StackRadar

CVE-2026-46600

Unscored

Advisory

Published 14 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.005
44th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,559
of 17,790 indexed, latest versions
Container images
4,369
deployed by those charts
Fix available
2 of 2
affected packages

Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessage

Carried by container images the latest versions of 3,559 of 17,790 indexed charts deploy, on 4,369 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+221 more0.56.03,945
stdlibgolanggo1.26.0, go1.26.1, go1.26.2, go1.26.2-X:boringcrypto+7 more1.26.6897
OSV records
GO-2026-5942
Also known as
BIT-golang-2026-46600

Charts affected

3,559 by stars
ChartLatestAffected imagesRadar Score
wireguard-operatorjacobcolvinVerified publisher0.2.01 of 2See more

wireguard-operator jacobcolvin 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/jodevsa/wireguard-operator/manager:v2.0.2839412bdd403b
golang.org/x/net@v0.23.0
0.56.0

Open the chart page →

840
koptimizejaconiVerified publisher0.5.42 of 2See more

koptimize jaconi 0.5.4

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
alpine/k8s:1.27.321b24e6bf801
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.56.0
ghcr.io/jaconi-io/koptimize:1.2.5aca1bbd609b6
golang.org/x/net@v0.10.0
0.56.0

Open the chart page →

5,730
mini-infrajaeki0.1.01 of 4See more

mini-infra jaeki 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.13.101b33357b3595
golang.org/x/net@v0.8.0
0.56.0

Open the chart page →

1,746
todo-operatorjakuboskera0.1.11 of 1See more

todo-operator jakuboskera 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
jakuboskera/todo-operator:v0.1.0a305b8ce5bff
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

304
unifi-network-applicationjanip81-helm-chartsVerified publisher0.2.91 of 3See more

unifi-network-application janip81-helm-charts 0.2.9

1 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
stdlib@go1.26.5
1.26.6

Open the chart page →

2,185
janus-shieldjanus-shield1.0.01 of 2See more

janus-shield janus-shield 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/cilium/tetragon:v1.1.096fac2482898
golang.org/x/net@v0.24.0
0.56.0

Open the chart page →

2,408
javascriptweeklyjavascriptweekly2.1.01 of 1See more

javascriptweekly javascriptweekly 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
zufardhiyaulhaq/javascriptweekly:v2.1.086424bd0b2a4
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.56.0

Open the chart page →

1,237
sql-exporterjdstoneVerified publisher0.2.11 of 1See more

sql-exporter jdstone 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
burningalchemist/sql_exporter:0.16.0b8e4757c7def
golang.org/x/net@v0.30.0
0.56.0

Open the chart page →

885
newtjeffrescVerified publisher0.2.11 of 1See more

newt jeffresc 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
fosrl/newt:1.10.4ccd2b0e9a049
golang.org/x/net@v0.51.0
0.56.0

Open the chart page →

1,104
athens-proxyjenkins-x0.2.21 of 2See more

athens-proxy jenkins-x 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:latestab6f1a1f0fb4
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

1,344
jx-app-athensjenkins-x0.0.181 of 1See more

jx-app-athens jenkins-x 0.0.18

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
gomods/athens:v0.8.1d714c7ff0231
golang.org/x/net@v0.0.0-20191027093000-83d349e8ac1a
0.56.0

Open the chart page →

4,232
jx-app-datadogjenkins-x0.0.101 of 2See more

jx-app-datadog jenkins-x 0.0.10

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
datadog/agent:6aad9994de6a7
golang.org/x/net@v0.33.0
0.56.0

Open the chart page →

4,052
jx-app-flaggerjenkins-x0.0.52 of 2See more

jx-app-flagger jenkins-x 0.0.5

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/grafana:6.5.1befcd84da2c1
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
0.56.0
weaveworks/flagger:1.0.0-rc.5174307de1b36
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
0.56.0

Open the chart page →

6,035
jx-app-jenkinsjenkins-x0.0.151 of 2See more

jx-app-jenkins jenkins-x 0.0.15

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

2,498
knative-servingjenkins-x0.19.124 of 4See more

knative-serving jenkins-x 0.19.12

4 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned1e3db4f2eeed
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.56.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinneddb6ceff2aab4
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.56.0
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedb2cd45b8a8a4
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.56.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedd27b4495ccc3
golang.org/x/net@v0.0.0-20200904194848-62affa334b73
0.56.0

