StackRadar

CVE-2026-56859

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
46th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,638
of 17,828 indexed, latest versions
Container images
5,364
deployed by those charts
Fix available
1 of 2
affected packages

Add recursion depth guard during decode in encoding/xml

Carried by container images the latest versions of 4,638 of 17,828 indexed charts deploy, on 5,364 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+193 more1.25.135,364
OSV records
DEBIAN-CVE-2026-56859GO-2026-6088
Also known as
BIT-golang-2026-56859

Charts affected

4,638 by stars
ChartLatestAffected imagesRadar Score
wp-chartprojet-devops0.1.01 of 2See more

wp-chart projet-devops 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.13

Open the chart page →

5,314
prometheus-artifactory-exporterprometheus-artifactory-exporter0.9.21 of 1See more

prometheus-artifactory-exporter prometheus-artifactory-exporter 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/peimanja/artifactory_exporter:v1.16.0d3e3929a3d2b
stdlib@go1.21.13
1.25.13

Open the chart page →

421
jiralertprometheus-communityVerified publisher1.9.01 of 1See more

jiralert prometheus-community 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/jiralert/jiralert-linux-amd64:v1.3.01983aa64761a
stdlib@go1.19.6
1.25.13

Open the chart page →

728
prometheus-couchdb-exporterprometheus-communityVerified publisher1.1.01 of 1See more

prometheus-couchdb-exporter prometheus-community 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
gesellix/couchdb-prometheus-exporter:v286266d063f5d5
stdlib@go1.13.13
1.25.13

Open the chart page →

1,301
prometheus-modbus-exporterprometheus-communityVerified publisher0.1.41 of 1See more

prometheus-modbus-exporter prometheus-community 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
openenergyprojects/modbus_exporter:20230617_a14455158990f24fb25
stdlib@go1.20.5
1.25.13

Open the chart page →

1,210
prometheus-pingdom-exporterprometheus-communityVerified publisher3.4.41 of 1See more

prometheus-pingdom-exporter prometheus-community 3.4.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/kokuwaio/pingdom-exporter:v0.5.73e52df096943
stdlib@go1.26.5
1.25.13

Open the chart page →

205
yet-another-cloudwatch-exporterprometheus-communityVerified publisher0.39.11 of 1See more

yet-another-cloudwatch-exporter prometheus-community 0.39.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/yet-another-cloudwatch-exporter:v0.62.1bdba5215a666
stdlib@go1.23.4
1.25.13

Open the chart page →

393
prometheus-optimizerprometheus-optimizer0.2.221 of 1See more

prometheus-optimizer prometheus-optimizer 0.2.22

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
stdlib@go1.21.4
1.25.13

Open the chart page →

4,486
alertmanagerprometheus-worawutchan0.3.01 of 1See more

alertmanager prometheus-worawutchan 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.25.13

Open the chart page →

2,307
prometheus-blackbox-exporterprometheus-worawutchan4.10.11 of 1See more

prometheus-blackbox-exporter prometheus-worawutchan 4.10.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.18.01ffc3f109eb3
stdlib@go1.15.2
1.25.13

Open the chart page →

2,251
prometheus-druid-exporterprometheus-worawutchan0.9.01 of 1See more

prometheus-druid-exporter prometheus-worawutchan 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/opstree/druid-exporter:v0.83f6d9885cfe2
stdlib@go1.14.6
1.25.13

Open the chart page →

2,091
prometheus-node-exporterprometheus-worawutchan1.12.01 of 1See more

prometheus-node-exporter prometheus-worawutchan 1.12.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.25.13

Open the chart page →

2,189
prometheus-pushgatewayprometheus-worawutchan1.5.01 of 1See more

prometheus-pushgateway prometheus-worawutchan 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
prom/pushgateway:v1.3.0c0d39b8d4cfe
stdlib@go1.15.2
1.25.13

Open the chart page →

1,286
prometheus-redis-exporterprometheus-worawutchan4.0.01 of 1See more

prometheus-redis-exporter prometheus-worawutchan 4.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.11.104d958d209ab
stdlib@go1.15
1.25.13

Open the chart page →

1,316
prometheus-statsd-exporterprometheus-worawutchan0.1.01 of 1See more

prometheus-statsd-exporter prometheus-worawutchan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
prom/statsd-exporter:v0.18.0d23aca343b86
stdlib@go1.14.7
1.25.13

Open the chart page →

1,316
prompt-dbprompt-dbVerified publisher1.0.71 of 3See more

prompt-db prompt-db 1.0.7

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.13

Open the chart page →

3,553
panproto-application-nldesign0.1.01 of 5See more

pan proto-application-nldesign 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
conduction/pan-php:dev24f03c57568f
stdlib@go1.13.10
1.25.13

