StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,033
of 17,813 indexed, latest versions
Container images
4,618
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 4,033 of 17,813 indexed charts deploy, on 4,618 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+181 more1.25.104,618
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

4,033 by stars
ChartLatestAffected imagesRadar Score
serviceexampleserviceexample0.1.03 of 5See more

serviceexample serviceexample 0.1.0

3 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/nats:2.9.20-alpined6c6ae7df4a0
stdlib@go1.19.11
1.25.10
natsio/nats-box:0.13.559cf2e949181
stdlib@go1.19.5
1.25.10
natsio/nats-server-config-reloader:0.11.0c3a755eab2cc
stdlib@go1.20.5
1.25.10

Open the chart page →

5,451
service-exampleservice-example-10.1.05 of 7See more

service-example service-example-1 0.1.0

5 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.10
library/nats:2.9.11-alpineccbe811b8575
stdlib@go1.19.4
1.25.10
natsio/nats-box:0.13.3c507bd7e3831
stdlib@go1.19.4
1.25.10
natsio/nats-server-config-reloader:0.8.06bdaceb63aa5
stdlib@go1.19.4
1.25.10
natsio/prometheus-nats-exporter:0.10.1bce728062c4f
stdlib@go1.19.3
1.25.10

Open the chart page →

9,147
serviceexampleserviceexample-chart0.3.01 of 4See more

serviceexample serviceexample-chart 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.10

Open the chart page →

4,105
serviceexampleservice-example-helm-chart0.1.01 of 4See more

serviceexample service-example-helm-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.10

Open the chart page →

2,346
service-exampleservice-example-jt0.1.14 of 9See more

service-example service-example-jt 0.1.1

4 of the 9 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/nats:2.12.2-alpine2d5fce3229ae
stdlib@go1.25.4
1.25.10
natsio/nats-box:0.19.28031d190c7ee
stdlib@go1.25.2
1.25.10
natsio/nats-server-config-reloader:0.20.147094fcae2f4
stdlib@go1.24.8
1.25.10
natsio/prometheus-nats-exporter:0.17.326c826662ac8
stdlib@go1.24.2
1.25.10

Open the chart page →

7,598
ccx-monitoringseveralnines0.6.215 of 7See more

ccx-monitoring severalnines 0.6.21

5 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/grafana:12.3.12175aaa91c96
stdlib@go1.25.5
1.25.10
victoriametrics/victoria-metrics:v1.120.0a1cb2f3dfd45
stdlib@go1.24.4
1.25.10
victoriametrics/vmalert:v1.96.0150cd08fde94
stdlib@go1.21.5
1.25.10
quay.io/prometheus/alertmanager:v0.26.0361db356b330
stdlib@go1.20.7
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.1af8220f53493
stdlib@go1.20.10
1.25.10

Open the chart page →

7,746
apache-shardingsphere-operator-chartsshardingsphere0.3.01 of 2See more

apache-shardingsphere-operator-charts shardingsphere 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
apache/shardingsphere-operator:0.3.0ffe68d6b99c0
stdlib@go1.19.10
1.25.10

Open the chart page →

1,699
first-chartshashkist-test0.1.01 of 3See more

first-chart shashkist-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:latest66aec17cd21a
stdlib@go1.24.6
1.25.10

Open the chart page →

3,113
operatorshopware-storeVerified publisher1.8.11 of 1See more

operator shopware-store 1.8.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/shopware/shopware-operator:1.8.187db0eda7a03
stdlib@go1.26.0
1.25.10

Open the chart page →

571
shopwareshopware-storeVerified publisher2.1.21 of 5See more

shopware shopware-store 2.1.2

1 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.14.03232ae01d0ff
stdlib@go1.21.7
1.25.10

Open the chart page →

4,140
bffshortlink0.2.11 of 1See more

bff shortlink 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.gitlab.com/shortlink-org/shortlink/bff:latestf2194e526915
stdlib@go1.25.7
1.25.10

