StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,927
of 17,790 indexed, latest versions
Container images
4,522
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 3,927 of 17,790 indexed charts deploy, on 4,522 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,522
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

3,927 by stars
ChartLatestAffected imagesRadar Score
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

7,728
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:885b9bf2e29cf
stdlib@go1.24.6
1.25.10

Open the chart page →

8,139
workflows-informerworkflows-informerVerified publisher0.4.41 of 1See more

workflows-informer workflows-informer 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
stdlib@go1.20.14
1.25.10

Open the chart page →

1,154
wraftwraft0.1.124 of 9See more

wraft wraft 0.1.12

4 of the 9 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:14-alpine727876d27466
stdlib@go1.24.6
1.25.10
minio/mc:latesta7fe349ef4bd
stdlib@go1.24.6
1.25.10
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
stdlib@go1.19.11
1.25.10
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
stdlib@go1.23.10
1.25.10

Open the chart page →

10,131
pi-hole-exporterwyrihaximusnetVerified publisher0.1.31 of 1See more

pi-hole-exporter wyrihaximusnet 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ekofr/pihole-exporter:0.0.109fdad6f352e0
stdlib@go1.14.7
1.25.10

Open the chart page →

1,809
redis-db-assignment-operatorwyrihaximusnetVerified publisher1.0.61 of 1See more

redis-db-assignment-operator wyrihaximusnet 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/kubernetes-redis-db-assignment-operator:v1.0.831060be60bec
stdlib@go1.16.15
1.25.10

Open the chart page →

2,235
x402-k8s-operatorx402-k8s-operator0.1.01 of 2See more

x402-k8s-operator x402-k8s-operator 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/razvanmacovei/x402-k8s-operator:0.1.0bf3407fad182
stdlib@go1.25.7
1.25.10

Open the chart page →

272
heistyouniqx-ossVerified publisher1.1.2091 of 1See more

heist youniqx-oss 1.1.209

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/youniqx/heist:v1.1.209c43b3a9d98ae
stdlib@go1.22.7
1.25.10

Open the chart page →

805
yugawareyugabyteVerified publisher2026.1.11 of 3See more

yugaware yugabyte 2026.1.1

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:14.22eba8ddbdd837
stdlib@go1.24.6
1.25.10

Open the chart page →

2,622
tailscale-relayzeet0.1.51 of 1See more

tailscale-relay zeet 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
zeetdev/tailscale-relay:v1.24.21967aa2840b6
stdlib@go1.18.1-ts710a0d8610
1.25.10

Open the chart page →

2,165
crowdsec-web-uizekker6Verified publisher0.51.01 of 1See more

crowdsec-web-ui zekker6 0.51.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/theduffman85/crowdsec-web-ui:2026.8.3bfadbab9a72c
stdlib@go1.24.4
1.25.10

Open the chart page →

1,423
memoszekker6Verified publisher0.55.01 of 1See more

memos zekker6 0.55.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
neosmemo/memos:0.30.071a5b4738d1b
stdlib@go1.26.2
1.25.10

Open the chart page →

555
cloudflare-zero-trust-operatorzelic-io0.7.11 of 1See more

cloudflare-zero-trust-operator zelic-io 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/bojanzelic/cloudflare-zero-trust-operator:0.7.1f4b2dbc19a78
stdlib@go1.23.4
1.25.10

Open the chart page →

576
velero-notificationszokeber-velero-notificationsVerified publisher0.1.101 of 2See more

velero-notifications zokeber-velero-notifications 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/zokeber/velero-notifications:0.0.176d84f6c4ce20
stdlib@go1.25.8
1.25.10

Open the chart page →

728
backendzymtraceOfficialVerified publisher26.9.12 of 6See more

backend zymtrace 26.9.1

2 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:17.4304ab8135187
stdlib@go1.18.2
1.25.10
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
stdlib@go1.23.4
1.25.10

Open the chart page →

10,408
aaqaaqVerified publisher0.3.01 of 1See more

aaq aaq 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/kubevirt/aaq-operator:v1.7.0d28a2daa5b15
stdlib@go1.24.12
1.25.10

Open the chart page →

1,015
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/abstract-foundation/zksync-external-node-sidecar:v1.0.03e705d0eb1ce
stdlib@go1.18.10
1.25.10

Open the chart page →

4,566
jenkinsaditisingh-jenkins1.0.01 of 1See more

jenkins aditisingh-jenkins 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.10

