StackRadar

CVE-2026-56853

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,526
of 17,790 indexed, latest versions
Container images
5,288
deployed by those charts
Fix available
1 of 2
affected packages

Apply ReadHeaderTimeout when doing unencrypted HTTP/2 check in net/http

Carried by container images the latest versions of 4,526 of 17,790 indexed charts deploy, on 5,288 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.135,288
OSV records
DEBIAN-CVE-2026-56853GO-2026-6089
Also known as
BIT-golang-2026-56853

Charts affected

4,526 by stars
ChartLatestAffected imagesRadar Score
secrets-store-csi-driver-provider-virtual-secretsappscodeVerified publisher2026.8.141 of 1See more

secrets-store-csi-driver-provider-virtual-secrets appscode 2026.8.14

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/secrets-store-csi-driver-provider-virtual-secrets:v0.2.07afb394f9f97
stdlib@go1.25.12
1.25.13

Open the chart page →

553
service-backendappscodeVerified publisher2026.9.111 of 1See more

service-backend appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
stdlib@go1.25.5
1.25.13

Open the chart page →

1,337
service-gatewayappscodeVerified publisher2026.9.113 of 3See more

service-gateway appscode 2026.9.11

3 of the 3 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
stdlib@go1.25.12
1.25.13
ghcr.io/voyagermesh/echoserver:v20221109fa56a9251de6
stdlib@go1.19
1.25.13
ghcr.io/voyagermesh/gateway:v1.8.24237fd16a3cb
stdlib@go1.26.4
1.25.13

Open the chart page →

2,155
service-presetsappscodeVerified publisher2024.2.111 of 1See more

service-presets appscode 2024.2.11

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/echoserver:v20221109-7ee2f3efa56a9251de6
stdlib@go1.19
1.25.13

Open the chart page →

824
service-providerappscodeVerified publisher2026.9.112 of 2See more

service-provider appscode 2026.9.11

2 of the 2 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-rbac-proxy:v0.18.27de54b6dedc8
stdlib@go1.23.3
1.25.13
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
stdlib@go1.25.5
1.25.13

Open the chart page →

2,238
sidekickappscodeVerified publisher2026.7.101 of 1See more

sidekick appscode 2026.7.10

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/sidekick:v0.0.16d8d2a3c22ee7
stdlib@go1.25.12
1.25.13

Open the chart page →

278
stash-communityappscodeVerified publisher0.42.04 of 4See more

stash-community appscode 0.42.0

4 of the 4 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.25.13
ghcr.io/appscode/kubectl-nonroot:1.3183d43cc41590
stdlib@go1.24.9
1.25.13
ghcr.io/stashed/stash:v0.42.03a98245a7667
stdlib@go1.25.3
1.25.13
ghcr.io/stashed/stash-crd-installer:v0.42.076f0a650e44b
stdlib@go1.25.3
1.25.13

Open the chart page →

3,669
stash-opscenterappscodeVerified publisher2025.10.171 of 1See more

stash-opscenter appscode 2025.10.17

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/stashed/stash-ui-server:v0.23.047cffbc65700
stdlib@go1.25.3
1.25.13

Open the chart page →

679
stash-ui-serverappscodeVerified publisher0.23.01 of 1See more

stash-ui-server appscode 0.23.0

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/stashed/stash-ui-server:v0.23.047cffbc65700
stdlib@go1.25.3
1.25.13

Open the chart page →

679
statefulsetappscodeVerified publisher0.0.12 of 3See more

statefulset appscode 0.0.1

2 of the 3 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
stdlib@go1.15.14
1.25.13
ghcr.io/appscode/kubectl-nonroot:v1.248ee5bdd68977
stdlib@go1.20.7
1.25.13

Open the chart page →

2,739
storage-metrics-serverappscodeVerified publisher2026.7.81 of 1See more

storage-metrics-server appscode 2026.7.8

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/storage-metrics-server:v0.1.09cb4acb742a9
stdlib@go1.25.12
1.25.13

Open the chart page →

552
supervisorappscodeVerified publisher2026.2.161 of 1See more

supervisor appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/supervisor:v0.0.1223affde10a92
stdlib@go1.25.12
1.25.13

