StackRadar

CVE-2026-46600

Unscored

Advisory

Published 14 Jul 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.005
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,607
of 17,821 indexed, latest versions
Container images
4,361
deployed by those charts
Fix available
2 of 2
affected packages

Parsing an invalid SVCB or HTTPS RR can panic in golang.org/x/net/dns/dnsmessage

Carried by container images the latest versions of 3,607 of 17,821 indexed charts deploy, on 4,361 images.

Affected packageAffected versionsFixed inImages
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+221 more0.56.03,971
stdlibgolanggo1.26.0, go1.26.1, go1.26.2, go1.26.2-X:boringcrypto+7 more1.26.6849
OSV records
GO-2026-5942
Also known as
BIT-golang-2026-46600

Charts affected

3,607 by stars
ChartLatestAffected imagesRadar Score
listmonklbenicio-communityVerified publisher0.1.01 of 1See more

listmonk lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
listmonk/listmonk:latestf535d59e1499
golang.org/x/net@v0.47.0
stdlib@go1.26.1
0.56.0
1.26.6

Open the chart page →

720
pinglbenicio-communityVerified publisher0.1.11 of 1See more

ping lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

600
speedtestlbenicio-communityVerified publisher0.1.01 of 1See more

speedtest lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/d0ugal/internet-perf-exporter:v0.2.91f5c9a96fe52a
stdlib@go1.26.4
1.26.6

Open the chart page →

307
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
golang.org/x/net@v0.40.0
0.56.0

Open the chart page →

33,925
whoamilbenicio-communityVerified publisher0.1.21 of 1See more

whoami lbenicio-community 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
traefik/whoami:latestc4717a8d1f01
stdlib@go1.26.5
1.26.6

Open the chart page →

93
metallblectures-k8sinfra0.10.22 of 2See more

metallb lectures-k8sinfra 0.10.2

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.10.221164241c045
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.56.0
quay.io/metallb/speaker:v0.10.258cb99053bb3
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
0.56.0

Open the chart page →

5,408
prometheuslectures-k8sinfra15.8.54 of 6See more

prometheus lectures-k8sinfra 15.8.5

4 of the 6 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
0.56.0
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/net@v0.0.0-20210726213435-c6fcb2dbf985
0.56.0
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
golang.org/x/net@v0.0.0-20210525063256-abc453219eb5
0.56.0
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
golang.org/x/net@v0.0.0-20220624214902-1bab6f366d9e
0.56.0

Open the chart page →

9,115
grafanaleechistest5.3.01 of 1See more

grafana leechistest 5.3.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/net@v0.0.0-20200202094626-16171245cfb2
0.56.0

Open the chart page →

3,199
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

4,496
prometheusleechistest11.6.03 of 6See more

prometheus leechistest 11.6.0

3 of the 6 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
prom/alertmanager:v0.20.07e4e9f7a0954
golang.org/x/net@v0.0.0-20190724013045-ca1201d0de80
0.56.0
prom/prometheus:v2.19.0bfad037f95e5
golang.org/x/net@v0.0.0-20200602114024-627f9648deb9
0.56.0
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/net@v0.0.0-20200513185701-a91f0712d120
0.56.0

Open the chart page →

8,495
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
golang.org/x/net@v0.0.0-20220722155237-a158d28d115b
0.56.0

Open the chart page →

4,282
adguard-homelib42Verified publisher2.0.01 of 1See more

adguard-home lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.65d765078d2140
golang.org/x/net@v0.43.0
0.56.0

Open the chart page →

1,206
kltlifecycle-toolkitOfficialVerified publisher0.2.64 of 4See more

klt lifecycle-toolkit 0.2.6

4 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/keptn/certificate-operator:v1.1.08fdd311a6d33
golang.org/x/net@v0.14.0
0.56.0
ghcr.io/keptn/lifecycle-operator:v0.8.2487bfc37c4b4
golang.org/x/net@v0.14.0
0.56.0
ghcr.io/keptn/metrics-operator:v0.8.2acf22310e9dd
golang.org/x/net@v0.14.0
0.56.0
ghcr.io/keptn/scheduler:v0.8.20f7d277bb2b2
golang.org/x/net@v0.14.0
0.56.0

Open the chart page →

4,696
kube-iptables-tailerlifen0.2.31 of 1See more

kube-iptables-tailer lifen 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb
0.56.0

