StackRadar

CVE-2026-56858

Medium

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.003
24th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,609
of 17,821 indexed, latest versions
Container images
5,337
deployed by those charts
Fix available
1 of 2
affected packages

Fix Javascript regexp context tracking in html/template

Carried by container images the latest versions of 4,609 of 17,821 indexed charts deploy, on 5,337 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+193 more1.25.135,337
OSV records
DEBIAN-CVE-2026-56858GO-2026-6091
Also known as
BIT-golang-2026-56858

Charts affected

4,609 by stars
ChartLatestAffected imagesRadar Score
qbittorrentm0nsterrr-qbittorrentVerified publisher7.1.21 of 2See more

qbittorrent m0nsterrr-qbittorrent 7.1.2

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:0.2.066c8d5c270eb
stdlib@go1.26.1
1.25.13

Open the chart page →

764
recyclarrm0nsterrr-recyclarrVerified publisher2.7.21 of 1See more

recyclarr m0nsterrr-recyclarr 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/recyclarr/recyclarr:8.7.26e69e009e1cd
stdlib@go1.26.3
1.25.13

Open the chart page →

241
whoamim11sVerified publisher0.3.01 of 1See more

whoami m11s 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
traefik/whoami:v1.12.0c4717a8d1f01
stdlib@go1.26.5
1.25.13

Open the chart page →

93
kube-benchm9sweeperVerified publisher1.6.01 of 1See more

kube-bench m9sweeper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.176672264accce
stdlib@go1.20.4
1.25.13

Open the chart page →

1,400
m9sweeperm9sweeperVerified publisher1.6.02 of 6See more

m9sweeper m9sweeper 1.6.0

2 of the 6 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
kubesec/kubesec:v2.13.0c0f3b0673578
stdlib@go1.19.7
1.25.13
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
stdlib@go1.21.5
1.25.13

Open the chart page →

9,778
magistralamagistrala-devopsVerified publisher0.16.214 of 42See more

magistrala magistrala-devops 0.16.2

14 of the 42 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
stdlib@go1.21.5
1.25.13
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.25.13
jaegertracing/jaeger-collector:1.53.07f1269222903
stdlib@go1.21.5
1.25.13
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
stdlib@go1.21.5
1.25.13
library/nats:2.10.17-alpineb7752304692b
stdlib@go1.22.4
1.25.13
natsio/nats-box:0.14.31cc420186664
stdlib@go1.22.1
1.25.13
natsio/nats-server-config-reloader:0.15.05b21830a9e9d
stdlib@go1.22.4
1.25.13
prom/alertmanager:v0.28.0d5155cfac40a
stdlib@go1.23.4
1.25.13
timescale/timescaledb:latest-pg12645fd9e92d76
stdlib@go1.18.7
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.79.2193280a33bc1
stdlib@go1.23.4
1.25.13
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.13
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
stdlib@go1.23.4
1.25.13
quay.io/prometheus/pushgateway:v1.11.099392035ae99
stdlib@go1.23.4
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.13

Open the chart page →

24,724
docker-mailservermailserverVerified publisher0.2.654 of 9See more

docker-mailserver mailserver 0.2.65

4 of the 9 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
jeboehm/mailserver-filter:5.0.92e756949e537d
stdlib@go1.24.1
1.25.13
jeboehm/mailserver-mda:5.0.92d03fb7bae0a2
stdlib@go1.24.1
1.25.13
jeboehm/mailserver-mta:5.0.925fb2f31c940d
stdlib@go1.24.1
1.25.13
jeboehm/mailserver-web:5.0.929da13edf5aa8
stdlib@go1.24.1
1.25.13

Open the chart page →

11,486
demoshopmakaira2.4.01 of 4See more

demoshop makaira 2.4.0

1 of the 4 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
library/mysql:8b3b90af2a655
stdlib@go1.24.6
1.25.13

Open the chart page →

4,597
mangadev-hello-worldmangadev0.3.01 of 1See more

mangadev-hello-world mangadev 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
wagnermanganelli164/webserver-hello-world:0.3.0d4ef27a4f180
stdlib@go1.22.5
1.25.13

Open the chart page →

864
novosgamarcusrepo0.1.12 of 2See more

novosga marcusrepo 0.1.1

2 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.13
novosga/novosga:latest34b9acbe6e51
stdlib@go1.26.2
1.25.13

