StackRadar

CVE-2026-56859

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,507
of 17,790 indexed, latest versions
Container images
5,253
deployed by those charts
Fix available
1 of 2
affected packages

Add recursion depth guard during decode in encoding/xml

Carried by container images the latest versions of 4,507 of 17,790 indexed charts deploy, on 5,253 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.135,253
OSV records
DEBIAN-CVE-2026-56859GO-2026-6088
Also known as
BIT-golang-2026-56859

Charts affected

4,507 by stars
ChartLatestAffected imagesRadar Score
clairdevtron0.1.141 of 2See more

clair devtron 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
stdlib@go1.17.6
1.25.13

Open the chart page →

6,237
discord-alertmanagerdevtron-labs0.10.01 of 1See more

discord-alertmanager devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/devtron/discord-alertmanager:ceceb475-65-35203586419ca31
stdlib@go1.18.1
1.25.13

Open the chart page →

951
dex-serverdex-server1.19.12 of 3See more

dex-server dex-server 1.19.1

2 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
dexidp/dex:v2.39.1-distroless43655afd1a8f
stdlib@go1.21.6
1.25.13
public.ecr.aws/cloudnatix/llmariner/database-creator:1.19.162375abc3c56
stdlib@go1.23.12
1.25.13

Open the chart page →

2,238
digispoof-interfacedigispoof-interface1.0.01 of 3See more

digispoof-interface digispoof-interface 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
stdlib@go1.13.10
1.25.13

Open the chart page →

7,779
matomodigitalist-open-cloud-matomo12.0.201 of 3See more

matomo digitalist-open-cloud-matomo 12.0.20

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
hipages/php-fpm_exporter:2.2.09b5be9d3d955
stdlib@go1.17.10
1.25.13

Open the chart page →

3,539
directusdirectus-io2.1.03 of 3See more

directus directus-io 2.1.0

3 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
stdlib@go1.24.6
1.25.13
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
stdlib@go1.25.0
1.25.13
directus/directus:12.0.29c8470ea465c
stdlib@go1.23.12
1.25.13

Open the chart page →

7,518
alertmanager-ntfydjjudas21Verified publisher0.1.21 of 1See more

alertmanager-ntfy djjudas21 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/alexbakker/alertmanager-ntfy:1.0.12f4db8064595
stdlib@go1.24.4
1.25.13

Open the chart page →

641
dkim-managerdkim-managerVerified publisher0.2.01 of 1See more

dkim-manager dkim-manager 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/hsn723/dkim-manager:1.4.00312232b31a2
stdlib@go1.26.0
1.25.13

Open the chart page →

293
dnation-pingdnationcloud0.1.94 of 5See more

dnation-ping dnationcloud 0.1.9

4 of the 5 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/grafana:7.3.5511bc20bfcd1
stdlib@go1.15.5
1.25.13
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.25.13
prom/blackbox-exporter:v0.18.01ffc3f109eb3
stdlib@go1.15.2
1.25.13
prom/prometheus:v2.21.0d43417c260e5
stdlib@go1.15.2
1.25.13

Open the chart page →

10,454
docker-in-dockerdocker-in-docker0.0.31 of 2See more

docker-in-docker docker-in-docker 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/docker:24.0.2-dind1d148deae16a
stdlib@go1.20.4
1.25.13

Open the chart page →

2,576
docker-registrydocker-repository0.1.01 of 1See more

docker-registry docker-repository 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/registry:latest1be55279f18a
stdlib@go1.25.9
1.25.13

Open the chart page →

634
dockyarddockyardVerified publisher0.4.01 of 1See more

dockyard dockyard 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/kgma74/dockyard:0.4.0b40439329191
stdlib@go1.26.5
1.25.13

Open the chart page →

1,542
thermitedollarshaveclubOfficialVerified publisher0.1.171 of 1See more

thermite dollarshaveclub 0.1.17

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
dollarshaveclub/thermite:0.0.31663cbf25fcfe
stdlib@go1.17.1
1.25.13

Open the chart page →

2,732
domain-lockerdomain-locker0.2.81 of 3See more

domain-locker domain-locker 0.2.8

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:15-alpinefe0737ba566a
stdlib@go1.24.6
1.25.13

Open the chart page →

1,884
dominodominoVerified publisher0.1.111 of 3See more

domino domino 0.1.11

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
stdlib@go1.24.6
1.25.13

Open the chart page →

8,842
archerydoubanVerified publisher0.4.32 of 6See more

archery douban 0.4.3

2 of the 6 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
hanchuanchuan/goinception:latestb3c0dd26fb50
stdlib@go1.22.1
1.25.13
hhyo/archery:v1.9.11aa41843419e
stdlib@go1.15.6
1.25.13

