StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,853
of 17,821 indexed, latest versions
Container images
4,415
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,853 of 17,821 indexed charts deploy, on 4,415 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+272 more0.44.04,415
OSV records
GO-2026-5024

Charts affected

3,853 by stars
ChartLatestAffected imagesRadar Score
lndgaloymoney0.10.61 of 3See more

lnd galoymoney 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
golang.org/x/sys@v0.19.0
0.44.0

Open the chart page →

2,162
monitoringgaloymoney0.12.215 of 6See more

monitoring galoymoney 0.12.21

5 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
golang.org/x/sys@v0.25.0
0.44.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
golang.org/x/sys@v0.25.0
0.44.0
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
golang.org/x/sys@v0.19.0
0.44.0
quay.io/prometheus/prometheus:v2.55.0378f4e037035
golang.org/x/sys@v0.25.0
0.44.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

5,339
galoygaloymoney20.34.74 of 24See more

galoy galoymoney2 0.34.7

4 of the 24 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
golang.org/x/sys@v0.0.0-20220722155257-8c9f86f7a55f
0.44.0
oryd/hydra:v2.2.02c93beb5e5f2
golang.org/x/sys@v0.15.0
0.44.0
oryd/kratos:v1.0.0d06fc5845f63
golang.org/x/sys@v0.8.0
0.44.0
oryd/oathkeeper:v0.40.6e8cb9b79a89c
golang.org/x/sys@v0.7.0
0.44.0

Open the chart page →

8,731
galoy-depsgaloymoney20.10.208 of 9See more

galoy-deps galoymoney2 0.10.20

8 of the 9 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
otel/opentelemetry-collector-k8s:0.111.032b3c8296dcc
golang.org/x/sys@v0.25.0
0.44.0
quay.io/jetstack/cert-manager-cainjector:v1.14.39395dec77fcf
golang.org/x/sys@v0.15.0
0.44.0
quay.io/jetstack/cert-manager-controller:v1.14.364adcb95ce09
golang.org/x/sys@v0.15.0
0.44.0
quay.io/jetstack/cert-manager-startupapicheck:v1.14.3df8677135139
golang.org/x/sys@v0.15.0
0.44.0
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
golang.org/x/sys@v0.15.0
0.44.0
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
golang.org/x/sys@v0.9.0
0.44.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
golang.org/x/sys@v0.5.0
0.44.0

Open the chart page →

12,015
lndgaloymoney20.10.61 of 3See more

lnd galoymoney2 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
golang.org/x/sys@v0.19.0
0.44.0

Open the chart page →

2,162
monitoringgaloymoney20.12.215 of 6See more

monitoring galoymoney2 0.12.21

5 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
golang.org/x/sys@v0.25.0
0.44.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
golang.org/x/sys@v0.25.0
0.44.0
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
golang.org/x/sys@v0.19.0
0.44.0
quay.io/prometheus/prometheus:v2.55.0378f4e037035
golang.org/x/sys@v0.25.0
0.44.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

5,339
gameserver-operatorgameserver-operator0.3.01 of 1See more

gameserver-operator gameserver-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/idebeijer/gameserver-operator:latest1b099cfe9e5e
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

383
pagesgary-pages1.0.01 of 3See more

pages gary-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

20,285
anonaddygeek-cookbookVerified publisher6.0.01 of 1See more

anonaddy geek-cookbook 6.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
anonaddy/anonaddy:0.12.3957a95565166
golang.org/x/sys@v0.0.0-20211116061358-0a5406a5449c
0.44.0

Open the chart page →

4,792
autobrrgeek-cookbookVerified publisher1.1.31 of 1See more

autobrr geek-cookbook 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/autobrr/autobrr:v1.10.0d4022cd32df5
golang.org/x/sys@v0.0.0-20220811171246-fbc7d0a398ab
0.44.0

Open the chart page →

2,237
dendritegeek-cookbookVerified publisher6.4.01 of 1See more

dendrite geek-cookbook 6.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/dendrite-monolith:v0.9.43267d27d392f
golang.org/x/sys@v0.0.0-20220731174439-a90be440212d
0.44.0

