StackRadar

CVE-2026-42507

Medium

Advisory

Published 2 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,064
of 17,787 indexed, latest versions
Container images
4,680
deployed by those charts
Fix available
1 of 2
affected packages

Arbitrary inputs are included in errors without any escaping in net/textproto

Carried by container images the latest versions of 4,064 of 17,787 indexed charts deploy, on 4,680 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.114,680
OSV records
DEBIAN-CVE-2026-42507GO-2026-5039
Also known as
BIT-golang-2026-42507

Charts affected

4,064 by stars
ChartLatestAffected imagesRadar Score
supabasesupabse0.8.04 of 11See more

supabase supabse 0.8.0

4 of the 11 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
stdlib@go1.25.1
1.25.11
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.11
supabase/gotrue:v2.189.0385184459f57
stdlib@go1.25.8
1.25.11
supabase/postgres:17.6.1.136f371b5f3f2ac
stdlib@go1.26.1
1.25.11

Open the chart page →

18,213
Grafanasurajwarbhe-grafana0.1.01 of 1See more

Grafana surajwarbhe-grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
surajwarbhe/grafana:v185248611e9f1
stdlib@go1.14.3
1.25.11

Open the chart page →

2,597
switchboardswitchboardVerified publisher0.7.41 of 1See more

switchboard switchboard 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/borchero/switchboard:0.7.454a193b757da
stdlib@go1.26.1
1.25.11

Open the chart page →

839
synology-proxy-operatorsynology-proxy-operatorVerified publisher0.0.81 of 1See more

synology-proxy-operator synology-proxy-operator 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/phoeluga/synology-proxy-operator:0.0.8b26510b26b31
stdlib@go1.26.2
1.25.11

Open the chart page →

210
hello-appsysintelligentVerified publisher2.0.11 of 1See more

hello-app sysintelligent 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sysintelligent/hello-app:2.0.177fb30df847d
stdlib@go1.19.3
1.25.11

Open the chart page →

1,880
headscaleszpadel-chartsVerified publisher0.30.21 of 3See more

headscale szpadel-charts 0.30.2

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/tale/headplane:0.6.39476cc5adb12
stdlib@go1.25.1
1.25.11

Open the chart page →

1,852
tenuretenureVerified publisher1.0.62 of 2See more

tenure tenure 1.0.6

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
mongodb/mongodb-atlas-local:8925c3d34f0c6
stdlib@go1.25.9
1.25.11
tenureai/tenure:v1.0.285f5b222df9a5
stdlib@go1.26.2
1.25.11

Open the chart page →

2,553
terraform-controllerterraform-controller0.0.201 of 1See more

terraform-controller terraform-controller 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
absaoss/terraform-controller:v0.0.20ad538a1285a0
stdlib@go1.14.8
1.25.11

Open the chart page →

3,538
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
stdlib@go1.20.6
1.25.11

Open the chart page →

9,108
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
stdlib@go1.20.6
1.25.11

Open the chart page →

9,108
base-clusterteuto-netVerified publisher12.4.01 of 1See more

base-cluster teuto-net 12.4.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:1.33.4261a9ed843eb
stdlib@go1.24.5
1.25.11

Open the chart page →

436
tocktock0.6.31 of 9See more

tock tock 0.6.3

1 of the 9 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.5-debian-11-r66fe59ed5d79f
stdlib@go1.20.12
1.25.11

Open the chart page →

12,910
goalerttokens-studioVerified publisher0.0.51 of 2See more

goalert tokens-studio 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
goalert/goalert:v0.32.008d57388b0cb
stdlib@go1.22.1
1.25.11

Open the chart page →

1,469
tor-snowflake-proxytor-snowflake-proxyVerified publisher1.2.01 of 1See more

tor-snowflake-proxy tor-snowflake-proxy 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
thetorproject/snowflake-proxy:v2.11.01ddc5069d354
stdlib@go1.23.7
1.25.11

Open the chart page →

740
spa-reloadertoucanVerified publisher0.1.01 of 1See more

spa-reloader toucan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
toucansoftware/spa-reloader:latestc187b1fba501
stdlib@go1.13.15
1.25.11

Open the chart page →

2,245
traefik-hubtraefikOfficialVerified publisher4.2.01 of 1See more

traefik-hub traefik 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/traefik/traefik-hub:v2.11.0322f5f8cc105
stdlib@go1.21.8
1.25.11

