StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,934
of 17,803 indexed, latest versions
Container images
4,529
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 3,934 of 17,803 indexed charts deploy, on 4,529 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+180 more1.25.104,529
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

3,934 by stars
ChartLatestAffected imagesRadar Score
forkliftforklift0.1.42 of 2See more

forklift forklift 0.1.4

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wuhan005/forklift:daemon4e6da210e449
stdlib@go1.19.8
1.25.10
wuhan005/forklift:controllerbfbe82d59850
stdlib@go1.19.8
1.25.10

Open the chart page →

1,814
ledgerformance1.2.01 of 1See more

ledger formance 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
stdlib@go1.18.10
1.25.10

Open the chart page →

4,672
forwardforward1.3.11 of 1See more

forward forward 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
udhos/forward:1.1.312e120d39fdb
stdlib@go1.20.5
1.25.10

Open the chart page →

2,215
maxscalefour-allportalVerified publisher4.1.162 of 3See more

maxscale four-allportal 4.1.16

2 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:10.6.12-debian-11-r1643a70df0e7c6
stdlib@go1.19.7
1.25.10
bitnamilegacy/mysqld-exporter:0.14.0-debian-11-r10304768b637c94
stdlib@go1.17.8
1.25.10

Open the chart page →

6,611
readium-lcpserverfpetr0.0.51 of 3See more

readium-lcpserver fpetr 0.0.5

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/fpetr/readium-lcp-server-docker-helm/lcpserver:1.9.0324f9b7b689c
stdlib@go1.22.0
1.25.10

Open the chart page →

1,373
readium-lsdserverfpetr0.0.11 of 2See more

readium-lsdserver fpetr 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/fpetr/readium-lcp-server-docker-helm/lsdserver:1.9.0cdba39e3f3d0
stdlib@go1.22.0
1.25.10

Open the chart page →

1,373
ff-testfrankframework0.7.61 of 2See more

ff-test frankframework 0.7.6

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:17-bookworm051f7b7b3abd
stdlib@go1.24.6
1.25.10

Open the chart page →

1,796
frank2examplefrankframework0.7.41 of 2See more

frank2example frankframework 0.7.4

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:17-bookworm051f7b7b3abd
stdlib@go1.24.6
1.25.10

Open the chart page →

1,796
free5gc-amffree5gc-amfVerified publisher0.1.31 of 1See more

free5gc-amf free5gc-amf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/amf:v3.4.31bc96ff5a2a6
stdlib@go1.21.8
1.25.10

Open the chart page →

902
free5gc-ausffree5gc-ausfVerified publisher0.1.31 of 1See more

free5gc-ausf free5gc-ausf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/ausf:v3.4.3687ff4daf5da
stdlib@go1.21.8
1.25.10

Open the chart page →

911
free5gc-chffree5gc-chfVerified publisher0.1.31 of 1See more

free5gc-chf free5gc-chf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/chf:v3.4.3e2a4dd98a4ed
stdlib@go1.21.8
1.25.10

Open the chart page →

1,004
free5gc-nrffree5gc-nrfVerified publisher0.1.31 of 1See more

free5gc-nrf free5gc-nrf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/nrf:v3.4.399e46b860efb
stdlib@go1.21.8
1.25.10

Open the chart page →

919
free5gc-nssffree5gc-nssfVerified publisher0.1.31 of 1See more

free5gc-nssf free5gc-nssf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/nssf:v3.4.3dfe8c68c04b4
stdlib@go1.21.8
1.25.10

Open the chart page →

911
free5gc-pcffree5gc-pcfVerified publisher0.1.31 of 1See more

free5gc-pcf free5gc-pcf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/pcf:v3.4.3f712e8ecd927
stdlib@go1.21.8
1.25.10

Open the chart page →

903
free5gc-smffree5gc-smfVerified publisher0.1.31 of 1See more

free5gc-smf free5gc-smf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/smf:v3.4.360e38baa4b10
stdlib@go1.21.8
1.25.10

Open the chart page →

919
free5gc-udmfree5gc-udmVerified publisher0.1.31 of 1See more

free5gc-udm free5gc-udm 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/udm:v3.4.32f68df062a50
stdlib@go1.21.8
1.25.10

Open the chart page →

911
free5gc-udrfree5gc-udrVerified publisher0.1.31 of 1See more

free5gc-udr free5gc-udr 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/udr:v3.4.3c0783bcdcbdc
stdlib@go1.21.8
1.25.10

