StackRadar

CVE-2026-56859

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,707
of 17,957 indexed, latest versions
Container images
5,361
deployed by those charts
Fix available
1 of 2
affected packages

Add recursion depth guard during decode in encoding/xml

Carried by container images the latest versions of 4,707 of 17,957 indexed charts deploy, on 5,361 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+195 more1.25.135,361
OSV records
DEBIAN-CVE-2026-56859GO-2026-6088
Also known as
BIT-golang-2026-56859

Charts affected

4,707 by stars
ChartLatestAffected imagesRadar Score
lumenvox-external-serviceslumenvox8.0.03 of 3See more

lumenvox-external-services lumenvox 8.0.0

3 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mongo:8.2.12e0ce8c35124d
stdlib@go1.25.9
1.25.13
library/postgres:17.5aadf2c0696f5
stdlib@go1.18.2
1.25.13
library/rabbitmq:4.1.8-management3574a8edaca3
stdlib@go1.22.2
1.25.13

Open the chart page →

6,785
ratelimitlumiumcoVerified publisher0.0.41 of 2See more

ratelimit lumiumco 0.0.4

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:a90e0e5d5966cbc14d5d
stdlib@go1.24.5
1.25.13

Open the chart page →

1,031
lynxpromptlynxpromptVerified publisher0.1.21 of 3See more

lynxprompt lynxprompt 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:17-alpineb0f9560a2de0
stdlib@go1.24.6
1.25.13

Open the chart page →

1,781
as212510-netm0nsterrr-as212510-netVerified publisher4.0.21 of 1See more

as212510-net m0nsterrr-as212510-net 4.0.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/m0nsterrr/as212510.net:v4.0.4e7b1d39c0dbc
stdlib@go1.26.4
1.25.13

Open the chart page →

72
qbittorrentm0nsterrr-qbittorrentVerified publisher7.1.31See more

qbittorrent m0nsterrr-qbittorrent 7.1.3

1 container image this version deploys carries CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:0.2.066c8d5c270eb
stdlib@go1.26.1
1.25.13

Open the chart page →

—
recyclarrm0nsterrr-recyclarrVerified publisher2.7.21 of 1See more

recyclarr m0nsterrr-recyclarr 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/recyclarr/recyclarr:8.7.26e69e009e1cd
stdlib@go1.26.3
1.25.13

Open the chart page →

269
argusm0sh1-helm-charts0.5.01 of 1See more

argus m0sh1-helm-charts 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
releaseargus/argus:0.29.0e07088252d03
stdlib@go1.25.5
1.25.13

Open the chart page →

1,490
gitea-runnerm0sh1-helm-charts0.2.32 of 2See more

gitea-runner m0sh1-helm-charts 0.2.3

2 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
gitea/act_runner:0.3.08368754bb612
stdlib@go1.26.0
1.25.13
library/docker:29.3.0-dind-alpine3.231ba18449911d
stdlib@go1.25.7
1.25.13

Open the chart page →

4,300
wudm0sh1-helm-charts0.2.01 of 1See more

wud m0sh1-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
getwud/wud:8.1.1b1cd01c43839
stdlib@go1.15.15
1.25.13

Open the chart page →

6,738
whoamim11sVerified publisher0.3.01 of 1See more

whoami m11s 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
traefik/whoami:v1.12.0c4717a8d1f01
stdlib@go1.26.5
1.25.13

Open the chart page →

98
kube-benchm9sweeperVerified publisher1.6.01 of 1See more

kube-bench m9sweeper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.6.176672264accce
stdlib@go1.20.4
1.25.13

Open the chart page →

1,397
m9sweeperm9sweeperVerified publisher1.6.02 of 6See more

m9sweeper m9sweeper 1.6.0

2 of the 6 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
kubesec/kubesec:v2.13.0c0f3b0673578
stdlib@go1.19.7
1.25.13
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
stdlib@go1.21.5
1.25.13