Open the chart page →

4,481
op-scim-bridgelifen1.0.31 of 2See more

op-scim-bridge lifen 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
1password/scim:v2.3.129d0c6cb67eb
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.56.0

Open the chart page →

2,788
op-scim-bridgelifen-chartsVerified publisher1.0.31 of 2See more

op-scim-bridge lifen-charts 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
1password/scim:v2.3.129d0c6cb67eb
golang.org/x/net@v0.0.0-20220127200216-cd36cc0744dd
0.56.0

Open the chart page →

2,788
lightsteplightstep-microsat2.0.211 of 1See more

lightstep lightstep-microsat 2.0.21

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
lightstep/microsatellite:2024-01-22_17-52-59Zc800e05e1eff
golang.org/x/net@v0.20.0
0.56.0

Open the chart page →

1,135
linkerd-preview-vizlinkerd-buoyantVerified publisher25.4.34 of 5See more

linkerd-preview-viz linkerd-buoyant 25.4.3

4 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/buoyantio/metrics-api:preview-25.4.32cef2a3f97da
golang.org/x/net@v0.39.0
0.56.0
ghcr.io/buoyantio/prometheus:v2.55.12659f4c2ebb7
golang.org/x/net@v0.28.0
0.56.0
ghcr.io/buoyantio/tap:preview-25.4.3e02a8bd9e2c3
golang.org/x/net@v0.39.0
0.56.0
ghcr.io/buoyantio/web:preview-25.4.33ee1b62aa111
golang.org/x/net@v0.39.0
0.56.0

Open the chart page →

3,464
linkerd-dashboardlinkerd-dashboardOfficial0.11.12 of 2See more

linkerd-dashboard linkerd-dashboard 0.11.1

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/buoyantio/linkerd-dashboard-server:0.11.1dd6a29588242
stdlib@go1.26.5
1.26.6
ghcr.io/buoyantio/prometheus:v3.3.1e2b8aa62b648
golang.org/x/net@v0.35.0
0.56.0

Open the chart page →

1,060
linode-blockstorage-csi-driverlinode-blockstorage-csi-driverOfficialVerified publisher1.1.45 of 5See more

linode-blockstorage-csi-driver linode-blockstorage-csi-driver 1.1.4

5 of the 5 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
linode/linode-blockstorage-csi-driver:v1.1.409f3282bf53d
golang.org/x/net@v0.55.0
stdlib@go1.26.5
0.56.0
1.26.6
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
golang.org/x/net@v0.47.0
0.56.0
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
golang.org/x/net@v0.49.0
0.56.0
registry.k8s.io/sig-storage/csi-provisioner:v6.2.06be9f63ca4ca
golang.org/x/net@v0.51.0
0.56.0
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
golang.org/x/net@v0.48.0
0.56.0

Open the chart page →

2,999
ccm-linodelinode-cloud-controller-managerOfficialVerified publisher0.9.81 of 1See more

ccm-linode linode-cloud-controller-manager 0.9.8

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
linode/linode-cloud-controller-manager:v0.9.8cd8c17512206
stdlib@go1.26.4
1.26.6

Open the chart page →

167
liqo-upgrade-operatorliqo-upgrade-operatorVerified publisher0.1.01 of 1See more

liqo-upgrade-operator liqo-upgrade-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
kazem26/liqo-upgrade-operator:v0.1268b7c6a59dd
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

382
listmonklistmonk-chartVerified publisher2.0.11 of 2See more

listmonk listmonk-chart 2.0.1

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
listmonk/listmonk:v6.0.0bf3903d54a46
golang.org/x/net@v0.47.0
0.56.0

Open the chart page →

3,143
pocketbase-halitesql0.0.31 of 1See more

pocketbase-ha litesql 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/litesql/pocketbase-ha:latestc5b28608958b
stdlib@go1.26.5
1.26.6

Open the chart page →

1,170
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
golang.org/x/net@v0.18.0
0.56.0

Open the chart page →

10,844
livekit-recorderlivekit-server0.3.131 of 1See more

livekit-recorder livekit-server 0.3.13

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
livekit/livekit-recorder:v0.3.13ecf1409c75e0
golang.org/x/net@v0.0.0-20211004195052-b30845b58a23
0.56.0

