StackRadar

CVE-2026-39825

Medium

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
33rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,036
of 17,828 indexed, latest versions
Container images
4,611
deployed by those charts
Fix available
1 of 2
affected packages

ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil

Carried by container images the latest versions of 4,036 of 17,828 indexed charts deploy, on 4,611 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.104,611
OSV records
DEBIAN-CVE-2026-39825GO-2026-4976
Also known as
BIT-golang-2026-39825

Charts affected

4,036 by stars
ChartLatestAffected imagesRadar Score
pagesstephendillondell1.0.01 of 3See more

pages stephendillondell 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,287
snapshot-controllerstevehipwellVerified publisher0.1.01 of 1See more

snapshot-controller stevehipwell 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.10

Open the chart page →

495
snapshot-controllerstevehipwell-helm-charts-snapshot-controllerVerified publisher0.1.01 of 1See more

snapshot-controller stevehipwell-helm-charts-snapshot-controller 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.10

Open the chart page →

495
its-mytabsstone0.3.01 of 1See more

its-mytabs stone 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
louislam/its-mytabs:1.7.02e478d3170bd
stdlib@go1.24.4
1.25.10

Open the chart page →

1,533
sn-platform-slimstreamnative1.11.453See more

sn-platform-slim streamnative 1.11.45

3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.8.05af9d3041d12
stdlib@go1.19.2
1.25.10
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
stdlib@go1.20.4
1.25.10
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
stdlib@go1.19.7
1.25.10

Open the chart page →

wonder-mesh-netstrrl-helm2026.629.01 of 3See more

wonder-mesh-net strrl-helm 2026.629.0

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
headscale/headscale:0.27.1cd37b3001857
stdlib@go1.25.1
1.25.10

Open the chart page →

5,202
stunner-prometheusstunner0.2.14 of 4See more

stunner-prometheus stunner 0.2.1

4 of the 4 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
stdlib@go1.25.7
1.25.10
quay.io/brancz/kube-rbac-proxy:v0.18.1e6a323504999
stdlib@go1.23.0
1.25.10
quay.io/prometheus-operator/prometheus-operator:v0.77.2af92db7eac86
stdlib@go1.23.2
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.25.10

Open the chart page →

3,066
group-challengesubshell-labVerified publisher2.1.01 of 2See more

group-challenge subshell-lab 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.29.17d12c7c8fc66
stdlib@go1.24.3
1.25.10

Open the chart page →

2,626
orchestratorsubstraVerified publisher8.8.02 of 3See more

orchestrator substra 8.8.0

2 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/postgres:17f4c66b820c6f
stdlib@go1.24.6
1.25.10
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
stdlib@go1.21.13
1.25.10

Open the chart page →

2,644
substra-backendsubstraVerified publisher26.15.31 of 7See more

substra-backend substra 26.15.3

1 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.10

Open the chart page →

4,794
lingosubstratusVerified publisher0.2.11 of 1See more

lingo substratus 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/substratusai/lingo:v0.2.12c807cd41ed4
stdlib@go1.22.5
1.25.10

Open the chart page →

1,597
scaleway-webhooksudaVerified publisher0.0.21 of 1See more

scaleway-webhook suda 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
stdlib@go1.15.2
1.25.10

Open the chart page →

2,355
nocodbsudermanjr0.1.01 of 1See more

nocodb sudermanjr 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
nocodb/nocodb:0.84.15f9b799933aa8
stdlib@go1.17.8
1.25.10

Open the chart page →

2,071
qbittorrentsudo-kraken-qbittorrentVerified publisher5.1.51 of 2See more

qbittorrent sudo-kraken-qbittorrent 5.1.5

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:36bfc606bba2064de6ede0ff2764cbb52edff70dba6f0b4cf6c8
stdlib@go1.20.2
1.25.10

Open the chart page →

2,132
ingress-nginx-external-lbsuminhong1.0.02 of 2See more

ingress-nginx-external-lb suminhong 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.10.042b3f0e5d084
stdlib@go1.22.0
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.044d1d0e9f19c
stdlib@go1.21.6
1.25.10

Open the chart page →

2,095
slack-emoji-makersuminhong0.1.01 of 1See more

slack-emoji-maker suminhong 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
honglab/slack-emoji-maker:v0.0.1ca075a926fe1
stdlib@go1.20.7
1.25.10

Open the chart page →

1,807
hello-worldsumudu-repo1.0.01 of 1See more

hello-world sumudu-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
sumuduliya/hello-world:latestb7788a2984a3
stdlib@go1.19.13
1.25.10