Open the chart page →

3,740
whoamimario-fVerified publisher1.0.11 of 1See more

whoami mario-f 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
containous/whoami:v1.5.07d6a3c8f9147
stdlib@go1.14
1.25.13

Open the chart page →

1,280
consumermarthydavidVerified publisher0.1.61 of 1See more

consumer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-consumer:0.0.4e07644865dd1
stdlib@go1.23.0
1.25.13

Open the chart page →

806
producermarthydavidVerified publisher0.1.61 of 1See more

producer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-producer:0.0.454b242c7bf2b
stdlib@go1.23.0
1.25.13

Open the chart page →

806
ejabberdmartialblog0.3.11 of 1See more

ejabberd martialblog 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/processone/ejabberd:latest5aeb0faa39cf
stdlib@go1.25.12
1.25.13

Open the chart page →

386
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
stdlib@go1.21.5
1.25.13

Open the chart page →

4,172
kruisematrixone-operatorVerified publisher1.8.32 of 2See more

kruise matrixone-operator 1.8.3

2 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
openkruise/kruise-helm-hook:v0.1.0edc7cf9428fd
stdlib@go1.20.14
1.25.13
openkruise/kruise-manager:v1.8.30482722b4e56
stdlib@go1.22.11
1.25.13

Open the chart page →

1,928
matrix-sliding-syncmatrix-sliding-sync0.2.31 of 1See more

matrix-sliding-sync matrix-sliding-sync 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
stdlib@go1.20.14
1.25.13

Open the chart page →

1,607
focalboardmattermostVerified publisher0.5.01 of 1See more

focalboard mattermost 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
mattermost/focalboard:0.6.7f2f987dada52
stdlib@go1.16.4
1.25.13

Open the chart page →

4,017
mattermost-calls-offloadermattermostVerified publisher0.2.11 of 1See more

mattermost-calls-offloader mattermost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
mattermost/calls-offloader:v0.9.0b440b282599e
stdlib@go1.22.7
1.25.13

Open the chart page →

1,423
mattermost-chaos-enginemattermostVerified publisher0.2.01 of 1See more

mattermost-chaos-engine mattermost 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
mattermost/mattermost-app-chaosengine:c153e436268954edd67
stdlib@go1.16.8
1.25.13

Open the chart page →

4,077
mattermost-push-proxymattermostVerified publisher0.14.31 of 1See more

mattermost-push-proxy mattermost 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
mattermost/mattermost-push-proxy:6.3.045c53061c74e
stdlib@go1.21.13
1.25.13

Open the chart page →

897
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
stdlib@go1.24.5
1.25.13

Open the chart page →

4,131
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
stdlib@go1.22.8
1.25.13

Open the chart page →

8,359
mayastormayastorVerified publisher2.12.116 of 31See more

mayastor mayastor 2.12.1

16 of the 31 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
stdlib@go1.24.1
1.25.13
grafana/loki:3.4.258a6c186ce78
stdlib@go1.23.6
1.25.13
library/nats:2.9.17-alpine1a7b320b2942
stdlib@go1.19.9
1.25.13
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
stdlib@go1.19.4
1.25.13
natsio/prometheus-nats-exporter:0.11.031c02aac089a
stdlib@go1.20.3
1.25.13
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
stdlib@go1.24.5
1.25.13
openebs/provisioner-localpv:4.6.099f5116f5cb8
stdlib@go1.25.0
1.25.13
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
stdlib@go1.23.4
1.25.13
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
stdlib@go1.23.4
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
stdlib@go1.23.7
1.25.13
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v5.2.0d5e46da8aff7
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v1.13.28ddd178ba5d0
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.0dd788d79cf4c
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.13

Open the chart page →

21,416
eoloplantmca-eoloplaner0.1.02 of 7See more

eoloplant mca-eoloplaner 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.13
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.13

Open the chart page →

29,895
claude-code-apimcp-helmVerified publisher0.1.11 of 1See more

claude-code-api mcp-helm 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
arbuzov/claude-code-api:0.1.02d7dd8070610
stdlib@go1.23.10
1.25.13

