StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,934
of 17,803 indexed, latest versions
Container images
4,529
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 3,934 of 17,803 indexed charts deploy, on 4,529 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+180 more1.25.104,529
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

3,934 by stars
ChartLatestAffected imagesRadar Score
scaleway-webhookparticuleio0.0.11 of 1See more

scaleway-webhook particuleio 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
stdlib@go1.15.2
1.25.10

Open the chart page →

2,354
cloudflaredpascaliskeVerified publisher3.0.01 of 1See more

cloudflared pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
stdlib@go1.24.7
1.25.10

Open the chart page →

2,069
hammondpascaliskeVerified publisher2.0.01 of 2See more

hammond pascaliske 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.25.10

Open the chart page →

1,807
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
stdlib@go1.25.4
1.25.10

Open the chart page →

4,852
plausible-exporterpascaliskeVerified publisher1.0.01 of 1See more

plausible-exporter pascaliske 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/riesinger/plausible-exporter:1.1.061112cda1be5
stdlib@go1.19.7
1.25.10

Open the chart page →

700
vikunjapascaliskeVerified publisher5.1.01 of 1See more

vikunja pascaliske 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
vikunja/vikunja:0.24.6ed1f3ed467fe
stdlib@go1.23.4
1.25.10

Open the chart page →

1,343
minecraftpaul1365972-mc3.0.11 of 1See more

minecraft paul1365972-mc 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
itzg/minecraft-server:latest8672e335dbef
stdlib@go1.24.6
1.25.10

Open the chart page →

4,350
pagespawan-pages1.0.01 of 3See more

pages pawan-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,261
pax-prometheuspaxtecnologia0.7.12 of 8See more

pax-prometheus paxtecnologia 0.7.1

2 of the 8 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
stdlib@go1.25.7
1.25.10
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
stdlib@go1.22.2
1.25.10

Open the chart page →

1,805
stk-fluent-bit-loki-s3paxtecnologia0.2.12 of 6See more

stk-fluent-bit-loki-s3 paxtecnologia 0.2.1

2 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/loki:3.6.1144148ad243c0
stdlib@go1.26.2
1.25.10
prom/memcached-exporter:v0.15.4b6763ecb3c47
stdlib@go1.25.3
1.25.10

Open the chart page →

3,763
everest-db-namespacepercona1.13.01 of 1See more

everest-db-namespace percona 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
percona/everest-helmtools:0.0.1904458d04a18
stdlib@go1.24.6
1.25.10

Open the chart page →

769
pmm-ha-dependenciespercona1.0.04 of 4See more

pmm-ha-dependencies percona 1.0.0

4 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.25.41d6f18dbd599
stdlib@go1.25.1
1.25.10
altinity/metrics-exporter:0.25.46ecf67edfb71
stdlib@go1.25.1
1.25.10
percona/percona-postgresql-operator:2.8.06cce2698d3f5
stdlib@go1.25.4
1.25.10
victoriametrics/operator:v0.65.0716b89a3ed79
stdlib@go1.25.3
1.25.10

Open the chart page →

2,485
permission-managerpermission-manager1.0.0-seal1 of 1See more

permission-manager permission-manager 1.0.0-seal

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
stdlib@go1.16.8
1.25.10

Open the chart page →

2,267
matomopetbattle11.0.12 of 2See more

matomo petbattle 11.0.1

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
stdlib@go1.25.0
1.25.10
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
stdlib@go1.25.0
1.25.10

Open the chart page →

11,177
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
stdlib@go1.16.12
1.25.10

Open the chart page →

15,476
pet-battle-nsffpetbattle0.0.22 of 4See more

pet-battle-nsff petbattle 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
minio/mc:latesta7fe349ef4bd
stdlib@go1.24.6
1.25.10
minio/minio:latest14cea493d9a3
stdlib@go1.24.6
1.25.10

Open the chart page →

3,878
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
stdlib@go1.16.12
1.25.10

Open the chart page →

15,476
mariadbpetersandor15.2.51 of 1See more

mariadb petersandor 15.2.5

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bitnami/mariadb:11.7.216a7dae804fb
stdlib@go1.22.12
1.25.10

Open the chart page →

2,943
mongodbpetersandor14.1.81 of 1See more

mongodb petersandor 14.1.8

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bitnami/mongodb:8.0.8b3bd5b6be9a0
stdlib@go1.23.7
1.25.10

