StackRadar

CVE-2026-56854

Unscored

Advisory

Published 28 Aug 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,905
of 17,787 indexed, latest versions
Container images
3,259
deployed by those charts
Fix available
2 of 2
affected packages

Source-address critical option not enforced for non-public-key auth callbacks in golang.org/x/crypto/ssh

Carried by container images the latest versions of 2,905 of 17,787 indexed charts deploy, on 3,259 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+156 more0.55.03,259
kubernetes-1.34apk1.34.11-r21.34.11-r31
OSV records
CGA-4wg8-vwxq-5g46GO-2026-6303
Also known as
CGA-548p-j75q-3522, CGA-7fgq-fgg6-f7cr, CGA-8q6m-f35p-p88g, CGA-9xqw-wrfv-3c6w, CGA-fmc9-vwrf-6jq2, CGA-h33c-jrc2-36rr, CGA-jqcq-hwv9-6wwp, CGA-mc7r-3393-487f, CGA-p3hc-qw8w-gf4f, CGA-qf3x-28f7-2hcw, CGA-w35x-xg67-9c7c

Charts affected

2,905 by stars
ChartLatestAffected imagesRadar Score
marketplace-apiappscodeVerified publisher2026.9.111 of 1See more

marketplace-api appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/crypto@v0.38.0
0.55.0

Open the chart page →

2,605
minioappscodeVerified publisher2026.9.111 of 1See more

minio appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
golang.org/x/crypto@v0.5.0
0.55.0

Open the chart page →

4,043
monitoring-operatorappscodeVerified publisher2026.6.121 of 1See more

monitoring-operator appscode 2026.6.12

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/grafana-tools:v0.8.077c9d29080eb
golang.org/x/crypto@v0.49.0
0.55.0

Open the chart page →

361
multicluster-controlplaneappscodeVerified publisher2025.4.301 of 1See more

multicluster-controlplane appscode 2025.4.30

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

2,568
offline-license-serverappscodeVerified publisher2026.9.111 of 2See more

offline-license-server appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/offline-license-server:v0.0.76e4b66308d8f6
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

1,682
opentelemetry-kube-stackappscodeVerified publisher0.14.122 of 3See more

opentelemetry-kube-stack appscode 0.14.12

2 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/opentelemetry-operator/opentelemetry-operator:0.144.079b81912f1fb
golang.org/x/crypto@v0.46.0
0.55.0
quay.io/brancz/kube-rbac-proxy:v0.20.0147cb28fea35
golang.org/x/crypto@v0.42.0
0.55.0

Open the chart page →

1,872
outbox-syncerappscodeVerified publisher2026.9.111 of 1See more

outbox-syncer appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/outboxsyncer:v0.5.0150baab6115d
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

314
panopticonappscodeVerified publisher2026.6.221 of 2See more

panopticon appscode 2026.6.22

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/panopticon:v0.0.23a645b40d2d3b
golang.org/x/crypto@v0.52.0
0.55.0

Open the chart page →

468
persesappscodeVerified publisher2026.6.21 of 1See more

perses appscode 2026.6.2

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/opnpulse/perses:v2026.4.24b880da90aa1a
golang.org/x/crypto@v0.41.0
0.55.0

Open the chart page →

530
petsetappscodeVerified publisher2026.5.221 of 1See more

petset appscode 2026.5.22

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/petset:v0.1.093fa0daf603c
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

854
pgoutboxappscodeVerified publisher2026.7.101 of 1See more

pgoutbox appscode 2026.7.10

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/pgoutbox:v0.0.4a96e06ec5e9f
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

720
platform-apiappscodeVerified publisher2026.9.112 of 3See more

platform-api appscode 2026.9.11

2 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/crypto@v0.38.0
0.55.0
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
golang.org/x/crypto@v0.45.0
0.55.0

Open the chart page →

37,184
platform-linksappscodeVerified publisher2026.9.111 of 1See more

platform-links appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/fileserver:v0.0.2b1857871e06c
golang.org/x/crypto@v0.24.0
0.55.0

Open the chart page →

771
regcacheappscodeVerified publisher2026.9.111 of 1See more

regcache appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
library/registry:3.1.11be55279f18a
golang.org/x/crypto@v0.49.0
0.55.0

Open the chart page →

634
service-backendappscodeVerified publisher2026.9.111 of 1See more

service-backend appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

1,330
service-gatewayappscodeVerified publisher2026.9.112 of 3See more

service-gateway appscode 2026.9.11

2 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
golang.org/x/crypto@v0.46.0
0.55.0
ghcr.io/voyagermesh/gateway:v1.8.24237fd16a3cb
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

