StackRadar

CVE-2026-46600

Unscored

Advisory

Published 14 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.005
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,531
of 17,797 indexed, latest versions
Container images
4,324
deployed by those charts
Fix available
2 of 2
affected packages

Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessage

Carried by container images the latest versions of 3,531 of 17,797 indexed charts deploy, on 4,324 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+221 more0.56.03,917
stdlibgolanggo1.26.0, go1.26.1, go1.26.2, go1.26.2-X:boringcrypto+7 more1.26.6868
OSV records
GO-2026-5942
Also known as
BIT-golang-2026-46600

Charts affected

3,531 by stars
ChartLatestAffected imagesRadar Score
kamaji-consoleclastixVerified publisher0.1.31 of 1See more

kamaji-console clastix 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
golang.org/x/net@v0.23.0
0.56.0

Open the chart page →

2,763
kamaji-etcdclastixVerified publisher0.17.03 of 4See more

kamaji-etcd clastix 0.17.0

3 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
cfssl/cfssl:latestc9018c2ddf0b
golang.org/x/net@v0.20.0
0.56.0
quay.io/coreos/etcd:v3.5.628cb0630cb85
golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc2
0.56.0
quay.io/coreos/etcd:v3.6.12702d7b4881c6
golang.org/x/net@v0.52.0
0.56.0

Open the chart page →

12,075
local-path-provisionerclastixVerified publisher0.0.301 of 1See more

local-path-provisioner clastix 0.0.30

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.309b9148811700
golang.org/x/net@v0.27.0
0.56.0

Open the chart page →

1,209
vcloud-csiclastixVerified publisher1.6.04 of 5See more

vcloud-csi clastix 1.6.0

4 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1
0.56.0
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
0.56.0
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
golang.org/x/net@v0.0.0-20210316092652-d523dce5a7f4
0.56.0
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0

Open the chart page →

7,414
cloudflare-ddnsclouddrove0.1.51 of 1See more

cloudflare-ddns clouddrove 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
favonia/cloudflare-ddns:161013368c8f9
stdlib@go1.26.4
1.26.6

Open the chart page →

68
cloudflared-tunnelclouddrove0.1.41 of 1See more

cloudflared-tunnel clouddrove 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2025.8.0eb5c9324efe3
golang.org/x/net@v0.40.0
0.56.0

Open the chart page →

1,775
cronjobclouddrove1.0.11 of 1See more

cronjob clouddrove 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
stdlib@go1.26.5
1.26.6

Open the chart page →

749
kube-acp-stackcloudentity2.28.02 of 7See more

kube-acp-stack cloudentity 2.28.0

2 of the 7 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
golang.org/x/net@v0.33.0
0.56.0
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
0.56.0

Open the chart page →

21,064
openbankingcloudentity0.1.96 of 6See more

openbanking cloudentity 0.1.9

6 of the 6 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
golang.org/x/net@v0.0.0-20201207224615-747e23833adb
0.56.0
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
golang.org/x/net@v0.0.0-20201207224615-747e23833adb
0.56.0
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
golang.org/x/net@v0.0.0-20201207224615-747e23833adb
0.56.0
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
golang.org/x/net@v0.0.0-20201207224615-747e23833adb
0.56.0
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
golang.org/x/net@v0.0.0-20201207224615-747e23833adb
0.56.0
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
golang.org/x/net@v0.0.0-20201207224615-747e23833adb
0.56.0

Open the chart page →

18,040
cloudflare-ddns-updatecloudflare-ddns-update0.1.21 of 1See more

cloudflare-ddns-update cloudflare-ddns-update 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
golang.org/x/net@v0.25.0
0.56.0

Open the chart page →

1,338
cloudflare-tunnel-ingress-controllercloudflare-tunnel-ingress-controller0.2.31 of 1See more

cloudflare-tunnel-ingress-controller cloudflare-tunnel-ingress-controller 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/oliverbaehler/cloudflare-tunnel-ingress-controller:0.2.30aec31e36d95
golang.org/x/net@v0.37.0
0.56.0

Open the chart page →

438
cloudfront-tenant-operatorcloudfront-tenant-operatorVerified publisher0.3.01 of 1See more

cloudfront-tenant-operator cloudfront-tenant-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/dsp0x4/cloudfront-tenant-operator:0.3.0eb40174cd20d
golang.org/x/net@v0.51.0
stdlib@go1.26.2
0.56.0
1.26.6

