StackRadar

CVE-2026-56858

Medium

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.003
24th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,505
of 17,792 indexed, latest versions
Container images
5,256
deployed by those charts
Fix available
1 of 2
affected packages

Fix Javascript regexp context tracking in html/template

Carried by container images the latest versions of 4,505 of 17,792 indexed charts deploy, on 5,256 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.135,256
OSV records
DEBIAN-CVE-2026-56858GO-2026-6091
Also known as
BIT-golang-2026-56858

Charts affected

4,505 by stars
ChartLatestAffected imagesRadar Score
clairclair-helmVerified publisher0.12.02 of 3See more

clair clair-helm 0.12.0

2 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.13
quay.io/projectquay/clair:4.9.023329c3368e4
stdlib@go1.24.11
1.25.13

Open the chart page →

1,625
calico-cniclastixVerified publisher3.28.13 of 3See more

calico-cni clastix 3.28.1

3 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
calico/cni:v3.28.1e486870cfde8
stdlib@go1.22.5
1.25.13
calico/kube-controllers:v3.28.1eadb3a25109a
stdlib@go1.22.5
1.25.13
calico/node:v3.28.1d8c644a8a3ee
stdlib@go1.22.5
1.25.13

Open the chart page →

3,071
capi-kamaji-vsphere-fullclastixVerified publisher1.0.19 of 9See more

capi-kamaji-vsphere-full clastix 1.0.1

9 of the 9 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
registry.k8s.io/autoscaling/cluster-autoscaler:v1.33.06ef10d108e0e
stdlib@go1.24.4
1.25.13
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.32.0f9f4dfd733ab
stdlib@go1.23.0
1.25.13
registry.k8s.io/csi-vsphere/driver:v3.4.0f5349a8ae3f3
stdlib@go1.22.12
1.25.13
registry.k8s.io/csi-vsphere/syncer:v3.4.0179ebf195595
stdlib@go1.22.12
1.25.13
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v1.13.28ddd178ba5d0
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.15f4bb469fec5
stdlib@go1.23.6
1.25.13
registry.k8s.io/sig-storage/livenessprobe:v2.15.02c5f9dc4ea5a
stdlib@go1.23.1
1.25.13

Open the chart page →

5,996
capsule-rancher-addonclastixVerified publisher0.1.15 of 5See more

capsule-rancher-addon clastix 0.1.1

5 of the 5 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
clastix/capsule-rancher-addon:v0.1.143d301afbca8
stdlib@go1.19.2
1.25.13
quay.io/jetstack/cert-manager-cainjector:v1.11.05c3eb25b0854
stdlib@go1.19.5
1.25.13
quay.io/jetstack/cert-manager-controller:v1.11.0d429b6d696e0
stdlib@go1.19.5
1.25.13
quay.io/jetstack/cert-manager-ctl:v1.11.074611761f052
stdlib@go1.19.5
1.25.13
quay.io/jetstack/cert-manager-webhook:v1.11.06730d96fc382
stdlib@go1.19.5
1.25.13

Open the chart page →

7,126
kamajiclastixVerified publisher0.0.0+latest3 of 4See more

kamaji clastix 0.0.0+latest

3 of the 4 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
clastix/kamaji:latesta7c5d108810b
stdlib@go1.26.5
1.25.13
quay.io/coreos/etcd:v3.5.628cb0630cb85
stdlib@go1.16.15
1.25.13
quay.io/coreos/etcd:v3.6.12702d7b4881c6
stdlib@go1.25.10
1.25.13

Open the chart page →

4,653
kamaji-consoleclastixVerified publisher0.1.31 of 1See more

kamaji-console clastix 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
stdlib@go1.23.7
1.25.13

Open the chart page →

2,763
kamaji-etcdclastixVerified publisher0.17.03 of 4See more

kamaji-etcd clastix 0.17.0

3 of the 4 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
cfssl/cfssl:latestc9018c2ddf0b
stdlib@go1.20.14
1.25.13
quay.io/coreos/etcd:v3.5.628cb0630cb85
stdlib@go1.16.15
1.25.13
quay.io/coreos/etcd:v3.6.12702d7b4881c6
stdlib@go1.25.10
1.25.13

