StackRadar

CVE-2026-42507

Medium

Advisory

Published 2 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
31st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,158
of 17,813 indexed, latest versions
Container images
4,758
deployed by those charts
Fix available
1 of 2
affected packages

Arbitrary inputs are included in errors without any escaping in net/textproto

Carried by container images the latest versions of 4,158 of 17,813 indexed charts deploy, on 4,758 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+184 more1.25.114,758
OSV records
DEBIAN-CVE-2026-42507GO-2026-5039
Also known as
BIT-golang-2026-42507

Charts affected

4,158 by stars
ChartLatestAffected imagesRadar Score
deploydefenderk8s-custom-controllerVerified publisher0.1.31 of 1See more

deploydefender k8s-custom-controller 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
stdlib@go1.22.7
1.25.11

Open the chart page →

1,905
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
stdlib@go1.24.3
1.25.11

Open the chart page →

67,567
k8s-drain-surgek8s-drain-surgeVerified publisher0.0.31 of 1See more

k8s-drain-surge k8s-drain-surge 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/aeyrtonvs/k8s-drain-surge:0.0.338bce7856b5c
stdlib@go1.25.10
1.25.11

Open the chart page →

137
bitmagnetk8s-home-lab-repo1.0.21 of 1See more

bitmagnet k8s-home-lab-repo 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/bitmagnet-io/bitmagnet:v0.10b6373349a301
stdlib@go1.23.6
1.25.11

Open the chart page →

1,169
blockyk8s-home-lab-repo11.2.11 of 1See more

blocky k8s-home-lab-repo 11.2.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/0xerr0r/blocky:v0.29.0a6d99f323d30
stdlib@go1.26.0
1.25.11

Open the chart page →

580
ghostk8s-home-lab-repo4.1.01 of 1See more

ghost k8s-home-lab-repo 4.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/ghost:6.41.129773d6be407
stdlib@go1.24.6
1.25.11

Open the chart page →

3,159
giteak8s-home-lab-repo2.6.01 of 1See more

gitea k8s-home-lab-repo 2.6.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
gitea/gitea:1.26.27d13848af126
stdlib@go1.26.3-X:jsonv2
1.25.11

Open the chart page →

2,143
influxdb-exporterk8s-home-lab-repo1.1.31 of 1See more

influxdb-exporter k8s-home-lab-repo 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
prom/influxdb-exporter:v0.11.427e33e18634a
stdlib@go1.19.9
1.25.11

Open the chart page →

624
maddyk8s-home-lab-repo4.2.11 of 1See more

maddy k8s-home-lab-repo 4.2.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
foxcpp/maddy:0.8.2eeb5813fc4d1
stdlib@go1.23.12
1.25.11

Open the chart page →

1,205
paperlessk8s-home-lab-repo11.0.11 of 1See more

paperless k8s-home-lab-repo 11.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
stdlib@go1.24.4
1.25.11

Open the chart page →

9,340
photoprismk8s-home-lab-repo10.0.11 of 1See more

photoprism k8s-home-lab-repo 10.0.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
photoprism/photoprism:231128-ce284de9cc4f9c
stdlib@go1.21.4
1.25.11

Open the chart page →

1,141
zurgk8s-home-lab-repo1.2.11 of 1See more

zurg k8s-home-lab-repo 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/debridmediamanager/zurg-testing:v0.9.3-final5c47ef99443a
stdlib@go1.22.5
1.25.11

Open the chart page →

1,733
k8s-jacoco-operatork8s-jacoco-operator0.4.01 of 4See more

k8s-jacoco-operator k8s-jacoco-operator 0.4.0

1 of the 4 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
stdlib@go1.22.5
1.25.11

Open the chart page →

2,447
k8s-mutating-admission-webhookk8s-mutating-admission-webhook1.15.11 of 1See more

k8s-mutating-admission-webhook k8s-mutating-admission-webhook 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
udhos/k8s-mutating-admission-webhook:1.15.1e588db500edf
stdlib@go1.26.3
1.25.11

Open the chart page →

940
k8s-mutating-webhookk8s-mutating-webhook0.3.01 of 2See more

k8s-mutating-webhook k8s-mutating-webhook 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
stdlib@go1.22.5
1.25.11

Open the chart page →

2,013
k8s-ondemand-proxyk8s-ondemand-proxy0.0.61 of 1See more

k8s-ondemand-proxy k8s-ondemand-proxy 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/k8s-ondemand-proxy:0.0.2078b25d48cf7
stdlib@go1.21.1
1.25.11