Open the chart page →

276
hcloud-csi-mgmtcloudhippieVerified publisher2.10.02 of 5See more

hcloud-csi-mgmt cloudhippie 2.10.0

2 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
golang.org/x/net@v0.55.0
stdlib@go1.26.3
0.56.0
1.26.6
registry.k8s.io/sig-storage/csi-resizer:v2.2.1ea1d25e23479
golang.org/x/net@v0.55.0
stdlib@go1.26.3
0.56.0
1.26.6

Open the chart page →

597
mercurecloudnativeapp1.0.21 of 1See more

mercure cloudnativeapp 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
dunglas/mercure:v0916834e49961
golang.org/x/net@v0.55.0
stdlib@go1.26.3
0.56.0
1.26.6

Open the chart page →

1,098
cp4d-deployercloud-native-toolkit1.0.01 of 1See more

cp4d-deployer cloud-native-toolkit 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
golang.org/x/net@v0.14.0
0.56.0

Open the chart page →

25,515
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.56.0

Open the chart page →

6,704
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
golang.org/x/net@v0.0.0-20220107192237-5cfca573fb4d
0.56.0

Open the chart page →

6,930
ocs-operatorcloud-native-toolkit0.2.41 of 1See more

ocs-operator cloud-native-toolkit 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.26.6

Open the chart page →

369
refarch-infraconfigcloud-native-toolkit0.2.21 of 1See more

refarch-infraconfig cloud-native-toolkit 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.26.6

Open the chart page →

369
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad2 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

2 of the 6 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
golang.org/x/net@v0.0.0-20220927171203-f486391704dc
0.56.0
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
golang.org/x/net@v0.41.0
0.56.0

Open the chart page →

18,400
cloud-provider-kubevirtcloud-provider-kubevirtVerified publisher0.2.01 of 1See more

cloud-provider-kubevirt cloud-provider-kubevirt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/kubevirt/kubevirt-cloud-controller-manager:v0.6.037ad4c475941
golang.org/x/net@v0.49.0
0.56.0

Open the chart page →

663
cloudrevecloudreve0.2.01 of 2See more

cloudreve cloudreve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
cloudreve/cloudreve:4.18.0f7a464100bf6
golang.org/x/net@v0.55.0
0.56.0

Open the chart page →

2,842
k8s-monitoring-appcloudscriptVerified publisher1.0.01 of 1See more

k8s-monitoring-app cloudscript 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/cloudscript-technology/k8s-monitoring-app:v0.0.25cab66a6b3574
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

1,294
ctrox-csi-s3cloudve0.1.01 of 4See more

ctrox-csi-s3 cloudve 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
0.56.0

Open the chart page →

3,143
galaxycloudve6.8.61 of 3See more

galaxy cloudve 6.8.6

1 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
tusproject/tusd:v1.13.0f8088058b80f
golang.org/x/net@v0.14.0
0.56.0

Open the chart page →

5,610
galaxy-cvmfs-csicloudve2.5.12 of 3See more

galaxy-cvmfs-csi cloudve 2.5.1

2 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.10.1f25af73ee708
golang.org/x/net@v0.18.0
0.56.0
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
golang.org/x/net@v0.19.0
0.56.0

Open the chart page →

1,515
galaxy-depscloudve1.1.16 of 7See more

galaxy-deps cloudve 1.1.1

6 of the 7 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
golang.org/x/net@v0.41.0
0.56.0
bitnamilegacy/rabbitmq-cluster-operator:1.14.0-scratch-r567ac64a9623a
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.56.0
bitnamilegacy/rmq-messaging-topology-operator:1.7.1-scratch-r33c26208691a1
golang.org/x/net@v0.0.0-20220614195744-fb05da6f9022
0.56.0
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
golang.org/x/net@v0.32.0
0.56.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
golang.org/x/net@v0.8.0
0.56.0
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
golang.org/x/net@v0.8.0
0.56.0

Open the chart page →

10,599
galaxy-k8s-monitorcloudve0.1.11 of 1See more

galaxy-k8s-monitor cloudve 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
afgane/galaxy-k8s-monitor:latest457173db5640
golang.org/x/net@v0.30.0
0.56.0

