StackRadar

CVE-2026-39826

Medium

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.004
31st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,903
of 17,787 indexed, latest versions
Container images
4,475
deployed by those charts
Fix available
1 of 2
affected packages

Escaper bypass leads to XSS in html/template

Carried by container images the latest versions of 3,903 of 17,787 indexed charts deploy, on 4,475 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,475
OSV records
DEBIAN-CVE-2026-39826GO-2026-4980
Also known as
BIT-golang-2026-39826

Charts affected

3,903 by stars
ChartLatestAffected imagesRadar Score
yet-another-cloudwatch-exporteryet-another-cloudwatch-exporter0.38.01 of 1See more

yet-another-cloudwatch-exporter yet-another-cloudwatch-exporter 0.38.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/nerdswords/yet-another-cloudwatch-exporter:v0.61.2f04925fe1fa6
stdlib@go1.22.4
1.25.10

Open the chart page →

923
nocodbzekker6Verified publisher1.10.01 of 1See more

nocodb zekker6 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
nocodb/nocodb:0.301.5d9516f0bf546
stdlib@go1.23.12
1.25.10

Open the chart page →

4,016
paperlesszekker6Verified publisher11.8.01 of 1See more

paperless zekker6 11.8.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
stdlib@go1.24.4
1.25.10

Open the chart page →

4,626
adcs-issueradcs-issuer3.0.21 of 1See more

adcs-issuer adcs-issuer 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
djkormo/adcs-issuer:2.1.29f34e87e7586
stdlib@go1.22.6
1.25.10

Open the chart page →

828
kubernetes-etcd-backupadfinisVerified publisher1.6.21 of 1See more

kubernetes-etcd-backup adfinis 1.6.2

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
stdlib@go1.23.7
1.25.10

Open the chart page →

1,819
paperless-ngxadnoctemVerified publisher0.4.21 of 5See more

paperless-ngx adnoctem 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
stdlib@go1.24.4
1.25.10

Open the chart page →

19,691
agentareaagentareaVerified publisher0.0.187 of 16See more

agentarea agentarea 0.0.18

7 of the 16 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
agentarea/agentarea-mcp-manager:latestefe23cef3727
stdlib@go1.22.5
1.25.10
agentarea/agentarea-mcp-runner:latestd3c209a5d531
stdlib@go1.19.8
1.25.10
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.10
library/postgres:alpined3e1620b530c
stdlib@go1.24.6
1.25.10
oryd/kratos:v1.3.1fe2428f103a6
stdlib@go1.23.2
1.25.10
temporalio/auto-setup:1.29.15b3502a3b685
stdlib@go1.25.0
1.25.10
temporalio/ui:2.39.0b768f87f18b5
stdlib@go1.23.4
1.25.10

Open the chart page →

14,914
alertmanager-discordalertmanagerdiscordVerified publisher0.3.21 of 1See more

alertmanager-discord alertmanagerdiscord 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
speckle/alertmanager-discord:latestf6221ff308e9
stdlib@go1.22.4
1.25.10

Open the chart page →

419
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.01 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
stdlib@go1.24.4
1.25.10

Open the chart page →

12,037
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
stdlib@go1.18.1
1.25.10

Open the chart page →

12,046
clearml-servingallegroaiVerified publisher1.6.26 of 9See more

clearml-serving allegroai 1.6.2

6 of the 9 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:3.4.0-debian-11-r6ac64829e45b3
stdlib@go1.19.6
1.25.10
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
stdlib@go1.18.2
1.25.10
grafana/grafana:9.4.376dcf36e7d2a
stdlib@go1.19.4
1.25.10
jimmidyson/configmap-reload:v0.8.05af9d3041d12
stdlib@go1.19.2
1.25.10
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.25.10
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
stdlib@go1.19.4
1.25.10

Open the chart page →

17,877
pact-brokeralmorgvVerified publisher0.1.01 of 1See more

pact-broker almorgv 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.79.1.112861b0bd4d9
stdlib@go1.14.4
1.25.10

