StackRadar

CVE-2026-42507

Medium

Advisory

Published 2 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
31st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,048
of 17,797 indexed, latest versions
Container images
4,658
deployed by those charts
Fix available
1 of 2
affected packages

Arbitrary inputs are included in errors without any escaping in net/textproto

Carried by container images the latest versions of 4,048 of 17,797 indexed charts deploy, on 4,658 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+182 more1.25.114,658
OSV records
DEBIAN-CVE-2026-42507GO-2026-5039
Also known as
BIT-golang-2026-42507

Charts affected

4,048 by stars
ChartLatestAffected imagesRadar Score
draytek-exporterschichtelVerified publisher0.2.41 of 1See more

draytek-exporter schichtel 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/superq/draytek-exporter:v0.2.03b577bdceaae
stdlib@go1.25.4
1.25.11

Open the chart page →

540
gickupschichtelVerified publisher0.0.41 of 1See more

gickup schichtel 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
buddyspencer/gickup:0.10.386b656f19b0c1
stdlib@go1.22.5
1.25.11

Open the chart page →

1,547
photonschichtelVerified publisher0.2.01 of 1See more

photon schichtel 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
rtuszik/photon-docker:2.4.021549c60f9e6
stdlib@go1.22.2
1.25.11

Open the chart page →

2,893
rabbitmq-cluster-operatorschichtelVerified publisher0.1.81 of 1See more

rabbitmq-cluster-operator schichtel 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/rabbitmq/cluster-operator:2.17.25d690e6cd856
stdlib@go1.25.4
1.25.11

Open the chart page →

320
rabbitmq-topology-operatorschichtelVerified publisher0.1.91 of 1See more

rabbitmq-topology-operator schichtel 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/rabbitmqoperator/messaging-topology-operator:1.18.1f97c36882244
stdlib@go1.24.6
1.25.11

Open the chart page →

385
satisfactoryschichtelVerified publisher0.3.31 of 1See more

satisfactory schichtel 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.9464d11e36e10
stdlib@go1.18.1
1.25.11

Open the chart page →

3,574
unifi-protectschichtelVerified publisher0.10.11 of 1See more

unifi-protect schichtel 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
stdlib@go1.20.2
1.25.11

Open the chart page →

5,584
cert-manager-desec-webhookschmitzis0.0.11 of 1See more

cert-manager-desec-webhook schmitzis 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
su541/cert-manager-desec-webhook:latest371ee33f83c1
stdlib@go1.19.10
1.25.11

Open the chart page →

1,777
cert-manager-webhook-bunnyschmitzis0.1.11 of 1See more

cert-manager-webhook-bunny schmitzis 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/schmitzis/cert-manager-webhook-bunny:latest125e31c8e85a
stdlib@go1.19.13
1.25.11

Open the chart page →

1,505
icinga2-masterschmitzis0.2.01 of 6See more

icinga2-master schmitzis 0.2.0

1 of the 6 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
grafana/grafana:8.0.3696823fbc561
stdlib@go1.16.1
1.25.11

Open the chart page →

3,738
outlineschmitzis0.0.81 of 4See more

outline schmitzis 0.0.8

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
outlinewiki/outline:0.69.1d060dcd8f9aa
stdlib@go1.19.4
1.25.11

Open the chart page →

4,434
version-checkerschmitzis0.2.21 of 1See more

version-checker schmitzis 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
stdlib@go1.15.2
1.25.11

Open the chart page →

3,024
vikunjaschmitzis1.0.01 of 3See more

vikunja schmitzis 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
vikunja/vikunja:0.24.6ed1f3ed467fe
stdlib@go1.23.4
1.25.11

Open the chart page →

4,119
openldapschoolguys-helmcharts0.1.31 of 1See more

openldap schoolguys-helmcharts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.25.11

Open the chart page →

3,314
photoprismschoolguys-helmcharts0.3.81 of 1See more

photoprism schoolguys-helmcharts 0.3.8

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
photoprism/photoprism:260601650c6ad5a651
stdlib@go1.26.3
1.25.11

Open the chart page →

10,464
restic-serverschoolguys-helmcharts0.3.11 of 1See more

restic-server schoolguys-helmcharts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
restic/rest-server:0.14.0d2aff06f47eb
stdlib@go1.24.3
1.25.11

Open the chart page →

2,260
satisfactory-serverschoolguys-helmcharts0.1.81 of 1See more

satisfactory-server schoolguys-helmcharts 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
stdlib@go1.18.1
1.25.11

Open the chart page →

3,476
cernboxsciencebox0.0.41 of 6See more

cernbox sciencebox 0.0.4

1 of the 6 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
cs3org/revad:v1.19.03b57a34a7dfd
stdlib@go1.17.3
1.25.11

