StackRadar

CVE-2026-46600

Unscored

Advisory

Published 14 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.005
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,607
of 17,821 indexed, latest versions
Container images
4,361
deployed by those charts
Fix available
2 of 2
affected packages

Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessage

Carried by container images the latest versions of 3,607 of 17,821 indexed charts deploy, on 4,361 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+221 more0.56.03,971
stdlibgolanggo1.26.0, go1.26.1, go1.26.2, go1.26.2-X:boringcrypto+7 more1.26.6849
OSV records
GO-2026-5942
Also known as
BIT-golang-2026-46600

Charts affected

3,607 by stars
ChartLatestAffected imagesRadar Score
pacmanpacman-mhVerified publisher0.1.281 of 2See more

pacman pacman-mh 0.1.28

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
library/mongo:7.0.28-jammy88785f6f665a
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

3,627
paperclip-operatorpaperclip-operatorVerified publisher0.19.11 of 1See more

paperclip-operator paperclip-operator 0.19.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/paperclipinc/paperclip-operator:v0.19.10984b890eb38
golang.org/x/net@v0.55.0
0.56.0

Open the chart page →

352
Parpar0.1.01 of 1See more

Par par 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/jmcgrath207/par:v0.1.09977511cb142
golang.org/x/net@v0.10.0
0.56.0

Open the chart page →

890
parcaparca4.19.02 of 2See more

parca parca 4.19.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
golang.org/x/net@v0.17.0
0.56.0
ghcr.io/parca-dev/parca-agent:v0.28.06d6794f45f3e
golang.org/x/net@v0.19.0
0.56.0

Open the chart page →

3,384
parcaparca-chart0.1.01 of 1See more

parca parca-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
golang.org/x/net@v0.17.0
0.56.0

Open the chart page →

1,995
parcaparca-rr0.1.02 of 2See more

parca parca-rr 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.24.23776500fde82
golang.org/x/net@v0.43.0
0.56.0
ghcr.io/parca-dev/parca-agent:v0.42.0adc0eeb4dd05
golang.org/x/net@v0.43.0
0.56.0

Open the chart page →

2,405
parcial-1parcial-1-chart1.0.02 of 5See more

parcial-1 parcial-1-chart 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
golang.org/x/net@v0.43.0
0.56.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.1e63459ec5965
golang.org/x/net@v0.42.0
0.56.0

Open the chart page →

3,887
istio-operatorparticuleio1.7.01 of 1See more

istio-operator particuleio 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
gcr.io/istio-testing/operator:latest8d4576f7b98f
golang.org/x/net@v0.27.0
0.56.0

Open the chart page →

4,196
scaleway-webhookparticuleio0.0.11 of 1See more

scaleway-webhook particuleio 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
scaleway/cert-manager-webhook-scaleway:v0.0.1dcc14608d000
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.56.0

Open the chart page →

2,354
cloudflaredpascaliskeVerified publisher3.0.01 of 1See more

cloudflared pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
golang.org/x/net@v0.40.0
0.56.0

Open the chart page →

2,071
hammondpascaliskeVerified publisher2.0.01 of 2See more

hammond pascaliske 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1
0.56.0

Open the chart page →

1,807
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
golang.org/x/net@v0.46.0
0.56.0

Open the chart page →

4,878
vikunjapascaliskeVerified publisher5.1.01 of 1See more

vikunja pascaliske 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
vikunja/vikunja:0.24.6ed1f3ed467fe
golang.org/x/net@v0.27.0
0.56.0

Open the chart page →

1,343
minecraftpaul1365972-mc3.0.11 of 1See more

minecraft paul1365972-mc 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
itzg/minecraft-server:latest8672e335dbef
stdlib@go1.26.5
1.26.6

Open the chart page →

4,391
pax-prometheuspaxtecnologia0.7.14 of 8See more

pax-prometheus paxtecnologia 0.7.1

4 of the 8 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
quay.io/prometheus/node-exporter:v1.12.1-distroless8c9bac11973b
stdlib@go1.26.5
1.26.6
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.26.6
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
golang.org/x/net@v0.24.0
0.56.0