Open the chart page →

2,136
livekit-serverlivekit-server1.9.01 of 1See more

livekit-server livekit-server 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
livekit/livekit-server:v1.9.03602a85840d5
golang.org/x/net@v0.40.0
0.56.0

Open the chart page →

1,562
llmarinerllmariner1.53.113 of 21See more

llmariner llmariner 1.53.1

13 of the 21 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/api-usage-server:1.16.08f9c32b866b0
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/cluster-manager-server:1.8.0364b3ff0fcb7
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/cluster-monitor-server:0.10.22d28f9e3eab4
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/file-manager-server:1.11.0301216788e93
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/inference-manager-engine:1.46.0c46f109c3d0b
golang.org/x/net@v0.48.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/inference-manager-server:1.45.090b890f800ab
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/job-manager-dispatcher:1.27.0582508903cb0
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/job-manager-server:1.27.0fe9de719f91e
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/model-manager-server:1.27.0c057dcdd9ef3
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/rbac-server:1.19.1df1adeb86679
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/session-manager-server:1.9.0f24ecd37fbaa
golang.org/x/net@v0.38.0
0.56.0
public.ecr.aws/cloudnatix/llmariner/user-manager-server:1.27.1628a14449241
golang.org/x/net@v0.38.0
0.56.0

Open the chart page →

12,185
llm-dllm-dVerified publisher1.0.231 of 2See more

llm-d llm-d 1.0.23

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
golang.org/x/net@v0.40.0
0.56.0

Open the chart page →

2,564
home-assistantlmatfyVerified publisher0.1.381 of 1See more

home-assistant lmatfy 0.1.38

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2026.75a531753cea9
golang.org/x/net@v0.49.0
0.56.0

Open the chart page →

2,488
mcp-notifierloafoe0.2.01 of 1See more

mcp-notifier loafoe 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/loafoe/mcp-notifier:v0.2.0ea958b832415
stdlib@go1.26.4
1.26.6

Open the chart page →

72
mt-mcp-grafanaloafoe0.10.02 of 2See more

mt-mcp-grafana loafoe 0.10.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/mcp-grafana:0.14.042f541f22063
golang.org/x/net@v0.53.0
stdlib@go1.26.3
0.56.0
1.26.6
ghcr.io/loafoe/mt-mcp-grafana:v0.1.12332d9b47475
golang.org/x/net@v0.55.0
stdlib@go1.26.2
0.56.0
1.26.6

Open the chart page →

1,988
mt-mcp-proxyloafoe0.3.02 of 2See more

mt-mcp-proxy loafoe 0.3.0

2 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/github/github-mcp-server:latest508a0857ec76
golang.org/x/net@v0.55.0
0.56.0
ghcr.io/loafoe/mt-mcp-proxy:v0.1.0221835f9340f
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6

Open the chart page →

505
otlp-gatewayloafoe0.0.21 of 2See more

otlp-gateway loafoe 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
golang.org/x/net@v0.27.0
0.56.0

Open the chart page →

2,180
patch-operatorloafoe0.11.31 of 2See more

patch-operator loafoe 0.11.3

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
golang.org/x/net@v0.0.0-20200707034311-ab3426394381
0.56.0

Open the chart page →

4,912
picoclawloafoe0.1.11 of 2See more

picoclaw loafoe 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/loafoe/picoclaw:v0.0.1942e1b6862913
golang.org/x/net@v0.53.0
stdlib@go1.26.2
0.56.0
1.26.6

Open the chart page →

479
solgateloafoe0.0.121 of 1See more

solgate loafoe 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/loafoe/solgate:v0.0.12b3256cbc7b68
golang.org/x/net@v0.14.0
0.56.0

Open the chart page →

2,126
tempo-distributedloafoe1.20.11 of 2See more

tempo-distributed loafoe 1.20.1

1 of the 2 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
grafana/tempo:2.6.0f55a8a1937ff
golang.org/x/net@v0.27.0
0.56.0

Open the chart page →

2,038
local-path-exporterlocal-path-exporterVerified publisher0.2.31 of 1See more

local-path-exporter local-path-exporter 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/tmusial99/local-path-exporter:1.1.082476692c680
stdlib@go1.26.4
1.26.6

