StackRadar

CVE-2026-46600

Unscored

Advisory

Published 14 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.005
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,634
of 17,813 indexed, latest versions
Container images
4,391
deployed by those charts
Fix available
2 of 2
affected packages

Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessage

Carried by container images the latest versions of 3,634 of 17,813 indexed charts deploy, on 4,391 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+221 more0.56.03,989
stdlibgolanggo1.26.0, go1.26.1, go1.26.2, go1.26.2-X:boringcrypto+7 more1.26.6867
OSV records
GO-2026-5942
Also known as
BIT-golang-2026-46600

Charts affected

3,634 by stars
ChartLatestAffected imagesRadar Score
loki-standaloneot-container-kit1.0.22 of 5See more

loki-standalone ot-container-kit 1.0.2

2 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/opstree/loki:3.6-debian13bdfee214c7ea
golang.org/x/net@v0.53.0
stdlib@go1.26.2
0.56.0
1.26.6
quay.io/opstree/memcached-exporter:0.15.5-debian13cf8f8410eaad
golang.org/x/net@v0.47.0
stdlib@go1.26.2
0.56.0
1.26.6

Open the chart page →

3,667
mongodb-operatorot-container-kit0.3.11 of 1See more

mongodb-operator ot-container-kit 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/opstree/mongodb-operator:v0.3.0879b9bead838
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
0.56.0

Open the chart page →

1,874
otel-operatorot-container-kit1.0.11 of 1See more

otel-operator ot-container-kit 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/opstree/opentelemetry-operator:0.149.0-debian13a21405ab9a9a
golang.org/x/net@v0.53.0
0.56.0

Open the chart page →

290
ot-karpenterot-container-kit0.3.01 of 1See more

ot-karpenter ot-container-kit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
public.ecr.aws/karpenter/controller:1.1.1fe383abf1dbc
golang.org/x/net@v0.30.0
0.56.0

Open the chart page →

495
pgaot-container-kit1.0.34 of 6See more

pga ot-container-kit 1.0.3

4 of the 6 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/grafana:11.1.0079600c9517b
golang.org/x/net@v0.26.0
0.56.0
quay.io/prometheus-operator/prometheus-operator:v0.75.1a7cc63108511
golang.org/x/net@v0.26.0
0.56.0
quay.io/prometheus/node-exporter:v1.8.1fa7fa12a57ef
golang.org/x/net@v0.23.0
0.56.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.12.0b401fae262a5
golang.org/x/net@v0.22.0
0.56.0

Open the chart page →

5,153
tempo-standaloneot-container-kit1.0.11 of 1See more

tempo-standalone ot-container-kit 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/opstree/tempo:2.10.4-debian13cb734024b3fd
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.56.0
1.26.6

Open the chart page →

612
vmot-container-kit0.0.34 of 7See more

vm ot-container-kit 0.0.3

4 of the 7 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/grafana:11.1.4886b56d5534e
golang.org/x/net@v0.26.0
0.56.0
victoriametrics/operator:v0.47.271be93cfafb6
golang.org/x/net@v0.26.0
0.56.0
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
golang.org/x/net@v0.23.0
0.56.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
golang.org/x/net@v0.26.0
0.56.0

Open the chart page →

5,428
vm-standaloneot-container-kit0.0.44 of 6See more

vm-standalone ot-container-kit 0.0.4

4 of the 6 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/opstree/grafana:12.4.3b61c1ed2f015
golang.org/x/net@v0.53.0
stdlib@go1.26.2
0.56.0
1.26.6
quay.io/opstree/kube-state-metrics:2.18.0-debian1353525d253793
golang.org/x/net@v0.53.0
0.56.0
quay.io/opstree/node-exporter:1.11.1-alpine3.233b6b3a7eb001
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.56.0
1.26.6
quay.io/opstree/victoriametrics-operator:v0.69.066fe5216c278
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.56.0
1.26.6

Open the chart page →

3,507
otel-add-onotel-add-onVerified publisher0.1.41 of 1See more

otel-add-on otel-add-on 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/kedify/otel-add-on:v0.1.4a6f2155bd822
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