Open the chart page →

919
free5gc-upffree5gc-upfVerified publisher0.1.31 of 1See more

free5gc-upf free5gc-upf 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/upf:v3.4.3b6b362a39fdd
stdlib@go1.21.8
1.25.10

Open the chart page →

1,075
free5gc-webuifree5gc-webuiVerified publisher0.1.31 of 1See more

free5gc-webui free5gc-webui 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
free5gc/webui:v3.4.39adeb18492cb
stdlib@go1.21.8
1.25.10

Open the chart page →

1,256
powerdnsfsdrw080.1.31 of 4See more

powerdns fsdrw08 0.1.3

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
pschiffe/pdns-mysql:alpined196c796cafb
stdlib@go1.21.5
1.25.10

Open the chart page →

1,959
aptlyg0dscookie0.4.01 of 2See more

aptly g0dscookie 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
stdlib@go1.18.3
1.25.10

Open the chart page →

3,482
icinga2g0dscookie0.2.01 of 1See more

icinga2 g0dscookie 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
stdlib@go1.18.1
1.25.10

Open the chart page →

4,433
passboltg0dscookie0.5.22 of 2See more

passbolt g0dscookie 0.5.2

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mariadb:10.79a48ac9f196f
stdlib@go1.16.7
1.25.10
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
stdlib@go1.14.4
1.25.10

Open the chart page →

8,008
borgmaticgabe565Verified publisher0.10.11 of 1See more

borgmatic gabe565 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
stdlib@go1.23.5
1.25.10

Open the chart page →

2,582
castsponsorskipgabe565Verified publisher0.8.11 of 1See more

castsponsorskip gabe565 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
stdlib@go1.23.4
1.25.10

Open the chart page →

1,381
generic-device-plugingabe565Verified publisher0.1.31 of 1See more

generic-device-plugin gabe565 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:latestdc192e164c69
stdlib@go1.26.2
1.25.10

Open the chart page →

260
gotifygabe565Verified publisher0.4.01 of 1See more

gotify gabe565 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/gotify/server:2.6.104f4c4bb7cdd
stdlib@go1.23.3
1.25.10

Open the chart page →

763
hammondgabe565Verified publisher0.6.41 of 1See more

hammond gabe565 0.6.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.25.10

Open the chart page →

1,807
limogabe565Verified publisher0.8.01 of 1See more

limo gabe565 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/gabe565/limo:latest6dfdbc9853bb
stdlib@go1.20.12
1.25.10

Open the chart page →

1,330
matrimonygabe565Verified publisher0.7.01 of 1See more

matrimony gabe565 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/gabe565/matrimony:latestd39a9d7c3e1b
stdlib@go1.22.0
1.25.10

Open the chart page →

1,136
podgrabgabe565Verified publisher0.5.21 of 1See more

podgrab gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
stdlib@go1.15.2
1.25.10

Open the chart page →

2,401
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
stdlib@go1.19.8
1.25.10

Open the chart page →

13,300
smarter-device-managergabe565Verified publisher0.5.21 of 1See more

smarter-device-manager gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.11826b984e75d4
stdlib@go1.19.1
1.25.10

Open the chart page →

1,226
transsmutegabe565Verified publisher1.1.01 of 1See more

transsmute gabe565 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/gabe565/transsmute:latestc8ac95a30c31
stdlib@go1.24.1
1.25.10

Open the chart page →

801
guacamolegabibbo970.3.01 of 3See more

guacamole gabibbo97 0.3.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
stdlib@go1.24.6
1.25.10

Open the chart page →

6,475
galoygaloymoney0.34.74 of 24See more

galoy galoymoney 0.34.7

4 of the 24 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.25.10
oryd/hydra:v2.2.02c93beb5e5f2
stdlib@go1.21.5
1.25.10
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.25.10
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.25.10

Open the chart page →

8,730
galoy-depsgaloymoney0.10.208 of 9See more

galoy-deps galoymoney 0.10.20

8 of the 9 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
stdlib@go1.18.9
1.25.10
otel/opentelemetry-collector-k8s:0.111.032b3c8296dcc
stdlib@go1.23.2
1.25.10
quay.io/jetstack/cert-manager-cainjector:v1.14.39395dec77fcf
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-controller:v1.14.364adcb95ce09
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-startupapicheck:v1.14.3df8677135139
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
stdlib@go1.21.7
1.25.10
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
stdlib@go1.20.5
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

