StackRadar

CVE-2026-56855

Unscored

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.004
32nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,002
of 17,803 indexed, latest versions
Container images
3,376
deployed by those charts
Fix available
1 of 1
affected package

Prevent DoS on deadlocked established channel in golang.org/x/crypto/ssh

Carried by container images the latest versions of 3,002 of 17,803 indexed charts deploy, on 3,376 images.

Affected packageAffected versionsFixed inImages
golang.org/x/cryptogolangv0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+157 more0.56.03,376
OSV records
GO-2026-6355

Charts affected

3,002 by stars
ChartLatestAffected imagesRadar Score
kubemodwiremindVerified publisher0.1.51 of 2See more

kubemod wiremind 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.13.0cadca39288ad
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.56.0

Open the chart page →

3,030
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
golang.org/x/crypto@v0.51.0
0.56.0

Open the chart page →

8,330
wraftwraft0.1.122 of 9See more

wraft wraft 0.1.12

2 of the 9 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
minio/mc:latesta7fe349ef4bd
golang.org/x/crypto@v0.40.0
0.56.0
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
golang.org/x/crypto@v0.9.0
0.56.0

Open the chart page →

10,165
redis-db-assignment-operatorwyrihaximusnetVerified publisher1.0.61 of 1See more

redis-db-assignment-operator wyrihaximusnet 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/kubernetes-redis-db-assignment-operator:v1.0.831060be60bec
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.56.0

Open the chart page →

2,235
heistyouniqx-ossVerified publisher1.1.2091 of 1See more

heist youniqx-oss 1.1.209

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
quay.io/youniqx/heist:v1.1.209c43b3a9d98ae
golang.org/x/crypto@v0.26.0
0.56.0

Open the chart page →

806
yugawareyugabyteVerified publisher2026.1.11 of 3See more

yugaware yugabyte 2026.1.1

1 of the 3 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
prom/prometheus:v3.12.069f524141883
golang.org/x/crypto@v0.51.0
0.56.0

Open the chart page →

2,658
zcash-stackzcashVerified publisher0.4.51 of 2See more

zcash-stack zcash 0.4.5

1 of the 2 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
electriccoinco/lightwalletd:v0.5.42ae3a551e111
golang.org/x/crypto@v0.52.0
0.56.0

Open the chart page →

2,934
tailscale-relayzeet0.1.51 of 1See more

tailscale-relay zeet 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
zeetdev/tailscale-relay:v1.24.21967aa2840b6
golang.org/x/crypto@v0.0.0-20220427172511-eb4f295cb31f
0.56.0

Open the chart page →

2,165
memoszekker6Verified publisher0.55.01 of 1See more

memos zekker6 0.55.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
neosmemo/memos:0.30.071a5b4738d1b
golang.org/x/crypto@v0.50.0
0.56.0

Open the chart page →

561
mikochizer0tonin1.11.01 of 1See more

mikochi zer0tonin 1.11.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
zer0tonin/mikochi:1.11.009872bae1554
golang.org/x/crypto@v0.53.0
0.56.0

Open the chart page →

1,005
jenkinsaditisingh-jenkins1.0.01 of 1See more

jenkins aditisingh-jenkins 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
golang.org/x/crypto@v0.36.0
0.56.0

Open the chart page →

2,498
gobackupadnoctemVerified publisher0.4.01 of 1See more

gobackup adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
huacnlee/gobackup:v3.1.1560be93229a5
golang.org/x/crypto@v0.41.0
0.56.0

Open the chart page →

1,836
gotenbergadnoctemVerified publisher0.5.01 of 1See more

gotenberg adnoctem 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.37.0f29984bd1e22
golang.org/x/crypto@v0.54.0
0.56.0

Open the chart page →

5,972
ntfyadnoctemVerified publisher0.4.01 of 1See more

ntfy adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
binwiederhier/ntfy:v2.28.06ef4b819f722
golang.org/x/crypto@v0.55.0
0.56.0

Open the chart page →

165
popeyeadnoctemVerified publisher0.3.01 of 1See more

popeye adnoctem 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
golang.org/x/crypto@v0.32.0
0.56.0

Open the chart page →

1,197
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
golang.org/x/crypto@v0.51.0
0.56.0