734
otsotsVerified publisher1.8.41 of 2See more

ots ots 1.8.4

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/luzifer/ots:v1.21.5c94f6c9ed173
stdlib@go1.26.2
1.26.6

Open the chart page →

367
adotowan-charts0.1.01 of 1See more

adot owan-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
public.ecr.aws/aws-observability/aws-otel-collector:v0.43.38aa9ea5f67b8
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

1,033
minioowan-charts0.1.22 of 2See more

minio owan-charts 0.1.2

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
cleanstart/minio:latest544bdb8811e1
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
ghcr.io/georgmangold/console:v1.8.158f4f180aa6e
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

1,083
shlinkowan-charts0.1.01 of 1See more

shlink owan-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
shlinkio/shlink:stable666cc24edf72
stdlib@go1.26.4
1.26.6

Open the chart page →

322
kubernetes-taggeroxyno-zetaVerified publisher1.1.21 of 1See more

kubernetes-tagger oxyno-zeta 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
oxynozeta/kubernetes-tagger:1.3.0a153c386f5af
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0

Open the chart page →

1,827
arpap2p-avs0.1.31 of 2See more

arpa p2p-avs 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/arpa-network/node-client:latest657a2c9f6e6d
golang.org/x/net@v0.24.0
0.56.0

Open the chart page →

1,997
automatap2p-avs0.1.01 of 2See more

automata p2p-avs 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/automata-network/multi-prover-avs/operator:v0.6.0752f1aa02438
golang.org/x/net@v0.26.0
0.56.0

Open the chart page →

3,695
avap2p-avs0.1.01 of 1See more

ava p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
avaprotocol/ap-avs:1.2.0c430ea5c37d6
golang.org/x/net@v0.24.0
0.56.0

Open the chart page →

3,362
eigendap2p-avs0.1.12 of 3See more

eigenda p2p-avs 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/layr-labs/eigenda/opr-node:0.8.46650119a385f
golang.org/x/net@v0.24.0
0.56.0
ghcr.io/layr-labs/eigenda/opr-nodeplugin:0.8.4e459ad3ae758
golang.org/x/net@v0.24.0
0.56.0

Open the chart page →

2,336
predicatep2p-avs0.1.41 of 1See more

predicate p2p-avs 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/predicatelabs/operator:v1.0.5b62113fe1b27
golang.org/x/net@v0.33.0
0.56.0

Open the chart page →

893
p4p40.1.02 of 7See more

p4 p4 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
golang.org/x/net@v0.7.0
0.56.0
library/mongo:5.0-focal5e15a3f014ed
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

27,879
pacmanpacman-mhVerified publisher0.1.281 of 2See more

pacman pacman-mh 0.1.28

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
library/mongo:7.0.28-jammy88785f6f665a
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

3,627
paperclip-operatorpaperclip-operatorVerified publisher0.19.11 of 1See more

paperclip-operator paperclip-operator 0.19.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/paperclipinc/paperclip-operator:v0.19.10984b890eb38
golang.org/x/net@v0.55.0
0.56.0

Open the chart page →

352
Parpar0.1.01 of 1See more

Par par 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/jmcgrath207/par:v0.1.09977511cb142
golang.org/x/net@v0.10.0
0.56.0

Open the chart page →

890
parcaparca4.19.02 of 2See more

parca parca 4.19.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
golang.org/x/net@v0.17.0
0.56.0
ghcr.io/parca-dev/parca-agent:v0.28.06d6794f45f3e
golang.org/x/net@v0.19.0
0.56.0

Open the chart page →

3,384
parcaparca-chart0.1.01 of 1See more

parca parca-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
golang.org/x/net@v0.17.0
0.56.0

Open the chart page →

1,995
parcaparca-rr0.1.02 of 2See more

parca parca-rr 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.24.23776500fde82
golang.org/x/net@v0.43.0
0.56.0
ghcr.io/parca-dev/parca-agent:v0.42.0adc0eeb4dd05
golang.org/x/net@v0.43.0
0.56.0

Open the chart page →

2,405
parcial-1parcial-1-chart1.0.02 of 5See more

parcial-1 parcial-1-chart 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
golang.org/x/net@v0.43.0
0.56.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.1e63459ec5965
golang.org/x/net@v0.42.0
0.56.0

