StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,878
of 17,821 indexed, latest versions
Container images
4,449
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,878 of 17,821 indexed charts deploy, on 4,449 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+273 more0.44.04,449
OSV records
GO-2026-5024

Charts affected

3,878 by stars
ChartLatestAffected imagesRadar Score
csi-qingcloudkubesphere-testVerified publisher1.4.06 of 6See more

csi-qingcloud kubesphere-test 1.4.0

6 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
golang.org/x/sys@v0.0.0-20210330210617-4fbd30eecc44
0.44.0
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
0.44.0
csiplugin/csi-qingcloud:v1.4.00766163dc046
golang.org/x/sys@v0.0.0-20190801041406-cbf593c0f2f3
0.44.0
csiplugin/csi-resizer:v1.2.036c31f7e1f43
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
0.44.0
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
golang.org/x/sys@v0.0.0-20201214095126-aec9a390925b
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
0.44.0

Open the chart page →

12,450
curvefs-csikubesphere-testVerified publisher0.1.01 of 3See more

curvefs-csi kubesphere-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
golang.org/x/sys@v0.0.0-20180302081741-dd2ff4accc09
0.44.0

Open the chart page →

2,832
online-boutiquekubesphere-testVerified publisher0.1.08 of 11See more

online-boutique kubesphere-test 0.1.0

8 of the 11 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
gcr.io/google-samples/microservices-demo/cartservice:v0.2.3566733b4d2d5
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
0.44.0
gcr.io/google-samples/microservices-demo/checkoutservice:v0.2.30fad1066de77
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
0.44.0
gcr.io/google-samples/microservices-demo/currencyservice:v0.2.349d458a3650f
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
0.44.0
gcr.io/google-samples/microservices-demo/frontend:v0.2.3ca5c0f0771c8
golang.org/x/sys@v0.0.0-20190626221950-04f50cda93cb
0.44.0
gcr.io/google-samples/microservices-demo/paymentservice:v0.2.36eb201217a8f
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
0.44.0
gcr.io/google-samples/microservices-demo/productcatalogservice:v0.2.35a4a0e54c6d0
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
0.44.0
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
golang.org/x/sys@v0.0.0-20201204225414-ed752295db88
0.44.0
gcr.io/google-samples/microservices-demo/shippingservice:v0.2.30cb1707fc503
golang.org/x/sys@v0.0.0-20190626221950-04f50cda93cb
0.44.0

Open the chart page →

25,927
openelbkubesphere-testVerified publisher0.2.42 of 2See more

openelb kubesphere-test 0.2.4

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubesphere/openelb:v0.4.4ed7311a0f9e4
golang.org/x/sys@v0.0.0-20210119212857-b64e53b001e4
0.44.0
kubespheredev/kube-webhook-certgen:v1.1.123a03c9c381f
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0

Open the chart page →

4,339
porterkubesphere-testVerified publisher0.2.21 of 2See more

porter kubesphere-test 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubesphere/porter:v0.4.38d1ed5ee1d2e
golang.org/x/sys@v0.0.0-20210119212857-b64e53b001e4
0.44.0

Open the chart page →

2,793
snapshot-controllerkubesphere-testVerified publisher0.2.01 of 1See more

snapshot-controller kubesphere-test 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
csiplugin/snapshot-controller:v4.0.000fcc441ea9f
golang.org/x/sys@v0.0.0-20201214095126-aec9a390925b
0.44.0

Open the chart page →

2,221
kubestellar-consolekubestellar-consoleVerified publisher0.3.422 of 2See more

kubestellar-console kubestellar-console 0.3.42

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
alpine/k8s:1.32.47e1e7d5b7a96
golang.org/x/sys@v0.31.0
0.44.0
ghcr.io/kubestellar/console:v0.3.4289610ec0cbda
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

4,393
kubestellar-uikubestellaruiVerified publisher0.1.12 of 4See more

kubestellar-ui kubestellarui 0.1.1

2 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/redis:7.0-alpinec9d92d840fd0
golang.org/x/sys@v0.13.0
0.44.0
mavrick1/kubestellar-b:latest45ca0429a1d4
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

