StackRadar

CVE-2026-56859

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,487
of 17,787 indexed, latest versions
Container images
5,217
deployed by those charts
Fix available
1 of 2
affected packages

Add recursion depth guard during decode in encoding/xml

Carried by container images the latest versions of 4,487 of 17,787 indexed charts deploy, on 5,217 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.135,217
OSV records
DEBIAN-CVE-2026-56859GO-2026-6088
Also known as
BIT-golang-2026-56859

Charts affected

4,487 by stars
ChartLatestAffected imagesRadar Score
geoservercloudcamptocamp23.0.17 of 7See more

geoservercloud camptocamp2 3.0.1

7 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:3.0.1.1de0b20bd2a43
stdlib@go1.26.5
1.25.13
geoservercloud/geoserver-cloud-gwc:3.0.1.1b04ed89b5d2b
stdlib@go1.26.5
1.25.13
geoservercloud/geoserver-cloud-rest:3.0.1.1318254b52f96
stdlib@go1.26.5
1.25.13
geoservercloud/geoserver-cloud-wcs:3.0.1.14f077124f591
stdlib@go1.26.5
1.25.13
geoservercloud/geoserver-cloud-webui:3.0.1.14f91e3048ac8
stdlib@go1.26.5
1.25.13
geoservercloud/geoserver-cloud-wfs:3.0.1.1299f0d6232d1
stdlib@go1.26.5
1.25.13
geoservercloud/geoserver-cloud-wms:3.0.1.15164f687ce4d
stdlib@go1.26.5
1.25.13

Open the chart page →

10,546
version-checkercert-managerVerified publisher0.11.01 of 1See more

version-checker cert-manager 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.11.0eae9a374d22f
stdlib@go1.26.4
1.25.13

Open the chart page →

256
cert-managerchoerodon1.8.24 of 4See more

cert-manager choerodon 1.8.2

4 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.8.2c010246124c2
stdlib@go1.17.11
1.25.13
quay.io/jetstack/cert-manager-controller:v1.8.2a20c44021a5d
stdlib@go1.17.11
1.25.13
quay.io/jetstack/cert-manager-ctl:v1.8.281b2d775edad
stdlib@go1.17.11
1.25.13
quay.io/jetstack/cert-manager-webhook:v1.8.2ada7edd90bec
stdlib@go1.17.11
1.25.13

Open the chart page →

7,775
popeyechristianhuthVerified publisher2.4.31 of 1See more

popeye christianhuth 2.4.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
stdlib@go1.23.5
1.25.13

Open the chart page →

1,196
hellocloudechoVerified publisher0.1.21 of 1See more

hello cloudecho 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
cloudecho/hello:0.1.0f76ede067ab9
stdlib@go1.16.6
1.25.13

Open the chart page →

1,817
cloudflare-exportercloudflare-exporter0.2.31 of 1See more

cloudflare-exporter cloudflare-exporter 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/lablabs/cloudflare_exporter:0.0.1670d74ec46602
stdlib@go1.22.3
1.25.13

Open the chart page →

791
ghostcloudpirates-ghostVerified publisher0.20.223 of 3See more

ghost cloudpirates-ghost 0.20.22

3 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/ghost:6.63.0e05bc1169fb2
stdlib@go1.24.6
1.25.13
library/mariadb:12.0.25b6a1eac15b8
stdlib@go1.18.2
1.25.13
library/mariadb:12.3.3ab1c3dd38194
stdlib@go1.24.6
1.25.13

Open the chart page →

7,146
dumpscriptcloudscriptVerified publisher1.8.31 of 1See more

dumpscript cloudscript 1.8.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/cloudscript-technology/dumpscript:v0.0.42-alpine-edgefce5b6fd161c
stdlib@go1.26.2
1.25.13

Open the chart page →

2,125
clowardenclowarden0.2.32 of 4See more

clowarden clowarden 0.2.3

2 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
stdlib@go1.24.6
1.25.13
ghcr.io/cncf/clowarden/dbmigrator:v0.2.3c022fd42de45
stdlib@go1.25.3
1.25.13

