StackRadar

CVE-2026-42507

Medium

Advisory

Published 2 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,064
of 17,787 indexed, latest versions
Container images
4,680
deployed by those charts
Fix available
1 of 2
affected packages

Arbitrary inputs are included in errors without any escaping in net/textproto

Carried by container images the latest versions of 4,064 of 17,787 indexed charts deploy, on 4,680 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.114,680
OSV records
DEBIAN-CVE-2026-42507GO-2026-5039
Also known as
BIT-golang-2026-42507

Charts affected

4,064 by stars
ChartLatestAffected imagesRadar Score
supabasesupabse0.8.04 of 11See more

supabase supabse 0.8.0

4 of the 11 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
stdlib@go1.25.1
1.25.11
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.11
supabase/gotrue:v2.189.0385184459f57
stdlib@go1.25.8
1.25.11
supabase/postgres:17.6.1.136f371b5f3f2ac
stdlib@go1.26.1
1.25.11

Open the chart page →

18,213
Grafanasurajwarbhe-grafana0.1.01 of 1See more

Grafana surajwarbhe-grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
surajwarbhe/grafana:v185248611e9f1
stdlib@go1.14.3
1.25.11

Open the chart page →

2,597
switchboardswitchboardVerified publisher0.7.41 of 1See more

switchboard switchboard 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/borchero/switchboard:0.7.454a193b757da
stdlib@go1.26.1
1.25.11

Open the chart page →

839
synology-proxy-operatorsynology-proxy-operatorVerified publisher0.0.81 of 1See more

synology-proxy-operator synology-proxy-operator 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/phoeluga/synology-proxy-operator:0.0.8b26510b26b31
stdlib@go1.26.2
1.25.11

Open the chart page →

210
hello-appsysintelligentVerified publisher2.0.11 of 1See more

hello-app sysintelligent 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sysintelligent/hello-app:2.0.177fb30df847d
stdlib@go1.19.3
1.25.11

Open the chart page →

1,880
headscaleszpadel-chartsVerified publisher0.30.21 of 3See more

headscale szpadel-charts 0.30.2

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/tale/headplane:0.6.39476cc5adb12
stdlib@go1.25.1
1.25.11

Open the chart page →

1,852
tenuretenureVerified publisher1.0.62 of 2See more

tenure tenure 1.0.6

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
mongodb/mongodb-atlas-local:8925c3d34f0c6
stdlib@go1.25.9
1.25.11
tenureai/tenure:v1.0.285f5b222df9a5
stdlib@go1.26.2
1.25.11

Open the chart page →

2,553
terraform-controllerterraform-controller0.0.201 of 1See more

terraform-controller terraform-controller 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
absaoss/terraform-controller:v0.0.20ad538a1285a0
stdlib@go1.14.8
1.25.11

Open the chart page →

3,538
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
stdlib@go1.20.6
1.25.11

Open the chart page →

9,108
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
stdlib@go1.20.6
1.25.11

Open the chart page →

9,108
base-clusterteuto-netVerified publisher12.4.01 of 1See more

base-cluster teuto-net 12.4.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:1.33.4261a9ed843eb
stdlib@go1.24.5
1.25.11

Open the chart page →

436
tocktock0.6.31 of 9See more

tock tock 0.6.3

1 of the 9 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.5-debian-11-r66fe59ed5d79f
stdlib@go1.20.12
1.25.11

Open the chart page →

12,910
goalerttokens-studioVerified publisher0.0.51 of 2See more

goalert tokens-studio 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
goalert/goalert:v0.32.008d57388b0cb
stdlib@go1.22.1
1.25.11

Open the chart page →

1,469
tor-snowflake-proxytor-snowflake-proxyVerified publisher1.2.01 of 1See more

tor-snowflake-proxy tor-snowflake-proxy 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
thetorproject/snowflake-proxy:v2.11.01ddc5069d354
stdlib@go1.23.7
1.25.11

Open the chart page →

740
spa-reloadertoucanVerified publisher0.1.01 of 1See more

spa-reloader toucan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
toucansoftware/spa-reloader:latestc187b1fba501
stdlib@go1.13.15
1.25.11

Open the chart page →

2,245
traefik-hubtraefikOfficialVerified publisher4.2.01 of 1See more

traefik-hub traefik 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/traefik/traefik-hub:v2.11.0322f5f8cc105
stdlib@go1.21.8
1.25.11

Open the chart page →

3,165
starboard-operatortrivy-operator0.10.251 of 1See more

starboard-operator trivy-operator 0.10.25

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
aquasec/starboard-operator:0.15.38e0b1c7ddc843
stdlib@go1.26.3
1.25.11

