StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,934
of 17,803 indexed, latest versions
Container images
4,529
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 3,934 of 17,803 indexed charts deploy, on 4,529 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+180 more1.25.104,529
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

3,934 by stars
ChartLatestAffected imagesRadar Score
alertmanager-ntfydjjudas21Verified publisher0.1.21 of 1See more

alertmanager-ntfy djjudas21 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/alexbakker/alertmanager-ntfy:1.0.12f4db8064595
stdlib@go1.24.4
1.25.10

Open the chart page →

641
dkim-managerdkim-managerVerified publisher0.2.01 of 1See more

dkim-manager dkim-manager 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/hsn723/dkim-manager:1.4.00312232b31a2
stdlib@go1.26.0
1.25.10

Open the chart page →

293
dnation-pingdnationcloud0.1.94 of 5See more

dnation-ping dnationcloud 0.1.9

4 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/grafana:7.3.5511bc20bfcd1
stdlib@go1.15.5
1.25.10
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.25.10
prom/blackbox-exporter:v0.18.01ffc3f109eb3
stdlib@go1.15.2
1.25.10
prom/prometheus:v2.21.0d43417c260e5
stdlib@go1.15.2
1.25.10

Open the chart page →

10,470
docker-in-dockerdocker-in-docker0.0.31 of 2See more

docker-in-docker docker-in-docker 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/docker:24.0.2-dind1d148deae16a
stdlib@go1.20.4
1.25.10

Open the chart page →

2,595
docker-registrydocker-repository0.1.01 of 1See more

docker-registry docker-repository 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/registry:latest1be55279f18a
stdlib@go1.25.9
1.25.10

Open the chart page →

658
dockyarddockyardVerified publisher0.4.01 of 1See more

dockyard dockyard 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/kgma74/dockyard:0.4.0b40439329191
stdlib@go1.22.7
1.25.10

Open the chart page →

1,558
thermitedollarshaveclubOfficialVerified publisher0.1.171 of 1See more

thermite dollarshaveclub 0.1.17

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
dollarshaveclub/thermite:0.0.31663cbf25fcfe
stdlib@go1.17.1
1.25.10

Open the chart page →

2,739
domain-lockerdomain-locker0.2.81 of 3See more

domain-locker domain-locker 0.2.8

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:15-alpinefe0737ba566a
stdlib@go1.24.6
1.25.10

Open the chart page →

1,886
dominodominoVerified publisher0.1.111 of 3See more

domino domino 0.1.11

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
stdlib@go1.24.6
1.25.10

Open the chart page →

8,929
archerydoubanVerified publisher0.4.32 of 6See more

archery douban 0.4.3

2 of the 6 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hanchuanchuan/goinception:latestb3c0dd26fb50
stdlib@go1.22.1
1.25.10
hhyo/archery:v1.9.11aa41843419e
stdlib@go1.15.6
1.25.10

Open the chart page →

5,861
karmadoubanVerified publisher1.9.21 of 1See more

karma douban 1.9.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/prymitive/karma:v0.85d06892218680
stdlib@go1.16.3
1.25.10

Open the chart page →

2,018
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
stdlib@go1.21.4
1.25.10

Open the chart page →

68,853
dragonfly-stackdragonflyVerified publisher0.1.24 of 7See more

dragonfly-stack dragonfly 0.1.2

4 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
stdlib@go1.21.5
1.25.10
dragonflyoss/manager:v2.1.49c3ef7f10698d
stdlib@go1.21.1
1.25.10
dragonflyoss/scheduler:v2.1.49523785c77787
stdlib@go1.21.1
1.25.10
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
stdlib@go1.18.10
1.25.10

Open the chart page →

18,901
nydus-snapshotterdragonflyVerified publisher0.0.101 of 2See more

nydus-snapshotter dragonfly 0.0.10

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
stdlib@go1.18.10
1.25.10

Open the chart page →

3,669
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
stdlib@go1.20.12
1.25.10

Open the chart page →

64,698
dyff-operatordyff-operatorVerified publisher0.24.201 of 1See more

dyff-operator dyff-operator 0.24.20

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/dyff-operator:0.24.20e9ca51627601
stdlib@go1.24.13
1.25.10

Open the chart page →

273
gethdysnixVerified publisher1.1.21 of 1See more

geth dysnix 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ethereum/client-go:v1.14.8886ec69b35b0
stdlib@go1.22.6
1.25.10