Open the chart page →

30,398
adresserviceadresservice1.1.01 of 5See more

adresservice adresservice 1.1.0

1 of the 5 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.56.0

Open the chart page →

7,456
moonaerokube1.1.372 of 3See more

moon aerokube 1.1.37

2 of the 3 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
aerokube/moon:1.9.17da76ca51220d
golang.org/x/crypto@v0.23.0
0.56.0
aerokube/selenoid-ui:1.10.113f3e299509fd
golang.org/x/crypto@v0.9.0
0.56.0

Open the chart page →

2,472
aerospike-kubernetes-operatoraerospike4.5.01 of 1See more

aerospike-kubernetes-operator aerospike 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
aerospike/aerospike-kubernetes-operator:4.5.070a9eeb991b8
golang.org/x/crypto@v0.51.0
0.56.0

Open the chart page →

624
aerospike-backup-serviceaerospike-helmVerified publisher2.0.131 of 1See more

aerospike-backup-service aerospike-helm 2.0.13

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
aerospike/aerospike-backup-service:3.5.1be40d709c583
golang.org/x/crypto@v0.48.0
0.56.0

Open the chart page →

634
agendaserviceagendaservice1.0.01 of 3See more

agendaservice agendaservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
conduction/agendaservice-php:latest9cfeeb6c7c20
golang.org/x/crypto@v0.0.0-20200414173820-0848c9571904
0.56.0

Open the chart page →

7,218
agentkube-operatoragentkube-operator0.3.01 of 1See more

agentkube-operator agentkube-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
golang.org/x/crypto@v0.7.0
0.56.0

Open the chart page →

1,723
mt-channel-brokerahhhhVerified publisher0.1.03 of 3See more

mt-channel-broker ahhhh 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/filterdigest-pinnedd675f211a40f
golang.org/x/crypto@v0.28.0
0.56.0
gcr.io/knative-releases/knative.dev/eventing/cmd/broker/ingressdigest-pinnedec4b544499ba
golang.org/x/crypto@v0.28.0
0.56.0
gcr.io/knative-releases/knative.dev/eventing/cmd/mtchannel_brokerdigest-pinned395f4ff1bd34
golang.org/x/crypto@v0.28.0
0.56.0

Open the chart page →

2,628
airbyteairbyte-v2Verified publisher2.3.02 of 10See more

airbyte airbyte-v2 2.3.0

2 of the 10 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
airbyte/minio:RELEASE.2023-11-20T22-40-07Zfdae972eaf0e
golang.org/x/crypto@v0.14.0
0.56.0
temporalio/auto-setup:1.27.2b44cbfeb43db
golang.org/x/crypto@v0.36.0
0.56.0

Open the chart page →

11,785
airports-kafkaairports-kafka0.1.01 of 2See more

airports-kafka airports-kafka 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
golang.org/x/crypto@v0.0.0-20211202192323-5770296d904e
0.56.0

Open the chart page →

4,558
akeyless-csi-providerakeyless-services-helmVerified publisher1.0.41 of 1See more

akeyless-csi-provider akeyless-services-helm 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
akeyless/akeyless-csi-provider:lateste48bddc5dd72
golang.org/x/crypto@v0.52.0
0.56.0

Open the chart page →

314
akeyless-gatewayakeyless-services-helmVerified publisher3.5.61See more

akeyless-gateway akeyless-services-helm 3.5.6

1 container image this version deploys carries CVE-2026-56855.

Container imageDigestPackageFixed in
akeyless/gateway:5.4.0d4768a9b089c
golang.org/x/crypto@v0.54.0
0.56.0

Open the chart page →

akeyless-secrets-injectionakeyless-services-helmVerified publisher2.3.01 of 1See more

akeyless-secrets-injection akeyless-services-helm 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
akeyless/k8s-webhook-server:0.39.0996cd9afb3b4
golang.org/x/crypto@v0.52.0
0.56.0

Open the chart page →

394
aktoakto0.2.01 of 7See more

akto akto 0.2.0

1 of the 7 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/crypto@v0.31.0
0.56.0

Open the chart page →

13,737
akto-ai-guardrails-v2akto0.3.01 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

1 of the 6 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
aktosecurity/guardrails-service:2.14.8a6218d07e84f
golang.org/x/crypto@v0.52.0
0.56.0