Open the chart page →

815
librephotosk8sonlabVerified publisher1.1.63 of 7See more

librephotos k8sonlab 1.1.6

3 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
alpine/k8s:1.22.600ac10bcb759
stdlib@go1.17.6
1.25.11
bitnamilegacy/redis:latest5927ff3702df
stdlib@go1.24.5
1.25.11
reallibrephotos/librephotos-frontend:1.0.358cdf5e93471
stdlib@go1.24.13
1.25.11

Open the chart page →

15,070
thanosk8sonlabVerified publisher1.1.71 of 1See more

thanos k8sonlab 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
thanosio/thanos:v0.41.0cf3e9b292e43
stdlib@go1.25.7
1.25.11

Open the chart page →

602
unifik8sonlabVerified publisher0.3.71 of 1See more

unifi k8sonlab 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
stdlib@go1.24.6
1.25.11

Open the chart page →

7,480
k8s-pausek8s-pause0.1.41 of 1See more

k8s-pause k8s-pause 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/doodlescheduling/k8s-pause:v0.1.16b3215e37738
stdlib@go1.17.8
1.25.11

Open the chart page →

1,847
k8s-s3-bucket-operatork8s-s3-bucket-operator0.2.21 of 1See more

k8s-s3-bucket-operator k8s-s3-bucket-operator 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/devangradadiya/k8s-s3-bucket-operator:0.2.258288de9f9fa
stdlib@go1.25.8
1.25.11

Open the chart page →

535
k8s-ssh-bastionk8s-ssh-bastion0.5.41 of 1See more

k8s-ssh-bastion k8s-ssh-bastion 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
stdlib@go1.21.11
1.25.11

Open the chart page →

3,352
k8s-validating-webhookk8s-validating-webhook0.4.01 of 2See more

k8s-validating-webhook k8s-validating-webhook 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
stdlib@go1.22.5
1.25.11

Open the chart page →

2,013
kube-admission-controller-starterk8s-validating-webhook0.2.01 of 2See more

kube-admission-controller-starter k8s-validating-webhook 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
stdlib@go1.22.5
1.25.11

Open the chart page →

2,169
k8svault-controllerk8svault-controller0.1.21 of 1See more

k8svault-controller k8svault-controller 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/doodlescheduling/k8svault-controller:v0.2.0627e5e211766
stdlib@go1.16.15
1.25.11

Open the chart page →

1,886
kagentkagent0.10.12 of 6See more

kagent kagent 0.10.1

2 of the 6 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/kagent-dev/kagent/tools:0.2.150b431281d3e
stdlib@go1.25.8
1.25.11
ghcr.io/kagent-dev/kmcp/controller:0.3.086ab878da25a
stdlib@go1.24.13
1.25.11

Open the chart page →

3,095
authentikkagiso-me0.1.11 of 1See more

authentik kagiso-me 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
stdlib@go1.25.5
1.25.11

Open the chart page →

4,654
postgresqlkagiso-me0.4.01 of 1See more

postgresql kagiso-me 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:17.4-alpine7062a2109c4b
stdlib@go1.18.2
1.25.11

Open the chart page →

1,636
rediskagiso-me0.1.61 of 1See more

redis kagiso-me 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.25.11

Open the chart page →

1,434
kom-operatorkaisoVerified publisher1.3.01 of 2See more

kom-operator kaiso 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
kaiso/kom-operator:v2.2.0e0e22b928bdd
stdlib@go1.21.5
1.25.11

Open the chart page →

710
gpu-provisionerkaitoVerified publisher0.2.01 of 1See more

gpu-provisioner kaito 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
mcr.microsoft.com/aks/kaito/gpu-provisioner:0.2.01204a7e948e9
stdlib@go1.21.8
1.25.11

Open the chart page →

1,045
workspacekaitoVerified publisher0.12.02 of 7See more

workspace kaito 0.12.0

2 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v5.2.0afdfa3da79df
stdlib@go1.25.5
1.25.11
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v1.13.2fa8eba9843ff
stdlib@go1.25.7
1.25.11

Open the chart page →

2,539
jenkinskallakruparaju-jenkins1.0.01 of 1See more

jenkins kallakruparaju-jenkins 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.11

Open the chart page →

2,549
crashlooping-pod-deleterkarljorgensen0.1.31 of 1See more

crashlooping-pod-deleter karljorgensen 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
stdlib@go1.24.6
1.25.11

Open the chart page →

1,155
dockerdkarljorgensen0.1.01 of 1See more

dockerd karljorgensen 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/docker:28.5.2-dind2a232a42256f
stdlib@go1.24.9
1.25.11