Open the chart page →

1,805
stk-fluent-bit-loki-s3paxtecnologia0.2.12 of 6See more

stk-fluent-bit-loki-s3 paxtecnologia 0.2.1

2 of the 6 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/loki:3.6.1144148ad243c0
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.56.0
1.26.6
prom/memcached-exporter:v0.15.4b6763ecb3c47
golang.org/x/net@v0.44.0
0.56.0

Open the chart page →

3,768
everest-db-namespacepercona1.13.01 of 1See more

everest-db-namespace percona 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
percona/everest-helmtools:0.0.1904458d04a18
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

769
pmm-ha-dependenciespercona1.0.04 of 4See more

pmm-ha-dependencies percona 1.0.0

4 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.25.41d6f18dbd599
golang.org/x/net@v0.38.0
0.56.0
altinity/metrics-exporter:0.25.46ecf67edfb71
golang.org/x/net@v0.38.0
0.56.0
percona/percona-postgresql-operator:2.8.06cce2698d3f5
golang.org/x/net@v0.46.0
0.56.0
victoriametrics/operator:v0.65.0716b89a3ed79
golang.org/x/net@v0.46.0
0.56.0

Open the chart page →

2,485
ps-operatorpercona1.2.01 of 1See more

ps-operator percona 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
percona/percona-server-mysql-operator:1.2.028bfc38c1d4b
stdlib@go1.26.4
1.26.6

Open the chart page →

283
permission-managerpermission-manager1.0.0-seal1 of 1See more

permission-manager permission-manager 1.0.0-seal

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.56.0

Open the chart page →

2,267
perses-operatorpersesOfficialVerified publisher0.5.02 of 2See more

perses-operator perses 0.5.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
persesdev/perses-operator:v0.5.08f8d7b09caef
stdlib@go1.26.5
1.26.6
quay.io/brancz/kube-rbac-proxy:v0.22.1e8cad21b2f9a
stdlib@go1.26.5
1.26.6

Open the chart page →

247
pet-battle-infrapetbattle1.0.322 of 2See more

pet-battle-infra petbattle 1.0.32

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.26.6
quay.io/openshift/origin-cli:4.8bb5e052770e5
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0

Open the chart page →

15,479
pet-battle-nsffpetbattle0.0.22 of 4See more

pet-battle-nsff petbattle 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
minio/mc:latesta7fe349ef4bd
golang.org/x/net@v0.42.0
0.56.0
minio/minio:latest14cea493d9a3
golang.org/x/net@v0.39.0
0.56.0

Open the chart page →

3,887
pet-battle-tournamentpetbattle1.0.402 of 3See more

pet-battle-tournament petbattle 1.0.40

2 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.26.6
quay.io/openshift/origin-cli:4.8bb5e052770e5
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0

Open the chart page →

15,479
mongodbpetersandor14.1.81 of 1See more

mongodb petersandor 14.1.8

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
bitnami/mongodb:8.0.8b3bd5b6be9a0
golang.org/x/net@v0.36.0
0.56.0

Open the chart page →

4,519
container-agentphntom100.0.11 of 1See more

container-agent phntom 100.0.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
circleci/container-agent:34d8d0ae5efc3
golang.org/x/net@v0.8.0
0.56.0

Open the chart page →

1,975
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.56.0

Open the chart page →

4,650
goalertphntom0.0.291 of 1See more

goalert phntom 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
phntom/goalert:0.0.298ca4df55499b
golang.org/x/net@v0.19.0
0.56.0

Open the chart page →

1,050
kochiphntom1.1.41 of 1See more

kochi phntom 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
phntom/kochi:1.1.33b82358bd56e
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.56.0

Open the chart page →

2,965
loki-stackphntom2.10.22 of 2See more

loki-stack phntom 2.10.2

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/loki:2.4.2b3af8ead67d7
golang.org/x/net@v0.0.0-20211101193420-4a448f8816b3
0.56.0
grafana/promtail:2.4.2626900031c4e
golang.org/x/net@v0.0.0-20211101193420-4a448f8816b3
0.56.0