Open the chart page →

2,337
ldap-instance-configsciencebox0.0.11 of 1See more

ldap-instance-config sciencebox 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.25.11

Open the chart page →

3,314
centralbrainsciencemeshVerified publisher0.0.34 of 5See more

centralbrain sciencemesh 0.0.3

4 of the 5 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
grafana/grafana:7.3.315b977f5207d
stdlib@go1.15.1
1.25.11
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.25.11
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.25.11
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
stdlib@go1.15.3
1.25.11

Open the chart page →

9,770
sealed-secrets-uisealed-secrets-uiVerified publisher0.0.81 of 1See more

sealed-secrets-ui sealed-secrets-ui 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
stdlib@go1.19.4
1.25.11

Open the chart page →

4,728
hermitcrabseal-ioVerified publisher0.1.42 of 2See more

hermitcrab seal-io 0.1.4

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
sealio/hermitcrab:v0.1.4a326a2f03660
stdlib@go1.21.6
1.25.11
sealio/terraform-deployer:v1.5.7-seal.1b0389d9848a5
stdlib@go1.20.7
1.25.11

Open the chart page →

4,890
searchpesearchpe4.1.01 of 2See more

searchpe searchpe 4.1.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:13.703652c675ae1
stdlib@go1.16.7
1.25.11

Open the chart page →

2,637
seashellsseashells1.0.01 of 1See more

seashells seashells 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
rokk42/seashells:1.0-k8sdfc850a5db9e
stdlib@go1.22.3
1.25.11

Open the chart page →

827
seaweedfs-operatorseaweedfs-operatorVerified publisher1.5.82 of 3See more

seaweedfs-operator seaweedfs-operator 1.5.8

2 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/nnstd/seaweedfs-operator:1.43ebe2fd253f6
stdlib@go1.24.5
1.25.11
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20231011-8b53cabe0a7943503b45d
stdlib@go1.21.3
1.25.11

Open the chart page →

2,099
wallabagsebtiz13-chartsVerified publisher0.6.01 of 1See more

wallabag sebtiz13-charts 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
wallabag/wallabag:2.6.144a527e027e0d
stdlib@go1.25.1
1.25.11

Open the chart page →

1,135
secret-managersecret-managerVerified publisher1.0.03 of 4See more

secret-manager secret-manager 1.0.0

3 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
leonardomulticloud/svc-vault:v1.0.0e4acd2fbb7b1
stdlib@go1.23.1
1.25.11
leonardomulticloud/webhook:v1.0.0d119918900e8
stdlib@go1.22.6
1.25.11
library/mysql:9.0.192dc86967801
stdlib@go1.18.2
1.25.11

Open the chart page →

5,504
secrets-bridgesecrets-bridge0.2.01 of 1See more

secrets-bridge secrets-bridge 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/haydercyber/secrets-bridge:0.2.04709f1bb3039
stdlib@go1.24.13
1.25.11

Open the chart page →

380
aws-secretssecretsprovider0.1.01 of 1See more

aws-secrets secretsprovider 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Open the chart page →

2,220
secretssecrets-proxy1.0.61 of 1See more

secrets secrets-proxy 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
udhos/secrets:1.0.6daa2b4eaac09
stdlib@go1.24.2
1.25.11

Open the chart page →

994
secret-syncsecret-syncVerified publisher0.1.111 of 1See more

secret-sync secret-sync 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
csepulvedab/secret-sync:0.5227a6f2b0ff8
stdlib@go1.19.4
1.25.11

Open the chart page →

1,443
cloudflaredsectionmeVerified publisher2022.3.41 of 1See more

cloudflared sectionme 2022.3.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/giantswarm/cloudflared:2022.3.40b20d2fe9a6b
stdlib@go1.17.1
1.25.11

Open the chart page →

2,414
influxdb_exportersectionmeVerified publisher0.0.21 of 1See more

influxdb_exporter sectionme 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/prometheus/influxdb-exporter:v0.10.03854d8af7bd4
stdlib@go1.18.3
1.25.11

Open the chart page →

922
security-smellssecurity-smells0.1.01 of 1See more

security-smells security-smells 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
durellirsd/security-smells-api:v17398aca4fc2e
stdlib@go1.22.4
1.25.11

Open the chart page →

1,425
pagessekharpkube1.0.01 of 3See more

pages sekharpkube 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.11

Open the chart page →

20,262
seldon-core-analyticsseldon1.17.14 of 8See more

seldon-core-analytics seldon 1.17.1

4 of the 8 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.25.11
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.25.11
prom/prometheus:v2.18.15880ec936055
stdlib@go1.14.2
1.25.11
prom/pushgateway:v1.0.1a5df60347882
stdlib@go1.13.5
1.25.11

