StackRadar

CVE-2026-56854

Unscored

Advisory

Published 28 Aug 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,874
of 17,797 indexed, latest versions
Container images
3,230
deployed by those charts
Fix available
1 of 1
affected package

Source-address critical option not enforced for non-public-key auth callbacks in golang.org/x/crypto/ssh

Carried by container images the latest versions of 2,874 of 17,797 indexed charts deploy, on 3,230 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+156 more0.55.03,230
OSV records
GO-2026-6303

Charts affected

2,874 by stars
ChartLatestAffected imagesRadar Score
tailscale-operatorjacobcolvinVerified publisher0.1.01 of 1See more

tailscale-operator jacobcolvin 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
tailscale/k8s-operator:unstablecc9b8f6d9dea
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

242
jessejesse-chartVerified publisher0.0.461 of 6See more

jesse jesse-chart 0.0.46

1 of the 6 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
alpine/git:latest6f3b5029566d
golang.org/x/crypto@v0.52.0
0.55.0

Open the chart page →

3,425
jetic-operatorjetic-operatorVerified publisher2.0.21 of 1See more

jetic-operator jetic-operator 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
apache/camel-k:1.10.43bb13d14f64a
golang.org/x/crypto@v0.0.0-20220411220226-7b82a4e95df4
0.55.0

Open the chart page →

9,341
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

7,411
job-manager-serverjob-manager-server1.27.01 of 1See more

job-manager-server job-manager-server 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-server:1.27.0fe9de719f91e
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

757
joylive-injectorjoyliveOfficialVerified publisher1.3.51 of 2See more

joylive-injector joylive 1.3.5

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
otel/opentelemetry-collector:0.100.09e36620d6c2c
golang.org/x/crypto@v0.22.0
0.55.0

Open the chart page →

1,280
git-configmap-syncjulb-meVerified publisher1.0.11 of 2See more

git-configmap-sync julb-me 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
alpine/git:latest4f9488b7295b
golang.org/x/crypto@v0.52.0
0.55.0

Open the chart page →

2,619
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
golang.org/x/crypto@v0.4.0
0.55.0

Open the chart page →

3,379
k8s-grafana-stackk8s-grafana-stackVerified publisher0.2.3213 of 17See more

k8s-grafana-stack k8s-grafana-stack 0.2.32

13 of the 17 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
grafana/alloy:v1.14.0f50931848bd8
golang.org/x/crypto@v0.48.0
0.55.0
grafana/grafana:12.3.12175aaa91c96
golang.org/x/crypto@v0.43.0
0.55.0
grafana/loki:3.6.73c8fd3570dd9
golang.org/x/crypto@v0.45.0
0.55.0
grafana/loki-canary:3.6.70dac7d5cb383
golang.org/x/crypto@v0.45.0
0.55.0
grafana/tempo:2.9.065a578975943
golang.org/x/crypto@v0.41.0
0.55.0
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
golang.org/x/crypto@v0.27.0
0.55.0
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
golang.org/x/crypto@v0.27.0
0.55.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
golang.org/x/crypto@v0.36.0
0.55.0
quay.io/prometheus-operator/prometheus-config-reloader:v0.89.0cb4ac6a56555
golang.org/x/crypto@v0.47.0
0.55.0
quay.io/prometheus/alertmanager:v0.31.188b605de9aba
golang.org/x/crypto@v0.47.0
0.55.0
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
golang.org/x/crypto@v0.42.0
0.55.0
quay.io/prometheus/prometheus:v3.10.07571a304e67f
golang.org/x/crypto@v0.47.0
0.55.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

15,539
karpenterkarpenter-provider-gcpVerified publisher0.6.01 of 1See more

karpenter karpenter-provider-gcp 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
public.ecr.aws/cloudpilotai/gcp/karpenter:v0.6.0aab80cfd2c4e
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

119
kdiffkdiff-snapshotsVerified publisher0.0.2031 of 2See more

kdiff kdiff-snapshots 0.0.203

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

5,541
kdiff-snapshotskdiff-snapshotsVerified publisher0.0.551 of 1See more

kdiff-snapshots kdiff-snapshots 0.0.55

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
golang.org/x/crypto@v0.21.0
0.55.0

Open the chart page →

5,821
mongodb-operatorkeiailabVerified publisher1.16.91 of 1See more

mongodb-operator keiailab 1.16.9

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/keiailab/mongodb-operator:v1.16.9cf6d86e057bb
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