Open the chart page →

5,726
mindavphntom0.1.61 of 2See more

mindav phntom 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
phntom/mindav:0.1.7-kix35695f546abbb
golang.org/x/net@v0.0.0-20201224014010-6772e930b67b
0.56.0

Open the chart page →

4,161
npre-essentialsphntom0.1.6011 of 22See more

npre-essentials phntom 0.1.60

11 of the 22 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/loki:2.6.11ee60f980950
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.56.0
grafana/promtail:2.7.0c16c710f7333
golang.org/x/net@v0.0.0-20220920203100-d0c6ba3f52d9
0.56.0
phntom/chartmuseum:v0.15.29242b4df9e65
golang.org/x/net@v0.0.0-20220906165146-f3363e06e74c
0.56.0
phntom/kochi:1.1.33b82358bd56e
golang.org/x/net@v0.0.0-20201110031124-69a78807bb2b
0.56.0
phntom/oauth2-proxy:v7.3.48ea656a2a895
golang.org/x/net@v0.0.0-20221012135044-0b7e1fb9d458
0.56.0
quay.io/groundcover/grafana:9.3.18c65b333a3d3
golang.org/x/net@v0.1.0
0.56.0
quay.io/prometheus-operator/prometheus-operator:v0.61.1cd7d1a82ef00
golang.org/x/net@v0.2.0
0.56.0
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
golang.org/x/net@v0.2.0
0.56.0
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
golang.org/x/net@v0.1.0
0.56.0
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
0.56.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.7.0a15ca437f230
golang.org/x/net@v0.0.0-20221014081412-f15817d10f9b
0.56.0

Open the chart page →

26,907
picoclawpicoclawVerified publisher0.1.261 of 1See more

picoclaw picoclaw 0.1.26

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/mattn/picoclaw:latest517556c8b144
golang.org/x/net@v0.50.0
stdlib@go1.26.0
0.56.0
1.26.6

Open the chart page →

1,551
piepieVerified publisher0.11.11 of 1See more

pie pie 0.11.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/topolvm/pie:0.18.0aa467443e407
golang.org/x/net@v0.49.0
0.56.0

Open the chart page →

2,185
blockmeta-servicepinaxVerified publisher0.0.31 of 1See more

blockmeta-service pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/blockmeta-service:2f971e04f0a86e490b6
golang.org/x/net@v0.19.0
0.56.0

Open the chart page →

1,698
firehose-corepinaxVerified publisher0.1.11 of 2See more

firehose-core pinax 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-core:v1.10.222f84e3615c8
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
0.56.0

Open the chart page →

3,562
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
golang.org/x/net@v0.39.0
0.56.0

Open the chart page →

7,237
substreams-sink-kvpinaxVerified publisher0.0.41 of 1See more

substreams-sink-kv pinax 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
golang.org/x/net@v0.23.0
0.56.0

Open the chart page →

58,425
substreams-sink-nooppinaxVerified publisher0.0.31 of 1See more

substreams-sink-noop pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
golang.org/x/net@v0.23.0
0.56.0

Open the chart page →

58,366
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
golang.org/x/net@v0.0.0-20220812174116-3211cb980234
0.56.0

Open the chart page →

5,001
pixie-operator-chartpixie0.1.71 of 3See more

pixie-operator-chart pixie 0.1.7

1 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned1b6002156f56
golang.org/x/net@v0.20.0
0.56.0

Open the chart page →

1,915
pixie-operator-helm2-chartpixie0.1.21 of 2See more

pixie-operator-helm2-chart pixie 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinnedf9ea8cef95ac
golang.org/x/net@v0.7.0
0.56.0

Open the chart page →

1,769
planectlplanectlVerified publisher0.7.04 of 10See more

planectl planectl 0.7.0

4 of the 10 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
alpine/k8s:1.30.2cd560fce90f7
golang.org/x/net@v0.9.0
0.56.0
gitea/act_runner:0.2.11c57233403eff
golang.org/x/net@v0.27.0
0.56.0
pulumi/pulumi-kubernetes-operator:v2.5.17dace4491358
golang.org/x/net@v0.49.0
0.56.0
quay.io/argoproj/argocd:v2.14.115fc69e31c755
golang.org/x/net@v0.34.0
0.56.0