Open the chart page →

4,995
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
stdlib@go1.16.7
1.25.10

Open the chart page →

8,341
soft-servealphani-helm-chartsVerified publisher0.4.01 of 1See more

soft-serve alphani-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
charmcli/soft-serve:v0.4.039523c1a6ba8
stdlib@go1.18.5
1.25.10

Open the chart page →

3,119
smockerandrcunsVerified publisher0.0.41 of 1See more

smocker andrcuns 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
andrcuns/smocker:0.18.5b4a8eb20581a
stdlib@go1.18.10
1.25.10

Open the chart page →

2,173
cloudflare-operatorankra-chartsVerified publisher0.2.01 of 1See more

cloudflare-operator ankra-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
adyanth/cloudflare-operatordigest-pinned6b168dc237d5
stdlib@go1.24.4
1.25.10

Open the chart page →

493
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
stdlib@go1.24.4
1.25.10

Open the chart page →

5,880
upcloud-csiankra-chartsVerified publisher0.4.08 of 8See more

upcloud-csi ankra-charts 0.4.0

8 of the 8 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
alpine/k8s:1.31.137a319b15cfc9
stdlib@go1.23.12
1.25.10
ghcr.io/upcloudltd/upcloud-csidigest-pinned5af91c663788
stdlib@go1.24.13
1.25.10
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
stdlib@go1.17.3
1.25.10
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
stdlib@go1.17.3
1.25.10
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
stdlib@go1.17.3
1.25.10
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
stdlib@go1.17.3
1.25.10
registry.k8s.io/sig-storage/csi-snapshotter:v4.2.1818f35653f2e
stdlib@go1.16.2
1.25.10
registry.k8s.io/sig-storage/snapshot-controller:v4.2.195587f8777d7
stdlib@go1.16.2
1.25.10

Open the chart page →

14,917
annotations-exporterannotations-exporter0.5.01 of 1See more

annotations-exporter annotations-exporter 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/alex123012/annotations-exporter:v0.5.04c2b8dbc798e
stdlib@go1.19.3
1.25.10

Open the chart page →

1,149
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
stdlib@go1.22.5
1.25.10

Open the chart page →

3,366
anteonanteonVerified publisher2.6.45 of 13See more

anteon anteon 2.6.4

5 of the 13 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
chrislusf/seaweedfs:3.64634b094b2183
stdlib@go1.22.1
1.25.10
ddosify/selfhosted_hammer:2.0.0181965edb12e
stdlib@go1.18.1
1.25.10
library/influxdb:2.6.1-alpine44a366dd7724
stdlib@go1.19.4
1.25.10
library/redis:7.2.4-alpinec8bb255c3559
stdlib@go1.18.2
1.25.10
prom/prometheus:v2.37.98176adea328e
stdlib@go1.19.11
1.25.10

Open the chart page →

22,202
antreaantreaVerified publisher2.7.01 of 2See more

antrea antrea 2.7.0

1 of the 2 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
stdlib@go1.25.7
1.25.10

Open the chart page →

3,231
api-usage-serverapi-usage-server1.16.01 of 1See more

api-usage-server api-usage-server 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/api-usage-server:1.16.08f9c32b866b0
stdlib@go1.23.12
1.25.10

Open the chart page →

733
gateway-helmappscodeVerified publisher0.0.0-latest1 of 2See more

gateway-helm appscode 0.0.0-latest

1 of the 2 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/gateway:v0.0.1a8a144f14889
stdlib@go1.20.5
1.25.10

Open the chart page →

1,057
scannerappscodeVerified publisher2026.1.153 of 3See more

scanner appscode 2026.1.15

3 of the 3 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
rancher/kine:v0.11.412889bbcd1e8
stdlib@go1.21.5
1.25.10
ghcr.io/appscode/scanner:v0.0.2116907aae5de1
stdlib@go1.25.5
1.25.10
ghcr.io/appscode/trivydb:0.0.367ffb0309acb
stdlib@go1.20.2
1.25.10

