StackRadar

CVE-2026-56854

Unscored

Advisory

Published 28 Aug 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,873
of 17,792 indexed, latest versions
Container images
3,219
deployed by those charts
Fix available
2 of 2
affected packages

Source-address critical option not enforced for non-public-key auth callbacks in golang.org/x/crypto/ssh

Carried by container images the latest versions of 2,873 of 17,792 indexed charts deploy, on 3,219 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+156 more0.55.03,219
kubernetes-1.34apk1.34.11-r21.34.11-r31
OSV records
CGA-4wg8-vwxq-5g46GO-2026-6303
Also known as
CGA-548p-j75q-3522, CGA-7fgq-fgg6-f7cr, CGA-8q6m-f35p-p88g, CGA-9xqw-wrfv-3c6w, CGA-fmc9-vwrf-6jq2, CGA-h33c-jrc2-36rr, CGA-jqcq-hwv9-6wwp, CGA-mc7r-3393-487f, CGA-p3hc-qw8w-gf4f, CGA-qf3x-28f7-2hcw, CGA-w35x-xg67-9c7c

Charts affected

2,873 by stars
ChartLatestAffected imagesRadar Score
dockerdkarljorgensen0.1.01 of 1See more

dockerd karljorgensen 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
library/docker:28.5.2-dind2a232a42256f
golang.org/x/crypto@v0.37.0
0.55.0

Open the chart page →

2,041
k10restorekastenVerified publisher8.0.141 of 1See more

k10restore kasten 8.0.14

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
gcr.io/kasten-images/restorectl:8.0.145a0884f9a90c
golang.org/x/crypto@v0.45.0
0.55.0

Open the chart page →

1,485
kbot-self-hostedkbot-self-hostedVerified publisher0.1.81 of 7See more

kbot-self-hosted kbot-self-hosted 0.1.8

1 of the 7 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.30206a6c708fc6
golang.org/x/crypto@v0.49.0
0.55.0

Open the chart page →

32,812
kcmkcm1.11.08 of 12See more

kcm kcm 1.11.0

8 of the 12 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flux-cli:v2.9.1020edbaee890
golang.org/x/crypto@v0.53.0
0.55.0
ghcr.io/fluxcd/helm-controller:v1.6.2e17ab0e5885d
golang.org/x/crypto@v0.53.0
0.55.0
ghcr.io/fluxcd/source-controller:v1.9.22b8d06650a1b
golang.org/x/crypto@v0.53.0
0.55.0
ghcr.io/k0rdent/kcm/controller:1.11.04de19a5373db
golang.org/x/crypto@v0.54.0
0.55.0
quay.io/jetstack/cert-manager-cainjector:v1.21.0ad1dcc5b2fcc
golang.org/x/crypto@v0.53.0
0.55.0
quay.io/jetstack/cert-manager-controller:v1.21.0e370f7800a53
golang.org/x/crypto@v0.53.0
0.55.0
quay.io/jetstack/cert-manager-startupapicheck:v1.21.068b3c5029dc6
golang.org/x/crypto@v0.53.0
0.55.0
quay.io/jetstack/cert-manager-webhook:v1.21.0c33cca307541
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

2,857
nodevitalskeiailabVerified publisher0.8.61 of 1See more

nodevitals keiailab 0.8.6

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/keiailab/nodevitals:0.8.597107e46f0d3
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

427
kestra-starterkestraOfficialVerified publisher2.0.22 of 5See more

kestra-starter kestra 2.0.2

2 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
library/docker:dind-rootlessc876e00a0d81
golang.org/x/crypto@v0.52.0
0.55.0
versity/versitygw:v1.1.0f730e0dbc1ef
golang.org/x/crypto@v0.47.0
0.55.0

Open the chart page →

5,455
keycloak-operator-legacykeycloak-operator-legacy1.0.01 of 1See more

keycloak-operator-legacy keycloak-operator-legacy 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.55.0

Open the chart page →

5,066
gogskeyporttech0.1.31 of 3See more

gogs keyporttech 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
gogs/gogs:0.12.30195b095d0b2
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.55.0

Open the chart page →

3,524
helm-mongodb-operatorkeyporttech0.1.01 of 1See more

helm-mongodb-operator keyporttech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.55.0