Open the chart page →

1,626
jenkinsedu2.7.11 of 2See more

jenkins edu 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.10

Open the chart page →

4,464
glpieftechcombr-glpiVerified publisher2.12.11 of 5See more

glpi eftechcombr-glpi 2.12.1

1 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mariadb:12.3.2a02fe89cb597
stdlib@go1.24.6
1.25.10

Open the chart page →

4,603
glideeinstackOfficialVerified publisher0.0.21 of 1See more

glide einstack 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/einstack/glide:0.0.1-alpineab3f7d0a1d50
stdlib@go1.21.6
1.25.10

Open the chart page →

1,335
elchi-discoveryelchi1.0.01 of 1See more

elchi-discovery elchi 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
jhonbrownn/elchi-discovery:latest8f6551ecc98c
stdlib@go1.23.1
1.25.10

Open the chart page →

638
elchi-stackelchi1.13.04 of 10See more

elchi-stack elchi 1.13.0

4 of the 10 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
grafana/grafana:12.2.074144189b384
stdlib@go1.24.6
1.25.10
library/mongo:6.0.12646902910d6a
stdlib@go1.18.2
1.25.10
otel/opentelemetry-collector-contrib:0.89.0995f17004231
stdlib@go1.21.4
1.25.10
victoriametrics/victoria-metrics:v1.93.577a9815d0640
stdlib@go1.21.1
1.25.10

Open the chart page →

15,753
navidromeemmas-chartsVerified publisher0.0.61 of 1See more

navidrome emmas-charts 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
deluan/navidrome:0.50.02cf4442b0099
stdlib@go1.21.0
1.25.10

Open the chart page →

2,130
enbuildenbuildVerified publisher0.0.503 of 6See more

enbuild enbuild 0.0.50

3 of the 6 container images this version deploys carry CVE-2026-42499.

Open the chart page →

31,809
eoapieoapiOfficialVerified publisher0.16.31 of 7See more

eoapi eoapi 0.16.3

1 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
stdlib@go1.24.6
1.25.10

Open the chart page →

2,952
nexus-operatorepmdedp-devVerified publisher2.11.0-MDTU-DDM-SNAPSHOT.11 of 1See more

nexus-operator epmdedp-dev 2.11.0-MDTU-DDM-SNAPSHOT.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
epamedp/nexus-operator:2.11.0-MDTU-DDM-SNAPSHOT.1449a53804699
stdlib@go1.17.2
1.25.10

Open the chart page →

2,266
httpbingoestahnVerified publisher0.1.11 of 1See more

httpbingo estahn 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
mccutchen/go-httpbin:v2.2.25994403ef75b
stdlib@go1.16.2
1.25.10

Open the chart page →

1,359
beaconchain-explorerethereum-helm-chartsVerified publisher0.1.61 of 2See more

beaconchain-explorer ethereum-helm-charts 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
stdlib@go1.23.5
1.25.10

Open the chart page →

3,110
ethereumjsethereum-helm-chartsVerified publisher0.1.21 of 2See more

ethereumjs ethereum-helm-charts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ethpandaops/ethereumjs:masterfb84b718500f
stdlib@go1.23.12
1.25.10

Open the chart page →

1,590
genesis-generatorethereum-helm-chartsVerified publisher0.2.31 of 2See more

genesis-generator ethereum-helm-charts 0.2.3

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
skylenet/ethereum-genesis-generator:latest210353ce7c89
stdlib@go1.17.13
1.25.10

Open the chart page →

3,137
ipfs-clusterethereum-helm-chartsVerified publisher0.1.142 of 3See more

ipfs-cluster ethereum-helm-charts 0.1.14

2 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ipfs/kubo:latest63f5502f7a01
stdlib@go1.19.8
1.25.10
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
stdlib@go1.19.3
1.25.10

Open the chart page →

4,787
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
stdlib@go1.19.8
1.25.10

Open the chart page →

11,559
evccevccVerified publisher1.0.471 of 1See more

evcc evcc 1.0.47

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
evcc/evcc:0.300.8ddf2a25afce5
stdlib@go1.25.6
1.25.10

Open the chart page →

1,192
event-exporterevent-exporterVerified publisher0.1.171 of 1See more

event-exporter event-exporter 0.1.17

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kubestar/event-exporter:latest656606941255
stdlib@go1.20.14
1.25.10

Open the chart page →

1,210
events-exporterevents-exporter0.0.41 of 1See more

events-exporter events-exporter 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/nabokihms/events_exporter:latest68d44646e8b2
stdlib@go1.19.5
1.25.10

