StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,940
of 17,790 indexed, latest versions
Container images
4,539
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 3,940 of 17,790 indexed charts deploy, on 4,539 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,539
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

3,940 by stars
ChartLatestAffected imagesRadar Score
metastore-operatornineinfra-charts0.7.01 of 1See more

metastore-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
nineinfra/metastore-operator:v0.7.011259032fb04
stdlib@go1.20.8
1.25.10

Open the chart page →

815
minio-directpvnineinfra-charts4.0.85 of 5See more

minio-directpv nineinfra-charts 4.0.8

5 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/minio/csi-node-driver-registrardigest-pinnedc805fdc16676
stdlib@go1.20.3
1.25.10
quay.io/minio/csi-provisionerdigest-pinned7b5c070ec70d
stdlib@go1.20.3
1.25.10
quay.io/minio/csi-resizerdigest-pinned819f68a4daf7
stdlib@go1.20.3
1.25.10
quay.io/minio/directpv:v4.0.84560083eb77d
stdlib@go1.21.0
1.25.10
quay.io/minio/livenessprobedigest-pinnedf3bc9a84f149
stdlib@go1.20.3
1.25.10

Open the chart page →

7,067
minio-operatornineinfra-charts5.0.91 of 1See more

minio-operator nineinfra-charts 5.0.9

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
minio/operator:v5.0.9170b154d2c61
stdlib@go1.21.1
1.25.10

Open the chart page →

3,425
nineinfranineinfra-charts0.7.01 of 1See more

nineinfra nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
nineinfra/nineinfra:v0.7.0d4aad414eccd
stdlib@go1.21.3
1.25.10

Open the chart page →

1,120
redisnineinfra-charts0.7.51 of 1See more

redis nineinfra-charts 0.7.5

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/redis:7.2.3a7cee7c8178f
stdlib@go1.18.2
1.25.10

Open the chart page →

3,943
supersetnineinfra-charts0.11.21 of 4See more

superset nineinfra-charts 0.11.2

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
apache/superset:dockerizeafe59523a6c8
stdlib@go1.20.4
1.25.10

Open the chart page →

1,439
zookeeper-operatornineinfra-charts0.7.01 of 1See more

zookeeper-operator nineinfra-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
nineinfra/zookeeper-operator:v0.7.0af6eb2f37bfc
stdlib@go1.21.3
1.25.10

Open the chart page →

723
node-debug-dashboardnode-debug-dashboardVerified publisher0.3.21 of 1See more

node-debug-dashboard node-debug-dashboard 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
stdlib@go1.23.3
1.25.10

Open the chart page →

6,888
cosmoshub-rpcnodeifyVerified publisher1.0.71 of 2See more

cosmoshub-rpc nodeify 1.0.7

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/cosmos/gaia:v25.1.0f115777d1112
stdlib@go1.24.5
1.25.10

Open the chart page →

2,014
cosmos-nodenodeifyVerified publisher2.6.01 of 2See more

cosmos-node nodeify 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/cosmos/gaia:v25.1.0f115777d1112
stdlib@go1.24.5
1.25.10

Open the chart page →

2,014
firehose-corenodeifyVerified publisher1.2.61 of 2See more

firehose-core nodeify 1.2.6

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
stdlib@go1.24.10
1.25.10

Open the chart page →

6,558
firehose-ethereumnodeifyVerified publisher1.7.11 of 2See more

firehose-ethereum nodeify 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
stdlib@go1.25.7
1.25.10

Open the chart page →

5,667
indexer-toolsnodeifyVerified publisher2.1.11 of 1See more

indexer-tools nodeify 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
stdlib@go1.19.3
1.25.10

Open the chart page →

2,919
substreams-tier-2nodeifyVerified publisher1.1.31 of 1See more

substreams-tier-2 nodeify 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
stdlib@go1.18.5
1.25.10

Open the chart page →

4,735
nodejsweeklynodejsweekly1.1.01 of 1See more

nodejsweekly nodejsweekly 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
zufardhiyaulhaq/nodejsweekly:v1.1.0306859a3f167
stdlib@go1.16.15
1.25.10

Open the chart page →

1,489
node-labels-exporternode-labels-exporter0.1.91 of 1See more

node-labels-exporter node-labels-exporter 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/node-labels-exporter:v0.5.1dd6875a0a963
stdlib@go1.25.5
1.25.10