Open the chart page →

4,511
redispetersandor15.2.21 of 1See more

redis petersandor 15.2.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bitnami/redis:7.4.24e65bf641805
stdlib@go1.23.8
1.25.10

Open the chart page →

2,781
whoamiphilippwaller1.0.31 of 1See more

whoami philippwaller 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
traefik/whoami:v1.8.08d0f943abdbf
stdlib@go1.17.7
1.25.10

Open the chart page →

1,007
codimdphntom0.1.121 of 3See more

codimd phntom 0.1.12

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
phntom/codimd:2.4.31b9aafbb62e6
stdlib@go1.16
1.25.10

Open the chart page →

6,528
container-agentphntom100.0.11 of 1See more

container-agent phntom 100.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
circleci/container-agent:34d8d0ae5efc3
stdlib@go1.19.7
1.25.10

Open the chart page →

1,974
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
stdlib@go1.19.2
1.25.10

Open the chart page →

4,649
goalertphntom0.0.291 of 1See more

goalert phntom 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
phntom/goalert:0.0.298ca4df55499b
stdlib@go1.21.5
1.25.10

Open the chart page →

1,050
kochiphntom1.1.41 of 1See more

kochi phntom 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
phntom/kochi:1.1.33b82358bd56e
stdlib@go1.15.5
1.25.10

Open the chart page →

2,964
loki-stackphntom2.10.22 of 2See more

loki-stack phntom 2.10.2

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/loki:2.4.2b3af8ead67d7
stdlib@go1.17.2
1.25.10
grafana/promtail:2.4.2626900031c4e
stdlib@go1.17.2
1.25.10

Open the chart page →

5,725
mindavphntom0.1.61 of 2See more

mindav phntom 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
phntom/mindav:0.1.7-kix35695f546abbb
stdlib@go1.16.2
1.25.10

Open the chart page →

4,160
npre-essentialsphntom0.1.6013 of 22See more

npre-essentials phntom 0.1.60

13 of the 22 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.25.10
grafana/loki:2.6.11ee60f980950
stdlib@go1.17.9
1.25.10
grafana/promtail:2.7.0c16c710f7333
stdlib@go1.19.2
1.25.10
phntom/chartmuseum:v0.15.29242b4df9e65
stdlib@go1.18.5
1.25.10
phntom/kochi:1.1.33b82358bd56e
stdlib@go1.15.5
1.25.10
phntom/oauth2-proxy:v7.3.48ea656a2a895
stdlib@go1.19.2
1.25.10
quay.io/groundcover/grafana:9.3.18c65b333a3d3
stdlib@go1.19.3
1.25.10
quay.io/prometheus-operator/prometheus-operator:v0.61.1cd7d1a82ef00
stdlib@go1.19.3
1.25.10
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.25.10
quay.io/prometheuscommunity/elasticsearch-exporter:v1.5.013a41e8ac836
stdlib@go1.18.4
1.25.10
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
stdlib@go1.19.2
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.7.0a15ca437f230
stdlib@go1.19.3
1.25.10

Open the chart page →

26,899
prometheus-elasticsearch-exporterphntom4.5.11 of 2See more

prometheus-elasticsearch-exporter phntom 4.5.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.25.10

Open the chart page →

2,030
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
stdlib@go1.19
1.25.10

Open the chart page →

88,025
picoclawpicoclawVerified publisher0.1.261 of 1See more

picoclaw picoclaw 0.1.26

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/mattn/picoclaw:latest517556c8b144
stdlib@go1.26.0
1.25.10

Open the chart page →

1,550
pagespighosh-pages1.0.01 of 3See more

pages pighosh-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,261
blockmeta-servicepinaxVerified publisher0.0.31 of 1See more

blockmeta-service pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/blockmeta-service:2f971e04f0a86e490b6
stdlib@go1.22.1
1.25.10

Open the chart page →

1,698
firehose-corepinaxVerified publisher0.1.11 of 2See more

firehose-core pinax 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.10.222f84e3615c8
stdlib@go1.18.5
1.25.10

Open the chart page →

3,553
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
stdlib@go1.24.2
1.25.10

