StackRadar

CVE-2026-39833

Critical

Advisory

Published 22 May 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.004
35th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,440
of 17,787 indexed, latest versions
Container images
2,788
deployed by those charts
Fix available
1 of 1
affected package

golang.org/x/crypto doesn't enforce invoking key constraints

Carried by container images the latest versions of 2,440 of 17,787 indexed charts deploy, on 2,788 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+153 more0.52.02,788
OSV records
GHSA-jppx-rxg9-jmrx
Also known as
GO-2026-5005

Charts affected

2,440 by stars
ChartLatestAffected imagesRadar Score
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.1b5210df46c05
golang.org/x/crypto@v0.35.0
0.52.0

Open the chart page →

5,079
nfs-server-provisionerraphaelVerified publisher1.3.01 of 1See more

nfs-server-provisioner raphael 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.52.0

Open the chart page →

2,730
repoflowrepoflow-helm-public0.9.11 of 8See more

repoflow repoflow-helm-public 0.9.1

1 of the 8 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2025-07-23T15-54-02Zd249d1fb6966
golang.org/x/crypto@v0.40.0
0.52.0

Open the chart page →

13,615
rqliterqliteOfficialVerified publisher2.0.01 of 1See more

rqlite rqlite 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
rqlite/rqlite:9.1.37b992a526eee
golang.org/x/crypto@v0.43.0
0.52.0

Open the chart page →

1,311
qbittorrent-vpnrtomik-helm-chartsVerified publisher0.0.21 of 2See more

qbittorrent-vpn rtomik-helm-charts 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
qmcgaw/gluetun:v3.40.02b42bfa04675
golang.org/x/crypto@v0.29.0
0.52.0

Open the chart page →

1,218
bentoself-hosters-by-nightVerified publisher0.9.11 of 1See more

bento self-hosters-by-night 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/warpstreamlabs/bento:1.8.121715979aefa
golang.org/x/crypto@v0.36.0
0.52.0

Open the chart page →

1,046
corednssoftizyVerified publisher0.2.01 of 1See more

coredns softizy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
coredns/coredns:1.10.1a0ead06651cf
golang.org/x/crypto@v0.0.0-20221010152910-d6f0a8c073c2
0.52.0

Open the chart page →

1,663
knative-servingsoftonic3.0.05 of 5See more

knative-serving softonic 3.0.0

5 of the 5 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhookdigest-pinned873b968f02b5
golang.org/x/crypto@v0.0.0-20200323165209-0ec3e9974c59
0.52.0
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinneda5de0fb75046
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.52.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned2ef460356b17
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.52.0
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned30ce73388ae5
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.52.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedf16c0e022203
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.52.0

Open the chart page →

12,502
miniosolidchartsVerified publisher0.5.01 of 1See more

minio solidcharts 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/coollabsio/minio:RELEASE.2025-10-15T17-29-55Z69b55a1c1c5d
golang.org/x/crypto@v0.40.0
0.52.0

Open the chart page →

1,055
forecastlestakaterVerified publisher2.1.11 of 1See more

forecastle stakater 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
stakater/forecastle:v2.0.2382cd9572352
golang.org/x/crypto@v0.48.0
0.52.0

Open the chart page →

712
ingressmonitorcontrollerstakaterVerified publisher2.2.131 of 1See more

ingressmonitorcontroller stakater 2.2.13

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/stakater/ingressmonitorcontroller:v2.2.133301afb61c10
golang.org/x/crypto@v0.45.0
0.52.0

Open the chart page →

576
sn-platformstreamnative1.11.445 of 9See more

sn-platform streamnative 1.11.44

5 of the 9 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
golang.org/x/crypto@v0.4.0
0.52.0
streamnative/pulsar_vault_init:v1.0.731533fa9fab7
golang.org/x/crypto@v0.0.0-20220208050332-20e1d8d225ab
0.52.0
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/crypto@v0.1.0
0.52.0
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.52.0
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
golang.org/x/crypto@v0.7.0
0.52.0

Open the chart page →

15,525
pocketbasetechwolf12Verified publisher0.29.31 of 1See more

pocketbase techwolf12 0.29.3

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/techwolf12/pocketbase:0.29.3106099641679
golang.org/x/crypto@v0.41.0
0.52.0

