StackRadar

CVE-2026-56854

Unscored

Advisory

Published 28 Aug 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,888
of 17,781 indexed, latest versions
Container images
3,237
deployed by those charts
Fix available
2 of 2
affected packages

Source-address critical option not enforced for non-public-key auth callbacks in golang.org/x/crypto/ssh

Carried by container images the latest versions of 2,888 of 17,781 indexed charts deploy, on 3,237 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+156 more0.55.03,237
kubernetes-1.34apk1.34.11-r21.34.11-r31
OSV records
CGA-4wg8-vwxq-5g46GO-2026-6303
Also known as
CGA-548p-j75q-3522, CGA-7fgq-fgg6-f7cr, CGA-8q6m-f35p-p88g, CGA-9xqw-wrfv-3c6w, CGA-fmc9-vwrf-6jq2, CGA-h33c-jrc2-36rr, CGA-jqcq-hwv9-6wwp, CGA-mc7r-3393-487f, CGA-p3hc-qw8w-gf4f, CGA-qf3x-28f7-2hcw, CGA-w35x-xg67-9c7c

Charts affected

2,888 by stars
ChartLatestAffected imagesRadar Score
helm-ai-kernelmindburn-labsOfficialVerified publisher0.8.52 of 2See more

helm-ai-kernel mindburn-labs 0.8.5

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
alpine/helmdigest-pinned105741fa6621
golang.org/x/crypto@v0.25.0
0.55.0
ghcr.io/mindburn-labs/helm-ai-kernel:v0.8.51de558875379
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

2,160
mogenius-operatormogeniusOfficialVerified publisher2.29.01 of 2See more

mogenius-operator mogenius 2.29.0

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/mogenius/mogenius-operator:2.29.072a19bbc1aa0
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

934
move2kubemove2kube0.3.151 of 1See more

move2kube move2kube 0.3.15

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
golang.org/x/crypto@v0.0.0-20211215153901-e495a2d5b3d3
0.55.0

Open the chart page →

3,793
nacknatsVerified publisher0.35.01 of 1See more

nack nats 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
natsio/jetstream-controller:0.24.058862daca582
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

227
ndb-operatorndb-operatorOfficialVerified publisher0.5.101 of 2See more

ndb-operator ndb-operator 0.5.10

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
bitnami/kube-rbac-proxydigest-pinnedb7e25b5c57d9
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

221
nebraskanebraska3.0.01 of 2See more

nebraska nebraska 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/flatcar/nebraska:4.0.05c9e99ff7167
golang.org/x/crypto@v0.42.0
0.55.0

Open the chart page →

4,060
keycloak-operatornewsaktuell0.1.71 of 1See more

keycloak-operator newsaktuell 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.55.0

Open the chart page →

5,067
flagsmithone-acre-fundVerified publisher0.1.51 of 6See more

flagsmith one-acre-fund 0.1.5

1 of the 6 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
golang.org/x/crypto@v0.45.0
0.55.0

Open the chart page →

6,868
kobotoolboxone-acre-fundVerified publisher0.7.41 of 9See more

kobotoolbox one-acre-fund 0.7.4

1 of the 9 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
golang.org/x/crypto@v0.45.0
0.55.0

Open the chart page →

18,517
openclaw-with-brainopenclaw-with-brainVerified publisher0.1.671 of 3See more

openclaw-with-brain openclaw-with-brain 0.1.67

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
alpine/git:2.47.2062a01ad7a0e
golang.org/x/crypto@v0.38.0
0.55.0

Open the chart page →

5,218
oesopsmxVerified publisher4.0.326 of 25See more

oes opsmx 4.0.32

6 of the 25 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
golang.org/x/crypto@v0.0.0-20201012173705-84dcc777aaee
0.55.0
minio/minio:RELEASE.2020-12-03T05-49-24Z053f103f4894
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.55.0
quay.io/opsmxpublic/create-secret:v4.0.4defc3263e0e9
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.55.0
quay.io/opsmxpublic/forwarder-controller:v3.5.7f0c5bebaec96
golang.org/x/crypto@v0.0.0-20220829220503-c86fa9a7ed90
0.55.0
quay.io/opsmxpublic/opa:1.12.084fb1af7401c
golang.org/x/crypto@v0.45.0
0.55.0
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.55.0