Open the chart page →

8,819
connectkfirfer1.15.02 of 2See more

connect kfirfer 1.15.0

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
1password/connect-api:1.7.26aa94cf713f9
golang.org/x/crypto@v0.12.0
0.55.0
1password/connect-sync:1.7.2fe527ed9d81f
golang.org/x/crypto@v0.12.0
0.55.0

Open the chart page →

2,786
dex-k8s-authenticatorkfirfer0.0.31 of 1See more

dex-k8s-authenticator kfirfer 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a2
0.55.0

Open the chart page →

2,791
home-assistantkfirfer0.5.41 of 1See more

home-assistant kfirfer 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2023.10.3021e2afc6e57
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.55.0

Open the chart page →

6,447
keelkfirfer1.0.51 of 1See more

keel kfirfer 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
keelhq/keel:0.19.202ac4ea616c4
golang.org/x/crypto@v0.5.0
0.55.0

Open the chart page →

2,083
mysqldumpkfirfer2.8.01 of 1See more

mysqldump kfirfer 2.8.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
golang.org/x/crypto@v0.14.0
0.55.0

Open the chart page →

3,514
prometheus-elasticsearch-exporterkfirfer6.5.11 of 1See more

prometheus-elasticsearch-exporter kfirfer 6.5.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/elasticsearch-exporter:v1.8.0073dd360de2c
golang.org/x/crypto@v0.21.0
0.55.0

Open the chart page →

778
kiaekiae0.1.66 of 9See more

kiae kiae 0.1.6

6 of the 9 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
grafana/loki:2.6.11ee60f980950
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.55.0
grafana/promtail:2.6.1072527b12cdf
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.55.0
istio/pilot:1.15.2db08d6963975
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.55.0
otel/opentelemetry-collector-contrib:0.63.1dfb3a55ea8c9
golang.org/x/crypto@v0.1.0
0.55.0
ghcr.io/dexidp/dex:v2.35.313964b29d63e
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.55.0
ghcr.io/kiaedev/kiae:latestebd03028ff6a
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.55.0

Open the chart page →

19,257
process-exporterkir4hVerified publisher1.0.11 of 1See more

process-exporter kir4h 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ncabatoff/process-exporterdigest-pinned6f0549dc24e9
golang.org/x/crypto@v0.31.0
0.55.0

Open the chart page →

741
cdashkitwareVerified publisher0.19.01 of 3See more

cdash kitware 0.19.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.12.18-debian-12-r0cce234b4381a
golang.org/x/crypto@v0.27.0
0.55.0

Open the chart page →

12,206
kloudlite-platformkloudlite1.1.51 of 3See more

kloudlite-platform kloudlite 1.1.5

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
golang.org/x/crypto@v0.13.0
0.55.0

Open the chart page →

1,970
klumklumVerified publisher1.17.11 of 1See more

klum klum 1.17.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/jadolg/klum:v0.8.17c66cc93f9d03
golang.org/x/crypto@v0.51.0
0.55.0

Open the chart page →

357
knative-servingknative-servingVerified publisher1.18.31 of 7See more

knative-serving knative-serving 1.18.3

1 of the 7 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned5b93308a392c
golang.org/x/crypto@v0.37.0
0.55.0

Open the chart page →

3,777
cloudflare-tunnel-remotekomailo-helm-charts1.3.11 of 1See more

cloudflare-tunnel-remote komailo-helm-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.9.1b269e8abd07a
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

336
k8s-metrics-serverkomailo-helm-charts1.2.01 of 1See more

k8s-metrics-server komailo-helm-charts 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

163
longhornkomailo-helm-charts0.6.01 of 3See more

longhorn komailo-helm-charts 0.6.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.12.183b79f57043f
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

595
komiserkomiser-eks3.1.101 of 1See more

komiser komiser-eks 3.1.10

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
tailwarden/komiser:3.1.103f68c8ae7993
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

1,272
komoplanekomodorVerified publisher0.1.81 of 1See more

komoplane komodor 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
komodorio/komoplane:0.2.19678d02c3f2e
golang.org/x/crypto@v0.45.0
0.55.0

Open the chart page →

954
simple-oauth2-proxykostiantyn-matsebora-helm-chartsVerified publisher0.3.71 of 1See more

simple-oauth2-proxy kostiantyn-matsebora-helm-charts 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.7.09ed7eaf72050
golang.org/x/crypto@v0.27.0
0.55.0