Open the chart page →

26,565
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.56.0

Open the chart page →

11,165
pixiecorepnnl-miscscripts0.0.161 of 1See more

pixiecore pnnl-miscscripts 0.0.16

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
pnnlmiscscripts/pixiecore:1.0.1-1c6f17741a0d7
golang.org/x/net@v0.7.0
0.56.0

Open the chart page →

943
tenant-namespacepnnl-miscscripts0.6.231 of 1See more

tenant-namespace pnnl-miscscripts 0.6.23

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
golang.org/x/net@v0.0.0-20220225172249-27dd8689420f
0.56.0

Open the chart page →

2,579
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
golang.org/x/net@v0.48.0
0.56.0

Open the chart page →

13,114
podnat-controllerpodnat-controller0.5.21 of 1See more

podnat-controller podnat-controller 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
gutmensch/podnat-controller:0.5.2566979793fc4
golang.org/x/net@v0.4.0
0.56.0

Open the chart page →

984
agentpolyaxon2.17.01 of 4See more

agent polyaxon 2.17.0

1 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
polyaxon/polyaxon-operator:2.17.07664c1cebb9d
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

9,046
polyaxonpolyaxon2.17.01 of 5See more

polyaxon polyaxon 2.17.0

1 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
polyaxon/polyaxon-operator:2.17.07664c1cebb9d
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

