StackRadar

CVE-2026-39825

Medium

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
33rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,043
of 17,821 indexed, latest versions
Container images
4,634
deployed by those charts
Fix available
1 of 2
affected packages

ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil

Carried by container images the latest versions of 4,043 of 17,821 indexed charts deploy, on 4,634 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.104,634
OSV records
DEBIAN-CVE-2026-39825GO-2026-4976
Also known as
BIT-golang-2026-39825

Charts affected

4,043 by stars
ChartLatestAffected imagesRadar Score
network-exporterenixVerified publisher0.3.01 of 1See more

network-exporter enix 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
syepes/network_exporter:1.8.000af1691570e
stdlib@go1.25.1
1.25.10

Open the chart page →

1,374
zfs-exporterenixVerified publisher2.2.01 of 1See more

zfs-exporter enix 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
quay.io/enix/zfs-exporter:2.3.1223b053f1cbd0
stdlib@go1.24.2
1.25.10

Open the chart page →

979
ai-gateway-helmenvoy-ai-gateway0.0.0-003ab39f36923b5d40609a601e2951b73f6318fb1 of 1See more

ai-gateway-helm envoy-ai-gateway 0.0.0-003ab39f36923b5d40609a601e2951b73f6318fb

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
envoyproxy/ai-gateway-controller:003ab39f36923b5d40609a601e2951b73f6318fbec1f06ee29a7
stdlib@go1.24.6
1.25.10

Open the chart page →

863
eoapi-supporteoapiVerified publisher0.1.76 of 7See more

eoapi-support eoapi 0.1.7

6 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
grafana/grafana:10.3.38640e5038e83
stdlib@go1.21.5
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
stdlib@go1.20.6
1.25.10
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
stdlib@go1.20.6
1.25.10
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
stdlib@go1.21.0
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
stdlib@go1.20.7
1.25.10
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.11.1e6a43c83ab16
stdlib@go1.20.4
1.25.10

Open the chart page →

8,697
backendeoc-chartsVerified publisher0.1.01 of 1See more

backend eoc-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
hashicorp/http-echo:latestfcb75f691c8b
stdlib@go1.21.1
1.25.10

Open the chart page →

550
databaseeoc-chartsVerified publisher0.1.01 of 1See more

database eoc-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/postgres:14-alpine1a916758fce6
stdlib@go1.24.6
1.25.10

Open the chart page →

311
mariadbeoc-chartsVerified publisher0.3.141 of 1See more

mariadb eoc-charts 0.3.14

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mariadb:10.6.15e22328f4d714
stdlib@go1.16.7
1.25.10

Open the chart page →

5,179
umbrella-appeoc-chartsVerified publisher0.1.02 of 3See more

umbrella-app eoc-charts 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
hashicorp/http-echo:latestfcb75f691c8b
stdlib@go1.21.1
1.25.10
library/postgres:14-alpine727876d27466
stdlib@go1.24.6
1.25.10

Open the chart page →

1,078
eolicplantseolicplantsVerified publisher0.1.02 of 7See more

eolicplants eolicplants 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.25.10
oscarsotosanchez/weatherservice:v1.0911ec961d10b
stdlib@go1.15.6
1.25.10

Open the chart page →

27,479
eoloPlanteolo-plannerVerified publisher0.1.03 of 7See more

eoloPlant eolo-planner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
stdlib@go1.18.10
1.25.10
library/mongo:5.0-focal5e15a3f014ed
stdlib@go1.25.9
1.25.10
library/mysql:885b9bf2e29cf
stdlib@go1.24.6
1.25.10

Open the chart page →

27,884
eoloplannereoloplannerVerified publisher0.1.03 of 7See more

eoloplanner eoloplanner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.25.10
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.10
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.10

Open the chart page →

32,557
eoloPlannerCommunicationsKubernetes3eoloplannercommunicationskuberneteshelmVerified publisher0.1.03 of 7See more

eoloPlannerCommunicationsKubernetes3 eoloplannercommunicationskuberneteshelm 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
stdlib@go1.18.10
1.25.10
library/mongo:5.0-focal5e15a3f014ed
stdlib@go1.25.9
1.25.10
library/mysql:885b9bf2e29cf
stdlib@go1.24.6
1.25.10