Open the chart page →

941
pagessunilb2590-pages1.0.01 of 3See more

pages sunilb2590-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,287
cludodsuperorbitalVerified publisher0.0.51 of 1See more

cludod superorbital 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
superorbital/cludod:0.0.2-alphad59732f61d6e
stdlib@go1.17.6
1.25.10

Open the chart page →

2,372
do-database-metrics-adaptersupporttools1.0.21 of 1See more

do-database-metrics-adapter supporttools 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
supporttools/do-database-metrics-adapter:1.0.2ab55fd5a69c3
stdlib@go1.22.3
1.25.10

Open the chart page →

430
do-operatorsupporttools0.1.71 of 2See more

do-operator supporttools 0.1.7

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
digitalocean/do-operator:v0.1.65e5deb4db76e
stdlib@go1.18.10
1.25.10

Open the chart page →

1,063
go-redis-proxysupporttools0.0.71 of 1See more

go-redis-proxy supporttools 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
supporttools/go-redis-proxy:0.0.7cbd45f6b02b8
stdlib@go1.21.6
1.25.10

Open the chart page →

529
go-web-cachesupporttools1.3.21 of 1See more

go-web-cache supporttools 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
supporttools/go-web-cache:v1.3.2f4f775dd43b9
stdlib@go1.21.6
1.25.10

Open the chart page →

512
nfs-provisionersupporttools0.11.01 of 1See more

nfs-provisioner supporttools 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
openebs/provisioner-nfs:0.11.04f41dd782761
stdlib@go1.19.13
1.25.10

Open the chart page →

2,681
powerdns-admin-proxysupporttools0.1.51 of 1See more

powerdns-admin-proxy supporttools 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
supporttools/powerdns-admin-proxy:5e3687d66bcfa
stdlib@go1.21.3
1.25.10

Open the chart page →

559
push-to-k8ssupporttools1.1.21 of 1See more

push-to-k8s supporttools 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
cube8021/push-to-k8s:v1.1.21be9baf096ff
stdlib@go1.22.4
1.25.10

Open the chart page →

531
surogate-hubsurogate-hubVerified publisher2.1.51 of 1See more

surogate-hub surogate-hub 2.1.5

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
stdlib@go1.24.13
1.25.10

Open the chart page →

3,535
freeradiussvtech-public-helm-charts0.1.51 of 4See more

freeradius svtech-public-helm-charts 0.1.5

1 of the 4 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
stdlib@go1.18.2
1.25.10

Open the chart page →

12,754
grafanasvtech-public-helm-charts1.0.01 of 2See more

grafana svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
stdlib@go1.20.4
1.25.10

Open the chart page →

11,020
icinga2svtech-public-helm-charts1.0.02 of 4See more

icinga2 svtech-public-helm-charts 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/redis:7.2.3a7cee7c8178f
stdlib@go1.18.2
1.25.10
svtechnmaa/svtech_icingadb:v1.1.26d91c2e4e882
stdlib@go1.21.5
1.25.10

Open the chart page →

5,572
icingawebsvtech-public-helm-charts1.0.01 of 2See more

icingaweb svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
svtechnmaa/svtech_icingaweb2:v1.0.2a59d0b81dde2
stdlib@go1.21.6
1.25.10

Open the chart page →

2,053
ingress-nginxsvtech-public-helm-charts1.0.01 of 1See more

ingress-nginx svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.9.45b161f051d01
stdlib@go1.21.3
1.25.10

Open the chart page →

1,480
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
stdlib@go1.18.2
1.25.10

Open the chart page →

75,797
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
stdlib@go1.20.5
1.25.10

Open the chart page →

76,163
syncthingsvtech-public-helm-charts1.0.01 of 2See more

syncthing svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
svtechnmaa/svtech_syncthing:v1.0.41a75d88031fe
stdlib@go1.21.5
1.25.10

Open the chart page →

2,337
switchbladeswitchblade0.0.191 of 1See more

switchblade switchblade 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
public.ecr.aws/boundless-software/switchblade:release-v0.0.19-lcm01d8413d5075
stdlib@go1.23.9
1.25.10

Open the chart page →

1,369
stashswuuper-githubVerified publisher0.1.161 of 1See more

stash swuuper-github 0.1.16

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
stashapp/stash:v0.31.1df744af5a0c9
stdlib@go1.24.3
1.25.10

Open the chart page →

2,417
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
stdlib@go1.23.10
1.25.10