Open the chart page →

10,748
postgresself-hosters-by-nightVerified publisher0.14.31 of 1See more

postgres self-hosters-by-night 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
stdlib@go1.24.6
1.25.11

Open the chart page →

2,415
semaphoresemaphore-light1.0.01 of 1See more

semaphore semaphore-light 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
semaphoreui/semaphore:latest3996804607eb
stdlib@go1.23.3
1.25.11

Open the chart page →

1,681
ansible-semaphoresergiotocaliniVerified publisher1.2.01 of 1See more

ansible-semaphore sergiotocalini 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
semaphoreui/semaphore:v2.9.645b50bc11833f
stdlib@go1.21.8
1.25.11

Open the chart page →

3,336
cortezasergiotocaliniVerified publisher1.0.11 of 1See more

corteza sergiotocalini 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.60bcdcbcd3c63
stdlib@go1.24.1
1.25.11

Open the chart page →

3,341
miniosergiotocaliniVerified publisher1.0.01 of 1See more

minio sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
stdlib@go1.19.11
1.25.11

Open the chart page →

4,210
rdpgwsergiotocaliniVerified publisher1.0.01 of 1See more

rdpgw sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
bolkedebruin/rdpgw:masterc0dc0589373a
stdlib@go1.24.13
1.25.11

Open the chart page →

687
service-binding-operatorservice-binding-operator-helm-chart1.4.11 of 1See more

service-binding-operator service-binding-operator-helm-chart 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/redhat-developer/servicebinding-operatordigest-pinned16286ac84ddd
stdlib@go1.20.6
1.25.11

Open the chart page →

796
serviceexampleserviceexample0.1.03 of 5See more

serviceexample serviceexample 0.1.0

3 of the 5 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/nats:2.9.20-alpined6c6ae7df4a0
stdlib@go1.19.11
1.25.11
natsio/nats-box:0.13.559cf2e949181
stdlib@go1.19.5
1.25.11
natsio/nats-server-config-reloader:0.11.0c3a755eab2cc
stdlib@go1.20.5
1.25.11

Open the chart page →

5,451
service-exampleservice-example-10.1.05 of 7See more

service-example service-example-1 0.1.0

5 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.11
library/nats:2.9.11-alpineccbe811b8575
stdlib@go1.19.4
1.25.11
natsio/nats-box:0.13.3c507bd7e3831
stdlib@go1.19.4
1.25.11
natsio/nats-server-config-reloader:0.8.06bdaceb63aa5
stdlib@go1.19.4
1.25.11
natsio/prometheus-nats-exporter:0.10.1bce728062c4f
stdlib@go1.19.3
1.25.11

Open the chart page →

9,109
serviceexampleserviceexample-chart0.3.01 of 4See more

serviceexample serviceexample-chart 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.11

Open the chart page →

4,042
serviceexampleservice-example-helm-chart0.1.01 of 4See more

serviceexample service-example-helm-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.24.6
1.25.11

Open the chart page →

2,309
service-exampleservice-example-jt0.1.14 of 9See more

service-example service-example-jt 0.1.1

4 of the 9 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/nats:2.12.2-alpine2d5fce3229ae
stdlib@go1.25.4
1.25.11
natsio/nats-box:0.19.28031d190c7ee
stdlib@go1.25.2
1.25.11
natsio/nats-server-config-reloader:0.20.147094fcae2f4
stdlib@go1.24.8
1.25.11
natsio/prometheus-nats-exporter:0.17.326c826662ac8
stdlib@go1.24.2
1.25.11

Open the chart page →

7,208
ccx-monitoringseveralnines0.6.215 of 7See more

ccx-monitoring severalnines 0.6.21

5 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
grafana/grafana:12.3.12175aaa91c96
stdlib@go1.25.5
1.25.11
victoriametrics/victoria-metrics:v1.120.0a1cb2f3dfd45
stdlib@go1.24.4
1.25.11
victoriametrics/vmalert:v1.96.0150cd08fde94
stdlib@go1.21.5
1.25.11
quay.io/prometheus/alertmanager:v0.26.0361db356b330
stdlib@go1.20.7
1.25.11
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.1af8220f53493
stdlib@go1.20.10
1.25.11

Open the chart page →

7,718
apache-shardingsphere-operator-chartsshardingsphere0.3.01 of 2See more

apache-shardingsphere-operator-charts shardingsphere 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
apache/shardingsphere-operator:0.3.0ffe68d6b99c0
stdlib@go1.19.10
1.25.11