Open the chart page →

1,447
feedbacksystemthm-mni-iiVerified publisher0.47.14 of 10See more

feedbacksystem thm-mni-ii 0.47.1

4 of the 10 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2023.12.23-debian-11-r25bb0aa825d16
golang.org/x/crypto@v0.17.0
0.52.0
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
golang.org/x/crypto@v0.12.0
0.52.0
library/docker:20.10.21-dind3153fa63f546
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.52.0
thmmniii/fbs-runner:v1.27.186105349c1a3
golang.org/x/crypto@v0.1.0
0.52.0

Open the chart page →

28,579
topaztopaz0.2.51 of 1See more

topaz topaz 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/aserto-dev/topaz:0.32.594c708ecf7dc4
golang.org/x/crypto@v0.37.0
0.52.0

Open the chart page →

1,494
maeshtraefikOfficialVerified publisher2.1.21 of 7See more

maesh traefik 2.1.2

1 of the 7 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
containous/maesh:v1.3.2587162516502
golang.org/x/crypto@v0.0.0-20200317142112-1b76d66859c6
0.52.0

Open the chart page →

4,136
traefik-meshtraefikOfficialVerified publisher4.1.13 of 7See more

traefik-mesh traefik 4.1.1

3 of the 7 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.18db45c07f2e1b
golang.org/x/crypto@v0.0.0-20200214034016-1d94cc7ab1c6
0.52.0
library/traefik:v2.57d5a6ae66572
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.52.0
traefik/mesh:v1.4.8cf071f3e165c
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.52.0

Open the chart page →

9,257
argocdtwomartensVerified publisher0.1.12 of 3See more

argocd twomartens 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.37.0f579d00721b0
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.52.0
quay.io/argoproj/argocd:v2.8.6acaf37352569
golang.org/x/crypto@v0.14.0
0.52.0

Open the chart page →

10,355
uptraceuptrace2.0.21 of 2See more

uptrace uptrace 2.0.2

1 of the 2 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
uptrace/uptrace:2.0.234a02c3b2d12
golang.org/x/crypto@v0.40.0
0.52.0

Open the chart page →

1,620
vaultvaultVerified publisher1.22.03 of 4See more

vault vault 1.22.0

3 of the 4 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
alpine/k8s:1.35.5d870622d0040
golang.org/x/crypto@v0.50.0
0.52.0
hashicorp/vault:2.0.1755355002715
golang.org/x/crypto@v0.51.0
0.52.0
prom/statsd-exporter:v0.29.0632f70580492
golang.org/x/crypto@v0.46.0
0.52.0

Open the chart page →

4,243
vsphere-cpivsphere-tmm1.6.01 of 1See more

vsphere-cpi vsphere-tmm 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.28.0026f63d9ed42
golang.org/x/crypto@v0.11.0
0.52.0

Open the chart page →

1,344
gethvulcanlink1.10.231 of 1See more

geth vulcanlink 1.10.23

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.23cce21b423165
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.52.0

Open the chart page →

2,245
api-firewallwallarmVerified publisher0.9.61 of 1See more

api-firewall wallarm 0.9.6

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
wallarm/api-firewall:v0.9.64d45db0ff240
golang.org/x/crypto@v0.49.0
0.52.0

Open the chart page →

1,000
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
library/nats:2.10.7-alpine1bcddab51b80
golang.org/x/crypto@v0.16.0
0.52.0

Open the chart page →

3,178
argo-cdwenerme10.9.12 of 3See more

argo-cd wenerme 10.9.1

2 of the 3 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.45.18499afd690c4
golang.org/x/crypto@v0.47.0
0.52.0
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
golang.org/x/crypto@v0.36.0
0.52.0

Open the chart page →

2,989
minio-operatorwenerme4.3.71 of 2See more

minio-operator wenerme 4.3.7

1 of the 2 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
golang.org/x/crypto@v0.0.0-20210421170649-83a5a9bb288b
0.52.0

Open the chart page →

6,085
wharf-helmwharf-helmOfficialVerified publisher3.2.64 of 5See more

wharf-helm wharf-helm 3.2.6

4 of the 5 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.52.0
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.52.0
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.52.0
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.52.0

Open the chart page →

10,033
buildkitdwiremindVerified publisher0.33.01 of 1See more

buildkitd wiremind 0.33.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
moby/buildkit:v0.32.2-rootless504731e577c2
golang.org/x/crypto@v0.50.0
0.52.0