Open the chart page →

107,811
ipfs-clusterparadeum-teamVerified publisher0.0.192 of 2See more

ipfs-cluster paradeum-team 0.0.19

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ipfs/go-ipfs:v0.13.117259397f587
golang.org/x/crypto@v0.0.0-20220518034528-6f7dac969898
0.55.0
ipfs/ipfs-cluster:1.0.21511f6d57994
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.55.0

Open the chart page →

3,757
psmdb-operatorpercona1.23.11 of 1See more

psmdb-operator percona 1.23.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.23.0feaff989e253
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

246
permifypermifyVerified publisher0.5.01 of 1See more

permify permify 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/permify/permify:v1.3.5f0c6f7d7daa6
golang.org/x/crypto@v0.24.0
0.55.0

Open the chart page →

997
persespersesOfficialVerified publisher0.23.21 of 1See more

perses perses 0.23.2

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
persesdev/perses:v0.54.0a0e34ddaf9d7
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

133
platzioplatz-ioVerified publisher0.6.51 of 2See more

platzio platz-io 0.6.5

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
platzio/backend:v0.6.5d5e5972f344b
golang.org/x/crypto@v0.39.0
0.55.0

Open the chart page →

2,866
plecopleco0.24.01 of 1See more

pleco pleco 0.24.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
public.ecr.aws/r3m4q3r9/pleco:0.24.0651739583336
golang.org/x/crypto@v0.37.0
0.55.0

Open the chart page →

1,346
pomeriumpomerium34.0.11 of 1See more

pomerium pomerium 34.0.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
pomerium/pomerium:v0.22.19c69b10a2126
golang.org/x/crypto@v0.8.0
0.55.0

Open the chart page →

1,942
prometheus-memcached-exporterprometheus-communityVerified publisher0.6.01 of 1See more

prometheus-memcached-exporter prometheus-community 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
prom/memcached-exporter:v0.17.0995c80e3ffbe
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

22
prometheus-pgbouncer-exporterprometheus-communityVerified publisher0.10.11 of 1See more

prometheus-pgbouncer-exporter prometheus-community 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/pgbouncer-exporter:v0.12.130f31b6c2efd
golang.org/x/crypto@v0.51.0
0.55.0

Open the chart page →

298
prometheus-systemd-exporterprometheus-communityVerified publisher0.5.21 of 1See more

prometheus-systemd-exporter prometheus-community 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/systemd-exporter:v0.7.078c03f875dfb
golang.org/x/crypto@v0.31.0
0.55.0

Open the chart page →

725
kube-prometheus-stackprometheus-worawutchan12.8.04 of 6See more

kube-prometheus-stack prometheus-worawutchan 12.8.0

4 of the 6 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
grafana/grafana:7.2.1733842cca5bd
golang.org/x/crypto@v0.0.0-20200820211705-5c72a883971a
0.55.0
jettech/kube-webhook-certgen:v1.5.0fb7c2cd46ccf
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.55.0
quay.io/prometheus-operator/prometheus-operator:v0.44.0983627001c89
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.55.0
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.55.0

Open the chart page →

12,125
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.1b5210df46c05
golang.org/x/crypto@v0.35.0
0.55.0

Open the chart page →

5,435
nfs-server-provisionerraphaelVerified publisher1.3.01 of 1See more

nfs-server-provisioner raphael 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.55.0

Open the chart page →

2,730
repoflowrepoflow-helm-public0.9.11 of 8See more

repoflow repoflow-helm-public 0.9.1

1 of the 8 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2025-07-23T15-54-02Zd249d1fb6966
golang.org/x/crypto@v0.40.0
0.55.0