Open the chart page →

27,884
eoloplanner-mcaeoloplanner-mcaVerified publisher0.1.02 of 7See more

eoloplanner-mca eoloplanner-mca 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.25.10
oscarsotosanchez/weatherservice:v1.0911ec961d10b
stdlib@go1.15.6
1.25.10

Open the chart page →

27,444
eoloplannereoloplanner-molynx-gat0.1.03 of 7See more

eoloplanner eoloplanner-molynx-gat 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.25.10
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.25.10
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.10

Open the chart page →

28,672
eolo-plannereolo-planner-repo0.1.03 of 7See more

eolo-planner eolo-planner-repo 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.25.10
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.10
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.10

Open the chart page →

27,307
eoloplanteoloplant1.0.03 of 7See more

eoloplant eoloplant 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
stdlib@go1.18.10
1.25.10
library/mongo:5.0-focal5e15a3f014ed
stdlib@go1.25.9
1.25.10
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.10

Open the chart page →

27,884
eoloplantseoloplants-urjcVerified publisher0.1.03 of 7See more

eoloplants eoloplants-urjc 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.25.10
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.10
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.10

Open the chart page →

27,947
servereoloserverVerified publisher0.1.03 of 7See more

server eoloserver 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.25.10
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.10
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.10

Open the chart page →

32,557
download-from-github-repoeosc-lot-1Verified publisher0.1.01 of 2See more

download-from-github-repo eosc-lot-1 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/eosc-lot-1/curl-jq:8156beafae7ca
stdlib@go1.21.10
1.25.10

Open the chart page →

993
flywayeosc-lot-1Verified publisher0.7.01 of 3See more

flyway eosc-lot-1 0.7.0

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
alpine/git:v2.49.1c0280cf95723
stdlib@go1.24.8
1.25.10

Open the chart page →

72,882
mariadbeosc-lot-1Verified publisher0.2.01 of 2See more

mariadb eosc-lot-1 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mariadb:10.117f22313fc130
stdlib@go1.24.6
1.25.10

Open the chart page →

2,345
mariadb-backupeosc-lot-1Verified publisher0.5.01 of 2See more

mariadb-backup eosc-lot-1 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mariadb:10.117f22313fc130
stdlib@go1.24.6
1.25.10

Open the chart page →

2,345
mariadb-run-scripteosc-lot-1Verified publisher0.3.01 of 1See more

mariadb-run-script eosc-lot-1 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mariadb:10.117f22313fc130
stdlib@go1.24.6
1.25.10

Open the chart page →

2,345
postgresql-backupeosc-lot-1Verified publisher0.4.21 of 2See more

postgresql-backup eosc-lot-1 0.4.2

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/postgres:15.7-alpine3.20468d34fefd63
stdlib@go1.18.2
1.25.10

Open the chart page →

1,468
rabbitmqeosc-lot-1Verified publisher0.3.01 of 2See more

rabbitmq eosc-lot-1 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/rabbitmq:3.13-managemente582c0bc7766
stdlib@go1.22.2
1.25.10

Open the chart page →

2,550
rabbitmq-usereosc-lot-1Verified publisher0.1.01 of 1See more

rabbitmq-user eosc-lot-1 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/eosc-lot-1/curl-jq:8156beafae7ca
stdlib@go1.21.10
1.25.10

Open the chart page →

970
rsyslogeosc-lot-1Verified publisher0.2.11 of 2See more

rsyslog eosc-lot-1 0.2.1

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/eosc-lot-1/logrotate:3-alpineb0e20d200f89
stdlib@go1.22.4
1.25.10

Open the chart page →

413
thanoseosc-lot-1Verified publisher0.2.01 of 1See more

thanos eosc-lot-1 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
quay.io/thanos/thanos:v0.39.21d022ef4b8ef
stdlib@go1.24.0
1.25.10

Open the chart page →

851
thanos-bucketeosc-lot-1Verified publisher0.1.01 of 1See more

thanos-bucket eosc-lot-1 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
quay.io/thanos/thanos:v0.39.21d022ef4b8ef
stdlib@go1.24.0
1.25.10

