StackRadar

CVE-2026-39832

Critical

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.006
47th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,440
of 17,787 indexed, latest versions
Container images
2,788
deployed by those charts
Fix available
1 of 1
affected package

golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys

Carried by container images the latest versions of 2,440 of 17,787 indexed charts deploy, on 2,788 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+153 more0.52.02,788
OSV records
GHSA-f5wc-c3c7-36mc
Also known as
GO-2026-5006

Charts affected

2,440 by stars
ChartLatestAffected imagesRadar Score
ctrox-csi-s3cloudve0.1.01 of 4See more

ctrox-csi-s3 cloudve 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.52.0

Open the chart page →

3,136
galaxycloudve6.8.61 of 3See more

galaxy cloudve 6.8.6

1 of the 3 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
tusproject/tusd:v1.13.0f8088058b80f
golang.org/x/crypto@v0.12.0
0.52.0

Open the chart page →

5,552
galaxy-depscloudve1.1.13 of 7See more

galaxy-deps cloudve 1.1.1

3 of the 7 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq-cluster-operator:1.14.0-scratch-r567ac64a9623a
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.52.0
bitnamilegacy/rmq-messaging-topology-operator:1.7.1-scratch-r33c26208691a1
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.52.0
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
golang.org/x/crypto@v0.31.0
0.52.0

Open the chart page →

10,543
galaxykubemancloudve2.10.12 of 7See more

galaxykubeman cloudve 2.10.1

2 of the 7 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.52.0
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
golang.org/x/crypto@v0.0.0-20190923035154-9ee001bba392
0.52.0

Open the chart page →

16,117
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.52.0

Open the chart page →

14,285
proxyinjectorcloudve0.0.231 of 1See more

proxyinjector cloudve 0.0.23

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.52.0

Open the chart page →

2,853
pulsarcloudve0.2.01 of 2See more

pulsar cloudve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
golang.org/x/crypto@v0.33.0
0.52.0

Open the chart page →

5,994
argo-cdcluster-deploy0.3.22 of 3See more

argo-cd cluster-deploy 0.3.2

2 of the 3 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
golang.org/x/crypto@v0.36.0
0.52.0
quay.io/argoprojlabs/argocd-image-updater:v1.2.13c56f354fac5
golang.org/x/crypto@v0.49.0
0.52.0

Open the chart page →

3,733
argo-eventscluster-deploy0.1.01 of 1See more

argo-events cluster-deploy 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
golang.org/x/crypto@v0.47.0
0.52.0

Open the chart page →

1,036
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
golang.org/x/crypto@v0.5.0
0.52.0

Open the chart page →

7,521
mla-external-secretscluster-deploy0.3.01 of 1See more

mla-external-secrets cluster-deploy 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v2.1.0ec40c3d9c48f
golang.org/x/crypto@v0.47.0
0.52.0

Open the chart page →

716
monitoringcluster-deploy0.3.09 of 11See more

monitoring cluster-deploy 0.3.0

9 of the 11 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
grafana/grafana:12.4.1e932bd6ed0e0
golang.org/x/crypto@v0.47.0
0.52.0
grafana/loki:3.6.73c8fd3570dd9
golang.org/x/crypto@v0.45.0
0.52.0
grafana/loki-canary:3.6.70dac7d5cb383
golang.org/x/crypto@v0.45.0
0.52.0
prom/memcached-exporter:v0.15.592a6ad5a3d3e
golang.org/x/crypto@v0.45.0
0.52.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.89.0cb4ac6a56555
golang.org/x/crypto@v0.47.0
0.52.0
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
golang.org/x/crypto@v0.42.0
0.52.0
quay.io/prometheus/prometheus:v3.10.07571a304e67f
golang.org/x/crypto@v0.47.0
0.52.0
quay.io/prometheus/pushgateway:v1.11.249ed9fdf3780
golang.org/x/crypto@v0.43.0
0.52.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
golang.org/x/crypto@v0.46.0
0.52.0