Open the chart page →

5,606
cluster-manager-servercluster-manager-server1.8.01 of 1See more

cluster-manager-server cluster-manager-server 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/cluster-manager-server:1.8.0364b3ff0fcb7
stdlib@go1.24.5
1.25.13

Open the chart page →

746
cluster-registrycluster-registry-controller0.2.121 of 1See more

cluster-registry cluster-registry-controller 0.2.12

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/cisco-open/cluster-registry-controller:v0.2.12937eff91df1e
stdlib@go1.18
1.25.13

Open the chart page →

1,707
coder-observabilitycoder-observabilityVerified publisher0.7.314 of 21See more

coder-observability coder-observability 0.7.3

14 of the 21 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/agent:v0.40.3f6cbec9409be
stdlib@go1.22.1
1.25.13
grafana/grafana:10.4.19a9043254ba16
stdlib@go1.24.3
1.25.13
grafana/loki:3.1.0d947e68a84d9
stdlib@go1.22.2
1.25.13
grafana/loki-canary:3.1.039baf6d67f85
stdlib@go1.22.2
1.25.13
prom/memcached-exporter:v0.14.2d8a61419b841
stdlib@go1.21.5
1.25.13
ghcr.io/jimmidyson/configmap-reload:v0.12.0a7c754986900
stdlib@go1.21.1
1.25.13
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
stdlib@go1.18.6
1.25.13
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
stdlib@go1.18.6
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.74.0d55631c7a740
stdlib@go1.22.3
1.25.13
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
stdlib@go1.21.7
1.25.13
quay.io/prometheus/node-exporter:v1.8.1fa7fa12a57ef
stdlib@go1.22.3
1.25.13
quay.io/prometheus/prometheus:v2.53.1f20d3127bf28
stdlib@go1.22.5
1.25.13
quay.io/prometheuscommunity/postgres-exporter:latestac5ec343104f
stdlib@go1.26.4
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.12.0b401fae262a5
stdlib@go1.21.8
1.25.13

Open the chart page →

24,700
convertigoconvertigoOfficialVerified publisher8.4.32 of 5See more

convertigo convertigo 8.4.3

2 of the 5 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
baserow/baserow:1.30.1df0c42eb67e8
stdlib@go1.21.5
1.25.13
timescale/timescaledb:latest-pg16289d55704b1b
stdlib@go1.24.6
1.25.13

Open the chart page →

17,404
core-dump-handlercore-dump-handler9.0.01 of 1See more

core-dump-handler core-dump-handler 9.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/icdh/core-dump-handler:v9.0.0cc79b9e2a1c8
stdlib@go1.16.6
1.25.13

Open the chart page →

3,080
cosmocosmo-platformOfficialVerified publisher0.20.06 of 10See more

cosmo cosmo-platform 0.20.0

6 of the 10 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r56dabb4a2088c
stdlib@go1.24.6
1.25.13
bitnamilegacy/redis:7.2.4-debian-12-r1670cafc5a71e8
stdlib@go1.21.10
1.25.13
ghcr.io/wundergraph/cosmo/controlplane:0.133.149800ff775f3
stdlib@go1.22.3
1.25.13
ghcr.io/wundergraph/cosmo/graphqlmetrics:0.33.0efb69ec3330c
stdlib@go1.23.6
1.25.13
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
stdlib@go1.23.6
1.25.13
ghcr.io/wundergraph/cosmo/studio:0.111.0454f4384713a
stdlib@go1.20.7
1.25.13

Open the chart page →

28,839
crossviewcrossviewOfficialVerified publisher4.6.01 of 2See more

crossview crossview 4.6.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

1,791
dapr-dashboarddapr0.15.01 of 1See more

dapr-dashboard dapr 0.15.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
daprio/dashboard:0.15.04be696707bd1
stdlib@go1.21.13
1.25.13

Open the chart page →

1,301
hoppscotchdeliveryheroVerified publisher0.3.21 of 1See more

hoppscotch deliveryhero 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.8.2f1da831950b7
stdlib@go1.21.10
1.25.13

