.44.0

Open the chart page →

1,838
cview-issuercview-issuerVerified publisher0.0.421 of 1See more

cview-issuer cview-issuer 0.0.42

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
devsecurely/cview-issuer:0.0.42eecd4314e933
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

426
cyphernetes-operatorcyphernetes-operatorVerified publisher0.1.01 of 1See more

cyphernetes-operator cyphernetes-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
fatliverfreddy/cyphernetes-operator:lateste79f24ca7371
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

512
dagrondagron-workflowVerified publisher0.9.21 of 3See more

dagron dagron-workflow 0.9.2

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

1,222
dagster-cloud-agentdagster-cloudVerified publisher1.13.231 of 1See more

dagster-cloud-agent dagster-cloud 1.13.23

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
dagster/dagster-cloud-agent:1.13.2322036fc83927
golang.org/x/sys@v0.20.0
0.44.0

Open the chart page →

1,141
aibrixdanchevVerified publisher0.7.02 of 5See more

aibrix danchev 0.7.0

2 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
aibrix/controller-manager:v0.7.076aabbbfda79
golang.org/x/sys@v0.29.0
0.44.0
aibrix/gateway-plugins:v0.7.05b93ea4c753a
golang.org/x/sys@v0.29.0
0.44.0

Open the chart page →

5,424
data-fairdata354-helmVerified publisher1.1.21 of 12See more

data-fair data354-helm 1.1.2

1 of the 12 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
golang.org/x/sys@v0.22.0
0.44.0

Open the chart page →

38,819
extendeddaemonsetdatadogVerified publisher0.3.31 of 1See more

extendeddaemonset datadog 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
datadog/extendeddaemonset:v0.8.0513a4377aed5
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0

Open the chart page →

4,761
datadogdatadog-test2.4.231 of 2See more

datadog datadog-test 2.4.23

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
datadog/agent:7.22.08f20e56b5311
golang.org/x/sys@v0.0.0-20200824131525-c12d262b63d8
0.44.0

Open the chart page →

4,573
dbrepodbrepo1.13.311 of 25See more

dbrepo dbrepo 1.13.3

11 of the 25 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
golang.org/x/sys@v0.25.0
0.44.0
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
golang.org/x/sys@v0.13.0
0.44.0
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
golang.org/x/sys@v0.22.0
0.44.0
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
golang.org/x/sys@v0.22.0
0.44.0
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
golang.org/x/sys@v0.13.0
0.44.0
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
golang.org/x/sys@v0.22.0
0.44.0
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
golang.org/x/sys@v0.32.0
0.44.0
bitnamilegacy/valkey:latest0384ca2eec63
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

53,852
dregsydeliveryheroVerified publisher0.1.51 of 1See more

dregsy deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
xelalex/dregsy:0.4.3574054e1c417
golang.org/x/sys@v0.0.0-20220422013727-9388b58f7150
0.44.0

Open the chart page →

2,978
gripmockdeliveryheroVerified publisher1.1.31 of 1See more

gripmock deliveryhero 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
tkpd/gripmock:1.10.174441dadcfbd
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
0.44.0

Open the chart page →

2,795
labelsmanager-controllerdeliveryheroVerified publisher1.0.41 of 1See more

labelsmanager-controller deliveryhero 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
thomasnyambati/labelsmanager-controller:1.0.0148ae3f99fea
golang.org/x/sys@v0.0.0-20190826190057-c7b8b68b1456
0.44.0

Open the chart page →

2,306
weblatedeliveryheroVerified publisher0.3.21 of 3See more

weblate deliveryhero 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
golang.org/x/sys@v0.0.0-20190531175056-4c3a928424d2
0.44.0

Open the chart page →

8,025
snapshot-controllerdemocratic-csiVerified publisher0.3.01 of 1See more

snapshot-controller democratic-csi 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v8.2.1472fa35a89da
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

467
developer-operatordeveloper-operatorVerified publisher2.1.21 of 1See more

developer-operator developer-operator 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

1,909
kube-bench-metricsdevopstalesVerified publisher0.1.01 of 1See more

kube-bench-metrics devopstales 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
elastisys/kube-bench-metrics:0.1.6509b94f1da55
golang.org/x/sys@v0.0.0-20190621203818-d432491b9138
0.44.0

Open the chart page →

2,112
kubedashdevopstalesOfficialVerified publisher4.0.05 of 8See more

kubedash devopstales 4.0.0

5 of the 8 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:18.3a9abf4275f9e
golang.org/x/sys@v0.1.0
0.44.0
oliver006/redis_exporter:v1.82.0-alpineda9e89ee4e75
golang.org/x/sys@v0.41.0
0.44.0
prom/statsd-exporter:v0.22.48be660470961
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
0.44.0
sosedoff/pgweb:latesta5256d416e2e
golang.org/x/sys@v0.38.0
0.44.0
quay.io/prometheuscommunity/postgres-exporter:v0.19.1e96064f87622
golang.org/x/sys@v0.39.0
0.44.0