Open the chart page →

5,854
karmadoubanVerified publisher1.9.21 of 1See more

karma douban 1.9.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/prymitive/karma:v0.85d06892218680
stdlib@go1.16.3
1.25.13

Open the chart page →

2,017
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
stdlib@go1.21.4
1.25.13

Open the chart page →

10,884
dragonfly-stackdragonflyVerified publisher0.1.24 of 7See more

dragonfly-stack dragonfly 0.1.2

4 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
stdlib@go1.21.5
1.25.13
dragonflyoss/manager:v2.1.49c3ef7f10698d
stdlib@go1.21.1
1.25.13
dragonflyoss/scheduler:v2.1.49523785c77787
stdlib@go1.21.1
1.25.13
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
stdlib@go1.18.10
1.25.13

Open the chart page →

18,402
nydus-snapshotterdragonflyVerified publisher0.0.101 of 2See more

nydus-snapshotter dragonfly 0.0.10

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
stdlib@go1.18.10
1.25.13

Open the chart page →

3,658
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
stdlib@go1.20.12
1.25.13

Open the chart page →

5,724
dyff-operatordyff-operatorVerified publisher0.24.201 of 1See more

dyff-operator dyff-operator 0.24.20

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/dyff-operator:0.24.20e9ca51627601
stdlib@go1.24.13
1.25.13

Open the chart page →

273
gethdysnixVerified publisher1.1.21 of 1See more

geth dysnix 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ethereum/client-go:v1.14.8886ec69b35b0
stdlib@go1.22.6
1.25.13

Open the chart page →

1,624
jenkinsedu2.7.11 of 2See more

jenkins edu 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.13

Open the chart page →

4,434
glpieftechcombr-glpiVerified publisher2.12.01 of 5See more

glpi eftechcombr-glpi 2.12.0

1 of the 5 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mariadb:12.3.2a02fe89cb597
stdlib@go1.24.6
1.25.13

Open the chart page →

4,398
egagenteginnovationsVerified publisher0.10.01 of 1See more

egagent eginnovations 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
eginnovations/agent:7.5.4e4dfe242fe9f
stdlib@go1.26.4
1.25.13

Open the chart page →

1,340
glideeinstackOfficialVerified publisher0.0.21 of 1See more

glide einstack 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/einstack/glide:0.0.1-alpineab3f7d0a1d50
stdlib@go1.21.6
1.25.13

Open the chart page →

1,335
elchi-discoveryelchi1.0.01 of 1See more

elchi-discovery elchi 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
jhonbrownn/elchi-discovery:latest8f6551ecc98c
stdlib@go1.23.1
1.25.13

Open the chart page →

638
elchi-stackelchi1.13.06 of 10See more

elchi-stack elchi 1.13.0

6 of the 10 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/grafana:12.2.074144189b384
stdlib@go1.24.6
1.25.13
jhonbrownn/elchi-backend:v1.6.14-v0.14.0-envoy1.39.031aee9ba2c63
stdlib@go1.25.12
1.25.13
jhonbrownn/elchi-collector:v0.1.119fdd0724865e
stdlib@go1.26.4
1.25.13
library/mongo:6.0.12646902910d6a
stdlib@go1.18.2
1.25.13
otel/opentelemetry-collector-contrib:0.89.0995f17004231
stdlib@go1.21.4
1.25.13
victoriametrics/victoria-metrics:v1.93.577a9815d0640
stdlib@go1.21.1
1.25.13

Open the chart page →

15,501
navidromeemmas-chartsVerified publisher0.0.61 of 1See more

navidrome emmas-charts 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
deluan/navidrome:0.50.02cf4442b0099
stdlib@go1.21.0
1.25.13

Open the chart page →

2,129
enbuildenbuildVerified publisher0.0.503 of 6See more

enbuild enbuild 0.0.50

3 of the 6 container images this version deploys carry CVE-2026-56859.