Open the chart page →

8,185
clusterfactoryclusterfactory0.2.02 of 5See more

clusterfactory clusterfactory 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
gitea/act_runner:0.3.1c2a169c5e998
golang.org/x/crypto@v0.48.0
0.52.0
jenkins/jenkins:2.541.3-jdk21c4098086090c
golang.org/x/crypto@v0.36.0
0.52.0

Open the chart page →

7,136
gitea-jenkinsclusterfactory0.1.12 of 5See more

gitea-jenkins clusterfactory 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
gitea/act_runner:latestb5c35d6bdbb9
golang.org/x/crypto@v0.48.0
0.52.0
jenkins/jenkins:2.541.3-jdk21c4098086090c
golang.org/x/crypto@v0.36.0
0.52.0

Open the chart page →

6,926
cluster-monitor-servercluster-monitor-server0.10.21 of 1See more

cluster-monitor-server cluster-monitor-server 0.10.2

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/cluster-monitor-server:0.10.22d28f9e3eab4
golang.org/x/crypto@v0.36.0
0.52.0

Open the chart page →

746
clusternet-controller-managerclusternet1.0.01 of 1See more

clusternet-controller-manager clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-controller-manager:v1.0.02ce077d3d02d
golang.org/x/crypto@v0.40.0
0.52.0

Open the chart page →

1,394
kovecmacraeVerified publisher0.2.01 of 1See more

kove cmacrae 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.2.0185bfaae750c
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.52.0

Open the chart page →

2,089
kove-deprecationscmacraeVerified publisher0.1.21 of 1See more

kove-deprecations cmacrae 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.1.0db1244edefc8
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.52.0

Open the chart page →

2,203
door-agentcnoVerified publisher3.0.157 of 15See more

door-agent cno 3.0.15

7 of the 15 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
beopenit/door-agent:v3.0.5d24c323fe7c3
golang.org/x/crypto@v0.36.0
0.52.0
beopenit/door-helm:v3.0.1b4d9f9bee224
golang.org/x/crypto@v0.13.0
0.52.0
beopenit/onboarding-operator-kubernetes:v3.0.275a48144e682
golang.org/x/crypto@v0.0.0-20220314234659-1baeb1ce4c0b
0.52.0
doorcloud/apim-operator:v3.0.44e6ef8d72c3e
golang.org/x/crypto@v0.26.0
0.52.0
library/docker:27-cli851f91d24121
golang.org/x/crypto@v0.31.0
0.52.0
library/docker:27-dindaa3df78ecf32
golang.org/x/crypto@v0.27.0
0.52.0
quay.io/brancz/kube-rbac-proxy:v0.13.1738c854322f5
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.52.0

Open the chart page →

19,380
coder-logstream-kubecoder-logstream-kube0.0.151 of 1See more

coder-logstream-kube coder-logstream-kube 0.0.15

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
ghcr.io/coder/coder-logstream-kube:v0.0.1510ae596d296e
golang.org/x/crypto@v0.48.0
0.52.0

Open the chart page →

885
traefik-forward-authcolearendt0.0.151 of 1See more

traefik-forward-auth colearendt 0.0.15

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:269a2c985d2c5
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.52.0

Open the chart page →

2,234
loki-stackcommon-chartsVerified publisher1.0.33 of 12See more

loki-stack common-charts 1.0.3

3 of the 12 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
grafana/loki:3.6.1144148ad243c0
golang.org/x/crypto@v0.49.0
0.52.0
prom/memcached-exporter:v0.15.4b6763ecb3c47
golang.org/x/crypto@v0.42.0
0.52.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.91.07d9e4eea5f11
golang.org/x/crypto@v0.50.0
0.52.0

Open the chart page →

5,370
cgrccommongroundregistratiecomponent0.1.01 of 3See more

cgrc commongroundregistratiecomponent 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
conduction/cgrc-php:dev25415534d245
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.52.0

Open the chart page →

7,572
community-operator-v2community-operator-v21.0.01 of 2See more

community-operator-v2 community-operator-v2 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
zufardhiyaulhaq/community-operator-v2:v1.0.07f1bbbe114eb
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.52.0

Open the chart page →

1,544
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
conduction/conduction-ui-php:dev2744565516e8
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.52.0