Open the chart page →

313
galaxykubemancloudve2.10.14 of 7See more

galaxykubeman cloudve 2.10.1

4 of the 7 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.56.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
golang.org/x/net@v0.8.0
0.56.0
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
golang.org/x/net@v0.8.0
0.56.0
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
golang.org/x/net@v0.0.0-20190923162816-aa69164e4478
0.56.0

Open the chart page →

16,155
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
golang.org/x/net@v0.0.0-20190812203447-cdfb69ac37fc
0.56.0

Open the chart page →

14,372
openstack-cinder-csicloudve1.2.01 of 5See more

openstack-cinder-csi cloudve 1.2.0

1 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
k8scloudprovider/cinder-csi-plugin:latesta30c7a2a594a
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.56.0

Open the chart page →

2,068
proxyinjectorcloudve0.0.231 of 1See more

proxyinjector cloudve 0.0.23

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
golang.org/x/net@v0.0.0-20190812203447-cdfb69ac37fc
0.56.0

Open the chart page →

2,854
pulsarcloudve0.2.02 of 2See more

pulsar cloudve 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
golang.org/x/net@v0.33.0
0.56.0
library/docker:dind5efed980cba3
golang.org/x/net@v0.55.0
0.56.0

Open the chart page →

6,181
argo-cdcluster-deploy0.3.22 of 3See more

argo-cd cluster-deploy 0.3.2

2 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
golang.org/x/net@v0.38.0
stdlib@go1.26.4
0.56.0
1.26.6
quay.io/argoprojlabs/argocd-image-updater:v1.2.13c56f354fac5
golang.org/x/net@v0.52.0
stdlib@go1.26.3
0.56.0
1.26.6

Open the chart page →

3,759
argo-eventscluster-deploy0.1.01 of 1See more

argo-events cluster-deploy 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
golang.org/x/net@v0.49.0
0.56.0

Open the chart page →

1,043
authentikcluster-deploy0.2.01 of 1See more

authentik cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.56.0
1.26.6

Open the chart page →

2,527
cert-managercluster-deploy0.2.24 of 4See more

cert-manager cluster-deploy 0.2.2

4 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.21.1ccf6b919ec05
stdlib@go1.26.5
1.26.6
quay.io/jetstack/cert-manager-controller:v1.21.1416a2d76870d
stdlib@go1.26.5
1.26.6
quay.io/jetstack/cert-manager-startupapicheck:v1.21.1d8ab6416e6e7
stdlib@go1.26.5
1.26.6
quay.io/jetstack/cert-manager-webhook:v1.21.1d8b3961b51c8
stdlib@go1.26.5
1.26.6

Open the chart page →

401
mla-external-secretscluster-deploy0.3.01 of 1See more

mla-external-secrets cluster-deploy 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v2.1.0ec40c3d9c48f
golang.org/x/net@v0.49.0
0.56.0

Open the chart page →

723
monitoringcluster-deploy0.3.09 of 11See more

monitoring cluster-deploy 0.3.0

9 of the 11 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/grafana:12.4.1e932bd6ed0e0
golang.org/x/net@v0.49.0
0.56.0
grafana/loki:3.6.73c8fd3570dd9
golang.org/x/net@v0.47.0
0.56.0
grafana/loki-canary:3.6.70dac7d5cb383
golang.org/x/net@v0.47.0
0.56.0
prom/memcached-exporter:v0.15.592a6ad5a3d3e
golang.org/x/net@v0.47.0
0.56.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.89.0cb4ac6a56555
golang.org/x/net@v0.49.0
0.56.0
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
golang.org/x/net@v0.44.0
0.56.0
quay.io/prometheus/prometheus:v3.10.07571a304e67f
golang.org/x/net@v0.49.0
stdlib@go1.26.0
0.56.0
1.26.6
quay.io/prometheus/pushgateway:v1.11.249ed9fdf3780
golang.org/x/net@v0.46.0
0.56.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
golang.org/x/net@v0.48.0
0.56.0

Open the chart page →

8,217
traefikcluster-deploy0.3.01 of 1See more

traefik cluster-deploy 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
library/traefik:v3.7.109c3b91d5fb77
stdlib@go1.26.5
1.26.6