Open the chart page →

1,699
linkshortlink0.7.31 of 1See more

link shortlink 0.7.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.gitlab.com/shortlink-org/shortlink/link:latest86d87291ffd4
stdlib@go1.25.7
1.25.10

Open the chart page →

1,683
pagesshrutiujlan-pages1.0.01 of 3See more

pages shrutiujlan-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,285
hedgedocsi-gitops0.12.31 of 2See more

hedgedoc si-gitops 0.12.3

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:18.43a82e1f56c8f
stdlib@go1.24.6
1.25.10

Open the chart page →

2,715
backendsignalen4.24.02 of 4See more

backend signalen 4.24.0

2 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
stdlib@go1.16.7
1.25.10
bitnamilegacy/rabbitmq:3.10.7-debian-11-r4cf93e2772250
stdlib@go1.16.7
1.25.10

Open the chart page →

11,892
alertmanagersignoz0.5.21 of 1See more

alertmanager signoz 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
signoz/alertmanager:0.5.07bc7de2e33c2
stdlib@go1.14
1.25.10

Open the chart page →

2,182
postgresqlsignoz0.0.21 of 1See more

postgresql signoz 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
stdlib@go1.24.6
1.25.10

Open the chart page →

1,699
zookeepersignoz0.0.11 of 1See more

zookeeper signoz 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
signoz/zookeeper:3.7.1fcc4a3288154
stdlib@go1.21.2
1.25.10

Open the chart page →

2,922
local-static-provisionersig-storage-local-static-provisioner2.9.01 of 1See more

local-static-provisioner sig-storage-local-static-provisioner 2.9.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
stdlib@go1.25.5
1.25.10

Open the chart page →

1,286
ctlogsigstoreVerified publisher0.2.683 of 4See more

ctlog sigstore 0.2.68

3 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sigstore/scaffolding/createctconfig:v0.7.313a061734c5be
stdlib@go1.25.0
1.25.10
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
stdlib@go1.25.0
1.25.10
ghcr.io/sigstore/scaffolding/ct_server:v0.7.3166664ba563e7
stdlib@go1.25.0
1.25.10

Open the chart page →

2,752
ctlog-tilessigstoreVerified publisher0.1.71 of 1See more

ctlog-tiles sigstore 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/transparency-dev/tesseract/posix:v0.1.2b044edd23888
stdlib@go1.25.8
1.25.10

Open the chart page →

280
sigstore-probersigstoreVerified publisher0.3.11 of 1See more

sigstore-prober sigstore 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sigstore/sigstore-probers/prober:v1.0.1d1e914e6d6b9
stdlib@go1.26.0
1.25.10

Open the chart page →

431
trilliansigstoreVerified publisher0.3.204 of 5See more

trillian sigstore 0.3.20

4 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gcr.io/trillian-opensource-ci/db_serverdigest-pinned2a685a38dd01
stdlib@go1.18.2
1.25.10
ghcr.io/sigstore/scaffolding/createdbdigest-pinned3cee6c78973b
stdlib@go1.25.0
1.25.10
ghcr.io/sigstore/scaffolding/trillian_log_serverdigest-pinned5a878e4e4f03
stdlib@go1.26.0
1.25.10
ghcr.io/sigstore/scaffolding/trillian_log_signerdigest-pinned28c5ff40963f
stdlib@go1.26.0
1.25.10

Open the chart page →

2,758
tsasigstoreVerified publisher2.1.31 of 1See more

tsa sigstore 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sigstore/timestamp-server:v2.1.08637f0482ed1
stdlib@go1.25.1
1.25.10

Open the chart page →

610
tufsigstoreVerified publisher0.1.321 of 1See more

tuf sigstore 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sigstore/scaffolding/serverdigest-pinnedae8eb69c7b70
stdlib@go1.25.0
1.25.10