Open the chart page →

2,487
gobackupadnoctemVerified publisher0.4.01 of 1See more

gobackup adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
huacnlee/gobackup:v3.1.1560be93229a5
stdlib@go1.20.12
1.25.10

Open the chart page →

1,829
linkwardenadnoctemVerified publisher0.5.11 of 2See more

linkwarden adnoctem 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
stdlib@go1.23.7
1.25.10

Open the chart page →

3,577
popeyeadnoctemVerified publisher0.3.01 of 1See more

popeye adnoctem 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
stdlib@go1.23.5
1.25.10

Open the chart page →

1,196
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
stdlib@go1.20.5
1.25.10

Open the chart page →

29,687
adresserviceadresservice1.1.01 of 5See more

adresservice adresservice 1.1.0

1 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
stdlib@go1.13.10
1.25.10

Open the chart page →

7,447
bootaerokube1.0.13 of 4See more

boot aerokube 1.0.1

3 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/aerokube/boot:1.0.13c269612053f
stdlib@go1.22.2
1.25.10
quay.io/aerokube/keygen:1.0.1578934444f04
stdlib@go1.20.5
1.25.10
quay.io/aerokube/reloader:1.0.1e4a3661416a5
stdlib@go1.22.2
1.25.10

Open the chart page →

7,915
browser-opsaerokube2.6.71 of 1See more

browser-ops aerokube 2.6.7

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/aerokube/browser-ops:2.6.7807c1bb67086
stdlib@go1.22.2
1.25.10

Open the chart page →

552
moonaerokube1.1.373 of 3See more

moon aerokube 1.1.37

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
aerokube/moon:1.9.17da76ca51220d
stdlib@go1.22.3
1.25.10
aerokube/moon-api:1.9.176b6323e75785
stdlib@go1.22.3
1.25.10
aerokube/selenoid-ui:1.10.113f3e299509fd
stdlib@go1.21.5
1.25.10

Open the chart page →

2,472
aerospike-backup-serviceaerospike-helmVerified publisher2.0.131 of 1See more

aerospike-backup-service aerospike-helm 2.0.13

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
aerospike/aerospike-backup-service:3.5.1be40d709c583
stdlib@go1.24.13
1.25.10

Open the chart page →

628
msockperfaetrius2.0.81 of 2See more

msockperf aetrius 2.0.8

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
stdlib@go1.22.1
1.25.10

Open the chart page →

4,237
agendaserviceagendaservice1.0.01 of 3See more

agendaservice agendaservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
conduction/agendaservice-php:latest9cfeeb6c7c20
stdlib@go1.13.10
1.25.10

Open the chart page →

7,209
agentgateway-route-reconcileragentgateway-route-reconciler0.3.11 of 1See more

agentgateway-route-reconciler agentgateway-route-reconciler 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/ricardozd/agentgateway-route-reconciler:0.3.1846f6e407c96
stdlib@go1.24.13
1.25.10

Open the chart page →

259
agentkube-operatoragentkube-operator0.3.01 of 1See more

agentkube-operator agentkube-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
stdlib@go1.19.7
1.25.10

Open the chart page →

1,716
mt-channel-brokerahhhhVerified publisher0.1.03 of 3See more

mt-channel-broker ahhhh 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/filterdigest-pinnedd675f211a40f
stdlib@go1.22.8
1.25.10
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/ingressdigest-pinnedec4b544499ba
stdlib@go1.22.8
1.25.10
gcr.io/knative-releases/knative.dev/eventing/cmd/mtchannel_brokerdigest-pinned395f4ff1bd34
stdlib@go1.22.8
1.25.10

Open the chart page →

2,607
net-istioahhhhVerified publisher0.1.12 of 2See more

net-istio ahhhh 0.1.1

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controllerdigest-pinnede70bc675f977
stdlib@go1.22.8
1.25.10
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhookdigest-pinned7d76a6d42d13
stdlib@go1.22.8
1.25.10

Open the chart page →

1,114
net-kourierahhhhVerified publisher0.18.11 of 1See more

net-kourier ahhhh 0.18.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourierdigest-pinned15a601147ef4
stdlib@go1.24.2
1.25.10

Open the chart page →

508
airbyte-keycloakairbyteVerified publisher0.1.21 of 2See more

airbyte-keycloak airbyte 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.10

Open the chart page →

1,638
pod-sweeperairbyteVerified publisher1.5.11 of 1See more

pod-sweeper airbyte 1.5.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
airbyte/pod-sweeper:1.5.198d2c39d512e
stdlib@go1.23.4
1.25.10

Open the chart page →

4,685
airbyteairbyte-v2Verified publisher2.3.01See more

airbyte airbyte-v2 2.3.0

1 container image this version deploys carries CVE-2026-42499.