Open the chart page →

9,724
jetspotterjetspotter1.48.11 of 1See more

jetspotter jetspotter 1.48.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/vvanouytsel/jetspotter:1.48.1ec0e17a94f61
golang.org/x/net@v0.39.0
0.56.0

Open the chart page →

990
ingress-nginxjfrog4.5.22 of 2See more

ingress-nginx jfrog 4.5.2

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
golang.org/x/net@v0.5.0
0.56.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0

Open the chart page →

3,798
vaultjfrog0.25.02 of 2See more

vault jfrog 0.25.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
hashicorp/vault:1.14.0b2177a8bfe85
golang.org/x/net@v0.10.0
0.56.0
hashicorp/vault-k8s:1.2.14500e988b7ce
golang.org/x/net@v0.7.0
0.56.0

Open the chart page →

3,977
alpine-torjfwenischVerified publisher1.1.01 of 1See more

alpine-tor jfwenisch 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
jfwenisch/alpine-tor:latest9e6c229f953c
golang.org/x/net@v0.0.0-20190328230028-74de082e2cca
0.56.0

Open the chart page →

4,461
steamcmdjfwenischVerified publisher0.0.51 of 1See more

steamcmd jfwenisch 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
steamcmd/steamcmd:latest5028a25268e7
stdlib@go1.26.5
1.26.6

Open the chart page →

738
kafka-offset-lag-for-prometheusjhidalgo3-githubVerified publisher2.3.01 of 1See more

kafka-offset-lag-for-prometheus jhidalgo3-github 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
jhidalgo3/kafka-offset-lag-for-prometheus:latest0390e155c46d
golang.org/x/net@v0.1.0
0.56.0

Open the chart page →

1,470
missing-container-metricsjimdo-missing-container-metrics0.5.01 of 1See more

missing-container-metrics jimdo-missing-container-metrics 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.56.0

Open the chart page →

2,418
job-manager-syncerjob-manager-syncer1.27.01 of 1See more

job-manager-syncer job-manager-syncer 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-syncer:1.27.086957bbeeff5
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

462
job-pod-reaperjob-pod-reaper0.14.01 of 1See more

job-pod-reaper job-pod-reaper 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/ohiosupercomputercenter/job-pod-reaper:v0.14.0775449888968
stdlib@go1.26.4
1.26.6

Open the chart page →

74
haven-complinacy-dashboardjolle-devVerified publisher1.0.01 of 2See more

haven-complinacy-dashboard jolle-dev 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
j0113/haven-compliancy-dashboard:1.3696cb8ca9f4e
golang.org/x/net@v0.0.0-20210510120150-4163338589ed
0.56.0

Open the chart page →

3,842
cloudnative-pgjouveVerified publisher0.27.01 of 1See more

cloudnative-pg jouve 0.27.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.28.034198e85b6e6
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

653
corednsjouveVerified publisher1.45.01 of 1See more

coredns jouve 1.45.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
coredns/coredns:1.13.19b9128672209
golang.org/x/net@v0.45.0
0.56.0

Open the chart page →

894
distributionjouveVerified publisher0.2.31 of 1See more

distribution jouve 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
distribution/distribution:3.1.1bca24727f400
golang.org/x/net@v0.52.0
0.56.0

Open the chart page →

842
image-storage-servicejtektVerified publisher0.4.31 of 4See more

image-storage-service jtekt 0.4.3

1 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
golang.org/x/net@v0.14.0
0.56.0

Open the chart page →

22,728
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
golang.org/x/net@v0.0.0-20220617184016-355a448f1bc9
0.56.0

Open the chart page →

16,680
firstchartjuanjmerono0.2.01 of 1See more

firstchart juanjmerono 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
jmalloc/echo-server:0.3.1e4eaee2c7998
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
0.56.0

Open the chart page →

1,443
daily-restartjuniorjpdj0.1.691 of 1See more

daily-restart juniorjpdj 0.1.69

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/juniorjpdj/containers/openssl-kubectl:1.36.1-r358afba209ea0
golang.org/x/net@v0.55.0
0.56.0

Open the chart page →

464
mumbledjjuniorjpdj0.1.1991 of 2See more

mumbledj juniorjpdj 0.1.199

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/juniorjpdj/containers/openssl-kubectl:1.36.1-r358afba209ea0
golang.org/x/net@v0.55.0
0.56.0

