StackRadar

CVE-2026-39824

Unscored

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,871
of 17,813 indexed, latest versions
Container images
4,436
deployed by those charts
Fix available
1 of 1
affected package

Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows

Carried by container images the latest versions of 3,871 of 17,813 indexed charts deploy, on 4,436 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+272 more0.44.04,436
OSV records
GO-2026-5024

Charts affected

3,871 by stars
ChartLatestAffected imagesRadar Score
yatai-image-builderbentomlVerified publisher3.0.441 of 1See more

yatai-image-builder bentoml 3.0.44

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/bentoml/yatai-image-builder:3.0.4401d8538c4f48
golang.org/x/sys@v0.39.0
0.44.0

Open the chart page →

492
aramid-indexerbiatec-repoVerified publisher3.9.04 of 5See more

aramid-indexer biatec-repo 3.9.0

4 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:14816cf7d06ec3
golang.org/x/sys@v0.1.0
0.44.0
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
golang.org/x/sys@v0.32.0
0.44.0
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
golang.org/x/sys@v0.33.0
0.44.0
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

13,720
aramid-participationbiatec-repoVerified publisher4.4.11 of 1See more

aramid-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
golang.org/x/sys@v0.30.0
0.44.0

Open the chart page →

7,437
aramid-relaybiatec-repoVerified publisher4.4.11 of 1See more

aramid-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
golang.org/x/sys@v0.32.0
0.44.0

Open the chart page →

5,307
voimain-participationbiatec-repoVerified publisher4.4.11 of 1See more

voimain-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
golang.org/x/sys@v0.32.0
0.44.0

Open the chart page →

7,437
self-hostbitwarden2.4.210 of 11See more

self-host bitwarden 2.4.2

10 of the 11 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/bitwarden/admin:2026.9.05686674f2c35
golang.org/x/sys@v0.1.0
0.44.0
ghcr.io/bitwarden/api:2026.9.0d5964b4c9563
golang.org/x/sys@v0.1.0
0.44.0
ghcr.io/bitwarden/attachments:2026.9.0f019c2d14ca7
golang.org/x/sys@v0.1.0
0.44.0
ghcr.io/bitwarden/events:2026.9.0ffb067562d07
golang.org/x/sys@v0.1.0
0.44.0
ghcr.io/bitwarden/icons:2026.9.013d351a6cb08
golang.org/x/sys@v0.1.0
0.44.0
ghcr.io/bitwarden/identity:2026.9.090453408f338
golang.org/x/sys@v0.1.0
0.44.0
ghcr.io/bitwarden/notifications:2026.9.051f843ae35e3
golang.org/x/sys@v0.1.0
0.44.0
ghcr.io/bitwarden/sso:2026.9.09a2e89605b82
golang.org/x/sys@v0.1.0
0.44.0
ghcr.io/bitwarden/web:2026.9.08aa9f4258378
golang.org/x/sys@v0.1.0
0.44.0
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
golang.org/x/sys@v0.25.0
0.44.0

Open the chart page →

3,565
prometheus-airbyte-exporterbotify-helm-chartsVerified publisher0.7.11 of 1See more

prometheus-airbyte-exporter botify-helm-charts 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
golang.org/x/sys@v0.16.0
0.44.0

Open the chart page →

2,951
boundaryboundary-chart0.3.121 of 1See more

boundary boundary-chart 0.3.12

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
hashicorp/boundary:0.15.3339b78b61750
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

1,630
brpservicebrpservice1.1.01 of 4See more

brpservice brpservice 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
0.44.0

Open the chart page →

7,843
btrfs-nfs-csibtrfs-nfs-csi0.4.06 of 7See more

btrfs-nfs-csi btrfs-nfs-csi 0.4.0

6 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
golang.org/x/sys@v0.38.0
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
golang.org/x/sys@v0.41.0
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
golang.org/x/sys@v0.33.0
0.44.0
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
golang.org/x/sys@v0.40.0
0.44.0
registry.k8s.io/sig-storage/csi-snapshotter:v8.5.0da081c27e8a6
golang.org/x/sys@v0.41.0
0.44.0
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
golang.org/x/sys@v0.40.0
0.44.0

Open the chart page →

3,249
bucket-backup-restorebucket-backup-restore0.1.01 of 2See more

bucket-backup-restore bucket-backup-restore 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
abohatyrenko/bucket-backup-restore:latestfa98af15a13e
golang.org/x/sys@v0.13.0
0.44.0

