StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,955
of 17,805 indexed, latest versions
Container images
4,520
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 3,955 of 17,805 indexed charts deploy, on 4,520 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+180 more1.25.104,520
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

3,955 by stars
ChartLatestAffected imagesRadar Score
spirehelm-spireVerified publisher0.30.23 of 10See more

spire helm-spire 0.30.2

3 of the 10 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/spiffe/spiffe-csi-driver:0.2.79dfe4f0caff0
stdlib@go1.24.0
1.25.10
ghcr.io/spiffe/spiffe-helper:0.11.01c92e5998ad3
stdlib@go1.25.3
1.25.10
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
stdlib@go1.24.6
1.25.10

Open the chart page →

1,688
helmuphelmupVerified publisher0.1.01 of 3See more

helmup helmup 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
sirrend/helmup-engine:0.1.13699e79e3d4e2
stdlib@go1.20.4
1.25.10

Open the chart page →

16,721
hiverhiverVerified publisher0.1.459 of 10See more

hiver hiver 0.1.45

9 of the 10 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hiversh/antigravity:0.1.45-microvm0e36d98402bc
stdlib@go1.19.8
1.25.10
hiversh/browser:0.1.45-microvmb5048c6342ce
stdlib@go1.19.8
1.25.10
hiversh/claude:0.1.45-microvm2fbf9f264498
stdlib@go1.19.8
1.25.10
hiversh/codex:0.1.45-microvm4f43130f51e5
stdlib@go1.19.8
1.25.10
hiversh/controller:0.1.45b0b85f8942c7
stdlib@go1.19.8
1.25.10
hiversh/copilot:0.1.45-microvm50c07b84f298
stdlib@go1.19.8
1.25.10
hiversh/node:0.1.45-alpine-microvm836a37641941
stdlib@go1.19.8
1.25.10
hiversh/openclaw:0.1.45-microvm958b7ebb4eb4
stdlib@go1.19.8
1.25.10
hiversh/python:0.1.45-3.13-alpine-microvm63a5ae179a9f
stdlib@go1.19.8
1.25.10

Open the chart page →

22,188
cratedb-adapter-v2hmdmph0.2.11 of 1See more

cratedb-adapter-v2 hmdmph 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
crate/crate_adapter:latestb8d89fa5d19b
stdlib@go1.16.3
1.25.10

Open the chart page →

2,920
openprojecthomeenterpriseinc0.5.01 of 1See more

openproject homeenterpriseinc 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
openproject/community:12.0.2734743d11094
stdlib@go1.17
1.25.10

Open the chart page →

6,817
honeycombhoneycomb1.9.31 of 1See more

honeycomb honeycomb 1.9.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
honeycombio/honeycomb-kubernetes-agent:2.7.448c38d0870f2
stdlib@go1.24.3
1.25.10

Open the chart page →

437
hpe-greenlake-file-csi-driverhpe-storageVerified publisher2.6.45 of 7See more

hpe-greenlake-file-csi-driver hpe-storage 2.6.4

5 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
stdlib@go1.23.1
1.25.10
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
stdlib@go1.24.6
1.25.10
registry.k8s.io/sig-storage/csi-provisioner:v6.1.0e5900dc98b0d
stdlib@go1.24.6
1.25.10
registry.k8s.io/sig-storage/csi-resizer:v1.12.0ab774734705a
stdlib@go1.22.5
1.25.10
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
stdlib@go1.24.6
1.25.10

Open the chart page →

6,240
htnn-controllerhtnnVerified publisher0.5.01 of 1See more

htnn-controller htnn 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
stdlib@go1.21.12
1.25.10

Open the chart page →

4,362
demoryhuseyinbabalOfficialVerified publisher0.7.01 of 1See more

demory huseyinbabal 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
huseyinbabal/demory:0.0.0-rc.20ae8eb4053c60
stdlib@go1.17.2
1.25.10

Open the chart page →

1,580
hybrid-csi-pluginhybrid-csi-plugin0.1.111 of 1See more

hybrid-csi-plugin hybrid-csi-plugin 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/hybrid-csi-provisioner:v0.3.1221e07794a8a
stdlib@go1.25.5
1.25.10

Open the chart page →

380
spoolmanideaplexusVerified publisher2.7.11 of 1See more

spoolman ideaplexus 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
stdlib@go1.19.8
1.25.10

Open the chart page →

1,823
backendikusi-bk-chart1.0.31 of 3See more

backend ikusi-bk-chart 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
stdlib@go1.24.6
1.25.10