Open the chart page →

1,153
keycloak-operatorwiremindVerified publisher0.0.141 of 1See more

keycloak-operator wiremind 0.0.14

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.52.0

Open the chart page →

4,713
yataiyataiVerified publisher0.4.61 of 2See more

yatai yatai 0.4.6

1 of the 2 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
quay.io/bentoml/yatai:0.4.614b482c1f1b8
golang.org/x/crypto@v0.0.0-20220507011949-2cf3adece122
0.52.0

Open the chart page →

4,041
adcs-issueradcs-issuer3.0.21 of 1See more

adcs-issuer adcs-issuer 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
djkormo/adcs-issuer:2.1.29f34e87e7586
golang.org/x/crypto@v0.24.0
0.52.0

Open the chart page →

828
kubernetes-etcd-backupadfinisVerified publisher1.6.21 of 1See more

kubernetes-etcd-backup adfinis 1.6.2

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
golang.org/x/crypto@v0.37.0
0.52.0

Open the chart page →

1,836
agentareaagentareaVerified publisher0.0.183 of 16See more

agentarea agentarea 0.0.18

3 of the 16 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
oryd/kratos:v1.3.1fe2428f103a6
golang.org/x/crypto@v0.26.0
0.52.0
temporalio/auto-setup:1.29.15b3502a3b685
golang.org/x/crypto@v0.37.0
0.52.0
temporalio/ui:2.39.0b768f87f18b5
golang.org/x/crypto@v0.32.0
0.52.0

Open the chart page →

14,960
alertmanager-matrixalertmanager-matrixVerified publisher0.1.161 of 1See more

alertmanager-matrix alertmanager-matrix 0.1.16

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
silkeh/alertmanager_matrix:0.6.1900010497f8c
golang.org/x/crypto@v0.51.0
0.52.0

Open the chart page →

454
clearml-servingallegroaiVerified publisher1.6.23 of 9See more

clearml-serving allegroai 1.6.2

3 of the 9 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
grafana/grafana:9.4.376dcf36e7d2a
golang.org/x/crypto@v0.4.0
0.52.0
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/crypto@v0.1.0
0.52.0
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
golang.org/x/crypto@v0.1.0
0.52.0

Open the chart page →

17,879
soft-servealphani-helm-chartsVerified publisher0.4.01 of 1See more

soft-serve alphani-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
charmcli/soft-serve:v0.4.039523c1a6ba8
golang.org/x/crypto@v0.0.0-20220307211146-efcb8507fb70
0.52.0

Open the chart page →

3,119
smockerandrcunsVerified publisher0.0.41 of 1See more

smocker andrcuns 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
andrcuns/smocker:0.18.5b4a8eb20581a
golang.org/x/crypto@v0.0.0-20220307211146-efcb8507fb70
0.52.0

Open the chart page →

2,173
upcloud-csiankra-chartsVerified publisher0.4.02 of 8See more

upcloud-csi ankra-charts 0.4.0

2 of the 8 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
alpine/k8s:1.31.137a319b15cfc9
golang.org/x/crypto@v0.41.0
0.52.0
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.52.0

Open the chart page →

14,920
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
golang.org/x/crypto@v0.18.0
0.52.0

Open the chart page →

3,378
anteonanteonVerified publisher2.6.43 of 13See more

anteon anteon 2.6.4

3 of the 13 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
chrislusf/seaweedfs:3.64634b094b2183
golang.org/x/crypto@v0.19.0
0.52.0
library/influxdb:2.6.1-alpine44a366dd7724
golang.org/x/crypto@v0.0.0-20220331220935-ae2d96664a29
0.52.0
prom/prometheus:v2.37.98176adea328e
golang.org/x/crypto@v0.0.0-20220511200225-c6db032c6c88
0.52.0

Open the chart page →

22,233
api-usage-serverapi-usage-server1.16.01 of 1See more

api-usage-server api-usage-server 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/api-usage-server:1.16.08f9c32b866b0
golang.org/x/crypto@v0.36.0
0.52.0