Open the chart page →

12,075
local-path-provisionerclastixVerified publisher0.0.301 of 1See more

local-path-provisioner clastix 0.0.30

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.309b9148811700
stdlib@go1.23.1
1.25.13

Open the chart page →

1,209
vcloud-csiclastixVerified publisher1.6.04 of 5See more

vcloud-csi clastix 1.6.0

4 of the 5 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.25.13
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
stdlib@go1.17.3
1.25.13

Open the chart page →

7,414
cloudflare-ddnsclouddrove0.1.51 of 1See more

cloudflare-ddns clouddrove 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
favonia/cloudflare-ddns:161013368c8f9
stdlib@go1.26.4
1.25.13

Open the chart page →

68
cloudflared-tunnelclouddrove0.1.41 of 1See more

cloudflared-tunnel clouddrove 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2025.8.0eb5c9324efe3
stdlib@go1.24.4
1.25.13

Open the chart page →

1,775
cronjobclouddrove1.0.11 of 1See more

cronjob clouddrove 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
stdlib@go1.26.5
1.25.13

Open the chart page →

749
kube-acp-stackcloudentity2.28.03 of 7See more

kube-acp-stack cloudentity 2.28.0

3 of the 7 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
bitnamilegacy/redis-cluster:7.4.3-debian-12-r0a53d023fdfaf
stdlib@go1.23.8
1.25.13
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
stdlib@go1.21.13
1.25.13
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
stdlib@go1.13.14
1.25.13

Open the chart page →

21,064
openbankingcloudentity0.1.96 of 6See more

openbanking cloudentity 0.1.9

6 of the 6 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
stdlib@go1.15.14
1.25.13
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
stdlib@go1.15.14
1.25.13
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
stdlib@go1.15.2
1.25.13
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
stdlib@go1.16.6
1.25.13
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
stdlib@go1.15.2
1.25.13
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
stdlib@go1.15.2
1.25.13

Open the chart page →

18,040
cloudflare-ddns-updatecloudflare-ddns-update0.1.21 of 1See more

cloudflare-ddns-update cloudflare-ddns-update 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
stdlib@go1.22.4
1.25.13

Open the chart page →

1,338
cloudflare-dyndnscloudflare-dyndnsVerified publisher1.1.01 of 1See more

cloudflare-dyndns cloudflare-dyndns 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/msueberkrueb/cloudflare-dyndns:1.0.0e5c945a3b000
stdlib@go1.25.1
1.25.13

Open the chart page →

307
cloudflare-tunnel-ingress-controllercloudflare-tunnel-ingress-controller0.2.31 of 1See more

cloudflare-tunnel-ingress-controller cloudflare-tunnel-ingress-controller 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/oliverbaehler/cloudflare-tunnel-ingress-controller:0.2.30aec31e36d95
stdlib@go1.23.7
1.25.13

Open the chart page →

438
cloudfront-tenant-operatorcloudfront-tenant-operatorVerified publisher0.3.01 of 1See more

cloudfront-tenant-operator cloudfront-tenant-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/dsp0x4/cloudfront-tenant-operator:0.3.0eb40174cd20d
stdlib@go1.26.2
1.25.13

Open the chart page →

276
hcloud-csi-mgmtcloudhippieVerified publisher2.10.02 of 5See more

hcloud-csi-mgmt cloudhippie 2.10.0

2 of the 5 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
stdlib@go1.26.3
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v2.2.1ea1d25e23479
stdlib@go1.26.3
1.25.13

Open the chart page →

597
mercurecloudnativeapp1.0.21 of 1See more

mercure cloudnativeapp 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
dunglas/mercure:v0916834e49961
stdlib@go1.26.3
1.25.13

Open the chart page →

1,098
cp4d-deployercloud-native-toolkit1.0.01 of 1See more

cp4d-deployer cloud-native-toolkit 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
stdlib@go1.19.10
1.25.13

