StackRadar

CVE-2026-42504

High

Advisory

Published 2 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,036
of 17,781 indexed, latest versions
Container images
4,636
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic complexity in WordDecoder.DecodeHeader in mime

Carried by container images the latest versions of 4,036 of 17,781 indexed charts deploy, on 4,636 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.114,636
OSV records
DEBIAN-CVE-2026-42504GO-2026-5038
Also known as
BIT-golang-2026-42504

Charts affected

4,036 by stars
ChartLatestAffected imagesRadar Score
vcluster-k0sloftVerified publisher0.0.0-ci.31 of 2See more

vcluster-k0s loft 0.0.0-ci.3

1 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
stdlib@go1.19.4
1.25.11

Open the chart page →

3,136
log2rbac-operatorlog2rbac-operator0.0.51 of 1See more

log2rbac-operator log2rbac-operator 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
jkremser/log2rbac:v0.0.5e35cf56ef183
stdlib@go1.17.6
1.25.11

Open the chart page →

1,938
logclilogcliVerified publisher0.1.01 of 1See more

logcli logcli 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
grafana/logcli:main-c90366d-amd643d85bb66e39b
stdlib@go1.16.2
1.25.11

Open the chart page →

2,947
lumenvoxlumenvox7.1.010 of 11See more

lumenvox lumenvox 7.1.0

10 of the 11 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
lumenvox/admin-portal:7.112310cf52f79
stdlib@go1.26.2
1.25.11
lumenvox/archive:7.15114f08ab8ef
stdlib@go1.26.2
1.25.11
lumenvox/cloud-init-tools:7.1de940e2ec601
stdlib@go1.26.2
1.25.11
lumenvox/configuration:7.182bf01d9ebec
stdlib@go1.26.2
1.25.11
lumenvox/deployment:7.1dadac2a74be6
stdlib@go1.26.2
1.25.11
lumenvox/file-store:7.138aa8711c9ef
stdlib@go1.26.2
1.25.11
lumenvox/license:7.135d0b1ac053e
stdlib@go1.26.2
1.25.11
lumenvox/management-api:7.16420a6e7d6c2
stdlib@go1.26.2
1.25.11
lumenvox/resource:7.193fd6ff1d62c
stdlib@go1.26.2
1.25.11
lumenvox/storage:7.1c961fe78e2ca
stdlib@go1.26.2
1.25.11

Open the chart page →

4,283
voice-biometricslumenvox2.0.18 of 26See more

voice-biometrics lumenvox 2.0.1

8 of the 26 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.11
library/traefik:v2.57d5a6ae66572
stdlib@go1.17.6
1.25.11
lumenvox/cloud-init-tools:2.0.07ff037a71c50
stdlib@go1.17.3
1.25.11
lumenvox/cloud-license:2.0.09a69862e1248
stdlib@go1.17.3
1.25.11
prom/pushgateway:v1.3.18305a33fb80a
stdlib@go1.15.6
1.25.11
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.11
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
stdlib@go1.15.8
1.25.11
quay.io/prometheus/prometheus:v2.26.038d40a760569
stdlib@go1.16.2
1.25.11

Open the chart page →

70,741
dnsbl-exporterluzillaVerified publisher0.5.01 of 2See more

dnsbl-exporter luzilla 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/luzilla/dnsbl_exporter:v0.12.0ecba7360ff12
stdlib@go1.25.0
1.25.11

Open the chart page →

1,146
lynqlynqVerified publisher1.1.221 of 1See more

lynq lynq 1.1.22

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/k8s-lynq/lynq:1.1.22229b05e3c717
stdlib@go1.24.13
1.25.11

Open the chart page →

621
magentomagento3.2.35 of 12See more

magento magento 3.2.3

5 of the 12 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
stdlib@go1.18.2
1.25.11
library/rabbitmq:4.1.0-management935b3f84c1e4
stdlib@go1.22.2
1.25.11
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
stdlib@go1.24.6
1.25.11
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
stdlib@go1.24.6
1.25.11
longhornio/longhorn-ui:v1.10.0e60f36161511
stdlib@go1.24.6
1.25.11

Open the chart page →

13,479
goblackholemainVerified publisher0.0.41 of 1See more

goblackhole main 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
bedag/goblackhole:0.2.0447a88598f4c
stdlib@go1.16.6
1.25.11