Open the chart page →

2,055
music-assistantkarljorgensen0.1.31 of 1See more

music-assistant karljorgensen 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
stdlib@go1.25.7
1.25.11

Open the chart page →

7,209
k10restorekastenVerified publisher8.0.141 of 1See more

k10restore kasten 8.0.14

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
gcr.io/kasten-images/restorectl:8.0.145a0884f9a90c
stdlib@go1.25.4
1.25.11

Open the chart page →

1,508
kbot-self-hostedkbot-self-hostedVerified publisher0.1.81 of 7See more

kbot-self-hosted kbot-self-hosted 0.1.8

1 of the 7 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.30206a6c708fc6
stdlib@go1.26.0
1.25.11

Open the chart page →

33,242
kc-chartkc-chart1.0.01 of 3See more

kc-chart kc-chart 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/mysql:latest66aec17cd21a
stdlib@go1.24.6
1.25.11

Open the chart page →

9,005
kcmkcm1.12.02 of 12See more

kcm kcm 1.12.0

2 of the 12 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flux-cli:v2.9.1020edbaee890
stdlib@go1.26.2
1.25.11
quay.io/reactiveops/rbac-manager:v1.9.587e3f461446f
stdlib@go1.25.5
1.25.11

Open the chart page →

3,330
keeper-injectorkeeper-injectorVerified publisher0.10.02 of 2See more

keeper-injector keeper-injector 0.10.0

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
keeper/injector-webhook:0.10.0aeb5476b95f0
stdlib@go1.25.6
1.25.11
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.4a9f03b34a3cb
stdlib@go1.22.8
1.25.11

Open the chart page →

758
keeper-injectorkeeper-securityVerified publisher0.11.31 of 2See more

keeper-injector keeper-security 0.11.3

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.4a9f03b34a3cb
stdlib@go1.22.8
1.25.11

Open the chart page →

505
kenerkener-chart0.0.71 of 1See more

kener kener-chart 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
stdlib@go1.20.7
1.25.11

Open the chart page →

5,293
kestra-starterkestraOfficialVerified publisher2.0.22 of 5See more

kestra-starter kestra 2.0.2

2 of the 5 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
library/postgres:17.5aadf2c0696f5
stdlib@go1.18.2
1.25.11
versity/versitygw:v1.1.0f730e0dbc1ef
stdlib@go1.25.5
1.25.11

Open the chart page →

5,633
keycloak-operator-legacykeycloak-operator-legacy1.0.01 of 1See more

keycloak-operator-legacy keycloak-operator-legacy 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
stdlib@go1.13.8
1.25.11

Open the chart page →

5,068
csi-driver-nfskeyporttech0.1.41 of 2See more

csi-driver-nfs keyporttech 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
keyporttech/csi-driver-nfs:2.0.05bd7955ea2f1
stdlib@go1.14.2
1.25.11

Open the chart page →

3,365
gogskeyporttech0.1.31 of 3See more

gogs keyporttech 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
gogs/gogs:0.12.30195b095d0b2
stdlib@go1.14.7
1.25.11

Open the chart page →

3,525
helm-mongodb-operatorkeyporttech0.1.01 of 1See more

helm-mongodb-operator keyporttech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
stdlib@go1.13.15
1.25.11

Open the chart page →

8,841
connectkfirfer1.15.02 of 2See more

connect kfirfer 1.15.0

2 of the 2 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
1password/connect-api:1.7.26aa94cf713f9
stdlib@go1.20.6
1.25.11
1password/connect-sync:1.7.2fe527ed9d81f
stdlib@go1.20.6
1.25.11

Open the chart page →

2,787
dex-k8s-authenticatorkfirfer0.0.31 of 1See more

dex-k8s-authenticator kfirfer 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-42507.

Container imageDigestPackageFixed in
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
stdlib@go1.13.11
1.25.11