Open the chart page →

927
kovi-tile38kovi-charts0.1.11 of 1See more

kovi-tile38 kovi-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
tile38/tile38:1.33.4afb7e82f9485
golang.org/x/crypto@v0.21.0
0.55.0

Open the chart page →

1,208
kpingkpingOfficialVerified publisher0.3.51 of 1See more

kping kping 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kayrosuno/kping:latestf3bd44b29b0d
golang.org/x/crypto@v0.41.0
0.55.0

Open the chart page →

2,234
authnkrateo0.23.01 of 1See more

authn krateo 0.23.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/krateoplatformops/authn:0.23.0791c8f9d885a
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

677
installerkrateo2.7.12 of 2See more

installer krateo 2.7.1

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
dtzar/helm-kubectl:3.14.455429449408e
golang.org/x/crypto@v0.17.0
0.55.0
ghcr.io/krateoplatformops/installer/installer:0.6.3a7e922ddac55
golang.org/x/crypto@v0.45.0
0.55.0

Open the chart page →

3,252
installer-pre-upgradekrateo2.7.11 of 1See more

installer-pre-upgrade krateo 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
dtzar/helm-kubectl:3.14.455429449408e
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

2,542
kubeflowkromanow94-kubeflow0.5.19 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

9 of the 30 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubeflowkatib/katib-controller:v0.17.072f14e03b9e1
golang.org/x/crypto@v0.21.0
0.55.0
kubeflownotebookswg/kfam:v1.9.22060a2ede788
golang.org/x/crypto@v0.14.0
0.55.0
kubeflownotebookswg/notebook-controller:v1.9.20f14bd28fdd5
golang.org/x/crypto@v0.0.0-20210817164053-32db794688a5
0.55.0
kubeflownotebookswg/profile-controller:v1.9.2f05a5538ae7e
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.55.0
kubeflownotebookswg/tensorboard-controller:v1.9.26536a9f61193
golang.org/x/crypto@v0.14.0
0.55.0
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
golang.org/x/crypto@v0.22.0
0.55.0
gcr.io/ml-pipeline/cache-server:2.3.0293941ee4f65
golang.org/x/crypto@v0.22.0
0.55.0
gcr.io/ml-pipeline/persistenceagent:2.3.0109ac1b38c41
golang.org/x/crypto@v0.22.0
0.55.0
gcr.io/ml-pipeline/scheduledworkflow:2.3.0f7e67e0bc071
golang.org/x/crypto@v0.22.0
0.55.0

Open the chart page →

70,968
lndkronkltdVerified publisher0.3.93 of 4See more

lnd kronkltd 0.3.9

3 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.14.1-betad94c8dbf6dac
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.55.0
thesisrobot/loop:v0.11.1-beta89ae07e787ca
golang.org/x/crypto@v0.0.0-20200709230013-948cd5f35899
0.55.0
thesisrobot/pool:v0.3.3-alpha2d1c388a4bda
golang.org/x/crypto@v0.0.0-20200709230013-948cd5f35899
0.55.0

Open the chart page →

8,471
casdoorkrzwiatrzyk1.0.01 of 1See more

casdoor krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
casbin/casdoor:v1.224.066f836ef778b
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.55.0

Open the chart page →

3,649
nocodbkrzwiatrzyk0.0.11 of 1See more

nocodb krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
nocodb/nocodb:0.100.2b0b91ec2a2dd
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.55.0

Open the chart page →

2,320
pipecdkrzwiatrzyk0.39.01 of 3See more

pipecd krzwiatrzyk 0.39.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/pipe-cd/pipecd:v0.39.00fae829caf29
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.55.0

Open the chart page →

3,819
traggokrzwiatrzyk1.0.01 of 1See more

traggo krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
traggo/server:0.2.3f1ced637510e
golang.org/x/crypto@v0.0.0-20190513172903-22d7a77e9e5f
0.55.0

Open the chart page →

1,885
ksoc-pluginsksocOfficialVerified publisher1.9.101 of 5See more

ksoc-plugins ksoc 1.9.10

1 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
public.ecr.aws/n8h5y2v5/rad-security/rad-sbom:v1.1.34e97e0e7a2088
golang.org/x/crypto@v0.31.0
0.55.0