Open the chart page →

6,098
ilum-coreilumOfficialVerified publisher6.7.32 of 5See more

ilum-core ilum 6.7.3

2 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
stdlib@go1.24.6
1.25.10
ilum/mongodb:6.0.542b6d774c37d
stdlib@go1.20.12
1.25.10

Open the chart page →

3,558
ilum-jupyterilumVerified publisher6.7.31 of 2See more

ilum-jupyter ilum 6.7.3

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bitnamisecure/gitdigest-pinned72ae5bd9715f
stdlib@go1.24.6
1.25.10

Open the chart page →

645
odooimioVerified publisher3.1.01 of 3See more

odoo imio 3.1.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:17.10ebba4f4de37f
stdlib@go1.24.6
1.25.10

Open the chart page →

3,123
immichimmich-helm0.3.01 of 4See more

immich immich-helm 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
stdlib@go1.18.2
1.25.10

Open the chart page →

15,941
webhook-broker-chartimytech0.2.41 of 1See more

webhook-broker-chart imytech 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/optimizely/webhook-broker:v0.2.3cfc92cc2de65
stdlib@go1.23.0
1.25.10

Open the chart page →

1,253
inbucketinbucketVerified publisher2.5.01 of 1See more

inbucket inbucket 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
inbucket/inbucket:3.0.01f10a0efea69
stdlib@go1.17.1
1.25.10

Open the chart page →

2,167
telegraf-operatorinfluxdata1.4.01 of 1See more

telegraf-operator influxdata 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/influxdb/telegraf-operator:v1.3.11eec10ef37cc3
stdlib@go1.18.10
1.25.10

Open the chart page →

925
valkey-clusterinnagoVerified publisher1.1.01 of 2See more

valkey-cluster innago 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.66.0d98e6db8094f
stdlib@go1.23.2
1.25.10

Open the chart page →

2,671
supersetinseefrlab1.4.01 of 4See more

superset inseefrlab 1.4.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
stdlib@go1.25.5
1.25.10

Open the chart page →

7,135
interlinkinterlink0.6.11 of 2See more

interlink interlink 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
stdlib@go1.24.5
1.25.10

Open the chart page →

2,485
irsa-managerirsa-managerVerified publisher0.3.21 of 1See more

irsa-manager irsa-manager 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/kkb0318/irsa-manager:0.3.296d600ae97b4
stdlib@go1.22.7
1.25.10

Open the chart page →

821
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
stdlib@go1.16.6
1.25.10

Open the chart page →

70,366
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
stdlib@go1.16.6
1.25.10

Open the chart page →

70,440
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
stdlib@go1.16.6
1.25.10

Open the chart page →

70,386
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
stdlib@go1.16.6
1.25.10

Open the chart page →

70,386
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
stdlib@go1.16.6
1.25.10

Open the chart page →

70,667
istio-ratelimitistio-ratelimitVerified publisher0.0.51 of 2See more

istio-ratelimit istio-ratelimit 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:4d2efd61ede09a75a84c
stdlib@go1.14.15
1.25.10

Open the chart page →

1,819
kubernetes-event-exporteritakurahVerified publisher0.2.31 of 1See more

kubernetes-event-exporter itakurah 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/itakurah/kubernetes-event-exporter:v1.78abb52b66557
stdlib@go1.20.14
1.25.10

Open the chart page →

1,142
jessejesse-chartVerified publisher0.0.461 of 6See more

jesse jesse-chart 0.0.46

1 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
stdlib@go1.24.6
1.25.10

Open the chart page →

3,425
jetic-operatorjetic-operatorVerified publisher2.0.21 of 1See more

jetic-operator jetic-operator 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
apache/camel-k:1.10.43bb13d14f64a
stdlib@go1.17.13
1.25.10

Open the chart page →

9,335
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
stdlib@go1.21.8
1.25.10

Open the chart page →

7,417
job-manager-dispatcherjob-manager-dispatcher1.27.01 of 1See more

job-manager-dispatcher job-manager-dispatcher 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-dispatcher:1.27.0582508903cb0
stdlib@go1.23.12
1.25.10

Open the chart page →

479
job-manager-serverjob-manager-server1.27.01 of 1See more

job-manager-server job-manager-server 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-server:1.27.0fe9de719f91e
stdlib@go1.23.12
1.25.10

Open the chart page →

757
hncjouveVerified publisher0.8.31 of 1See more

hnc jouve 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-multitenancy/hnc-manager:v1.1.08ab8229f6a89
stdlib@go1.20.5
1.25.10

Open the chart page →

1,078
joylive-injectorjoyliveOfficialVerified publisher1.3.51 of 2See more

joylive-injector joylive 1.3.5

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
otel/opentelemetry-collector:0.100.09e36620d6c2c
stdlib@go1.22.2
1.25.10