Open the chart page →

5,299
smtprelayappscodeVerified publisher2026.9.111 of 1See more

smtprelay appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/appscode/smtprelay:v0.0.479c9c76a78e6
stdlib@go1.23.2
1.25.10

Open the chart page →

840
stash-enterpriseappscodeVerified publisher0.42.04 of 4See more

stash-enterprise appscode 0.42.0

4 of the 4 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.25.10
ghcr.io/appscode/kubectl-nonroot:1.3183d43cc41590
stdlib@go1.24.9
1.25.10
ghcr.io/stashed/stash-crd-installer:v0.42.1d6c9b7a1f7b8
stdlib@go1.25.5
1.25.10
ghcr.io/stashed/stash-enterprise:v0.42.1759f3850eda9
stdlib@go1.25.5
1.25.10

Open the chart page →

3,620
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
stdlib@go1.24.6
1.25.10

Open the chart page →

5,222
argocd-rbac-operatorargocd-rbac-operator0.4.51 of 1See more

argocd-rbac-operator argocd-rbac-operator 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/argocd-rbac-operator:v0.2.451dded00137a
stdlib@go1.24.9
1.25.10

Open the chart page →

954
kedaarieotechVerified publisher0.1.02 of 3See more

keda arieotech 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/kedacore/keda:2.16.002348a19aeae
stdlib@go1.23.3
1.25.10
ghcr.io/kedacore/keda-metrics-apiserver:2.16.073a2ebae4413
stdlib@go1.23.3
1.25.10

Open the chart page →

2,276
s3dartur9010Verified publisher1.0.11 of 1See more

s3d artur9010 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
stdlib@go1.26.2
1.25.10

Open the chart page →

1,710
arvancloud-webhookarvancloud-webhookVerified publisher1.0.01 of 1See more

arvancloud-webhook arvancloud-webhook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
stdlib@go1.25.4
1.25.10

Open the chart page →

2,297
cert-exporterarzu3.0.11 of 1See more

cert-exporter arzu 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
joeelliott/cert-exporter:v2.7.0b4acd14642d0
stdlib@go1.14.15
1.25.10

Open the chart page →

2,819
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
stdlib@go1.18.2
1.25.10

Open the chart page →

17,896
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
stdlib@go1.14.12
1.25.10

Open the chart page →

10,730
dltbrokerassist-iot-distributed-broker0.2.04 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

4 of the 9 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
assistiot/distributed_broker:1.0.033e02dad168f
stdlib@go1.17.13
1.25.10
hyperledger/fabric-orderer:2.46ec3fe59ea55
stdlib@go1.18.10
1.25.10
hyperledger/fabric-peer:2.46ff36af21eb1
stdlib@go1.18.10
1.25.10
hyperledger/fabric-tools:2.4b1194f509085
stdlib@go1.18.10
1.25.10

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.04 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

4 of the 9 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
assistiot/logging_auditing:1.0.0790dbb198e86
stdlib@go1.17.13
1.25.10
hyperledger/fabric-orderer:2.46ec3fe59ea55
stdlib@go1.18.10
1.25.10
hyperledger/fabric-peer:2.46ff36af21eb1
stdlib@go1.18.10
1.25.10
hyperledger/fabric-tools:2.4b1194f509085
stdlib@go1.18.10
1.25.10

Open the chart page →

77,687
astradnsastradnsVerified publisher0.2.92 of 2See more

astradns astradns 0.2.9

2 of the 2 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
stdlib@go1.26.1
1.25.10
ghcr.io/astradns/astradns-operator:v0.2.909e58b62416a
stdlib@go1.26.1
1.25.10

Open the chart page →

2,613
deployautoml0.1.02 of 3See more

deploy automl 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
amd64/mysql:5.7e20a653e0f51
stdlib@go1.18.2
1.25.10
muonsoft/openapi-mock:latestc9afe1295484
stdlib@go1.20.2
1.25.10