Open the chart page →

733
scannerappscodeVerified publisher2026.1.152 of 3See more

scanner appscode 2026.1.15

2 of the 3 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
rancher/kine:v0.11.412889bbcd1e8
golang.org/x/crypto@v0.17.0
0.52.0
ghcr.io/appscode/scanner:v0.0.2116907aae5de1
golang.org/x/crypto@v0.46.0
0.52.0

Open the chart page →

5,301
smtprelayappscodeVerified publisher2026.9.111 of 1See more

smtprelay appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/appscode/smtprelay:v0.0.479c9c76a78e6
golang.org/x/crypto@v0.32.0
0.52.0

Open the chart page →

840
stash-enterpriseappscodeVerified publisher0.42.02 of 4See more

stash-enterprise appscode 0.42.0

2 of the 4 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.52.0
ghcr.io/stashed/stash-enterprise:v0.42.1759f3850eda9
golang.org/x/crypto@v0.37.0
0.52.0

Open the chart page →

3,620
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.52.0

Open the chart page →

5,231
argocd-rbac-operatorargocd-rbac-operator0.4.51 of 1See more

argocd-rbac-operator argocd-rbac-operator 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/argocd-rbac-operator:v0.2.451dded00137a
golang.org/x/crypto@v0.38.0
0.52.0

Open the chart page →

954
kedaarieotechVerified publisher0.1.02 of 3See more

keda arieotech 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/kedacore/keda:2.16.002348a19aeae
golang.org/x/crypto@v0.28.0
0.52.0
ghcr.io/kedacore/keda-metrics-apiserver:2.16.073a2ebae4413
golang.org/x/crypto@v0.28.0
0.52.0

Open the chart page →

2,276
s3dartur9010Verified publisher1.0.11 of 1See more

s3d artur9010 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
golang.org/x/crypto@v0.50.0
0.52.0

Open the chart page →

1,722
arvancloud-webhookarvancloud-webhookVerified publisher1.0.01 of 1See more

arvancloud-webhook arvancloud-webhook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
golang.org/x/crypto@v0.45.0
0.52.0

Open the chart page →

2,309
cert-exporterarzu3.0.11 of 1See more

cert-exporter arzu 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-39833.

Container imageDigestPackageFixed in
joeelliott/cert-exporter:v2.7.0b4acd14642d0
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.52.0