Open the chart page →

10,056
magistralamagistrala-devopsVerified publisher0.16.214 of 42See more

magistrala magistrala-devops 0.16.2

14 of the 42 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
stdlib@go1.21.5
1.25.13
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.25.13
jaegertracing/jaeger-collector:1.53.07f1269222903
stdlib@go1.21.5
1.25.13
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
stdlib@go1.21.5
1.25.13
library/nats:2.10.17-alpineb7752304692b
stdlib@go1.22.4
1.25.13
natsio/nats-box:0.14.31cc420186664
stdlib@go1.22.1
1.25.13
natsio/nats-server-config-reloader:0.15.05b21830a9e9d
stdlib@go1.22.4
1.25.13
prom/alertmanager:v0.28.0d5155cfac40a
stdlib@go1.23.4
1.25.13
timescale/timescaledb:latest-pg12645fd9e92d76
stdlib@go1.18.7
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.79.2193280a33bc1
stdlib@go1.23.4
1.25.13
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.13
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
stdlib@go1.23.4
1.25.13
quay.io/prometheus/pushgateway:v1.11.099392035ae99
stdlib@go1.23.4
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.14.037d841299325
stdlib@go1.23.3
1.25.13

Open the chart page →

25,120
docker-mailservermailserverVerified publisher0.2.654 of 9See more

docker-mailserver mailserver 0.2.65

4 of the 9 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
jeboehm/mailserver-filter:5.0.92e756949e537d
stdlib@go1.24.1
1.25.13
jeboehm/mailserver-mda:5.0.92d03fb7bae0a2
stdlib@go1.24.1
1.25.13
jeboehm/mailserver-mta:5.0.925fb2f31c940d
stdlib@go1.24.1
1.25.13
jeboehm/mailserver-web:5.0.929da13edf5aa8
stdlib@go1.24.1
1.25.13

Open the chart page →

11,767
demoshopmakaira2.4.01 of 4See more

demoshop makaira 2.4.0

1 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mysql:80744ee5ef89c
stdlib@go1.24.6
1.25.13

Open the chart page →

4,101
mangadev-hello-worldmangadev0.3.01 of 1See more

mangadev-hello-world mangadev 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
wagnermanganelli164/webserver-hello-world:0.3.0d4ef27a4f180
stdlib@go1.22.5
1.25.13

Open the chart page →

884
novosgamarcusrepo0.1.11 of 2See more

novosga marcusrepo 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.13

Open the chart page →

3,329
whoamimario-fVerified publisher1.0.11 of 1See more

whoami mario-f 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
containous/whoami:v1.5.07d6a3c8f9147
stdlib@go1.14
1.25.13

Open the chart page →

1,281
consumermarthydavidVerified publisher0.1.61 of 1See more

consumer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-consumer:0.0.4e07644865dd1
stdlib@go1.23.0
1.25.13

Open the chart page →

827
producermarthydavidVerified publisher0.1.61 of 1See more

producer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-producer:0.0.454b242c7bf2b
stdlib@go1.23.0
1.25.13

Open the chart page →

827
ejabberdmartialblog0.3.11 of 1See more

ejabberd martialblog 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/processone/ejabberd:latest5aeb0faa39cf
stdlib@go1.25.12
1.25.13

Open the chart page →

400
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
stdlib@go1.21.5
1.25.13

Open the chart page →

4,285
kruisematrixone-operatorVerified publisher1.8.32 of 2See more

kruise matrixone-operator 1.8.3

2 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
openkruise/kruise-helm-hook:v0.1.0edc7cf9428fd
stdlib@go1.20.14
1.25.13
openkruise/kruise-manager:v1.8.30482722b4e56
stdlib@go1.22.11
1.25.13

Open the chart page →

1,955
matrix-sliding-syncmatrix-sliding-sync0.2.31 of 1See more

matrix-sliding-sync matrix-sliding-sync 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
stdlib@go1.20.14
1.25.13

Open the chart page →

1,609
focalboardmattermostVerified publisher0.5.01 of 1See more

focalboard mattermost 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mattermost/focalboard:0.6.7f2f987dada52
stdlib@go1.16.4
1.25.13