Open the chart page →

851
epinio-uiepinioVerified publisher1.7.21 of 1See more

epinio-ui epinio 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/epinio/epinio-ui:v1.7.1-0.0.1d3de52dfb0b4
stdlib@go1.20
1.25.10

Open the chart page →

1,694
upgrade-responderepinioVerified publisher0.2.02 of 5See more

upgrade-responder epinio 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
grafana/grafana:10.1.50679e877ba20
stdlib@go1.20.10
1.25.10
longhornio/upgrade-responder:v0.2.05875cef29348
stdlib@go1.17.13
1.25.10

Open the chart page →

7,410
admin-console-operatorepmdedpVerified publisher2.14.02 of 2See more

admin-console-operator epmdedp 2.14.0

2 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/admin-console-operator:2.14.090f9921d8d58
stdlib@go1.19.6
1.25.10
epamedp/edp-admin-console:2.14.0616c678ba3e7
stdlib@go1.18.3
1.25.10

Open the chart page →

4,311
edp-argocd-operatorepmdedpVerified publisher0.2.01 of 1See more

edp-argocd-operator epmdedp 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/edp-argocd-operator:0.2.0976a662a5e72
stdlib@go1.18.4
1.25.10

Open the chart page →

1,575
edp-headlampepmdedpVerified publisher0.25.01 of 1See more

edp-headlamp epmdedp 0.25.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/edp-headlamp:0.25.093417e18bb1a
stdlib@go1.21.13
1.25.10

Open the chart page →

1,268
edp-installepmdedpOfficialVerified publisher3.15.01 of 7See more

edp-install epmdedp 3.15.0

1 of the 7 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/kuberocketci/krci-cache:0.3.05f6cd61e6da6
stdlib@go1.25.8
1.25.10

Open the chart page →

2,071
edp-tektonepmdedpVerified publisher0.27.01 of 3See more

edp-tekton epmdedp 0.27.0

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/kuberocketci/krci-cache:0.3.05f6cd61e6da6
stdlib@go1.25.8
1.25.10

Open the chart page →

875
edp-tekton-interceptorepmdedpVerified publisher0.2.41 of 1See more

edp-tekton-interceptor epmdedp 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/edp-tekton:0.2.4924939850655
stdlib@go1.18.3
1.25.10

Open the chart page →

1,352
jenkins-operatorepmdedpVerified publisher2.15.31 of 3See more

jenkins-operator epmdedp 2.15.3

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/jenkins-operator:2.15.328ef56bc0ca3
stdlib@go1.20.11
1.25.10

Open the chart page →

2,116
perf-operatorepmdedpVerified publisher2.13.01 of 1See more

perf-operator epmdedp 2.13.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/perf-operator:2.13.0bd2079b7bfcb
stdlib@go1.19.6
1.25.10

Open the chart page →

1,114
reconcilerepmdedpVerified publisher2.12.01 of 1See more

reconciler epmdedp 2.12.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/reconciler:2.12.0d33e938b6d59
stdlib@go1.18.4
1.25.10

Open the chart page →

2,182
tekton-cacheepmdedpVerified publisher0.4.51 of 2See more

tekton-cache epmdedp 0.4.5

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
ghcr.io/kuberocketci/krci-cache:0.3.05f6cd61e6da6
stdlib@go1.25.8
1.25.10

Open the chart page →

765
tekton-custom-taskepmdedpVerified publisher0.2.01 of 1See more

tekton-custom-task epmdedp 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/tekton-custom-task:0.2.067d896676f45
stdlib@go1.24.2
1.25.10

Open the chart page →

556
codebase-operatorepmdedp-devVerified publisher2.12.0-MDTU-DDM-SNAPSHOT.101 of 1See more

codebase-operator epmdedp-dev 2.12.0-MDTU-DDM-SNAPSHOT.10

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/codebase-operator:2.12.0-MDTU-DDM-SNAPSHOT.1096028c86f0dd
stdlib@go1.17.2
1.25.10