Open the chart page →

2,144
embygeek-cookbookVerified publisher3.4.21 of 1See more

emby geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
0.44.0

Open the chart page →

8,611
gatusgeek-cookbookVerified publisher1.1.21 of 1See more

gatus geek-cookbook 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
twinproduction/gatus:v3.8.049dc0d9b2e2c
golang.org/x/sys@v0.0.0-20211003122950-b1ebd4e1001c
0.44.0

Open the chart page →

1,882
gotifygeek-cookbookVerified publisher1.2.21 of 1See more

gotify geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
gotify/server:2.1.409c79bc1e403
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0

Open the chart page →

3,133
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
0.44.0

Open the chart page →

11,078
lidarrgeek-cookbookVerified publisher14.2.21 of 1See more

lidarr geek-cookbook 14.2.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
0.44.0

Open the chart page →

14,490
maddygeek-cookbookVerified publisher3.2.01 of 1See more

maddy geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
foxcpp/maddy:v0.5.28fa2bd8f6830
golang.org/x/sys@v0.0.0-20211007075335-d3039528d8ac
0.44.0

Open the chart page →

2,631
minifluxgeek-cookbookVerified publisher5.2.01 of 2See more

miniflux geek-cookbook 5.2.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
miniflux/miniflux:2.0.36e2fb990dae74
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0

Open the chart page →

2,431
navidromegeek-cookbookVerified publisher6.4.21 of 1See more

navidrome geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
deluan/navidrome:0.43.04e9ae3bff6aa
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
0.44.0

Open the chart page →

3,598
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
0.44.0

Open the chart page →

17,822
owncloud-ocisgeek-cookbookVerified publisher2.4.21 of 1See more

owncloud-ocis geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
owncloud/ocis:1.7.0d2efcae92c84
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
0.44.0

Open the chart page →

3,244
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
golang.org/x/sys@v0.0.0-20220615213510-4f61da869c0c
0.44.0

Open the chart page →

19,608
pod-gatewaygeek-cookbookVerified publisher5.6.21 of 2See more

pod-gateway geek-cookbook 5.6.2

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/gateway-admision-controller:v3.5.0175512bb3f61
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.44.0

Open the chart page →

2,361
pod-gateway-settergeek-cookbookVerified publisher1.0.01 of 1See more

pod-gateway-setter geek-cookbook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/gateway-admision-controller:v2.0.00d6d0df98fe4
golang.org/x/sys@v0.0.0-20210309074719-68d13333faf2
0.44.0

Open the chart page →

1,642
readarrgeek-cookbookVerified publisher6.4.21 of 1See more

readarr geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
0.44.0

Open the chart page →

7,831
rtsp-to-webgeek-cookbookVerified publisher2.2.21 of 1See more

rtsp-to-web geek-cookbook 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/deepch/rtsptoweb:v2.2.0f9de3a1a5deb
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.44.0

Open the chart page →

1,468
searxgeek-cookbookVerified publisher5.6.21 of 4See more

searx geek-cookbook 5.6.2

1 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/caddy:2.2.0-alpine7367adca165f
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
0.44.0

Open the chart page →

7,507
skypilotgeek-cookbookVerified publisher0.0.13 of 3See more

skypilot geek-cookbook 0.0.1

3 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
golang.org/x/sys@v0.31.0
0.44.0
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
golang.org/x/sys@v0.33.0
0.44.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.0c9f76a75fd00
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

9,103
torrservergeek-cookbookVerified publisher1.2.21 of 1See more

torrserver geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
smailkoz/torrserver:1.0.1117b52d15de8f0
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.44.0

Open the chart page →

3,166
vikunjageek-cookbookVerified publisher6.2.02 of 4See more

vikunja geek-cookbook 6.2.0

2 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/caddy:2.4.2-alpinefbc51bcf1ab0
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
0.44.0
vikunja/api:0.17.18cba0520bf8c
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
0.44.0