12,010
lndgaloymoney0.10.61 of 3See more

lnd galoymoney 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.25.10

Open the chart page →

2,162
monitoringgaloymoney0.12.215 of 6See more

monitoring galoymoney 0.12.21

5 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
stdlib@go1.23.1
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
stdlib@go1.23.2
1.25.10
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.10
quay.io/prometheus/prometheus:v2.55.0378f4e037035
stdlib@go1.23.2
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.25.10

Open the chart page →

5,336
galoygaloymoney20.34.74 of 24See more

galoy galoymoney2 0.34.7

4 of the 24 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.25.10
oryd/hydra:v2.2.02c93beb5e5f2
stdlib@go1.21.5
1.25.10
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.25.10
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.25.10

Open the chart page →

8,730
galoy-depsgaloymoney20.10.208 of 9See more

galoy-deps galoymoney2 0.10.20

8 of the 9 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
stdlib@go1.18.9
1.25.10
otel/opentelemetry-collector-k8s:0.111.032b3c8296dcc
stdlib@go1.23.2
1.25.10
quay.io/jetstack/cert-manager-cainjector:v1.14.39395dec77fcf
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-controller:v1.14.364adcb95ce09
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-startupapicheck:v1.14.3df8677135139
stdlib@go1.21.7
1.25.10
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
stdlib@go1.21.7
1.25.10
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
stdlib@go1.20.5
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

12,010
lndgaloymoney20.10.61 of 3See more

lnd galoymoney2 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.25.10

Open the chart page →

2,162
monitoringgaloymoney20.12.215 of 6See more

monitoring galoymoney2 0.12.21

5 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
stdlib@go1.23.1
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
stdlib@go1.23.2
1.25.10
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.10
quay.io/prometheus/prometheus:v2.55.0378f4e037035
stdlib@go1.23.2
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.25.10

Open the chart page →

5,336
gameserver-operatorgameserver-operator0.3.01 of 1See more

gameserver-operator gameserver-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/idebeijer/gameserver-operator:latest1b099cfe9e5e
stdlib@go1.25.7
1.25.10

Open the chart page →

383
pagesgary-pages1.0.01 of 3See more

pages gary-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,261
alertmanager-discordgeek-cookbookVerified publisher1.3.21 of 1See more

alertmanager-discord geek-cookbook 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
rogerrum/alertmanager-discord:1.0.3827593369625
stdlib@go1.17.4
1.25.10

Open the chart page →

1,045
anonaddygeek-cookbookVerified publisher6.0.01 of 1See more

anonaddy geek-cookbook 6.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
anonaddy/anonaddy:0.12.3957a95565166
stdlib@go1.18.3
1.25.10

Open the chart page →

4,792
apache-musicindexgeek-cookbookVerified publisher2.4.21 of 1See more

apache-musicindex geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
stdlib@go1.18.4
1.25.10

Open the chart page →

14,842
autobrrgeek-cookbookVerified publisher1.1.31 of 1See more

autobrr geek-cookbook 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/autobrr/autobrr:v1.10.0d4022cd32df5
stdlib@go1.19.3
1.25.10

Open the chart page →

2,236
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
stdlib@go1.16.7
1.25.10