Open the chart page →

8,730
proto-component-commongroundproto-component-commonground1.0.01 of 3See more

proto-component-commonground proto-component-commonground 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/proto-component-commonground-php:latesteb36ead1954e
stdlib@go1.13.10
1.25.13

Open the chart page →

7,518
flaskDiaryptj-miniproject2.1.21 of 2See more

flaskDiary ptj-miniproject 2.1.2

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.13

Open the chart page →

3,120
kspanpuckpuck0.2.41 of 1See more

kspan puckpuck 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/honeycombio/kspan/kspan:0.2c966a4f8a4b7
stdlib@go1.20.1
1.25.13

Open the chart page →

1,689
powerdnspuckpuck2.0.03 of 4See more

powerdns puckpuck 2.0.0

3 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
stdlib@go1.24.6
1.25.13
pschiffe/pdns-admin:0.4.137ebba8c2b8f
stdlib@go1.21.5
1.25.13
pschiffe/pdns-pgsql:5.0a227d41bc665
stdlib@go1.21.5
1.25.13

Open the chart page →

4,677
seashellpuckpuck1.2.01 of 1See more

seashell puckpuck 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/puckpuck/seashell:1.2ef5e31333821
stdlib@go1.20.10
1.25.13

Open the chart page →

4,222
pulumi-esc-csi-providerpulumi-esc-csi-provider0.1.61 of 1See more

pulumi-esc-csi-provider pulumi-esc-csi-provider 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/pulumi/pulumi-esc-csi-provider:0.1.13fb058e93502
stdlib@go1.23.1
1.25.13

Open the chart page →

823
pulumi-exporterpulumi-exporter0.1.61 of 1See more

pulumi-exporter pulumi-exporter 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/pulumi-labs/pulumi-exporter:0.1.45415d5a46e7d
stdlib@go1.26.4
1.25.13

Open the chart page →

134
pumperlypumperlyVerified publisher0.1.21 of 3See more

pumperly pumperly 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
postgis/postgis:17-3.4-alpine5a1dbedac34e
stdlib@go1.18.2
1.25.13

Open the chart page →

2,860
game-serverpvillaverdeVerified publisher1.0.61 of 1See more

game-server pvillaverde 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/itzg/minecraft-server:latest46919d151d39
stdlib@go1.24.6
1.25.13

Open the chart page →

4,323
cdmswebapppyalive-cdmswebappVerified publisher0.1.02 of 3See more

cdmswebapp pyalive-cdmswebapp 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.13
sarwansharma/minio:v359d1da9385d1
stdlib@go1.18.3
1.25.13

Open the chart page →

6,707
loki-stackpyalive-cdmswebappVerified publisher2.6.53 of 4See more

loki-stack pyalive-cdmswebapp 2.6.5

3 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/grafana:latestac461fb352ab
stdlib@go1.26.4
1.25.13
grafana/loki:2.5.0f9ef133793af
stdlib@go1.17.8
1.25.13
grafana/promtail:2.4.2626900031c4e
stdlib@go1.17.2
1.25.13

Open the chart page →

6,441
node-exporterpyalive-cdmswebappVerified publisher0.1.01 of 1See more

node-exporter pyalive-cdmswebapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/prometheus/node-exporter:latest1b4e4438faca
stdlib@go1.26.5
1.25.13

Open the chart page →

78
rancher-metricspy-kube-downscalerVerified publisher0.0.81 of 4See more

rancher-metrics py-kube-downscaler 0.0.8

1 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/eumel8/rancher-servicemonitor:0.2.1f34428cac187
stdlib@go1.22.1
1.25.13

Open the chart page →

639
qantas-apiqantas-helm0.1.01 of 3See more

qantas-api qantas-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.13

Open the chart page →

1,696
open-terminalqaoruVerified publisher0.2.41 of 1See more

open-terminal qaoru 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
stdlib@go1.24.4
1.25.13

Open the chart page →

2,090
unifiqaoruVerified publisher1.1.42 of 2See more

unifi qaoru 1.1.4

2 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mongo:7.0-jammy84c4a18b60a0
stdlib@go1.24.6
1.25.13
linuxserver/unifi-network-application:10.6.106-ls1467f15f34937ce
stdlib@go1.26.5
1.25.13

Open the chart page →

3,466
qualys-scannerqualys-helm-chartVerified publisher2.1.01 of 1See more

qualys-scanner qualys-helm-chart 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
qualys/qscanner:5.1.0-59ff255352422
stdlib@go1.26.5-X:jsonv2
1.25.13