5,072
terraform-controllerkubevela0.8.01 of 1See more

terraform-controller kubevela 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
oamdev/terraform-controller:v0.8.070447f4d360a
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
0.44.0

Open the chart page →

3,820
vector-controllerkubevela0.2.32 of 2See more

vector-controller kubevela 0.2.3

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
oamdev/kube-webhook-certgen:v2.4.1231c423c2b17
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
0.44.0
oamdev/vector-controller:v0.2.39dd8be44ffc9
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.44.0

Open the chart page →

4,820
vela-prismkubevela1.6.03 of 3See more

vela-prism kubevela 1.6.0

3 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
oamdev/cluster-gateway:v1.4.0dc97164c4c1f
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.44.0
oamdev/kube-webhook-certgen:v2.331e0892f3583
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
0.44.0
oamdev/vela-prism:v1.6.06db6a937647d
golang.org/x/sys@v0.0.0-20220319134239-a9b59b0215f8
0.44.0

Open the chart page →

6,107
vela-workflowkubevela0.7.21 of 1See more

vela-workflow kubevela 0.7.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
oamdev/kube-webhook-certgen:v2.4.1231c423c2b17
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
0.44.0

Open the chart page →

1,435
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0

Open the chart page →

8,944
kube-workload-restarterkube-workload-restarterVerified publisher0.0.41 of 1See more

kube-workload-restarter kube-workload-restarter 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
andreacioni/kube-workload-restarter:0.0.242938b310090a
golang.org/x/sys@v0.5.0
0.44.0

Open the chart page →

1,816
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.48 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

8 of the 9 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
golang.org/x/sys@v0.27.0
0.44.0
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
golang.org/x/sys@v0.0.0-20221010170243-090e33056c14
0.44.0
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
golang.org/x/sys@v0.32.0
0.44.0
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
golang.org/x/sys@v0.28.0
0.44.0
ghcr.io/kubiyabot/kubiya-operator:runner_v26bf945565865
golang.org/x/sys@v0.24.0
0.44.0
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
golang.org/x/sys@v0.34.0
0.44.0
ghcr.io/kubiyabot/workflow-engine:v1.46.2560a16a56d4e
golang.org/x/sys@v0.32.0
0.44.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
golang.org/x/sys@v0.26.0
0.44.0

Open the chart page →

20,417
lethe-stackkuossOfficialVerified publisher0.2.32 of 3See more

lethe-stack kuoss 0.2.3

2 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/kuoss/eventrouter:v0.4.1300b48beff3ae
golang.org/x/sys@v0.31.0
0.44.0
ghcr.io/kuoss/lethe:v0.3.1c59f082ba8b2
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,762
ctrlmeshkusionstackVerified publisher0.2.01 of 1See more

ctrlmesh kusionstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
golang.org/x/sys@v0.13.0
0.44.0

Open the chart page →

3,489
kuperatorkusionstackVerified publisher0.7.41 of 1See more

kuperator kusionstack 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kusionstack/kuperator:v0.7.4d2f72ae1d2f2
golang.org/x/sys@v0.23.0
0.44.0

Open the chart page →

980
kusionkusionstackVerified publisher0.14.12 of 3See more

kusion kusionstack 0.14.1

2 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
golang.org/x/sys@v0.27.0
0.44.0
library/mysql:8.07dcddc01f13b
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

63,783
operatingkusionstackVerified publisher0.5.11 of 1See more

operating kusionstack 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kusionstack/operating:v0.5.0c28bd96b986b
golang.org/x/sys@v0.13.0
0.44.0

Open the chart page →

1,882
sample-operatorkusionstackVerified publisher0.1.21 of 1See more

sample-operator kusionstack 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
chaerr/kridge:demo-operator-v0.1.266833deec017
golang.org/x/sys@v0.5.0
0.44.0

Open the chart page →

2,524
dynatrace-operatorkvalitetsitVerified publisher1.3.01 of 1See more

dynatrace-operator kvalitetsit 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
golang.org/x/sys@v0.23.0
0.44.0