Open the chart page →

16,237

Container images carrying it

4,529 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
rancher/local-path-provisioner:v0.0.329289da488b07
stdlib@go1.24.4
1.25.10
1
rancher/local-path-provisioner:v0.0.309b9148811700
stdlib@go1.23.1
1.25.10
1
rancher/local-path-provisioner:v0.0.20d5999b20a1b1
stdlib@go1.16.6
1.25.10
1
rancher/local-path-provisioner:v0.0.22e34c88ae0aff
stdlib@go1.16.15
1.25.10
1
rancher/mirrored-cloud-provider-vsphere:v1.31.1febfd0517838
stdlib@go1.22.8
1.25.10
1
rancher/mirrored-longhornio-csi-attacher:v4.11.0-20260428fe417c28a6b8
stdlib@go1.25.9
1.25.10
1
rancher/mirrored-longhornio-csi-node-driver-registrar:v2.16.0-20260428e82a8c8f800d
stdlib@go1.25.9
1.25.10
1
rancher/mirrored-longhornio-csi-provisioner:v5.3.0-202604289e519a21a77c
stdlib@go1.25.9
1.25.10
1
rancher/mirrored-longhornio-csi-resizer:v2.1.0-2026042841cb674d1154
stdlib@go1.25.9
1.25.10
1
rancher/mirrored-longhornio-csi-snapshotter:v8.5.0-202604281975fac3890f
stdlib@go1.25.9
1.25.10
1
rancher/nginx-ingress-controller:v1.14.5-hardened26cbc1e932b5b
stdlib@go1.24.13
1.25.10
1
rancher/pushprox-client:v0.1.0-rancher2-clienta41cd716c412
stdlib@go1.16.4
1.25.10
1
rancher/pushprox-proxy:v0.1.0-rancher2-proxy3126395b966c
stdlib@go1.16.4
1.25.10
1
rancher/system-upgrade-controller:v0.19.234fa058fe453
stdlib@go1.25.8
1.25.10
1
rancher/system-upgrade-controller:v0.18.09813f85653c8
stdlib@go1.25.3
1.25.10
1
rayselfs/aws-ec2-runtime-checker:v0.1.5562e5b2f81ce
stdlib@go1.24.11
1.25.10
1
rclone/rclone:1.63.008e1af3c8814
stdlib@go1.20.5
1.25.10
1
rclone/rclone:1.57.01e6eeabddc01
stdlib@go1.17.2
1.25.10
1
rclone/rclone:1.56.0f2fc45c8bc57
stdlib@go1.16.6
1.25.10
1
reallibrephotos/librephotos-frontend:1.0.358cdf5e93471
stdlib@go1.24.13
1.25.10
1
reaper99/recipya:v1.2.27f7ec3aeb88c
stdlib@go1.22.0
1.25.10
1
redislabs/operator:8.0.18-119078e713bb6a
stdlib@go1.26.1
1.25.10
1
redislabs/redisearch:2.4.1433561794c5c8
stdlib@go1.16.7
1.25.10
1
redpandadata/kminion:v2.3.0c05fa976428e
stdlib@go1.25.8
1.25.10
1
regclient/regsync:v0.8.33d8d8e40afb7
stdlib@go1.24.2
1.25.10
1
replicated/replicated-sdk:1.0.0-beta.318751b4963250
stdlib@go1.23.2
1.25.10
1
reportportal/migrations:5.15.4464468240d7b
stdlib@go1.24.6
1.25.10
1
reportportal/migrations:5.7.0da5d8e1395fe
stdlib@go1.13.6
1.25.10
1
reportportal/service-index:5.0.112b27a2d7a87d
stdlib@go1.17.1
1.25.10
1
reportportal/service-index:5.15.1b1860ed33071
stdlib@go1.26.2
1.25.10
1
restic/restic:0.15.2579e4e6a4931
stdlib@go1.19.8
1.25.10
1
restic/rest-server:0.14.0d2aff06f47eb
stdlib@go1.24.3
1.25.10
1
resurfaceio/resurface:3.7.84d5cda2f64109
stdlib@go1.23.0
1.25.10
1
rezachalak/bzen-mongo:1.0.034f694325191
stdlib@go1.19.12
1.25.10
1
ribbybibby/s3-exporter:v0.5.0998184c51a00
stdlib@go1.15.15
1.25.10
1
richardjennings/opa-nginx:0.0.366424aca125d
stdlib@go1.20.5
1.25.10
1
rimusz/security-sample-app:0.2.0b9a178ca76ef
stdlib@go1.14.4
1.25.10
1
robjuz/postgresql-nominatim:latest805c7bab76df
stdlib@go1.16.5
1.25.10
1
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.25.10
1
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.25.10
1
robustadev/kubewatch:v2.9.00457a51e36e8
stdlib@go1.23.1
1.25.10
1
rocm/k8s-device-plugin:1.31.0.926212c665aab
stdlib@go1.23.6
1.25.10
1
rogerrum/alertmanager-discord:1.0.3827593369625
stdlib@go1.17.4
1.25.10
1
rokk42/seashells:1.0-k8sdfc850a5db9e
stdlib@go1.22.3
1.25.10
1
rook/ceph:v1.20.72f970c425617
stdlib@go1.22.10
1.25.10
1
rook/ceph:v1.19.2944a1dd70496
stdlib@go1.25.6
1.25.10
1
rookout/k8s-operator:latest0d083f3ef1a7
stdlib@go1.15.15
1.25.10
1
rotationalio/geoping:1.3.034bcb6fc3cb7
stdlib@go1.26.1
1.25.10
1
rotationalio/honu:0.5.069fd30c2e31c
stdlib@go1.25.1
1.25.10
1
rotationalio/linode-acme-webhook:1.0.0cc7bb030a20f
stdlib@go1.25.5
1.25.10
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.