Open the chart page →

6,905
webhook-receivergeek-cookbookVerified publisher0.0.11 of 1See more

webhook-receiver geek-cookbook 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/geek-cookbook/webhook-receiver:2.8.172e7e77f8091
golang.org/x/sys@v0.13.0
0.44.0

Open the chart page →

1,369
asynqmongeneral-helm-chartsVerified publisher0.0.11 of 1See more

asynqmon general-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
hibiken/asynqmon:latestac80bcffd2f9
golang.org/x/sys@v0.7.0
0.44.0

Open the chart page →

752
cbtgeneral-helm-chartsVerified publisher0.0.51 of 1See more

cbt general-helm-charts 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ethpandaops/cbt:latest5377ffb3091a
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

566
chproxygeneral-helm-chartsVerified publisher0.0.21 of 1See more

chproxy general-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
contentsquareplatform/chproxy:v1.26.524555f22d4be
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

3,766
dispatchoor-apigeneral-helm-chartsVerified publisher0.1.11 of 1See more

dispatchoor-api general-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/dispatchoor-api:latesta0b272f6682a
golang.org/x/sys@v0.39.0
0.44.0

Open the chart page →

780
kafkagengxiankun-charts0.2.01 of 1See more

kafka gengxiankun-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0

Open the chart page →

4,559
mongogengxiankun-charts0.1.01 of 1See more

mongo gengxiankun-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

4,029
mysqlgengxiankun-charts0.2.01 of 1See more

mysql gengxiankun-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

463
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.82 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

2 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
golang.org/x/sys@v0.9.0
0.44.0
postgis/postgis:11-2.5f479f6c3435e
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
0.44.0

Open the chart page →

35,011
istiogetindataVerified publisher1.11.12 of 2See more

istio getindata 1.11.1

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:1.11.1c552478f8f11
golang.org/x/sys@v0.0.0-20210601080250-7ecdf8ef093b
0.44.0
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
golang.org/x/sys@v0.0.0-20210601080250-7ecdf8ef093b
0.44.0

Open the chart page →

16,896
ghostghostVerified publisher0.1.02 of 4See more

ghost ghost 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0
litestream/litestream:0.3c5a1e1b01916
golang.org/x/sys@v0.11.0
0.44.0

Open the chart page →

9,148
rabbitmqginger-society0.1.01 of 2See more

rabbitmq ginger-society 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kbudde/rabbitmq-exporter:latest12f27d6d84e6
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

1,537
gitanagitana1.4.01 of 1See more

gitana gitana 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ntakashi/gitana:1.4.04171ec641120
golang.org/x/sys@v0.0.0-20210927094055-39ccf1dd6fa6
0.44.0

Open the chart page →

3,479
github-rate-limits-prometheus-exportergithub-rate-limit-prometheus-exporterVerified publisher0.2.151 of 1See more

github-rate-limits-prometheus-exporter github-rate-limit-prometheus-exporter 0.2.15

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/kalgurn/grl-exporter:v3.2.0bd109b2bda38
golang.org/x/sys@v0.6.0
0.44.0

Open the chart page →

896
gitlab-goproxygitlab-goproxy0.2.21 of 1See more

gitlab-goproxy gitlab-goproxy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/djcass44/gitlab-goproxy:v0.1.8a43323732181
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,332
gitlab-mr-conformgitlab-mr-conform0.5.21 of 1See more

gitlab-mr-conform gitlab-mr-conform 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/chrxmvtik/gitlab-mr-conform:0.5.2b2eb79fc99cb
golang.org/x/sys@v0.41.0
0.44.0

Open the chart page →

428
apid-helpergkarthiks0.1.41 of 1See more

apid-helper gkarthiks 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/gkarthics/apid-helper:v0.2.3d7d93debf1f4
golang.org/x/sys@v0.9.0
0.44.0