Open the chart page →

4,050
mattermost-calls-offloadermattermostVerified publisher0.2.11 of 1See more

mattermost-calls-offloader mattermost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mattermost/calls-offloader:v0.9.0b440b282599e
stdlib@go1.22.7
1.25.13

Open the chart page →

1,419
mattermost-chaos-enginemattermostVerified publisher0.2.01 of 1See more

mattermost-chaos-engine mattermost 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mattermost/mattermost-app-chaosengine:c153e436268954edd67
stdlib@go1.16.8
1.25.13

Open the chart page →

4,113
mattermost-push-proxymattermostVerified publisher0.14.31 of 1See more

mattermost-push-proxy mattermost 0.14.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mattermost/mattermost-push-proxy:6.3.045c53061c74e
stdlib@go1.21.13
1.25.13

Open the chart page →

896
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
stdlib@go1.24.5
1.25.13

Open the chart page →

4,226
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
stdlib@go1.22.8
1.25.13

Open the chart page →

8,923
mayastormayastorVerified publisher2.12.114 of 31See more

mayastor mayastor 2.12.1

14 of the 31 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
stdlib@go1.24.1
1.25.13
grafana/loki:3.4.258a6c186ce78
stdlib@go1.23.6
1.25.13
library/nats:2.9.17-alpine1a7b320b2942
stdlib@go1.19.9
1.25.13
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
stdlib@go1.19.4
1.25.13
natsio/prometheus-nats-exporter:0.11.031c02aac089a
stdlib@go1.20.3
1.25.13
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
stdlib@go1.24.5
1.25.13
openebs/provisioner-localpv:4.6.099f5116f5cb8
stdlib@go1.25.0
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
stdlib@go1.23.7
1.25.13
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v5.2.0d5e46da8aff7
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v1.13.28ddd178ba5d0
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.0dd788d79cf4c
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.13

Open the chart page →

19,286
eoloplantmca-eoloplaner0.1.02 of 7See more

eoloplant mca-eoloplaner 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.13
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.13

Open the chart page →

30,581
claude-code-apimcp-helmVerified publisher0.1.11 of 1See more

claude-code-api mcp-helm 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
arbuzov/claude-code-api:0.1.02d7dd8070610
stdlib@go1.23.10
1.25.13

Open the chart page →

4,266
mcp-kubernetesmcp-helmVerified publisher0.2.71 of 1See more

mcp-kubernetes mcp-helm 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mcp/kubernetes:latest5ffbf7f0a8aa
stdlib@go1.26.3
1.25.13

Open the chart page →

6,010
mdai-event-hubmdai-event-hubVerified publisher0.1.111 of 1See more

mdai-event-hub mdai-event-hub 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
public.ecr.aws/p3k6k6h3/mdai-event-hub:0.1.1118cae836e9c7
stdlib@go1.25.11
1.25.13

Open the chart page →

431
mdai-gatewaymdai-gatewayVerified publisher0.1.101 of 1See more

mdai-gateway mdai-gateway 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
public.ecr.aws/p3k6k6h3/mdai-gateway:0.1.100dfb323978f6
stdlib@go1.25.11
1.25.13

Open the chart page →

416
mdai-hubmdai-hubVerified publisher0.10.111 of 14See more

mdai-hub mdai-hub 0.10.1

11 of the 14 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/nats:2.14.0-alpinedf3dbf761551
stdlib@go1.26.2
1.25.13
natsio/nats-box:0.19.55d513bf0bb82
stdlib@go1.26.2
1.25.13
natsio/nats-server-config-reloader:0.23.064cb6c858e79
stdlib@go1.25.6
1.25.13
natsio/prometheus-nats-exporter:0.19.25387a5923572
stdlib@go1.25.6
1.25.13
ghcr.io/jkroepke/kube-webhook-certgen:1.8.38ce13c365c8e
stdlib@go1.26.3
1.25.13
ghcr.io/open-telemetry/opentelemetry-operator/opentelemetry-operator:0.148.0590e50477b76
stdlib@go1.25.8
1.25.13
public.ecr.aws/p3k6k6h3/mdai-event-hub:0.1.1118cae836e9c7
stdlib@go1.25.11
1.25.13
public.ecr.aws/p3k6k6h3/mdai-gateway:0.1.100dfb323978f6
stdlib@go1.25.11
1.25.13
quay.io/prometheus-operator/prometheus-operator:v0.91.09e53e1313921
stdlib@go1.25.9
1.25.13
quay.io/prometheus/node-exporter:v1.11.1-distroless6112664fd761
stdlib@go1.26.1
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.06b2f0b6f2f86
stdlib@go1.26.2
1.25.13