Open the chart page →

9,591
akto-hybrid-redactakto1.44.71See more

akto-hybrid-redact akto 1.44.7

1 container image this version deploys carries CVE-2026-56855.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/crypto@v0.31.0
0.56.0

Open the chart page →

akto-k8s-agentakto0.1.21 of 1See more

akto-k8s-agent akto 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
aktosecurity/mirror-api-logging:k8s_agentc1313b1ff2ed
golang.org/x/crypto@v0.52.0
0.56.0

Open the chart page →

269
akto-k8s-ebpfakto0.1.31 of 1See more

akto-k8s-ebpf akto 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
aktosecurity/mirror-api-logging:k8s_ebpffcf8be10bead
golang.org/x/crypto@v0.36.0
0.56.0

Open the chart page →

838
akto-k8s-ebpf-openshiftakto0.1.11 of 1See more

akto-k8s-ebpf-openshift akto 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/mirror-api-logging:k8s_ebpf_core_impd94ce715f051
golang.org/x/crypto@v0.49.0
0.56.0

Open the chart page →

1,279
akto-mini-testingakto1.45.71 of 5See more

akto-mini-testing akto 1.45.7

1 of the 5 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/keelhq-keel:akto_v1.0.01eb61443d68e
golang.org/x/crypto@v0.31.0
0.56.0

Open the chart page →

6,600
akto-mini-testing-kafkaakto1.42.11 of 5See more

akto-mini-testing-kafka akto 1.42.1

1 of the 5 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/crypto@v0.31.0
0.56.0

Open the chart page →

6,406
akto-protectionakto0.1.01 of 4See more

akto-protection akto 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/crypto@v0.31.0
0.56.0

Open the chart page →

11,296
akto-regional-setupakto1.3.11 of 9See more

akto-regional-setup akto 1.3.1

1 of the 9 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
aktosecurity/guardrails-service:2.14.8a6218d07e84f
golang.org/x/crypto@v0.52.0
0.56.0

Open the chart page →

7,918
akto-testing-db-layerakto1.42.171 of 2See more

akto-testing-db-layer akto 1.42.17

1 of the 2 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/crypto@v0.31.0
0.56.0

Open the chart page →

4,865
gostalekcVerified publisher0.3.01 of 1See more

gost alekc 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
gogost/gost:3.3.0f7a958c45192
golang.org/x/crypto@v0.54.0
0.56.0

Open the chart page →

209
smokeping-exporteralekcVerified publisher0.3.01 of 1See more

smokeping-exporter alekc 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
quay.io/superq/smokeping-prober:v0.12.02524b895bdae
golang.org/x/crypto@v0.51.0
0.56.0

Open the chart page →

298
vault-operatoralekcVerified publisher1.26.11 of 1See more

vault-operator alekc 1.26.1

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
ghcr.io/bank-vaults/vault-operator:v1.24.06f622c5fb8a9
golang.org/x/crypto@v0.52.0
0.56.0

Open the chart page →

542
quialexmorbo-quiVerified publisher0.1.01 of 1See more

qui alexmorbo-qui 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
ghcr.io/autobrr/qui:v1.14.110b7945d4f09
golang.org/x/crypto@v0.47.0
0.56.0

Open the chart page →

1,617
wireguardalexpressoVerified publisher0.1.31 of 2See more

wireguard alexpresso 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
linuxserver/wireguard:latestbf03578ef731
golang.org/x/crypto@v0.45.0
0.56.0

Open the chart page →

786
gotifyalexvanderberkelVerified publisher0.7.11 of 1See more

gotify alexvanderberkel 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
ghcr.io/gotify/server:3.1.144fc5bbd1c06
golang.org/x/crypto@v0.53.0
0.56.0

Open the chart page →

320
alluredeckalluredeckVerified publisher0.24.01 of 2See more

alluredeck alluredeck 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
ghcr.io/mkutlak/alluredeck-api:0.41.0fa429df90c68
golang.org/x/crypto@v0.53.0
0.56.0

Open the chart page →

1,278
gitlab-code-review-notifieralmorgvVerified publisher0.1.21 of 2See more

gitlab-code-review-notifier almorgv 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
almorgv/gitlab-code-review-notifier:0.1.25f2a7d2b44d8
golang.org/x/crypto@v0.0.0-20200302210943-78000ba7a073
0.56.0