Open the chart page →

2,050
agentbuildkite0.6.41 of 1See more

agent buildkite 0.6.4

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
buildkite/agent:3.25.0aec38cfaae0e
golang.org/x/sys@v0.0.0-20201009025420-dfb3f7c4e634
0.44.0

Open the chart page →

2,671
buildkite-agent-metricsbuildkite-agent-metrics0.1.01 of 1See more

buildkite-agent-metrics buildkite-agent-metrics 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
public.ecr.aws/buildkite/agent-metrics:v5.11.016e7f5c7161e
golang.org/x/sys@v0.35.0
0.44.0

Open the chart page →

1,553
buildkit-fleetbuildkit-fleetVerified publisher0.1.21 of 1See more

buildkit-fleet buildkit-fleet 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
moby/buildkit:v0.33.0-rootless80b15f0735e8
golang.org/x/sys@v0.35.0
0.44.0

Open the chart page →

903
argocd-source-trackercableship0.0.91 of 1See more

argocd-source-tracker cableship 0.0.9

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cableship/argocd-source-tracker:0.0.6ff7dd45aa774
golang.org/x/sys@v0.32.0
0.44.0

Open the chart page →

1,660
chart-sentinelcableship0.0.121 of 1See more

chart-sentinel cableship 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cableship/chart-sentinel:0.1.0a037f1042b28
golang.org/x/sys@v0.32.0
0.44.0

Open the chart page →

1,660
pgvectorcagriekinVerified publisher2.1.01 of 3See more

pgvector cagriekin 2.1.0

1 of the 3 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

4,244
camel-dashboard-operatorcamel-dashboardVerified publisher0.1.01 of 1See more

camel-dashboard-operator camel-dashboard 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

520
blackbox-exportercamptocamp31.0.01 of 1See more

blackbox-exporter camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.25.0b04a9fef4fa0
golang.org/x/sys@v0.19.0
0.44.0

Open the chart page →

913
capsulecapsuleOfficialVerified publisher0.14.61 of 2See more

capsule capsule 0.14.6

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,239
capsule-proxycapsule-proxyOfficialVerified publisher0.14.11 of 2See more

capsule-proxy capsule-proxy 0.14.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,254
fluxcd-webuiccowleyVerified publisher0.0.21 of 2See more

fluxcd-webui ccowley 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
adrianberger/fluxcd-webui:latest76848c0d2780
golang.org/x/sys@v0.0.0-20200814200057-3d37ad5750ed
0.44.0

Open the chart page →

3,513
celestia-nodecelestia-node0.1.71 of 1See more

celestia-node celestia-node 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.16.041177982c584
golang.org/x/sys@v0.22.0
0.44.0

Open the chart page →

1,818
cert-estuarycert-estuaryVerified publisher0.2.11 of 1See more

cert-estuary cert-estuary 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/hsn723/cert-estuary:0.2.00c4b6132b0ad
golang.org/x/sys@v0.43.0
0.44.0

Open the chart page →

276
finops-stackcert-managerVerified publisher0.0.57 of 12See more

finops-stack cert-manager 0.0.5

7 of the 12 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:11.1.3b23b588cf7cb
golang.org/x/sys@v0.21.0
0.44.0
ghcr.io/kyverno/background-controller:v1.12.506ed5db6cd33
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/cleanup-controller:v1.12.5b914032ef9ad
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/kyverno:v1.12.5a61c7022abcf
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/kyverno-cli:v1.12.5832a32779e6d
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/kyvernopre:v1.12.563f7eaf5aa8a
golang.org/x/sys@v0.19.0
0.44.0
ghcr.io/kyverno/reports-controller:v1.12.5c62e3347611c
golang.org/x/sys@v0.19.0
0.44.0

Open the chart page →

12,812
cert-manager-webhook-arvancloudcert-manager-webhook-arvancloudVerified publisher0.1.11 of 1See more

cert-manager-webhook-arvancloud cert-manager-webhook-arvancloud 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/mohammadv184/cert-manager-webhook-arvancloud:latest179bee5ef8b2
golang.org/x/sys@v0.8.0
0.44.0