Open the chart page →

2,616
prometheus-container-resource-exportergkarthiks0.3.11 of 1See more

prometheus-container-resource-exporter gkarthiks 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
gkarthics/container-resource-exporter:latest6799af333e8a
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
0.44.0

Open the chart page →

2,219
glassflow-etlglassflowVerified publisher0.5.218 of 16See more

glassflow-etl glassflow 0.5.21

8 of the 16 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/nats:2.12.3-alpine88fe8e0e09d6
golang.org/x/sys@v0.39.0
0.44.0
natsio/nats-box:0.19.28031d190c7ee
golang.org/x/sys@v0.32.0
0.44.0
natsio/nats-server-config-reloader:0.21.110ff229eaf52
golang.org/x/sys@v0.36.0
0.44.0
natsio/prometheus-nats-exporter:0.17.326c826662ac8
golang.org/x/sys@v0.33.0
0.44.0
otel/opentelemetry-collector-contrib:0.108.0923eb1cfae32
golang.org/x/sys@v0.24.0
0.44.0
ghcr.io/glassflow/glassflow-etl-be:v3.2.020f066d0f631
golang.org/x/sys@v0.42.0
0.44.0
ghcr.io/glassflow/glassflow-etl-k8s-operator:v3.2.1e70364e88629
golang.org/x/sys@v0.35.0
0.44.0
ghcr.io/glassflow/glassflow-etl-migration:v3.2.07db1a1bf3dae
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

12,441
pgbouncerglassflowVerified publisher0.1.01 of 1See more

pgbouncer glassflow 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/pgbouncer:1.23.192356da09704
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