119
valkey-operatorkeiailabVerified publisher1.5.21 of 1See more

valkey-operator keiailab 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/keiailab/valkey-operator:1.5.249b5aef82877
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

119
giteakeyporttech0.2.101 of 4See more

gitea keyporttech 0.2.10

1 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
gitea/gitea:1.12.485416d6f65fe
golang.org/x/crypto@v0.0.0-20200604202706-70a84ac30bf9
0.55.0

Open the chart page →

5,408
kikplatekikplateVerified publisher0.22.01 of 3See more

kikplate kikplate 0.22.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/kikplate/kikplate-api:main2fbce0601a3c
golang.org/x/crypto@v0.31.0
0.55.0

Open the chart page →

2,813
kokukokuVerified publisher1.0.02 of 7See more

koku koku 1.0.0

2 of the 7 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
minio/mc:latesta7fe349ef4bd
golang.org/x/crypto@v0.40.0
0.55.0
public.ecr.aws/v0r6c2e2/minio:latest08c90bd040bf
golang.org/x/crypto@v0.32.0
0.55.0

Open the chart page →

12,086
kube-arguskube-argusOfficialVerified publisher0.0.1-s2z1 of 1See more

kube-argus kube-argus 0.0.1-s2z

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/manishchaudhary101/kube-argus:latest8e3869d31c70
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

213
cert-managerkubeblocksVerified publisher1.17.24 of 4See more

cert-manager kubeblocks 1.17.2

4 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.17.2ec56edb1161d
golang.org/x/crypto@v0.36.0
0.55.0
quay.io/jetstack/cert-manager-controller:v1.17.22c314feeb5e8
golang.org/x/crypto@v0.36.0
0.55.0
quay.io/jetstack/cert-manager-startupapicheck:v1.17.2e18989b4f912
golang.org/x/crypto@v0.36.0
0.55.0
quay.io/jetstack/cert-manager-webhook:v1.17.237b16a9dff00
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

2,914
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
langgenius/dify-sandbox:0.2.009b7e8705673
golang.org/x/crypto@v0.18.0
0.55.0

Open the chart page →

20,500
ks-corekubeblocksVerified publisher1.1.32 of 5See more

ks-core kubeblocks 1.1.3

2 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubesphere/ks-extensions-museum:latest29681958f220
golang.org/x/crypto@v0.17.0
0.55.0
kubesphere/kubectl:v1.27.1649b445b1b732
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

4,739
kubebrowsekubebrowse1.7.03 of 5See more

kubebrowse kubebrowse 1.7.0

3 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
golang.org/x/crypto@v0.40.0
0.55.0
ghcr.io/browsersec/kubebrowse:sha-09dfa1fb853e9e6372a
golang.org/x/crypto@v0.38.0
0.55.0
ghcr.io/browsersec/kubebrowse-frontend:chore-improve-backbd6bea5e487c
golang.org/x/crypto@v0.40.0
0.55.0

Open the chart page →

4,165
kubefedkubefed0.10.01 of 2See more

kubefed kubefed 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/kubernetes-multicluster/kubefed:v0.10.0c4635c95730e
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.55.0

Open the chart page →

2,426
kubegems-installerkubegemsOfficial1.24.101 of 1See more

kubegems-installer kubegems 1.24.10

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubegems/kubegems:v1.24.10a730bcf9322a
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

3,390
kubegems-localkubegemsOfficial1.24.101 of 2See more

kubegems-local kubegems 1.24.10

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubegems/kubegems:v1.24.10a730bcf9322a
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

6,099
kubernetes-events-exporterkubernetes-events-exporter0.1.21 of 1See more

kubernetes-events-exporter kubernetes-events-exporter 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/ownkube/kubernetes-events-exporter:0.1.2bcb7f0f733f5
golang.org/x/crypto@v0.50.0
0.55.0

Open the chart page →

503
owncloudkubernetes-homelab-helm-chartsVerified publisher0.1.01 of 3See more

owncloud kubernetes-homelab-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
owncloud/server:10.16.274c53d341076
golang.org/x/crypto@v0.50.0
0.55.0

Open the chart page →

10,025
tailscalekubernetes-homelab-helm-chartsVerified publisher0.1.21 of 2See more

tailscale kubernetes-homelab-helm-charts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
tailscale/tailscale:v1.96.5dbeff02d2337
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