Open the chart page →

1,082
cert-manager-webhook-gandicert-manager-webhook-gandi0.6.01 of 1See more

cert-manager-webhook-gandi cert-manager-webhook-gandi 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/sintef/cert-manager-webhook-gandi:0.6.06819b34ccac8
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,039
cert-vaultcert-vaultOfficialVerified publisher2.12.04 of 7See more

cert-vault cert-vault 2.12.0

4 of the 7 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
golang.org/x/sys@v0.29.0
0.44.0
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
golang.org/x/sys@v0.21.0
0.44.0
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
golang.org/x/sys@v0.28.0
0.44.0
library/postgres:17f4c66b820c6f
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

15,884
chatclichatcliVerified publisher1.205.11 of 2See more

chatcli chatcli 1.205.1

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.31.10e0b2d217d1d2
golang.org/x/sys@v0.21.0
0.44.0

Open the chart page →

1,028
passbolt-hachristianhuthVerified publisher6.0.13 of 4See more

passbolt-ha christianhuth 6.0.1

3 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
golang.org/x/sys@v0.33.0
0.44.0
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
golang.org/x/sys@v0.33.0
0.44.0
passbolt/passbolt:3.4.0-ce-non-root655547e17263
golang.org/x/sys@v0.0.0-20200413165638-669c56c373c4
0.44.0

Open the chart page →

11,070
squestchristianhuthVerified publisher6.6.82 of 4See more

squest christianhuth 6.6.8

2 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
golang.org/x/sys@v0.33.0
0.44.0
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

10,210
typo3christianhuthVerified publisher7.7.21 of 2See more

typo3 christianhuth 7.7.2

1 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
golang.org/x/sys@v0.33.0
0.44.0

Open the chart page →

8,802
challengerchronicleVerified publisher0.1.11 of 1See more

challenger chronicle 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/challenger-go:0.1.2c8d5a3c0e966
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

978
spectrechronicleVerified publisher0.3.81 of 1See more

spectre chronicle 0.3.8

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/spectre:0.68.34e872bc016e8
golang.org/x/sys@v0.38.0
0.44.0

Open the chart page →

1,553
access-managerckotzbauerVerified publisher0.14.31 of 1See more

access-manager ckotzbauer 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/ckotzbauer/access-managerdigest-pinneddd584fcda0ff
golang.org/x/sys@v0.18.0
0.44.0

Open the chart page →

643
clairclair0.0.31 of 1See more

clair clair 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
quay.io/projectquay/clair:4.7.28d38ffa8fad7
golang.org/x/sys@v0.11.0
0.44.0

Open the chart page →

3,286
clamav-restclamav-rest-apiVerified publisher0.1.01 of 1See more

clamav-rest clamav-rest-api 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ajilaag/clamav-rest:latestad689c7b75b1
golang.org/x/sys@v0.42.0
0.44.0

Open the chart page →

515
claude-code-hubclaude-code-hub0.1.01 of 4See more

claude-code-hub claude-code-hub 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
library/postgres:18-alpine6c538e7206ea
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

1,900
cloudbees-sidecar-injectorcloudbees2.3.32 of 2See more

cloudbees-sidecar-injector cloudbees 2.3.3

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
cloudbees/cert-requester:2.3.31d44fb4f799b
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0
cloudbees/sidecar-injector:2.3.38f102ef0383a
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0

Open the chart page →

3,270
cloudflow-enterprise-componentscloudflow-helm-charts0.0.0-NIGHTLY011220202 of 9See more

cloudflow-enterprise-components cloudflow-helm-charts 0.0.0-NIGHTLY01122020

2 of the 9 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
0.44.0
prom/prometheus:v2.21.0d43417c260e5
golang.org/x/sys@v0.0.0-20200821140526-fda516888d29
0.44.0

Open the chart page →

4,267
cnpg-sandboxcloudnative-pgVerified publisher0.6.13 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

3 of the 6 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:8.3.5cd7cb4345aa7
golang.org/x/sys@v0.0.0-20210908233432-aa78b53d3365
0.44.0
ghcr.io/cloudnative-pg/cloudnative-pg:1.17.14dd365800b62
golang.org/x/sys@v0.0.0-20220728004956-3c1f35247d10
0.44.0
quay.io/prometheus-operator/prometheus-operator:v0.54.0be2aef39a2f8
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.44.0

Open the chart page →

7,600
pgbenchcloudnative-pgVerified publisher0.1.01 of 1See more

pgbench cloudnative-pg 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
0.44.0

Open the chart page →

2,714
grafanacloudposse0.2.61 of 1See more

grafana cloudposse 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
grafana/grafana:latestac461fb352ab
golang.org/x/sys@v0.41.0
0.44.0