Open the chart page →

965
alertmanager-irc-relayjuppi880.0.11 of 1See more

alertmanager-irc-relay juppi88 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
maldridge/alertmanager-irc-relay:v0.4.1391de2b76128
golang.org/x/net@v0.0.0-20210119194325-5f4716e94777
0.56.0

Open the chart page →

1,615
nginx-gateway-fabricjupyter-jscVerified publisher2.4.11 of 1See more

nginx-gateway-fabric jupyter-jsc 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/nginx/nginx-gateway-fabric:2.4.180f3a0a51af5
golang.org/x/net@v0.48.0
0.56.0

Open the chart page →

365
k10appk10app0.2.11 of 11See more

k10app k10app 0.2.1

1 of the 11 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/k10app/businit:latest94c9a3e799c2
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.56.0

Open the chart page →

10,570
k8-ldap-configmapk8-ldap-configmap0.16.01 of 1See more

k8-ldap-configmap k8-ldap-configmap 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/ohiosupercomputercenter/k8-ldap-configmap:v0.16.040d0b67afd77
stdlib@go1.26.4
1.26.6

Open the chart page →

96
k8-namespace-reaperk8-namespace-reaper0.11.01 of 1See more

k8-namespace-reaper k8-namespace-reaper 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/ohiosupercomputercenter/k8-namespace-reaper:v0.11.0ead1f817e8c2
stdlib@go1.26.4
1.26.6

Open the chart page →

74
k8quk8qu1.4.01 of 1See more

k8qu k8qu 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/gijsvandulmen/k8qu:1.4e897b18db13d
golang.org/x/net@v0.26.0
0.56.0

Open the chart page →

568
k8s-aibomk8s-aibomVerified publisher1.4.01 of 1See more

k8s-aibom k8s-aibom 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/googlecloudplatform/k8s-aibomdigest-pinned05e86c39c535
golang.org/x/net@v0.55.0
0.56.0

Open the chart page →

79
clonarrk8s-chartsVerified publisher0.10.11 of 1See more

clonarr k8s-charts 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/prophetse7en/clonarr:latest9400d298b37a
stdlib@go1.26.4
1.26.6

Open the chart page →

439
palworld-serverk8s-chartsVerified publisher1.2.11 of 1See more

palworld-server k8s-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.5.0b4ac9ee22483
stdlib@go1.26.3
1.26.6

Open the chart page →

3,493
deploydefenderk8s-custom-controllerVerified publisher0.1.31 of 1See more

deploydefender k8s-custom-controller 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

1,902
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

8,899
k8s-drain-surgek8s-drain-surgeVerified publisher0.0.31 of 1See more

k8s-drain-surge k8s-drain-surge 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/aeyrtonvs/k8s-drain-surge:0.0.338bce7856b5c
golang.org/x/net@v0.53.0
0.56.0

Open the chart page →

137
bitmagnetk8s-home-lab-repo1.0.21 of 1See more

bitmagnet k8s-home-lab-repo 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/bitmagnet-io/bitmagnet:v0.10b6373349a301
golang.org/x/net@v0.43.0
0.56.0

Open the chart page →

1,169
blockyk8s-home-lab-repo11.2.11 of 1See more

blocky k8s-home-lab-repo 11.2.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/0xerr0r/blocky:v0.29.0a6d99f323d30
golang.org/x/net@v0.51.0
stdlib@go1.26.0
0.56.0
1.26.6

Open the chart page →

580
giteak8s-home-lab-repo2.6.01 of 1See more

gitea k8s-home-lab-repo 2.6.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
gitea/gitea:1.26.27d13848af126
golang.org/x/net@v0.53.0
stdlib@go1.26.3-X:jsonv2
0.56.0
1.26.6

Open the chart page →

2,146
maddyk8s-home-lab-repo4.2.11 of 1See more

maddy k8s-home-lab-repo 4.2.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
foxcpp/maddy:0.8.2eeb5813fc4d1
golang.org/x/net@v0.34.0
0.56.0

Open the chart page →

1,059
photoprismk8s-home-lab-repo10.0.11 of 1See more

photoprism k8s-home-lab-repo 10.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
photoprism/photoprism:231128-ce284de9cc4f9c
golang.org/x/net@v0.18.0
0.56.0

