StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,878
of 17,821 indexed, latest versions
Container images
4,449
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,878 of 17,821 indexed charts deploy, on 4,449 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+273 more0.44.04,449
OSV records
GO-2026-5024

Charts affected

3,878 by stars
ChartLatestAffected imagesRadar Score
itera-lmaarzu1.34.604 of 6See more

itera-lma arzu 1.34.60

4 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:9.0.1a738d0744784
golang.org/x/sys@v0.0.0-20220422013727-9388b58f7150
0.44.0
quay.io/prometheus-operator/prometheus-operator:v0.57.0a2d502c204f9
golang.org/x/sys@v0.0.0-20220222172238-00053529121e
0.44.0
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
golang.org/x/sys@v0.0.0-20211117180635-dee7805ff2e1
0.44.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.44.0

Open the chart page →

8,636
assemblylineassemblylineVerified publisher7.4.202 of 12See more

assemblyline assemblyline 7.4.20

2 of the 12 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
golang.org/x/sys@v0.15.0
0.44.0
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
golang.org/x/sys@v0.16.0
0.44.0

Open the chart page →

12,865
authorizationassist-iot-authorisation0.1.01 of 2See more

authorization assist-iot-authorisation 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
assistiot/authorization_db:latestc3adbab6a3e7
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0

Open the chart page →

5,538
dltkvassist-iot-data-integrity-verification0.2.04 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

4 of the 9 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
assistiot/data_integrity_verification:1.0.0eb7f5d765ab6
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.44.0
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.44.0
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.44.0

Open the chart page →

194,576
dltflassist-iot-dlt-based-fl0.2.04 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

4 of the 9 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
assistiot/dlt_based_fl:1.1.04bc3d92788ed
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.44.0
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.44.0
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.44.0

Open the chart page →

194,576
fllocaloperationsassist-iot-fl-local-operations1.1.01 of 3See more

fllocaloperations assist-iot-fl-local-operations 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
assistiot/fl_repository_db:latestad8f72108636
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0

Open the chart page →

3,807
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0

Open the chart page →

9,453
flrepositorydbassist-iot-fl-repository1.1.01 of 2See more

flrepositorydb assist-iot-fl-repository 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
assistiot/fl_repository_db:latestad8f72108636
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0

Open the chart page →

4,388
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0

Open the chart page →

13,438
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
postgis/postgis:15-3.3a2fc46b52819
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0

Open the chart page →

10,191
openapiassist-iot-open-api-management0.2.22 of 6See more

openapi assist-iot-open-api-management 0.2.2

2 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
golang.org/x/sys@v0.0.0-20220722155257-8c9f86f7a55f
0.44.0
kong/kubernetes-ingress-controller:2.35e66021b64a8
golang.org/x/sys@v0.0.0-20220328115105-d36c6a25d886
0.44.0

Open the chart page →

88,292
performanceandusagediagnosisassist-iot-pud1.0.05 of 7See more

performanceandusagediagnosis assist-iot-pud 1.0.0

5 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:9.1.19746858c20e6
golang.org/x/sys@v0.0.0-20220615213510-4f61da869c0c
0.44.0
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
0.44.0
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
golang.org/x/sys@v0.8.0
0.44.0
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.6.0bdab4e49d71d
golang.org/x/sys@v0.0.0-20220615213510-4f61da869c0c
0.44.0

Open the chart page →

8,594
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0

Open the chart page →

8,002
semantic-repositoryassist-iot-semantic-repository1.1.01 of 3See more

semantic-repository assist-iot-semantic-repository 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,201
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/sys@v0.30.0
0.44.0
library/mongo:4.4.66efa05203990
golang.org/x/sys@v0.0.0-20200302150141-5c8b2ff67527
0.44.0
library/mysql:5.74bc6bc963e6d
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0

Open the chart page →

46,188
astrotrekastria0.0.24 of 4See more

astrotrek astria 0.0.2

4 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
0.44.0
ghcr.io/astriaorg/astria-indexer:0.1.05cf1e5709820
golang.org/x/sys@v0.21.0
0.44.0
ghcr.io/astriaorg/astria-indexer-api:0.1.03490d9900af1
golang.org/x/sys@v0.21.0
0.44.0
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0

Open the chart page →

32,881
celestia-localastria9.0.02 of 2See more

celestia-local astria 9.0.0

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-app:v6.1.0-rc0a604aefa3fae
golang.org/x/sys@v0.36.0
0.44.0
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
golang.org/x/sys@v0.35.0
0.44.0