Open the chart page →

68
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-auth-go:latest6597b26959d2
golang.org/x/net@v0.10.0
stdlib@go1.26.1
0.56.0
1.26.6

Open the chart page →

5,915
ocatiecataloguslocatiecatalogus1.0.01 of 3See more

ocatiecatalogus locatiecatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/ocatiecatalogus-php:latestc22764cbfa97
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.56.0

Open the chart page →

7,521
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
sky5367/locust-plugins-grafana:latestd51bf68d4b26
golang.org/x/net@v0.22.0
0.56.0

Open the chart page →

7,581
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
golang.org/x/net@v0.40.0
0.56.0

Open the chart page →

33,925
central-hostpath-mapperloftVerified publisher0.2.91 of 1See more

central-hostpath-mapper loft 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/central-hostpath-mapper:0.2.9fa6dba122171
golang.org/x/net@v0.26.0
0.56.0

Open the chart page →

931
devpod-proloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

devpod-pro loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
golang.org/x/net@v0.21.0
0.56.0

Open the chart page →

3,242
devspace-cloudloftVerified publisher0.3.31 of 8See more

devspace-cloud loft 0.3.3

1 of the 8 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
devspacecloud/manager:0.3.349c397413f7b
golang.org/x/net@v0.0.0-20191004110552-13f9640d40b9
0.56.0

Open the chart page →

9,893
kioskloftVerified publisher0.2.111 of 1See more

kiosk loft 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
kiosksh/kiosk:0.2.11501725ba2025
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
0.56.0

Open the chart page →

3,096
license-serverloftVerified publisher0.6.01 of 1See more

license-server loft 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/license-server:0.6.069ce001bb4b0
golang.org/x/net@v0.53.0
0.56.0

Open the chart page →

804
loft-agentloftVerified publisher3.2.41 of 1See more

loft-agent loft 3.2.4

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/agent:3.2.45c109914ff73
golang.org/x/net@v0.6.0
0.56.0

Open the chart page →

2,460
loft-direct-cluster-endpointloftVerified publisher1.14.01 of 1See more

loft-direct-cluster-endpoint loft 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-46600.

Container imageDigestPackageFixed in
loftsh/directclusterendpoint:1.14.0310cc7d690f5
golang.org/x/net@v0.0.0-20210428140749-89ef3d95e781
0.56.0