Open the chart page →

292
grafananodepulse7.1.01 of 1See more

grafana nodepulse 7.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/grafana:10.2.36b5b37eb35bb
stdlib@go1.21.3
1.25.10

Open the chart page →

2,973
prometheusnodepulse25.0.06 of 6See more

prometheus nodepulse 25.0.0

6 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
stdlib@go1.20.6
1.25.10
quay.io/prometheus/alertmanager:v0.26.0361db356b330
stdlib@go1.20.7
1.25.10
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
stdlib@go1.20.6
1.25.10
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
stdlib@go1.21.0
1.25.10
quay.io/prometheus/pushgateway:v1.6.05111de00e969
stdlib@go1.20.4
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
stdlib@go1.20.7
1.25.10

Open the chart page →

7,746
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
robjuz/postgresql-nominatim:latest805c7bab76df
stdlib@go1.16.5
1.25.10

Open the chart page →

22,735
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

5,900
ingress-helm-chartnotesprojectchart0.1.02 of 2See more

ingress-helm-chart notesprojectchart 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
stdlib@go1.20.5
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

2,956
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
stdlib@go1.17.10
1.25.10

Open the chart page →

4,558
keycloak-helm-chartnotesprojectchart0.1.01 of 2See more

keycloak-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,649
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

6,878
registration-ms-helm-chartnotesprojectchart0.1.01 of 2See more

registration-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

5,942
user-data-ms-helm-chartnotesprojectchart0.1.01 of 2See more

user-data-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

5,899
vault-helm-chartnotesprojectchart0.1.01 of 1See more

vault-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/vault:1.13.3f98ac9dd97b0
stdlib@go1.20.4
1.25.10

Open the chart page →

2,254
notification-componentnotification-component1.0.01 of 4See more

notification-component notification-component 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/notification-component-php:latestcd9656e6bc2c
stdlib@go1.13.10
1.25.10

Open the chart page →

7,536
clusterfannousefreakVerified publisher0.1.21 of 1See more

clusterfan nousefreak 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/nousefreak/clusterfan:v0.1.04ea05e2a7b57
stdlib@go1.17.5
1.25.10

Open the chart page →

1,791
giteanovum-rgi-charts2.1.31 of 3See more

gitea novum-rgi-charts 2.1.3

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gitea/gitea:1.13.0d5ab14cd29af
stdlib@go1.15.5
1.25.10

Open the chart page →

4,861
nfs-server-provisionernovum-rgi-charts1.1.21 of 1See more

nfs-server-provisioner novum-rgi-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
stdlib@go1.13.4
1.25.10

Open the chart page →

2,806
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
stdlib@go1.17.11
1.25.10

Open the chart page →

27,493
nri-memory-policynri-pluginsVerified publisher0.14.01 of 1See more

nri-memory-policy nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-memory-policy:v0.14.0531d21ec4ba2
stdlib@go1.26.0
1.25.10

Open the chart page →

272
nri-memory-qosnri-pluginsOfficialVerified publisher0.14.01 of 1See more

nri-memory-qos nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-memory-qos:v0.14.0c7c5c24ed894
stdlib@go1.26.0
1.25.10

Open the chart page →

272
nri-resctrl-monnri-pluginsVerified publisher0.14.01 of 1See more

nri-resctrl-mon nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-resctrl-mon:v0.14.0a9c9775fab70
stdlib@go1.26.0
1.25.10

Open the chart page →

272
nri-resource-annotatornri-pluginsVerified publisher0.14.01 of 1See more

nri-resource-annotator nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-resource-annotator:v0.14.08100a19e85f7
stdlib@go1.26.0
1.25.10

Open the chart page →

235
nri-resource-policy-templatenri-pluginsVerified publisher0.14.01 of 1See more

nri-resource-policy-template nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-resource-policy-template:v0.14.00edfc075277b
stdlib@go1.26.0
1.25.10

Open the chart page →

286
nri-sgx-epcnri-pluginsVerified publisher0.14.01 of 1See more

nri-sgx-epc nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-sgx-epc:v0.14.0b4c4d0d83c14
stdlib@go1.26.0
1.25.10

Open the chart page →

272
cnaos-pvc-populatornutanix-helm-releasesVerified publisher1.1.0-174-prod1 of 2See more

cnaos-pvc-populator nutanix-helm-releases 1.1.0-174-prod

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
stdlib@go1.17.3
1.25.10

Open the chart page →

1,838
nai-knative-istio-controllernutanix-helm-releasesVerified publisher1.13.12 of 2See more

nai-knative-istio-controller nutanix-helm-releases 1.13.1

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.13.1a5b041ba3c9e
stdlib@go1.21.5
1.25.10
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.13.1f066376eee17
stdlib@go1.21.5
1.25.10

Open the chart page →

1,566
nai-knative-servingnutanix-helm-releasesVerified publisher1.13.14 of 4See more

nai-knative-serving nutanix-helm-releases 1.13.1

4 of the 4 container images this version deploys carry CVE-2026-42499.

