StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,955
of 17,805 indexed, latest versions
Container images
4,520
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 3,955 of 17,805 indexed charts deploy, on 4,520 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+180 more1.25.104,520
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

3,955 by stars
ChartLatestAffected imagesRadar Score
trilliansigstoreVerified publisher0.3.204 of 5See more

trillian sigstore 0.3.20

4 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gcr.io/trillian-opensource-ci/db_serverdigest-pinned2a685a38dd01
stdlib@go1.18.2
1.25.10
ghcr.io/sigstore/scaffolding/createdbdigest-pinned3cee6c78973b
stdlib@go1.25.0
1.25.10
ghcr.io/sigstore/scaffolding/trillian_log_serverdigest-pinned5a878e4e4f03
stdlib@go1.26.0
1.25.10
ghcr.io/sigstore/scaffolding/trillian_log_signerdigest-pinned28c5ff40963f
stdlib@go1.26.0
1.25.10

Open the chart page →

2,757
tsasigstoreVerified publisher2.1.31 of 1See more

tsa sigstore 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sigstore/timestamp-server:v2.1.08637f0482ed1
stdlib@go1.25.1
1.25.10

Open the chart page →

610
tufsigstoreVerified publisher0.1.321 of 1See more

tuf sigstore 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sigstore/scaffolding/serverdigest-pinnedae8eb69c7b70
stdlib@go1.25.0
1.25.10

Open the chart page →

768
counter-dhlsikademo0.3.01 of 3See more

counter-dhl sikademo 0.3.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ondrejsika/counter:latestd95eaeee2172
stdlib@go1.26.2
1.25.10

Open the chart page →

4,966
test-hello-worldsikademo0.1.01 of 1See more

test-hello-world sikademo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
stdlib@go1.26.2
1.25.10

Open the chart page →

1,215
hello-worldsikalabs0.17.01 of 1See more

hello-world sikalabs 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sikalabs/hello-world-server:latestcf8538bf6489
stdlib@go1.26.2
1.25.10

Open the chart page →

1,215
hello-world-examplesikalabs0.1.31 of 1See more

hello-world-example sikalabs 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
stdlib@go1.26.2
1.25.10

Open the chart page →

1,215
keycloak-configuratorsikalabs0.2.01 of 1See more

keycloak-configurator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hashicorp/terraform:1.44dcb45513699
stdlib@go1.19.6
1.25.10

Open the chart page →

2,870
loggensikalabs0.1.01 of 1See more

loggen sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/slu:v0.72.07bd267f30247
stdlib@go1.21.4
1.25.10

Open the chart page →

2,347
metrics-generatorsikalabs0.2.01 of 1See more

metrics-generator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/slu:v0.34.0fdc0c6711add
stdlib@go1.17.6
1.25.10

Open the chart page →

2,381
olmsikalabs0.3.01 of 2See more

olm sikalabs 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned40d0363f4aa6
stdlib@go1.22.3
1.25.10

Open the chart page →

1,162
signpostsikalabs0.5.01 of 1See more

signpost sikalabs 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/signpost:v0.7.0c8b0e21d61b4
stdlib@go1.24.6
1.25.10

Open the chart page →

316
bytesafe-cesimcube1.0.41 of 3See more

bytesafe-ce simcube 1.0.4

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bytesafe/bytesafe-ce:v1.0.4ee287384c005
stdlib@go1.20.5
1.25.10

Open the chart page →

1,502
keydbsinextraVerified publisher0.31.01 of 1See more

keydb sinextra 0.31.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
stdlib@go1.18.10
1.25.10

Open the chart page →

2,172
mongosqldsinextraVerified publisher0.3.71 of 1See more

mongosqld sinextra 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosqld:2.14.230b826375ed42
stdlib@go1.23.8
1.25.10

Open the chart page →

2,613
mongosyncsinextraVerified publisher0.4.01 of 1See more

mongosync sinextra 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
stdlib@go1.24.4
1.25.10

Open the chart page →

2,874
pgbouncersinextraVerified publisher0.17.01 of 1See more

pgbouncer sinextra 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
stdlib@go1.24.6
1.25.10

Open the chart page →

1,969
system-upgrade-controllersinextraVerified publisher0.6.11 of 1See more

system-upgrade-controller sinextra 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
rancher/system-upgrade-controller:v0.19.234fa058fe453
stdlib@go1.25.8
1.25.10

Open the chart page →

253
tailscalesinextraVerified publisher0.18.11 of 2See more

tailscale sinextra 0.18.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/coredns/coredns:v1.13.294caebb89dcf
stdlib@go1.25.5
1.25.10

