StackRadar

CVE-2026-42507

Medium

Advisory

Published 2 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
31st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,158
of 17,813 indexed, latest versions
Container images
4,758
deployed by those charts
Fix available
1 of 2
affected packages

Arbitrary inputs are included in errors without any escaping in net/textproto

Carried by container images the latest versions of 4,158 of 17,813 indexed charts deploy, on 4,758 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+184 more1.25.114,758
OSV records
DEBIAN-CVE-2026-42507GO-2026-5039
Also known as
BIT-golang-2026-42507

Charts affected

4,158 by stars
ChartLatestAffected imagesRadar Score
tyk-bootstraptyk-helm5.3.03 of 3See more

tyk-bootstrap tyk-helm 5.3.0

3 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
tykio/tyk-k8s-bootstrap-post:v2.2.055b4d31c7a01
stdlib@go1.22.7
1.25.11
tykio/tyk-k8s-bootstrap-pre-delete:v2.2.01489b58f642b
stdlib@go1.22.7
1.25.11
tykio/tyk-k8s-bootstrap-pre-install:v2.2.0205215b815a4
stdlib@go1.22.7
1.25.11

Open the chart page →

1,374
tyk-control-planetyk-helm5.3.03 of 7See more

tyk-control-plane tyk-helm 5.3.0

3 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
tykio/tyk-k8s-bootstrap-post:v2.2.055b4d31c7a01
stdlib@go1.22.7
1.25.11
tykio/tyk-k8s-bootstrap-pre-delete:v2.2.01489b58f642b
stdlib@go1.22.7
1.25.11
tykio/tyk-k8s-bootstrap-pre-install:v2.2.0205215b815a4
stdlib@go1.22.7
1.25.11

Open the chart page →

3,266
tyk-stacktyk-helm5.3.03 of 7See more

tyk-stack tyk-helm 5.3.0

3 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
tykio/tyk-k8s-bootstrap-post:v2.2.055b4d31c7a01
stdlib@go1.22.7
1.25.11
tykio/tyk-k8s-bootstrap-pre-delete:v2.2.01489b58f642b
stdlib@go1.22.7
1.25.11
tykio/tyk-k8s-bootstrap-pre-install:v2.2.0205215b815a4
stdlib@go1.22.7
1.25.11

Open the chart page →

3,200
typhoontyphoonVerified publisher0.2.32 of 2See more

typhoon typhoon 0.2.3

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/zeiss/typhoon/controller:0.2.34fdf4edfda45
stdlib@go1.24.0
1.25.11
ghcr.io/zeiss/typhoon/typhoon-webhook:0.2.378f9b82050bc
stdlib@go1.24.0
1.25.11

Open the chart page →

1,690
deep-learning-toolsuninettsigma29.1.21 of 3See more

deep-learning-tools uninettsigma2 9.1.2

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
stdlib@go1.25.7
1.25.11

Open the chart page →

1,572
desktop-vncuninettsigma22.0.21 of 2See more

desktop-vnc uninettsigma2 2.0.2

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
stdlib@go1.25.7
1.25.11

Open the chart page →

476
jupyteruninettsigma21.1.41 of 2See more

jupyter uninettsigma2 1.1.4

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
stdlib@go1.25.7
1.25.11

Open the chart page →

476
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.301249fc292e84
stdlib@go1.22.9
1.25.11

Open the chart page →

8,709
miniouninettsigma21.2.01 of 1See more

minio uninettsigma2 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
stdlib@go1.19.2
1.25.11

Open the chart page →

4,995
rstudiouninettsigma21.3.61 of 3See more

rstudio uninettsigma2 1.3.6

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
stdlib@go1.25.7
1.25.11

Open the chart page →

847
sparkuninettsigma21.1.41 of 3See more

spark uninettsigma2 1.1.4

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sigma2as/goidc-proxy:next656ac798963a
stdlib@go1.25.7
1.25.11

Open the chart page →

847
agent-sandbox-controllerunique-oci-agent-sandbox-controller1.0.11 of 2See more

agent-sandbox-controller unique-oci-agent-sandbox-controller 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
registry.k8s.io/agent-sandbox/sandbox-router-go:v1.0.125b1a0939630
stdlib@go1.26.2
1.25.11

Open the chart page →

174
kenerunxwaresVerified publisher2026.2.51 of 1See more

kener unxwares 2026.2.5

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
stdlib@go1.20.7
1.25.11

Open the chart page →

5,293
opencloudunxwaresVerified publisher0.2.33 of 13See more

opencloud unxwares 0.2.3

3 of the 13 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
stdlib@go1.24.6
1.25.11
minio/minio:latest14cea493d9a3
stdlib@go1.24.6
1.25.11
opencloudeu/opencloud-rolling:2.1.0f9634bb04905
stdlib@go1.24.2
1.25.11