Open the chart page →

3,762
nutanix-flow-cninutanix-helm-releasesVerified publisher1.1.04 of 7See more

nutanix-flow-cni nutanix-helm-releases 1.1.0

4 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/nats:2.10-alpineb83efabe3e7d
stdlib@go1.24.2
1.25.10
natsio/nats-box:0.14.1a67913df95f1
stdlib@go1.21.3
1.25.10
natsio/nats-server-config-reloader:0.13.0b3359eeb10bf
stdlib@go1.20.5
1.25.10
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.1.39751856cacc8
stdlib@go1.21.13
1.25.10

Open the chart page →

4,996
firecrawlobeoneVerified publisher3.0.42 of 5See more

firecrawl obeone 3.0.4

2 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/firecrawl/firecrawl:2.11.340529f38bab2c3
stdlib@go1.24.13
1.25.10
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
stdlib@go1.24.6
1.25.10

Open the chart page →

10,060
observabilitysecobservabilitysec0.0.11 of 2See more

observabilitysec observabilitysec 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
jdvalencia422/observabilitysec:latesta80b6e47a7b8
stdlib@go1.18.4
1.25.10

Open the chart page →

1,179
lensoci-ai-incubations0.1.1411 of 16See more

lens oci-ai-incubations 0.1.14

11 of the 16 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
stdlib@go1.22.7
1.25.10
grafana/grafana:12.1.1a1701c218024
stdlib@go1.24.6
1.25.10
library/postgres:134689940c6838
stdlib@go1.24.6
1.25.10
quay.io/jetstack/cert-manager-cainjector:v1.13.2858fee0c4af0
stdlib@go1.20.10
1.25.10
quay.io/jetstack/cert-manager-controller:v1.13.29c67cf8c92d8
stdlib@go1.20.10
1.25.10
quay.io/jetstack/cert-manager-webhook:v1.13.20a9470447ebf
stdlib@go1.20.10
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.85.0ebb560bcb6bd
stdlib@go1.24.6
1.25.10
quay.io/prometheus/prometheus:v3.5.063805ebb8d2b
stdlib@go1.24.5
1.25.10
quay.io/prometheus/pushgateway:v1.11.103738d278e08
stdlib@go1.24.1
1.25.10
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
stdlib@go1.24.6
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.2050a34002d5b
stdlib@go1.24.6
1.25.10

Open the chart page →

17,134
ocisocis-community0.1.01 of 1See more

ocis ocis-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
owncloud/ocis:8.0.1b38fd8fdd58f
stdlib@go1.25.7
1.25.10

Open the chart page →

2,353
cluster-gateway-addon-managerocm-helm-chartsVerified publisher1.4.01 of 1See more

cluster-gateway-addon-manager ocm-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
oamdev/cluster-gateway-addon-manager:v1.4.01bcae00bd7b0
stdlib@go1.17.10
1.25.10

Open the chart page →

1,607
cluster-proxyocm-helm-chartsVerified publisher0.12.01 of 1See more

cluster-proxy ocm-helm-charts 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/cluster-proxy:v0.12.035f9c3ad644a
stdlib@go1.22.4
1.25.10

Open the chart page →

1,198
dynamic-scoring-frameworkocm-helm-chartsVerified publisher0.1.02 of 2See more

dynamic-scoring-framework ocm-helm-charts 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/dynamic-scoring-addon:latest7e571a08ec1a
stdlib@go1.24.13
1.25.10
quay.io/open-cluster-management/dynamic-scoring-controller:latest587f5bc8f2ed
stdlib@go1.24.13
1.25.10

Open the chart page →

981
kueue-addonocm-helm-chartsVerified publisher0.1.41 of 1See more

kueue-addon ocm-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/open-cluster-management/kueue-addon:v0.1.47f728514fead
stdlib@go1.24.6
1.25.10