Open the chart page →

259
cf-operatorquarks2.3.0+0.g27a91cdf2 of 2See more

cf-operator quarks 2.3.0+0.g27a91cdf

2 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
stdlib@go1.13.3
1.25.13
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
stdlib@go1.13.4
1.25.13

Open the chart page →

11,974
quarksquarks7.0.1+0.g5396b114 of 5See more

quarks quarks 7.0.1+0.g5396b11

4 of the 5 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
stdlib@go1.14.7
1.25.13
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
stdlib@go1.13.15
1.25.13
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
stdlib@go1.14.7
1.25.13
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
stdlib@go1.14.7
1.25.13

Open the chart page →

18,205
quarks-statefulsetquarks0.0.1304-g4b4f2ac51 of 1See more

quarks-statefulset quarks 0.0.1304-g4b4f2ac5

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
stdlib@go1.14.7
1.25.13

Open the chart page →

4,012
qubivaqubiva0.3.21 of 3See more

qubiva qubiva 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/loki:3.3.28af2de1abbdd
stdlib@go1.23.4
1.25.13

Open the chart page →

4,545
ingress-controllerqumine0.8.5001 of 1See more

ingress-controller qumine 0.8.500

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
qumine/ingress-controller:v0.8.5f2c8a2148381
stdlib@go1.19
1.25.13

Open the chart page →

1,534
cupsr2dlan-helm-chartsVerified publisher0.1.01 of 1See more

cups r2dlan-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
anujdatar/cups:25.07.01685df04a643b
stdlib@go1.19.8
1.25.13

Open the chart page →

7,810
rabbitpingrabbitping1.3.01 of 1See more

rabbitping rabbitping 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
udhos/rabbitping:1.3.0474c467bbf42
stdlib@go1.24.3
1.25.13

Open the chart page →

1,149
kubemirrorraczylo-comVerified publisher0.9.221 of 1See more

kubemirror raczylo-com 0.9.22

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/lukaszraczylo/kubemirror:0.9.2265f266df3289
stdlib@go1.26.4
1.25.13

Open the chart page →

74
rada-platformrada-platform0.1.02 of 7See more

rada-platform rada-platform 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
apache/airflow:2.10.2-python3.9ce90bdc3d2af
stdlib@go1.22.7
1.25.13
registry.k8s.io/git-sync/git-sync:v3.6.96fa9042f6128
stdlib@go1.20.6
1.25.13

Open the chart page →

21,430
cloudnative-pgradar-baseVerified publisher0.23.21 of 1See more

cloudnative-pg radar-base 0.23.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.1b5210df46c05
stdlib@go1.24.0
1.25.13

Open the chart page →

856
headlampradar-baseVerified publisher1.0.01 of 1See more

headlamp radar-base 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/headlamp-k8s/headlamp:v0.43.05d03caa26df7
stdlib@go1.26.3
1.25.13

Open the chart page →

657
hydraradar-baseVerified publisher0.48.01 of 1See more

hydra radar-base 0.48.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
oryd/hydra:v2.2.02c93beb5e5f2
stdlib@go1.21.5
1.25.13

Open the chart page →

1,542
kratosradar-baseVerified publisher0.43.11 of 1See more

kratos radar-base 0.43.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
oryd/kratos:v1.1.08f15006a080d
stdlib@go1.21.5
1.25.13

Open the chart page →

1,794
kubecostradar-baseVerified publisher1.0.03 of 7See more

kubecost radar-base 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/grafana:11.4.0d8ea37798ccc
stdlib@go1.23.1
1.25.13
gcr.io/kubecost1/cost-model:prod-2.6.39e507ac0aebb
stdlib@go1.23.4
1.25.13
quay.io/prometheus/prometheus:v3.2.05888c188cf09
stdlib@go1.23.6
1.25.13

Open the chart page →

9,639
management-portalradar-baseVerified publisher1.7.01 of 1See more

management-portal radar-base 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
stdlib@go1.26.2
1.25.13

Open the chart page →

3,288
nginx-gateway-fabricradar-baseVerified publisher2.6.61 of 1See more

nginx-gateway-fabric radar-base 2.6.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/nginx/nginx-gateway-fabric:2.6.6c10f734589e9
stdlib@go1.26.4
1.25.13