2,088
service-providerappscodeVerified publisher2026.9.112 of 2See more

service-provider appscode 2026.9.11

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-rbac-proxy:v0.18.27de54b6dedc8
golang.org/x/crypto@v0.29.0
0.55.0
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

2,224
stash-communityappscodeVerified publisher0.42.02 of 4See more

stash-community appscode 0.42.0

2 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.55.0
ghcr.io/stashed/stash:v0.42.03a98245a7667
golang.org/x/crypto@v0.24.0
0.55.0

Open the chart page →

3,661
stash-opscenterappscodeVerified publisher2025.10.171 of 1See more

stash-opscenter appscode 2025.10.17

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/stashed/stash-ui-server:v0.23.047cffbc65700
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

672
stash-ui-serverappscodeVerified publisher0.23.01 of 1See more

stash-ui-server appscode 0.23.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/stashed/stash-ui-server:v0.23.047cffbc65700
golang.org/x/crypto@v0.36.0
0.55.0

Open the chart page →

672
statefulsetappscodeVerified publisher0.0.11 of 3See more

statefulset appscode 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.55.0

Open the chart page →

2,732
storage-metrics-serverappscodeVerified publisher2026.7.81 of 1See more

storage-metrics-server appscode 2026.7.8

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/storage-metrics-server:v0.1.09cb4acb742a9
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

546
tricksterappscodeVerified publisher2026.1.151 of 1See more

trickster appscode 2026.1.15

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/appscode/trickster:v2.0.0cdbbed831f28
golang.org/x/crypto@v0.46.0
0.55.0

Open the chart page →

1,221
voyagerappscodeVerified publisher2026.3.231 of 1See more

voyager appscode 2026.3.23

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/voyager:v17.5.04964ceaf9d35
golang.org/x/crypto@v0.49.0
0.55.0

Open the chart page →

713
voyager-gatewayappscodeVerified publisher2026.7.212 of 2See more

voyager-gateway appscode 2026.7.21

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
golang.org/x/crypto@v0.46.0
0.55.0
ghcr.io/voyagermesh/gateway:v1.8.24237fd16a3cb
golang.org/x/crypto@v0.53.0
0.55.0

Open the chart page →

1,265
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

8,904
appwriteappwrite-helmVerified publisher1.3.21 of 8See more

appwrite appwrite-helm 1.3.2

1 of the 8 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
golang.org/x/crypto@v0.38.0
0.55.0

Open the chart page →

9,847
harbor-scanner-trivyaqua-helm0.17.01 of 1See more

harbor-scanner-trivy aqua-helm 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
golang.org/x/crypto@v0.0.0-20201216223049-8b5274cf687f
0.55.0

Open the chart page →

5,203
argocdargo-helm-charts1.0.02 of 3See more

argocd argo-helm-charts 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.42.18186d6dd81f4
golang.org/x/crypto@v0.31.0
0.55.0
quay.io/argoproj/argocd:v2.14.115fc69e31c755
golang.org/x/crypto@v0.27.0
0.55.0

Open the chart page →

7,338
argo-workflowsargo-helm-charts1.0.02 of 2See more

argo-workflows argo-helm-charts 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/argoproj/argocli:v3.7.16efd1cb89dc1
golang.org/x/crypto@v0.38.0
0.55.0
quay.io/argoproj/workflow-controller:v3.7.166388d1b2f08
golang.org/x/crypto@v0.38.0
0.55.0

Open the chart page →

1,826
argonix-apiargonix0.2.31 of 4See more

argonix-api argonix 0.2.3

1 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/argonix-io/argonix-api:1.0.0cb5f24732197
golang.org/x/crypto@v0.27.0
0.55.0

Open the chart page →

4,819
otel-collectorarieotechVerified publisher0.1.01 of 1See more

otel-collector arieotech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.154.0b3079f45e19b
golang.org/x/crypto@v0.52.0
0.55.0

Open the chart page →

245
arlas-aiasarlas-stackVerified publisher28.8.02 of 22See more

arlas-aias arlas-stack 28.8.0

2 of the 22 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
golang.org/x/crypto@v0.27.0
0.55.0
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
golang.org/x/crypto@v0.37.0
0.55.0

Open the chart page →

40,411
arma-reforgerarma-reforger0.5.36 of 8See more

arma-reforger arma-reforger 0.5.3

6 of the 8 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
prom/pushgateway:v1.5.128fe26c8b8b1
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.55.0
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
golang.org/x/crypto@v0.3.0
0.55.0
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/crypto@v0.1.0
0.55.0
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.55.0
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
golang.org/x/crypto@v0.1.0
0.55.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.05658d0011a41
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.55.0

Open the chart page →

23,407
cluster-autoscalerarzu9.19.11 of 1See more

cluster-autoscaler arzu 9.19.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
breton/cool:dev41b1bb483aa2
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.55.0