Open the chart page →

230
taskqueueappscodeVerified publisher2026.2.161 of 1See more

taskqueue appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/taskqueue:v0.0.36877c958a3c6
stdlib@go1.25.5
1.25.13

Open the chart page →

1,083
tenant-operatorappscodeVerified publisher2026.7.151 of 1See more

tenant-operator appscode 2026.7.15

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/opnpulse/tenant-operator:v0.0.2787f6de2b620
stdlib@go1.25.12
1.25.13

Open the chart page →

176
thanos-operatorappscodeVerified publisher2026.6.21 of 1See more

thanos-operator appscode 2026.6.2

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/opnpulse/thanos-operator:v2026.4.24e05a3e701291
stdlib@go1.26.2
1.25.13

Open the chart page →

377
tricksterappscodeVerified publisher2026.1.151 of 1See more

trickster appscode 2026.1.15

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/trickster:v2.0.0cdbbed831f28
stdlib@go1.25.5
1.25.13

Open the chart page →

1,221
vcd-lb-gcappscodeVerified publisher2026.6.251 of 1See more

vcd-lb-gc appscode 2026.6.25

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/appscode/vcd-lb-gc:v0.1.0524c4045cd21
stdlib@go1.25.11
1.25.13

Open the chart page →

178
voyagerappscodeVerified publisher2026.3.231 of 1See more

voyager appscode 2026.3.23

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/voyager:v17.5.04964ceaf9d35
stdlib@go1.25.8
1.25.13

Open the chart page →

720
voyager-gatewayappscodeVerified publisher2026.7.212 of 2See more

voyager-gateway appscode 2026.7.21

2 of the 2 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
stdlib@go1.25.12
1.25.13
ghcr.io/voyagermesh/gateway:v1.8.24237fd16a3cb
stdlib@go1.26.4
1.25.13

Open the chart page →

1,331
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
stdlib@go1.21.1
1.25.13

Open the chart page →

5,680
stardog-userrole-operatorappuio0.4.01 of 1See more

stardog-userrole-operator appuio 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/vshn/stardog-userrole-operator:v0.3.04774237c9e86
stdlib@go1.22.2
1.25.13

Open the chart page →

1,205
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
stdlib@go1.26.5
1.25.13

Open the chart page →

8,913
appwriteappwrite-helmVerified publisher1.3.24 of 8See more

appwrite appwrite-helm 1.3.2

4 of the 8 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
stdlib@go1.25.7
1.25.13
bitnamilegacy/mariadb:10.6.12-debian-11-r1315edb5643b73
stdlib@go1.19.7
1.25.13
bitnamilegacy/redis:7.0.10-debian-11-r059293f5206b7
stdlib@go1.19.7
1.25.13
openruntimes/executor:0.11.42228f186dcbb
stdlib@go1.21.10
1.25.13

Open the chart page →

9,855
harbor-scanner-trivyaqua-helm0.17.01 of 1See more

harbor-scanner-trivy aqua-helm 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
stdlib@go1.16.4
1.25.13

Open the chart page →

5,211
arcadearcadeVerified publisher1.10.11 of 10See more

arcade arcade 1.10.1

1 of the 10 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.13

Open the chart page →

991
argocd-ecr-updaterargocd-aws-ecr-updater0.3.391 of 1See more

argocd-ecr-updater argocd-aws-ecr-updater 0.3.39

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/karlderkaefer/argocd-ecr-updater:1.4.6ed5d4b74792c
stdlib@go1.26.5
1.25.13

Open the chart page →

86
argocd-bitbucket-proxyargocd-bitbucket-proxy1.1.11 of 1See more

argocd-bitbucket-proxy argocd-bitbucket-proxy 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/salemgolemugoo/argocd-bitbucket-proxy:latesta72df069095b
stdlib@go1.26.1
1.25.13

Open the chart page →

189
argocdargo-helm-charts1.0.03 of 3See more

argocd argo-helm-charts 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.42.18186d6dd81f4
stdlib@go1.23.4
1.25.13
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
stdlib@go1.18.2
1.25.13
quay.io/argoproj/argocd:v2.14.115fc69e31c755
stdlib@go1.22.2
1.25.13