Open the chart page →

1,972
plane-enterprisemakeplaneOfficialVerified publisher3.7.13 of 13See more

plane-enterprise makeplane 3.7.1

3 of the 13 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
library/postgres:15.7-alpine468d34fefd63
stdlib@go1.18.2
1.25.11
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
stdlib@go1.24.6
1.25.11
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
stdlib@go1.24.6
1.25.11

Open the chart page →

4,942
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
stdlib@go1.13.10
1.25.11

Open the chart page →

3,600
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.11

Open the chart page →

19,187
mcpmcp-chartsVerified publisher0.0.232 of 7See more

mcp mcp-charts 0.0.23

2 of the 7 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
stdlib@go1.25.4
1.25.11
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
stdlib@go1.25.4
1.25.11

Open the chart page →

6,929
traefik-forward-authmesosphere0.3.102 of 2See more

traefik-forward-auth mesosphere 0.3.10

2 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
stdlib@go1.15.11
1.25.11
mesosphere/traefik-forward-auth:3.1.05456581d7b76
stdlib@go1.14.15
1.25.11

Open the chart page →

5,308
metadata-injectormetadata-injector-operator0.0.11 of 1See more

metadata-injector metadata-injector-operator 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ruslanguns/metadata-injector-operator:v0.0.16c77e4675e07
stdlib@go1.22.11
1.25.11

Open the chart page →

561
metrics-server-exportermetrics-server-exporterVerified publisher2.4.01 of 1See more

metrics-server-exporter metrics-server-exporter 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
mrnim94/metrics-server-exporter:v2.4.086c4807a4bca
stdlib@go1.26.3
1.25.11

Open the chart page →

1,272
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
stdlib@go1.14.6
1.25.11

Open the chart page →

3,254
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
stdlib@go1.23.4
1.25.11

Open the chart page →

4,137
librenmsmidokura-communityVerified publisher0.3.21 of 6See more

librenms midokura-community 0.3.2

1 of the 6 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
librenms/librenms:22.4.14f1f3d667cc7
stdlib@go1.16.12
1.25.11

Open the chart page →

8,967
chartmuseummike75151.2.01 of 1See more

chartmuseum mike7515 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
stdlib@go1.17.8
1.25.11

Open the chart page →

3,168
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
stdlib@go1.15.7
1.25.11

Open the chart page →

6,915
mimir-syncmimir-sync3.1.01 of 1See more

mimir-sync mimir-sync 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/antnsn/mal-sync:v1.0.52f06e72cef36
stdlib@go1.23.7
1.25.11

Open the chart page →

1,293
minecraft-exporterminecraft-exporterVerified publisher0.16.01 of 1See more

minecraft-exporter minecraft-exporter 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/dirien/minecraft-exporter:0.24.061d89bf99ff7
stdlib@go1.25.10
1.25.11

Open the chart page →

362
miniapiminiapi1.3.21 of 1See more

miniapi miniapi 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
udhos/miniapi:1.3.28a7042db82ce
stdlib@go1.23.2
1.25.11

Open the chart page →

854
mlflow-servermlflowserver0.1.91 of 3See more

mlflow-server mlflowserver 0.1.9

1 of the 3 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
stdlib@go1.25.5
1.25.11

Open the chart page →

5,804
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
stdlib@go1.25.4
1.25.11

Open the chart page →

11,103
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
stdlib@go1.24.0
1.25.11

Open the chart page →

2,680
model-manager-servermodel-manager-server1.27.01 of 1See more

model-manager-server model-manager-server 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-server:1.27.0c057dcdd9ef3
stdlib@go1.23.12
1.25.11

Open the chart page →

733
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
stdlib@go1.19.12
1.25.11

Open the chart page →

13,738
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
stdlib@go1.24.6
1.25.11
library/redmine:6.1.204ac44a2595b
stdlib@go1.24.6
1.25.11

Open the chart page →

7,527
podsyncmy0nVerified publisher1.5.41 of 2See more

podsync my0n 1.5.4

1 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
tdeutsch/podsync:v2.4.2b67186f4c9a5
stdlib@go1.19.3
1.25.11

Open the chart page →

2,059
maddymyaVerified publisher22.4.121 of 2See more

maddy mya 22.4.12

1 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
foxcpp/maddy:0.7.16ab538e2f28b
stdlib@go1.19.13
1.25.11