Open the chart page →

3,165
starboard-operatortrivy-operator0.10.251 of 1See more

starboard-operator trivy-operator 0.10.25

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
aquasec/starboard-operator:0.15.38e0b1c7ddc843
stdlib@go1.26.3
1.25.11

Open the chart page →

172
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
stdlib@go1.14.7
1.25.11

Open the chart page →

5,280
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
stdlib@go1.22.8
1.25.11

Open the chart page →

4,061
boundaryundergridVerified publisher0.1.02 of 3See more

boundary undergrid 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v1.684edcf796267
stdlib@go1.18.1
1.25.11
hashicorp/boundary:0.8.1fb70bd9210ff
stdlib@go1.17.10
1.25.11

Open the chart page →

4,957
taigaunxwaresVerified publisher2026.3.82 of 6See more

taiga unxwares 2026.3.8

2 of the 6 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
stdlib@go1.24.4
1.25.11
taigaio/taiga-protected:latestfd4568a97a59
stdlib@go1.24.4
1.25.11

Open the chart page →

9,172
upbot-operatorupbot-operator0.0.202 of 2See more

upbot-operator upbot-operator 0.0.20

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
alpine/k8s:1.28.13e5c0b053fed7
stdlib@go1.22.5
1.25.11
ghcr.io/upbothq/upbot-operator:v0.0.20e5da24947c91
stdlib@go1.24.9
1.25.11

Open the chart page →

4,461
user-componentuser-component1.2.01 of 4See more

user-component user-component 1.2.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
stdlib@go1.13.10
1.25.11

Open the chart page →

7,303
user-manager-serveruser-manager-server1.27.11 of 1See more

user-manager-server user-manager-server 1.27.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/user-manager-server:1.27.1628a14449241
stdlib@go1.23.12
1.25.11

Open the chart page →

750
phonebook-chartusuladamsVerified publisher0.1.51 of 3See more

phonebook-chart usuladams 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.11

Open the chart page →

3,176
v2ray-proxyv2ray-proxy0.2.41 of 1See more

v2ray-proxy v2ray-proxy 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
pinclr/v2ray-proxy:latestf37f250b7091
stdlib@go1.20.2
1.25.11

Open the chart page →

1,954
vault-gcp-secretsvault-gcp-secrets1.19.51 of 1See more

vault-gcp-secrets vault-gcp-secrets 1.19.5

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/tjm/vault-gcp-secrets:v1.19.59f157fe035f1
stdlib@go1.24.3
1.25.11

Open the chart page →

2,291
vearchvearch3.3.42 of 4See more

vearch vearch 3.3.4

2 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.25.11
vearch/vearch:3.3.40768af33f9d9
stdlib@go1.19.9
1.25.11

Open the chart page →

5,008
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
stdlib@go1.22.3
1.25.11

Open the chart page →

5,239
riveruivirtualrootVerified publisher0.1.31 of 1See more

riverui virtualroot 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/riverqueue/riverui:0.5.32dc54179b25a
stdlib@go1.23.0
1.25.11

Open the chart page →

1,135
go-egvoid-xmh1.1.13 of 3See more

go-eg void-xmh 1.1.1

3 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
voidxmh/xmh-auther:v193e42a569ca8
stdlib@go1.16.5
1.25.11
voidxmh/xmh-cacher:v11b7397412320
stdlib@go1.16.5
1.25.11
voidxmh/xmh-ui:v12ff3f2146547
stdlib@go1.16.5
1.25.11

Open the chart page →

7,464
phpipamvquieVerified publisher1.0.31 of 3See more

phpipam vquie 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mariadb:10.11.21c33370a599c
stdlib@go1.16.7
1.25.11

Open the chart page →

7,069
vultr-ccmvultrVerified publisher1.3.01 of 1See more

vultr-ccm vultr 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
vultr/vultr-cloud-controller-manager:v0.3.01806f17d620c
stdlib@go1.16.7
1.25.11

Open the chart page →

3,034
waardepapierenwaardepapieren1.0.01 of 3See more

waardepapieren waardepapieren 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-php:latestb2666ffcbad8
stdlib@go1.13.10
1.25.11