Open the chart page →

2,135
github-actions-runner-operatorevryfs-ossVerified publisher2.8.11 of 1See more

github-actions-runner-operator evryfs-oss 2.8.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/evryfs/github-actions-runner-operator:v0.11.16b084e0bd082
stdlib@go1.21.1
1.25.10

Open the chart page →

1,236
ext-postgres-operatorext-postgres-operatorVerified publisher3.0.01 of 1See more

ext-postgres-operator ext-postgres-operator 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/movetokube/postgres-operator:2.4.0def57d85a2da
stdlib@go1.25.5
1.25.10

Open the chart page →

401
akauntingf3k-techVerified publisher1.3121.01 of 4See more

akaunting f3k-tech 1.3121.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
stdlib@go1.24.5
1.25.10

Open the chart page →

4,395
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
factly/vidcheck-server:0.12.087064eb0463c
stdlib@go1.14.2
1.25.10

Open the chart page →

3,618
ecr-cleanupfairwinds-stableVerified publisher1.2.81 of 1See more

ecr-cleanup fairwinds-stable 1.2.8

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
danielfm/kube-ecr-cleanup-controller:0.1.1012485563b1d0
stdlib@go1.19.6
1.25.10

Open the chart page →

1,004
falco-operatorfalcosecurity0.3.11 of 1See more

falco-operator falcosecurity 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
falcosecurity/falco-operator:0.4.18a99fcc57a57
stdlib@go1.26.0
1.25.10

Open the chart page →

386
fastapi-microservice-appfast-api-microservice-app1.3.01 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
stdlib@go1.24.6
1.25.10

Open the chart page →

9,744
featurehubfeaturehub4.1.63 of 7See more

featurehub featurehub 4.1.6

3 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/nats:2.10.5-alpine85319e5e541b
stdlib@go1.21.4
1.25.10
natsio/nats-box:0.14.1a67913df95f1
stdlib@go1.21.3
1.25.10
natsio/nats-server-config-reloader:0.13.0b3359eeb10bf
stdlib@go1.20.5
1.25.10

Open the chart page →

8,684
federidfederidOfficialVerified publisher0.1.21 of 1See more

federid federid 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
federid/webhook:0.1.0fbfb7c6510a7
stdlib@go1.23.3
1.25.10

Open the chart page →

2,115
fencemasterfencemasterVerified publisher0.1.131 of 1See more

fencemaster fencemaster 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/rvbsalgado/fencemaster:1.0.0-rc.207056a6aae439
stdlib@go1.25.8
1.25.10

Open the chart page →

254
taigafermosit0.0.112 of 7See more

taiga fermosit 0.0.11

2 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
stdlib@go1.24.4
1.25.10
taigaio/taiga-protected:latestfd4568a97a59
stdlib@go1.24.4
1.25.10

Open the chart page →

8,596
ferriskeyferriskey0.8.01 of 3See more

ferriskey ferriskey 0.8.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.10

Open the chart page →

2,197
file-manager-serverfile-manager-server1.11.01 of 1See more

file-manager-server file-manager-server 1.11.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/file-manager-server:1.11.0301216788e93
stdlib@go1.23.11
1.25.10

Open the chart page →

770
fission-corefission-chartsVerified publisher1.14.13 of 3See more

fission-core fission-charts 1.14.1

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
fission/fission-bundle:1.14.13fcfd8a0fa5d
stdlib@go1.15.14
1.25.10
fission/pre-upgrade-checks:1.14.1fa0f24cdb9cd
stdlib@go1.15.14
1.25.10
fission/reporter:1.14.104c6e06af175
stdlib@go1.15.14
1.25.10