Open the chart page →

1,698

Container images carrying it

4,658 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
stdlib@go1.25.0
1.25.11
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
stdlib@go1.25.0
1.25.11
3
quay.io/devtron/clair:4.3.675fb847ac045
stdlib@go1.17.6
1.25.11
3
quay.io/devtron/cost-sync:172ef62b-1159-39429edf210d763ca
stdlib@go1.24.13
1.25.11
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
stdlib@go1.25.0
1.25.11
3
quay.io/devtron/discord-alertmanager:ceceb475-65-35203586419ca31
stdlib@go1.18.1
1.25.11
3
quay.io/devtron/git-sensor:94237c18-950-3941803c7bf249aa1
stdlib@go1.25.5
1.25.11
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
stdlib@go1.18
1.25.11
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
stdlib@go1.25.6
1.25.11
3
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
stdlib@go1.16.10
1.25.11
3
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
stdlib@go1.25.5
1.25.11
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
stdlib@go1.14.15
1.25.11
3
quay.io/devtron/jcmhproxy-ingress:v0.14.64286bcccda3e
stdlib@go1.19.13
1.25.11
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
stdlib@go1.20.4
1.25.11
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
stdlib@go1.25.0
1.25.11
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
stdlib@go1.25.0
1.25.11
3
quay.io/devtron/kubewatch:09867a9c-419-39288d30a7c640c63
stdlib@go1.25.5
1.25.11
3
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
stdlib@go1.20.7
1.25.11
3
quay.io/devtron/lens:3b3d6d0e-333-39292e886b8d2b54b
stdlib@go1.25.5
1.25.11
3
quay.io/devtron/nats:2.9.3-alpinef0cf3c3ab495
stdlib@go1.19.2
1.25.11
3
quay.io/devtron/nats-box:latest48cdd3054b20
stdlib@go1.19.2
1.25.11
3
quay.io/devtron/nats-server-config-reloader:0.6.2b5252e783fb2
stdlib@go1.15.14
1.25.11
3
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
stdlib@go1.16.15
1.25.11
3
quay.io/devtron/silver-surfer:e3b9a2f6-1191-387899640e2dc4316
stdlib@go1.21.5
1.25.11
3
quay.io/devtron/winter-soldier:abf5a822-196-14744093844c46c19
stdlib@go1.18.10
1.25.11
3
quay.io/dexidp/dex:v2.25.07bcf286807b8
stdlib@go1.14.9
1.25.11
3
quay.io/jcmoraisjr/haproxy-ingress:v0.16.16fd744191ef6
stdlib@go1.25.9
1.25.11
3
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
stdlib@go1.13.4
1.25.11
3
quay.io/metallb/controller:v0.13.101b33357b3595
stdlib@go1.19.5
1.25.11
3
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
stdlib@go1.17.7
1.25.11
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
stdlib@go1.20.10
1.25.11
3
quay.io/prometheus/alertmanager:v0.26.0361db356b330
stdlib@go1.20.7
1.25.11
3
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
stdlib@go1.15.8
1.25.11
3
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
stdlib@go1.20.6
1.25.11
3
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
stdlib@go1.16.7
1.25.11
3
quay.io/prometheus-operator/prometheus-config-reloader:v0.91.07d9e4eea5f11
stdlib@go1.25.9
1.25.11
3
quay.io/prometheus-operator/prometheus-config-reloader:v0.74.0d55631c7a740
stdlib@go1.22.3
1.25.11
3
quay.io/prometheus-operator/prometheus-operator:v0.90.152a6a92d915e
stdlib@go1.25.8
1.25.11
3
quay.io/prometheus-operator/prometheus-operator:v0.50.0ab4f480f2cc6
stdlib@go1.16
1.25.11
3
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
stdlib@go1.19.4
1.25.11
3
quay.io/prometheus/prometheus:v2.55.0378f4e037035
stdlib@go1.23.2
1.25.11
3
quay.io/prometheus/prometheus:v2.26.038d40a760569
stdlib@go1.16.2
1.25.11
3
quay.io/prometheus/prometheus:v3.10.07571a304e67f
stdlib@go1.26.0
1.25.11
3
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
stdlib@go1.17.3
1.25.11
3
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
stdlib@go1.19.7
1.25.11
3
quay.io/prometheus/pushgateway:v1.10.07a4d0696a24e
stdlib@go1.23.1
1.25.11
3
quay.io/prometheus/pushgateway:v1.8.0c159e946abf4
stdlib@go1.22.1
1.25.11
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
stdlib@go1.15.15
1.25.11
3
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
stdlib@go1.16.8
1.25.11
3
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
stdlib@go1.19.2
1.25.11
3

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.