Open the chart page →

8,313
synadia-serversynadiaVerified publisher1.1.101 of 2See more

synadia-server synadia 1.1.10

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
stdlib@go1.21.3
1.25.10

Open the chart page →

1,971
agentssynapse0.1.304 of 9See more

agents synapse 0.1.30

4 of the 9 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.42.07d32a4eddec7
stdlib@go1.19.5
1.25.10
ghcr.io/synapsecns/sanguine/agents:6e3887fc2a05aff0d159453cedbfbe5024b910bf81a9ebc899a4
stdlib@go1.20.3
1.25.10
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
stdlib@go1.22.4
1.25.10
ghcr.io/synapsecns/sanguine/scribe:6e3887fc2a05aff0d159453cedbfbe5024b910bf5e0a3dfa9f96
stdlib@go1.20.3
1.25.10

Open the chart page →

7,288
cctpsynapse0.3.01 of 4See more

cctp synapse 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/cctp-relayer:b5a1dd5288f1a18eb05994e130d626fed45a56fc2f1408c94168
stdlib@go1.20.5
1.25.10

Open the chart page →

1,826
explorersynapse0.2.163 of 6See more

explorer synapse 0.2.16

3 of the 6 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
yandex/clickhouse-server:latest1cbf75aabe1e
stdlib@go1.16.7
1.25.10
ghcr.io/synapsecns/sanguine/explorer:latest00131e3d1eaf
stdlib@go1.22.4
1.25.10
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
stdlib@go1.22.4
1.25.10

Open the chart page →

8,616
omnirpcsynapse0.2.921 of 2See more

omnirpc synapse 0.2.92

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
stdlib@go1.22.4
1.25.10

Open the chart page →

1,138
promexportersynapse0.1.11 of 1See more

promexporter synapse 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/promexporter:4a9aad096c2bd1160e56e5472ddac77fa0cde2e9416c1c5aeb86
stdlib@go1.20.6
1.25.10

Open the chart page →

1,722
screenersynapse0.2.51 of 4See more

screener synapse 0.2.5

1 of the 4 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/screener-api:latestb3de2050460a
stdlib@go1.22.4
1.25.10

Open the chart page →

1,108
scribesynapse0.2.162 of 7See more

scribe synapse 0.2.16

2 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
stdlib@go1.22.4
1.25.10
ghcr.io/synapsecns/sanguine/scribe:latest81edba952403
stdlib@go1.22.4
1.25.10

Open the chart page →

2,715
sinnersynapse0.1.01 of 6See more

sinner synapse 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/sinner:latest3e98a98f6074
stdlib@go1.20.14
1.25.10

Open the chart page →

1,972
ccm-hcloudsyself1.0.111 of 1See more

ccm-hcloud syself 1.0.11

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
hetznercloud/hcloud-cloud-controller-manager:v1.13.0ed5ee5f83973
stdlib@go1.19
1.25.10

Open the chart page →

1,713
ccm-hetznersyself2.0.71 of 1See more

ccm-hetzner syself 2.0.7

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/syself/hetzner-cloud-controller-manager:v2.0.77d4a5e29c387
stdlib@go1.24.5
1.25.10

Open the chart page →

717
csi-hcloudsyself1.3.15 of 6See more

csi-hcloud syself 1.3.1

5 of the 6 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.9.05aaefc24f315
stdlib@go1.24.2
1.25.10
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.14.05244abbe87e0
stdlib@go1.24.2
1.25.10
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
stdlib@go1.24.2
1.25.10
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
stdlib@go1.24.2
1.25.10
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
stdlib@go1.24.2
1.25.10