Open the chart page →

46,016
upcloud-csiupcloud-csiVerified publisher1.18.06 of 7See more

upcloud-csi upcloud-csi 1.18.0

6 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
stdlib@go1.26.3
1.25.11
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
stdlib@go1.26.3
1.25.11
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
stdlib@go1.26.3
1.25.11
registry.k8s.io/sig-storage/csi-resizer:v2.2.0a2d40c1c3ccb
stdlib@go1.26.3
1.25.11
registry.k8s.io/sig-storage/csi-snapshotter:v8.6.042af0929bcd6
stdlib@go1.26.3
1.25.11
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
stdlib@go1.26.3
1.25.11

Open the chart page →

1,924
phonebook-chartusuladams2Verified publisher0.2.11 of 3See more

phonebook-chart usuladams2 0.2.1

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.11

Open the chart page →

3,176
kiamuswitch6.1.21 of 1See more

kiam uswitch 6.1.2

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/uswitch/kiam:v4.0be3a5846922d
stdlib@go1.13.8
1.25.11

Open the chart page →

2,973
utho-app-operator-chartutho-operatorVerified publisher0.1.61 of 2See more

utho-app-operator-chart utho-operator 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
utho/utho-app-operator:0.1.46e8a690e8b7a
stdlib@go1.22.8
1.25.11

Open the chart page →

491
gohttpserverutkuozdemirVerified publisher0.2.01 of 1See more

gohttpserver utkuozdemir 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
codeskyblue/gohttpserver:latestcaa862590e34
stdlib@go1.16.3
1.25.11

Open the chart page →

1,899
transmission-exporterutkuozdemirVerified publisher1.1.01 of 1See more

transmission-exporter utkuozdemir 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
metalmatze/transmission-exporter:0.3.090d6acb6d47d
stdlib@go1.13
1.25.11

Open the chart page →

1,647
proxyv2flyVerified publisher0.0.61 of 1See more

proxy v2fly 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
v2fly/v2fly-core:latestd06727b221fe
stdlib@go1.24.2
1.25.11

Open the chart page →

1,436
vals-operatorvals-operatorVerified publisher0.8.11 of 1See more

vals-operator vals-operator 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/digitalis-io/vals-operator:v0.8.17c776499b8c9
stdlib@go1.25.7
1.25.11

Open the chart page →

730
vault-raft-snapshot-agentvault-raft-snapshot-agentVerified publisher0.6.91 of 1See more

vault-raft-snapshot-agent vault-raft-snapshot-agent 0.6.9

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
stdlib@go1.23.10
1.25.11

Open the chart page →

1,267
vault-sync-operatorvault-sync-operatorVerified publisher0.1.11 of 1See more

vault-sync-operator vault-sync-operator 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/danieldonoghue/vault-sync-operator:v0.0.1-beta.38d7ec69a193c
stdlib@go1.25.9
1.25.11

Open the chart page →

277
evolution-apivcnngrVerified publisher1.0.01 of 5See more

evolution-api vcnngr 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
evoapicloud/evolution-api:latest966625532d90
stdlib@go1.23.12
1.25.11

Open the chart page →

3,764
openldap-havcnngrVerified publisher1.0.01 of 3See more

openldap-ha vcnngr 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.25.11

Open the chart page →

5,517
simple-prima-notavcnngrVerified publisher0.5.31 of 4See more

simple-prima-nota vcnngr 0.5.3

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.11

Open the chart page →

5,074
velocityvelocity1.0.01 of 2See more

velocity velocity 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.11

Open the chart page →

978
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
stdlib@go1.13.10
1.25.11

Open the chart page →

7,521
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
stdlib@go1.13.10
1.25.11

Open the chart page →

7,539
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
stdlib@go1.13.10
1.25.11

Open the chart page →

7,441
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
stdlib@go1.13.10
1.25.11

Open the chart page →

7,441
homarrvhdirkVerified publisher0.1.51 of 1See more

homarr vhdirk 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:lateste103abadfb52
stdlib@go1.22.5
1.25.11

Open the chart page →

2,805
scrutinyvhdirkVerified publisher0.1.31 of 1See more

scrutiny vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
stdlib@go1.20.14
1.25.11

Open the chart page →

4,443
bugsinkvictorlane0.3.71 of 2See more

bugsink victorlane 0.3.7

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mariadb:12.0-noble607835cd628b
stdlib@go1.24.6
1.25.11

Open the chart page →

4,186
n8nvictorlane1.0.181 of 1See more

n8n victorlane 1.0.18

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
n8nio/n8n:1.115.1ed16e560c40e
stdlib@go1.24.6
1.25.11