Open the chart page →

1,412
registrymyaVerified publisher22.4.111 of 1See more

registry mya 22.4.11

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
distribution/distribution:2.8.3f84b2078238f
stdlib@go1.20.8
1.25.11

Open the chart page →

899
simple-gowikimy-helm-chartsVerified publisher0.2.01 of 1See more

simple-gowiki my-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
forchaladtest/mygowiki:1.0.170827eaecad1
stdlib@go1.22.6
1.25.11

Open the chart page →

399
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
stdlib@go1.18.1
1.25.11

Open the chart page →

3,689
nats-account-servernatsVerified publisher0.8.11 of 1See more

nats-account-server nats 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
natsio/nats-account-server:1.0.0a3381560aab6
stdlib@go1.16.6
1.25.11

Open the chart page →

2,634
surveyornatsVerified publisher0.20.91 of 1See more

surveyor nats 0.20.9

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
natsio/nats-surveyor:0.9.9104a3e938b23
stdlib@go1.26.1
1.25.11

Open the chart page →

908
natz-operatornatz-operatorVerified publisher0.9.51 of 1See more

natz-operator natz-operator 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/zeiss/natz-operator/operator:0.9.5187007974540
stdlib@go1.23.3
1.25.11

Open the chart page →

745
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.11

Open the chart page →

1,626
clowder2ncsaVerified publisher1.9.76 of 12See more

clowder2 ncsa 1.9.7

6 of the 12 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
stdlib@go1.21.8
1.25.11
bitnamilegacy/keycloak:20.0.5cb04e49e6eb1
stdlib@go1.18.2
1.25.11
bitnamilegacy/minio:2023.12.230b60b6565ab2
stdlib@go1.20.13
1.25.11
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
stdlib@go1.18.4
1.25.11
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
stdlib@go1.21.7
1.25.11
bitnamilegacy/rabbitmq:3.10.88f7161d8ce19
stdlib@go1.16.7
1.25.11

Open the chart page →

37,373
ngrok-operatorngrok-operator1.1.01 of 2See more

ngrok-operator ngrok-operator 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
stdlib@go1.16.15
1.25.11

Open the chart page →

1,896
node-exporternode-exporterVerified publisher0.1.101 of 1See more

node-exporter node-exporter 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
prom/node-exporter:v1.6.0d2e48098c364
stdlib@go1.20.4
1.25.11

Open the chart page →

1,229
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
stdlib@go1.16.7
1.25.11

Open the chart page →

14,250
nri-resource-policy-balloonsnri-pluginsOfficialVerified publisher0.14.01 of 1See more

nri-resource-policy-balloons nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-resource-policy-balloons:v0.14.0a8c8297c7274
stdlib@go1.26.0
1.25.11

Open the chart page →

279
nri-resource-policy-topology-awarenri-pluginsOfficialVerified publisher0.14.01 of 1See more

nri-resource-policy-topology-aware nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-resource-policy-topology-aware:v0.14.0e2443833726a
stdlib@go1.26.0
1.25.11

Open the chart page →

279
nutanix-csi-snapshotnutanix-helm-releasesOfficialVerified publisher8.3.01 of 1See more

nutanix-csi-snapshot nutanix-helm-releases 8.3.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v8.3.012c2da094b02
stdlib@go1.24.2
1.25.11

Open the chart page →

423
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.34 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

4 of the 5 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
library/nats:2.11.9-alpine777787bbb4c7
stdlib@go1.24.7
1.25.11
natsio/nats-box:0.18.0abdc9f9f0120
stdlib@go1.24.3
1.25.11
natsio/nats-server-config-reloader:0.19.181edf32a3680
stdlib@go1.24.5
1.25.11
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
stdlib@go1.24.3
1.25.11

Open the chart page →

6,091
oadaoadaVerified publisher5.0.51 of 11See more

oada oada 5.0.5

1 of the 11 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:no-root-v2.0a26d3d3f6e1c
stdlib@go1.19.3
1.25.11

Open the chart page →

13,317
transfer.shobeoneVerified publisher1.0.51 of 1See more

transfer.sh obeone 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
dutchcoders/transfer.sh:v1.6.1-noroot8db9ade72a0d
stdlib@go1.20.11
1.25.11

Open the chart page →

1,171
oci-native-ingress-controlleroci-native-ingress-controller1.0.01 of 1See more

oci-native-ingress-controller oci-native-ingress-controller 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42504.