Open the chart page →

9,395
permission-managerdevopstalesVerified publisher1.8.01 of 1See more

permission-manager devopstales 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
golang.org/x/sys@v0.0.0-20201223074533-0d417f636930
0.44.0

Open the chart page →

2,267
trivy-operatordevopstalesVerified publisher2.5.01 of 1See more

trivy-operator devopstales 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
devopstales/trivy-operator:2.575136aa7a26e
golang.org/x/sys@v0.4.0
0.44.0

Open the chart page →

5,608
dnsmasqdevplayer0Verified publisher0.1.51 of 2See more

dnsmasq devplayer0 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
0.44.0

Open the chart page →

3,393
calicodevtron0.1.13 of 4See more

calico devtron 0.1.1

3 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
0.44.0
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
0.44.0
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
0.44.0

Open the chart page →

10,099
clairdevtron0.1.141 of 2See more

clair devtron 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
0.44.0

Open the chart page →

6,239
dex-serverdex-server1.19.11 of 3See more

dex-server dex-server 1.19.1

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
dexidp/dex:v2.39.1-distroless43655afd1a8f
golang.org/x/sys@v0.19.0
0.44.0

Open the chart page →

2,246
digispoof-interfacedigispoof-interface1.0.01 of 3See more

digispoof-interface digispoof-interface 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
0.44.0

Open the chart page →

7,790
matomodigitalist-open-cloud-matomo12.0.201 of 3See more

matomo digitalist-open-cloud-matomo 12.0.20

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
hipages/php-fpm_exporter:2.2.09b5be9d3d955
golang.org/x/sys@v0.0.0-20220412211240-33da011f77ad
0.44.0

Open the chart page →

3,540
directusdirectus-io2.1.03 of 3See more

directus directus-io 2.1.0

3 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
golang.org/x/sys@v0.33.0
0.44.0
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
golang.org/x/sys@v0.33.0
0.44.0
directus/directus:12.0.29c8470ea465c
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0

Open the chart page →

7,673
alertmanager-ntfydjjudas21Verified publisher0.1.21 of 1See more

alertmanager-ntfy djjudas21 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/alexbakker/alertmanager-ntfy:1.0.12f4db8064595
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

641
dkim-managerdkim-managerVerified publisher0.2.01 of 1See more

dkim-manager dkim-manager 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/hsn723/dkim-manager:1.4.00312232b31a2
golang.org/x/sys@v0.41.0
0.44.0

Open the chart page →

293
myappdl-grafana-webappVerified publisher0.1.01 of 2See more

myapp dl-grafana-webapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
onkar17/grafana:latestaef3ebd6e24e
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0

Open the chart page →

2,527
dnation-pingdnationcloud0.1.94 of 5See more

dnation-ping dnationcloud 0.1.9

4 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:7.3.5511bc20bfcd1
golang.org/x/sys@v0.0.0-20201022201747-fb209a7c41cd
0.44.0
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
0.44.0
prom/blackbox-exporter:v0.18.01ffc3f109eb3
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
0.44.0
prom/prometheus:v2.21.0d43417c260e5
golang.org/x/sys@v0.0.0-20200821140526-fda516888d29
0.44.0

Open the chart page →

10,475
docker-in-dockerdocker-in-docker0.0.31 of 2See more

docker-in-docker docker-in-docker 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/docker:24.0.2-dind1d148deae16a
golang.org/x/sys@v0.7.0
0.44.0

Open the chart page →

2,595
docker-registrydocker-repository0.1.01 of 1See more

docker-registry docker-repository 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/registry:latestfd374bae807c
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

509
dockyarddockyardVerified publisher0.4.01 of 1See more

dockyard dockyard 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/kgma74/dockyard:0.4.0b40439329191
golang.org/x/sys@v0.25.0
0.44.0