Open the chart page →

3,887
istio-operatorparticuleio1.7.01 of 1See more

istio-operator particuleio 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
gcr.io/istio-testing/operator:latest8d4576f7b98f
golang.org/x/net@v0.27.0
0.56.0

Open the chart page →

4,196
scaleway-webhookparticuleio0.0.11 of 1See more

scaleway-webhook particuleio 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.56.0

Open the chart page →

2,354
cloudflaredpascaliskeVerified publisher3.0.01 of 1See more

cloudflared pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
golang.org/x/net@v0.40.0
0.56.0

Open the chart page →

2,071
hammondpascaliskeVerified publisher2.0.01 of 2See more

hammond pascaliske 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1
0.56.0

Open the chart page →

1,807
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
golang.org/x/net@v0.46.0
0.56.0

Open the chart page →

4,878
vikunjapascaliskeVerified publisher5.1.01 of 1See more

vikunja pascaliske 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
vikunja/vikunja:0.24.6ed1f3ed467fe
golang.org/x/net@v0.27.0
0.56.0

Open the chart page →

1,343
minecraftpaul1365972-mc3.0.11 of 1See more

minecraft paul1365972-mc 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
itzg/minecraft-server:latest8672e335dbef
stdlib@go1.26.5
1.26.6

Open the chart page →

4,391
pax-prometheuspaxtecnologia0.7.14 of 8See more

pax-prometheus paxtecnologia 0.7.1

4 of the 8 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
quay.io/prometheus/node-exporter:v1.12.1-distroless8c9bac11973b
stdlib@go1.26.5
1.26.6
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.26.6
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
golang.org/x/net@v0.24.0
0.56.0

Open the chart page →

1,805
stk-fluent-bit-loki-s3paxtecnologia0.2.12 of 6See more

stk-fluent-bit-loki-s3 paxtecnologia 0.2.1

2 of the 6 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/loki:3.6.1144148ad243c0
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.56.0
1.26.6
prom/memcached-exporter:v0.15.4b6763ecb3c47
golang.org/x/net@v0.44.0
0.56.0

Open the chart page →

3,768
archive-analysispcp-helm-chartsVerified publisher1.0.11 of 1See more

archive-analysis pcp-helm-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/performancecopilot/archive-analysis:latest8de11e2363fc
golang.org/x/net@v0.19.0
0.56.0

Open the chart page →

1,344
everest-db-namespacepercona1.13.01 of 1See more

everest-db-namespace percona 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
percona/everest-helmtools:0.0.1904458d04a18
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

769
pmm-ha-dependenciespercona1.0.04 of 4See more

pmm-ha-dependencies percona 1.0.0

4 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.25.41d6f18dbd599
golang.org/x/net@v0.38.0
0.56.0
altinity/metrics-exporter:0.25.46ecf67edfb71
golang.org/x/net@v0.38.0
0.56.0
percona/percona-postgresql-operator:2.8.06cce2698d3f5
golang.org/x/net@v0.46.0
0.56.0
victoriametrics/operator:v0.65.0716b89a3ed79
golang.org/x/net@v0.46.0
0.56.0

Open the chart page →

2,485
ps-operatorpercona1.2.01 of 1See more

ps-operator percona 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
percona/percona-server-mysql-operator:1.2.028bfc38c1d4b
stdlib@go1.26.4
1.26.6

Open the chart page →

283
permission-managerpermission-manager1.0.0-seal1 of 1See more

permission-manager permission-manager 1.0.0-seal

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.56.0

Open the chart page →

2,267
perses-operatorpersesOfficialVerified publisher0.5.02 of 2See more

perses-operator perses 0.5.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
persesdev/perses-operator:v0.5.08f8d7b09caef
stdlib@go1.26.5
1.26.6
quay.io/brancz/kube-rbac-proxy:v0.22.1e8cad21b2f9a
stdlib@go1.26.5
1.26.6

Open the chart page →

247
pet-battle-infrapetbattle1.0.322 of 2See more

pet-battle-infra petbattle 1.0.32

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.26.6
quay.io/openshift/origin-cli:4.8bb5e052770e5
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0