Open the chart page →

12,906
consentbbconsentbbVerified publisher2023.12.41 of 5See more

consentbb consentbb 2023.12.4

1 of the 5 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
igrantio/bb-consent-api:2023.12.22d2ea6546ffe
golang.org/x/crypto@v0.14.0
0.52.0

Open the chart page →

3,181
betaalservicecontacten-catalog1.0.01 of 3See more

betaalservice contacten-catalog 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
conduction/betaalservice-php:latestece1ab544c57
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.52.0

Open the chart page →

7,209
contactmoment-componentcontactmoment-component0.1.01 of 4See more

contactmoment-component contactmoment-component 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
conduction/contactmoment-component-php:deve1d4ad1e22a8
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.52.0

Open the chart page →

8,408
containers-security-chartscontainers-security0.1.01 of 7See more

containers-security-charts containers-security 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
falcosecurity/falcosidekick:2.27.0828ee36cb13a
golang.org/x/crypto@v0.0.0-20220829220503-c86fa9a7ed90
0.52.0

Open the chart page →

9,146
coordimap-agentcoordimap-agentVerified publisher0.4.31 of 1See more

coordimap-agent coordimap-agent 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
coordimap/coordimap-agent:latest7748fd0fae9f
golang.org/x/crypto@v0.36.0
0.52.0

Open the chart page →

618
cortezacorteza1.1.01 of 3See more

corteza corteza 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.4cb9f200de5d2
golang.org/x/crypto@v0.31.0
0.52.0

Open the chart page →

8,251
corteza-all-in-onecorteza0.1.01 of 2See more

corteza-all-in-one corteza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.08eb7a26605c9
golang.org/x/crypto@v0.19.0
0.52.0

Open the chart page →

4,682
ociscosmicrocks0.7.01 of 2See more

ocis cosmicrocks 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
owncloud/ocis:7.1.388e7c854517d
golang.org/x/crypto@v0.32.0
0.52.0

Open the chart page →

1,925
cosmo-traefikcosmoVerified publisher0.9.11 of 2See more

cosmo-traefik cosmo 0.9.1

1 of the 2 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
library/traefik:v2.10.11489caffaedb
golang.org/x/crypto@v0.5.0
0.52.0

Open the chart page →

3,672
cospacecospace0.0.341 of 3See more

cospace cospace 0.0.34

1 of the 3 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
ghcr.io/twigex/cospace:lateste5ecfd607e42
golang.org/x/crypto@v0.48.0
0.52.0

Open the chart page →

2,202
katibcowboysysopVerified publisher2.4.22 of 4See more

katib cowboysysop 2.4.2

2 of the 4 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
kubeflowkatib/katib-controller:v0.12.012a28c8a0b41
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.52.0
kubeflowkatib/katib-ui:v0.12.0129f0aaba976
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.52.0

Open the chart page →

6,542
kfservingcowboysysopVerified publisher1.3.11 of 3See more

kfserving cowboysysop 1.3.1

1 of the 3 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
kfserving/kfserving-controller:v0.6.163d79d04c2e3
golang.org/x/crypto@v0.0.0-20200728195943-123391ffb6de
0.52.0

Open the chart page →

3,830
kubernetes-mcpcowboysysopVerified publisher2.0.01 of 1See more

kubernetes-mcp cowboysysop 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
quay.io/manusa/kubernetes_mcp_server:v0.0.47150f76e844d9
golang.org/x/crypto@v0.40.0
0.52.0

Open the chart page →

1,814
mongodbcowboysysopVerified publisher15.1.51 of 1See more

mongodb cowboysysop 15.1.5

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
golang.org/x/crypto@v0.14.0
0.52.0

Open the chart page →

6,183
mpi-operatorcowboysysopVerified publisher1.2.21 of 1See more

mpi-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
mpioperator/mpi-operator:0.3.03ccfa8d8b7bf
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.52.0

Open the chart page →

2,577
notebook-controllercowboysysopVerified publisher1.1.21 of 1See more

notebook-controller cowboysysop 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/notebooks/notebook-controller:v1.4cac3ed9a9826
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.52.0