Open the chart page →

13,521
backrestrobertobochetVerified publisher0.7.01 of 1See more

backrest robertobochet 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
garethgeorge/backrest:v1.14.1b85297975428
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

859
rqliterqliteOfficialVerified publisher2.0.01 of 1See more

rqlite rqlite 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
rqlite/rqlite:9.1.37b992a526eee
golang.org/x/crypto@v0.43.0
0.55.0

Open the chart page →

1,311
qbittorrent-vpnrtomik-helm-chartsVerified publisher0.0.21 of 2See more

qbittorrent-vpn rtomik-helm-charts 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
qmcgaw/gluetun:v3.40.02b42bfa04675
golang.org/x/crypto@v0.29.0
0.55.0

Open the chart page →

1,218
sabliersablier-helm-chartsOfficialVerified publisher1.8.11 of 1See more

sablier sablier-helm-charts 1.8.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
sablierapp/sablier:1.16.1413704376656
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

147
bentoself-hosters-by-nightVerified publisher0.9.11 of 1See more

bento self-hosters-by-night 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/warpstreamlabs/bento:1.8.121715979aefa
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

1,046
corednssoftizyVerified publisher0.2.01 of 1See more

coredns softizy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
coredns/coredns:1.10.1a0ead06651cf
golang.org/x/crypto@v0.0.0-20221010152910-d6f0a8c073c2
0.55.0

Open the chart page →

1,663
knative-servingsoftonic3.0.05 of 5See more

knative-serving softonic 3.0.0

5 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-certmanager/cmd/webhookdigest-pinned873b968f02b5
golang.org/x/crypto@v0.0.0-20200323165209-0ec3e9974c59
0.55.0
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinneda5de0fb75046
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.55.0
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned2ef460356b17
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.55.0
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned30ce73388ae5
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.55.0
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedf16c0e022203
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.55.0

Open the chart page →

12,502
miniosolidchartsVerified publisher0.5.01 of 1See more

minio solidcharts 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/coollabsio/minio:RELEASE.2025-10-15T17-29-55Z69b55a1c1c5d
golang.org/x/crypto@v0.40.0
0.55.0

Open the chart page →

1,055
forecastlestakaterVerified publisher2.1.11 of 1See more

forecastle stakater 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
stakater/forecastle:v2.0.2382cd9572352
golang.org/x/crypto@v0.48.0
0.55.0

Open the chart page →

712
ingressmonitorcontrollerstakaterVerified publisher2.2.131 of 1See more

ingressmonitorcontroller stakater 2.2.13

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/stakater/ingressmonitorcontroller:v2.2.133301afb61c10
golang.org/x/crypto@v0.45.0
0.55.0

Open the chart page →

576
sn-platformstreamnative1.11.445 of 9See more

sn-platform streamnative 1.11.44

5 of the 9 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
golang.org/x/crypto@v0.4.0
0.55.0
streamnative/pulsar_vault_init:v1.0.731533fa9fab7
golang.org/x/crypto@v0.0.0-20220208050332-20e1d8d225ab
0.55.0
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/crypto@v0.1.0
0.55.0
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.55.0
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
golang.org/x/crypto@v0.7.0
0.55.0

Open the chart page →

15,477
stunnerstunner1.2.11 of 2See more

stunner stunner 1.2.1

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
l7mp/stunner-auth-server:1.2.10d2094060b72
golang.org/x/crypto@v0.52.0
0.55.0

Open the chart page →

263
pocketbasetechwolf12Verified publisher0.29.31 of 1See more

pocketbase techwolf12 0.29.3

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/techwolf12/pocketbase:0.29.3106099641679
golang.org/x/crypto@v0.41.0
0.55.0