Open the chart page →

4,121
mcp-kubernetesmcp-helmVerified publisher0.2.71 of 1See more

mcp-kubernetes mcp-helm 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
mcp/kubernetes:latest5ffbf7f0a8aa
stdlib@go1.26.3
1.25.13

Open the chart page →

5,725
mdai-event-hubmdai-event-hubVerified publisher0.1.111 of 1See more

mdai-event-hub mdai-event-hub 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
public.ecr.aws/p3k6k6h3/mdai-event-hub:0.1.1118cae836e9c7
stdlib@go1.25.11
1.25.13

Open the chart page →

431
mdai-gatewaymdai-gatewayVerified publisher0.1.101 of 1See more

mdai-gateway mdai-gateway 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
public.ecr.aws/p3k6k6h3/mdai-gateway:0.1.100dfb323978f6
stdlib@go1.25.11
1.25.13

Open the chart page →

418
mdai-hubmdai-hubVerified publisher0.10.17 of 14See more

mdai-hub mdai-hub 0.10.1

7 of the 14 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/jkroepke/kube-webhook-certgen:1.8.38ce13c365c8e
stdlib@go1.26.3
1.25.13
ghcr.io/open-telemetry/opentelemetry-operator/opentelemetry-operator:0.148.0590e50477b76
stdlib@go1.25.8
1.25.13
public.ecr.aws/p3k6k6h3/mdai-event-hub:0.1.1118cae836e9c7
stdlib@go1.25.11
1.25.13
public.ecr.aws/p3k6k6h3/mdai-gateway:0.1.100dfb323978f6
stdlib@go1.25.11
1.25.13
quay.io/prometheus-operator/prometheus-operator:v0.91.09e53e1313921
stdlib@go1.25.9
1.25.13
quay.io/prometheus/node-exporter:v1.11.1-distroless6112664fd761
stdlib@go1.26.1
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.06b2f0b6f2f86
stdlib@go1.26.2
1.25.13

Open the chart page →

4,931
mdai-s3-logs-readermdai-s3-logs-readerVerified publisher0.0.81 of 1See more

mdai-s3-logs-reader mdai-s3-logs-reader 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
public.ecr.aws/decisiveai/mdai-s3-logs-reader:0.0.8d1e35167eec5
stdlib@go1.24.10
1.25.13

Open the chart page →

408
medewerkercatalogusmedewerkercatalogus1.0.01 of 3See more

medewerkercatalogus medewerkercatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/medewerkercatalogus-php:latest1ea5412bed26
stdlib@go1.13.10
1.25.13

Open the chart page →

7,340
pod-cleanupmediamarktsaturn1.2.11 of 1See more

pod-cleanup mediamarktsaturn 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.34.159bafa07ff3a
stdlib@go1.24.6
1.25.13

Open the chart page →

423
cleanuparrmedia-servarrVerified publisher0.19.21 of 1See more

cleanuparr media-servarr 0.19.2

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/cleanuparr/cleanuparr:2.10.68136c3beda7a
stdlib@go1.22.2
1.25.13

Open the chart page →

1,460
sabnzbdmedia-servarrVerified publisher1.6.31 of 3See more

sabnzbd media-servarr 1.6.3

1 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/onedr0p/exportarr:v1.6.160cf3d44aa0b
stdlib@go1.21.6
1.25.13

Open the chart page →

552
tinymediamanagermedia-servarrVerified publisher1.6.31 of 2See more

tinymediamanager media-servarr 1.6.3

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
stdlib@go1.24.4
1.25.13

Open the chart page →

8,278
cameramedia-streaming-meshVerified publisher0.2.51 of 3See more

camera media-streaming-mesh 0.2.5

1 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13

Open the chart page →

18,717
crdsmedia-streaming-meshVerified publisher0.0.11 of 2See more

crds media-streaming-mesh 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ciscolabs/msm-nc:0710202336d02faad958
stdlib@go1.20.5
1.25.13

Open the chart page →

3,738
ingressmedia-streaming-meshVerified publisher0.1.82 of 2See more

ingress media-streaming-mesh 0.1.8

2 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.7.07612338342a1
stdlib@go1.20.1
1.25.13
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230312-helm-chart-4.5.2-28-g66a76079401d181618f27
stdlib@go1.20.1
1.25.13

