StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,031
of 17,828 indexed, latest versions
Container images
4,604
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 4,031 of 17,828 indexed charts deploy, on 4,604 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.104,604
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

4,031 by stars
ChartLatestAffected imagesRadar Score
gohttpserverutkuozdemirVerified publisher0.2.01 of 1See more

gohttpserver utkuozdemir 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
codeskyblue/gohttpserver:latestcaa862590e34
stdlib@go1.16.3
1.25.10

Open the chart page →

1,899
transmission-exporterutkuozdemirVerified publisher1.1.01 of 1See more

transmission-exporter utkuozdemir 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
metalmatze/transmission-exporter:0.3.090d6acb6d47d
stdlib@go1.13
1.25.10

Open the chart page →

1,647
proxyv2flyVerified publisher0.0.61 of 1See more

proxy v2fly 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
v2fly/v2fly-core:latestd06727b221fe
stdlib@go1.24.2
1.25.10

Open the chart page →

1,436
vals-operatorvals-operatorVerified publisher0.8.11 of 1See more

vals-operator vals-operator 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/digitalis-io/vals-operator:v0.8.17c776499b8c9
stdlib@go1.25.7
1.25.10

Open the chart page →

730
vault-raft-snapshot-agentvault-raft-snapshot-agentVerified publisher0.6.91 of 1See more

vault-raft-snapshot-agent vault-raft-snapshot-agent 0.6.9

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
stdlib@go1.23.10
1.25.10

Open the chart page →

1,267
vault-sync-operatorvault-sync-operatorVerified publisher0.1.11 of 1See more

vault-sync-operator vault-sync-operator 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/danieldonoghue/vault-sync-operator:v0.0.1-beta.38d7ec69a193c
stdlib@go1.25.9
1.25.10

Open the chart page →

277
evolution-apivcnngrVerified publisher1.0.01 of 5See more

evolution-api vcnngr 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
evoapicloud/evolution-api:latest966625532d90
stdlib@go1.23.12
1.25.10

Open the chart page →

3,764
openldap-havcnngrVerified publisher1.0.01 of 3See more

openldap-ha vcnngr 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.25.10

Open the chart page →

5,517
simple-prima-notavcnngrVerified publisher0.5.31 of 4See more

simple-prima-nota vcnngr 0.5.3

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:16-alpine721873c34ceb
stdlib@go1.24.6
1.25.10

Open the chart page →

5,075
velocityvelocity1.0.01 of 2See more

velocity velocity 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.10

Open the chart page →

978
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
stdlib@go1.13.10
1.25.10

Open the chart page →

7,521
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
stdlib@go1.13.10
1.25.10

Open the chart page →

7,539
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
stdlib@go1.13.10
1.25.10

Open the chart page →

7,442
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
stdlib@go1.13.10
1.25.10

Open the chart page →

7,442
homarrvhdirkVerified publisher0.1.51 of 1See more

homarr vhdirk 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:lateste103abadfb52
stdlib@go1.22.5
1.25.10

Open the chart page →

2,805
scrutinyvhdirkVerified publisher0.1.31 of 1See more

scrutiny vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
stdlib@go1.20.14
1.25.10

Open the chart page →

4,362
bugsinkvictorlane0.3.71 of 2See more

bugsink victorlane 0.3.7

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mariadb:12.0-noble607835cd628b
stdlib@go1.24.6
1.25.10

Open the chart page →

4,192
n8nvictorlane1.0.181 of 1See more

n8n victorlane 1.0.18

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
n8nio/n8n:1.115.1ed16e560c40e
stdlib@go1.24.6
1.25.10

Open the chart page →

6,508
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
stdlib@go1.21.7
1.25.10

Open the chart page →

69,395
pagesvictor-pages1.0.01 of 3See more

pages victor-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,287
kube-monitoring-telegram-botviento-repository1.0.01 of 1See more

kube-monitoring-telegram-bot viento-repository 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
stdlib@go1.16.4
1.25.10

Open the chart page →

7,904
vineyard-operatorvineyardVerified publisher0.24.22 of 2See more

vineyard-operator vineyard 0.24.2

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
vineyardcloudnative/vineyard-operator:latest9d419aa18faa
stdlib@go1.19.13
1.25.10
ghcr.io/v6d-io/v6d/kube-rbac-proxy:v0.13.0a2523c532c0c
stdlib@go1.18.3
1.25.10