Open the chart page →

132

Container images carrying it

5,364 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/youniqx/heist:v1.1.209c43b3a9d98ae
stdlib@go1.22.7
1.25.13
1
quay.io/zncdatadev/airflow-operator:0.4.0b716ef483b75
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/commons-operator:0.4.01a353def9fe1
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/dolphinscheduler-operator:0.4.0d0a4e55eeb7f
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/hbase-operator:0.4.069e9a1b0daf8
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/hdfs-operator:0.4.0eb3c2928250e
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/hive-operator:0.4.0d66ba9149c22
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/kafka-operator:0.4.00a0b4c39c1ba
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/listener-csi-driver:0.4.0b69bed123b02
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/listener-operator:0.4.068b92dae8d75
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/nifi-operator:0.4.0bb4e26ff5e2f
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/secret-csi-driver:0.4.0604a7d98ab58
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/spark-k8s-operator:0.4.0d3f2b10c4a6d
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/superset-operator:0.4.0102e66e32218
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/trino-operator:0.4.04f516757aee3
stdlib@go1.25.8
1.25.13
1
quay.io/zncdatadev/zookeeper-operator:0.4.0b4f33d89ac45
stdlib@go1.25.8
1.25.13
1
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.11826b984e75d4
stdlib@go1.19.1
1.25.13
1
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.7864fc338571e
stdlib@go1.16.4
1.25.13
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
stdlib@go1.18.1
1.25.13
1
registry.gitlab.com/av1o/go-prism:4fdcff7d3870c28e5f024b6947cb552d4b956ee27a6f84b81c4e
stdlib@go1.16.2
1.25.13
1
registry.gitlab.com/av1o/okd-webhook:v0.1.028c3e5eb2650
stdlib@go1.16
1.25.13
1
registry.gitlab.com/bitspur/rock8s/easy-olm-operator:0.0.1779454fea06c
stdlib@go1.19.10
1.25.13
1
registry.gitlab.com/bitspur/rock8s/images/kube-commands:3.1880ef8ceffc92
stdlib@go1.20.8
1.25.13
1
registry.gitlab.com/bitspur/rock8s/resource-binding-operator:0.1.063cf51392ce7
stdlib@go1.19.13
1.25.13
1
registry.gitlab.com/commento/commento:v1.8.0e0ab1fc86761
stdlib@go1.14.2
1.25.13
1
registry.gitlab.com/dyff/dyff-operator:0.24.20e9ca51627601
stdlib@go1.24.13
1.25.13
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
stdlib@go1.26.5
1.25.13
1
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
stdlib@go1.20.14
1.25.13
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
stdlib@go1.25.7
1.25.13
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
stdlib@go1.25.7
1.25.13
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
stdlib@go1.15.8
1.25.13
1
registry.gitlab.com/gitlab-org/build/cng/cfssl-self-sign:v19.4.07757679afa1b
stdlib@go1.22.0
1.25.13
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
stdlib@go1.26.4
1.25.13
1
registry.gitlab.com/gitlab-org/ci-cd/gitlab-runner-pod-cleanup:latest4369f3ba1d9a
stdlib@go1.25.0
1.25.13
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
stdlib@go1.16.14
1.25.13
1
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.3.25448611a3c54
stdlib@go1.26.5
1.25.13
1
registry.gitlab.com/lenitech/docker/keycloak-ppolicy:0.6.09895d6915075
stdlib@go1.25.7
1.25.13
1
registry.gitlab.com/lenitech/k8s-operator/keycloak-client:v0.6.19065cdd80035
stdlib@go1.24.5
1.25.13
1
registry.gitlab.com/parrotsec/project/parrot-mirror-docker:mainf91b602ca572
stdlib@go1.21.0
1.25.13
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
stdlib@go1.15.15
1.25.13
1
registry.gitlab.com/shortlink-org/shortlink/bff:latestf2194e526915
stdlib@go1.25.7
1.25.13
1
registry.gitlab.com/shortlink-org/shortlink/link:latest86d87291ffd4
stdlib@go1.25.7
1.25.13
1
registry.gitlab.com/xrow-public/ci-tools/kubectl:main9357cfeef63c
stdlib@go1.24.9
1.25.13
1
registry.gitlab.com/xrow-public/ci-tools/tools:main9b9d1ed86b6a
stdlib@go1.26.5
1.25.13
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
stdlib@go1.24.5
1.25.13
1
registry.gitlab.com/xrow-public/helm-mssql/mssql:1.10.3f923d842bc47
stdlib@go1.23.1
1.25.13
1
registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.93.006a950310ecd
stdlib@go1.26.2
1.25.13
1
registry.gitlab.com/xrow-public/velero-client/velero-client:1.4.203015f863a3e
stdlib@go1.26.4
1.25.13
1
registry.k8s.io/agent-sandbox/agent-sandbox-controller:v0.5.4be477ba317d8
stdlib@go1.26.5
1.25.13
1
registry.k8s.io/agent-sandbox/sandbox-router-go:v1.0.125b1a0939630
stdlib@go1.26.2
1.25.13
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.