Open the chart page →

25,515
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
stdlib@go1.17.5
1.25.13

Open the chart page →

6,704
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
stdlib@go1.18.1
1.25.13

Open the chart page →

6,930
ocs-operatorcloud-native-toolkit0.2.41 of 1See more

ocs-operator cloud-native-toolkit 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.25.13

Open the chart page →

369
pact-brokercloud-native-toolkit0.3.01 of 1See more

pact-broker cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.101.0.0a3021fc42834
stdlib@go1.14.4
1.25.13

Open the chart page →

2,815
refarch-infraconfigcloud-native-toolkit0.2.21 of 1See more

refarch-infraconfig cloud-native-toolkit 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.25.13

Open the chart page →

369
robot-shopcloud-native-toolkit1.1.12 of 12See more

robot-shop cloud-native-toolkit 1.1.1

2 of the 12 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.25.13
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.25.13

Open the chart page →

29,646
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad5 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

5 of the 6 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
stdlib@go1.20.12
1.25.13
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
stdlib@go1.23.8
1.25.13
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
stdlib@go1.19.1
1.25.13
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
stdlib@go1.24.6
1.25.13
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
stdlib@go1.23.8
1.25.13

Open the chart page →

18,400
cloud-provider-kubevirtcloud-provider-kubevirtVerified publisher0.2.01 of 1See more

cloud-provider-kubevirt cloud-provider-kubevirt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/kubevirt/kubevirt-cloud-controller-manager:v0.6.037ad4c475941
stdlib@go1.24.13
1.25.13

Open the chart page →

663
cloudrevecloudreve0.2.01 of 2See more

cloudreve cloudreve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
cloudreve/cloudreve:4.18.0f7a464100bf6
stdlib@go1.25.5
1.25.13

Open the chart page →

2,842
k8s-monitoring-appcloudscriptVerified publisher1.0.01 of 1See more

k8s-monitoring-app cloudscript 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/cloudscript-technology/k8s-monitoring-app:v0.0.25cab66a6b3574
stdlib@go1.24.10
1.25.13

Open the chart page →

1,294
cloudvaultcloudvaultOfficialVerified publisher1.0.21 of 3See more

cloudvault cloudvault 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
library/postgres:18.3-alpine54451ecb8ab3
stdlib@go1.24.6
1.25.13

Open the chart page →

2,180
ctrox-csi-s3cloudve0.1.01 of 4See more

ctrox-csi-s3 cloudve 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
stdlib@go1.16.13
1.25.13

Open the chart page →

3,143
galaxycloudve6.8.61 of 3See more

galaxy cloudve 6.8.6

1 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
tusproject/tusd:v1.13.0f8088058b80f
stdlib@go1.21.0
1.25.13

Open the chart page →

5,610
galaxy-cvmfs-csicloudve2.5.12 of 3See more

galaxy-cvmfs-csi cloudve 2.5.1

2 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.10.1f25af73ee708
stdlib@go1.21.5
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.25.13

Open the chart page →

1,515
galaxy-depscloudve1.1.16 of 7See more

galaxy-deps cloudve 1.1.1

6 of the 7 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
stdlib@go1.24.5
1.25.13
bitnamilegacy/rabbitmq-cluster-operator:1.14.0-scratch-r567ac64a9623a
stdlib@go1.17
1.25.13
bitnamilegacy/rmq-messaging-topology-operator:1.7.1-scratch-r33c26208691a1
stdlib@go1.17
1.25.13
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
stdlib@go1.23.4
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.25.13

Open the chart page →

10,599
galaxy-k8s-monitorcloudve0.1.11 of 1See more

galaxy-k8s-monitor cloudve 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
afgane/galaxy-k8s-monitor:latest457173db5640
stdlib@go1.24.13
1.25.13

Open the chart page →

313
galaxykubemancloudve2.10.14 of 7See more

galaxykubeman cloudve 2.10.1

4 of the 7 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
stdlib@go1.17.13
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0f6717ce72a26
stdlib@go1.20.3
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
stdlib@go1.20.3
1.25.13
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
stdlib@go1.16.2
1.25.13