Open the chart page →

1,082
talos-backupsinextraVerified publisher0.1.21 of 1See more

talos-backup sinextra 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/siderolabs/talos-backup:v0.1.0-beta.203a71e140f1d
stdlib@go1.23.0
1.25.10

Open the chart page →

905
teamcitysinextraVerified publisher1.0.21 of 3See more

teamcity sinextra 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/docker:26.1-dinddd43b430341a
stdlib@go1.21.11
1.25.10

Open the chart page →

2,448
mariadbsitepilot1.0.31 of 1See more

mariadb sitepilot 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mariadb:10.692e50059ea0a
stdlib@go1.24.6
1.25.10

Open the chart page →

2,876
network-observerskupper-network-observerVerified publisher2.2.21 of 3See more

network-observer skupper-network-observer 2.2.2

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v3.11.3c0b857aead0d
stdlib@go1.26.2
1.25.10

Open the chart page →

618
skyhook-agentskyhookVerified publisher1.3.151 of 1See more

skyhook-agent skyhook 1.3.15

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/skyhook-io/skyhook-connector:v2.3.23deb8e4b1aaa
stdlib@go1.26.0
1.25.10

Open the chart page →

299
mimirskyloud-helm-chartsVerified publisher5.5.14 of 5See more

mimir skyloud-helm-charts 5.5.1

4 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/mimir:r292-5f018727476e456c738
stdlib@go1.22.3
1.25.10
grafana/rollout-operator:v0.14.03409edfb45c7
stdlib@go1.22.1
1.25.10
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
stdlib@go1.21.1
1.25.10
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
stdlib@go1.21.1
1.25.10

Open the chart page →

10,819
tailscale-operatorskyloud-helm-chartsVerified publisher1.70.31 of 1See more

tailscale-operator skyloud-helm-charts 1.70.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
tailscale/k8s-operator:v1.70.08edd06cf5bac
stdlib@go1.22.5
1.25.10

Open the chart page →

1,045
skypilot-prometheus-serverskypilotVerified publisher0.11.13 of 3See more

skypilot-prometheus-server skypilot 0.11.1

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.83.078aec597d87a
stdlib@go1.24.3
1.25.10
quay.io/prometheus/prometheus:v3.4.19abc6cf6aea7
stdlib@go1.24.3
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.15.0db384bf43222
stdlib@go1.23.5
1.25.10

Open the chart page →

2,360
pritunl-zerosky-sailVerified publisher0.3.31 of 1See more

pritunl-zero sky-sail 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
pritunl/pritunl-zero:1.0.3648.460f2943e0d41b
stdlib@go1.25.4
1.25.10

Open the chart page →

660
yopasssky-sailVerified publisher1.3.11 of 2See more

yopass sky-sail 1.3.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
jhaals/yopass:12.5.0916a1cf45d36
stdlib@go1.25.5
1.25.10

Open the chart page →

3,065
config-connector-templaterslamdev0.0.51 of 1See more

config-connector-templater slamdev 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
slamdev/config-connector-templater:0.0.3a234541c9fa8
stdlib@go1.16.5
1.25.10

Open the chart page →

2,110
flux-notifierslamdev0.0.71 of 1See more

flux-notifier slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
slamdev/flux-notifier:v0.0.8b173d809132d
stdlib@go1.13.11
1.25.10

Open the chart page →

2,016
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
stdlib@go1.17.9
1.25.10

Open the chart page →

9,261
gke-preemptible-notifierslamdev0.0.61 of 1See more

gke-preemptible-notifier slamdev 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
slamdev/gke-preemptible-notifier:v0.0.3d5d6430108a3
stdlib@go1.13.11
1.25.10

Open the chart page →

2,861
octavia-ingress-controllerslamdev0.0.71 of 1See more

octavia-ingress-controller slamdev 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
k8scloudprovider/octavia-ingress-controller:v1.20.26ddf80b34265
stdlib@go1.15
1.25.10

Open the chart page →

2,761
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
stdlib@go1.13.5
1.25.10

Open the chart page →

8,732
slothsloth0.16.02 of 2See more

sloth sloth 0.16.0

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/slok/sloth:v0.16.0f0f0075b0d45
stdlib@go1.26.1
1.25.10
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
stdlib@go1.25.1
1.25.10

Open the chart page →

4,007
oi-slurm-cluster-chartslurm-cluster-chart0.25.11 of 4See more

oi-slurm-cluster-chart slurm-cluster-chart 0.25.1

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mariadb:10.10334b315c10e5
stdlib@go1.18.2
1.25.10