Open the chart page →

599
openstack-manila-csicloud-provider-openstack2.36.35 of 5See more

openstack-manila-csi cloud-provider-openstack 2.36.3

5 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
golang.org/x/sys@v0.43.0
0.44.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
golang.org/x/sys@v0.33.0
0.44.0
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
golang.org/x/sys@v0.33.0
0.44.0
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
golang.org/x/sys@v0.32.0
0.44.0
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
golang.org/x/sys@v0.32.0
0.44.0

Open the chart page →

3,786
cloudttycloudtty0.8.102 of 2See more

cloudtty cloudtty 0.8.10

2 of the 2 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/cloudtty/cloudshell:v0.8.1023e8d178e02c
golang.org/x/sys@v0.37.0
0.44.0
ghcr.io/cloudtty/cloudshell-operator:v0.8.1014f036e33ef1
golang.org/x/sys@v0.28.0
0.44.0

Open the chart page →

3,029
cluster-api-visualizercluster-api-visualizer1.5.01 of 1See more

cluster-api-visualizer cluster-api-visualizer 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/jont828/cluster-api-visualizer:v1.5.0678ba6833297
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

558
clustereye-stackclustereyeVerified publisher0.1.12 of 5See more

clustereye-stack clustereye 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
johnblack77/clustereye-api:latest16c25fd2128c
golang.org/x/sys@v0.41.0
0.44.0
library/postgres:17-alpinef02121de6f74
golang.org/x/sys@v0.1.0
0.44.0

Open the chart page →

4,636
clusternet-hubclusternet1.0.01 of 1See more

clusternet-hub clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,556
clusternet-schedulerclusternet1.0.01 of 1See more

clusternet-scheduler clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
golang.org/x/sys@v0.34.0
0.44.0

Open the chart page →

1,556
cluster-setupcluster-setup1.5.07 of 8See more

cluster-setup cluster-setup 1.5.0

7 of the 8 container images this version deploys carry CVE-2026-39824.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
golang.org/x/sys@v0.32.0
0.44.0
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
golang.org/x/sys@v0.13.0
0.44.0
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
golang.org/x/sys@v0.28.0
0.44.0
quay.io/jetstack/cert-manager-cainjector:v1.17.2ec56edb1161d
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-controller:v1.17.22c314feeb5e8
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-startupapicheck:v1.17.2e18989b4f912
golang.org/x/sys@v0.31.0
0.44.0
quay.io/jetstack/cert-manager-webhook:v1.17.237b16a9dff00
golang.org/x/sys@v0.31.0
0.44.0