Open the chart page →

4,576
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
stdlib@go1.17.8
1.25.10

Open the chart page →

7,782
ciliumvks-helm-chartsVerified publisher1.17.143 of 3See more

cilium vks-helm-charts 1.17.14

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
stdlib@go1.25.8
1.25.10
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
stdlib@go1.25.8
1.25.10
quay.io/cilium/operator-generic:v1.17.14773886ec9337
stdlib@go1.25.8
1.25.10

Open the chart page →

4,201
corednsvks-helm-chartsVerified publisher1.45.01 of 1See more

coredns vks-helm-charts 1.45.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
coredns/coredns:1.13.19b9128672209
stdlib@go1.25.2
1.25.10

Open the chart page →

923
vm-console-proxyvm-console-proxyVerified publisher0.2.01 of 1See more

vm-console-proxy vm-console-proxy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/kubevirt/vm-console-proxy:v0.8.08d6b4b6e99bd
stdlib@go1.22.4
1.25.10

Open the chart page →

646
go-devvoid-xmh1.0.11 of 1See more

go-dev void-xmh 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
voidxmh/golang:1.19-alpine-dev423c6195fab2
stdlib@go1.19
1.25.10

Open the chart page →

1,155
muthurvojtechpastyrikVerified publisher0.10.01 of 1See more

muthur vojtechpastyrik 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/vojtechpastyrik/muthur:0.10.0b5a06a6e13b9
stdlib@go1.26.1
1.25.10

Open the chart page →

320
muthur-collectorvojtechpastyrikVerified publisher0.11.01 of 1See more

muthur-collector vojtechpastyrik 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/vojtechpastyrik/muthur-collector:0.11.00a580fe3a032
stdlib@go1.26.1
1.25.10

Open the chart page →

320
volantmqvolantmq0.1.21 of 1See more

volantmq volantmq 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
volantmq/volantmq:v0.4.0-rc.69bfe7857ebc3
stdlib@go1.13.6
1.25.10

Open the chart page →

2,551
volcanovolcano-sh1.15.23 of 3See more

volcano volcano-sh 1.15.2

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
volcanosh/vc-controller-manager:v1.15.26a6bc2560d51
stdlib@go1.25.0
1.25.10
volcanosh/vc-scheduler:v1.15.2afab36286a17
stdlib@go1.25.0
1.25.10
volcanosh/vc-webhook-manager:v1.15.22fff65aad011
stdlib@go1.25.0
1.25.10

Open the chart page →

1,542
postgresappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,618
voteappvoting-app-helm-charts-repoVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
stdlib@go1.24.6
1.25.10

Open the chart page →

8,232
postgresappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.10

Open the chart page →

1,618
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
stdlib@go1.24.6
1.25.10

Open the chart page →

8,232
vpa-managervpa-managerVerified publisher0.4.91 of 1See more

vpa-manager vpa-manager 0.4.9

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/jcluppnow/vpa-manager:0.6.4e459d2fba277
stdlib@go1.22.7
1.25.10

Open the chart page →

491
vulcanvulcan0.2.21 of 2See more

vulcan vulcan 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
mitre/vulcan:latest2bc4dfb8150f
stdlib@go1.25.5
1.25.10

Open the chart page →

1,550
cert-manager-webhook-vultrvultrVerified publisher1.0.01 of 1See more

cert-manager-webhook-vultr vultr 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
vultr/cert-manager-webhook-vultr:v0.1.0541c3e0aec58
stdlib@go1.16.3
1.25.10

Open the chart page →

2,508
vultr-csivultrVerified publisher2.0.01 of 4See more

vultr-csi vultr 2.0.0

1 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
vultr/vultr-csi:v0.3.041d26735d437
stdlib@go1.16.8
1.25.10

Open the chart page →

2,354
websitewaldo-visionVerified publisher0.33.01 of 2See more

website waldo-vision 0.33.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
stdlib@go1.20.2
1.25.10