Open the chart page →

2,582
training-operatorcowboysysopVerified publisher1.2.21 of 1See more

training-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/training/training-operator:760ac1171dd30039a7363ffa03c77454bd714da5ae59d222fd87
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.52.0

Open the chart page →

2,275
crossplane-controllerscrossplane0.12.01 of 1See more

crossplane-controllers crossplane 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
crossplane/crossplane:v0.12.066666e6963af
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.52.0

Open the chart page →

2,312
oam-kubernetes-runtimecrossplane0.0.3-71.g0f235901 of 2See more

oam-kubernetes-runtime crossplane 0.0.3-71.g0f23590

1 of the 2 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
crossplane/oam-kubernetes-runtime:v0.0.3-71.g0f235900112171c45e3
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.52.0

Open the chart page →

2,248
oam-kubernetes-runtime-legacycrossplane0.3.1-5.g11e18941 of 1See more

oam-kubernetes-runtime-legacy crossplane 0.3.1-5.g11e1894

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
crossplane/oam-kubernetes-runtime:v0.3.1-5.g11e189407b8b410dc76
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.52.0

Open the chart page →

2,231
external-service-operatorcrowdfox0.1.01 of 1See more

external-service-operator crowdfox 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
crowdfox/external-service-operator:v1.1.06fa7e8063d27
golang.org/x/crypto@v0.0.0-20190605123033-f99c8df09eb5
0.52.0

Open the chart page →

4,625
electric-mailcryptexlabsVerified publisher0.0.11 of 5See more

electric-mail cryptexlabs 0.0.1

1 of the 5 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.52.0

Open the chart page →

5,973
purple-piecryptexlabsVerified publisher0.0.11 of 4See more

purple-pie cryptexlabs 0.0.1

1 of the 4 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.52.0

Open the chart page →

5,973
csghubcsghubVerified publisher2.4.310 of 34See more

csghub csghub 2.4.3

10 of the 34 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
casbin/casdoor:3.62.0e08231f16c00
golang.org/x/crypto@v0.47.0
0.52.0
grafana/loki:3.4.258a6c186ce78
golang.org/x/crypto@v0.32.0
0.52.0
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
golang.org/x/crypto@v0.40.0
0.52.0
opencsghq/csghub-portal:v2.4.0-ee93ad59164d87
golang.org/x/crypto@v0.26.0
0.52.0
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
golang.org/x/crypto@v0.51.0
0.52.0
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
golang.org/x/crypto@v0.37.0
0.52.0
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
golang.org/x/crypto@v0.28.0
0.52.0
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
golang.org/x/crypto@v0.26.0
0.52.0
quay.io/argoproj/argocli:v3.7.11577fc18f86ad
golang.org/x/crypto@v0.45.0
0.52.0
quay.io/argoproj/workflow-controller:v3.7.11c46aa0ded8ed
golang.org/x/crypto@v0.45.0
0.52.0

Open the chart page →

59,131
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-39832.

Container imageDigestPackageFixed in
casbin/casdoor:3.62.17729da148c61
golang.org/x/crypto@v0.47.0
0.52.0