Open the chart page →

346
whoamicluster-deploy0.0.11 of 1See more

whoami cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
traefik/whoami:latestc4717a8d1f01
stdlib@go1.26.5
1.26.6

Open the chart page →

93
clusterfactoryclusterfactory0.2.02 of 5See more

clusterfactory clusterfactory 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
gitea/act_runner:0.3.1c2a169c5e998
golang.org/x/net@v0.50.0
stdlib@go1.26.1
0.56.0
1.26.6
jenkins/jenkins:2.541.3-jdk21c4098086090c
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

7,191
gitea-jenkinsclusterfactory0.1.12 of 5See more

gitea-jenkins clusterfactory 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
gitea/act_runner:latestb5c35d6bdbb9
golang.org/x/net@v0.50.0
stdlib@go1.26.2
0.56.0
1.26.6
jenkins/jenkins:2.541.3-jdk21c4098086090c
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

6,980
cluster-monitor-agentcluster-monitor-agent0.10.21 of 1See more

cluster-monitor-agent cluster-monitor-agent 0.10.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/cluster-monitor-agent:0.10.26769c2275a43
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

475
cluster-monitor-servercluster-monitor-server0.10.21 of 1See more

cluster-monitor-server cluster-monitor-server 0.10.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/cluster-monitor-server:0.10.22d28f9e3eab4
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

753
clusternet-controller-managerclusternet1.0.01 of 1See more

clusternet-controller-manager clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-controller-manager:v1.0.02ce077d3d02d
golang.org/x/net@v0.42.0
0.56.0

Open the chart page →

1,403
cluster-network-policy-operatorcluster-network-policy-operatorVerified publisher1.1.01 of 1See more

cluster-network-policy-operator cluster-network-policy-operator 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/desuuuu/cluster-network-policy-operator:v1.1.0d943d13c5281
stdlib@go1.26.0
1.26.6

Open the chart page →

228
cluster-octopuscluster-octopus1.0.01 of 1See more

cluster-octopus cluster-octopus 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
cgtysylr/cluster-octopus:1.0.0aec0f8a38a77
golang.org/x/net@v0.13.0
0.56.0

Open the chart page →

1,040
clusterplexclusterplexVerified publisher1.1.101 of 3See more

clusterplex clusterplex 1.1.10

1 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
stdlib@go1.26.5
1.26.6

Open the chart page →

3,950
kovecmacraeVerified publisher0.2.01 of 1See more

kove cmacrae 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.2.0185bfaae750c
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.56.0