Open the chart page →

3,480
aih-scannerwallarmVerified publisher2.7.112 of 2See more

aih-scanner wallarm 2.7.11

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wallarm/aih-scanner:2.7.11f1cb26db1f5b
stdlib@go1.26.2
1.25.10
wallarm/aih-webhook:2.7.116363a9cd2ad8
stdlib@go1.26.2
1.25.10

Open the chart page →

4,101
gateway-control-planewallarmVerified publisher0.2.02 of 2See more

gateway-control-plane wallarm 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
timescale/timescaledb:latest-pg17c79fa5891443
stdlib@go1.26.2
1.25.10
wallarm/gateway-control-plane:0.2.0a321bc974a19
stdlib@go1.24.13
1.25.10

Open the chart page →

1,220
kongwallarmVerified publisher4.6.33 of 7See more

kong wallarm 4.6.3

3 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wallarm/ingress-python:4.6.0-15cb2ae08b40f
stdlib@go1.18.2
1.25.10
wallarm/ingress-ruby:4.6.0-1aecdb35c4def
stdlib@go1.18.3
1.25.10
wallarm/kong-kubernetes-ingress-controller:2.8b55ff6cecbd5
stdlib@go1.19.4
1.25.10

Open the chart page →

74,873
kong-previewwallarmVerified publisher4.2.32 of 5See more

kong-preview wallarm 4.2.3

2 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kong/kubernetes-ingress-controller:2.1.160e4102ab2da
stdlib@go1.17.5
1.25.10
wallarm/ingress-ruby:4.2.1-195ea2632326c
stdlib@go1.18.3
1.25.10

Open the chart page →

2,907
wallarm-ingress-rcwallarmVerified publisher4.8.42 of 2See more

wallarm-ingress-rc wallarm 4.8.4

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
stdlib@go1.20.5
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

2,636
wallarm-node-nextwallarmVerified publisher0.5.32 of 2See more

wallarm-node-next wallarm 0.5.3

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wallarm/node-helpers:5.0.2-1097cadc42336
stdlib@go1.22.7
1.25.10
wallarm/node-next:0.5.24314f3d2b918
stdlib@go1.22.7
1.25.10

Open the chart page →

2,414
wallarm-oobwallarmVerified publisher0.23.03 of 3See more

wallarm-oob wallarm 0.23.0

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wallarm/ebpf-agent:0.11.0-rc0c8920e60c726
stdlib@go1.22.1
1.25.10
wallarm/node-helpers:6.10.1aecd88b24c51
stdlib@go1.25.7
1.25.10
wallarm/node-native-processing:0.23.07db2da8fce0b
stdlib@go1.26.0
1.25.10

Open the chart page →

2,842
pageswalter1.0.01 of 3See more

pages walter 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.10

Open the chart page →

20,287
consulwarjiang1.3.02 of 2See more

consul warjiang 1.3.0

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
stdlib@go1.20.10
1.25.10
hashicorp/consul-k8s-control-plane:1.3.00e4452f0f265
stdlib@go1.20.10
1.25.10

Open the chart page →

4,102
eth-validatorwateim1.4.51 of 3See more

eth-validator wateim 1.4.5

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
wateim/lighthouse-launch:latest2520149ee574
stdlib@go1.23.8
1.25.10