Open the chart page →

1,320
kitarguskvalitetsitVerified publisher0.0.0-2026-03-09-091234-10013c41 of 1See more

kitargus kvalitetsit 0.0.0-2026-03-09-091234-10013c4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kvalitetsit/kitargus:2026-03-09-091234-10013c4c5cde2d9371c
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

962
krakendkvalitetsitVerified publisher0.0.31 of 1See more

krakend kvalitetsit 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/sys@v0.30.0
0.44.0

Open the chart page →

1,519
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
0.44.0

Open the chart page →

16,735
metadockvalitetsitVerified publisher0.0.72 of 2See more

metadoc kvalitetsit 0.0.7

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kvalitetsit/metadoc-app:maine89e351733ad
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0
kvalitetsit/metadoc-web:mainf57e7553f5bd
golang.org/x/sys@v0.0.0-20210412220455-f1c623a9e750
0.44.0

Open the chart page →

4,036
nsp-prometheus-exporterkvalitetsitVerified publisher1.0.191 of 2See more

nsp-prometheus-exporter kvalitetsit 1.0.19

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kvalitetsit/nsp-prometheus-exporter:1.0.190b397ff954ec
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
0.44.0

Open the chart page →

2,064
oauth2-proxy-injectorkvalitetsitVerified publisher1.5.01 of 1See more

oauth2-proxy-injector kvalitetsit 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kvalitetsit/oauth2-proxy-injector:1.5.00c906908d632
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

301
openidkvalitetsitVerified publisher1.7.21 of 2See more

openid kvalitetsit 1.7.2

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.14.368336da945bd
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

592
kvkkvkservice0.1.01 of 4See more

kvk kvkservice 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
conduction/kvk-php:dev8f177f9f8a7b
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
0.44.0

Open the chart page →

8,546
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
0.44.0

Open the chart page →

26,563
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
golang.org/x/sys@v0.32.0
0.44.0

Open the chart page →

2,281
everest-lakefs-csi-driverlakefsVerified publisher1.3.02 of 3See more

everest-lakefs-csi-driver lakefs 1.3.0

2 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
public.ecr.aws/csi-components/csi-node-driver-registrar:v2.16.0-eksbuild.3592d7034d6c7
golang.org/x/sys@v0.41.0
0.44.0
public.ecr.aws/csi-components/livenessprobe:v2.18.0-eksbuild.38e307f4e5820
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

866
lambdapinglambdaping1.0.41 of 1See more

lambdaping lambdaping 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
udhos/lambdaping:1.0.46bd2cf2ac732
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

1,347
pageslatif-pages1.0.01 of 3See more

pages latif-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

20,287
cachelavaOfficialVerified publisher1.1.11 of 1See more

cache lava 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/lavanet/lava/lavap:v2.5.089028adefcff
golang.org/x/sys@v0.20.0
0.44.0

Open the chart page →

1,386
pageslavanya-pages1.0.01 of 3See more

pages lavanya-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

20,287
express-botxlavr0.31.41 of 1See more

express-botx lavr 0.31.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
lavr/express-botx:0.39.0-rootlessf5035e0f1434
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

294
kubernetes-dashboardlbenicio-communityVerified publisher7.14.94 of 5See more

kubernetes-dashboard lbenicio-community 7.14.9

4 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
lbenicio/kubernetes-dashboard-api:1.14.951d3d30206c8
golang.org/x/sys@v0.37.0
0.44.0
lbenicio/kubernetes-dashboard-auth:1.4.1378c63efd9dcd
golang.org/x/sys@v0.37.0
0.44.0
lbenicio/kubernetes-dashboard-scraper:1.2.69202e96ad403
golang.org/x/sys@v0.37.0
0.44.0
lbenicio/kubernetes-dashboard-web:1.7.142797937bc2a5
golang.org/x/sys@v0.37.0
0.44.0

Open the chart page →

1,945
listmonklbenicio-communityVerified publisher0.1.01 of 1See more

listmonk lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
listmonk/listmonk:latestf535d59e1499
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