Open the chart page →

10,474

Container images carrying it

4,436 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/prometheus:v2.53.1f20d3127bf28
golang.org/x/sys@v0.21.0
0.44.0
1
quay.io/prometheus/pushgateway:v1.11.103738d278e08
golang.org/x/sys@v0.30.0
0.44.0
1
quay.io/prometheus/pushgateway:v1.6.05111de00e969
golang.org/x/sys@v0.8.0
0.44.0
1
quay.io/prometheus/statsd-exporter:v0.30.0378cb79c4ac7
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/prometheus/statsd-exporter:v0.27.29ed70604d941
golang.org/x/sys@v0.24.0
0.44.0
1
quay.io/prometheus/statsd-exporter:v0.22.8f53cca722a03
golang.org/x/sys@v0.0.0-20220708085239-5a0f0661e09d
0.44.0
1
quay.io/rabbitmqoperator/messaging-topology-operator:1.18.1f97c36882244
golang.org/x/sys@v0.37.0
0.44.0
1
quay.io/reactiveops/rbac-manager:v1.9.587e3f461446f
golang.org/x/sys@v0.39.0
0.44.0
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
0.44.0
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
0.44.0
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.44.0
1
quay.io/redhat-developer/servicebinding-operator16286ac84ddd
golang.org/x/sys@v0.13.0
0.44.0
1
quay.io/reiml/smtp-gotify:latest80ffa9d2044a
golang.org/x/sys@v0.24.0
0.44.0
1
quay.io/rhdh/rhdh-hub-rhel9:latest0b26358f5793
golang.org/x/sys@v0.39.0
0.44.0
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
0.44.0
1
quay.io/rimusz/hostpath-provisioner:v0.2.587f0398ec7ff
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0
1
quay.io/seamware/did-helper:0.6.0799c5f566952
golang.org/x/sys@v0.32.0
0.44.0
1
quay.io/sergeyshevch/s3manager:feature_refactoringff59fcdf44eb
golang.org/x/sys@v0.0.0-20220318055525-2edf467146b5
0.44.0
1
quay.io/skopeo/stable:v1.134853591bd1d2
golang.org/x/sys@v0.9.0
0.44.0
1
quay.io/solo-io/certgen:0.0.0-forkb17a8c7d1f32
golang.org/x/sys@v0.0.0-20220608164250-635b8c9b7f68
0.44.0
1
quay.io/solo-io/discovery:0.0.0-fork5b62aaade3c9
golang.org/x/sys@v0.0.0-20220608164250-635b8c9b7f68
0.44.0
1
quay.io/solo-io/gloo:0.0.0-fork9a6c84560d44
golang.org/x/sys@v0.0.0-20220608164250-635b8c9b7f68
0.44.0
1
quay.io/solo-io/gloo-envoy-wrapper:0.0.0-fork26ae185e835a
golang.org/x/sys@v0.0.0-20220608164250-635b8c9b7f68
0.44.0
1
quay.io/spotahome/redis-operator:latest8c772955184e
golang.org/x/sys@v0.8.0
0.44.0
1
quay.io/superq/draytek-exporter:v0.2.03b577bdceaae
golang.org/x/sys@v0.37.0
0.44.0
1
quay.io/superq/smokeping-prober:v0.7.125d07dfc1d7e
golang.org/x/sys@v0.8.0
0.44.0
1
quay.io/thanos/thanos:v0.40.1aae7b2b030ed
golang.org/x/sys@v0.33.0
0.44.0
1
quay.io/thanos/thanos:v0.17.1e362f02ed304
golang.org/x/sys@v0.0.0-20201008064518-c1f3e3309c71
0.44.0
1
quay.io/thanos/thanos:v0.36.1e542959e1b36
golang.org/x/sys@v0.21.0
0.44.0
1
quay.io/tigera/operator:v1.20.1379efe0c2541
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
0.44.0
1
quay.io/tigera/operator:v1.15.1c6591da87aa8
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
0.44.0
1
quay.io/titansoft/imagepullsecret-patcher:v0.1421e6d6a155dc
golang.org/x/sys@v0.0.0-20190826190057-c7b8b68b1456
0.44.0
1
quay.io/uswitch/kiam:v4.0be3a5846922d
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
0.44.0
1
quay.io/vouch/vouch-proxy:0.39d34e220de3cf
golang.org/x/sys@v0.4.0
0.44.0
1
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
golang.org/x/sys@v0.0.0-20220715151400-c0bba94af5f8
0.44.0
1
quay.io/youniqx/heist:v1.1.209c43b3a9d98ae
golang.org/x/sys@v0.25.0
0.44.0
1
quay.io/zncdatadev/airflow-operator:0.4.0b716ef483b75
golang.org/x/sys@v0.38.0
0.44.0
1
quay.io/zncdatadev/commons-operator:0.4.01a353def9fe1
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/zncdatadev/dolphinscheduler-operator:0.4.0d0a4e55eeb7f
golang.org/x/sys@v0.43.0
0.44.0
1
quay.io/zncdatadev/hbase-operator:0.4.069e9a1b0daf8
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/zncdatadev/hdfs-operator:0.4.0eb3c2928250e
golang.org/x/sys@v0.40.0
0.44.0
1
quay.io/zncdatadev/hive-operator:0.4.0d66ba9149c22
golang.org/x/sys@v0.43.0
0.44.0
1
quay.io/zncdatadev/kafka-operator:0.4.00a0b4c39c1ba
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/zncdatadev/listener-csi-driver:0.4.0b69bed123b02
golang.org/x/sys@v0.43.0
0.44.0
1
quay.io/zncdatadev/listener-operator:0.4.068b92dae8d75
golang.org/x/sys@v0.43.0
0.44.0
1
quay.io/zncdatadev/nifi-operator:0.4.0bb4e26ff5e2f
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/zncdatadev/secret-csi-driver:0.4.0604a7d98ab58
golang.org/x/sys@v0.38.0
0.44.0
1
quay.io/zncdatadev/spark-k8s-operator:0.4.0d3f2b10c4a6d
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/zncdatadev/superset-operator:0.4.0102e66e32218
golang.org/x/sys@v0.42.0
0.44.0
1
quay.io/zncdatadev/zookeeper-operator:0.4.0b4f33d89ac45
golang.org/x/sys@v0.42.0
0.44.0
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.