Open the chart page →

2,828
gerrit-operatorepmdedp-devVerified publisher2.11.0-MDTU-DDM-SNAPSHOT.21 of 1See more

gerrit-operator epmdedp-dev 2.11.0-MDTU-DDM-SNAPSHOT.2

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/gerrit-operator:2.11.0-MDTU-DDM-SNAPSHOT.2b71fb39e0c9e
stdlib@go1.17.2
1.25.10

Open the chart page →

2,814
jenkins-operatorepmdedp-devVerified publisher2.11.0-MDTU-DDM-SNAPSHOT.11 of 1See more

jenkins-operator epmdedp-dev 2.11.0-MDTU-DDM-SNAPSHOT.1

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/jenkins-operator:2.11.0-MDTU-DDM-SNAPSHOT.1ff25e9fe4419
stdlib@go1.17.2
1.25.10

Open the chart page →

2,268
keycloak-operatorepmdedp-devVerified publisher1.11.0-MDTU-DDM-SNAPSHOT.101 of 1See more

keycloak-operator epmdedp-dev 1.11.0-MDTU-DDM-SNAPSHOT.10

1 of the 1 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
epamedp/keycloak-operator:1.11.0-MDTU-DDM-SNAPSHOT.105d352199e12e
stdlib@go1.17.2
1.25.10

Open the chart page →

2,235
equizequiz0.0.11 of 3See more

equiz equiz 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
yzhou442/equiz:latesta3f7ca69e28d
stdlib@go1.16.7
1.25.10

Open the chart page →

7,545
equizequiz-chart0.0.11 of 3See more

equiz equiz-chart 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
yzhou442/equiz:latesta3f7ca69e28d
stdlib@go1.16.7
1.25.10

Open the chart page →

7,545
escvmschedulerescvmscheduler1.0.71 of 3See more

escvmscheduler escvmscheduler 1.0.7

1 of the 3 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.10

Open the chart page →

4,683
espocrmespocrmVerified publisher1.0.11 of 2See more

espocrm espocrm 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-39825.

Container imageDigestPackageFixed in
library/mariadb:12.2.2b1cb255a9939
stdlib@go1.24.6
1.25.10