Open the chart page →

31,572
eoapieoapiOfficialVerified publisher0.16.21 of 7See more

eoapi eoapi 0.16.2

1 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
stdlib@go1.24.6
1.25.13

Open the chart page →

6,303
nexus-operatorepmdedp-devVerified publisher2.11.0-MDTU-DDM-SNAPSHOT.11 of 1See more

nexus-operator epmdedp-dev 2.11.0-MDTU-DDM-SNAPSHOT.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
epamedp/nexus-operator:2.11.0-MDTU-DDM-SNAPSHOT.1449a53804699
stdlib@go1.17.2
1.25.13

Open the chart page →

2,266
paraerudikaVerified publisher0.3.01 of 1See more

para erudika 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
erudikaltd/para:latest_stable235e0bc53da2
stdlib@go1.26.5
1.25.13

Open the chart page →

1,125
httpbingoestahnVerified publisher0.1.11 of 1See more

httpbingo estahn 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mccutchen/go-httpbin:v2.2.25994403ef75b
stdlib@go1.16.2
1.25.13

Open the chart page →

1,359
beaconchain-explorerethereum-helm-chartsVerified publisher0.1.61 of 2See more

beaconchain-explorer ethereum-helm-charts 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
stdlib@go1.23.5
1.25.13

Open the chart page →

3,087
ethereumjsethereum-helm-chartsVerified publisher0.1.21 of 2See more

ethereumjs ethereum-helm-charts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ethpandaops/ethereumjs:masterfb84b718500f
stdlib@go1.23.12
1.25.13

Open the chart page →

1,442
genesis-generatorethereum-helm-chartsVerified publisher0.2.31 of 2See more

genesis-generator ethereum-helm-charts 0.2.3

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
skylenet/ethereum-genesis-generator:latest210353ce7c89
stdlib@go1.17.13
1.25.13

Open the chart page →

3,135
ipfs-clusterethereum-helm-chartsVerified publisher0.1.143 of 3See more

ipfs-cluster ethereum-helm-charts 0.1.14

3 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ipfs/ipfs-cluster:latesta83266c524f1
stdlib@go1.26.3
1.25.13
ipfs/kubo:latest63f5502f7a01
stdlib@go1.19.8
1.25.13
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
stdlib@go1.19.3
1.25.13

Open the chart page →

4,616
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
stdlib@go1.19.8
1.25.13

Open the chart page →

11,483
evccevccVerified publisher1.0.471 of 1See more

evcc evcc 1.0.47

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
evcc/evcc:0.300.8ddf2a25afce5
stdlib@go1.25.6
1.25.13

Open the chart page →

1,182
event-exporterevent-exporterVerified publisher0.1.171 of 1See more

event-exporter event-exporter 0.1.17

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
kubestar/event-exporter:latest656606941255
stdlib@go1.20.14
1.25.13

Open the chart page →

1,210
events-exporterevents-exporter0.0.41 of 1See more

events-exporter events-exporter 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/nabokihms/events_exporter:latest68d44646e8b2
stdlib@go1.19.5
1.25.13

Open the chart page →

2,134
github-actions-runner-operatorevryfs-ossVerified publisher2.8.11 of 1See more

github-actions-runner-operator evryfs-oss 2.8.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/evryfs/github-actions-runner-operator:v0.11.16b084e0bd082
stdlib@go1.21.1
1.25.13

Open the chart page →

1,236
ext-postgres-operatorext-postgres-operatorVerified publisher3.0.01 of 1See more

ext-postgres-operator ext-postgres-operator 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/movetokube/postgres-operator:2.4.0def57d85a2da
stdlib@go1.25.5
1.25.13

Open the chart page →

386
akauntingf3k-techVerified publisher1.3121.01 of 4See more

akaunting f3k-tech 1.3121.0

1 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
stdlib@go1.24.5
1.25.13

Open the chart page →

4,345
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
factly/vidcheck-server:0.12.087064eb0463c
stdlib@go1.14.2
1.25.13

Open the chart page →

3,617
ecr-cleanupfairwinds-stableVerified publisher1.2.81 of 1See more

ecr-cleanup fairwinds-stable 1.2.8

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
danielfm/kube-ecr-cleanup-controller:0.1.1012485563b1d0
stdlib@go1.19.6
1.25.13

Open the chart page →

1,004
falco-operatorfalcosecurity0.3.11 of 1See more

falco-operator falcosecurity 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
falcosecurity/falco-operator:0.4.18a99fcc57a57
stdlib@go1.26.0
1.25.13

Open the chart page →

348
fastapi-microservice-appfast-api-microservice-app1.3.01 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