720
pinglbenicio-communityVerified publisher0.1.11 of 1See more

ping lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

600
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

33,946
metallblectures-k8sinfra0.10.22 of 2See more

metallb lectures-k8sinfra 0.10.2

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.10.221164241c045
golang.org/x/sys@v0.0.0-20210314195730-07df6a141424
0.44.0
quay.io/metallb/speaker:v0.10.258cb99053bb3
golang.org/x/sys@v0.0.0-20210314195730-07df6a141424
0.44.0

Open the chart page →

5,408
prometheuslectures-k8sinfra15.8.55 of 6See more

prometheus lectures-k8sinfra 15.8.5

5 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
0.44.0
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
0.44.0
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
golang.org/x/sys@v0.0.0-20211117180635-dee7805ff2e1
0.44.0
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
golang.org/x/sys@v0.0.0-20220627191245-f75cf1eec38b
0.44.0

Open the chart page →

9,115
grafanaleechistest5.3.01 of 1See more

grafana leechistest 5.3.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/sys@v0.0.0-20200223170610-d5e6a3e2c0ae
0.44.0

Open the chart page →

3,200
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

4,399
prometheusleechistest11.6.03 of 6See more

prometheus leechistest 11.6.0

3 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
golang.org/x/sys@v0.0.0-20191010194322-b09406accb47
0.44.0
prom/prometheus:v2.19.0bfad037f95e5
golang.org/x/sys@v0.0.0-20200602225109-6fdc65e7d980
0.44.0
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/sys@v0.0.0-20200602225109-6fdc65e7d980
0.44.0

Open the chart page →

8,495
kube-benchlemontechVerified publisher0.1.01 of 1See more

kube-bench lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.9c329d73fea58
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0

Open the chart page →

1,633
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
golang.org/x/sys@v0.0.0-20220722155257-8c9f86f7a55f
0.44.0

Open the chart page →

4,282
adguard-homelib42Verified publisher2.0.01 of 1See more

adguard-home lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.65d765078d2140
golang.org/x/sys@v0.35.0
0.44.0