Open the chart page →

6,662

Container images carrying it

4,634 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
stdlib@go1.17.8
1.25.10
1
ghcr.io/wjentner/k8s-db-backup-retention:v1.1.08027bb46d1f4
stdlib@go1.23.5
1.25.10
1
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
stdlib@go1.18.1
1.25.10
1
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
stdlib@go1.21.9
1.25.10
1
ghcr.io/wundergraph/cosmo/controlplane:0.133.149800ff775f3
stdlib@go1.22.3
1.25.10
1
ghcr.io/wundergraph/cosmo/graphqlmetrics:0.33.0efb69ec3330c
stdlib@go1.23.6
1.25.10
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
stdlib@go1.23.6
1.25.10
1
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
stdlib@go1.23.12
1.25.10
1
ghcr.io/wundergraph/cosmo/studio:0.111.0454f4384713a
stdlib@go1.20.7
1.25.10
1
ghcr.io/wyrihaximusnet/kubernetes-redis-db-assignment-operator:v1.0.831060be60bec
stdlib@go1.16.15
1.25.10
1
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
stdlib@go1.18.6
1.25.10
1
ghcr.io/yeonghoo2/crashloop-operator:0.0.6565d1115e6bd
stdlib@go1.24.9
1.25.10
1
ghcr.io/zalando/postgres-operator:v1.14.04f40cfc2283b
stdlib@go1.23.4
1.25.10
1
ghcr.io/zalando/postgres-operator:v1.12.2d81cda253f5c
stdlib@go1.22.3
1.25.10
1
ghcr.io/zcube/bitnami-compat/redis:7.0-debian-11-r55118a403046f7
stdlib@go1.19.4
1.25.10
1
ghcr.io/zeiss/natz-operator/account-server:0.9.5b380b5f17c3f
stdlib@go1.23.3
1.25.10
1
ghcr.io/zeiss/natz-operator/operator:0.9.5187007974540
stdlib@go1.23.3
1.25.10
1
ghcr.io/zeiss/typhoon/controller:0.2.34fdf4edfda45
stdlib@go1.24.0
1.25.10
1
ghcr.io/zeiss/typhoon/typhoon-webhook:0.2.378f9b82050bc
stdlib@go1.24.0
1.25.10
1
ghcr.io/zokeber/velero-notifications:0.0.176d84f6c4ce20
stdlib@go1.25.8
1.25.10
1
ghcr.io/zoriya/kyoo_transcoder:4.7.12dadea51a91e
stdlib@go1.23.4
1.25.10
1
ghcr.io/zufardhiyaulhaq/frp-operator:v0.11.0cd25ee354df2
stdlib@go1.23.12
1.25.10
1
mcr.microsoft.com/aks/kaito/gpu-provisioner:0.2.01204a7e948e9
stdlib@go1.21.8
1.25.10
1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
stdlib@go1.17.3
1.25.10
1
mcr.microsoft.com/k8s/csi/azuredisk-csi:v1.1.1ec1803037ed9
stdlib@go1.15.4
1.25.10
1
mcr.microsoft.com/mssql/server:2022-latest4402d880dd4c
stdlib@go1.26.1
1.25.10
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
stdlib@go1.26.1
1.25.10
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
stdlib@go1.23.1
1.25.10
1
mcr.microsoft.com/oss/azure/aad-pod-identity/mic:v1.8.173004b93fcb74
stdlib@go1.19.10
1.25.10
1
mcr.microsoft.com/oss/azure/aad-pod-identity/nmi:v1.8.1777788bf38938
stdlib@go1.19.10
1.25.10
1
mcr.microsoft.com/oss/kubernetes-csi/csi-attacher:v2.2.0f55f30876129
stdlib@go1.14
1.25.10
1
mcr.microsoft.com/oss/kubernetes-csi/csi-node-driver-registrar:v2.0.1fc5d14e9f26f
stdlib@go1.15
1.25.10
1
mcr.microsoft.com/oss/kubernetes-csi/csi-provisioner:v1.6.1667b1b1ea1e4
stdlib@go1.15.2
1.25.10
1
mcr.microsoft.com/oss/kubernetes-csi/csi-resizer:v1.1.07997e0f236bc
stdlib@go1.15.2
1.25.10
1
mcr.microsoft.com/oss/kubernetes-csi/livenessprobe:v2.2.0b7d82802cca8
stdlib@go1.15.6
1.25.10
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v5.2.0afdfa3da79df
stdlib@go1.25.5
1.25.10
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v1.13.2fa8eba9843ff
stdlib@go1.25.7
1.25.10
1
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
stdlib@go1.25.7
1.25.10
1
public.ecr.aws/aktosecurity/akto-agent-guard-service:latest5c6ff17c5849
stdlib@go1.25.5
1.25.10
1
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
stdlib@go1.24.6
1.25.10
1
public.ecr.aws/aktosecurity/keelhq-keel:akto_v1.0.01eb61443d68e
stdlib@go1.23.4
1.25.10
1
public.ecr.aws/aktosecurity/mirror-api-logging:k8s_ebpf_core_impd94ce715f051
stdlib@go1.25.9
1.25.10
1
public.ecr.aws/aws-containers/retail-store-sample-catalog:1.3.0b654b266fa32
stdlib@go1.24.6
1.25.10
1
public.ecr.aws/aws-ec2/amazon-ec2-metadata-mock:v1.11.2dd02d3569da0
stdlib@go1.17.13
1.25.10
1
public.ecr.aws/aws-ec2/aws-node-termination-handler:v1.19.0844478ebd5b8
stdlib@go1.19.5
1.25.10
1
public.ecr.aws/aws-ec2/aws-node-termination-handler:v1.25.69ad31fb4e5be
stdlib@go1.25.8
1.25.10
1
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/controller:v2.0.0-beta9637c80dd23f
stdlib@go1.19.3
1.25.10
1
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/webhook:v2.0.0-beta86b0f7243250
stdlib@go1.19.3
1.25.10
1
public.ecr.aws/aws-observability/aws-for-fluent-bit:3.2.1a480a1241720
stdlib@go1.25.6
1.25.10
1
public.ecr.aws/aws-observability/aws-otel-collector:v0.43.38aa9ea5f67b8
stdlib@go1.24.3
1.25.10
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.