Open the chart page →

7,359
argo-workflowsargo-helm-charts1.0.02 of 2See more

argo-workflows argo-helm-charts 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
quay.io/argoproj/argocli:v3.7.16efd1cb89dc1
stdlib@go1.24.6
1.25.13
quay.io/argoproj/workflow-controller:v3.7.166388d1b2f08
stdlib@go1.24.6
1.25.13

Open the chart page →

1,840
argonix-apiargonix0.2.32 of 4See more

argonix-api argonix 0.2.3

2 of the 4 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/argonix-io/argonix-api:1.0.0cb5f24732197
stdlib@go1.22.7
1.25.13
ghcr.io/argonix-io/argonix-api-frontend:1.0.0d041bbf2814f
stdlib@go1.23.12
1.25.13

Open the chart page →

4,956
argo-zombiesargo-zombies0.1.521 of 1See more

argo-zombies argo-zombies 0.1.52

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
ghcr.io/henrywhitaker3/argo-zombies:v0.4.4316c397906c9
stdlib@go1.26.1
1.25.13

Open the chart page →

254
otel-collectorarieotechVerified publisher0.1.01 of 1See more

otel-collector arieotech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.154.0b3079f45e19b
stdlib@go1.26.4
1.25.13

Open the chart page →

252
arlas-aiasarlas-stackVerified publisher28.8.06 of 22See more

arlas-aias arlas-stack 28.8.0

6 of the 22 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
stdlib@go1.23.9
1.25.13
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
stdlib@go1.25.0
1.25.13
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
stdlib@go1.22.11
1.25.13
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
stdlib@go1.24.2
1.25.13
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
stdlib@go1.23.8
1.25.13
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
stdlib@go1.24.4
1.25.13

Open the chart page →

40,580
arma-reforgerarma-reforger0.5.38 of 8See more

arma-reforger arma-reforger 0.5.3

8 of the 8 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
prom/pushgateway:v1.5.128fe26c8b8b1
stdlib@go1.19.3
1.25.13
stakater/reloader:v1.0.15f4b87a8e56d4
stdlib@go1.20.1
1.25.13
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
stdlib@go1.18.10
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.63.03f976422884e
stdlib@go1.19.5
1.25.13
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.25.13
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.25.13
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
stdlib@go1.19.4
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.05658d0011a41
stdlib@go1.19.4
1.25.13

Open the chart page →

23,425
cluster-autoscalerarzu9.19.11 of 1See more

cluster-autoscaler arzu 9.19.1

1 of the 1 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
breton/cool:dev41b1bb483aa2
stdlib@go1.19.2
1.25.13

Open the chart page →

1,779
itera-lmaarzu1.34.604 of 6See more

itera-lma arzu 1.34.60

4 of the 6 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
grafana/grafana:9.0.1a738d0744784
stdlib@go1.17.11
1.25.13
quay.io/prometheus-operator/prometheus-operator:v0.57.0a2d502c204f9
stdlib@go1.17.10
1.25.13
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
stdlib@go1.17.3
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
stdlib@go1.18.3
1.25.13

Open the chart page →

8,621
assemblylineassemblylineVerified publisher7.4.192 of 12See more

assemblyline assemblyline 7.4.19

2 of the 12 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
stdlib@go1.21.5
1.25.13
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
stdlib@go1.21.5
1.25.13

Open the chart page →

12,666
authorizationassist-iot-authorisation0.1.01 of 2See more

authorization assist-iot-authorisation 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/authorization_db:latestc3adbab6a3e7
stdlib@go1.18.2
1.25.13

Open the chart page →

5,537
dltkvassist-iot-data-integrity-verification0.2.05 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

5 of the 9 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/data_integrity_verification:1.0.0eb7f5d765ab6
stdlib@go1.17.13
1.25.13
hyperledger/fabric-ca:latesta70b6ba64a08
stdlib@go1.26.4
1.25.13
hyperledger/fabric-orderer:2.46ec3fe59ea55
stdlib@go1.18.10
1.25.13
hyperledger/fabric-peer:2.46ff36af21eb1
stdlib@go1.18.10
1.25.13
hyperledger/fabric-tools:2.4b1194f509085
stdlib@go1.18.10
1.25.13

Open the chart page →

77,883
dltflassist-iot-dlt-based-fl0.2.05 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