Open the chart page →

3,120

Container images carrying it

4,361 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
golang.org/x/net@v0.21.0
0.56.0
1
ghcr.io/loft-sh/kubernetes:v1.35.090097a08b87c
golang.org/x/net@v0.42.0
0.56.0
1
ghcr.io/loft-sh/license-server:0.6.069ce001bb4b0
golang.org/x/net@v0.53.0
0.56.0
1
ghcr.io/loft-sh/loft:0.0.0-ci.14b69bcdaa8492
golang.org/x/net@v0.14.0
0.56.0
1
ghcr.io/loft-sh/vcluster:0.16.484f70425f4dd
golang.org/x/net@v0.13.0
0.56.0
1
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
golang.org/x/net@v0.21.0
0.56.0
1
ghcr.io/loft-sh/vcluster-hpm:0.2.7f65f6810ea23
golang.org/x/net@v0.40.0
0.56.0
1
ghcr.io/loft-sh/vcluster-platform:4.12.19bc88940affc
golang.org/x/net@v0.52.0
stdlib@go1.26.5
0.56.0
1.26.6
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
golang.org/x/net@v0.46.0
0.56.0
1
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
golang.org/x/net@v0.38.0
0.56.0
1
ghcr.io/lrstanley/vault-unseal:1.0.1dd873930b6df
stdlib@go1.26.5
1.26.6
1
ghcr.io/luisico/cert-manager-webhook-infoblox-wapi:1.5ded797477896
golang.org/x/net@v0.0.0-20210224082022-3d97a244fca7
0.56.0
1
ghcr.io/lukaszraczylo/jobs-manager-operator:0.1.15e6239e2838d7
golang.org/x/net@v0.49.0
0.56.0
1
ghcr.io/lukaszraczylo/kubemirror:0.9.2265f266df3289
stdlib@go1.26.4
1.26.6
1
ghcr.io/lukaszraczylo/kubernetes-images-sync-operator:0.5.57a424948c8143
golang.org/x/net@v0.48.0
0.56.0
1
ghcr.io/luzifer/cert-manager-desec-webhook:v1.0.1fa1f6b2e9a6e
golang.org/x/net@v0.26.0
0.56.0
1
ghcr.io/luzifer/ots:v1.21.5c94f6c9ed173
stdlib@go1.26.2
1.26.6
1
ghcr.io/luzilla/dnsbl_exporter:v0.7.0-rc3d9767232a55e
golang.org/x/net@v0.20.0
0.56.0
1
ghcr.io/luzilla/dnsbl_exporter:v0.12.0ecba7360ff12
golang.org/x/net@v0.53.0
0.56.0
1
ghcr.io/m0nsterrr/as212510.net:v4.0.4e7b1d39c0dbc
stdlib@go1.26.4
1.26.6
1
ghcr.io/m0nsterrr/cert-manager-webhook-infomaniak:v0.1.5990dbf506d41
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
golang.org/x/net@v0.19.0
0.56.0
1
ghcr.io/manishchaudhary101/kube-argus:latest8e3869d31c70
golang.org/x/net@v0.55.0
stdlib@go1.26.5
0.56.0
1.26.6
1
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
golang.org/x/net@v0.38.0
0.56.0
1
ghcr.io/mariadb-operator/mariadb-operator:26.10.03be6c0fb8094
golang.org/x/net@v0.54.0
0.56.0
1
ghcr.io/maritimeconnectivity/identityregistry:latest5009fd419742
stdlib@go1.26.5
1.26.6
1
ghcr.io/marmotdata/marmot:0.10.0bd2a49f86486
stdlib@go1.26.5
1.26.6
1
ghcr.io/martabal/qbittorrent-exporter:v2.0.1ddf2bff9b357
stdlib@go1.26.3
1.26.6
1
ghcr.io/masucchi/branchdb:0.1.47ea1820c1da1
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/masucchi/branchdb-operator:0.1.4c16578615a43
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/matrix-org/dendrite-monolith:v0.9.43267d27d392f
golang.org/x/net@v0.0.0-20220624214902-1bab6f366d9e
0.56.0
1
ghcr.io/mattn/picoclaw:latest517556c8b144
golang.org/x/net@v0.50.0
stdlib@go1.26.0
0.56.0
1.26.6
1
ghcr.io/mcman2017/qt-vault:v0.1.2852edf54c850
golang.org/x/net@v0.38.0
0.56.0
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
golang.org/x/net@v0.33.0
0.56.0
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
golang.org/x/net@v0.33.0
0.56.0
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
golang.org/x/net@v0.26.0
0.56.0
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
golang.org/x/net@v0.26.0
0.56.0
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
golang.org/x/net@v0.20.0
0.56.0
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
golang.org/x/net@v0.0.0-20191112182307-2180aed22343
0.56.0
1
ghcr.io/mesosphere/dkp-container-images/objectstorage-controller:v0.2.23c708e508197
golang.org/x/net@v0.40.0
0.56.0
1
ghcr.io/metacontroller/metacontroller:v4.17.2d7a55ebc70b4
stdlib@go1.26.5
1.26.6
1
ghcr.io/metio/jaas:2026.6.15e28772028e56
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/metio/stageset-controller:2026.6.14234b66bb3319
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.56.0
1.26.6
1
ghcr.io/metrico/gigapipe:v4.1.6caeb2652ce5e
golang.org/x/net@v0.53.0
stdlib@go1.26.2
0.56.0
1.26.6
1
ghcr.io/middleware-labs/agent-kube-go:dev17369c4cd390
golang.org/x/net@v0.4.0
0.56.0
1
ghcr.io/middleware-labs/mw-auto-injector:0.1.18512248e17e8
golang.org/x/net@v0.26.0
0.56.0
1
ghcr.io/middleware-labs/mw-kube-agent:master056f0953763d
golang.org/x/net@v0.14.0
0.56.0
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
golang.org/x/net@v0.32.0
0.56.0
1
ghcr.io/middleware-labs/mw-kube-agent:1.21.0ff23f452813a
golang.org/x/net@v0.53.0
0.56.0
1
ghcr.io/middleware-labs/mw-kube-agent-config-updater:1.21.0d4edc3f244f4
golang.org/x/net@v0.53.0
0.56.0
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.