12,838

Container images carrying it

4,361 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/github/github-mcp-server:latest508a0857ec76
golang.org/x/net@v0.55.0
0.56.0
1
ghcr.io/github/github-mcp-server:v1.9.0881b53d6f75f
golang.org/x/net@v0.55.0
0.56.0
1
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
golang.org/x/net@v0.43.0
0.56.0
1
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
golang.org/x/net@v0.44.0
0.56.0
1
ghcr.io/glassflow/glassflow-etl-be:v3.2.020f066d0f631
golang.org/x/net@v0.52.0
0.56.0
1
ghcr.io/glassflow/glassflow-etl-migration:v3.2.07db1a1bf3dae
golang.org/x/net@v0.47.0
0.56.0
1
ghcr.io/glauth/glauth:v2.5.209c782ca5984
golang.org/x/net@v0.17.0
0.56.0
1
ghcr.io/gnana997/periscope:1.1.621b284fb00f2
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
golang.org/x/net@v0.47.0
0.56.0
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
golang.org/x/net@v0.52.0
stdlib@go1.26.2
0.56.0
1.26.6
1
ghcr.io/gochain/rpc-proxy/rpc-proxy:latestca01f5ab95f7
golang.org/x/net@v0.38.0
0.56.0
1
ghcr.io/gomenhashai/gomenhashai:v1.3.36f031172a5ec
golang.org/x/net@v0.49.0
stdlib@go1.26.0
0.56.0
1.26.6
1
ghcr.io/googlecloudplatform/k8s-aibom05e86c39c535
golang.org/x/net@v0.55.0
0.56.0
1
ghcr.io/gotify/server:2.6.104f4c4bb7cdd
golang.org/x/net@v0.25.0
0.56.0
1
ghcr.io/gotway/gotway:v0.0.137ed73c1979ee
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.56.0
1
ghcr.io/grafana/alloy-operator:1.3.02088dcb22aaa
golang.org/x/net@v0.41.0
0.56.0
1
ghcr.io/grafana/alloy-operator:1.7.02ce23f948e02
golang.org/x/net@v0.46.0
0.56.0
1
ghcr.io/grafana/alloy-operator:1.12.14ee4b71cf16a
stdlib@go1.26.4
1.26.6
1
ghcr.io/grafana/alloy-operator:1.8.1ae85d68749c7
golang.org/x/net@v0.49.0
0.56.0
1
ghcr.io/grafana/grafana-operator:v5.18.00af2faec9d6f
golang.org/x/net@v0.38.0
0.56.0
1
ghcr.io/grafana/grafana-operator:v5.22.2d45fc24e8f43
golang.org/x/net@v0.51.0
stdlib@go1.26.1
0.56.0
1.26.6
1
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
golang.org/x/net@v0.30.0
0.56.0
1
ghcr.io/grafana/k6-operator:controller-v1.6.0ba7f0fc1e22e
stdlib@go1.26.5
1.26.6
1
ghcr.io/grafana/k8s-injection-controller:0.2.0c5bad40655a3
golang.org/x/net@v0.55.0
stdlib@go1.26.5
0.56.0
1.26.6
1
ghcr.io/grafana/tempo-operator/tempo-operator:v0.4.02627be646391
golang.org/x/net@v0.12.0
0.56.0
1
ghcr.io/grycap/oscar:latest0c58ff972451
golang.org/x/net@v0.51.0
0.56.0
1
ghcr.io/gurucomputing/headscale-ui:2026.03.17015f5ba04bcb
golang.org/x/net@v0.42.0
0.56.0
1
ghcr.io/guydavis/machinaris:test50a71a30f18e
stdlib@go1.26.5
1.26.6
1
ghcr.io/haedalwang/kubescout:0.1.107d51f838f0d
golang.org/x/net@v0.48.0
0.56.0
1
ghcr.io/happymooguild/wardn-backend:0.1.023ee1b8cfc3c
stdlib@go1.26.5
1.26.6
1
ghcr.io/haydercyber/secrets-bridge:0.2.04709f1bb3039
golang.org/x/net@v0.47.0
0.56.0
1
ghcr.io/headlamp-k8s/headlamp:v0.43.05d03caa26df7
golang.org/x/net@v0.55.0
stdlib@go1.26.3
0.56.0
1.26.6
1
ghcr.io/heimops/mimir-operator:latest4e1a3ef1fe82
golang.org/x/net@v0.17.0
0.56.0
1
ghcr.io/helm/chartmuseum:v0.16.071d1f1c0179e
golang.org/x/net@v0.10.0
0.56.0
1
ghcr.io/helm/chartmuseum:v0.14.0878ef6a31fa0
golang.org/x/net@v0.0.0-20220121210141-e204ce36a2ba
0.56.0
1
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
golang.org/x/net@v0.0.0-20220531201128-c960675eff93
0.56.0
1
ghcr.io/helm/chartmuseum:v0.16.3c81f105c3682
golang.org/x/net@v0.38.0
0.56.0
1
ghcr.io/helmfile/helmfile:v1.8.01808ffb76f37
golang.org/x/net@v0.39.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/henrywhitaker3/argo-zombies:v0.4.4316c397906c9
golang.org/x/net@v0.47.0
stdlib@go1.26.1
0.56.0
1.26.6
1
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
golang.org/x/net@v0.49.0
0.56.0
1
ghcr.io/home-assistant/home-assistant:2026.8.256690a89c79a
golang.org/x/net@v0.49.0
0.56.0
1
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
golang.org/x/net@v0.46.0
0.56.0
1
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
golang.org/x/net@v0.49.0
0.56.0
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
golang.org/x/net@v0.49.0
0.56.0
1
ghcr.io/honeycombio/kspan/kspan:0.2c966a4f8a4b7
golang.org/x/net@v0.0.0-20201021035429-f5854403a974
0.56.0
1
ghcr.io/hsn723/cert-estuary:0.2.00c4b6132b0ad
golang.org/x/net@v0.53.0
stdlib@go1.26.2
0.56.0
1.26.6
1
ghcr.io/hsn723/dkim-manager:1.4.00312232b31a2
golang.org/x/net@v0.50.0
stdlib@go1.26.0
0.56.0
1.26.6
1
ghcr.io/hsn723/postfix_exporter:0.20.0b7da7c554018
golang.org/x/net@v0.53.0
stdlib@go1.26.2
0.56.0
1.26.6
1
ghcr.io/huseyinbabal/kubetag:lateste161eddc59a0
golang.org/x/net@v0.47.0
0.56.0
1
ghcr.io/hyperspike/valkey-operator:v0.0.617d8c669f11a4
golang.org/x/net@v0.44.0
0.56.0
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.