Open the chart page →

4,390
slurm-cluster-chartslurm-cluster-chart0.25.01 of 4See more

slurm-cluster-chart slurm-cluster-chart 0.25.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mariadb:10.10334b315c10e5
stdlib@go1.18.2
1.25.10

Open the chart page →

4,390
smarter-k3s-edgesmarterVerified publisher0.0.121 of 2See more

smarter-k3s-edge smarter 0.0.12

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
rancher/k3s:v1.25.3-k3s1eaa270df79cc
stdlib@go1.19.2
1.25.10

Open the chart page →

3,471
smarter-device-managersmarter-device-manager0.0.101 of 1See more

smarter-device-manager smarter-device-manager 0.0.10

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/smarter-device-manager:v1.20.12228f7f44594a
stdlib@go1.19.3
1.25.10

Open the chart page →

1,151
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
stdlib@go1.19.8
1.25.10

Open the chart page →

5,621
smart-proxysmart-proxyVerified publisher0.1.11 of 1See more

smart-proxy smart-proxy 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
isebben/smart-proxy:latestab59a71ee9f4
stdlib@go1.24.13
1.25.10

Open the chart page →

282
smtp-gotifysmtp-gotifyVerified publisher0.1.41 of 1See more

smtp-gotify smtp-gotify 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/reiml/smtp-gotify:latest80ffa9d2044a
stdlib@go1.23.9
1.25.10

Open the chart page →

562
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
helga09/my_sql_shoes:v1.1.1a03657d97897
stdlib@go1.18.2
1.25.10

Open the chart page →

7,628
avalanchesnowplow-devopsVerified publisher0.12.11 of 6See more

avalanche snowplow-devops 0.12.1

1 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/nats:2.10-alpineb83efabe3e7d
stdlib@go1.24.2
1.25.10

Open the chart page →

1,330
vertical-pod-autoscalersnowplow-devopsVerified publisher0.1.13 of 3See more

vertical-pod-autoscaler snowplow-devops 0.1.1

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/autoscaling/vpa-admission-controller:1.4.171d817780aa9
stdlib@go1.24.3
1.25.10
registry.k8s.io/autoscaling/vpa-recommender:1.4.140b6d76e8526
stdlib@go1.24.3
1.25.10
registry.k8s.io/autoscaling/vpa-updater:1.4.18ebf269779c1
stdlib@go1.24.3
1.25.10

Open the chart page →

1,254
snspingsnsping1.2.91 of 1See more

snsping snsping 1.2.9

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
udhos/snsping:1.2.96ae70677b6a3
stdlib@go1.23.4
1.25.10

Open the chart page →

1,343
axonhubsnubisks0.1.01 of 3See more

axonhub snubisks 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.10

Open the chart page →

684
cost-analyzersoftonic2.5.53 of 6See more

cost-analyzer softonic 2.5.5

3 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/grafana:11.5.28b37a2f028f1
stdlib@go1.23.5
1.25.10
gcr.io/kubecost1/cost-model:prod-2.5.502b90651367f
stdlib@go1.23.3
1.25.10
quay.io/prometheus/prometheus:v3.2.16927e0919a14
stdlib@go1.23.6
1.25.10

Open the chart page →

8,166
csi-gcs-softonic-factorysoftonic0.9.31 of 4See more

csi-gcs-softonic-factory softonic 0.9.3

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ofekmeister/csi-gcs:v0.9.030d70fa9211b
stdlib@go1.18.2
1.25.10