1 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
stdlib@go1.26.5
1.25.13

Open the chart page →

9,619

Container images carrying it

5,253 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus-operator/prometheus-operator:v0.83.0b6a89b8ec08f
stdlib@go1.24.3
1.25.13
2
quay.io/prometheus-operator/prometheus-operator:v0.88.1d3d65efa3bee
stdlib@go1.25.6
1.25.13
2
quay.io/prometheus-operator/prometheus-operator:v0.77.1dde69a8b6f4b
stdlib@go1.23.1
1.25.13
2
quay.io/prometheus/prometheus:v2.53.0075b1ba2c4eb
stdlib@go1.22.4
1.25.13
2
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
stdlib@go1.23.4
1.25.13
2
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
stdlib@go1.15.3
1.25.13
2
quay.io/prometheus/prometheus:v2.47.0c5dd35038287
stdlib@go1.21.0
1.25.13
2
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
stdlib@go1.18.3
1.25.13
2
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
stdlib@go1.22.6
1.25.13
2
quay.io/prometheus/pushgateway:v1.11.249ed9fdf3780
stdlib@go1.25.3
1.25.13
2
quay.io/prometheus/pushgateway:v1.6.2979a69ab4a40
stdlib@go1.21.1
1.25.13
2
quay.io/prometheus/pushgateway:v1.11.099392035ae99
stdlib@go1.23.4
1.25.13
2
quay.io/prometheus/snmp-exporter:v0.30.1e5fd5e8b43ac
stdlib@go1.25.5
1.25.13
2
quay.io/thanos/thanos:v0.39.21d022ef4b8ef
stdlib@go1.24.0
1.25.13
2
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
stdlib@go1.22.5
1.25.13
2
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
stdlib@go1.22.5
1.25.13
2
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
stdlib@go1.22.6
1.25.13
2
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
stdlib@go1.24.11
1.25.13
2
registry.k8s.io/agent-sandbox/agent-sandbox-controller:v0.5.4be477ba317d8
stdlib@go1.26.5
1.25.13
2
registry.k8s.io/etcd:3.5.6-0dd75ec974b0a
stdlib@go1.16.15
1.25.13
2
registry.k8s.io/ingress-nginx/controller:v1.9.45b161f051d01
stdlib@go1.21.3
1.25.13
2
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
stdlib@go1.24.4
1.25.13
2
registry.k8s.io/ingress-nginx/controller:v1.9.5b3aba22b1da8
stdlib@go1.21.5
1.25.13
2
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
stdlib@go1.24.1
1.25.13
2
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230312-helm-chart-4.5.2-28-g66a76079401d181618f27
stdlib@go1.20.1
1.25.13
2
registry.k8s.io/kube-apiserver:v1.26.199e1ed9fbc8a
stdlib@go1.19.5
1.25.13
2
registry.k8s.io/kube-controller-manager:v1.26.140adecbe3a40
stdlib@go1.19.5
1.25.13
2
registry.k8s.io/kubectl:v1.37.05ed410ebac5d
stdlib@go1.26.5
1.25.13
2
registry.k8s.io/kube-scheduler:v1.30.1474a5cf9cfa9f
stdlib@go1.23.10
1.25.13
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
stdlib@go1.18.3
1.25.13
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.7.0a15ca437f230
stdlib@go1.19.3
1.25.13
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.1af8220f53493
stdlib@go1.20.10
1.25.13
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.6.0bdab4e49d71d
stdlib@go1.18.5
1.25.13
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.15.0db384bf43222
stdlib@go1.23.5
1.25.13
2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.10.0ec5d6f6be228
stdlib@go1.20.7
1.25.13
2
registry.k8s.io/metrics-server/metrics-server:v0.8.089258156d0e9
stdlib@go1.24.4
1.25.13
2
registry.k8s.io/nfd/node-feature-discovery:v0.19.02fa1c99ad09b
stdlib@go1.26.3
1.25.13
2
registry.k8s.io/sig-storage/csi-attacher:v4.9.05aaefc24f315
stdlib@go1.24.2
1.25.13
2
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
stdlib@go1.17.3
1.25.13
2
registry.k8s.io/sig-storage/csi-attacher:v4.0.09a685020911e
stdlib@go1.18
1.25.13
2
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
stdlib@go1.23.1
1.25.13
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.10103eee7c35e
stdlib@go1.17.3
1.25.13
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
stdlib@go1.17.3
1.25.13
2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.6.0f1c25991bac2
stdlib@go1.18
1.25.13
2
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
stdlib@go1.17.3
1.25.13
2
registry.k8s.io/sig-storage/csi-provisioner:v6.1.1d992c36d4ddd
stdlib@go1.24.6
1.25.13
2
registry.k8s.io/sig-storage/csi-provisioner:v6.1.0e5900dc98b0d
stdlib@go1.24.6
1.25.13
2
registry.k8s.io/sig-storage/csi-resizer:v1.5.08f7520bd957e
stdlib@go1.18
1.25.13
2
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
stdlib@go1.17.3
1.25.13
2
registry.k8s.io/sig-storage/csi-resizer:v1.9.0f1f352df9787
stdlib@go1.20.5
1.25.13
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.