Open the chart page →

16,155
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.25.13

Open the chart page →

14,372
openstack-cinder-csicloudve1.2.01 of 5See more

openstack-cinder-csi cloudve 1.2.0

1 of the 5 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
k8scloudprovider/cinder-csi-plugin:latesta30c7a2a594a
stdlib@go1.17.10
1.25.13

Open the chart page →

2,068
proxyinjectorcloudve0.0.231 of 1See more

proxyinjector cloudve 0.0.23

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.25.13

Open the chart page →

2,854
pulsarcloudve0.2.01 of 2See more

pulsar cloudve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
stdlib@go1.22.7
1.25.13

Open the chart page →

6,181
argo-cdcluster-deploy0.3.22 of 3See more

argo-cd cluster-deploy 0.3.2

2 of the 3 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
stdlib@go1.26.4
1.25.13
quay.io/argoprojlabs/argocd-image-updater:v1.2.13c56f354fac5
stdlib@go1.26.3
1.25.13

Open the chart page →

3,759
argo-eventscluster-deploy0.1.01 of 1See more

argo-events cluster-deploy 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
stdlib@go1.24.11
1.25.13

Open the chart page →

1,043
authentikcluster-deploy0.2.01 of 1See more

authentik cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
stdlib@go1.26.2
1.25.13

Open the chart page →

2,527
cert-managercluster-deploy0.2.24 of 4See more

cert-manager cluster-deploy 0.2.2

4 of the 4 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.21.1ccf6b919ec05
stdlib@go1.26.5
1.25.13
quay.io/jetstack/cert-manager-controller:v1.21.1416a2d76870d
stdlib@go1.26.5
1.25.13
quay.io/jetstack/cert-manager-startupapicheck:v1.21.1d8ab6416e6e7
stdlib@go1.26.5
1.25.13
quay.io/jetstack/cert-manager-webhook:v1.21.1d8b3961b51c8
stdlib@go1.26.5
1.25.13

Open the chart page →

401
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
stdlib@go1.20.2
1.25.13

Open the chart page →

8,093
mla-external-secretscluster-deploy0.3.01 of 1See more

mla-external-secrets cluster-deploy 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v2.1.0ec40c3d9c48f
stdlib@go1.25.7
1.25.13

Open the chart page →

723
monitoringcluster-deploy0.3.09 of 11See more

monitoring cluster-deploy 0.3.0

9 of the 11 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
grafana/grafana:12.4.1e932bd6ed0e0
stdlib@go1.25.8
1.25.13
grafana/loki:3.6.73c8fd3570dd9
stdlib@go1.24.13
1.25.13
grafana/loki-canary:3.6.70dac7d5cb383
stdlib@go1.24.13
1.25.13
prom/memcached-exporter:v0.15.592a6ad5a3d3e
stdlib@go1.25.6
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.89.0cb4ac6a56555
stdlib@go1.25.6
1.25.13
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
stdlib@go1.25.3
1.25.13
quay.io/prometheus/prometheus:v3.10.07571a304e67f
stdlib@go1.26.0
1.25.13
quay.io/prometheus/pushgateway:v1.11.249ed9fdf3780
stdlib@go1.25.3
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.13

Open the chart page →

8,217
traefikcluster-deploy0.3.01 of 1See more

traefik cluster-deploy 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56858.

Container imageDigestPackageFixed in
library/traefik:v3.7.109c3b91d5fb77
stdlib@go1.26.5
1.25.13