Open the chart page →

7,210
substreams-sink-kvpinaxVerified publisher0.0.41 of 1See more

substreams-sink-kv pinax 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
stdlib@go1.22.9
1.25.10

Open the chart page →

53,858
substreams-sink-nooppinaxVerified publisher0.0.31 of 1See more

substreams-sink-noop pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
stdlib@go1.22.9
1.25.10

Open the chart page →

53,799
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
stdlib@go1.24.5
1.25.10

Open the chart page →

4,984
pixie-operator-chartpixie0.1.71 of 3See more

pixie-operator-chart pixie 0.1.7

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned1b6002156f56
stdlib@go1.21.7
1.25.10

Open the chart page →

1,915
pixie-operator-helm2-chartpixie0.1.21 of 2See more

pixie-operator-helm2-chart pixie 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinnedf9ea8cef95ac
stdlib@go1.19.6
1.25.10

Open the chart page →

1,769
planectlplanectlVerified publisher0.7.06 of 10See more

planectl planectl 0.7.0

6 of the 10 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
alpine/k8s:1.30.2cd560fce90f7
stdlib@go1.22.3
1.25.10
bitnamilegacy/valkey:8.1.3-debian-12-r34f0191fba7d3
stdlib@go1.24.6
1.25.10
gitea/act_runner:0.2.11c57233403eff
stdlib@go1.23.1
1.25.10
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.25.10
pulumi/pulumi-kubernetes-operator:v2.5.17dace4491358
stdlib@go1.24.13
1.25.10
quay.io/argoproj/argocd:v2.14.115fc69e31c755
stdlib@go1.22.2
1.25.10

Open the chart page →

26,407
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
stdlib@go1.13.12
1.25.10

Open the chart page →

11,163
pixiecorepnnl-miscscripts0.0.161 of 1See more

pixiecore pnnl-miscscripts 0.0.16

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
pnnlmiscscripts/pixiecore:1.0.1-1c6f17741a0d7
stdlib@go1.24.1
1.25.10

Open the chart page →

943
tenant-namespacepnnl-miscscripts0.6.231 of 1See more

tenant-namespace pnnl-miscscripts 0.6.23

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
stdlib@go1.18.2
1.25.10

Open the chart page →

2,578
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
stdlib@go1.19.13
1.25.10

Open the chart page →

13,114
podnat-controllerpodnat-controller0.5.21 of 1See more

podnat-controller podnat-controller 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gutmensch/podnat-controller:0.5.2566979793fc4
stdlib@go1.22.3
1.25.10

Open the chart page →

984
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:16.24aea012537ed
stdlib@go1.18.2
1.25.10

Open the chart page →

11,311
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
stdlib@go1.20.10
1.25.10

Open the chart page →

6,606
agentpolyaxon2.17.01 of 4See more

agent polyaxon 2.17.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
polyaxon/polyaxon-operator:2.17.07664c1cebb9d
stdlib@go1.24.13
1.25.10