Open the chart page →

9,025
mdai-s3-logs-readermdai-s3-logs-readerVerified publisher0.0.81 of 1See more

mdai-s3-logs-reader mdai-s3-logs-reader 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
public.ecr.aws/decisiveai/mdai-s3-logs-reader:0.0.8d1e35167eec5
stdlib@go1.24.10
1.25.13

Open the chart page →

415
medewerkercatalogusmedewerkercatalogus1.0.01 of 3See more

medewerkercatalogus medewerkercatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/medewerkercatalogus-php:latest1ea5412bed26
stdlib@go1.13.10
1.25.13

Open the chart page →

7,362
pod-cleanupmediamarktsaturn1.2.11 of 1See more

pod-cleanup mediamarktsaturn 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
registry.k8s.io/kubectl:v1.34.159bafa07ff3a
stdlib@go1.24.6
1.25.13

Open the chart page →

428
cleanuparrmedia-servarrVerified publisher0.19.41 of 1See more

cleanuparr media-servarr 0.19.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/cleanuparr/cleanuparr:2.10.8ec444338a67e
stdlib@go1.22.2
1.25.13

Open the chart page →

1,290
sabnzbdmedia-servarrVerified publisher1.6.31 of 3See more

sabnzbd media-servarr 1.6.3

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/onedr0p/exportarr:v1.6.160cf3d44aa0b
stdlib@go1.21.6
1.25.13

Open the chart page →

553
tinymediamanagermedia-servarrVerified publisher1.6.41 of 2See more

tinymediamanager media-servarr 1.6.4

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.36f332431a2ae
stdlib@go1.24.4
1.25.13

Open the chart page →

8,633
cameramedia-streaming-meshVerified publisher0.2.51 of 3See more

camera media-streaming-mesh 0.2.5

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13

Open the chart page →

19,385
crdsmedia-streaming-meshVerified publisher0.0.11 of 2See more

crds media-streaming-mesh 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ciscolabs/msm-nc:0710202336d02faad958
stdlib@go1.20.5
1.25.13

Open the chart page →

3,867
ingressmedia-streaming-meshVerified publisher0.1.82 of 2See more

ingress media-streaming-mesh 0.1.8

2 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.7.07612338342a1
stdlib@go1.20.1
1.25.13
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230312-helm-chart-4.5.2-28-g66a76079401d181618f27
stdlib@go1.20.1
1.25.13

Open the chart page →

3,312
msmmedia-streaming-meshVerified publisher0.1.175 of 6See more

msm media-streaming-mesh 0.1.17

5 of the 6 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
stdlib@go1.24.0
1.25.13
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
stdlib@go1.24.0
1.25.13
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
stdlib@go1.23.1
1.25.13
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
stdlib@go1.23.1
1.25.13
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
stdlib@go1.22.3
1.25.13

Open the chart page →

12,200
msm-rtspmedia-streaming-meshVerified publisher0.0.21 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13

Open the chart page →

19,385
rtspmedia-streaming-meshVerified publisher0.0.141 of 2See more

rtsp media-streaming-mesh 0.0.14

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13

Open the chart page →

19,385
mediawiki-backupmediawiki-backupVerified publisher0.2.11 of 1See more

mediawiki-backup mediawiki-backup 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/fernferret/mediawiki-backup:v0.2.2bbef381294ed
stdlib@go1.19.5
1.25.13

Open the chart page →

1,918

Container images carrying it

5,361 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

No deployed image carries CVE-2026-56859.

syft 1.42.1 · advisories as of 29 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.