Open the chart page →

8,078
waardepapieren-baliewaardepapieren-balie1.0.01 of 3See more

waardepapieren-balie waardepapieren-balie 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-balie-php:latestf36c423cd259
stdlib@go1.13.10
1.25.11

Open the chart page →

7,871
waardepapieren-registerwaardepapieren-register1.1.01 of 4See more

waardepapieren-register waardepapieren-register 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/waardepapieren-register-php:latest9affab218351
stdlib@go1.13.10
1.25.11

Open the chart page →

7,429
wachdwachdVerified publisher0.4.371 of 1See more

wachd wachd 0.4.37

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/wachd/wachd:0.4.1805b05c56da94
stdlib@go1.25.10
1.25.11

Open the chart page →

1,270
waldurwaldur-chartsVerified publisher8.1.21 of 3See more

waldur waldur-charts 8.1.2

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.11

Open the chart page →

4,870
azure-metrics-exporterwebdevopsVerified publisher1.2.111 of 1See more

azure-metrics-exporter webdevops 1.2.11

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
webdevops/azure-metrics-exporter:25.12.01d3b453fba99
stdlib@go1.25.5
1.25.11

Open the chart page →

509
webhookswebhooks0.1.51 of 1See more

webhooks webhooks 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
stdlib@go1.20.1
1.25.11

Open the chart page →

2,031
webhook-testerwebhook-testerVerified publisher2.3.01 of 1See more

webhook-tester webhook-tester 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/tarampampam/webhook-tester:2.3.085818267b450
stdlib@go1.26.2
1.25.11

Open the chart page →

217
well-knownwell-knownOfficialVerified publisher1.9.01 of 1See more

well-known well-known 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/stenic/well-known:1.9.0708811e91895
stdlib@go1.24.13
1.25.11

Open the chart page →

259
cockroachdbwenerme22.0.31 of 3See more

cockroachdb wenerme 22.0.3

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
stdlib@go1.23.12
1.25.11

Open the chart page →

763
frpswenerme1.0.11 of 1See more

frps wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
wener/frps:v0.37.05c92cc9e8597
stdlib@go1.17.3
1.25.11

Open the chart page →

3,359
ingress-nginxwenerme4.15.12 of 2See more

ingress-nginx wenerme 4.15.1

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
stdlib@go1.26.1
1.25.11
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.901038e7de14b
stdlib@go1.26.1
1.25.11

Open the chart page →

1,548
kube-prometheus-stackwenerme91.4.01 of 6See more

kube-prometheus-stack wenerme 91.4.0

1 of the 6 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
stdlib@go1.26.3
1.25.11

Open the chart page →

647
natswenerme2.14.62 of 3See more

nats wenerme 2.14.6

2 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
stdlib@go1.26.3
1.25.11
natsio/nats-server-config-reloader:0.23.064cb6c858e79
stdlib@go1.25.6
1.25.11

Open the chart page →

2,315
prometheus-blackbox-exporterwenerme11.18.01 of 1See more

prometheus-blackbox-exporter wenerme 11.18.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
stdlib@go1.25.5
1.25.11

Open the chart page →

594
wharf-ainowharf-helmVerified publisher0.1.55 of 7See more

wharf-aino wharf-helm 0.1.5

5 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
stdlib@go1.18.1
1.25.11
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
stdlib@go1.18.2
1.25.11
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
stdlib@go1.18.2
1.25.11
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
stdlib@go1.18.2
1.25.11
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
stdlib@go1.18.2
1.25.11

Open the chart page →

13,461
wharf-cmdwharf-helmVerified publisher0.3.31 of 1See more

wharf-cmd wharf-helm 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
stdlib@go1.18.2
1.25.11