Open the chart page →

1,290
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
stdlib@go1.18.7
1.25.10

Open the chart page →

3,379
k8s-grafana-stackk8s-grafana-stackVerified publisher0.2.3213 of 17See more

k8s-grafana-stack k8s-grafana-stack 0.2.32

13 of the 17 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/alloy:v1.14.0f50931848bd8
stdlib@go1.25.7
1.25.10
grafana/grafana:12.3.12175aaa91c96
stdlib@go1.25.5
1.25.10
grafana/loki:3.6.73c8fd3570dd9
stdlib@go1.24.13
1.25.10
grafana/loki-canary:3.6.70dac7d5cb383
stdlib@go1.24.13
1.25.10
grafana/tempo:2.9.065a578975943
stdlib@go1.25.1
1.25.10
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
stdlib@go1.23.4
1.25.10
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
stdlib@go1.23.4
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
stdlib@go1.23.7
1.25.10
quay.io/prometheus-operator/prometheus-config-reloader:v0.89.0cb4ac6a56555
stdlib@go1.25.6
1.25.10
quay.io/prometheus/alertmanager:v0.31.188b605de9aba
stdlib@go1.25.7
1.25.10
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
stdlib@go1.25.3
1.25.10
quay.io/prometheus/prometheus:v3.10.07571a304e67f
stdlib@go1.26.0
1.25.10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.10

Open the chart page →

15,781
kdiffkdiff-snapshotsVerified publisher0.0.2031 of 2See more

kdiff kdiff-snapshots 0.0.203

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
stdlib@go1.24.7
1.25.10

Open the chart page →

5,591
kdiff-snapshotskdiff-snapshotsVerified publisher0.0.551 of 1See more

kdiff-snapshots kdiff-snapshots 0.0.55

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
stdlib@go1.24.4
1.25.10

Open the chart page →

5,871
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
stdlib@go1.20.7
1.25.10

Open the chart page →

5,282
keycloakkeycloak1.13.71 of 2See more

keycloak keycloak 1.13.7

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.gitlab.com/lenitech/docker/keycloak-ppolicy:0.6.09895d6915075
stdlib@go1.25.7
1.25.10

Open the chart page →

323
keycloak-client-operatorkeycloak-client-operator0.9.11 of 1See more

keycloak-client-operator keycloak-client-operator 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.gitlab.com/lenitech/k8s-operator/keycloak-client:v0.6.19065cdd80035
stdlib@go1.24.5
1.25.10

Open the chart page →

521
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
stdlib@go1.16.7
1.25.10

Open the chart page →

5,316
giteakeyporttech0.2.102 of 4See more

gitea keyporttech 0.2.10

2 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gitea/gitea:1.12.485416d6f65fe
stdlib@go1.14.8
1.25.10
library/postgres:115d2aa4a7b5f9
stdlib@go1.16.7
1.25.10

Open the chart page →

5,409
kikplatekikplateVerified publisher0.22.01 of 3See more

kikplate kikplate 0.22.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
stdlib@go1.24.6
1.25.10

Open the chart page →

2,976
glpikitsune-itopsVerified publisher1.0.71 of 3See more

glpi kitsune-itops 1.0.7

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
stdlib@go1.24.6
1.25.10

Open the chart page →

4,991
kokukokuVerified publisher1.0.03 of 7See more

koku koku 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
minio/mc:latesta7fe349ef4bd
stdlib@go1.24.6
1.25.10
public.ecr.aws/v0r6c2e2/minio:latest08c90bd040bf
stdlib@go1.23.5
1.25.10
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
stdlib@go1.23.0
1.25.10

Open the chart page →

12,237
komkomVerified publisher0.3.01 of 1See more

kom kom 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/kkb0318/kom:0.3.04e77eff2d906
stdlib@go1.24.4
1.25.10