Open the chart page →

3,451
kube-benchdeliveryheroVerified publisher0.1.171 of 1See more

kube-bench deliveryhero 0.1.17

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.8.0ea3e33bc3c4e
stdlib@go1.21.7
1.25.13

Open the chart page →

1,623
listmonkdeliveryheroVerified publisher0.1.121 of 1See more

listmonk deliveryhero 0.1.12

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
listmonk/listmonk:v2.1.0d2eac77ddfad
stdlib@go1.17.6
1.25.13

Open the chart page →

2,537
prometheus-locust-exporterdeliveryheroVerified publisher1.2.31 of 1See more

prometheus-locust-exporter deliveryhero 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
containersol/locust_exporter:v0.4.1a914972d19ad
stdlib@go1.15.8
1.25.13

Open the chart page →

1,276
distrdistrOfficialVerified publisher4.0.01See more

distr distr 4.0.0

1 container image this version deploys carries CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/loki:3.7.7d70e4659623f
stdlib@go1.26.5
1.25.13

Open the chart page →

zabbix-kubernetes-discoverydjerfyVerified publisher1.4.201 of 1See more

zabbix-kubernetes-discovery djerfy 1.4.20

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
stdlib@go1.23.1
1.25.13

Open the chart page →

4,147
navidromedjjudas21Verified publisher6.8.41 of 1See more

navidrome djjudas21 6.8.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
deluan/navidrome:0.63.17c43af9f6516
stdlib@go1.26.5
1.25.13

Open the chart page →

160
bscdysnixVerified publisher0.6.591 of 4See more

bsc dysnix 0.6.59

1 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/bnb-chain/bsc:1.6.2fd0e3ec7d960
stdlib@go1.24.9
1.25.13

Open the chart page →

2,012
element-callelement-callVerified publisher0.1.441 of 2See more

element-call element-call 0.1.44

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/element-hq/lk-jwt-service:0.6.0822f0c03a3bd
stdlib@go1.26.4
1.25.13

Open the chart page →

156
imagepullsecret-patcherempathyco1.0.01 of 1See more

imagepullsecret-patcher empathyco 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/titansoft/imagepullsecret-patcher:v0.1421e6d6a155dc
stdlib@go1.13.15
1.25.13

Open the chart page →

2,271
postgres-pgdump-backupeugen0.7.61 of 1See more

postgres-pgdump-backup eugen 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
traefik/whoami:v1.11.0200689790a0a
stdlib@go1.24.1
1.25.13

Open the chart page →

353
openshift-secured-appeximiaitVerified publisher0.5.01 of 1See more

openshift-secured-app eximiait 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
stdlib@go1.20.10
1.25.13

Open the chart page →

12,042
openshift-secured-pgadmineximiaitVerified publisher0.2.01 of 2See more

openshift-secured-pgadmin eximiait 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
stdlib@go1.20.10
1.25.13

Open the chart page →

14,546
openshift-secured-redisInsighteximiaitVerified publisher0.9.21 of 2See more

openshift-secured-redisInsight eximiait 0.9.2

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
stdlib@go1.20.10
1.25.13

Open the chart page →

13,874
keydbfinkinfridomVerified publisher0.48.31 of 1See more

keydb finkinfridom 0.48.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
stdlib@go1.16.7
1.25.13

Open the chart page →

5,264
flyte-binaryflyte2.0.481 of 4See more

flyte-binary flyte 2.0.48

1 of the 4 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:15-alpinefe0737ba566a
stdlib@go1.24.6
1.25.13

Open the chart page →

4,641
flyte-coreflyte2.0.481 of 3See more

flyte-core flyte 2.0.48

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:15-alpinefe0737ba566a
stdlib@go1.24.6
1.25.13

Open the chart page →

1,178
frp-operatorfrpVerified publisher1.0.41 of 1See more

frp-operator frp 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/aureum-cloud/frp-operator:v1.0.196b01d7e7025
stdlib@go1.24.13
1.25.13