Open the chart page →

2,819

Container images carrying it

2,788 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
devsecurely/cview-issuer:0.0.42eecd4314e933
golang.org/x/crypto@v0.49.0
0.52.0
1
devspacecloud/manager:0.3.349c397413f7b
golang.org/x/crypto@v0.0.0-20200128174031-69ecbb4d6d5d
0.52.0
1
dexidp/dex:v2.39.1-distroless43655afd1a8f
golang.org/x/crypto@v0.18.0
0.52.0
1
deyaeddin/cert-manager-webhook-hetzner:latest797b0d06210a
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.52.0
1
dgraph/dgraph:v24.1.4b57fa31f9b7f
golang.org/x/crypto@v0.33.0
0.52.0
1
dirathea/pipelinewise-operator:v0.5.08d4c9f773ae1
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.52.0
1
distribution/distribution:3.1.1bca24727f400
golang.org/x/crypto@v0.49.0
0.52.0
1
djkormo/adcs-issuer:2.1.29f34e87e7586
golang.org/x/crypto@v0.24.0
0.52.0
1
dollarshaveclub/furan2:master14a257836529
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.52.0
1
dollarshaveclub/thermite:0.0.31663cbf25fcfe
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.52.0
1
donetick/donetick:v0.1.60849a43d9e363
golang.org/x/crypto@v0.40.0
0.52.0
1
dongjiang1989/cosign-webhook:v1.1.02a3ead6a55dc
golang.org/x/crypto@v0.10.0
0.52.0
1
dongjiang1989/pingmesh-agent:latest355fa4be8e97
golang.org/x/crypto@v0.28.0
0.52.0
1
dongjiang1989/pingmesh-agent:v1.2.2c82de0272da0
golang.org/x/crypto@v0.28.0
0.52.0
1
doorcloud/apim-operator:v3.0.44e6ef8d72c3e
golang.org/x/crypto@v0.26.0
0.52.0
1
dragonflyoss/client:v0.1.82edf3e921f4e0
golang.org/x/crypto@v0.17.0
0.52.0
1
dragonflyoss/manager:v2.1.49c3ef7f10698d
golang.org/x/crypto@v0.17.0
0.52.0
1
dragonflyoss/scheduler:v2.1.49523785c77787
golang.org/x/crypto@v0.24.0
0.52.0
1
drone/drone:2.28.255897c8fb22d
golang.org/x/crypto@v0.40.0
0.52.0
1
drone/drone-runner-docker:1.8.1137e79c5e23c
golang.org/x/crypto@v0.0.0-20190621222207-cc06ce4a13d4
0.52.0
1
drone/kubernetes-secrets:latest206df2280ecf
golang.org/x/crypto@v0.0.0-20180808211826-de0752318171
0.52.0
1
drorivry4/rego:lateste035d49b15ca
golang.org/x/crypto@v0.17.0
0.52.0
1
drumsergio/duplicacy-container:0.1.0dd3ee9703969
golang.org/x/crypto@v0.12.0
0.52.0
1
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
golang.org/x/crypto@v0.5.0
0.52.0
1
dunglas/mercure:v0.24.080fcb704a741
golang.org/x/crypto@v0.51.0
0.52.0
1
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.52.0
1
durellirsd/security-smells-api:v17398aca4fc2e
golang.org/x/crypto@v0.21.0
0.52.0
1
dutchcoders/transfer.sh:v1.6.1-noroot8db9ade72a0d
golang.org/x/crypto@v0.14.0
0.52.0
1
ebrianne/cert-manager-webhook-duckdns:v1.2.39cd17700c9ec
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.52.0
1
eclipseaerios/federator:1.1.018c7f0d101c0
golang.org/x/crypto@v0.23.0
0.52.0
1
eclipseaerios/iota-tangle-peerer:latest99d7ff18d416
golang.org/x/crypto@v0.28.0
0.52.0
1
eclipseaerios/llo-api:1.2.0ab7a04182191
golang.org/x/crypto@v0.14.0
0.52.0
1
eclipseaerios/llo-docker-operator:1.1.2d7ec28bfe735
golang.org/x/crypto@v0.31.0
0.52.0
1
elastic/apm-server:7.17.6c7a1c63257d0
golang.org/x/crypto@v0.0.0-20220817201139-bc19a97f63c8
0.52.0
1
elastiflow/flow-collector:7.26.0fee67842e16b
golang.org/x/crypto@v0.50.0
0.52.0
1
emqx/ecp-emqx-agent-downloader:2.5.1a8431baa7950
golang.org/x/crypto@v0.21.0
0.52.0
1
emqx/ecp-main:2.5.1fa876f71e5d6
golang.org/x/crypto@v0.28.0
0.52.0
1
emqxecp/otelcol:2.5.04c31d9bec846
golang.org/x/crypto@v0.26.0
0.52.0
1
emqx/edge-operator-controller:0.0.553865c1267d9
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.52.0
1
engrmth/bnkr:2.1.06d8464e6f0e8
golang.org/x/crypto@v0.0.0-20190530122614-20be4c3c3ed5
0.52.0
1
envoyproxy/ai-gateway-controller:003ab39f36923b5d40609a601e2951b73f6318fbec1f06ee29a7
golang.org/x/crypto@v0.40.0
0.52.0
1
envoyproxy/ratelimit:v1.4.071081616da3e
golang.org/x/crypto@v0.0.0-20191219195013-becbf705a915
0.52.0
1
epamedp/admin-console-operator:2.14.090f9921d8d58
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.52.0
1
epamedp/codebase-operator:2.12.0-MDTU-DDM-SNAPSHOT.1096028c86f0dd
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.52.0
1
epamedp/edp-admin-console:2.14.0616c678ba3e7
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.52.0
1
epamedp/edp-argocd-operator:0.2.0976a662a5e72
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.52.0
1
epamedp/edp-headlamp:0.25.093417e18bb1a
golang.org/x/crypto@v0.18.0
0.52.0
1
epamedp/gerrit-operator:2.11.0-MDTU-DDM-SNAPSHOT.2b71fb39e0c9e
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.52.0
1
epamedp/jenkins-operator:2.15.328ef56bc0ca3
golang.org/x/crypto@v0.14.0
0.52.0
1
epamedp/jenkins-operator:2.11.0-MDTU-DDM-SNAPSHOT.1ff25e9fe4419
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.52.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.