Open the chart page →

1,773
itera-lmaarzu1.34.603 of 6See more

itera-lma arzu 1.34.60

3 of the 6 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
grafana/grafana:9.0.1a738d0744784
golang.org/x/crypto@v0.0.0-20220331220935-ae2d96664a29
0.55.0
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.55.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.55.0

Open the chart page →

8,608
assemblylineassemblylineVerified publisher7.4.192 of 12See more

assemblyline assemblyline 7.4.19

2 of the 12 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
golang.org/x/crypto@v0.17.0
0.55.0
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
golang.org/x/crypto@v0.17.0
0.55.0

Open the chart page →

12,092
dltkvassist-iot-data-integrity-verification0.2.04 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

4 of the 9 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
golang.org/x/crypto@v0.54.0
0.55.0
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.55.0
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.55.0
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.55.0

Open the chart page →

77,821
dltflassist-iot-dlt-based-fl0.2.04 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

4 of the 9 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
golang.org/x/crypto@v0.54.0
0.55.0
hyperledger/fabric-orderer:2.46ec3fe59ea55
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.55.0
hyperledger/fabric-peer:2.46ff36af21eb1
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.55.0
hyperledger/fabric-tools:2.4b1194f509085
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.55.0

Open the chart page →

77,821
fllocaloperationsassist-iot-fl-local-operations1.1.01 of 3See more

fllocaloperations assist-iot-fl-local-operations 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
assistiot/fl_repository_db:latestad8f72108636
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.55.0

Open the chart page →

3,786
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.55.0

Open the chart page →

9,407
flrepositorydbassist-iot-fl-repository1.1.01 of 2See more

flrepositorydb assist-iot-fl-repository 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
assistiot/fl_repository_db:latestad8f72108636
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.55.0

Open the chart page →

4,367
performanceandusagediagnosisassist-iot-pud1.0.04 of 7See more

performanceandusagediagnosis assist-iot-pud 1.0.0

4 of the 7 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
grafana/grafana:9.1.19746858c20e6
golang.org/x/crypto@v0.0.0-20220622213112-05595931fe9d
0.55.0
quay.io/prometheus/node-exporter:v1.6.181f94e50ea37
golang.org/x/crypto@v0.8.0
0.55.0
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
golang.org/x/crypto@v0.0.0-20220214200702-86341886e292
0.55.0
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.6.0bdab4e49d71d
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.55.0

Open the chart page →

8,556
semantic-repositoryassist-iot-semantic-repository1.1.01 of 3See more

semantic-repository assist-iot-semantic-repository 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
golang.org/x/crypto@v0.40.0
0.55.0

Open the chart page →

1,069
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/crypto@v0.35.0
0.55.0
library/mongo:4.4.66efa05203990
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.55.0
quay.io/prometheus/prometheus:latest5ce7540c3c00
golang.org/x/crypto@v0.54.0
0.55.0

Open the chart page →

42,460
astrotrekastria0.0.23 of 4See more

astrotrek astria 0.0.2

3 of the 4 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
golang.org/x/crypto@v0.0.0-20210711020723-a769d52b0f97
0.55.0
ghcr.io/astriaorg/astria-indexer:0.1.05cf1e5709820
golang.org/x/crypto@v0.24.0
0.55.0
ghcr.io/astriaorg/astria-indexer-api:0.1.03490d9900af1
golang.org/x/crypto@v0.24.0
0.55.0

Open the chart page →

31,807
celestia-localastria9.0.02 of 2See more

celestia-local astria 9.0.0

2 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-app:v6.1.0-rc0a604aefa3fae
golang.org/x/crypto@v0.42.0
0.55.0
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
golang.org/x/crypto@v0.41.0
0.55.0

Open the chart page →

3,281
celestia-nodeastria0.7.11 of 1See more

celestia-node astria 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
golang.org/x/crypto@v0.41.0
0.55.0

Open the chart page →

1,502
evm-faucetastria0.1.51 of 1See more

evm-faucet astria 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/ria-faucet:0.0.1a06c8ebef427
golang.org/x/crypto@v0.0.0-20210921155107-089bfa567519
0.55.0

Open the chart page →

1,764
evm-rollupastria4.1.01 of 2See more

evm-rollup astria 4.1.0

1 of the 2 container images this version deploys carry CVE-2026-56854.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
golang.org/x/crypto@v0.24.0
0.55.0