Open the chart page →

3,303
msmmedia-streaming-meshVerified publisher0.1.175 of 6See more

msm media-streaming-mesh 0.1.17

5 of the 6 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
stdlib@go1.24.0
1.25.13
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
stdlib@go1.24.0
1.25.13
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
stdlib@go1.23.1
1.25.13
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
stdlib@go1.23.1
1.25.13
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
stdlib@go1.22.3
1.25.13

Open the chart page →

11,653
msm-rtspmedia-streaming-meshVerified publisher0.0.21 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13

Open the chart page →

18,717
rtspmedia-streaming-meshVerified publisher0.0.141 of 2See more

rtsp media-streaming-mesh 0.0.14

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13

Open the chart page →

18,717
mediawiki-backupmediawiki-backupVerified publisher0.2.11 of 1See more

mediawiki-backup mediawiki-backup 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/fernferret/mediawiki-backup:v0.2.2bbef381294ed
stdlib@go1.19.5
1.25.13

Open the chart page →

1,919
memgptmemgptVerified publisher0.3.191 of 2See more

memgpt memgpt 0.3.19

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ankane/pgvector:v0.5.1d3a9d8ac27bb
stdlib@go1.18.2
1.25.13

Open the chart page →

5,855
memo-componentmemo-component1.0.01 of 3See more

memo-component memo-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/memo-component-php:latestef77f4c089a1
stdlib@go1.13.10
1.25.13

Open the chart page →

7,521
dex-k8s-authenticatormesosphere1.4.31 of 1See more

dex-k8s-authenticator mesosphere 1.4.3

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
mesosphere/dex-k8s-authenticator:v1.4.1-d2iqf3d9982cc2fd
stdlib@go1.23.0
1.25.13

Open the chart page →

1,020
docker-registrymesosphere2.3.51 of 1See more

docker-registry mesosphere 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
library/registry:2.8.3a3d8aaa63ed8
stdlib@go1.20.8
1.25.13

Open the chart page →

550
flaggermesosphere0.21.02 of 2See more

flagger mesosphere 0.21.0

2 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
weaveworks/flagger:0.19.0a9c2e9df4227
stdlib@go1.13.1
1.25.13
weaveworks/flagger-loadtester:0.9.03cdac6928a63
stdlib@go1.13.1
1.25.13

Open the chart page →

6,050
gatekeepermesosphere0.6.111 of 2See more

gatekeeper mesosphere 0.6.11

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
openpolicyagent/gatekeeper:v3.4.0-rc.1825370bdb3c3
stdlib@go1.16.2
1.25.13