5 of the 9 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/dlt_based_fl:1.1.04bc3d92788ed
stdlib@go1.17.13
1.25.13
hyperledger/fabric-ca:latesta70b6ba64a08
stdlib@go1.26.4
1.25.13
hyperledger/fabric-orderer:2.46ec3fe59ea55
stdlib@go1.18.10
1.25.13
hyperledger/fabric-peer:2.46ff36af21eb1
stdlib@go1.18.10
1.25.13
hyperledger/fabric-tools:2.4b1194f509085
stdlib@go1.18.10
1.25.13

Open the chart page →

77,883
fllocaloperationsassist-iot-fl-local-operations1.1.01 of 3See more

fllocaloperations assist-iot-fl-local-operations 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/fl_repository_db:latestad8f72108636
stdlib@go1.17.10
1.25.13

Open the chart page →

3,786
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
stdlib@go1.17.10
1.25.13

Open the chart page →

9,411
flrepositorydbassist-iot-fl-repository1.1.01 of 2See more

flrepositorydb assist-iot-fl-repository 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/fl_repository_db:latestad8f72108636
stdlib@go1.17.10
1.25.13

Open the chart page →

4,367
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
stdlib@go1.18.2
1.25.13

Open the chart page →

13,369
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
postgis/postgis:15-3.3a2fc46b52819
stdlib@go1.18.2
1.25.13

Open the chart page →

10,127
openapiassist-iot-open-api-management0.2.22 of 6See more

openapi assist-iot-open-api-management 0.2.2

2 of the 6 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
stdlib@go1.18.6
1.25.13
kong/kubernetes-ingress-controller:2.35e66021b64a8
stdlib@go1.18
1.25.13

Open the chart page →

18,357
performanceandusagediagnosisassist-iot-pud1.0.05 of 7See more

performanceandusagediagnosis assist-iot-pud 1.0.0

5 of the 7 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
grafana/grafana:9.1.19746858c20e6
stdlib@go1.17.12
1.25.13
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.13
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
stdlib@go1.20.6
1.25.13
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
stdlib@go1.18.3
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.6.0bdab4e49d71d
stdlib@go1.18.5
1.25.13

Open the chart page →

8,570
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.13

Open the chart page →

8,052
semantic-repositoryassist-iot-semantic-repository1.1.01 of 3See more

semantic-repository assist-iot-semantic-repository 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
stdlib@go1.24.6
1.25.13

Open the chart page →

1,084
smartorchestratorassist-iot-smart-orchestrator4.0.04 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

4 of the 14 container images this version deploys carry CVE-2026-56853.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_helm:latest9bb46ea14e8e
stdlib@go1.22.1
1.25.13
devopsfaith/krakend:latestf8bdaa8a1a43
stdlib@go1.24.2
1.25.13
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.25.13
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.13