Open the chart page →

768
counter-dhlsikademo0.3.01 of 3See more

counter-dhl sikademo 0.3.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ondrejsika/counter:latestd95eaeee2172
stdlib@go1.26.2
1.25.10

Open the chart page →

4,561
test-hello-worldsikademo0.1.01 of 1See more

test-hello-world sikademo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
stdlib@go1.26.2
1.25.10

Open the chart page →

1,221
hello-worldsikalabs0.17.01 of 1See more

hello-world sikalabs 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sikalabs/hello-world-server:latestcf8538bf6489
stdlib@go1.26.2
1.25.10

Open the chart page →

1,221
hello-world-examplesikalabs0.1.31 of 1See more

hello-world-example sikalabs 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/hello-world-server:latest5f49bf889a64
stdlib@go1.26.2
1.25.10

Open the chart page →

1,221
keycloak-configuratorsikalabs0.2.01 of 1See more

keycloak-configurator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hashicorp/terraform:1.44dcb45513699
stdlib@go1.19.6
1.25.10

Open the chart page →

2,870
loggensikalabs0.1.01 of 1See more

loggen sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/slu:v0.72.07bd267f30247
stdlib@go1.21.4
1.25.10

Open the chart page →

2,347
metrics-generatorsikalabs0.2.01 of 1See more

metrics-generator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/slu:v0.34.0fdc0c6711add
stdlib@go1.17.6
1.25.10

Open the chart page →

2,382
olmsikalabs0.3.01 of 2See more

olm sikalabs 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned40d0363f4aa6
stdlib@go1.22.3
1.25.10

Open the chart page →

1,163
signpostsikalabs0.5.01 of 1See more

signpost sikalabs 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sikalabs/signpost:v0.7.0c8b0e21d61b4
stdlib@go1.24.6
1.25.10

Open the chart page →

316
bytesafe-cesimcube1.0.41 of 3See more

bytesafe-ce simcube 1.0.4

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bytesafe/bytesafe-ce:v1.0.4ee287384c005
stdlib@go1.20.5
1.25.10

Open the chart page →

1,502
keydbsinextraVerified publisher0.31.01 of 1See more

keydb sinextra 0.31.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
stdlib@go1.18.10
1.25.10

Open the chart page →

2,172
mongosqldsinextraVerified publisher0.3.71 of 1See more

mongosqld sinextra 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosqld:2.14.230b826375ed42
stdlib@go1.23.8
1.25.10

Open the chart page →

2,622
mongosyncsinextraVerified publisher0.4.01 of 1See more

mongosync sinextra 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
stdlib@go1.24.4
1.25.10

Open the chart page →

2,883
pgbouncersinextraVerified publisher0.17.01 of 1See more

pgbouncer sinextra 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
stdlib@go1.24.6
1.25.10

Open the chart page →

1,982
system-upgrade-controllersinextraVerified publisher0.6.11 of 1See more

system-upgrade-controller sinextra 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
rancher/system-upgrade-controller:v0.19.234fa058fe453
stdlib@go1.25.8
1.25.10

Open the chart page →

253
tailscalesinextraVerified publisher0.18.11 of 2See more

tailscale sinextra 0.18.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/coredns/coredns:v1.13.294caebb89dcf
stdlib@go1.25.5
1.25.10

Open the chart page →

1,082
talos-backupsinextraVerified publisher0.1.21 of 1See more

talos-backup sinextra 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/siderolabs/talos-backup:v0.1.0-beta.203a71e140f1d
stdlib@go1.23.0
1.25.10

Open the chart page →

905
teamcitysinextraVerified publisher1.0.21 of 3See more

teamcity sinextra 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/docker:26.1-dinddd43b430341a
stdlib@go1.21.11
1.25.10

Open the chart page →

2,449
mariadbsitepilot1.0.31 of 1See more

mariadb sitepilot 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mariadb:10.692e50059ea0a
stdlib@go1.24.6
1.25.10