Open the chart page →

3,207
dns-operatorkuadrantOfficialVerified publisher0.17.21 of 1See more

dns-operator kuadrant 0.17.2

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/kuadrant/dns-operator:v0.17.2da9ff8211856
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

71
bc-depositorykubebb0.0.31 of 1See more

bc-depository kubebb 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
hyperledgerk8s/bc-saas:v0.0.1-20230524d8bc31176257
golang.org/x/crypto@v0.7.0
0.55.0

Open the chart page →

1,947
bc-explorerkubebb0.0.31 of 1See more

bc-explorer kubebb 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
hyperledgerk8s/bc-explorer:v202305041f1a06b61f18
golang.org/x/crypto@v0.7.0
0.55.0

Open the chart page →

1,947
chartmuseumkubebb3.10.21 of 1See more

chartmuseum kubebb 3.10.2

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.16.071d1f1c0179e
golang.org/x/crypto@v0.9.0
0.55.0

Open the chart page →

2,276
cluster-componentkubebb0.2.22 of 4See more

cluster-component kubebb 0.2.2

2 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubebb/cert-manager-cainjector:v1.8.0f83cd256229b
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.55.0
kubebb/cert-manager-controller:v1.8.020509de4b399
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.55.0

Open the chart page →

8,174
fabric-operatorkubebb0.1.01 of 1See more

fabric-operator kubebb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
golang.org/x/crypto@v0.0.0-20220112180741-5e0467b6c7ce
0.55.0

Open the chart page →

3,995
kubebbkubebb0.0.11 of 1See more

kubebb kubebb 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubebb/core:lateste366c34a9b8d
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

1,758
kubebb-corekubebb0.1.271 of 1See more

kubebb-core kubebb 0.1.27

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubebb/core:v0.1.62b9e7f451d6b
golang.org/x/crypto@v0.12.0
0.55.0

Open the chart page →

1,947
miniokubebb5.0.102 of 2See more

minio kubebb 5.0.10

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
golang.org/x/crypto@v0.3.0
0.55.0
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
golang.org/x/crypto@v0.5.0
0.55.0

Open the chart page →

7,471
tdsfkubebb5.7.01 of 3See more

tdsf kubebb 5.7.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubebb/mesh-operator:v5.7.0163ebbfc7a82
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.55.0

Open the chart page →

6,502
u4a-componentkubebb0.2.104 of 8See more

u4a-component kubebb 0.2.10

4 of the 8 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubebb/iam-controller:v0.2.0-202401288ffbfa2d67e9
golang.org/x/crypto@v0.0.0-20220518034528-6f7dac969898
0.55.0
kubebb/iam-provider:v0.2.0-202401280ba03fcee3a7
golang.org/x/crypto@v0.0.0-20220518034528-6f7dac969898
0.55.0
kubebb/kube-oidc-proxy-ce:v0.3.0-2022100858d5efec568b
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.55.0
kubebb/oidc-server:v0.2.02b5894ef1e2f
golang.org/x/crypto@v0.0.0-20220208050332-20e1d8d225ab
0.55.0