Open the chart page →

3,428

Container images carrying it

4,680 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus-operator/prometheus-operator:v0.77.2af92db7eac86
stdlib@go1.23.2
1.25.11
2
quay.io/prometheus-operator/prometheus-operator:v0.83.0b6a89b8ec08f
stdlib@go1.24.3
1.25.11
2
quay.io/prometheus-operator/prometheus-operator:v0.88.1d3d65efa3bee
stdlib@go1.25.6
1.25.11
2
quay.io/prometheus-operator/prometheus-operator:v0.77.1dde69a8b6f4b
stdlib@go1.23.1
1.25.11
2
quay.io/prometheus/prometheus:v2.53.0075b1ba2c4eb
stdlib@go1.22.4
1.25.11
2
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
stdlib@go1.23.4
1.25.11
2
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
stdlib@go1.15.3
1.25.11
2
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
stdlib@go1.21.0
1.25.11
2
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
stdlib@go1.18.3
1.25.11
2
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
stdlib@go1.22.6
1.25.11
2
quay.io/prometheus/pushgateway:v1.11.249ed9fdf3780
stdlib@go1.25.3
1.25.11
2
quay.io/prometheus/pushgateway:v1.6.2979a69ab4a40
stdlib@go1.21.1
1.25.11
2
quay.io/prometheus/pushgateway:v1.11.099392035ae99
stdlib@go1.23.4
1.25.11
2
quay.io/prometheus/snmp-exporter:v0.30.1e5fd5e8b43ac
stdlib@go1.25.5
1.25.11
2
quay.io/thanos/thanos:v0.39.21d022ef4b8ef
stdlib@go1.24.0
1.25.11
2
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
stdlib@go1.22.5
1.25.11
2
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
stdlib@go1.22.5
1.25.11
2
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
stdlib@go1.22.6
1.25.11
2
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
stdlib@go1.24.11
1.25.11
2
registry.k8s.io/etcd:3.5.6-0dd75ec974b0a
stdlib@go1.16.15
1.25.11
2
registry.k8s.io/ingress-nginx/controller:v1.9.45b161f051d01
stdlib@go1.21.3
1.25.11
2
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
stdlib@go1.24.4
1.25.11
2
registry.k8s.io/ingress-nginx/controller:v1.9.5b3aba22b1da8
stdlib@go1.21.5
1.25.11
2
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
stdlib@go1.24.1
1.25.11
2
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230312-helm-chart-4.5.2-28-g66a76079401d181618f27
stdlib@go1.20.1
1.25.11
2
registry.k8s.io/kube-apiserver:v1.26.199e1ed9fbc8a
stdlib@go1.19.5
1.25.11
2
registry.k8s.io/kube-controller-manager:v1.26.140adecbe3a40
stdlib@go1.19.5
1.25.11
2
registry.k8s.io/kube-scheduler:v1.30.1474a5cf9cfa9f
stdlib@go1.23.10
1.25.11
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
stdlib@go1.18.3
1.25.11
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.7.0a15ca437f230
stdlib@go1.19.3
1.25.11
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.1af8220f53493
stdlib@go1.20.10
1.25.11
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.6.0bdab4e49d71d
stdlib@go1.18.5
1.25.11
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.15.0db384bf43222
stdlib@go1.23.5
1.25.11
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
stdlib@go1.20.7
1.25.11
2
registry.k8s.io/metrics-server/metrics-server:v0.8.089258156d0e9
stdlib@go1.24.4
1.25.11
2
registry.k8s.io/nfd/node-feature-discovery:v0.19.02fa1c99ad09b
stdlib@go1.26.3
1.25.11
2
registry.k8s.io/sig-storage/csi-attacher:v4.9.05aaefc24f315
stdlib@go1.24.2
1.25.11
2
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
stdlib@go1.17.3
1.25.11
2
registry.k8s.io/sig-storage/csi-attacher:v4.0.09a685020911e
stdlib@go1.18
1.25.11
2
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
stdlib@go1.23.1
1.25.11
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.10103eee7c35e
stdlib@go1.17.3
1.25.11
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
stdlib@go1.17.3
1.25.11
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.6.0f1c25991bac2
stdlib@go1.18
1.25.11
2
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
stdlib@go1.17.3
1.25.11
2
registry.k8s.io/sig-storage/csi-provisioner:v6.1.1d992c36d4ddd
stdlib@go1.24.6
1.25.11
2
registry.k8s.io/sig-storage/csi-provisioner:v6.1.0e5900dc98b0d
stdlib@go1.24.6
1.25.11
2
registry.k8s.io/sig-storage/csi-resizer:v1.5.08f7520bd957e
stdlib@go1.18
1.25.11
2
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
stdlib@go1.17.3
1.25.11
2
registry.k8s.io/sig-storage/csi-resizer:v1.9.0f1f352df9787
stdlib@go1.20.5
1.25.11
2
registry.k8s.io/sig-storage/csi-snapshotter:v6.0.1ad16874e2140
stdlib@go1.18
1.25.11
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.