Open the chart page →

1,559

Container images carrying it

4,436 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/erpc/erpc:0.0.49f5654f745d4c
golang.org/x/sys@v0.31.0
0.44.0
1
ghcr.io/estahn/k8s-image-swapper:1.5.102f5be9cde5f9
golang.org/x/sys@v0.16.0
0.44.0
1
ghcr.io/ethpandaops/benchmarkoor:latest5470b2ec3161
golang.org/x/sys@v0.41.0
0.44.0
1
ghcr.io/ethpandaops/dispatchoor-api:latesta0b272f6682a
golang.org/x/sys@v0.39.0
0.44.0
1
ghcr.io/eumel8/rancher-servicemonitor:0.2.1f34428cac187
golang.org/x/sys@v0.18.0
0.44.0
1
ghcr.io/evilgn0me/ingressmonitorcontroller:v0.0.50bbfa4db14b9
golang.org/x/sys@v0.38.0
0.44.0
1
ghcr.io/exalsius/exalsius-operator:0.12.0d24a579a3c75
golang.org/x/sys@v0.41.0
0.44.0
1
ghcr.io/external-secrets/external-secrets:v0.3.1156a1ea4490ba
golang.org/x/sys@v0.0.0-20211102061401-a2f17f7b995c
0.44.0
1
ghcr.io/external-secrets/external-secrets:v2.4.19440a40b3947
golang.org/x/sys@v0.42.0
0.44.0
1
ghcr.io/external-secrets/external-secrets:v2.1.0ec40c3d9c48f
golang.org/x/sys@v0.40.0
0.44.0
1
ghcr.io/extrality/cert-manager-webhook-namecheap:lateste3552fa0c68a
golang.org/x/sys@v0.8.0
0.44.0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
golang.org/x/sys@v0.16.0
0.44.0
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
golang.org/x/sys@v0.0.0-20220207234003-57398862261d
0.44.0
1
ghcr.io/fernferret/mediawiki-backup:v0.2.2bbef381294ed
golang.org/x/sys@v0.3.0
0.44.0
1
ghcr.io/ferretdb/ferretdb:2.7.05706414241eb
golang.org/x/sys@v0.38.0
0.44.0
1
ghcr.io/fikaworks/grgate:v0.6.37104f60d8972
golang.org/x/sys@v0.6.0
0.44.0
1
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
golang.org/x/sys@v0.1.0
0.44.0
1
ghcr.io/flanksource/facet:0.1.7237237038be15
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
golang.org/x/sys@v0.35.0
0.44.0
1
ghcr.io/flatcar/flatcar-linux-update-operator:v0.10.0-rc1f9063e20b1f6
golang.org/x/sys@v0.6.0
0.44.0
1
ghcr.io/flatcar/nebraska:4.0.05c9e99ff7167
golang.org/x/sys@v0.36.0
0.44.0
1
ghcr.io/flohansen/dasher-server:latest7cde8c3fa2d1
golang.org/x/sys@v0.18.0
0.44.0
1
ghcr.io/fluxcd/flagger-loadtester:0.39.06a8546993cb5
golang.org/x/sys@v0.19.0
0.44.0
1
ghcr.io/fluxcd/flux-cli:v2.9.1020edbaee890
golang.org/x/sys@v0.40.0
0.44.0
1
ghcr.io/fluxcd/flux-cli:v2.5.1274a179fd402
golang.org/x/sys@v0.30.0
0.44.0
1
ghcr.io/fluxcd/helm-controller:v1.2.062eaa9c9a929
golang.org/x/sys@v0.29.0
0.44.0
1
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
golang.org/x/sys@v0.29.0
0.44.0
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
golang.org/x/sys@v0.4.0
0.44.0
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
golang.org/x/sys@v0.34.0
0.44.0
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
ghcr.io/foxcpp/maddy:0.9.5de42151adff6
golang.org/x/sys@v0.29.0
0.44.0
1
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
golang.org/x/sys@v0.0.0-20220405052023-b1e9470b6e64
0.44.0
1
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
golang.org/x/sys@v0.0.0-20211205182925-97ca703d548d
0.44.0
1
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
golang.org/x/sys@v0.30.0
0.44.0
1
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
golang.org/x/sys@v0.28.0
0.44.0
1
ghcr.io/gabe565/domain-watch:latest34c5a1e351d6
golang.org/x/sys@v0.30.0
0.44.0
1
ghcr.io/gabe565/limo:latest6dfdbc9853bb
golang.org/x/sys@v0.5.0
0.44.0
1
ghcr.io/gabe565/matrimony:latestd39a9d7c3e1b
golang.org/x/sys@v0.17.0
0.44.0
1
ghcr.io/gabe565/transsmute:latestc8ac95a30c31
golang.org/x/sys@v0.31.0
0.44.0
1
ghcr.io/geek-cookbook/webhook-receiver:2.8.172e7e77f8091
golang.org/x/sys@v0.13.0
0.44.0
1
ghcr.io/georgmangold/console:v1.8.158f4f180aa6e
golang.org/x/sys@v0.31.0
0.44.0
1
ghcr.io/gijsvandulmen/k8qu:1.4e897b18db13d
golang.org/x/sys@v0.21.0
0.44.0
1
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
golang.org/x/sys@v0.35.0
0.44.0
1
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
golang.org/x/sys@v0.36.0
0.44.0
1
ghcr.io/glassflow/glassflow-etl-be:v3.2.020f066d0f631
golang.org/x/sys@v0.42.0
0.44.0
1
ghcr.io/glassflow/glassflow-etl-migration:v3.2.07db1a1bf3dae
golang.org/x/sys@v0.38.0
0.44.0
1
ghcr.io/glauth/glauth:v2.5.209c782ca5984
golang.org/x/sys@v0.16.0
0.44.0
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.