Open the chart page →

8,953

Container images carrying it

4,529 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
hiversh/antigravity:0.1.45-microvm0e36d98402bc
stdlib@go1.19.8
1.25.10
1
hiversh/browser:0.1.45-microvmb5048c6342ce
stdlib@go1.19.8
1.25.10
1
hiversh/claude:0.1.45-microvm2fbf9f264498
stdlib@go1.19.8
1.25.10
1
hiversh/codex:0.1.45-microvm4f43130f51e5
stdlib@go1.19.8
1.25.10
1
hiversh/controller:0.1.45b0b85f8942c7
stdlib@go1.19.8
1.25.10
1
hiversh/copilot:0.1.45-microvm50c07b84f298
stdlib@go1.19.8
1.25.10
1
hiversh/node:0.1.45-alpine-microvm836a37641941
stdlib@go1.19.8
1.25.10
1
hiversh/openclaw:0.1.45-microvm958b7ebb4eb4
stdlib@go1.19.8
1.25.10
1
hiversh/python:0.1.45-3.13-alpine-microvm63a5ae179a9f
stdlib@go1.19.8
1.25.10
1
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
stdlib@go1.17.10
1.25.10
1
holiman/nodemonitor:latest5cd609761065
stdlib@go1.20.3
1.25.10
1
homeassistant/home-assistant:2023.10.3021e2afc6e57
stdlib@go1.17.1
1.25.10
1
homeassistant/home-assistant:2026.75a531753cea9
stdlib@go1.25.6
1.25.10
1
homeassistant/home-assistant:2023.12.48d000332b09b
stdlib@go1.17.1
1.25.10
1
honeycombio/honeycomb-kubernetes-agent:2.7.448c38d0870f2
stdlib@go1.24.3
1.25.10
1
honglab/slack-emoji-maker:v0.0.1ca075a926fe1
stdlib@go1.20.7
1.25.10
1
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
stdlib@go1.21.10
1.25.10
1
huacnlee/gobackup:v3.1.1560be93229a5
stdlib@go1.20.12
1.25.10
1
huangchengwu6904/hi-app:cac-16910478061b932f8221a9
stdlib@go1.20.4
1.25.10
1
huseyinbabal/demory:0.0.0-rc.20ae8eb4053c60
stdlib@go1.17.2
1.25.10
1
huzafach/aws-cli-k8:1.0.06e271d43ea48
stdlib@go1.22.4
1.25.10
1
hyperledger/fabric-ca:1.5.1c7f3422ec1d5
stdlib@go1.15.7
1.25.10
1
hyperledger/fabric-ca:1.5.0f270dfeee91d
stdlib@go1.15.7
1.25.10
1
hyperledger/fabric-orderer:2.2.137294e05209b
stdlib@go1.14.4
1.25.10
1
hyperledger/fabric-peer:2.2.1bf4995c86af6
stdlib@go1.14.4
1.25.10
1
hyperledgerk8s/bc-explorer:v202305041f1a06b61f18
stdlib@go1.20.2
1.25.10
1
hyperledgerk8s/bc-saas:v0.0.1-20230524d8bc31176257
stdlib@go1.20.2
1.25.10
1
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
stdlib@go1.18.4
1.25.10
1
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
stdlib@go1.19.4
1.25.10
1
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
stdlib@go1.19.4
1.25.10
1
hyperledgerk8s/tektoncd-operator:v0.64.0d0a3a35a138d
stdlib@go1.18.7
1.25.10
1
hyperledgerk8s/tekton-operator-webhook:v0.64.02237cb80f52b
stdlib@go1.18.7
1.25.10
1
iamdorsah/bastillion:v0.1db83a0254d81
stdlib@go1.17.13
1.25.10
1
ianw/quickchart:v1.7.1dc49dd460c37
stdlib@go1.13.1
1.25.10
1
ibarreche/cloud-reporting-ci:latest1f45af91da6a
stdlib@go1.16.15
1.25.10
1
igrantio/bb-consent-api:2023.12.22d2ea6546ffe
stdlib@go1.18.8
1.25.10
1
ildarmukhametzyanov/priceapp:0.115d23720a3ee
stdlib@go1.21.1
1.25.10
1
inaccel/cloud-init:latesta5d3d0af05c1
stdlib@go1.21.6
1.25.10
1
inaccel/device-selector:latest44b4f274f40b
stdlib@go1.21.9
1.25.10
1
inaccel/kubevirt-hack:latestbdfd61803a70
stdlib@go1.21.7
1.25.10
1
inbucket/inbucket:3.0.01f10a0efea69
stdlib@go1.17.1
1.25.10
1
indevlab/ejabberd:24.12-k8s8bc689d093a7
stdlib@go1.23.6
1.25.10
1
infisical/infisical-agent-injector:v0.1.12718dd5bee7cb
stdlib@go1.24.13
1.25.10
1
infisical/infisical-csi-provider:v0.0.9e3390e677db6
stdlib@go1.24.13
1.25.10
1
infisical/pki-issuer:latestff38294270e3
stdlib@go1.24.13
1.25.10
1
inseefrlab/shelly:cloudshell31f04ca7436b
stdlib@go1.15.7
1.25.10
1
instill/api-gateway:9bfdc88b53eaa51c523
stdlib@go1.25.6
1.25.10
1
instill/artifact-backend:b28766ac4a393e601ed
stdlib@go1.25.6
1.25.10
1
instill/console:0.68.54cd70e2df5c6
stdlib@go1.23.10
1.25.10
1
instill/mgmt-backend:d0933d4ebe12f77a3f9
stdlib@go1.25.6
1.25.10
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.