Open the chart page →

3,921

Container images carrying it

3,259 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/prometheus:latest:v3.14.05ce7540c3c00
golang.org/x/crypto@v0.54.0
0.55.0
18
minio/minio:latest:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
golang.org/x/crypto@v0.40.0
0.55.0
16
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
golang.org/x/crypto@v0.36.0
0.55.0
13
grafana/grafana:latestf772d434e8fa
golang.org/x/crypto@v0.52.0
0.55.0
12
library/mongo:8:8.3.8:latest5211c51171f5
golang.org/x/crypto@v0.54.0
0.55.0
12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
golang.org/x/crypto@v0.46.0
0.55.0
12
ethpandaops/xatu:latest74d4cf2c436c
golang.org/x/crypto@v0.52.0
0.55.0
10
jwilder/dockerize:latestf94fb59fb4f6
golang.org/x/crypto@v0.45.0
0.55.0
10
library/mongo:5.0.6-focal8e70544b6c76
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.55.0
10
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
golang.org/x/crypto@v0.52.0
0.55.0
10
bitnami/mongodb:lateste46cffb66274
golang.org/x/crypto@v0.54.0
0.55.0
9
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
golang.org/x/crypto@v0.21.0
0.55.0
9
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.20.042cfe3723a5f
golang.org/x/crypto@v0.54.0
0.55.0
9
prom/pushgateway:v1.4.2a684e7c830a4
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.55.0
8
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
golang.org/x/crypto@v0.27.0
0.55.0
8
quay.io/prometheus/alertmanager:latest:v0.34.0690c7b525f43
golang.org/x/crypto@v0.54.0
0.55.0
8
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
golang.org/x/crypto@v0.18.0
0.55.0
8
quay.io/prometheus/node-exporter:latest:v1.12.11b4e4438faca
golang.org/x/crypto@v0.54.0
0.55.0
8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/crypto@v0.0.0-20200510223506-06a226fb4e37
0.55.0
8
grafana/grafana:13.2.1-distroless3600073f45a9
golang.org/x/crypto@v0.52.0
0.55.0
7
minio/mc:latest:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
golang.org/x/crypto@v0.40.0
0.55.0
7
osixia/openldap:1.5.018742e9c449c
golang.org/x/crypto@v0.0.0-20201012173705-84dcc777aaee
0.55.0
7
wurstmeister/kafka:latest2d4bbf9cc83d
golang.org/x/crypto@v0.0.0-20211202192323-5770296d904e
0.55.0
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/crypto@v0.38.0
0.55.0
7
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
golang.org/x/crypto@v0.27.0
0.55.0
7
quay.io/openshift/origin-cli:latest605eaa5d469c
golang.org/x/crypto@v0.54.0
0.55.0
7
quay.io/prometheus/node-exporter:v1.12.1-distroless8c9bac11973b
golang.org/x/crypto@v0.54.0
0.55.0
7
quay.io/thanos/thanos:v0.37.24ec6df40fdb9
golang.org/x/crypto@v0.28.0
0.55.0
7
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.185108987d044
golang.org/x/crypto@v0.52.0
0.55.0
7
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
golang.org/x/crypto@v0.46.0
0.55.0
7
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
golang.org/x/crypto@v0.12.0
0.55.0
6
grafana/grafana:7.0.3d72946c8e5d5
golang.org/x/crypto@v0.0.0-20200406173513-056763e48d71
0.55.0
6
ghcr.io/quenchworks/images/grafana3ccc56791c8a
golang.org/x/crypto@v0.54.0
0.55.0
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
golang.org/x/crypto@v0.0.0-20211117183948-ae814b36b871
0.55.0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
golang.org/x/crypto@v0.14.0
0.55.0
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
golang.org/x/crypto@v0.0.0-20210322153248-0c34fe9e7dc2
0.55.0
6
quay.io/devtron/kubectl:latest2ad610626658
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.55.0
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
golang.org/x/crypto@v0.7.0
0.55.0
6
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
golang.org/x/crypto@v0.0.0-20210616213533-5ff15b29337e
0.55.0
6
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/crypto@v0.0.0-20191011191535-87dc89f01550
0.55.0
6
quay.io/prometheus/node-exporter:v1.11.10f422f62c15f
golang.org/x/crypto@v0.49.0
0.55.0
6
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
golang.org/x/crypto@v0.42.0
0.55.0
6
quay.io/prometheus/node-exporter:v1.8.1fa7fa12a57ef
golang.org/x/crypto@v0.21.0
0.55.0
6
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
golang.org/x/crypto@v0.36.0
0.55.0
6
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
golang.org/x/crypto@v0.28.0
0.55.0
6
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
golang.org/x/crypto@v0.24.0
0.55.0
6
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.12.0b401fae262a5
golang.org/x/crypto@v0.21.0
0.55.0
6
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
golang.org/x/crypto@v0.51.0
0.55.0
6
keelhq/keel:latest73714afb4443
golang.org/x/crypto@v0.31.0
0.55.0
5
library/mongo:4.44be76f674fc4
golang.org/x/crypto@v0.25.0
0.55.0
5

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.