Open the chart page →

1,446
feedbacksystemthm-mni-iiVerified publisher0.47.14 of 10See more

feedbacksystem thm-mni-ii 0.47.1

4 of the 10 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2023.12.23-debian-11-r25bb0aa825d16
golang.org/x/crypto@v0.17.0
0.55.0
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
golang.org/x/crypto@v0.12.0
0.55.0
library/docker:20.10.21-dind3153fa63f546
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.55.0
thmmniii/fbs-runner:v1.27.186105349c1a3
golang.org/x/crypto@v0.1.0
0.55.0

Open the chart page →

28,534
topaztopaz0.2.51 of 1See more

topaz topaz 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/aserto-dev/topaz:0.32.594c708ecf7dc4
golang.org/x/crypto@v0.37.0
0.55.0

Open the chart page →

1,494
maeshtraefikOfficialVerified publisher2.1.21 of 7See more

maesh traefik 2.1.2

1 of the 7 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
containous/maesh:v1.3.2587162516502
golang.org/x/crypto@v0.0.0-20200317142112-1b76d66859c6
0.55.0

Open the chart page →

4,136
traefik-meshtraefikOfficialVerified publisher4.1.13 of 7See more

traefik-mesh traefik 4.1.1

3 of the 7 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.18db45c07f2e1b
golang.org/x/crypto@v0.0.0-20200214034016-1d94cc7ab1c6
0.55.0
library/traefik:v2.57d5a6ae66572
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.55.0
traefik/mesh:v1.4.8cf071f3e165c
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.55.0

Open the chart page →

9,257
argocdtwomartensVerified publisher0.1.12 of 3See more

argocd twomartens 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.37.0f579d00721b0
golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
0.55.0
quay.io/argoproj/argocd:v2.8.6acaf37352569
golang.org/x/crypto@v0.14.0
0.55.0

Open the chart page →

10,315
uptraceuptrace2.0.21 of 2See more

uptrace uptrace 2.0.2

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
uptrace/uptrace:2.0.234a02c3b2d12
golang.org/x/crypto@v0.40.0
0.55.0

Open the chart page →

1,619
vaultvaultVerified publisher1.22.04 of 4See more

vault vault 1.22.0

4 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
alpine/k8s:1.35.5d870622d0040
golang.org/x/crypto@v0.50.0
0.55.0
hashicorp/vault:2.0.1755355002715
golang.org/x/crypto@v0.51.0
0.55.0
prom/statsd-exporter:v0.29.0632f70580492
golang.org/x/crypto@v0.46.0
0.55.0
ghcr.io/bank-vaults/bank-vaults:v1.33.198b6ea2ed319
golang.org/x/crypto@v0.52.0
0.55.0

Open the chart page →

4,243
vsphere-cpivsphere-tmm1.6.01 of 1See more

vsphere-cpi vsphere-tmm 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.28.0026f63d9ed42
golang.org/x/crypto@v0.11.0
0.55.0

Open the chart page →

1,344
gethvulcanlink1.10.231 of 1See more

geth vulcanlink 1.10.23

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.23cce21b423165
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.55.0

Open the chart page →

2,245
api-firewallwallarmVerified publisher0.9.61 of 1See more

api-firewall wallarm 0.9.6

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
wallarm/api-firewall:v0.9.64d45db0ff240
golang.org/x/crypto@v0.49.0
0.55.0

Open the chart page →

999
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
library/nats:2.10.7-alpine1bcddab51b80
golang.org/x/crypto@v0.16.0
0.55.0

Open the chart page →

3,456
argo-cdwenerme10.9.02 of 3See more

argo-cd wenerme 10.9.0

2 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.45.18499afd690c4
golang.org/x/crypto@v0.47.0
0.55.0
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