Open the chart page →

15,479
pet-battle-nsffpetbattle0.0.22 of 4See more

pet-battle-nsff petbattle 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
minio/mc:latesta7fe349ef4bd
golang.org/x/net@v0.42.0
0.56.0
minio/minio:latest14cea493d9a3
golang.org/x/net@v0.39.0
0.56.0

Open the chart page →

3,887
pet-battle-tournamentpetbattle1.0.402 of 3See more

pet-battle-tournament petbattle 1.0.40

2 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.26.6
quay.io/openshift/origin-cli:4.8bb5e052770e5
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0

Open the chart page →

15,479
mongodbpetersandor14.1.81 of 1See more

mongodb petersandor 14.1.8

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
bitnami/mongodb:8.0.8b3bd5b6be9a0
golang.org/x/net@v0.36.0
0.56.0

Open the chart page →

4,519
container-agentphntom100.0.11 of 1See more

container-agent phntom 100.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
circleci/container-agent:34d8d0ae5efc3
golang.org/x/net@v0.8.0
0.56.0

Open the chart page →

1,975
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.56.0

Open the chart page →

4,650
goalertphntom0.0.291 of 1See more

goalert phntom 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
phntom/goalert:0.0.298ca4df55499b
golang.org/x/net@v0.19.0
0.56.0

Open the chart page →

1,050
kochiphntom1.1.41 of 1See more

kochi phntom 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
phntom/kochi:1.1.33b82358bd56e
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.56.0