Open the chart page →

45,656

Container images carrying it

5,288 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
alpine/k8s:1.32.3eec354133193
stdlib@go1.23.6
1.25.13
1
alpine/k8s:1.28.2fc059f056ad0
stdlib@go1.20.8
1.25.13
1
alpine/kubectl:1.36.01ee9df6316d4
stdlib@go1.26.2
1.25.13
1
alpine/kubectl:1.33.32c59a3f0726c
stdlib@go1.24.4
1.25.13
1
alpine/kubectl:1.35.0862d86046bbc
stdlib@go1.25.5
1.25.13
1
alpine/kubectl:1.35.3c4a11ae9a1cb
stdlib@go1.25.7
1.25.13
1
altinity/clickhouse-operator:0.27.30520bfb8015d
stdlib@go1.26.5
1.25.13
1
altinity/clickhouse-operator:0.25.41d6f18dbd599
stdlib@go1.25.1
1.25.13
1
altinity/clickhouse-operator:0.23.34baec90b20cd
stdlib@go1.20.14
1.25.13
1
altinity/clickhouse-operator:0.23.774315beb57db
stdlib@go1.21.13
1.25.13
1
altinity/clickhouse-operator:0.19.07a85f522c5bc
stdlib@go1.17.13
1.25.13
1
altinity/clickhouse-operator:0.20.08f0f582d41f0
stdlib@go1.17.13
1.25.13
1
altinity/clickhouse-operator:0.27.1a802b3a19d20
stdlib@go1.26.3
1.25.13
1
altinity/clickhouse-operator:0.16.1db7dde971407
stdlib@go1.13.15
1.25.13
1
altinity/metrics-exporter:0.20.01a46d104406d
stdlib@go1.17.13
1.25.13
1
altinity/metrics-exporter:0.27.31e7c1d8167aa
stdlib@go1.26.5
1.25.13
1
altinity/metrics-exporter:0.23.32912a6c15b44
stdlib@go1.20.14
1.25.13
1
altinity/metrics-exporter:0.25.46ecf67edfb71
stdlib@go1.25.1
1.25.13
1
altinity/metrics-exporter:0.16.185b4fdbae053
stdlib@go1.13.15
1.25.13
1
altinity/metrics-exporter:latest8940ecadae65
stdlib@go1.26.5
1.25.13
1
altinity/metrics-exporter:0.23.7a4d7ff0c727e
stdlib@go1.21.13
1.25.13
1
amaanx86/oci-native-ingress-controller:masterd7206ac7a319
stdlib@go1.23.7
1.25.13
1
amazon/aws-efs-csi-driver:v0.3.0b55277652ea8
stdlib@go1.13.4
1.25.13
1
amazon/aws-fsx-csi-driver:latestc9b14856fd22
stdlib@go1.16.8
1.25.13
1
amazon/aws-otel-collector:v0.27.0d8ab0eef5074
stdlib@go1.19.6
1.25.13
1
amazon/cloudwatch-agent:1.300032.2b36173b79b02f03a
stdlib@go1.21.5
1.25.13
1
amazon/cloudwatch-agent:latest-arm649dea6643715a
stdlib@go1.26.5
1.25.13
1
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
stdlib@go1.15.15
1.25.13
1
ambassador/aes-authsvc:v4.0.0-preview.12a4598b03a6a
stdlib@go1.20.6
1.25.13
1
ambassador/aes-eg-ext:v4.0.0-preview.1b7eb1be3345d
stdlib@go1.20.6
1.25.13
1
ambassador/aes-wafsvc:v4.0.0-preview.15fc571509b8c
stdlib@go1.20.6
1.25.13
1
ambassador/ambassador-agent:1.0.227a1ea0d934fb
stdlib@go1.21.5
1.25.13
1
amd64/mysql:5.7e20a653e0f51
stdlib@go1.18.2
1.25.13
1
anamskenneth/recipe_frontend:2025-06-079ecf04f42cc3
stdlib@go1.20.12
1.25.13
1
anchore/anchore-engine:v0.10.0bde9eedf639d
stdlib@go1.16.3
1.25.13
1
anchore/kai:v0.5.08aad6d0912dd
stdlib@go1.19.7
1.25.13
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
stdlib@go1.26.5
1.25.13
1
andrcuns/smocker:0.18.5b4a8eb20581a
stdlib@go1.18.10
1.25.13
1
andreacioni/kube-workload-restarter:0.0.242938b310090a
stdlib@go1.20.2
1.25.13
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
stdlib@go1.18.2
1.25.13
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
stdlib@go1.18.2
1.25.13
1
anonaddy/anonaddy:0.12.3957a95565166
stdlib@go1.18.3
1.25.13
1
ansgroup/cert-manager-webhook-safedns:v1.0.1cd6b0ef2b309
stdlib@go1.13.15
1.25.13
1
ansiblesemaphore/semaphore:v2.8.5303d1f8684027
stdlib@go1.16.3
1.25.13
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
stdlib@go1.25.7
1.25.13
1
anujarosha/hello-go:v1.0.1ed60e46870b6
stdlib@go1.18.3
1.25.13
1
anujdatar/cups:25.07.01685df04a643b
stdlib@go1.19.8
1.25.13
1
apache/airflow:2.8.4-python3.964e58748b6b9
stdlib@go1.21.8
1.25.13
1
apache/airflow:airflow-pgbouncer-exporter-2025.03.05-0.18.0adf7260c2c5f
stdlib@go1.23.7
1.25.13
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
stdlib@go1.22.7
1.25.13
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.