Open the chart page →

368
frp-operatorfrp-operator1.9.01 of 1See more

frp-operator frp-operator 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/zufardhiyaulhaq/frp-operator:v0.11.0cd25ee354df2
stdlib@go1.23.12
1.25.13

Open the chart page →

528
ascii-moviegabe565Verified publisher0.16.41 of 1See more

ascii-movie gabe565 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
stdlib@go1.24.0
1.25.13

Open the chart page →

986
domain-watchgabe565Verified publisher1.1.01 of 1See more

domain-watch gabe565 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/gabe565/domain-watch:latest34c5a1e351d6
stdlib@go1.24.1
1.25.13

Open the chart page →

789
blockygeek-cookbookVerified publisher10.5.21 of 1See more

blocky geek-cookbook 10.5.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
stdlib@go1.17.7
1.25.13

Open the chart page →

3,030
error-pagesgeek-cookbookVerified publisher1.2.21 of 1See more

error-pages geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/tarampampam/error-pages:2.6.013e73da04ee4
stdlib@go1.17.6
1.25.13

Open the chart page →

1,110
mealiegeek-cookbookVerified publisher5.1.21 of 2See more

mealie geek-cookbook 5.1.2

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
stdlib@go1.17.10
1.25.13

Open the chart page →

7,579
multusgeek-cookbookVerified publisher3.5.22 of 3See more

multus geek-cookbook 3.5.2

2 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/cni-plugins:v0.9.1241592d93640
stdlib@go1.15.8
1.25.13
ghcr.io/k8snetworkplumbingwg/multus-cni:v3.7.1e72aa733faf2
stdlib@go1.13.10
1.25.13

Open the chart page →

4,906
network-ups-toolsgeek-cookbookVerified publisher6.4.21 of 1See more

network-ups-tools geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
stdlib@go1.15
1.25.13

Open the chart page →

13,950
plexgeek-cookbookVerified publisher6.4.31 of 1See more

plex geek-cookbook 6.4.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
stdlib@go1.18.4
1.25.13

Open the chart page →

9,627
signal-cli-rest-apigeek-cookbookVerified publisher1.2.21 of 1See more

signal-cli-rest-api geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
stdlib@go1.17.8
1.25.13

Open the chart page →

10,154
smarter-device-managergeek-cookbookVerified publisher6.5.21 of 1See more

smarter-device-manager geek-cookbook 6.5.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.7864fc338571e
stdlib@go1.16.4
1.25.13

Open the chart page →

2,330
statpinggeek-cookbookVerified publisher6.2.01 of 2See more

statping geek-cookbook 6.2.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
stdlib@go1.14.13
1.25.13

Open the chart page →

3,371
syncthinggeek-cookbookVerified publisher3.5.21 of 1See more

syncthing geek-cookbook 3.5.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
syncthing/syncthing:1.18.2966433161272
stdlib@go1.17
1.25.13

Open the chart page →

2,610
tautulligeek-cookbookVerified publisher11.4.21 of 1See more

tautulli geek-cookbook 11.4.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
stdlib@go1.16.7
1.25.13

Open the chart page →

10,628
traefik-forward-authgeek-cookbookVerified publisher2.2.21 of 1See more

traefik-forward-auth geek-cookbook 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:2.2.0e875194d67e2
stdlib@go1.13.12
1.25.13