Open the chart page →

2,886
network-observerskupper-network-observerVerified publisher2.2.21 of 3See more

network-observer skupper-network-observer 2.2.2

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v3.11.3c0b857aead0d
stdlib@go1.26.2
1.25.10

Open the chart page →

618
skyhook-agentskyhookVerified publisher1.3.151 of 1See more

skyhook-agent skyhook 1.3.15

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/skyhook-io/skyhook-connector:v2.3.23deb8e4b1aaa
stdlib@go1.26.0
1.25.10

Open the chart page →

299
mimirskyloud-helm-chartsVerified publisher5.5.14 of 5See more

mimir skyloud-helm-charts 5.5.1

4 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/mimir:r292-5f018727476e456c738
stdlib@go1.22.3
1.25.10
grafana/rollout-operator:v0.14.03409edfb45c7
stdlib@go1.22.1
1.25.10
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
stdlib@go1.21.1
1.25.10
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
stdlib@go1.21.1
1.25.10

Open the chart page →

10,822
tailscale-operatorskyloud-helm-chartsVerified publisher1.70.31 of 1See more

tailscale-operator skyloud-helm-charts 1.70.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
tailscale/k8s-operator:v1.70.08edd06cf5bac
stdlib@go1.22.5
1.25.10

Open the chart page →

1,046
skypilot-prometheus-serverskypilotVerified publisher0.11.13 of 3See more

skypilot-prometheus-server skypilot 0.11.1

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.83.078aec597d87a
stdlib@go1.24.3
1.25.10
quay.io/prometheus/prometheus:v3.4.19abc6cf6aea7
stdlib@go1.24.3
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.15.0db384bf43222
stdlib@go1.23.5
1.25.10

Open the chart page →

2,361
pritunl-zerosky-sailVerified publisher0.3.31 of 1See more

pritunl-zero sky-sail 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
pritunl/pritunl-zero:1.0.3648.460f2943e0d41b
stdlib@go1.25.4
1.25.10