1,038
kubernetes-stateless-chartkubernetes-stateless-chart1.0.31 of 1See more

kubernetes-stateless-chart kubernetes-stateless-chart 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
portainer/portainer-ce:2.18.4-alpine3e61aaee1341
golang.org/x/crypto@v0.7.0
0.55.0

Open the chart page →

3,284
kubescoutkubescouteVerified publisher0.1.11 of 1See more

kubescout kubescoute 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/haedalwang/kubescout:0.1.107d51f838f0d
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

723
kubeseal-webguikubeseal-webgui6.0.41 of 2See more

kubeseal-webgui kubeseal-webgui 6.0.4

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
golang.org/x/crypto@v0.39.0
0.55.0

Open the chart page →

4,122
kubeseckubesecVerified publisher1.1.01 of 1See more

kubesec kubesec 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubesec/kubesec:latest025a365d9f18
golang.org/x/crypto@v0.29.0
0.55.0

Open the chart page →

1,076
kube-site-followerkube-site-follower0.1.141 of 2See more

kube-site-follower kube-site-follower 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
golang.org/x/crypto@v0.31.0
0.55.0

Open the chart page →

909
juicefskubesphere-stable0.16.21 of 4See more

juicefs kubesphere-stable 0.16.2

1 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.20.043978fc60798
golang.org/x/crypto@v0.6.0
0.55.0

Open the chart page →

2,496
mesherykubesphere-stable0.5.011 of 13See more

meshery kubesphere-stable 0.5.0

11 of the 13 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
layer5/meshery:stable-latest78a8be21bef3
golang.org/x/crypto@v0.37.0
0.55.0
layer5/meshery-app-mesh:stable-latest77d59943b3d6
golang.org/x/crypto@v0.0.0-20220722155217-630584e8d5aa
0.55.0
layer5/meshery-consul:stable-latest25a4cc38abcd
golang.org/x/crypto@v0.14.0
0.55.0
layer5/meshery-cpx:stable-latest8c20a8a1d6a4
golang.org/x/crypto@v0.0.0-20190829043050-9756ffdc2472
0.55.0
layer5/meshery-istio:stable-latestfde47c141ec6
golang.org/x/crypto@v0.35.0
0.55.0
layer5/meshery-kuma:stable-latest9d25f029a8a2
golang.org/x/crypto@v0.14.0
0.55.0
layer5/meshery-linkerd:stable-latestb99c73bac1f5
golang.org/x/crypto@v0.17.0
0.55.0
layer5/meshery-nginx-sm:stable-latestb3864dfd47ad
golang.org/x/crypto@v0.5.0
0.55.0
layer5/meshery-nsm:stable-latestebd6a8faf21f
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.55.0
layer5/meshery-osm:stable-latestec898e5786c6
golang.org/x/crypto@v0.5.0
0.55.0
layer5/meshery-traefik-mesh:stable-latest797fa7a03570
golang.org/x/crypto@v0.5.0
0.55.0

Open the chart page →

24,787
kube-state-metricskubestar-state-metricsVerified publisher0.1.101 of 1See more

kube-state-metrics kubestar-state-metrics 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.6.0bdab4e49d71d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.55.0

Open the chart page →

1,575
kubetailkubetailVerified publisher0.26.03 of 3See more

kubetail kubetail 0.26.0

3 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/kubetail-org/kubetail-cluster-agent:0.7.1a5eee8cab215
golang.org/x/crypto@v0.36.0
0.55.0
ghcr.io/kubetail-org/kubetail-cluster-api:0.8.28e6acd0da9ac
golang.org/x/crypto@v0.49.0
0.55.0
ghcr.io/kubetail-org/kubetail-dashboard:0.17.08617f0a7f703
golang.org/x/crypto@v0.49.0
0.55.0

Open the chart page →

1,872
kube-vault-controllerkube-vault-controller1.2.01 of 1See more

kube-vault-controller kube-vault-controller 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kupnu4x/kube-vault-controller:1.2.03be59109f3d6
golang.org/x/crypto@v0.6.0
0.55.0

Open the chart page →

1,550
kube-vip-cloud-providerkube-vip0.2.101 of 1See more

kube-vip-cloud-provider kube-vip 0.2.10

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubevip/kube-vip-cloud-provider:v0.0.12f8f4e3401f76
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

798
kubemodkubmod0.5.22 of 2See more

kubemod kubmod 0.5.2

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.19.11f8154f7e80c
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.55.0
kubemod/kubemod-crt:v1.3.0028347c9fa77
golang.org/x/crypto@v0.0.0-20210506145944-38f3c27a63bf
0.55.0