Open the chart page →

3,312
celestia-nodeastria0.7.11 of 1See more

celestia-node astria 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
golang.org/x/sys@v0.35.0
0.44.0

Open the chart page →

1,521
evm-faucetastria0.1.51 of 1See more

evm-faucet astria 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/ria-faucet:0.0.1a06c8ebef427
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0

Open the chart page →

1,765
evm-rollupastria4.1.01 of 2See more

evm-rollup astria 4.1.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

4,049
evm-stackastria5.0.31 of 2See more

evm-stack astria 5.0.3

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

4,049
flame-rollupastria0.1.31 of 2See more

flame-rollup astria 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/flame:0.1.0c8af1c5aae40
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

3,893
graph-nodeastria0.2.22 of 3See more

graph-node astria 0.2.2

2 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ipfs/kubo:v0.17.0803fac58ba15
golang.org/x/sys@v0.2.0
0.44.0
library/postgres:latest4ef4dbc939d6
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

5,564
sequencerastria4.0.02 of 3See more

sequencer astria 4.0.0

2 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cometbft/cometbft:v0.38.1722c2ac018f40
golang.org/x/sys@v0.29.0
0.44.0
rclone/rclone:1.56.0f2fc45c8bc57
golang.org/x/sys@v0.0.0-20210423185535-09eb48e85fd7
0.44.0

Open the chart page →

6,517
sequencer-faucetastria0.9.21 of 1See more

sequencer-faucet astria 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/seq-faucet:0.9.0bf3cb9b505b6
golang.org/x/sys@v0.23.0
0.44.0

Open the chart page →

1,320
phonebook-chartasumankamberoglu0.1.51 of 3See more

phonebook-chart asumankamberoglu 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
golang.org/x/sys@v0.0.0-20220907062415-87db552b00fd
0.44.0

Open the chart page →

3,179
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

9,501
hcloud-csi-driveratem181.5.12 of 6See more

hcloud-csi-driver atem18 1.5.1

2 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
hetznercloud/hcloud-csi-driver:1.5.141dce5b33644
golang.org/x/sys@v0.0.0-20201015000850-e3ed0017c211
0.44.0
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
golang.org/x/sys@v0.0.0-20180302081741-dd2ff4accc09
0.44.0

Open the chart page →

6,511
attestkeepattestkeepVerified publisher1.1.11 of 2See more

attestkeep attestkeep 1.1.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:16.15-alpinecf78e76683b9
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

860
authorization-componentauthorization-component1.0.01 of 3See more

authorization-component authorization-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
0.44.0

Open the chart page →

7,574
okd-webhookav1o-chartsVerified publisher0.1.01 of 1See more

okd-webhook av1o-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.gitlab.com/av1o/okd-webhook:v0.1.028c3e5eb2650
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
0.44.0

Open the chart page →

1,728
botkubeaveshaVerified publisher1.0.01 of 2See more

botkube avesha 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/kubeshop/botkube:v1.0.0669e27a5d1af
golang.org/x/sys@v0.5.0
0.44.0

Open the chart page →

5,086
istio-discoveryaveshaVerified publisher1.16.01 of 1See more

istio-discovery avesha 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
istio/pilot:1.16.0ac0284d75ec9
golang.org/x/sys@v0.0.0-20220919091848-fb04ddd9f9c8
0.44.0

Open the chart page →

6,981
kubeslice-workeraveshaVerified publisher1.5.02 of 14See more

kubeslice-worker avesha 1.5.0

2 of the 14 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
aveshasystems/spiffe-csi-driver:0.2.753fc6d009e04
golang.org/x/sys@v0.19.0
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.1f6717ce72a26
golang.org/x/sys@v0.7.0
0.44.0

Open the chart page →

1,646
amazon-ec2-metadata-mockaws1.11.21 of 1See more

amazon-ec2-metadata-mock aws 1.11.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
public.ecr.aws/aws-ec2/amazon-ec2-metadata-mock:v1.11.2dd02d3569da0
golang.org/x/sys@v0.0.0-20210823070655-63515b42dcdf
0.44.0

Open the chart page →

861
appmesh-jaegeraws1.0.31 of 1See more

appmesh-jaeger aws 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.2942822be7888b
golang.org/x/sys@v0.0.0-20210823070655-63515b42dcdf
0.44.0

Open the chart page →

2,488
appmesh-prometheusaws1.0.31 of 2See more

appmesh-prometheus aws 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
golang.org/x/sys@v0.0.0-20191010194322-b09406accb47
0.44.0