Open the chart page →

172
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
stdlib@go1.14.7
1.25.11

Open the chart page →

5,280
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
stdlib@go1.22.8
1.25.11

Open the chart page →

4,061
boundaryundergridVerified publisher0.1.02 of 3See more

boundary undergrid 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v1.684edcf796267
stdlib@go1.18.1
1.25.11
hashicorp/boundary:0.8.1fb70bd9210ff
stdlib@go1.17.10
1.25.11

Open the chart page →

4,957
taigaunxwaresVerified publisher2026.3.82 of 6See more

taiga unxwares 2026.3.8

2 of the 6 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
stdlib@go1.24.4
1.25.11
taigaio/taiga-protected:latestfd4568a97a59
stdlib@go1.24.4
1.25.11

Open the chart page →

9,172
upbot-operatorupbot-operator0.0.202 of 2See more

upbot-operator upbot-operator 0.0.20

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
alpine/k8s:1.28.13e5c0b053fed7
stdlib@go1.22.5
1.25.11
ghcr.io/upbothq/upbot-operator:v0.0.20e5da24947c91
stdlib@go1.24.9
1.25.11

Open the chart page →

4,461
user-componentuser-component1.2.01 of 4See more

user-component user-component 1.2.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
stdlib@go1.13.10
1.25.11

Open the chart page →

7,303
user-manager-serveruser-manager-server1.27.11 of 1See more

user-manager-server user-manager-server 1.27.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/user-manager-server:1.27.1628a14449241
stdlib@go1.23.12
1.25.11

Open the chart page →

750
phonebook-chartusuladamsVerified publisher0.1.51 of 3See more

phonebook-chart usuladams 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.11

Open the chart page →

3,176
v2ray-proxyv2ray-proxy0.2.41 of 1See more

v2ray-proxy v2ray-proxy 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
pinclr/v2ray-proxy:latestf37f250b7091
stdlib@go1.20.2
1.25.11

Open the chart page →

1,954
vault-gcp-secretsvault-gcp-secrets1.19.51 of 1See more

vault-gcp-secrets vault-gcp-secrets 1.19.5

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/tjm/vault-gcp-secrets:v1.19.59f157fe035f1
stdlib@go1.24.3
1.25.11

Open the chart page →

2,291
vearchvearch3.3.42 of 4See more

vearch vearch 3.3.4

2 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.25.11
vearch/vearch:3.3.40768af33f9d9
stdlib@go1.19.9
1.25.11

Open the chart page →

5,008
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
stdlib@go1.22.3
1.25.11

Open the chart page →

5,239
riveruivirtualrootVerified publisher0.1.31 of 1See more

riverui virtualroot 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/riverqueue/riverui:0.5.32dc54179b25a
stdlib@go1.23.0
1.25.11

Open the chart page →

1,135
go-egvoid-xmh1.1.13 of 3See more

go-eg void-xmh 1.1.1

3 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
voidxmh/xmh-auther:v193e42a569ca8
stdlib@go1.16.5
1.25.11
voidxmh/xmh-cacher:v11b7397412320
stdlib@go1.16.5
1.25.11
voidxmh/xmh-ui:v12ff3f2146547
stdlib@go1.16.5
1.25.11

Open the chart page →

7,464
phpipamvquieVerified publisher1.0.31 of 3See more

phpipam vquie 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mariadb:10.11.21c33370a599c
stdlib@go1.16.7
1.25.11

Open the chart page →

7,069
vultr-ccmvultrVerified publisher1.3.01 of 1See more

vultr-ccm vultr 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
stdlib@go1.16.7
1.25.11

Open the chart page →

3,034
waardepapierenwaardepapieren1.0.01 of 3See more

waardepapieren waardepapieren 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
stdlib@go1.13.10
1.25.11

Open the chart page →

8,078
waardepapieren-baliewaardepapieren-balie1.0.01 of 3See more

waardepapieren-balie waardepapieren-balie 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
stdlib@go1.13.10
1.25.11

Open the chart page →

7,871
waardepapieren-registerwaardepapieren-register1.1.01 of 4See more

waardepapieren-register waardepapieren-register 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
stdlib@go1.13.10
1.25.11

Open the chart page →

7,429
wachdwachdVerified publisher0.4.371 of 1See more

wachd wachd 0.4.37

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/wachd/wachd:0.4.1805b05c56da94
stdlib@go1.25.10
1.25.11