Open the chart page →

2,495

Container images carrying it

4,611 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/leoquote/tencentcloud-exporter:masterca51b6bb15dd
stdlib@go1.21.1
1.25.10
1
ghcr.io/leoquote/tencentcloud-info-exporter:maind523c2c010cd
stdlib@go1.18.3
1.25.10
1
ghcr.io/lexfrei/extractedprism:v0.3.0d10417753727
stdlib@go1.26.0
1.25.10
1
ghcr.io/liangyuanpeng/chirpstack-event-forward:v0.1.223dc6274cc4b
stdlib@go1.17.10
1.25.10
1
ghcr.io/liangyuanpeng/replacer:v1.1.00b2a41c2a43e
stdlib@go1.17.7
1.25.10
1
ghcr.io/liangyuanpeng/waitfor:v1.0.0ca5a98cbed32
stdlib@go1.17.7
1.25.10
1
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
stdlib@go1.23.7
1.25.10
1
ghcr.io/linuxoid69/school-bot:v0.3.3c8872438f1e0
stdlib@go1.23.3
1.25.10
1
ghcr.io/linuxserver/calibre-web:latest0767226fcf20
stdlib@go1.17.8
1.25.10
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
stdlib@go1.17.8
1.25.10
1
ghcr.io/linuxserver/code-server:version-v3.11.1a385ba5cb161
stdlib@go1.16.4
1.25.10
1
ghcr.io/linuxserver/digikam:version-7.3.055b4c7f320ae
stdlib@go1.16.9
1.25.10
1
ghcr.io/linuxserver/doublecommander:version-0.8.2-1d92969a929c2
stdlib@go1.16.9
1.25.10
1
ghcr.io/linuxserver/duplicati:lateste1fdac6133ad
stdlib@go1.24.9
1.25.10
1
ghcr.io/linuxserver/filezilla:version-3.51.0-r15103cdd266ce
stdlib@go1.15.12
1.25.10
1
ghcr.io/linuxserver/mstream:version-v5.2.522c012bcc43c
stdlib@go1.15.5
1.25.10
1
ghcr.io/linuxserver/remmina:version-1.2.0-rcgit.29dfsg-1ubuntu105955792e00f
stdlib@go1.17.11
1.25.10
1
ghcr.io/linuxserver/sqlitebrowser:version-3.12.2-02876202105241947ubuntu18.04.1426e79828c4b
stdlib@go1.16.12
1.25.10
1
ghcr.io/lldap/lldap:2025-05-193de697c3ba57
stdlib@go1.18.2
1.25.10
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
stdlib@go1.24.3
1.25.10
1
ghcr.io/lloesche/valheim-server:latestc885aa902faf
stdlib@go1.24.1
1.25.10
1
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
stdlib@go1.22.5
1.25.10
1
ghcr.io/loafoe/go-hello-world:v2.13.0d3fb171f20e1
stdlib@go1.25.3
1.25.10
1
ghcr.io/loafoe/go-ocpp-server:v0.2.145bb960674ab
stdlib@go1.21.13
1.25.10
1
ghcr.io/loafoe/mt-mcp-grafana:v0.1.12332d9b47475
stdlib@go1.26.2
1.25.10
1
ghcr.io/loafoe/picoclaw:v0.0.1942e1b6862913
stdlib@go1.26.2
1.25.10
1
ghcr.io/loafoe/solgate:v0.0.12b3256cbc7b68
stdlib@go1.21.0
1.25.10
1
ghcr.io/lockdep/stackradar-scanner:0.4.073cbeb990cf4
stdlib@go1.25.7
1.25.10
1
ghcr.io/loft-sh/agent:3.2.45c109914ff73
stdlib@go1.18.10
1.25.10
1
ghcr.io/loft-sh/central-hostpath-mapper:0.2.9fa6dba122171
stdlib@go1.23.2
1.25.10
1
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
stdlib@go1.20.10
1.25.10
1
ghcr.io/loft-sh/kubernetes:v1.35.090097a08b87c
stdlib@go1.24.11
1.25.10
1
ghcr.io/loft-sh/license-server:0.6.069ce001bb4b0
stdlib@go1.24.3
1.25.10
1
ghcr.io/loft-sh/loft:0.0.0-ci.14b69bcdaa8492
stdlib@go1.20.7
1.25.10
1
ghcr.io/loft-sh/vcluster:0.16.484f70425f4dd
stdlib@go1.20.8
1.25.10
1
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
stdlib@go1.22.0
1.25.10
1
ghcr.io/loft-sh/vcluster-hpm:0.2.7f65f6810ea23
stdlib@go1.24.2
1.25.10
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
stdlib@go1.24.2
1.25.10
1
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
stdlib@go1.23.12
1.25.10
1
ghcr.io/loxilb-io/loxilb:latesta475b43946b3
stdlib@go1.22.5
1.25.10
1
ghcr.io/luisico/cert-manager-webhook-infoblox-wapi:1.5ded797477896
stdlib@go1.16.15
1.25.10
1
ghcr.io/lukaszraczylo/jobs-manager-operator:0.1.15e6239e2838d7
stdlib@go1.25.0
1.25.10
1
ghcr.io/lukaszraczylo/kubernetes-images-sync-operator:0.5.57a424948c8143
stdlib@go1.25.5
1.25.10
1
ghcr.io/luzifer/cert-manager-desec-webhook:v1.0.1fa1f6b2e9a6e
stdlib@go1.23.4
1.25.10
1
ghcr.io/luzifer/ots:v1.21.5c94f6c9ed173
stdlib@go1.26.2
1.25.10
1
ghcr.io/luzilla/dnsbl_exporter:v0.7.0-rc3d9767232a55e
stdlib@go1.20.14
1.25.10
1
ghcr.io/luzilla/dnsbl_exporter:v0.12.0ecba7360ff12
stdlib@go1.25.0
1.25.10
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
stdlib@go1.21.5
1.25.10
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
stdlib@go1.20.12
1.25.10
1
ghcr.io/madeddie/opds-aggregator:latest60c56021c552
stdlib@go1.24.13
1.25.10
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.