Open the chart page →

1,849

Container images carrying it

4,520 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
kubemod/kubemod:v0.13.0cadca39288ad
stdlib@go1.14.7
1.25.10
1
kubemod/kubemod-crt:v1.3.0028347c9fa77
stdlib@go1.18.1
1.25.10
1
kubeoperator/webkubectl:v2.4.0be8f0d624640
stdlib@go1.14
1.25.10
1
kubeovn/kube-ovn:v1.14.06722b54eb5c0
stdlib@go1.24.4
1.25.10
1
kuberay/operator:v1.0.04e6ac8a3a2c4
stdlib@go1.19.13
1.25.10
1
kubernetesui/dashboard:v2.6.1290bebc3cd96
stdlib@go1.19
1.25.10
1
kubernetesui/dashboard:v2.7.02e500d29e9d5
stdlib@go1.19
1.25.10
1
kubernetesui/dashboard-api:1.7.060595892c2cf
stdlib@go1.22.3
1.25.10
1
kubernetesui/dashboard-auth:1.1.307135c09e9ff
stdlib@go1.22.2
1.25.10
1
kubernetesui/dashboard-metrics-scraper:1.1.17747d363c9fe
stdlib@go1.22.1
1.25.10
1
kubernetesui/dashboard-web:1.4.04445b31a2c25
stdlib@go1.22.3
1.25.10
1
kubernetesui/metrics-scraper:v1.0.876049887f07a
stdlib@go1.18.2
1.25.10
1
kubesec/kubesec:latest025a365d9f18
stdlib@go1.23.3
1.25.10
1
kubesec/kubesec:v2.13.0c0f3b0673578
stdlib@go1.19.7
1.25.10
1
kubeshop/kube-webhook-certgen:0.0.7866827c379ae
stdlib@go1.23.6
1.25.10
1
kubeshop/kusk-gateway:v1.5.48b5bfd57a3ce
stdlib@go1.19.4
1.25.10
1
kubeshop/kusk-gateway-api:v1.5.4126c713cf7d8
stdlib@go1.18.10
1.25.10
1
kubeshop/kusk-gateway-api-websocket:v1.5.43b4f8345ca5c
stdlib@go1.18.10
1.25.10
1
kubeshop/testkube-api-server:0.11.160ad97f07a78b
stdlib@go1.17.8
1.25.10
1
kubeshop/testkube-api-server:2.1.162e97dc620d9b4
stdlib@go1.23.10
1.25.10
1
kubeshop/testkube-logs-server:latest094186b19698
stdlib@go1.24.1
1.25.10
1
kubeshop/testkube-minio:2025.10d8e1af6aca99
stdlib@go1.26.0
1.25.10
1
kubeshop/testkube-operator:2.1.154def0d0f0d4ab
stdlib@go1.23.9
1.25.10
1
kubeshop/tracetest:v1.7.173d7e3a2db43
stdlib@go1.21.13
1.25.10
1
kubesphere/fluentbit-operator:v0.9.0b87db3c57cb3
stdlib@go1.13.15
1.25.10
1
kubesphere/fluent-operator:v1.0.2702df77228c6
stdlib@go1.16.6
1.25.10
1
kubesphere/ks-extensions-museum:latest29681958f220
stdlib@go1.20.12
1.25.10
1
kubesphere/kubectl:v1.27.1649b445b1b732
stdlib@go1.18.10
1.25.10
1
kubesphere/openelb:v0.5.0b5b665c4672c
stdlib@go1.15.15
1.25.10
1
kubesphere/openelb:v0.4.4ed7311a0f9e4
stdlib@go1.15.15
1.25.10
1
kubesphere/porter:v0.4.38d1ed5ee1d2e
stdlib@go1.15.15
1.25.10
1
kubesphere/pvc-autoresizer:v0.19a18a16c7b87
stdlib@go1.16.10
1.25.10
1
kubesphere/storageclass-accessor:v0.1.1eac8f273a9b6
stdlib@go1.16.10
1.25.10
1
kubestar/event-exporter:latest656606941255
stdlib@go1.20.14
1.25.10
1
kubesuite/kubereport:latest0262424ee702
stdlib@go1.22.0
1.25.10
1
kubevious/ui:1.2.16233e84bdd59
stdlib@go1.19.1
1.25.10
1
kubevip/kube-vip-cloud-provider:v0.0.12f8f4e3401f76
stdlib@go1.24.2
1.25.10
1
kubevirtmanager/kubevirt-manager:1.5.41b98f1b5977a
stdlib@go1.25.5
1.25.10
1
kubevirtmanager/kubevirt-manager:1.3.3df3ea27d4a9e
stdlib@go1.21.7
1.25.10
1
kudobuilder/controller:v0.9.069072d979708
stdlib@go1.13
1.25.10
1
kupnu4x/kube-vault-controller:1.2.03be59109f3d6
stdlib@go1.21.1
1.25.10
1
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
stdlib@go1.20.14
1.25.10
1
kusionstack/karpor:v0.6.4b707d3bf0abd
stdlib@go1.22.12
1.25.10
1
kusionstack/kuperator:v0.7.4d2f72ae1d2f2
stdlib@go1.24.13
1.25.10
1
kusionstack/kusion:v0.14.0126c8f0b0976
stdlib@go1.22.10
1.25.10
1
kusionstack/operating:v0.5.0c28bd96b986b
stdlib@go1.19.13
1.25.10
1
kvalitetsit/go-loop:1.1.0d07f449d75ed
stdlib@go1.25.1
1.25.10
1
kvalitetsit/kitargus:2026-03-09-091234-10013c4c5cde2d9371c
stdlib@go1.25.8
1.25.10
1
kvalitetsit/metadoc-app:maine89e351733ad
stdlib@go1.19.5
1.25.10
1
kvalitetsit/metadoc-web:mainf57e7553f5bd
stdlib@go1.16
1.25.10
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.