Container imageDigestPackageFixed in
temporalio/auto-setup:1.27.2b44cbfeb43db
stdlib@go1.23.2
1.25.10

Open the chart page →

airports-kafkaairports-kafka0.1.01 of 2See more

airports-kafka airports-kafka 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
stdlib@go1.17.10
1.25.10

Open the chart page →

4,547
airports-postgresairports-postgres0.1.01 of 1See more

airports-postgres airports-postgres 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
postgis/postgis:latest01a6a70e41e6
stdlib@go1.18.2
1.25.10

Open the chart page →

1,026
akriakri0.12.551 of 3See more

akri akri 0.12.55

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.25.10

Open the chart page →

1,545
aktoakto0.2.01 of 7See more

akto akto 0.2.0

1 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
stdlib@go1.23.4
1.25.10

Open the chart page →

13,689
akto-ai-guardrailsakto0.1.21 of 2See more

akto-ai-guardrails akto 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-agent-guard-service:latest5c6ff17c5849
stdlib@go1.25.5
1.25.10

Open the chart page →

254
akto-aws-api-gateway-connectorakto0.1.11 of 1See more

akto-aws-api-gateway-connector akto 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
aktosecurity/mirror-api-logging:api-gateway-logging-multi-logging1a1bc76d50fe
stdlib@go1.23.3
1.25.10

Open the chart page →

413
akto-hybrid-redactakto1.44.62 of 5See more

akto-hybrid-redact akto 1.44.6

2 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
stdlib@go1.23.4
1.25.10
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.1-1-ubi9d20bd62f0182
stdlib@go1.25.4
1.25.10

Open the chart page →

4,089
akto-k8s-ebpfakto0.1.31 of 1See more

akto-k8s-ebpf akto 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
aktosecurity/mirror-api-logging:k8s_ebpffcf8be10bead
stdlib@go1.25.8
1.25.10

Open the chart page →

838
akto-k8s-ebpf-openshiftakto0.1.11 of 1See more

akto-k8s-ebpf-openshift akto 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/mirror-api-logging:k8s_ebpf_core_impd94ce715f051
stdlib@go1.25.9
1.25.10

Open the chart page →

1,277
akto-mini-runtime-shaakto0.7.231 of 3See more

akto-mini-runtime-sha akto 0.7.23

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/confluentinc-cp-kafkadigest-pinnedd20bd62f0182
stdlib@go1.25.4
1.25.10

Open the chart page →

3,181
akto-mini-testingakto1.45.71 of 5See more

akto-mini-testing akto 1.45.7

1 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/keelhq-keel:akto_v1.0.01eb61443d68e
stdlib@go1.23.4
1.25.10

Open the chart page →

6,447
akto-mini-testing-kafkaakto1.42.11 of 5See more

akto-mini-testing-kafka akto 1.42.1

1 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
stdlib@go1.23.4
1.25.10

Open the chart page →

6,395
akto-mrs-runtime-combinedakto0.0.21 of 2See more

akto-mrs-runtime-combined akto 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
stdlib@go1.24.6
1.25.10