Open the chart page →

346

Container images carrying it

5,256 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.06b2f0b6f2f86
stdlib@go1.26.2
1.25.13
3
registry.k8s.io/sig-storage/csi-attacher:v4.3.04eb73137b663
stdlib@go1.20.3
1.25.13
3
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.12.00d23a6fd60c4
stdlib@go1.22.5
1.25.13
3
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.14.05244abbe87e0
stdlib@go1.24.2
1.25.13
3
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.10.1f25af73ee708
stdlib@go1.21.5
1.25.13
3
registry.k8s.io/sig-storage/csi-provisioner:v5.2.0d5e46da8aff7
stdlib@go1.23.1
1.25.13
3
registry.k8s.io/sig-storage/csi-resizer:v1.8.02e2b44393539
stdlib@go1.20.3
1.25.13
3
registry.k8s.io/sig-storage/csi-resizer:v1.13.28ddd178ba5d0
stdlib@go1.23.1
1.25.13
3
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
stdlib@go1.24.6
1.25.13
3
registry.k8s.io/sig-storage/livenessprobe:v2.10.04dc0b87ccd69
stdlib@go1.20.3
1.25.13
3
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
stdlib@go1.16.2
1.25.13
3
1password/scim:v2.3.129d0c6cb67eb
stdlib@go1.16.8
1.25.13
2
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.25.13
2
alazidis/kube-netlag:1.1.00e8c84152201
stdlib@go1.24.13
1.25.13
2
alpine/git:2.47.2062a01ad7a0e
stdlib@go1.23.9
1.25.13
2
alpine/git:latest4f9488b7295b
stdlib@go1.26.3
1.25.13
2
alpine/k8s:1.32.12048f8d9c8cc7
stdlib@go1.25.7
1.25.13
2
alpine/kubectl:1.35.49ccd82364762
stdlib@go1.25.9
1.25.13
2
alpine/kubectl:1.35.2ec8f734b0a10
stdlib@go1.25.7
1.25.13
2
altinity/clickhouse-operator:0.21.2cd9252644ce0
stdlib@go1.19.10
1.25.13
2
altinity/metrics-exporter:0.21.2df3d57215356
stdlib@go1.19.10
1.25.13
2
apache/apisix-ingress-controller:2.2.05c5efa4c7f2a
stdlib@go1.26.5
1.25.13
2
apache/superset:dockerizeafe59523a6c8
stdlib@go1.20.4
1.25.13
2
apecloud/apecloud-mcp:0.1.094041b080510
stdlib@go1.23.7
1.25.13
2
aquasec/kube-bench:v0.8.0ea3e33bc3c4e
stdlib@go1.21.7
1.25.13
2
assistiot/fl_repository_db:latestad8f72108636
stdlib@go1.17.10
1.25.13
2
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
stdlib@go1.18.9
1.25.13
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
stdlib@go1.24.6
1.25.13
2
bitnamilegacy/etcd:latest99b408c15272
stdlib@go1.23.10
1.25.13
2
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
stdlib@go1.19.6
1.25.13
2
bitnamilegacy/kubectl:1.26.4a0a972324d93
stdlib@go1.19.8
1.25.13
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
stdlib@go1.23.7
1.25.13
2
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
stdlib@go1.15.1
1.25.13
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
stdlib@go1.25.0
1.25.13
2
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
stdlib@go1.16.7
1.25.13
2
bitnamilegacy/redis:latest5927ff3702df
stdlib@go1.24.5
1.25.13
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
stdlib@go1.24.6
1.25.13
2
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
stdlib@go1.19.12
1.25.13
2
bitnamisecure/git72ae5bd9715f
stdlib@go1.24.6
1.25.13
2
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
stdlib@go1.17.13
1.25.13
2
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
stdlib@go1.19.9
1.25.13
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
stdlib@go1.24.4
1.25.13
2
casbin/casdoor:3.62.17729da148c61
stdlib@go1.25.8
1.25.13
2
cesanta/docker_auth:1.6.04d16885f3d4c
stdlib@go1.13.7
1.25.13
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
stdlib@go1.20.14
1.25.13
2
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
stdlib@go1.14.5
1.25.13
2
clickhouse/clickhouse-server:24.2ed9640bfff07
stdlib@go1.19.10
1.25.13
2
cloudflare/cloudflared:2026.6.16d91c121b803
stdlib@go1.26.4
1.25.13
2
containersol/locust_exporter:v0.4.1a914972d19ad
stdlib@go1.15.8
1.25.13
2
coredns/coredns:1.13.19b9128672209
stdlib@go1.25.2
1.25.13
2

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.