Open the chart page →

2,947
aws-node-termination-handler-2aws0.2.02 of 2See more

aws-node-termination-handler-2 aws 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/controller:v2.0.0-beta9637c80dd23f
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/webhook:v2.0.0-beta86b0f7243250
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.44.0

Open the chart page →

2,967
aws-sigv4-proxy-admission-controlleraws0.1.21 of 1See more

aws-sigv4-proxy-admission-controller aws 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
public.ecr.aws/aws-observability/aws-sigv4-proxy-admission-controller:1.067b89ae52240
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0

Open the chart page →

2,141
axelor-open-suiteaxelor-open-suiteVerified publisher7.2.581 of 2See more

axelor-open-suite axelor-open-suite 7.2.58

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
golang.org/x/sys@v0.2.0
0.44.0

Open the chart page →

9,740
axonops-developer-operatoraxonops-developer-operator0.1.01 of 1See more

axonops-developer-operator axonops-developer-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/axonops/axonops-developer-operator:v0.1.0b3d6600c8ba5
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

750
axonops-operatoraxonops-operator0.1.01 of 1See more

axonops-operator axonops-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/axonops/axonops-operator:0.1.0e0cdb993f0b1
golang.org/x/sys@v0.41.0
0.44.0

Open the chart page →

312
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
0.44.0

Open the chart page →

4,577
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0

Open the chart page →

5,566
helm-controllerazureorkestra0.1.12 of 2See more

helm-controller azureorkestra 0.1.1

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
fluxcd/helm-controller:v0.9.092b891e495d8
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0
fluxcd/source-controller:v0.10.031a8c79a6803
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0

Open the chart page →

7,726
keptn-addonsazureorkestra0.1.04 of 4See more

keptn-addons azureorkestra 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
keptn/distributor:0.8.36bc3df9e0d6a
golang.org/x/sys@v0.0.0-20201119102817-f84b799fce68
0.44.0
keptn/distributor:0.8.472e17527a4f9
golang.org/x/sys@v0.0.0-20201119102817-f84b799fce68
0.44.0
keptncontrib/prometheus-service:0.6.029969dd547de
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
0.44.0
keptnsandbox/job-executor-service:0.1.36e6d323dd7ae
golang.org/x/sys@v0.0.0-20210603125802-9665404d3644
0.44.0

Open the chart page →

10,633
prometheusazureorkestra14.8.05 of 6See more

prometheus azureorkestra 14.8.0

5 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
0.44.0
prom/pushgateway:v1.3.18305a33fb80a
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
0.44.0
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
0.44.0
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
0.44.0
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/sys@v0.0.0-20210324051608-47abb6519492
0.44.0

Open the chart page →

9,675
webserverazureorkestra1.0.01 of 1See more

webserver azureorkestra 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
nmalhotr/webserver:v1.0.03419361fb0dd
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
0.44.0

Open the chart page →

3,038
krakendbaboulinet0.1.341 of 1See more

krakend baboulinet 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
devopsfaith/krakend:2.7.09219cda867e2
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,323
ragflowbaboulinet0.1.12 of 5See more

ragflow baboulinet 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/mysql:8.0.39ccb8f749bb5e
golang.org/x/sys@v0.13.0
0.44.0
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
golang.org/x/sys@v0.15.0
0.44.0