3,218

Container images carrying it

3,237 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
tykio/tyk-dashboard:v5.13.10e03b94c153d
golang.org/x/crypto@v0.52.0
0.55.0
3
tykio/tyk-gateway-ee:v5.13.13e907e675bf9
golang.org/x/crypto@v0.52.0
0.55.0
3
vikunja/vikunja:0.24.6ed1f3ed467fe
golang.org/x/crypto@v0.27.0
0.55.0
3
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
golang.org/x/crypto@v0.31.0
0.55.0
3
ghcr.io/coder/coder:v2.37.10c6994bb4c5a
golang.org/x/crypto@v0.52.0
0.55.0
3
ghcr.io/dexidp/dex:v2.45.18499afd690c4
golang.org/x/crypto@v0.47.0
0.55.0
3
ghcr.io/kuberocketci/krci-cache:0.3.05f6cd61e6da6
golang.org/x/crypto@v0.52.0
0.55.0
3
ghcr.io/kubevault/vault-operator:v0.25.0c8e042b5cee8
golang.org/x/crypto@v0.52.0
0.55.0
3
ghcr.io/sigstore/scaffolding/createctconfig:v0.7.313a061734c5be
golang.org/x/crypto@v0.43.0
0.55.0
3
ghcr.io/sigstore/scaffolding/ct_server:v0.7.3166664ba563e7
golang.org/x/crypto@v0.43.0
0.55.0
3
ghcr.io/sigstore/scaffolding/trillian_log_server5a878e4e4f03
golang.org/x/crypto@v0.53.0
0.55.0
3
ghcr.io/sigstore/scaffolding/trillian_log_signer28c5ff40963f
golang.org/x/crypto@v0.53.0
0.55.0
3
ghcr.io/spiffe/spire-agent:1.15.341b0dcd8b258
golang.org/x/crypto@v0.54.0
0.55.0
3
ghcr.io/tremolosecurity/kube-oidc-proxy:1.0.12d7747f308042
golang.org/x/crypto@v0.48.0
0.55.0
3
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
golang.org/x/crypto@v0.46.0
0.55.0
3
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.55.0
3
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
golang.org/x/crypto@v0.36.0
0.55.0
3
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
golang.org/x/crypto@v0.0.0-20201002170205-7f63de1d35b0
0.55.0
3
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
golang.org/x/crypto@v0.7.0
0.55.0
3
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
golang.org/x/crypto@v0.53.0
0.55.0
3
quay.io/cilium/operator-generic:v1.20.16c3885fc7b62
golang.org/x/crypto@v0.53.0
0.55.0
3
quay.io/devtron/ai-agent:0.0.16545dac92173
golang.org/x/crypto@v0.24.0
0.55.0
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.55.0
3
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.55.0
3
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.55.0
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.55.0
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.55.0
3
quay.io/devtron/cost-sync:172ef62b-1159-39429edf210d763ca
golang.org/x/crypto@v0.38.0
0.55.0
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/git-sensor:94237c18-950-3941803c7bf249aa1
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/crypto@v0.0.0-20220112180741-5e0467b6c7ce
0.55.0
3
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/crypto@v0.14.0
0.55.0
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.55.0
3
quay.io/devtron/jcmhproxy-ingress:v0.14.64286bcccda3e
golang.org/x/crypto@v0.18.0
0.55.0
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/kubewatch:09867a9c-419-39288d30a7c640c63
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
golang.org/x/crypto@v0.7.0
0.55.0
3
quay.io/devtron/lens:3b3d6d0e-333-39292e886b8d2b54b
golang.org/x/crypto@v0.46.0
0.55.0
3
quay.io/devtron/nats:2.9.3-alpinef0cf3c3ab495
golang.org/x/crypto@v0.0.0-20220926161630-eccd6366d1be
0.55.0
3
quay.io/devtron/nats-box:latest48cdd3054b20
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.55.0
3
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/crypto@v0.0.0-20210513164829-c07d793c2f9a
0.55.0
3
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.55.0
3
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/crypto@v0.0.0-20190701094942-4def268fd1a4
0.55.0
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
golang.org/x/crypto@v0.14.0
0.55.0
3
quay.io/prometheus/alertmanager:v0.26.0361db356b330
golang.org/x/crypto@v0.8.0
0.55.0
3
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.55.0
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.