Open the chart page →

660

Container images carrying it

4,618 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
rancher/k3s:v1.25.3-k3s1eaa270df79cc
stdlib@go1.19.2
1.25.10
1
rancher/kubectl:v1.25.085a0d1148784
stdlib@go1.19
1.25.10
1
rancher/kube-webhook-certgen:v1.14.5-hardened26bb869baf40b
stdlib@go1.26.2
1.25.10
1
rancher/local-path-provisioner:v0.0.329289da488b07
stdlib@go1.24.4
1.25.10
1
rancher/local-path-provisioner:v0.0.309b9148811700
stdlib@go1.23.1
1.25.10
1
rancher/local-path-provisioner:v0.0.20d5999b20a1b1
stdlib@go1.16.6
1.25.10
1
rancher/local-path-provisioner:v0.0.22e34c88ae0aff
stdlib@go1.16.15
1.25.10
1
rancher/mirrored-cloud-provider-vsphere:v1.31.1febfd0517838
stdlib@go1.22.8
1.25.10
1
rancher/mirrored-longhornio-csi-attacher:v4.11.0-20260428fe417c28a6b8
stdlib@go1.25.9
1.25.10
1
rancher/mirrored-longhornio-csi-node-driver-registrar:v2.16.0-20260428e82a8c8f800d
stdlib@go1.25.9
1.25.10
1
rancher/mirrored-longhornio-csi-provisioner:v5.3.0-202604289e519a21a77c
stdlib@go1.25.9
1.25.10
1
rancher/mirrored-longhornio-csi-resizer:v2.1.0-2026042841cb674d1154
stdlib@go1.25.9
1.25.10
1
rancher/mirrored-longhornio-csi-snapshotter:v8.5.0-202604281975fac3890f
stdlib@go1.25.9
1.25.10
1
rancher/nginx-ingress-controller:v1.14.5-hardened26cbc1e932b5b
stdlib@go1.24.13
1.25.10
1
rancher/pushprox-client:v0.1.0-rancher2-clienta41cd716c412
stdlib@go1.16.4
1.25.10
1
rancher/pushprox-proxy:v0.1.0-rancher2-proxy3126395b966c
stdlib@go1.16.4
1.25.10
1
rancher/system-upgrade-controller:v0.19.234fa058fe453
stdlib@go1.25.8
1.25.10
1
rancher/system-upgrade-controller:v0.18.09813f85653c8
stdlib@go1.25.3
1.25.10
1
raspbernetes/csi-node-driver-registrar:2.0.1a552705225fd
stdlib@go1.13.15
1.25.10
1
rayselfs/aws-ec2-runtime-checker:v0.1.5562e5b2f81ce
stdlib@go1.24.11
1.25.10
1
rclone/rclone:1.63.008e1af3c8814
stdlib@go1.20.5
1.25.10
1
rclone/rclone:1.57.01e6eeabddc01
stdlib@go1.17.2
1.25.10
1
rclone/rclone:1.56.0f2fc45c8bc57
stdlib@go1.16.6
1.25.10
1
reallibrephotos/librephotos-frontend:1.0.358cdf5e93471
stdlib@go1.24.13
1.25.10
1
reaper99/recipya:v1.2.27f7ec3aeb88c
stdlib@go1.22.0
1.25.10
1
redislabs/operator:8.0.18-119078e713bb6a
stdlib@go1.26.1
1.25.10
1
redislabs/operator:7.4.2-2ecb101af0506
stdlib@go1.21.5
1.25.10
1
redislabs/redisearch:2.4.1433561794c5c8
stdlib@go1.16.7
1.25.10
1
redpandadata/kminion:v2.3.0c05fa976428e
stdlib@go1.25.8
1.25.10
1
regclient/regsync:v0.8.33d8d8e40afb7
stdlib@go1.24.2
1.25.10
1
replicated/replicated-sdk:1.0.0-beta.318751b4963250
stdlib@go1.23.2
1.25.10
1
reportportal/migrations:5.15.4464468240d7b
stdlib@go1.24.6
1.25.10
1
reportportal/migrations:5.7.0da5d8e1395fe
stdlib@go1.13.6
1.25.10
1
reportportal/service-index:5.0.112b27a2d7a87d
stdlib@go1.17.1
1.25.10
1
reportportal/service-index:5.15.1b1860ed33071
stdlib@go1.26.2
1.25.10
1
restic/restic:0.15.2579e4e6a4931
stdlib@go1.19.8
1.25.10
1
restic/rest-server:0.14.0d2aff06f47eb
stdlib@go1.24.3
1.25.10
1
resurfaceio/resurface:3.7.84d5cda2f64109
stdlib@go1.23.0
1.25.10
1
rezachalak/bzen-mongo:1.0.034f694325191
stdlib@go1.19.12
1.25.10
1
ribbybibby/s3-exporter:v0.5.0998184c51a00
stdlib@go1.15.15
1.25.10
1
richardjennings/opa-nginx:0.0.366424aca125d
stdlib@go1.20.5
1.25.10
1
rimusz/security-sample-app:0.2.0b9a178ca76ef
stdlib@go1.14.4
1.25.10
1
robjuz/postgresql-nominatim:latest805c7bab76df
stdlib@go1.16.5
1.25.10
1
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.25.10
1
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.25.10
1
robustadev/kubewatch:v2.9.00457a51e36e8
stdlib@go1.23.1
1.25.10
1
rocm/k8s-device-plugin:1.31.0.926212c665aab
stdlib@go1.23.6
1.25.10
1
rogerrum/alertmanager-discord:1.0.3827593369625
stdlib@go1.17.4
1.25.10
1
rokk42/seashells:1.0-k8sdfc850a5db9e
stdlib@go1.22.3
1.25.10
1
rook/ceph:v1.20.72f970c425617
stdlib@go1.22.10
1.25.10
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.