Open the chart page →

4,542
kubeservice-cosign-webhookkubservice-chartsVerified publisher1.1.14 of 5See more

kubeservice-cosign-webhook kubservice-charts 1.1.1

4 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
dongjiang1989/cosign-webhook:v1.1.02a3ead6a55dc
golang.org/x/crypto@v0.10.0
0.55.0
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.55.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.55.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.55.0

Open the chart page →

7,117
kubeservice-custom-limitrangekubservice-chartsVerified publisher1.3.03 of 5See more

kubeservice-custom-limitrange kubservice-charts 1.3.0

3 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.55.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.55.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.55.0

Open the chart page →

5,965
kubeservice-namespace-node-affinitykubservice-chartsVerified publisher1.1.23 of 5See more

kubeservice-namespace-node-affinity kubservice-charts 1.1.2

3 of the 5 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
golang.org/x/crypto@v0.13.0
0.55.0
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
golang.org/x/crypto@v0.13.0
0.55.0
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
golang.org/x/crypto@v0.13.0
0.55.0

Open the chart page →

6,895
kubeservice-scheduler-pluskubservice-chartsVerified publisher0.2.11 of 2See more

kubeservice-scheduler-plus kubservice-charts 0.2.1

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
dongjiang1989/node-metrics:latest3f1f266190bb
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

1,803
kitcaddykvalitetsitVerified publisher1.5.111 of 2See more

kitcaddy kvalitetsit 1.5.11

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
kvalitetsit/kitcaddy:1.5.110e66907ea266
golang.org/x/crypto@v0.52.0
0.55.0

Open the chart page →

131
kube-fencingkvaps2.4.11 of 2See more

kube-fencing kvaps 2.4.1

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kube-fencing-controller:v2.4.0313edfec2fca
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.55.0

Open the chart page →

2,538
linstorkvaps1.14.04 of 11See more

linstor kvaps 1.14.0

4 of the 11 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-controller:v1.14.000ce11c31087
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.55.0
ghcr.io/kvaps/linstor-csi:v1.14.0087618d16b83
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.55.0
ghcr.io/kvaps/linstor-ha-controller:v1.14.08e7b44bbd123
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.55.0
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
golang.org/x/crypto@v0.0.0-20201208171446-5f87f3452ae9
0.55.0

Open the chart page →

15,568
chibisafel4gVerified publisher0.1.11 of 3See more

chibisafe l4g 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
library/caddy:2-alpine5f5c8640aae0
golang.org/x/crypto@v0.52.0
0.55.0

Open the chart page →

5,669
authz-pdplabs64io-helm-chartsVerified publisher0.8.01See more

authz-pdp labs64io-helm-charts 0.8.0

1 container image this version deploys carries CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/cerbos/cerbos:0.51.08d35a64e4a99
golang.org/x/crypto@v0.47.0
0.55.0

Open the chart page →

lagoon-remotelagoon-chartsVerified publisher0.106.01 of 1See more

lagoon-remote lagoon-charts 0.106.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
golang.org/x/crypto@v0.37.0
0.55.0