Open the chart page →

7,107
openldapfluktuid0.1.11 of 2See more

openldap fluktuid 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.25.10

Open the chart page →

3,314

Container images carrying it

4,529 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/brancz/kube-rbac-proxy:v0.20.1f5fbfec6a2b2
stdlib@go1.25.4
1.25.10
1
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
stdlib@go1.25.9
1.25.10
1
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
stdlib@go1.17.5
1.25.10
1
quay.io/cephcsi/ceph-csi-operator:v0.5.014fe2f1bffc3
stdlib@go1.25.7
1.25.10
1
quay.io/chriscowley/openldap_exporter:v2.1.16c308e9732e1
stdlib@go1.15.7
1.25.10
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
stdlib@go1.21.7
1.25.10
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
stdlib@go1.24.2
1.25.10
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
stdlib@go1.25.8
1.25.10
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
stdlib@go1.25.8
1.25.10
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
stdlib@go1.24.7
1.25.10
1
quay.io/cilium/hubble-relay:v1.18.26079308ee15e
stdlib@go1.24.7
1.25.10
1
quay.io/cilium/hubble-ui-backend:v0.13.3db1454e45dc3
stdlib@go1.24.5
1.25.10
1
quay.io/cilium/operator-generic:v1.17.14773886ec9337
stdlib@go1.25.8
1.25.10
1
quay.io/cilium/operator-generic:v1.15.1819c7281f5a4
stdlib@go1.21.6
1.25.10
1
quay.io/cilium/operator-generic:v1.18.2cb4e4ffc5789
stdlib@go1.24.7
1.25.10
1
quay.io/cilium/tetragon:v1.1.096fac2482898
stdlib@go1.22.2
1.25.10
1
quay.io/cilium/tetragon-ci:b6f3056a3f6cf05e366a3e07348f7c0b6265a60f5efd991d218b
stdlib@go1.19.2
1.25.10
1
quay.io/cilium/tetragon-operator:v0.8.34ab8e6604204
stdlib@go1.18.3
1.25.10
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
stdlib@go1.18.1
1.25.10
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
stdlib@go1.19.10
1.25.10
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
stdlib@go1.23.8
1.25.10
1
quay.io/coreos/etcd:v3.5.11842975891182
stdlib@go1.20.12
1.25.10
1
quay.io/coreos/etcd:v3.5.16d967d98a12dc
stdlib@go1.22.7
1.25.10
1
quay.io/cortexproject/cortex:v1.9.05d1c2cf4c538
stdlib@go1.16.3
1.25.10
1
quay.io/cortexproject/cortex:v1.21.18577eb292a01
stdlib@go1.25.8
1.25.10
1
quay.io/ddn/exascaler-csi-file-driver:v2.2.6fe2e2e5a2751
stdlib@go1.23.0
1.25.10
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
stdlib@go1.16.6
1.25.10
1
quay.io/enix/zfs-exporter:2.3.1223b053f1cbd0
stdlib@go1.24.2
1.25.10
1
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
stdlib@go1.23.6
1.25.10
1
quay.io/evl.ms/pgbouncer-exporter:0.4.074f919b78494
stdlib@go1.14.4
1.25.10
1
quay.io/evryfs/github-actions-runner-operator:v0.11.16b084e0bd082
stdlib@go1.21.1
1.25.10
1
quay.io/fairwinds/docker-demo:1.4.0d53cb940196c
stdlib@go1.20.4
1.25.10
1
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
stdlib@go1.25.7
1.25.10
1
quay.io/fiware/dsba-pdp:0.3.20cca71497e9e
stdlib@go1.18.10
1.25.10
1
quay.io/fiware/envoy-configmap-updater:0.4.39eabc3f3e1e2
stdlib@go1.18.5
1.25.10
1
quay.io/fiware/ishare-auth-provider:0.4.3158108f70f95
stdlib@go1.18.5
1.25.10
1
quay.io/fiware/vcverifier:2.0.1cd36290dc849
stdlib@go1.19.9
1.25.10
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
stdlib@go1.20.2
1.25.10
1
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
stdlib@go1.17.12
1.25.10
1
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
stdlib@go1.17.12
1.25.10
1
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
stdlib@go1.17.12
1.25.10
1
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
stdlib@go1.18.4
1.25.10
1
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
stdlib@go1.18.4
1.25.10
1
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
stdlib@go1.18.4
1.25.10
1
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
stdlib@go1.18.4
1.25.10
1
quay.io/fossa/postgres:17.2-15af45ac79f38
stdlib@go1.18.2
1.25.10
1
quay.io/galexrt/dellhw_exporter:v2.0.0-rc.18a1361fa38c1
stdlib@go1.23.2
1.25.10
1
quay.io/galexrt/dellhw_exporter:v2.0.0b3a5806d73b5
stdlib@go1.25.8
1.25.10
1
quay.io/geored/spmm-collector-contrib:1.0.063baf86a49ac
stdlib@go1.20.5
1.25.10
1
quay.io/giantswarm/cloudflared:2022.3.40b20d2fe9a6b
stdlib@go1.17.1
1.25.10
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.