Open the chart page →

2,792

Container images carrying it

4,758 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/knative-releases/knative.dev/serving/cmd/default-domain5e0429b70299
stdlib@go1.19.5
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping:v1.2.523baa1932232
stdlib@go1.17.8
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mappinge384a295069b
stdlib@go1.18.3
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping:v1.10.2f66c41ad7a73
stdlib@go1.20.4
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook15f1ce7f35b4
stdlib@go1.18.3
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook:v1.10.27368aaddf2be
stdlib@go1.20.4
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook:v1.2.5847bb97e3844
stdlib@go1.17.8
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook1282a399cbb9
stdlib@go1.18.3
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.10.24305209ce498
stdlib@go1.20.4
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.13.1700c69915dc7
stdlib@go1.21.5
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.2.59084ea8498ea
stdlib@go1.17.8
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookd27b4495ccc3
stdlib@go1.14.10
1.25.11
1
gcr.io/knative-releases/knative.dev/serving/cmd/webhookf16c0e022203
stdlib@go1.14.2
1.25.11
1
gcr.io/kubecost1/cost-model:prod-2.5.502b90651367f
stdlib@go1.23.3
1.25.11
1
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
stdlib@go1.16.4
1.25.11
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
stdlib@go1.21.5
1.25.11
1
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
stdlib@go1.16.5
1.25.11
1
gcr.io/kubecost1/cost-model:prod-2.6.39e507ac0aebb
stdlib@go1.23.4
1.25.11
1
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
stdlib@go1.16.5
1.25.11
1
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
stdlib@go1.16.4
1.25.11
1
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
stdlib@go1.21.7
1.25.11
1
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
stdlib@go1.17.6
1.25.11
1
gcr.io/ml-pipeline/cache-server:2.3.0293941ee4f65
stdlib@go1.21.7
1.25.11
1
gcr.io/ml-pipeline/cache-server:2.0.0-alpha.583e79c709df3
stdlib@go1.17.6
1.25.11
1
gcr.io/ml-pipeline/mysql:5.7-debiandf28187b5455
stdlib@go1.16.7
1.25.11
1
gcr.io/ml-pipeline/persistenceagent:2.0.0-alpha.500db9796a37b
stdlib@go1.17.6
1.25.11
1
gcr.io/ml-pipeline/persistenceagent:2.3.0109ac1b38c41
stdlib@go1.21.7
1.25.11
1
gcr.io/ml-pipeline/scheduledworkflow:2.0.0-alpha.5795a0c8a0e13
stdlib@go1.17.6
1.25.11
1
gcr.io/ml-pipeline/scheduledworkflow:2.3.0f7e67e0bc071
stdlib@go1.21.7
1.25.11
1
gcr.io/ml-pipeline/viewer-crd-controller:2.0.0-alpha.534403f9f94be
stdlib@go1.17.6
1.25.11
1
gcr.io/ml-pipeline/viewer-crd-controller:2.3.08cf8213d69e4
stdlib@go1.21.7
1.25.11
1
gcr.io/ml-pipeline/workflow-controller:v3.3.8-license-compliance6c8e4e2a6443
stdlib@go1.17.11
1.25.11
1
gcr.io/pingcap-public/deadmansswitch:1.04861d81aa528
stdlib@go1.16.3
1.25.11
1
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
stdlib@go1.21.1
1.25.11
1
gcr.io/projectsigstore/cosigned784518ff3ee7
stdlib@go1.17.9
1.25.11
1
gcr.io/projectsigstore/policy-webhook82940e8c3e0d
stdlib@go1.17.9
1.25.11
1
gcr.io/spotit-today/spot-ocean-admission-controller:0.1.64f634aeb31b8
stdlib@go1.24.13
1.25.11
1
ghcr.io/0xerr0r/blocky:v0.29.0a6d99f323d30
stdlib@go1.26.0
1.25.11
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
stdlib@go1.17.7
1.25.11
1
ghcr.io/abstract-foundation/zksync-external-node-sidecar:v1.0.03e705d0eb1ce
stdlib@go1.18.10
1.25.11
1
ghcr.io/actions/gha-runner-scale-set-controller:0.14.21b4c7f62e971
stdlib@go1.26.3
1.25.11
1
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
stdlib@go1.23.7
1.25.11
1
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
stdlib@go1.22.1
1.25.11
1
ghcr.io/aeyrtonvs/k8s-drain-surge:0.0.338bce7856b5c
stdlib@go1.25.10
1.25.11
1
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
stdlib@go1.19.8
1.25.11
1
ghcr.io/agjmills/sentry-operator:v1.2.500389ef6a00e
stdlib@go1.24.2
1.25.11
1
ghcr.io/ajnart/homarr:0.16.0737ec361ed24
stdlib@go1.22.5
1.25.11
1
ghcr.io/ajnart/homarr:lateste103abadfb52
stdlib@go1.22.5
1.25.11
1
ghcr.io/alekc/kpubber:v0.0.2a462d5797e14
stdlib@go1.16.9
1.25.11
1
ghcr.io/alex123012/annotations-exporter:v0.5.04c2b8dbc798e
stdlib@go1.19.3
1.25.11
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.