Open the chart page →

2,947
cso-proxyav1o-chartsVerified publisher0.1.31 of 1See more

cso-proxy av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
stdlib@go1.17.5
1.25.10

Open the chart page →

4,292
dex-k8sav1o-chartsVerified publisher0.2.11 of 1See more

dex-k8s av1o-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
stdlib@go1.16.2
1.25.10

Open the chart page →

3,391
kube-image-webhookav1o-chartsVerified publisher0.1.31 of 1See more

kube-image-webhook av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
stdlib@go1.18.1
1.25.10

Open the chart page →

3,723
prismav1o-chartsVerified publisher0.3.11 of 1See more

prism av1o-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
registry.gitlab.com/av1o/go-prism:4fdcff7d3870c28e5f024b6947cb552d4b956ee27a6f84b81c4e
stdlib@go1.16.2
1.25.10

Open the chart page →

1,276
kubebrowseravistoOfficialVerified publisher1.4.01 of 1See more

kubebrowser avisto 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/kubebrowser:0.10.0a354b8dc7e6a
stdlib@go1.24.1
1.25.10

Open the chart page →

677
generic-appb3oVerified publisher0.1.61 of 1See more

generic-app b3o 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
containous/whoami:latest7d6a3c8f9147
stdlib@go1.14
1.25.10

Open the chart page →

1,279
db-backupballe-petersen0.1.41 of 1See more

db-backup balle-petersen 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
tobiasbp/db-backup:0.0.314bee6e33a26
stdlib@go1.13.10
1.25.10

Open the chart page →

4,814
music-assistantbdclark-helm-chartsVerified publisher0.4.131 of 1See more

music-assistant bdclark-helm-charts 0.4.13

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.10.3885872224fa5
stdlib@go1.25.5
1.25.10

Open the chart page →

3,657
chirpstackbeeinventor0.1.103 of 5See more

chirpstack beeinventor 0.1.10

3 of the 5 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
chirpstack/chirpstack-application-server:3.17.6e0b23dfd24d6
stdlib@go1.17.8
1.25.10
chirpstack/chirpstack-gateway-bridge:3.13.2ce3f2cdca8a9
stdlib@go1.17.5
1.25.10
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
stdlib@go1.17.8
1.25.10

Open the chart page →

7,807
livekit-serverbeeinventor1.0.01 of 2See more

livekit-server beeinventor 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
livekit/livekit-server:v1.0.08391fd1b834f
stdlib@go1.17.10
1.25.10

Open the chart page →

2,602
cloudflare-tunnel-operatorbeezlabs0.2.01 of 1See more

cloudflare-tunnel-operator beezlabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39826.

Container imageDigestPackageFixed in
ghcr.io/beezlabs-org/cloudflare-tunnel-operator:v0.1.09afcd070940f
stdlib@go1.17.12
1.25.10