Container imageDigestPackageFixed in
amaanx86/oci-native-ingress-controller:masterd7206ac7a319
stdlib@go1.23.7
1.25.11

Open the chart page →

434

Container images carrying it

4,636 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/registry:2:2.8.3a3d8aaa63ed8
stdlib@go1.20.8
1.25.11
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
stdlib@go1.18.2
1.25.11
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
stdlib@go1.20.12
1.25.11
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
stdlib@go1.16.6
1.25.11
6
quay.io/devtron/kubectl:latest2ad610626658
stdlib@go1.18.5
1.25.11
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
stdlib@go1.19.9
1.25.11
6
quay.io/devtron/postgres:14.91b594392f7cb
stdlib@go1.18.2
1.25.11
6
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
stdlib@go1.17.6
1.25.11
6
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.11
6
quay.io/prometheus/node-exporter:v1.11.10f422f62c15f
stdlib@go1.26.1
1.25.11
6
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
stdlib@go1.25.3
1.25.11
6
quay.io/prometheus/node-exporter:v1.8.1fa7fa12a57ef
stdlib@go1.22.3
1.25.11
6
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
stdlib@go1.23.7
1.25.11
6
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.11
6
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.25.11
6
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.12.0b401fae262a5
stdlib@go1.21.8
1.25.11
6
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
stdlib@go1.26.3
1.25.11
6
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0:v2.8.1f6717ce72a26
stdlib@go1.20.3
1.25.11
6
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
stdlib@go1.24.2
1.25.11
6
registry.k8s.io/sig-storage/livenessprobe:v2.19.006da0d5b8908
stdlib@go1.26.3
1.25.11
6
alpine/kubectl:1.34.18413f8890d19
stdlib@go1.24.6
1.25.11
5
bitnamilegacy/kubectl:1.29.2c74b703deed2
stdlib@go1.21.7
1.25.11
5
containous/whoami:latest:v1.5.07d6a3c8f9147
stdlib@go1.14
1.25.11
5
grafana/grafana:13.2.1-distroless3600073f45a9
stdlib@go1.26.3
1.25.11
5
keelhq/keel:latest73714afb4443
stdlib@go1.23.4
1.25.11
5
library/mongo:4.44be76f674fc4
stdlib@go1.21.12
1.25.11
5
library/postgres:122f2a8c2a7d10
stdlib@go1.18.2
1.25.11
5
library/redis:7.4.2-alpine:7.4.2-alpine3.2102419de7eddf
stdlib@go1.18.2
1.25.11
5
library/redis:5:5.0fc5ecd863862
stdlib@go1.16.7
1.25.11
5
natsio/nats-box:0.14.1a67913df95f1
stdlib@go1.21.3
1.25.11
5
postgis/postgis:latest01a6a70e41e6
stdlib@go1.18.2
1.25.11
5
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.25.11
5
prom/memcached-exporter:v0.15.4b6763ecb3c47
stdlib@go1.25.3
1.25.11
5
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.25.11
5
sigma2as/goidc-proxy:next656ac798963a
stdlib@go1.25.7
1.25.11
5
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
stdlib@go1.21.1
1.25.11
5
quay.io/brancz/kube-rbac-proxy:v0.19.19f21034731c7
stdlib@go1.24.2
1.25.11
5
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.25.11
5
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
stdlib@go1.16.7
1.25.11
5
quay.io/prometheus/blackbox-exporter:latest:v0.28.0e753ff9f3fc4
stdlib@go1.25.5
1.25.11
5
quay.io/prometheus/pushgateway:v1.11.374fa117cef2d
stdlib@go1.26.3
1.25.11
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
stdlib@go1.26.1
1.25.11
5
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.901038e7de14b
stdlib@go1.26.1
1.25.11
5
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.11
5
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20231011-8b53cabe0a7943503b45d
stdlib@go1.21.3
1.25.11
5
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.4a9f03b34a3cb
stdlib@go1.22.8
1.25.11
5
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
stdlib@go1.25.7
1.25.11
5
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.25.11
5
registry.k8s.io/sig-storage/csi-provisioner:v6.2.06be9f63ca4ca
stdlib@go1.25.7
1.25.11
5
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.25.11
5

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.