Open the chart page →

6,507
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
stdlib@go1.21.7
1.25.11

Open the chart page →

69,387
pagesvictor-pages1.0.01 of 3See more

pages victor-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.11

Open the chart page →

20,285
kube-monitoring-telegram-botviento-repository1.0.01 of 1See more

kube-monitoring-telegram-bot viento-repository 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
stdlib@go1.16.4
1.25.11

Open the chart page →

7,903
vineyard-operatorvineyardVerified publisher0.24.22 of 2See more

vineyard-operator vineyard 0.24.2

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
vineyardcloudnative/vineyard-operator:latest9d419aa18faa
stdlib@go1.19.13
1.25.11
ghcr.io/v6d-io/v6d/kube-rbac-proxy:v0.13.0a2523c532c0c
stdlib@go1.18.3
1.25.11

Open the chart page →

4,576
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
stdlib@go1.17.8
1.25.11

Open the chart page →

7,781
ciliumvks-helm-chartsVerified publisher1.17.143 of 3See more

cilium vks-helm-charts 1.17.14

3 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
stdlib@go1.25.8
1.25.11
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
stdlib@go1.25.8
1.25.11
quay.io/cilium/operator-generic:v1.17.14773886ec9337
stdlib@go1.25.8
1.25.11

Open the chart page →

4,201
corednsvks-helm-chartsVerified publisher1.45.01 of 1See more

coredns vks-helm-charts 1.45.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
coredns/coredns:1.13.19b9128672209
stdlib@go1.25.2
1.25.11

Open the chart page →

923
vm-console-proxyvm-console-proxyVerified publisher0.2.01 of 1See more

vm-console-proxy vm-console-proxy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/kubevirt/vm-console-proxy:v0.8.08d6b4b6e99bd
stdlib@go1.22.4
1.25.11

Open the chart page →

645
go-devvoid-xmh1.0.11 of 1See more

go-dev void-xmh 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
voidxmh/golang:1.19-alpine-dev423c6195fab2
stdlib@go1.19
1.25.11

Open the chart page →

1,155
muthurvojtechpastyrikVerified publisher0.10.01 of 1See more

muthur vojtechpastyrik 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/vojtechpastyrik/muthur:0.10.0b5a06a6e13b9
stdlib@go1.26.1
1.25.11

Open the chart page →

320
muthur-collectorvojtechpastyrikVerified publisher0.11.01 of 1See more

muthur-collector vojtechpastyrik 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/vojtechpastyrik/muthur-collector:0.11.00a580fe3a032
stdlib@go1.26.1
1.25.11

Open the chart page →

320
volantmqvolantmq0.1.21 of 1See more

volantmq volantmq 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
volantmq/volantmq:v0.4.0-rc.69bfe7857ebc3
stdlib@go1.13.6
1.25.11

Open the chart page →

2,551
volcanovolcano-sh1.15.23 of 3See more

volcano volcano-sh 1.15.2

3 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
volcanosh/vc-controller-manager:v1.15.26a6bc2560d51
stdlib@go1.25.0
1.25.11
volcanosh/vc-scheduler:v1.15.2afab36286a17
stdlib@go1.25.0
1.25.11
volcanosh/vc-webhook-manager:v1.15.22fff65aad011
stdlib@go1.25.0
1.25.11