Open the chart page →

1,206

Container images carrying it

4,449 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
golang.org/x/sys@v0.31.0
0.44.0
1
public.ecr.aws/k4y9r6y5/kratos:v25.4.0e8014c6c58b6
golang.org/x/sys@v0.36.0
0.44.0
1
public.ecr.aws/karpenter/controller:1.9.030a506c64fbb
golang.org/x/sys@v0.39.0
0.44.0
1
public.ecr.aws/karpenter/controller:v0.19.3f0e5ab60b2df
golang.org/x/sys@v0.1.0
0.44.0
1
public.ecr.aws/karpenter/controller:1.1.1fe383abf1dbc
golang.org/x/sys@v0.26.0
0.44.0
1
public.ecr.aws/kyos/evicted-pod-reaper:1.0.0b9d047442ce2
golang.org/x/sys@v0.33.0
0.44.0
1
public.ecr.aws/lumigo/lumigo-kubernetes-operator:69491c39346b19
golang.org/x/sys@v0.31.0
0.44.0
1
public.ecr.aws/lumigo/lumigo-kubernetes-rbac-proxy:696c2f0585cd6c
golang.org/x/sys@v0.8.0
0.44.0
1
public.ecr.aws/lumigo/lumigo-kubernetes-telemetry-proxy:691d548e59c2c8
golang.org/x/sys@v0.34.0
0.44.0
1
public.ecr.aws/lumigo/lumigo-kubernetes-watchdog:696458fcd61e0c
golang.org/x/sys@v0.31.0
0.44.0
1
public.ecr.aws/n8h5y2v5/rad-security/rad-bootstrapper:v1.1.115ca2d500d374
golang.org/x/sys@v0.28.0
0.44.0
1
public.ecr.aws/n8h5y2v5/rad-security/rad-guard:v1.1.17a94d2d4aae85
golang.org/x/sys@v0.28.0
0.44.0
1
public.ecr.aws/n8h5y2v5/rad-security/rad-sbom:v1.1.34e97e0e7a2088
golang.org/x/sys@v0.28.0
0.44.0
1
public.ecr.aws/n8h5y2v5/rad-security/rad-sync:v1.1.1514f3dfbc0225
golang.org/x/sys@v0.28.0
0.44.0
1
public.ecr.aws/n8h5y2v5/rad-security/rad-watch:v1.1.25b9a7d6bc2a0c
golang.org/x/sys@v0.28.0
0.44.0
1
public.ecr.aws/neuron/neuron-device-plugin:2.23.30.075a6d5ce3bd3
golang.org/x/sys@v0.18.0
0.44.0
1
public.ecr.aws/neuron/neuron-scheduler:2.23.30.04cd274463e6b
golang.org/x/sys@v0.18.0
0.44.0
1
public.ecr.aws/opslevel/kubectl-opslevel:v2024.9.571697b5ff713
golang.org/x/sys@v0.24.0
0.44.0
1
public.ecr.aws/optimizely/webhook-broker:v0.2.3cfc92cc2de65
golang.org/x/sys@v0.28.0
0.44.0
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
golang.org/x/sys@v0.4.0
0.44.0
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
golang.org/x/sys@v0.13.0
0.44.0
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
golang.org/x/sys@v0.22.0
0.44.0
1
public.ecr.aws/r3m4q3r9/pleco:0.24.0651739583336
golang.org/x/sys@v0.28.0
0.44.0
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
golang.org/x/sys@v0.40.0
0.44.0
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0
1
public.ecr.aws/sumologic/tailing-sidecar-operator:0.111.0920b8f901aef
golang.org/x/sys@v0.31.0
0.44.0
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.44.0
1
public.ecr.aws/t0u0d5o5/ecr_authenticator:latest077e4e57e41c
golang.org/x/sys@v0.13.0
0.44.0
1
public.ecr.aws/truefoundrycloud/eks/eks-node-monitoring-agent:v1.5.1-eksbuild.1988c8e1a273a
golang.org/x/sys@v0.40.0
0.44.0
1
public.ecr.aws/v0r6c2e2/minio:latest08c90bd040bf
golang.org/x/sys@v0.29.0
0.44.0
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
golang.org/x/sys@v0.27.0
0.44.0
1
public.ecr.aws/xray/aws-xray-daemon:3.6.243d051eed000
golang.org/x/sys@v0.31.0
0.44.0
1
quay.io/aerokube/boot:1.0.13c269612053f
golang.org/x/sys@v0.19.0
0.44.0
1
quay.io/aerokube/browser-ops:2.6.7807c1bb67086
golang.org/x/sys@v0.18.0
0.44.0
1
quay.io/aerokube/keygen:1.0.1578934444f04
golang.org/x/sys@v0.6.0
0.44.0
1
quay.io/aerokube/moon:2.5.1a8837b00ba1c
golang.org/x/sys@v0.5.0
0.44.0
1
quay.io/aerokube/moon:2.8.1e618a3ed6436
golang.org/x/sys@v0.41.0
0.44.0
1
quay.io/aerokube/moon-conf:2.8.11ef2b53c98fd
golang.org/x/sys@v0.41.0
0.44.0
1
quay.io/aerokube/moon-conf:2.5.19ca307b30080
golang.org/x/sys@v0.5.0
0.44.0
1
quay.io/aerokube/moon-ui:2.8.156425d4f8b9c
golang.org/x/sys@v0.41.0
0.44.0
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
golang.org/x/sys@v0.16.0
0.44.0
1
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
golang.org/x/sys@v0.31.0
0.44.0
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
1
quay.io/argoproj/argocd:v2.10.783c86003b781
golang.org/x/sys@v0.15.0
0.44.0
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
golang.org/x/sys@v0.28.0
0.44.0
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
golang.org/x/sys@v0.33.0
0.44.0
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
golang.org/x/sys@v0.6.0
0.44.0
1
quay.io/argoproj/argocli:v3.7.11577fc18f86ad
golang.org/x/sys@v0.40.0
0.44.0
1
quay.io/argoproj/argocli:v3.7.16efd1cb89dc1
golang.org/x/sys@v0.33.0
0.44.0
1
quay.io/argoproj/argocli:v3.5.591b9825f09a8
golang.org/x/sys@v0.15.0
0.44.0
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.