Open the chart page →

2,965

Container images carrying it

4,391 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/benc-uk/kubeview:0.1.31f8e7cd7325a3
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
0.56.0
1
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
golang.org/x/net@v0.55.0
stdlib@go1.26.3
0.56.0
1.26.6
1
ghcr.io/bitmagnet-io/bitmagnet:v0.10b6373349a301
golang.org/x/net@v0.43.0
0.56.0
1
ghcr.io/bitmagnet-io/bitmagnet:v0.10.0cf2c16fac5b5
golang.org/x/net@v0.34.0
0.56.0
1
ghcr.io/bitwarden/admin:2026.9.05686674f2c35
stdlib@go1.26.5
1.26.6
1
ghcr.io/bitwarden/api:2026.9.0d5964b4c9563
stdlib@go1.26.5
1.26.6
1
ghcr.io/bitwarden/attachments:2026.9.0f019c2d14ca7
stdlib@go1.26.5
1.26.6
1
ghcr.io/bitwarden/events:2026.9.0ffb067562d07
stdlib@go1.26.5
1.26.6
1
ghcr.io/bitwarden/icons:2026.9.013d351a6cb08
stdlib@go1.26.5
1.26.6
1
ghcr.io/bitwarden/identity:2026.9.090453408f338
stdlib@go1.26.5
1.26.6
1
ghcr.io/bitwarden/notifications:2026.9.051f843ae35e3
stdlib@go1.26.5
1.26.6
1
ghcr.io/bitwarden/sm-operator:2.1.0846624161f32
golang.org/x/net@v0.53.0
stdlib@go1.26.5
0.56.0
1.26.6
1
ghcr.io/bitwarden/sso:2026.9.09a2e89605b82
stdlib@go1.26.5
1.26.6
1
ghcr.io/bitwarden/web:2026.9.08aa9f4258378
stdlib@go1.26.5
1.26.6
1
ghcr.io/blakeblackshear/frigate:0.14.122e3d0b486df
golang.org/x/net@v0.8.0
0.56.0
1
ghcr.io/blakeblackshear/frigate:0.13.07a5244e4c8dc
golang.org/x/net@v0.8.0
0.56.0
1
ghcr.io/blind-oracle/cortex-tenant:v2.0.09f8896ffc15b
golang.org/x/net@v0.38.0
0.56.0
1
ghcr.io/bnb-chain/bsc:1.6.2fd0e3ec7d960
golang.org/x/net@v0.38.0
0.56.0
1
ghcr.io/bodgit/nri-plugin-runtime:v0.0.3130c0b1b6fa3
stdlib@go1.26.4
1.26.6
1
ghcr.io/bojanzelic/cloudflare-zero-trust-operator:0.7.1f4b2dbc19a78
golang.org/x/net@v0.33.0
0.56.0
1
ghcr.io/borchero/switchboard:0.7.454a193b757da
golang.org/x/net@v0.51.0
stdlib@go1.26.1
0.56.0
1.26.6
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
golang.org/x/net@v0.7.0
0.56.0
1
ghcr.io/browsersec/kubebrowse:sha-09dfa1fb853e9e6372a
golang.org/x/net@v0.40.0
0.56.0
1
ghcr.io/browsersec/kubebrowse-frontend:chore-improve-backbd6bea5e487c
golang.org/x/net@v0.42.0
0.56.0
1
ghcr.io/buildbarn/bb-scheduler:20260908T142432Z-77f7642f627ab242890
golang.org/x/net@v0.55.0
0.56.0
1
ghcr.io/buildbarn/bb-storage:20260908T142448Z-db6204132ebc54b769b
golang.org/x/net@v0.55.0
0.56.0
1
ghcr.io/buoyantio/linkerd-dashboard-server:0.11.1dd6a29588242
stdlib@go1.26.5
1.26.6
1
ghcr.io/buoyantio/metrics-api:preview-25.4.32cef2a3f97da
golang.org/x/net@v0.39.0
0.56.0
1
ghcr.io/buoyantio/prometheus:v3.3.1e2b8aa62b648
golang.org/x/net@v0.35.0
0.56.0
1
ghcr.io/buoyantio/tap:preview-25.4.3e02a8bd9e2c3
golang.org/x/net@v0.39.0
0.56.0
1
ghcr.io/buoyantio/web:preview-25.4.33ee1b62aa111
golang.org/x/net@v0.39.0
0.56.0
1
ghcr.io/bytefork/payloadbox:0.0.73e0164e975b3
stdlib@go1.26.3
1.26.6
1
ghcr.io/caarlos0/domain_exporter:v1.18.0-arm64c852606428cf
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.56.0
1
ghcr.io/caas-team/gokubedownscaler:1.3.4cea3dd2f1312
golang.org/x/net@v0.49.0
0.56.0
1
ghcr.io/cableship/argocd-source-tracker:0.0.6ff7dd45aa774
golang.org/x/net@v0.39.0
0.56.0
1
ghcr.io/cableship/chart-sentinel:0.1.0a037f1042b28
golang.org/x/net@v0.39.0
0.56.0
1
ghcr.io/camilorivera/cert-manager-acm-sync:0.7.489a83796a550
golang.org/x/net@v0.49.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/camptocamp/prometheus-puppetdb-sd:0.14.0414c0c99fd06
golang.org/x/net@v0.34.0
0.56.0
1
ghcr.io/camptocamp/terraboard:v2.3.0df53e2c8998c
golang.org/x/net@v0.17.0
0.56.0
1
ghcr.io/caninehq/canine:latesta058034ca006
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/cedar2025/xboard:latest896e4926e0d7
golang.org/x/net@v0.55.0
0.56.0
1
ghcr.io/celestiaorg/celestia-app:v3.7.0-arabica23a9ec9b1879
golang.org/x/net@v0.34.0
0.56.0
1
ghcr.io/celestiaorg/celestia-app:v6.1.0-rc0a604aefa3fae
golang.org/x/net@v0.44.0
0.56.0
1
ghcr.io/celestiaorg/celestia-node:v0.16.041177982c584
golang.org/x/net@v0.27.0
0.56.0
1
ghcr.io/cerbos/cerbos:0.55.04b9d3b58c4f1
stdlib@go1.26.5
1.26.6
1
ghcr.io/cerbos/cerbos:0.51.08d35a64e4a99
golang.org/x/net@v0.49.0
0.56.0
1
ghcr.io/cfgate/cfgate:0.2.0-alpha.5c7025330acec
golang.org/x/net@v0.53.0
stdlib@go1.26.3
0.56.0
1.26.6
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
golang.org/x/net@v0.52.0
0.56.0
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
golang.org/x/net@v0.52.0
0.56.0
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
golang.org/x/net@v0.17.0
0.56.0
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.