Open the chart page →

11,402

Container images carrying it

2,788 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
golang.org/x/crypto@v0.8.0
0.52.0
3
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.52.0
3
quay.io/prometheus-operator/prometheus-config-reloader:v0.91.07d9e4eea5f11
golang.org/x/crypto@v0.50.0
0.52.0
3
quay.io/prometheus-operator/prometheus-config-reloader:v0.74.0d55631c7a740
golang.org/x/crypto@v0.23.0
0.52.0
3
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
golang.org/x/crypto@v0.1.0
0.52.0
3
quay.io/prometheus/prometheus:v2.55.0378f4e037035
golang.org/x/crypto@v0.26.0
0.52.0
3
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.52.0
3
quay.io/prometheus/prometheus:v3.10.07571a304e67f
golang.org/x/crypto@v0.47.0
0.52.0
3
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.52.0
3
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
golang.org/x/crypto@v0.7.0
0.52.0
3
quay.io/prometheus/pushgateway:v1.10.07a4d0696a24e
golang.org/x/crypto@v0.26.0
0.52.0
3
quay.io/prometheus/pushgateway:v1.8.0c159e946abf4
golang.org/x/crypto@v0.21.0
0.52.0
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.52.0
3
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.52.0
3
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.3.1af0325804248
golang.org/x/crypto@v0.50.0
0.52.0
3
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.17.02bbc91556733
golang.org/x/crypto@v0.40.0
0.52.0
3
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.06b2f0b6f2f86
golang.org/x/crypto@v0.49.0
0.52.0
3
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
golang.org/x/crypto@v0.37.0
0.52.0
3
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
golang.org/x/crypto@v0.0.0-20190923035154-9ee001bba392
0.52.0
3
1password/scim:v2.3.129d0c6cb67eb
golang.org/x/crypto@v0.0.0-20220131195533-30dcbda58838
0.52.0
2
alpine/git:2.47.2062a01ad7a0e
golang.org/x/crypto@v0.38.0
0.52.0
2
alpine/k8s:1.32.12048f8d9c8cc7
golang.org/x/crypto@v0.46.0
0.52.0
2
apache/superset:dockerizeafe59523a6c8
golang.org/x/crypto@v0.9.0
0.52.0
2
aquasec/kube-bench:v0.8.0ea3e33bc3c4e
golang.org/x/crypto@v0.17.0
0.52.0
2
assistiot/fl_repository_db:latestad8f72108636
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.52.0
2
bitnamilegacy/etcd:latest99b408c15272
golang.org/x/crypto@v0.36.0
0.52.0
2
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
golang.org/x/crypto@v0.0.0-20220331220935-ae2d96664a29
0.52.0
2
bitnamisecure/git72ae5bd9715f
golang.org/x/crypto@v0.36.0
0.52.0
2
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.52.0
2
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/crypto@v0.0.0-20190820162420-60c769a6c586
0.52.0
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
golang.org/x/crypto@v0.19.0
0.52.0
2
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.52.0
2
coredns/coredns:1.13.19b9128672209
golang.org/x/crypto@v0.42.0
0.52.0
2
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.52.0
2
cs3org/revad:v1.19.03b57a34a7dfd
golang.org/x/crypto@v0.0.0-20220331220935-ae2d96664a29
0.52.0
2
cs3org/revad:v1.24.0e80a4d67b352
golang.org/x/crypto@v0.5.0
0.52.0
2
csiplugin/csi-qingcloud:v1.4.00766163dc046
golang.org/x/crypto@v0.0.0-20190611184440-5c40567a22f8
0.52.0
2
danielqsj/kafka-exporter:v1.9.04150e46b2e96
golang.org/x/crypto@v0.32.0
0.52.0
2
danielqsj/kafka-exporter:latesta51b280b55a7
golang.org/x/crypto@v0.48.0
0.52.0
2
datawire/aes:1.14.48588eafe6862
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.52.0
2
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/crypto@v0.35.0
0.52.0
2
drone/drone-runner-kube:1.0.0-rc.34359bf2bb3dc
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.52.0
2
dtzar/helm-kubectl:3.14.455429449408e
golang.org/x/crypto@v0.17.0
0.52.0
2
filebrowser/filebrowser:v2.23.086e8449ff8ff
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.52.0
2
free5gc/amf:v3.4.31bc96ff5a2a6
golang.org/x/crypto@v0.22.0
0.52.0
2
free5gc/ausf:v3.4.3687ff4daf5da
golang.org/x/crypto@v0.21.0
0.52.0
2
free5gc/chf:v3.4.3e2a4dd98a4ed
golang.org/x/crypto@v0.22.0
0.52.0
2
free5gc/nrf:v3.4.399e46b860efb
golang.org/x/crypto@v0.21.0
0.52.0
2
free5gc/nssf:v3.4.3dfe8c68c04b4
golang.org/x/crypto@v0.21.0
0.52.0
2
free5gc/pcf:v3.4.3f712e8ecd927
golang.org/x/crypto@v0.21.0
0.52.0
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.