Open the chart page →

6,089

Container images carrying it

4,449 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
golang.org/x/sys@v0.38.0
0.44.0
1
quay.io/argoprojlabs/argocd-extension-metrics:v1.0.30d614816c4b7
golang.org/x/sys@v0.8.0
0.44.0
1
quay.io/argoprojlabs/argocd-image-updater:v1.2.13c56f354fac5
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/argoprojlabs/argocd-operator:v0.18.0a09814522a72
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/argoprojlabs/argocd-operator:v0.4.0cf8faa986789
golang.org/x/sys@v0.0.0-20220520151302-bc2c85ada10a
0.44.0
1
quay.io/argoprojlabs/argocd-rbac-operator:v0.2.451dded00137a
golang.org/x/sys@v0.33.0
0.44.0
1
quay.io/argoproj/workflow-controller:v3.7.166388d1b2f08
golang.org/x/sys@v0.33.0
0.44.0
1
quay.io/argoproj/workflow-controller:v3.5.56ab0da144235
golang.org/x/sys@v0.15.0
0.44.0
1
quay.io/argoproj/workflow-controller:v3.7.11c46aa0ded8ed
golang.org/x/sys@v0.40.0
0.44.0
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
0.44.0
1
quay.io/backube/snapscheduler:3.5.035ac95c51780
golang.org/x/sys@v0.32.0
0.44.0
1
quay.io/backube/volsync:0.16.00d03a6aad575
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
0.44.0
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
golang.org/x/sys@v0.0.0-20220503163025-988cb79eb6c6
0.44.0
1
quay.io/bentoml/yatai:1.1.13a5dc9d91de0d
golang.org/x/sys@v0.5.0
0.44.0
1
quay.io/bentoml/yatai-deployment:1.1.212342cfe8c2a9
golang.org/x/sys@v0.13.0
0.44.0
1
quay.io/bentoml/yatai-image-builder:3.0.4401d8538c4f48
golang.org/x/sys@v0.39.0
0.44.0
1
quay.io/brancz/kube-rbac-proxy:v0.15.02c7b120590cb
golang.org/x/sys@v0.13.0
0.44.0
1
quay.io/brancz/kube-rbac-proxy:v0.16.02c8f8c357ff8
golang.org/x/sys@v0.17.0
0.44.0
1
quay.io/brancz/kube-rbac-proxy:v0.18.0754ab2a723c8
golang.org/x/sys@v0.21.0
0.44.0
1
quay.io/brancz/kube-rbac-proxy:v0.20.1f5fbfec6a2b2
golang.org/x/sys@v0.38.0
0.44.0
1
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.44.0
1
quay.io/cephcsi/ceph-csi-operator:v0.5.014fe2f1bffc3
golang.org/x/sys@v0.40.0
0.44.0
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
golang.org/x/sys@v0.15.0
0.44.0
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
golang.org/x/sys@v0.34.0
0.44.0
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
golang.org/x/sys@v0.38.0
0.44.0
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
golang.org/x/sys@v0.35.0
0.44.0
1
quay.io/cilium/hubble-relay:v1.18.26079308ee15e
golang.org/x/sys@v0.34.0
0.44.0
1
quay.io/cilium/hubble-ui-backend:v0.13.3db1454e45dc3
golang.org/x/sys@v0.34.0
0.44.0
1
quay.io/cilium/operator-generic:v1.17.14773886ec9337
golang.org/x/sys@v0.5.0
0.44.0
1
quay.io/cilium/operator-generic:v1.15.1819c7281f5a4
golang.org/x/sys@v0.15.0
0.44.0
1
quay.io/cilium/operator-generic:v1.18.2cb4e4ffc5789
golang.org/x/sys@v0.5.0
0.44.0
1
quay.io/cilium/tetragon:v1.1.096fac2482898
golang.org/x/sys@v0.19.0
0.44.0
1
quay.io/cilium/tetragon-ci:b6f3056a3f6cf05e366a3e07348f7c0b6265a60f5efd991d218b
golang.org/x/sys@v0.0.0-20220928140112-f11e5e49a4ec
0.44.0
1
quay.io/cilium/tetragon-operator:v0.8.34ab8e6604204
golang.org/x/sys@v0.0.0-20220829200755-d48e67d00261
0.44.0
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
0.44.0
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
golang.org/x/sys@v0.10.0
0.44.0
1
quay.io/codefresh/dind:3.0.250885ab519dac
golang.org/x/sys@v0.38.0
0.44.0
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
golang.org/x/sys@v0.21.0
0.44.0
1
quay.io/coreos/etcd:v3.5.11842975891182
golang.org/x/sys@v0.14.0
0.44.0
1
quay.io/coreos/etcd:v3.5.16d967d98a12dc
golang.org/x/sys@v0.18.0
0.44.0
1
quay.io/cortexproject/cortex:v1.9.05d1c2cf4c538
golang.org/x/sys@v0.0.0-20210324051608-47abb6519492
0.44.0
1
quay.io/cortexproject/cortex:v1.21.18577eb292a01
golang.org/x/sys@v0.40.0
0.44.0
1
quay.io/ddn/exascaler-csi-file-driver:v2.2.6fe2e2e5a2751
golang.org/x/sys@v0.0.0-20191220220014-0732a990476f
0.44.0
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
0.44.0
1
quay.io/enix/zfs-exporter:2.3.1223b053f1cbd0
golang.org/x/sys@v0.38.0
0.44.0
1
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
golang.org/x/sys@v0.20.0
0.44.0
1
quay.io/evl.ms/pgbouncer-exporter:0.4.074f919b78494
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
0.44.0
1
quay.io/evryfs/github-actions-runner-operator:v0.11.16b084e0bd082
golang.org/x/sys@v0.10.0
0.44.0
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.