3,331

Container images carrying it

4,415 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/runatlantis/atlantis:v0.47.1511231955463
golang.org/x/sys@v0.38.0
0.44.0
1
ghcr.io/runnerm/simply-dns-webhook:v1.10.0fdfffa3984a5
golang.org/x/sys@v0.42.0
0.44.0
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
golang.org/x/sys@v0.38.0
0.44.0
1
ghcr.io/rvbsalgado/fencemaster:1.0.0-rc.207056a6aae439
golang.org/x/sys@v0.35.0
0.44.0
1
ghcr.io/rybbit-io/rybbit-backend:lateste0d1b397e33c
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
ghcr.io/sagernet/sing-box:v1.12.03c1ee82d450d
golang.org/x/sys@v0.34.0
0.44.0
1
ghcr.io/salaboy/fmtok8s-email-service:v0.2.0-nativeb52d5dbac2ca
golang.org/x/sys@v0.0.0-20220412071739-889880a91fd5
0.44.0
1
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
golang.org/x/sys@v0.0.0-20220412071739-889880a91fd5
0.44.0
1
ghcr.io/salesforce/kubelet-summary-exporter:sha-c2bf90d377e09d2dd72
golang.org/x/sys@v0.6.0
0.44.0
1
ghcr.io/salesforce/sloop:sha-2ce8bbe119e24f24b1d
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
0.44.0
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
golang.org/x/sys@v0.28.0
0.44.0
1
ghcr.io/sapcc/ntp_exporter:v2.9.079c40c65f5d4
golang.org/x/sys@v0.35.0
0.44.0
1
ghcr.io/schaka/janitorr:native-stable7cfe1e0c41da
golang.org/x/sys@v0.35.0
0.44.0
1
ghcr.io/schmitzis/cert-manager-webhook-bunny:latest125e31c8e85a
golang.org/x/sys@v0.4.0
0.44.0
1
ghcr.io/seanmorley15/adventurelog-frontend:v0.13.051ee22428b41
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
ghcr.io/sergelogvinov/hybrid-csi-provisioner:v0.3.1221e07794a8a
golang.org/x/sys@v0.39.0
0.44.0
1
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0
1
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
golang.org/x/sys@v0.33.0
0.44.0
1
ghcr.io/sergelogvinov/mongosqld:2.14.230b826375ed42
golang.org/x/sys@v0.32.0
0.44.0
1
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
golang.org/x/sys@v0.33.0
0.44.0
1
ghcr.io/sergelogvinov/node-labels-exporter:v0.5.1dd6875a0a963
golang.org/x/sys@v0.39.0
0.44.0
1
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
golang.org/x/sys@v0.1.0
0.44.0
1
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
golang.org/x/sys@v0.1.0
0.44.0
1
ghcr.io/shaharia-lab/teredix:0.0.2ec727be4417a
golang.org/x/sys@v0.15.0
0.44.0
1
ghcr.io/shift/domain_exporter:v0.1.1347e27690a816
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0
1
ghcr.io/shopware/shopware-operator:1.8.187db0eda7a03
golang.org/x/sys@v0.34.0
0.44.0
1
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
golang.org/x/sys@v0.41.0
0.44.0
1
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
golang.org/x/sys@v0.43.0
0.44.0
1
ghcr.io/siderolabs/talos-backup:v0.1.0-beta.203a71e140f1d
golang.org/x/sys@v0.21.0
0.44.0
1
ghcr.io/sigstore/policy-controller/policy-controller0bcd60beb93f
golang.org/x/sys@v0.32.0
0.44.0
1
ghcr.io/sigstore/scaffolding/serverae8eb69c7b70
golang.org/x/sys@v0.37.0
0.44.0
1
ghcr.io/sikalabs/hello-world-server:latestcf8538bf6489
golang.org/x/sys@v0.15.0
0.44.0
1
ghcr.io/sintef/cert-manager-webhook-gandi:0.6.06819b34ccac8
golang.org/x/sys@v0.21.0
0.44.0
1
ghcr.io/skyhook-io/skyhook-connector:v2.3.23deb8e4b1aaa
golang.org/x/sys@v0.36.0
0.44.0
1
ghcr.io/skyhook-io/skyhook-connector:v2.5.56c4e3336600d
golang.org/x/sys@v0.43.0
0.44.0
1
ghcr.io/slok/sloth:v0.16.0f0f0075b0d45
golang.org/x/sys@v0.42.0
0.44.0
1
ghcr.io/snapp-incubator/health-exporter:0.3.252a0d8f6278c
golang.org/x/sys@v0.0.0-20210910150752-751e447fb3d0
0.44.0
1
ghcr.io/spidernet-io/egressgateway-agent:v0.6.9a8ec2f74c9d0
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
1
ghcr.io/spidernet-io/egressgateway-controller:v0.6.99deda7b68c34
golang.org/x/sys@v0.37.0
0.44.0
1
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
golang.org/x/sys@v0.0.0-20210902050250-f475640dd07b
0.44.0
1
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
golang.org/x/sys@v0.0.0-20210902050250-f475640dd07b
0.44.0
1
ghcr.io/spidernet-io/spiderpool/spiderpool-plugins:19f19457ae7cec86457b0411543a3cf21dd9f95a8edc39be1e22
golang.org/x/sys@v0.35.0
0.44.0
1
ghcr.io/spiffe/spiffe-csi-driver:0.2.34144101005b2
golang.org/x/sys@v0.5.0
0.44.0
1
ghcr.io/spiffe/spire-agent:1.6.062517726d0c4
golang.org/x/sys@v0.5.0
0.44.0
1
ghcr.io/spiffe/spire-controller-manager:0.2.25e90b2d092df
golang.org/x/sys@v0.5.0
0.44.0
1
ghcr.io/spiffe/spire-server:1.6.0635b9024cad2
golang.org/x/sys@v0.5.0
0.44.0
1
ghcr.io/squat/generic-device-plugin:0.2.066c8d5c270eb
golang.org/x/sys@v0.40.0
0.44.0
1
ghcr.io/squat/generic-device-plugin:latestdc192e164c69
golang.org/x/sys@v0.42.0
0.44.0
1
ghcr.io/stakater/ingressmonitorcontroller:v2.2.133301afb61c10
golang.org/x/sys@v0.38.0
0.44.0
1
ghcr.io/stakater/reloader:v1.4.4a571c5b32c0f
golang.org/x/sys@v0.32.0
0.44.0
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.