Open the chart page →

1,140

Container images carrying it

4,369 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
rancher/shell:v0.8.1f293af9c635f
golang.org/x/net@v0.49.0
stdlib@go1.26.5
0.56.0
1.26.6
4
rss3/op-geth:rss3-main-1ecad3026148aa1bc52
golang.org/x/net@v0.18.0
0.56.0
4
victoriametrics/operator:v0.74.17310c4a80b94
stdlib@go1.26.5
1.26.6
4
ghcr.io/appscode/petset:v0.1.093fa0daf603c
golang.org/x/net@v0.47.0
0.56.0
4
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
golang.org/x/net@v0.23.0
0.56.0
4
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
golang.org/x/net@v0.55.0
0.56.0
4
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
golang.org/x/net@v0.55.0
0.56.0
4
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
golang.org/x/net@v0.55.0
0.56.0
4
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
golang.org/x/net@v0.55.0
0.56.0
4
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
golang.org/x/net@v0.55.0
0.56.0
4
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
golang.org/x/net@v0.47.0
0.56.0
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
stdlib@go1.26.5
1.26.6
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/net@v0.5.0
0.56.0
4
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
golang.org/x/net@v0.46.0
0.56.0
4
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
golang.org/x/net@v0.35.0
0.56.0
4
quay.io/jetstack/cert-manager-cainjector:v1.13.172072d492b43
golang.org/x/net@v0.15.0
0.56.0
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/net@v0.15.0
0.56.0
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/net@v0.15.0
0.56.0
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/net@v0.15.0
0.56.0
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/net@v0.4.0
0.56.0
4
quay.io/prometheus/mysqld-exporter:latest:v0.20.0abed8dac117b
stdlib@go1.26.5
1.26.6
4
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
golang.org/x/net@v0.2.0
0.56.0
4
quay.io/prometheus/node-exporter:v1.9.1d00a542e409e
golang.org/x/net@v0.37.0
0.56.0
4
quay.io/thanos/thanos:v0.42.4b567818fe608
stdlib@go1.26.5
1.26.6
4
registry.k8s.io/autoscaling/vpa-admission-controller:1.7.1be29624f7f12
golang.org/x/net@v0.55.0
stdlib@go1.26.5
0.56.0
1.26.6
4
registry.k8s.io/autoscaling/vpa-recommender:1.7.189cea705535f
golang.org/x/net@v0.55.0
stdlib@go1.26.5
0.56.0
1.26.6
4
registry.k8s.io/autoscaling/vpa-updater:1.7.1feb42a526970
golang.org/x/net@v0.55.0
stdlib@go1.26.5
0.56.0
1.26.6
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
golang.org/x/net@v0.1.0
0.56.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
0.56.0
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.0c9f76a75fd00
golang.org/x/net@v0.41.0
0.56.0
4
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.16.0e750cd4b43f7
golang.org/x/net@v0.40.0
0.56.0
4
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.26.6
4
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
golang.org/x/net@v0.24.0
0.56.0
4
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
golang.org/x/net@v0.34.0
0.56.0
4
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
golang.org/x/net@v0.32.0
0.56.0
4
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
golang.org/x/net@v0.19.0
0.56.0
4
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
golang.org/x/net@v0.40.0
0.56.0
4
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
golang.org/x/net@v0.49.0
0.56.0
4
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
golang.org/x/net@v0.54.0
stdlib@go1.26.3
0.56.0
1.26.6
4
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
golang.org/x/net@v0.31.0
0.56.0
4
alfhou/hammond:v0.0.24c85dc0293aa1
golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1
0.56.0
3
alpine/git:latest:v2.54.06f3b5029566d
golang.org/x/net@v0.54.0
stdlib@go1.26.3
0.56.0
1.26.6
3
argoproj/argocd:v1.8.1830e86cacefd
golang.org/x/net@v0.0.0-20201024042810-be3efd7ff127
0.56.0
3
bitnamilegacy/kubectl:latestcd354d5b2556
golang.org/x/net@v0.41.0
0.56.0
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
golang.org/x/net@v0.0.0-20220906165146-f3363e06e74c
0.56.0
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
golang.org/x/net@v0.42.0
0.56.0
3
bitnami/mongodb:latest9aa916500f02
stdlib@go1.26.5
1.26.6
3
caddy/ingress:v0.2.118d1366fc0e9
golang.org/x/net@v0.17.0
0.56.0
3
ciscolabs/rtsp-server:latestb59fc10bb821
golang.org/x/net@v0.0.0-20220526153639-5463443f8c37
0.56.0
3

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.