Open the chart page →

2,089

Container images carrying it

4,324 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
golang.org/x/net@v0.0.0-20210913180222-943fd674d43e
0.56.0
1
holiman/nodemonitor:latest5cd609761065
golang.org/x/net@v0.9.0
0.56.0
1
homeassistant/home-assistant:2026.75a531753cea9
golang.org/x/net@v0.49.0
0.56.0
1
honeycombio/honeycomb-kubernetes-agent:2.7.448c38d0870f2
golang.org/x/net@v0.38.0
0.56.0
1
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
golang.org/x/net@v0.17.0
0.56.0
1
huacnlee/gobackup:v3.1.1560be93229a5
golang.org/x/net@v0.47.0
stdlib@go1.26.3
0.56.0
1.26.6
1
huangchengwu6904/hi-app:cac-16910478061b932f8221a9
golang.org/x/net@v0.10.0
0.56.0
1
huseyinbabal/demory:0.0.0-rc.20ae8eb4053c60
golang.org/x/net@v0.0.0-20210907225631-ff17edfbf26d
0.56.0
1
huzafach/aws-cli-k8:1.0.06e271d43ea48
golang.org/x/net@v0.23.0
0.56.0
1
hyperledger/fabric-ca:1.5.1c7f3422ec1d5
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
0.56.0
1
hyperledger/fabric-ca:1.5.0f270dfeee91d
golang.org/x/net@v0.0.0-20201006153459-a7d1128ccaa0
0.56.0
1
hyperledger/fabric-orderer:2.2.137294e05209b
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
0.56.0
1
hyperledger/fabric-peer:2.2.1bf4995c86af6
golang.org/x/net@v0.0.0-20190620200207-3b0461eec859
0.56.0
1
hyperledgerk8s/bc-explorer:v202305041f1a06b61f18
golang.org/x/net@v0.8.0
0.56.0
1
hyperledgerk8s/bc-saas:v0.0.1-20230524d8bc31176257
golang.org/x/net@v0.8.0
0.56.0
1
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.56.0
1
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
golang.org/x/net@v0.4.0
0.56.0
1
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
golang.org/x/net@v0.5.0
0.56.0
1
hyperledgerk8s/tektoncd-operator:v0.64.0d0a3a35a138d
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.56.0
1
hyperledgerk8s/tekton-operator-webhook:v0.64.02237cb80f52b
golang.org/x/net@v0.3.1-0.20221206200815-1e63c2f08a10
0.56.0
1
iamdorsah/bastillion:v0.1db83a0254d81
golang.org/x/net@v0.0.0-20211112202133-69e39bad7dc2
0.56.0
1
igrantio/bb-consent-api:2023.12.22d2ea6546ffe
golang.org/x/net@v0.17.0
0.56.0
1
inaccel/cloud-init:latesta5d3d0af05c1
golang.org/x/net@v0.19.0
0.56.0
1
inaccel/device-selector:latest44b4f274f40b
golang.org/x/net@v0.21.0
0.56.0
1
inaccel/kubevirt-hack:latestbdfd61803a70
golang.org/x/net@v0.19.0
0.56.0
1
inbucket/inbucket:3.0.01f10a0efea69
golang.org/x/net@v0.0.0-20210813160813-60bc85c4be6d
0.56.0
1
indevlab/ejabberd:24.12-k8s8bc689d093a7
golang.org/x/net@v0.30.0
0.56.0
1
infisical/infisical-agent-injector:v0.1.12718dd5bee7cb
golang.org/x/net@v0.38.0
0.56.0
1
infisical/infisical-csi-provider:v0.0.9e3390e677db6
golang.org/x/net@v0.33.0
0.56.0
1
infisical/kubernetes-operator:v0.11.9769ad1630a13
golang.org/x/net@v0.55.0
0.56.0
1
infisical/pki-issuer:latestff38294270e3
golang.org/x/net@v0.49.0
0.56.0
1
inseefrlab/shelly:cloudshell31f04ca7436b
golang.org/x/net@v0.13.0
0.56.0
1
instill/api-gateway:9bfdc88b53eaa51c523
golang.org/x/net@v0.47.0
0.56.0
1
instill/artifact-backend:b28766ac4a393e601ed
golang.org/x/net@v0.33.0
0.56.0
1
instill/mgmt-backend:d0933d4ebe12f77a3f9
golang.org/x/net@v0.47.0
0.56.0
1
instill/model-backend:611f0f2e980125e5ba5
golang.org/x/net@v0.47.0
0.56.0
1
intel/intel-deviceplugin-operator:0.36.09879685d0b5b
stdlib@go1.26.3
1.26.6
1
intel/intel-gaudi-resource-driver:v0.3.0ac758c14c2de
golang.org/x/net@v0.33.0
0.56.0
1
intel/intel-gpu-plugin:0.20.0143f0a45e174
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.56.0
1
intel/intel-gpu-resource-driver:v0.7.0e158711e32ce
golang.org/x/net@v0.33.0
0.56.0
1
intel/intel-qat-resource-driver:v0.1.0ac7616986a2b
golang.org/x/net@v0.26.0
0.56.0
1
intel/multimodal-data-visualization:3.03426deb77337
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.56.0
1
intel/trusted-certificate-issuer:0.5.0591a9db4a427
golang.org/x/net@v0.7.0
0.56.0
1
invisibl/gravity-init:v1.0.91a970f84178b
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.56.0
1
invisibl/identity-manager:1.0.01029f4fe20eb
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.56.0
1
iomesh/blockdevice-monitor:v0.2.1376577ed98ac
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.56.0
1
iomesh/blockdevice-monitor:v0.1.0d86dab5611a7
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.56.0
1
iomesh/blockdevice-monitor-prober:v0.2.1026a1d87f6e9
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.56.0
1
iomesh/blockdevice-monitor-prober:v0.1.0584dbe19db7e
golang.org/x/net@v0.0.0-20220425223048-2871e0cb64e4
0.56.0
1
iomesh/csi-driver:v2.8.01a151f602451
golang.org/x/net@v0.8.0
0.56.0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.