Open the chart page →

1,270
waldurwaldur-chartsVerified publisher8.1.21 of 3See more

waldur waldur-charts 8.1.2

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.11

Open the chart page →

4,870
azure-metrics-exporterwebdevopsVerified publisher1.2.111 of 1See more

azure-metrics-exporter webdevops 1.2.11

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
webdevops/azure-metrics-exporter:25.12.01d3b453fba99
stdlib@go1.25.5
1.25.11

Open the chart page →

509
webhookswebhooks0.1.51 of 1See more

webhooks webhooks 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
stdlib@go1.20.1
1.25.11

Open the chart page →

2,031
webhook-testerwebhook-testerVerified publisher2.3.01 of 1See more

webhook-tester webhook-tester 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/tarampampam/webhook-tester:2.3.085818267b450
stdlib@go1.26.2
1.25.11

Open the chart page →

217
well-knownwell-knownOfficialVerified publisher1.9.01 of 1See more

well-known well-known 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/stenic/well-known:1.9.0708811e91895
stdlib@go1.24.13
1.25.11

Open the chart page →

259
cockroachdbwenerme22.0.31 of 3See more

cockroachdb wenerme 22.0.3

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
stdlib@go1.23.12
1.25.11

Open the chart page →

763
frpswenerme1.0.11 of 1See more

frps wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
wener/frps:v0.37.05c92cc9e8597
stdlib@go1.17.3
1.25.11

Open the chart page →

3,359
ingress-nginxwenerme4.15.12 of 2See more

ingress-nginx wenerme 4.15.1

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
stdlib@go1.26.1
1.25.11
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.901038e7de14b
stdlib@go1.26.1
1.25.11

Open the chart page →

1,548
kube-prometheus-stackwenerme91.4.01 of 6See more

kube-prometheus-stack wenerme 91.4.0

1 of the 6 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
stdlib@go1.26.3
1.25.11

Open the chart page →

647
natswenerme2.14.62 of 3See more

nats wenerme 2.14.6

2 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
stdlib@go1.26.3
1.25.11
natsio/nats-server-config-reloader:0.23.064cb6c858e79
stdlib@go1.25.6
1.25.11

Open the chart page →

2,315
prometheus-blackbox-exporterwenerme11.18.01 of 1See more

prometheus-blackbox-exporter wenerme 11.18.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
stdlib@go1.25.5
1.25.11

Open the chart page →

594
wharf-ainowharf-helmVerified publisher0.1.55 of 7See more

wharf-aino wharf-helm 0.1.5

5 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
stdlib@go1.18.1
1.25.11
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
stdlib@go1.18.2
1.25.11
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
stdlib@go1.18.2
1.25.11
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
stdlib@go1.18.2
1.25.11
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
stdlib@go1.18.2
1.25.11

Open the chart page →

13,461
wharf-cmdwharf-helmVerified publisher0.3.31 of 1See more

wharf-cmd wharf-helm 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
stdlib@go1.18.2
1.25.11