Open the chart page →

2,125

Container images carrying it

3,230 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/analogj/scrutiny:v0.9.2-web71be54e99608
golang.org/x/crypto@v0.47.0
0.55.0
1
ghcr.io/andibraeu/cert-manager-webhook-inwx:v0.9.0f015e745983e
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/angelnu/dnsmadeeasy-webhook:v1.9.0a5ca158b1f02
golang.org/x/crypto@v0.35.0
0.55.0
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
golang.org/x/crypto@v0.15.0
0.55.0
1
ghcr.io/antnsn/mal-sync:v1.0.52f06e72cef36
golang.org/x/crypto@v0.35.0
0.55.0
1
ghcr.io/appscode/ace:v0.2.0b8e03da90e70
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/acerproxy:v0.2.021de3771fdd5
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/aceshifter:v0.0.3e5f5c254a55a
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/auditor:v0.0.1c62c89ee706d
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.55.0
1
ghcr.io/appscode/azure-credential-manager:v0.1.0f5c797f7fbe7
golang.org/x/crypto@v0.47.0
0.55.0
1
ghcr.io/appscode/capa-vpc-peering-operator:v0.0.4b1557553a2b3
golang.org/x/crypto@v0.15.0
0.55.0
1
ghcr.io/appscode/capi-ops-manager:v0.0.57465f35b684c
golang.org/x/crypto@v0.31.0
0.55.0
1
ghcr.io/appscode/catalog-manager:v0.13.0fc336c5b9655
golang.org/x/crypto@v0.53.0
0.55.0
1
ghcr.io/appscode/cattleset:v0.0.145554a03e448
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/cert-manager-webhook-ace:v0.0.2dc6b5fdcec06
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/cloudflare-dns-proxy:v0.0.5dfbef0285e14
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/cluster-connector:v0.0.140efd9d9ef6ca
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/cluster-presets:v0.0.128fbdd2479645
golang.org/x/crypto@v0.52.0
0.55.0
1
ghcr.io/appscode/docker-machine-operator:v0.0.481f6007abb4e
golang.org/x/crypto@v0.21.0
0.55.0
1
ghcr.io/appscode/external-dns-operator:v0.4.05605f97e636d
golang.org/x/crypto@v0.52.0
0.55.0
1
ghcr.io/appscode/falco-ui-server:v0.0.66ec488d89b56
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/fileserver:v0.0.2b1857871e06c
golang.org/x/crypto@v0.24.0
0.55.0
1
ghcr.io/appscode/gcp-credential-manager:v0.1.0b58345fe8209
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/gh-ci-webhook:v0.0.2036ce246d884e
golang.org/x/crypto@v0.31.0
0.55.0
1
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
golang.org/x/crypto@v0.45.0
0.55.0
1
ghcr.io/appscode/grafana:v2025.2.367d18880448c
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.55.0
1
ghcr.io/appscode/inbox-agent:v0.0.66b99ee9feece
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/kube-rbac-proxy:v0.18.27de54b6dedc8
golang.org/x/crypto@v0.29.0
0.55.0
1
ghcr.io/appscode/kube-rbac-proxy:v0.15.0d8cc6ffb9819
golang.org/x/crypto@v0.14.0
0.55.0
1
ghcr.io/appscode/kube-ui-server:v0.7.079e67164b4f0
golang.org/x/crypto@v0.52.0
0.55.0
1
ghcr.io/appscode/license-proxyserver:v0.0.8d6c2532ea386
golang.org/x/crypto@v0.17.0
0.55.0
1
ghcr.io/appscode/offline-license-server:v0.0.76e4b66308d8f6
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/outboxsyncer:v0.5.0150baab6115d
golang.org/x/crypto@v0.54.0
0.55.0
1
ghcr.io/appscode/pgoutbox:v0.0.4a96e06ec5e9f
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/scanner:v0.0.2116907aae5de1
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/smtprelay:v0.0.479c9c76a78e6
golang.org/x/crypto@v0.32.0
0.55.0
1
ghcr.io/appscode/storage-metrics-server:v0.1.09cb4acb742a9
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/trickster:v2.0.0cdbbed831f28
golang.org/x/crypto@v0.46.0
0.55.0
1
ghcr.io/appscode/virtual-secrets-server:v0.4.0efa03f4c9551
golang.org/x/crypto@v0.52.0
0.55.0
1
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
golang.org/x/crypto@v0.12.0
0.55.0
1
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
golang.org/x/crypto@v0.36.0
0.55.0
1
ghcr.io/arpa-network/node-client:latest657a2c9f6e6d
golang.org/x/crypto@v0.22.0
0.55.0
1
ghcr.io/aserto-dev/topaz:0.32.594c708ecf7dc4
golang.org/x/crypto@v0.37.0
0.55.0
1
ghcr.io/ashvinbambhaniya/nexus-tasks-backend:2.0.0f80349eb018b
golang.org/x/crypto@v0.49.0
0.55.0
1
ghcr.io/astriaorg/astria-indexer:0.1.05cf1e5709820
golang.org/x/crypto@v0.24.0
0.55.0
1
ghcr.io/astriaorg/astria-indexer-api:0.1.03490d9900af1
golang.org/x/crypto@v0.24.0
0.55.0
1
ghcr.io/astriaorg/flame:0.1.0c8af1c5aae40
golang.org/x/crypto@v0.24.0
0.55.0
1
ghcr.io/astriaorg/ria-faucet:0.0.1a06c8ebef427
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.55.0
1
ghcr.io/astriaorg/seq-faucet:0.9.0bf3cb9b505b6
golang.org/x/crypto@v0.26.0
0.55.0
1
ghcr.io/attestkeep/attestkeep-k8s:1.1.110ce4cac41c4
golang.org/x/crypto@v0.53.0
0.55.0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.