Open the chart page →

1,595

Container images carrying it

4,475 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/postgres:16.109f23e02d766
stdlib@go1.18.2
1.25.10
2
library/postgres:18.11090bc3a8ccf
stdlib@go1.24.6
1.25.10
2
library/postgres:16.24aea012537ed
stdlib@go1.18.2
1.25.10
2
library/postgres:18.06f3e42ad37de
stdlib@go1.24.6
1.25.10
2
library/postgres:9.6caddd35b05cd
stdlib@go1.16.7
1.25.10
2
library/postgres:16.4e62fbf9d3e2b
stdlib@go1.18.2
1.25.10
2
library/postgres:13-alpinefb9065b6e3e2
stdlib@go1.24.6
1.25.10
2
library/rabbitmq:4.1.0-management935b3f84c1e4
stdlib@go1.22.2
1.25.10
2
library/redis148bb5411c18
stdlib@go1.18.2
1.25.10
2
library/redis:7.2.3a7cee7c8178f
stdlib@go1.18.2
1.25.10
2
library/redmine:6.1.3-trixief474a901faec
stdlib@go1.24.6
1.25.10
2
library/traefik:v2.57d5a6ae66572
stdlib@go1.17.6
1.25.10
2
library/zookeeper:3.9.5f258365d4882
stdlib@go1.18.1
1.25.10
2
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.25.10
2
listmonk/listmonk:v2.1.0d2eac77ddfad
stdlib@go1.17.6
1.25.10
2
listmonk/listmonk:latest:v6.2.0f535d59e1499
stdlib@go1.26.1
1.25.10
2
louislam/uptime-kuma:2.5.4917318f9d7be
stdlib@go1.20.5
1.25.10
2
louislam/uptime-kuma:2.3.29aeb4e51d038
stdlib@go1.20.5
1.25.10
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
stdlib@go1.20.5
1.25.10
2
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
stdlib@go1.24.5
1.25.10
2
maxrocketinternet/soti-mobicontrol-exporter:0.61a281b76efa3
stdlib@go1.14
1.25.10
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
stdlib@go1.15.2
1.25.10
2
mesosphere/kubectl:v1.35.0-alpineea01a9387771
stdlib@go1.25.5
1.25.10
2
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
stdlib@go1.15.5
1.25.10
2
minio/operator:v4.3.754393e03f3b2
stdlib@go1.17.4
1.25.10
2
moby/buildkit:v0.32.2-rootless504731e577c2
stdlib@go1.25.7
1.25.10
2
natsio/nats-account-server:1.0.0a3381560aab6
stdlib@go1.16.6
1.25.10
2
natsio/nats-box:0.11.09fbf7bf684e4
stdlib@go1.18.1
1.25.10
2
natsio/nats-server-config-reloader:0.21.110ff229eaf52
stdlib@go1.25.5
1.25.10
2
natsio/nats-server-config-reloader:0.7.2911ce7ed2f55
stdlib@go1.19
1.25.10
2
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
stdlib@go1.19.4
1.25.10
2
natsio/prometheus-nats-exporter:0.10.016048afb67a5
stdlib@go1.19
1.25.10
2
natsio/prometheus-nats-exporter:0.17.326c826662ac8
stdlib@go1.24.2
1.25.10
2
natsio/prometheus-nats-exporter:0.11.031c02aac089a
stdlib@go1.20.3
1.25.10
2
netapp/trident-protect-utils:v2.0.0cd0c18d8f9ec
stdlib@go1.24.12
1.25.10
2
obolnetwork/charon:v1.10.0278c7e2897b6
stdlib@go1.26.1
1.25.10
2
oliver006/redis_exporter:v1.9.04af75e9f16f6
stdlib@go1.14.4
1.25.10
2
opencloudeu/opencloud-rolling:2.1.0f9634bb04905
stdlib@go1.24.2
1.25.10
2
opencsghq/postgres:15.19b98600564e07
stdlib@go1.24.6
1.25.10
2
opendatacube/ows:latest668cbb41473c
stdlib@go1.22.2
1.25.10
2
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
stdlib@go1.24.5
1.25.10
2
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
stdlib@go1.19.3
1.25.10
2
openebs/node-disk-operator:2.1.06afe2123c457
stdlib@go1.19.3
1.25.10
2
openebs/provisioner-localpv:4.6.099f5116f5cb8
stdlib@go1.25.0
1.25.10
2
openebs/provisioner-localpv:3.5.0aea39e49bb97
stdlib@go1.19.13
1.25.10
2
openkruise/kruise-helm-hook:v0.1.0edc7cf9428fd
stdlib@go1.20.14
1.25.10
2
openpolicyagent/gatekeeper:v3.4.0-rc.1825370bdb3c3
stdlib@go1.16.2
1.25.10
2
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.25.10
2
oryd/kratos:v1.3.1fe2428f103a6
stdlib@go1.23.2
1.25.10
2
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.25.10
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.