Open the chart page →

5,142

Container images carrying it

4,604 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/minio/csi-provisioner7b5c070ec70d
stdlib@go1.20.3
1.25.10
1
quay.io/minio/csi-resizer819f68a4daf7
stdlib@go1.20.3
1.25.10
1
quay.io/minio/directpv:v4.0.84560083eb77d
stdlib@go1.21.0
1.25.10
1
quay.io/minio/livenessprobef3bc9a84f149
stdlib@go1.20.3
1.25.10
1
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
stdlib@go1.21.5
1.25.10
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
stdlib@go1.19.2
1.25.10
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
stdlib@go1.18.6
1.25.10
1
quay.io/minio/mc:RELEASE.2024-04-29T09-56-05Zc574fac67f60
stdlib@go1.21.9
1.25.10
1
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
stdlib@go1.21.5
1.25.10
1
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
stdlib@go1.21.5
1.25.10
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
stdlib@go1.18.6
1.25.10
1
quay.io/minio/minio:RELEASE.2024-06-04T19-20-08Zc6b68f158628
stdlib@go1.22.3
1.25.10
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
stdlib@go1.19.2
1.25.10
1
quay.io/minio/operator:v7.1.1cd587f60c43d
stdlib@go1.24.2
1.25.10
1
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
stdlib@go1.19.13
1.25.10
1
quay.io/mittwald/harbor-operator:v1.6.365a38180e27a
stdlib@go1.22.2
1.25.10
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
stdlib@go1.24.4
1.25.10
1
quay.io/mittwald/kubernetes-replicator:v2.11.13185496b3af3
stdlib@go1.24.1
1.25.10
1
quay.io/mittwald/kubernetes-replicator:v2.12.45dc9fc5ff59a
stdlib@go1.24.13
1.25.10
1
quay.io/mittwald/kubernetes-replicator:v2.10.0b79e77d421d0
stdlib@go1.20.14
1.25.10
1
quay.io/mittwald/kubernetes-replicator:v2.9.1baf5f784398b
stdlib@go1.20.5
1.25.10
1
quay.io/mittwald/kubernetes-secret-generator:v3.4.1465b8e6d0462
stdlib@go1.23.1
1.25.10
1
quay.io/mittwald/servicegateway:v2.3.3fa948df30d44
stdlib@go1.21.5
1.25.10
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
stdlib@go1.13.15
1.25.10
1
quay.io/mongodb/mongodb-enterprise-operator-ubi:1.33.0b05101723412
stdlib@go1.24.2
1.25.10
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
stdlib@go1.14.10
1.25.10
1
quay.io/mongodb/mongodb-kubernetes-operator:0.9.05ee4bd681085
stdlib@go1.21.4
1.25.10
1
quay.io/nmstate/kubernetes-nmstate-operator:v0.87.04dce694f01ea
stdlib@go1.26.0
1.25.10
1
quay.io/nuclio/dashboard:1.17.8-amd64b5f5bd4efbee
stdlib@go1.26.1
1.25.10
1
quay.io/oauth2-proxy/oauth2-proxy:v7.13.056e3daedf765
stdlib@go1.25.4
1.25.10
1
quay.io/oauth2-proxy/oauth2-proxy:v7.14.368336da945bd
stdlib@go1.25.7
1.25.10
1
quay.io/oauth2-proxy/oauth2-proxy:v6.1.1791aef35b8d1
stdlib@go1.14.4
1.25.10
1
quay.io/oauth2-proxy/oauth2-proxy:v7.7.09ed7eaf72050
stdlib@go1.22.8
1.25.10
1
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
stdlib@go1.16
1.25.10
1
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
stdlib@go1.17.5
1.25.10
1
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
stdlib@go1.20.10
1.25.10
1
quay.io/open-cluster-management/cluster-proxy:v0.12.035f9c3ad644a
stdlib@go1.22.4
1.25.10
1
quay.io/open-cluster-management/dynamic-scoring-addon:latest7e571a08ec1a
stdlib@go1.24.13
1.25.10
1
quay.io/open-cluster-management/dynamic-scoring-controller:latest587f5bc8f2ed
stdlib@go1.24.13
1.25.10
1
quay.io/open-cluster-management/kueue-addon:v0.1.47f728514fead
stdlib@go1.24.6
1.25.10
1
quay.io/open-cluster-management/multicluster-mesh-addon:latest3e010e1188f1
stdlib@go1.19.13
1.25.10
1
quay.io/openshift/origin-cli:4.66722d5041b47
stdlib@go1.15.14
1.25.10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
stdlib@go1.16.9
1.25.10
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
stdlib@go1.21.3
1.25.10
1
quay.io/operator-framework/catalogd:v1.8.06ff40fa6257f
stdlib@go1.25.3
1.25.10
1
quay.io/operator-framework/olm1b6002156f56
stdlib@go1.21.7
1.25.10
1
quay.io/operator-framework/olm40d0363f4aa6
stdlib@go1.22.3
1.25.10
1
quay.io/operator-framework/olmf9ea8cef95ac
stdlib@go1.19.6
1.25.10
1
quay.io/operator-framework/operator-controller:v1.8.0bca5dfcc67ca
stdlib@go1.25.3
1.25.10
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
stdlib@go1.17.2
1.25.10
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.