Open the chart page →

3,042
istiomesosphere1.25.11 of 2See more

istio mesosphere 1.25.1

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
stdlib@go1.21.7
1.25.13

Open the chart page →

5,501

Container images carrying it

5,337 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
rancher/local-path-provisioner:v0.0.329289da488b07
stdlib@go1.24.4
1.25.13
1
rancher/local-path-provisioner:v0.0.309b9148811700
stdlib@go1.23.1
1.25.13
1
rancher/local-path-provisioner:v0.0.20d5999b20a1b1
stdlib@go1.16.6
1.25.13
1
rancher/local-path-provisioner:v0.0.22e34c88ae0aff
stdlib@go1.16.15
1.25.13
1
rancher/local-path-provisioner:v0.0.37e757967a5ec3
stdlib@go1.26.5
1.25.13
1
rancher/mirrored-cloud-provider-vsphere:v1.31.1febfd0517838
stdlib@go1.22.8
1.25.13
1
rancher/mirrored-kube-vip-kube-vip-iptables:v1.2.389c3f898ac5a
stdlib@go1.26.5
1.25.13
1
rancher/mirrored-longhornio-csi-attacher:v4.11.0-20260428fe417c28a6b8
stdlib@go1.25.9
1.25.13
1
rancher/mirrored-longhornio-csi-node-driver-registrar:v2.16.0-20260428e82a8c8f800d
stdlib@go1.25.9
1.25.13
1
rancher/mirrored-longhornio-csi-provisioner:v5.3.0-202604289e519a21a77c
stdlib@go1.25.9
1.25.13
1
rancher/mirrored-longhornio-csi-resizer:v2.1.0-2026042841cb674d1154
stdlib@go1.25.9
1.25.13
1
rancher/mirrored-longhornio-csi-snapshotter:v8.5.0-202604281975fac3890f
stdlib@go1.25.9
1.25.13
1
rancher/nginx-ingress-controller:v1.14.5-hardened26cbc1e932b5b
stdlib@go1.24.13
1.25.13
1
rancher/pushprox-client:v0.1.0-rancher2-clienta41cd716c412
stdlib@go1.16.4
1.25.13
1
rancher/pushprox-proxy:v0.1.0-rancher2-proxy3126395b966c
stdlib@go1.16.4
1.25.13
1
rancher/system-upgrade-controller:v0.19.234fa058fe453
stdlib@go1.25.8
1.25.13
1
rancher/system-upgrade-controller:v0.18.09813f85653c8
stdlib@go1.25.3
1.25.13
1
raspbernetes/csi-node-driver-registrar:2.0.1a552705225fd
stdlib@go1.13.15
1.25.13
1
rayselfs/aws-ec2-runtime-checker:v0.1.5562e5b2f81ce
stdlib@go1.24.11
1.25.13
1
rclone/rclone:1.63.008e1af3c8814
stdlib@go1.20.5
1.25.13
1
rclone/rclone:1.57.01e6eeabddc01
stdlib@go1.17.2
1.25.13
1
rclone/rclone:1.66.0a693c46a6b8b
stdlib@go1.22.1
1.25.13
1
rclone/rclone:1.56.0f2fc45c8bc57
stdlib@go1.16.6
1.25.13
1
reallibrephotos/librephotos-frontend:1.0.358cdf5e93471
stdlib@go1.24.13
1.25.13
1
reaper99/recipya:v1.2.27f7ec3aeb88c
stdlib@go1.22.0
1.25.13
1
redislabs/operator:8.0.18-119078e713bb6a
stdlib@go1.26.1
1.25.13
1
redislabs/operator:7.4.2-2ecb101af0506
stdlib@go1.21.5
1.25.13
1
redislabs/redisearch:2.4.1433561794c5c8
stdlib@go1.16.7
1.25.13
1
redpandadata/kminion:v2.3.256da99e8d0d3
stdlib@go1.26.3
1.25.13
1
redpandadata/kminion:v2.3.0c05fa976428e
stdlib@go1.25.8
1.25.13
1
regclient/regsync:v0.8.33d8d8e40afb7
stdlib@go1.24.2
1.25.13
1
replicated/replicated-sdk:1.0.0-beta.318751b4963250
stdlib@go1.23.2
1.25.13
1
reportportal/k8s-wait-for:latest06cdf299b397
stdlib@go1.26.4
1.25.13
1
reportportal/migrations:5.15.4464468240d7b
stdlib@go1.24.6
1.25.13
1
reportportal/migrations:5.7.0da5d8e1395fe
stdlib@go1.13.6
1.25.13
1
reportportal/service-index:5.0.112b27a2d7a87d
stdlib@go1.17.1
1.25.13
1
reportportal/service-index:5.15.1b1860ed33071
stdlib@go1.26.2
1.25.13
1
restic/restic:0.19.1136600b6ff68
stdlib@go1.26.4
1.25.13
1
restic/restic:0.15.2579e4e6a4931
stdlib@go1.19.8
1.25.13
1
restic/rest-server:0.14.0d2aff06f47eb
stdlib@go1.24.3
1.25.13
1
resurfaceio/resurface:3.7.84d5cda2f64109
stdlib@go1.23.0
1.25.13
1
rezachalak/bzen-mongo:1.0.034f694325191
stdlib@go1.19.12
1.25.13
1
ribbybibby/s3-exporter:v0.5.0998184c51a00
stdlib@go1.15.15
1.25.13
1
richardjennings/opa-nginx:0.0.366424aca125d
stdlib@go1.20.5
1.25.13
1
rimusz/security-sample-app:0.2.0b9a178ca76ef
stdlib@go1.14.4
1.25.13
1
robiningelbrecht/strava-statistics:v5.0.040842cdfd616
stdlib@go1.26.3
1.25.13
1
robjuz/postgresql-nominatim:latest805c7bab76df
stdlib@go1.16.5
1.25.13
1
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.25.13
1
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.25.13
1
robustadev/kubewatch:v2.9.00457a51e36e8
stdlib@go1.23.1
1.25.13
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.