StackRadar

CVE-2026-56855

Unscored

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.004
31st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,042
of 17,792 indexed, latest versions
Container images
3,418
deployed by those charts
Fix available
2 of 2
affected packages

Prevent DoS on deadlocked established channel in golang.org/x/crypto/ssh

Carried by container images the latest versions of 3,042 of 17,792 indexed charts deploy, on 3,418 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+157 more0.56.03,418
kubernetes-1.34apk1.34.11-r21.34.11-r71
OSV records
CGA-3gvh-4gf5-5579GO-2026-6355
Also known as
CGA-3w88-m6vh-6c8c, CGA-cvgr-fgxm-pcwv, CGA-fhvr-vpmj-c8hw, CGA-h6hp-wj28-7xmg, CGA-p66m-c5fj-p2hc, CGA-q833-3p5v-56mv, CGA-qr7w-fvfc-56ph, CGA-w898-ghx8-g76x, CGA-wfr9-2vq9-5w72, CGA-wv8c-j2xv-q9p4, CGA-x94j-59r9-mmcv
Trending
Rank 40 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

3,042 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

3,418 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/appscode/kube-rbac-proxy:v0.11.00df4ae70e3bd
golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac9
0.56.0
2
ghcr.io/appscode/license-proxyserver:v0.1.1e192ad567e0b
golang.org/x/crypto@v0.46.0
0.56.0
2
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
golang.org/x/crypto@v0.46.0
0.56.0
2
ghcr.io/astriaorg/astria-geth:latest4249e403225a
golang.org/x/crypto@v0.24.0
0.56.0
2
ghcr.io/bank-vaults/vault-operator:v1.24.06f622c5fb8a9
golang.org/x/crypto@v0.52.0
0.56.0
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
golang.org/x/crypto@v0.37.0
0.56.0
2
ghcr.io/buoyantio/prometheus:v2.55.12659f4c2ebb7
golang.org/x/crypto@v0.26.0
0.56.0
2
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
golang.org/x/crypto@v0.41.0
0.56.0
2
ghcr.io/chaos-mesh/chaos-coredns:v0.2.838bfdf5e3774
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.56.0
2
ghcr.io/chaos-mesh/chaos-coredns:v0.2.678dc63bc5b89
golang.org/x/crypto@v0.0.0-20210220033148-5ea612d1eb83
0.56.0
2
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.1b5210df46c05
golang.org/x/crypto@v0.35.0
0.56.0
2
ghcr.io/cosmos/gaia:v25.1.0f115777d1112
golang.org/x/crypto@v0.38.0
0.56.0
2
ghcr.io/dergeberl/kubeteach:v0.2.3-alphacf4428a3c79e
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.56.0
2
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
golang.org/x/crypto@v0.0.0-20201221181555-eec23a3978ad
0.56.0
2
ghcr.io/fluxcd/flux-cli:v2.9.1020edbaee890
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/fluxcd/helm-controller:v1.6.2e17ab0e5885d
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/fluxcd/source-controller:v1.9.22b8d06650a1b
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/glassflow/glassflow-etl-k8s-operator:v3.2.1e70364e88629
golang.org/x/crypto@v0.41.0
0.56.0
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
golang.org/x/crypto@v0.22.0
0.56.0
2
ghcr.io/gotify/server:3.1.144fc5bbd1c06
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/hatchet-dev/hatchet/hatchet-engine:v0.107.0cc02738ad0dc
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/headlamp-k8s/headlamp:v0.45.0db3f0e0fc58d
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/jont828/cluster-api-visualizer:v1.5.0678ba6833297
golang.org/x/crypto@v0.40.0
0.56.0
2
ghcr.io/juanfont/headscale:0.29.3:v0.29.30e7f1c6e4ce6
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/juniorjpdj/containers/openssl-kubectl:1.36.1-r358afba209ea0
golang.org/x/crypto@v0.46.0
0.56.0
2
ghcr.io/keptn/metrics-operator:v2.1.0dc48471c7cf8
golang.org/x/crypto@v0.36.0
0.56.0
2
ghcr.io/kluster-manager/cluster-auth:v0.5.1fba6fb872281
golang.org/x/crypto@v0.46.0
0.56.0
2
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
golang.org/x/crypto@v0.14.0
0.56.0
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
golang.org/x/crypto@v0.36.0
0.56.0
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
golang.org/x/crypto@v0.36.0
0.56.0
2
ghcr.io/opencost/opencost:1.121.2de2784434527
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
golang.org/x/crypto@v0.9.0
0.56.0
2
ghcr.io/projectcapsule/capsule:v0.14.6ac02588e65e8
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/projectcapsule/capsule-proxy:v0.14.17c90292e3172
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/project-zot/zot:v2.1.216b69512c00dc
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/quenchworks/images/alertmanager7131b1e72afc
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/quenchworks/images/coolify-realtimef128e512c9c0
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/quenchworks/images/loki97bbf905a6c1
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/quenchworks/images/otel-collector695e7fd14483
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/quenchworks/images/prometheuse9037c190bc1
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/quenchworks/images/tempo9e889ec33f96
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/sigstore/fulcio:v1.8.8ef72cf56c64b
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/sigstore/rekor/rekor-server:v1.5.4100d793d68d0
golang.org/x/crypto@v0.55.0
0.56.0
2
ghcr.io/sigstore/scaffolding/createcerts7f59f7c08d1a
golang.org/x/crypto@v0.43.0
0.56.0
2
ghcr.io/spiffe/oidc-discovery-provider:1.15.3bb95f13c2b4e
golang.org/x/crypto@v0.54.0
0.56.0
2
ghcr.io/spiffe/spire-server:1.15.34082f30d3e0d
golang.org/x/crypto@v0.54.0
0.56.0
2
ghcr.io/stashed/stash-ui-server:v0.23.047cffbc65700
golang.org/x/crypto@v0.36.0
0.56.0
2
ghcr.io/voyagermesh/gateway:v1.8.24237fd16a3cb
golang.org/x/crypto@v0.53.0
0.56.0
2
ghcr.io/wg-easy/wg-easy:15:15.4.00e7bc9d34e86
golang.org/x/crypto@v0.37.0
0.56.0
2
public.ecr.aws/cloudnatix/llmariner/api-usage-cleaner:1.16.0d47f43484055
golang.org/x/crypto@v0.36.0
0.56.0
2

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.