Open the chart page →

2,116
glancealpineworks0.1.11 of 1See more

glance alpineworks 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
glanceapp/glance:v0.8.46df86a7e8868
golang.org/x/crypto@v0.38.0
0.56.0

Open the chart page →

1,006
katalogalpineworks0.1.22 of 5See more

katalog alpineworks 0.1.2

2 of the 5 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/katalog-backend:v1.0.77e7a26393cd1
golang.org/x/crypto@v0.27.0
0.56.0
ghcr.io/alpineworks/katalog-migrations:v1.0.562c44a384e13
golang.org/x/crypto@v0.27.0
0.56.0

Open the chart page →

4,542
versitygwalpineworks0.1.21 of 1See more

versitygw alpineworks 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-56855.

Container imageDigestPackageFixed in
versity/versitygw:v1.0.145192635d0353
golang.org/x/crypto@v0.38.0
0.56.0

Open the chart page →

1,115

Container images carrying it

3,376 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/e2e-test-images/agnhost:2.40af7e3857d877
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.56.0
1
registry.k8s.io/etcd:3.6.4-0e36c08168342
golang.org/x/crypto@v0.36.0
0.56.0
1
registry.k8s.io/external-dns/external-dns:v0.22.05fdcaf7deb5c
golang.org/x/crypto@v0.55.0
0.56.0
1
registry.k8s.io/kube-apiserver:v1.25.0f6902791fb9a
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.56.0
1
registry.k8s.io/kubebuilder/kube-rbac-proxy:v0.16.0771a9a173e03
golang.org/x/crypto@v0.19.0
0.56.0
1
registry.k8s.io/kube-controller-manager:v1.25.066ce7d460e53
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.56.0
1
registry.k8s.io/kube-scheduler:v1.26.110684e23172d9
golang.org/x/crypto@v0.14.0
0.56.0
1
registry.k8s.io/kube-scheduler:v1.28.73ae5620a33bb
golang.org/x/crypto@v0.16.0
0.56.0
1
registry.k8s.io/kube-scheduler:v1.28.1146cf7475c8da
golang.org/x/crypto@v0.21.0
0.56.0
1
registry.k8s.io/kube-scheduler:v1.25.09330c53feca7
golang.org/x/crypto@v0.0.0-20220315160706-3147a52a75dd
0.56.0
1
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.05658d0011a41
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.56.0
1
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.8.2ec5732e28f15
golang.org/x/crypto@v0.0.0-20221012134737-56aed061732a
0.56.0
1
registry.k8s.io/kwok/kwok:v0.8.06d25aa8fbdfe
golang.org/x/crypto@v0.48.0
0.56.0
1
registry.k8s.io/metrics-server/metrics-server:v0.7.01c0419326500
golang.org/x/crypto@v0.18.0
0.56.0
1
registry.k8s.io/metrics-server/metrics-server:v0.7.1db3800085a09
golang.org/x/crypto@v0.18.0
0.56.0
1
registry.k8s.io/nfd/node-feature-discovery:v0.16.619ebca8b3804
golang.org/x/crypto@v0.23.0
0.56.0
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
golang.org/x/crypto@v0.25.0
0.56.0
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
golang.org/x/crypto@v0.46.0
0.56.0
1
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.11.1e6a43c83ab16
golang.org/x/crypto@v0.1.0
0.56.0
1
registry.k8s.io/provider-os/openstack-cloud-controller-manager:v1.36.0e354e40db2d0
golang.org/x/crypto@v0.50.0
0.56.0
1
registry.k8s.io/sig-storage/csi-attacher:v4.10.0be59d0556508
golang.org/x/crypto@v0.38.0
0.56.0
1
registry.k8s.io/sig-storage/csi-attacher:v4.13.0d1a26170efed
golang.org/x/crypto@v0.55.0
0.56.0
1
registry.k8s.io/sig-storage/csi-resizer:v2.0.04a95d94e57ad
golang.org/x/crypto@v0.37.0
0.56.0
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
golang.org/x/crypto@v0.36.0
0.56.0
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
golang.org/x/crypto@v0.53.0
0.56.0
1
registry.k8s.io/sig-storage/nfs-subdir-external-provisioner:v4.0.03ce0fdba4d8e
golang.org/x/crypto@v0.0.0-20200220183623-bac4c82f6975
0.56.0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.