Open the chart page →

1,542
postgresappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.11

Open the chart page →

1,699

Container images carrying it

4,758 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
gresearch/armada-operator:latest6c43743e2b2d
stdlib@go1.24.0
1.25.11
1
gresearch/fasttrackml:latest16d1228220fc
stdlib@go1.21.10
1.25.11
1
groundnuty/k8s-wait-for:v1.684edcf796267
stdlib@go1.18.1
1.25.11
1
groundnuty/k8s-wait-for:no-root-v2.0a26d3d3f6e1c
stdlib@go1.19.3
1.25.11
1
grpl/grapple-cli:0.2.127c00aafee6629
stdlib@go1.18.10
1.25.11
1
gutmensch/podnat-controller:0.5.2566979793fc4
stdlib@go1.22.3
1.25.11
1
hammerspaceinc/csi-plugin:v1.2.8-rc2395bee4504fc
stdlib@go1.24.4
1.25.11
1
haproxytech/haproxy-alpine:2.6.614e4afa90dfd
stdlib@go1.19.3
1.25.11
1
haproxytech/haproxy-alpine:2.9.57f3dc8c7e031
stdlib@go1.22.0
1.25.11
1
haproxytech/haproxy-alpine:2.8.08951be4b4e1c
stdlib@go1.20.5
1.25.11
1
haproxytech/kubernetes-ingress:1.11.4c5f8a41ef0d4
stdlib@go1.22.2
1.25.11
1
hashicorp/boundary:0.15.3339b78b61750
stdlib@go1.21.8
1.25.11
1
hashicorp/boundary:0.21.037bf86488b74
stdlib@go1.25.1
1.25.11
1
hashicorp/boundary:latest76a201954ca0
stdlib@go1.25.7
1.25.11
1
hashicorp/boundary:0.8.1fb70bd9210ff
stdlib@go1.17.10
1.25.11
1
hashicorp/consul:1.17.0712fe02d2f84
stdlib@go1.20.10
1.25.11
1
hashicorp/consul:1.15.3ddff34041c5c
stdlib@go1.20.4
1.25.11
1
hashicorp/consul-k8s-control-plane:1.3.00e4452f0f265
stdlib@go1.20.10
1.25.11
1
hashicorp/consul-k8s-control-plane:1.1.262bed1bf8106
stdlib@go1.20.4
1.25.11
1
hashicorp/terraform:1.44dcb45513699
stdlib@go1.19.6
1.25.11
1
hashicorp/terraform:1.9.7b77efab1a448
stdlib@go1.22.7
1.25.11
1
hashicorp/terraform-cloud-operator:2.5.0c2f78a575a8a
stdlib@go1.22.4
1.25.11
1
hashicorp/terraform-k8s:1.1.2b19857bab620
stdlib@go1.18.8
1.25.11
1
hashicorp/vault:1.15.40b01ed3924e6
stdlib@go1.21.4
1.25.11
1
hashicorp/vault:2.0.1755355002715
stdlib@go1.26.3
1.25.11
1
hashicorp/vault:1.14.0b2177a8bfe85
stdlib@go1.20.5
1.25.11
1
hashicorp/vault:1.19.0bbb7f98dc67d
stdlib@go1.23.6
1.25.11
1
hashicorp/vault:1.8.4dfc3500beb0e
stdlib@go1.16.7
1.25.11
1
hashicorp/vault-k8s:1.6.2103a2d817a74
stdlib@go1.23.6
1.25.11
1
hashicorp/vault-k8s:1.2.14500e988b7ce
stdlib@go1.20.3
1.25.11
1
hashicorp/vault-k8s:0.6.05697b85bc69a
stdlib@go1.13.5
1.25.11
1
hashicorp/vault-k8s:1.7.2ae3d307658b7
stdlib@go1.25.5
1.25.11
1
hashicorp/vault-k8s:0.14.0aff47b5ba39c
stdlib@go1.17.2
1.25.11
1
hashicorp/waypoint:0.11.397d521a27498
stdlib@go1.19.4
1.25.11
1
hbahadorzadeh/cert-manager-webhook-arvan:latestbf9756b3bc47
stdlib@go1.15.6
1.25.11
1
headscale/headscale:0.25.1a7a8ae9616bb
stdlib@go1.23.4
1.25.11
1
headscale/headscale:0.27.1cd37b3001857
stdlib@go1.25.1
1.25.11
1
helga09/my_sql_shoes:v1.1.1a03657d97897
stdlib@go1.18.2
1.25.11
1
hetznercloud/hcloud-cloud-controller-manager:v1.16.08c07e6d7a76c
stdlib@go1.20.5
1.25.11
1
hetznercloud/hcloud-cloud-controller-manager:v1.13.0ed5ee5f83973
stdlib@go1.19
1.25.11
1
hetznercloud/hcloud-csi-driver:1.6.01475d525f9a4
stdlib@go1.17
1.25.11
1
hetznercloud/hcloud-csi-driver:1.5.141dce5b33644
stdlib@go1.15.3
1.25.11
1
hetznercloud/hcloud-csi-driver:v2.3.2b7ed90d5fab2
stdlib@go1.19.7
1.25.11
1
hhaluk/mocktail:2.0.3350d19360038
stdlib@go1.17.7
1.25.11
1
hhyo/archery:v1.9.11aa41843419e
stdlib@go1.15.6
1.25.11
1
hibiken/asynqmon:latestac80bcffd2f9
stdlib@go1.18.10
1.25.11
1
hipages/php-fpm_exporter:2.2.09b5be9d3d955
stdlib@go1.17.10
1.25.11
1
hiversh/antigravity:0.1.45-microvm0e36d98402bc
stdlib@go1.19.8
1.25.11
1
hiversh/browser:0.1.45-microvmb5048c6342ce
stdlib@go1.19.8
1.25.11
1
hiversh/claude:0.1.45-microvm2fbf9f264498
stdlib@go1.19.8
1.25.11
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.