Open the chart page →

3,428

Container images carrying it

4,680 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/shopify/toxiproxy:2.7.0fc2d40f4904c
stdlib@go1.19.13
1.25.11
2
ghcr.io/sigstore/scaffolding/createcerts7f59f7c08d1a
stdlib@go1.25.0
1.25.11
2
ghcr.io/smarter-project/smarter-device-manager:v1.20.12228f7f44594a
stdlib@go1.19.3
1.25.11
2
ghcr.io/spiffe/spiffe-csi-driver:0.2.79dfe4f0caff0
stdlib@go1.24.0
1.25.11
2
ghcr.io/spiffe/spiffe-helper:0.11.01c92e5998ad3
stdlib@go1.25.3
1.25.11
2
ghcr.io/squat/generic-device-plugin:36bfc606bba2064de6ede0ff2764cbb52edff70dba6f0b4cf6c8
stdlib@go1.20.2
1.25.11
2
ghcr.io/stashed/stash-ui-server:v0.23.047cffbc65700
stdlib@go1.25.3
1.25.11
2
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
stdlib@go1.20.1
1.25.11
2
ghcr.io/voyagermesh/echoserver:v20221109:v20221109-7ee2f3efa56a9251de6
stdlib@go1.19
1.25.11
2
ghcr.io/wg-easy/wg-easy:15:15.4.00e7bc9d34e86
stdlib@go1.26.3
1.25.11
2
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.1-1-ubi9d20bd62f0182
stdlib@go1.25.4
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/api-usage-cleaner:1.16.0d47f43484055
stdlib@go1.23.12
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/api-usage-server:1.16.08f9c32b866b0
stdlib@go1.23.12
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/cluster-manager-server:1.8.0364b3ff0fcb7
stdlib@go1.24.5
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/cluster-monitor-server:0.10.22d28f9e3eab4
stdlib@go1.23.11
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/file-manager-server:1.11.0301216788e93
stdlib@go1.23.11
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/inference-manager-engine:1.46.0c46f109c3d0b
stdlib@go1.25.9
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/job-manager-dispatcher:1.27.0582508903cb0
stdlib@go1.23.12
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/job-manager-server:1.27.0fe9de719f91e
stdlib@go1.23.12
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
stdlib@go1.24.0
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/model-manager-server:1.27.0c057dcdd9ef3
stdlib@go1.23.12
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/rbac-server:1.19.1df1adeb86679
stdlib@go1.23.12
1.25.11
2
public.ecr.aws/cloudnatix/llmariner/user-manager-server:1.27.1628a14449241
stdlib@go1.23.12
1.25.11
2
public.ecr.aws/ebs-csi-driver/aws-ebs-csi-driver:v1.16.11564359e1e0e
stdlib@go1.19.6
1.25.11
2
public.ecr.aws/eks-distro/etcd-io/etcd:v3.5.6-eks-1-24-7efa6dee17ed2
stdlib@go1.16.15
1.25.11
2
public.ecr.aws/eks-distro/kubernetes-csi/external-attacher:v4.1.0-eks-1-25-latest701eea03388c
stdlib@go1.19.5
1.25.11
2
public.ecr.aws/eks-distro/kubernetes-csi/external-provisioner:v3.4.0-eks-1-25-latest460ee1a59fea
stdlib@go1.19.7
1.25.11
2
public.ecr.aws/eks-distro/kubernetes-csi/external-resizer:v1.7.0-eks-1-25-lateste711da25e7a0
stdlib@go1.19.8
1.25.11
2
public.ecr.aws/eks-distro/kubernetes-csi/livenessprobe:v2.9.0-eks-1-25-latest8a305e162caa
stdlib@go1.19.8
1.25.11
2
public.ecr.aws/eks-distro/kubernetes-csi/node-driver-registrar:v2.7.0-eks-1-25-latestf4345e67df8f
stdlib@go1.19.8
1.25.11
2
public.ecr.aws/eks-distro/kubernetes/kube-apiserver:v1.24.9-eks-1-24-772e06b605692
stdlib@go1.18.9
1.25.11
2
public.ecr.aws/eks-distro/kubernetes/kube-controller-manager:v1.24.9-eks-1-24-7eaea8c230432
stdlib@go1.18.9
1.25.11
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
stdlib@go1.22.2
1.25.11
2
quay.io/argoproj/argo-events:v1.9.11fa07b2c9ece6
stdlib@go1.25.6
1.25.11
2
quay.io/brancz/kube-rbac-proxy:v0.20.0147cb28fea35
stdlib@go1.25.1
1.25.11
2
quay.io/brancz/kube-rbac-proxy:v0.14.158d91a5faaf8
stdlib@go1.19.4
1.25.11
2
quay.io/brancz/kube-rbac-proxy:v0.13.1738c854322f5
stdlib@go1.19.1
1.25.11
2
quay.io/brancz/kube-rbac-proxy:v0.18.1e6a323504999
stdlib@go1.23.0
1.25.11
2
quay.io/cephcsi/cephcsi:v3.17.10b62db8afc9b
stdlib@go1.26.2
1.25.11
2
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
stdlib@go1.18.5
1.25.11
2
quay.io/coreos/etcd:v3.5.628cb0630cb85
stdlib@go1.16.15
1.25.11
2
quay.io/coreos/etcd:v3.6.12702d7b4881c6
stdlib@go1.25.10
1.25.11
2
quay.io/dexidp/dex:v2.24.0c9b7f6d0d953
stdlib@go1.13.10
1.25.11
2
quay.io/groundcover/grafana:9.3.18c65b333a3d3
stdlib@go1.19.3
1.25.11
2
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
stdlib@go1.18.1
1.25.11
2
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
stdlib@go1.18.2
1.25.11
2
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
stdlib@go1.18.2
1.25.11
2
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
stdlib@go1.18.2
1.25.11
2
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
stdlib@go1.18.2
1.25.11
2
quay.io/jcmoraisjr/haproxy-ingress:v0.16.16fd744191ef6
stdlib@go1.25.9
1.25.11
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.