Open the chart page →

1,843

Container images carrying it

4,522 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
stdlib@go1.15.2
1.25.10
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
stdlib@go1.15.2
1.25.10
1
cloudflare/cloudflared:2024.8.314d9c6b01b29
stdlib@go1.22.2-devel-cf
1.25.10
1
cloudflare/cloudflared:2024.5.05d5f70a59d5e
stdlib@go1.22.2-devel-cf
1.25.10
1
cloudflare/cloudflared:2023.10.0c18744ae1767
stdlib@go1.20.6
1.25.10
1
cloudflare/cloudflared:2025.8.0eb5c9324efe3
stdlib@go1.24.4
1.25.10
1
cloudnativelabs/kube-router:v1.6.00ec7cd73f43f
stdlib@go1.19.5
1.25.10
1
cloudposse/bastion:latest0d9507e8a760
stdlib@go1.13.3
1.25.10
1
cmacrae/d2-prometheus-exporter:v0.1.0fc5fecba436e
stdlib@go1.15
1.25.10
1
cmacrae/lgtm:0.1.0dec8d490fe40
stdlib@go1.14.1
1.25.10
1
cockroachdb/cockroach-operator:v2.1.0983312754620
stdlib@go1.13.14
1.25.10
1
codecov/self-hosted-gateway:24.4.1de483faad6e5
stdlib@go1.22.0
1.25.10
1
codenotary/immudb:1.9.77c85d7cc4f22
stdlib@go1.18.10
1.25.10
1
codercom/code-server:4.11.0-debian1e2cc688008e
stdlib@go1.14.4
1.25.10
1
codercom/code-server:3.10.247605610ad8d
stdlib@go1.14.4
1.25.10
1
coderenvs/coder-service:1.44.61deffc4670e6
stdlib@go1.21.9
1.25.10
1
codeskyblue/gohttpserver:latestcaa862590e34
stdlib@go1.16.3
1.25.10
1
cometbft/cometbft:v0.38.1722c2ac018f40
stdlib@go1.22.11
1.25.10
1
conduction/agendaservice-php:latest9cfeeb6c7c20
stdlib@go1.13.10
1.25.10
1
conduction/balance-registration-php:devc36094a41369
stdlib@go1.13.10
1.25.10
1
conduction/betaalservice-php:latestece1ab544c57
stdlib@go1.13.10
1.25.10
1
conduction/cgrc-php:dev25415534d245
stdlib@go1.13.10
1.25.10
1
conduction/checkin-component-php:dev3423845692c1
stdlib@go1.13.10
1.25.10
1
conduction/conduction-ui-php:dev2744565516e8
stdlib@go1.13.10
1.25.10
1
conduction/contactmoment-component-php:deve1d4ad1e22a8
stdlib@go1.13.10
1.25.10
1
conduction/docparser-php:devb6f95c8ead7d
stdlib@go1.13.10
1.25.10
1
conduction/kvk-php:dev8f177f9f8a7b
stdlib@go1.13.10
1.25.10
1
conduction/pan-php:dev24f03c57568f
stdlib@go1.13.10
1.25.10
1
containous/maesh:v1.3.2587162516502
stdlib@go1.14.4
1.25.10
1
contentsquareplatform/chproxy:v1.26.524555f22d4be
stdlib@go1.22.7
1.25.10
1
coredns/coredns:1.12.040384aa1f5ea
stdlib@go1.23.3
1.25.10
1
coredns/coredns:1.7.073ca82b4ce82
stdlib@go1.14.4
1.25.10
1
coredns/coredns:1.10.1a0ead06651cf
stdlib@go1.20
1.25.10
1
cortezaproject/corteza:2024.9.60bcdcbcd3c63
stdlib@go1.24.1
1.25.10
1
cortezaproject/corteza:2024.9.08eb7a26605c9
stdlib@go1.19.13
1.25.10
1
cortezaproject/corteza:2024.9.4cb9f200de5d2
stdlib@go1.24.1
1.25.10
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
stdlib@go1.23.5
1.25.10
1
countly/api:25.05.4f4cc7447c4f5
stdlib@go1.19.4
1.25.10
1
countly/countly-server:25.05.4e3c238248f99
stdlib@go1.21.11
1.25.10
1
countly/frontend:25.05.42acbc11499b6
stdlib@go1.19.4
1.25.10
1
craftypath/sops-operator:v0.8.0402a0024c732
stdlib@go1.16.5
1.25.10
1
crossplane/crossplane:v0.12.066666e6963af
stdlib@go1.14.4
1.25.10
1
crossplane/oam-kubernetes-runtime:v0.0.3-71.g0f235900112171c45e3
stdlib@go1.13.14
1.25.10
1
crossplane/oam-kubernetes-runtime:v0.3.1-5.g11e189407b8b410dc76
stdlib@go1.13.15
1.25.10
1
crowdfox/external-service-operator:v1.1.06fa7e8063d27
stdlib@go1.14.2
1.25.10
1
csepulvedab/secret-sync:0.5227a6f2b0ff8
stdlib@go1.19.4
1.25.10
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
stdlib@go1.14.4
1.25.10
1
csiplugin/snapshot-controller:v4.0.000fcc441ea9f
stdlib@go1.15
1.25.10
1
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
stdlib@go1.16.13
1.25.10
1
cube8021/push-to-k8s:v1.1.21be9baf096ff
stdlib@go1.22.4
1.25.10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.