Open the chart page →

13,834

Container images carrying it

3,219 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.55.0
2
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.55.0
2
quay.io/jetstack/cert-manager-cainjector:v1.17.2ec56edb1161d
golang.org/x/crypto@v0.36.0
0.55.0
2
quay.io/jetstack/cert-manager-controller:v1.17.22c314feeb5e8
golang.org/x/crypto@v0.36.0
0.55.0
2
quay.io/jetstack/cert-manager-controller:v1.14.364adcb95ce09
golang.org/x/crypto@v0.17.0
0.55.0
2
quay.io/jetstack/cert-manager-controller:v1.13.29c67cf8c92d8
golang.org/x/crypto@v0.14.0
0.55.0
2
quay.io/jetstack/cert-manager-controller:v1.11.0d429b6d696e0
golang.org/x/crypto@v0.5.0
0.55.0
2
quay.io/jetstack/cert-manager-controller:v1.15.3eee34b3de2dd
golang.org/x/crypto@v0.24.0
0.55.0
2
quay.io/jetstack/cert-manager-ctl:v1.11.074611761f052
golang.org/x/crypto@v0.5.0
0.55.0
2
quay.io/jetstack/cert-manager-startupapicheck:v1.17.2e18989b4f912
golang.org/x/crypto@v0.36.0
0.55.0
2
quay.io/jetstack/cert-manager-webhook:v1.13.20a9470447ebf
golang.org/x/crypto@v0.14.0
0.55.0
2
quay.io/jetstack/cert-manager-webhook:v1.17.237b16a9dff00
golang.org/x/crypto@v0.36.0
0.55.0
2
quay.io/jetstack/cert-manager-webhook:v1.11.06730d96fc382
golang.org/x/crypto@v0.5.0
0.55.0
2
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
golang.org/x/crypto@v0.17.0
0.55.0
2
quay.io/jetstack/cert-manager-webhook:v1.15.3fdcb9ac4963f
golang.org/x/crypto@v0.24.0
0.55.0
2
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.55.0
2
quay.io/kuadrant/dns-operator:v0.17.2da9ff8211856
golang.org/x/crypto@v0.54.0
0.55.0
2
quay.io/kubevirt/kubevirt-cloud-controller-manager:v0.6.037ad4c475941
golang.org/x/crypto@v0.47.0
0.55.0
2
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
golang.org/x/crypto@v0.13.0
0.55.0
2
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
golang.org/x/crypto@v0.3.0
0.55.0
2
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
golang.org/x/crypto@v0.13.0
0.55.0
2
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
golang.org/x/crypto@v0.9.0
0.55.0
2
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
golang.org/x/crypto@v0.5.0
0.55.0
2
quay.io/oauth2-proxy/oauth2-proxy:v7.3.08c21390be87d
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.55.0
2
quay.io/open-cluster-management/registration-operator:v1.3.1df6c926a2b54
golang.org/x/crypto@v0.49.0
0.55.0
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.55.0
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.55.0
2
quay.io/prometheus/blackbox-exporter:v0.24.03af31f8bd1ad
golang.org/x/crypto@v0.8.0
0.55.0
2
quay.io/prometheuscommunity/elasticsearch-exporter:v1.11.0a056739b095d
golang.org/x/crypto@v0.53.0
0.55.0
2
quay.io/prometheuscommunity/json-exporter:v0.7.03a777171d39a
golang.org/x/crypto@v0.31.0
0.55.0
2
quay.io/prometheus/node-exporter:v1.3.023ff46c728b9
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.55.0
2
quay.io/prometheus/node-exporter:v1.11.1-distroless6112664fd761
golang.org/x/crypto@v0.49.0
0.55.0
2
quay.io/prometheus/node-exporter:v1.0.08a3a33cad0bd
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.55.0
2
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.55.0
2
quay.io/prometheus-operator/prometheus-config-reloader:v0.67.014feefde1b80
golang.org/x/crypto@v0.11.0
0.55.0
2
quay.io/prometheus-operator/prometheus-config-reloader:v0.79.2193280a33bc1
golang.org/x/crypto@v0.31.0
0.55.0
2
quay.io/prometheus-operator/prometheus-config-reloader:v0.78.2944b2c67345c
golang.org/x/crypto@v0.28.0
0.55.0
2
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
golang.org/x/crypto@v0.27.0
0.55.0
2
quay.io/prometheus-operator/prometheus-config-reloader:v0.89.0cb4ac6a56555
golang.org/x/crypto@v0.47.0
0.55.0
2
quay.io/prometheus-operator/prometheus-operator:v0.44.0983627001c89
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.55.0
2
quay.io/prometheus/prometheus:v2.53.0075b1ba2c4eb
golang.org/x/crypto@v0.24.0
0.55.0
2
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
golang.org/x/crypto@v0.31.0
0.55.0
2
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.55.0
2
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
golang.org/x/crypto@v0.11.0
0.55.0
2
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.55.0
2
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
golang.org/x/crypto@v0.25.0
0.55.0
2
quay.io/prometheus/pushgateway:v1.11.249ed9fdf3780
golang.org/x/crypto@v0.43.0
0.55.0
2
quay.io/prometheus/pushgateway:v1.6.2979a69ab4a40
golang.org/x/crypto@v0.8.0
0.55.0
2
quay.io/prometheus/pushgateway:v1.11.099392035ae99
golang.org/x/crypto@v0.32.0
0.55.0
2
quay.io/prometheus/snmp-exporter:v0.30.1e5fd5e8b43ac
golang.org/x/crypto@v0.46.0
0.55.0
2

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.