Open the chart page →

2,234

Container images carrying it

5,217 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
stdlib@go1.24.6
1.25.13
3
registry.k8s.io/sig-storage/livenessprobe:v2.10.04dc0b87ccd69
stdlib@go1.20.3
1.25.13
3
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
stdlib@go1.16.2
1.25.13
3
1password/scim:v2.3.129d0c6cb67eb
stdlib@go1.16.8
1.25.13
2
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
stdlib@go1.14.1
1.25.13
2
alazidis/kube-netlag:1.1.00e8c84152201
stdlib@go1.24.13
1.25.13
2
alpine/git:2.47.2062a01ad7a0e
stdlib@go1.23.9
1.25.13
2
alpine/git:latest4f9488b7295b
stdlib@go1.26.3
1.25.13
2
alpine/k8s:1.32.12048f8d9c8cc7
stdlib@go1.25.7
1.25.13
2
alpine/kubectl:1.35.49ccd82364762
stdlib@go1.25.9
1.25.13
2
alpine/kubectl:1.35.2ec8f734b0a10
stdlib@go1.25.7
1.25.13
2
altinity/clickhouse-operator:0.21.2cd9252644ce0
stdlib@go1.19.10
1.25.13
2
altinity/metrics-exporter:0.21.2df3d57215356
stdlib@go1.19.10
1.25.13
2
apache/apisix-ingress-controller:2.2.05c5efa4c7f2a
stdlib@go1.26.5
1.25.13
2
apache/superset:dockerizeafe59523a6c8
stdlib@go1.20.4
1.25.13
2
apecloud/apecloud-mcp:0.1.094041b080510
stdlib@go1.23.7
1.25.13
2
aquasec/kube-bench:v0.8.0ea3e33bc3c4e
stdlib@go1.21.7
1.25.13
2
assistiot/fl_repository_db:latestad8f72108636
stdlib@go1.17.10
1.25.13
2
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
stdlib@go1.18.9
1.25.13
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
stdlib@go1.24.6
1.25.13
2
bitnamilegacy/etcd:latest99b408c15272
stdlib@go1.23.10
1.25.13
2
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
stdlib@go1.19.6
1.25.13
2
bitnamilegacy/kubectl:1.26.4a0a972324d93
stdlib@go1.19.8
1.25.13
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
stdlib@go1.23.7
1.25.13
2
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
stdlib@go1.15.1
1.25.13
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
stdlib@go1.25.0
1.25.13
2
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
stdlib@go1.16.7
1.25.13
2
bitnamilegacy/redis:latest5927ff3702df
stdlib@go1.24.5
1.25.13
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
stdlib@go1.24.6
1.25.13
2
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
stdlib@go1.19.12
1.25.13
2
bitnamisecure/git72ae5bd9715f
stdlib@go1.24.6
1.25.13
2
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
stdlib@go1.17.13
1.25.13
2
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
stdlib@go1.19.9
1.25.13
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
stdlib@go1.24.4
1.25.13
2
cesanta/docker_auth:1.6.04d16885f3d4c
stdlib@go1.13.7
1.25.13
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
stdlib@go1.20.14
1.25.13
2
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
stdlib@go1.14.5
1.25.13
2
clickhouse/clickhouse-server:24.2ed9640bfff07
stdlib@go1.19.10
1.25.13
2
cloudflare/cloudflared:2026.6.16d91c121b803
stdlib@go1.26.4
1.25.13
2
containersol/locust_exporter:v0.4.1a914972d19ad
stdlib@go1.15.8
1.25.13
2
coredns/coredns:1.13.19b9128672209
stdlib@go1.25.2
1.25.13
2
crate/crate_adapter:latestb8d89fa5d19b
stdlib@go1.16.3
1.25.13
2
cs3org/revad:v1.19.03b57a34a7dfd
stdlib@go1.17.3
1.25.13
2
cs3org/revad:v1.24.0e80a4d67b352
stdlib@go1.20.4
1.25.13
2
csiplugin/csi-qingcloud:v1.4.00766163dc046
stdlib@go1.19.13
1.25.13
2
danielfm/aws-limits-exporter:0.6.07152b84e57cb
stdlib@go1.17.2
1.25.13
2
danielqsj/kafka-exporter:v1.9.04150e46b2e96
stdlib@go1.24.0
1.25.13
2
danielqsj/kafka-exporter:latesta51b280b55a7
stdlib@go1.26.2
1.25.13
2
datawire/aes:1.14.48588eafe6862
stdlib@go1.15
1.25.13
2
devopsfaith/krakend:latestf8bdaa8a1a43
stdlib@go1.24.2
1.25.13
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.