Open the chart page →

1,595

Container images carrying it

4,539 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.25.10
3
prom/statsd-exporter:v0.28.04e7a1f00b9b2
stdlib@go1.23.2
1.25.10
3
prom/statsd-exporter:v0.18.0d23aca343b86
stdlib@go1.14.7
1.25.10
3
rancher/kubectl:v1.34.1090bef429ed1
stdlib@go1.24.6
1.25.10
3
rcdelacruz/my-strapi-app:js-amd6438007f358355
stdlib@go1.19.4
1.25.10
3
rss3/op-node:d2c5ced00901227473fc196fda838191f0cb4e02d1d2ae6efd05
stdlib@go1.21.3
1.25.10
3
signoz/zookeeper:3.7.1fcc4a3288154
stdlib@go1.21.2
1.25.10
3
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.25.10
3
traefik/whoami:v1.11.0200689790a0a
stdlib@go1.24.1
1.25.10
3
tykio/tyk-k8s-bootstrap-post:v2.2.055b4d31c7a01
stdlib@go1.22.7
1.25.10
3
tykio/tyk-k8s-bootstrap-pre-delete:v2.2.01489b58f642b
stdlib@go1.22.7
1.25.10
3
tykio/tyk-k8s-bootstrap-pre-install:v2.2.0205215b815a4
stdlib@go1.22.7
1.25.10
3
vikunja/vikunja:0.24.6ed1f3ed467fe
stdlib@go1.23.4
1.25.10
3
wallabag/wallabag:2.6.144a527e027e0d
stdlib@go1.25.1
1.25.10
3
gcr.io/trillian-opensource-ci/db_server2a685a38dd01
stdlib@go1.18.2
1.25.10
3
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
stdlib@go1.23.4
1.25.10
3
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
stdlib@go1.16.5
1.25.10
3
ghcr.io/dexidp/dex:v2.45.18499afd690c4
stdlib@go1.25.6
1.25.10
3
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
stdlib@go1.19.8
1.25.10
3
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
stdlib@go1.25.6
1.25.10
3
ghcr.io/kuberocketci/krci-cache:0.3.05f6cd61e6da6
stdlib@go1.25.8
1.25.10
3
ghcr.io/sigstore/scaffolding/createctconfig:v0.7.313a061734c5be
stdlib@go1.25.0
1.25.10
3
ghcr.io/sigstore/scaffolding/createdb3cee6c78973b
stdlib@go1.25.0
1.25.10
3
ghcr.io/sigstore/scaffolding/ct_server:v0.7.3166664ba563e7
stdlib@go1.25.0
1.25.10
3
ghcr.io/sigstore/scaffolding/trillian_log_server5a878e4e4f03
stdlib@go1.26.0
1.25.10
3
ghcr.io/sigstore/scaffolding/trillian_log_signer28c5ff40963f
stdlib@go1.26.0
1.25.10
3
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
stdlib@go1.18.2
1.25.10
3
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
stdlib@go1.19.7
1.25.10
3
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
stdlib@go1.26.2
1.25.10
3
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
stdlib@go1.15.7
1.25.10
3
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
stdlib@go1.19.8
1.25.10
3
quay.io/devtron/ai-agent:0.0.16545dac92173
stdlib@go1.22.4
1.25.10
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
stdlib@go1.17.13
1.25.10
3
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
stdlib@go1.15.2
1.25.10
3
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
stdlib@go1.15.2
1.25.10
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
stdlib@go1.15.2
1.25.10
3
quay.io/devtron/calico-networking:pod2daemon-flexvol-v3.19.1c1f36b6e18e0
stdlib@go1.15.2
1.25.10
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
stdlib@go1.24.0
1.25.10
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
stdlib@go1.25.0
1.25.10
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
stdlib@go1.25.0
1.25.10
3
quay.io/devtron/clair:4.3.675fb847ac045
stdlib@go1.17.6
1.25.10
3
quay.io/devtron/cost-sync:172ef62b-1159-39429edf210d763ca
stdlib@go1.24.13
1.25.10
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
stdlib@go1.25.0
1.25.10
3
quay.io/devtron/discord-alertmanager:ceceb475-65-35203586419ca31
stdlib@go1.18.1
1.25.10
3
quay.io/devtron/git-sensor:94237c18-950-3941803c7bf249aa1
stdlib@go1.25.5
1.25.10
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
stdlib@go1.18
1.25.10
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
stdlib@go1.25.6
1.25.10
3
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
stdlib@go1.16.10
1.25.10
3
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
stdlib@go1.25.5
1.25.10
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
stdlib@go1.14.15
1.25.10
3

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.