Open the chart page →

398

Container images carrying it

4,520 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
stdlib@go1.24.13
1.25.10
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
stdlib@go1.16.5
1.25.10
1
public.ecr.aws/sumologic/tailing-sidecar-operator:0.111.0920b8f901aef
stdlib@go1.24.5
1.25.10
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
stdlib@go1.18.1
1.25.10
1
public.ecr.aws/t0u0d5o5/ecr_authenticator:latest077e4e57e41c
stdlib@go1.21.5
1.25.10
1
public.ecr.aws/truefoundrycloud/eks/eks-node-monitoring-agent:v1.5.1-eksbuild.1988c8e1a273a
stdlib@go1.25.6
1.25.10
1
public.ecr.aws/v0r6c2e2/minio:latest08c90bd040bf
stdlib@go1.23.5
1.25.10
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
stdlib@go1.23.0
1.25.10
1
public.ecr.aws/xray/aws-xray-daemon:3.6.243d051eed000
stdlib@go1.25.7
1.25.10
1
quay.io/aerokube/boot:1.0.13c269612053f
stdlib@go1.22.2
1.25.10
1
quay.io/aerokube/browser-ops:2.6.7807c1bb67086
stdlib@go1.22.2
1.25.10
1
quay.io/aerokube/keygen:1.0.1578934444f04
stdlib@go1.20.5
1.25.10
1
quay.io/aerokube/moon:2.5.1a8837b00ba1c
stdlib@go1.20.4
1.25.10
1
quay.io/aerokube/moon:2.8.1e618a3ed6436
stdlib@go1.26.1
1.25.10
1
quay.io/aerokube/moon-conf:2.8.11ef2b53c98fd
stdlib@go1.26.1
1.25.10
1
quay.io/aerokube/moon-conf:2.5.19ca307b30080
stdlib@go1.20.4
1.25.10
1
quay.io/aerokube/moon-ui:2.8.156425d4f8b9c
stdlib@go1.26.1
1.25.10
1
quay.io/aerokube/moon-ui:2.0.589990b146824
stdlib@go1.20.5
1.25.10
1
quay.io/aerokube/reloader:1.0.1e4a3661416a5
stdlib@go1.22.2
1.25.10
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
stdlib@go1.20.12
1.25.10
1
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
stdlib@go1.24.0
1.25.10
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
stdlib@go1.16.5
1.25.10
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
stdlib@go1.22.7
1.25.10
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
stdlib@go1.22.7
1.25.10
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
stdlib@go1.20.4
1.25.10
1
quay.io/argoproj/argocli:v3.7.11577fc18f86ad
stdlib@go1.25.5
1.25.10
1
quay.io/argoproj/argocli:v3.7.16efd1cb89dc1
stdlib@go1.24.6
1.25.10
1
quay.io/argoproj/argocli:v3.5.591b9825f09a8
stdlib@go1.21.7
1.25.10
1
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
stdlib@go1.24.11
1.25.10
1
quay.io/argoprojlabs/argocd-extension-metrics:v1.0.30d614816c4b7
stdlib@go1.21.11
1.25.10
1
quay.io/argoprojlabs/argocd-operator:v0.4.0cf8faa986789
stdlib@go1.18.4
1.25.10
1
quay.io/argoprojlabs/argocd-rbac-operator:v0.2.451dded00137a
stdlib@go1.24.9
1.25.10
1
quay.io/argoproj/workflow-controller:v3.7.166388d1b2f08
stdlib@go1.24.6
1.25.10
1
quay.io/argoproj/workflow-controller:v3.5.56ab0da144235
stdlib@go1.21.7
1.25.10
1
quay.io/argoproj/workflow-controller:v3.7.11c46aa0ded8ed
stdlib@go1.25.5
1.25.10
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
stdlib@go1.15.12
1.25.10
1
quay.io/backube/snapscheduler:3.5.035ac95c51780
stdlib@go1.24.3
1.25.10
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
stdlib@go1.18.4
1.25.10
1
quay.io/bentoml/yatai:1.1.13a5dc9d91de0d
stdlib@go1.20.7
1.25.10
1
quay.io/bentoml/yatai-deployment:1.1.212342cfe8c2a9
stdlib@go1.19.13
1.25.10
1
quay.io/bentoml/yatai-image-builder:3.0.4401d8538c4f48
stdlib@go1.24.13
1.25.10
1
quay.io/brancz/kube-rbac-proxy:v0.15.02c7b120590cb
stdlib@go1.21.3
1.25.10
1
quay.io/brancz/kube-rbac-proxy:v0.16.02c8f8c357ff8
stdlib@go1.21.7
1.25.10
1
quay.io/brancz/kube-rbac-proxy:v0.18.0754ab2a723c8
stdlib@go1.22.4
1.25.10
1
quay.io/brancz/kube-rbac-proxy:v0.20.1f5fbfec6a2b2
stdlib@go1.25.4
1.25.10
1
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
stdlib@go1.25.9
1.25.10
1
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
stdlib@go1.17.5
1.25.10
1
quay.io/cephcsi/ceph-csi-operator:v0.5.014fe2f1bffc3
stdlib@go1.25.7
1.25.10
1
quay.io/chriscowley/openldap_exporter:v2.1.16c308e9732e1
stdlib@go1.15.7
1.25.10
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
stdlib@go1.21.7
1.25.10
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.