StackRadar

CVE-2026-56859

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
46th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,505
of 17,792 indexed, latest versions
Container images
5,256
deployed by those charts
Fix available
1 of 2
affected packages

Add recursion depth guard during decode in encoding/xml

Carried by container images the latest versions of 4,505 of 17,792 indexed charts deploy, on 5,256 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.135,256
OSV records
DEBIAN-CVE-2026-56859GO-2026-6088
Also known as
BIT-golang-2026-56859

Charts affected

4,505 by stars
ChartLatestAffected imagesRadar Score
k8s-mutating-webhookk8s-mutating-webhook0.3.01 of 2See more

k8s-mutating-webhook k8s-mutating-webhook 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
stdlib@go1.22.5
1.25.13

Open the chart page →

2,012
k8s-ondemand-proxyk8s-ondemand-proxy0.0.61 of 1See more

k8s-ondemand-proxy k8s-ondemand-proxy 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/k8s-ondemand-proxy:0.0.2078b25d48cf7
stdlib@go1.21.1
1.25.13

Open the chart page →

815
github-exporterk8sonlabVerified publisher0.0.41 of 1See more

github-exporter k8sonlab 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
githubexporter/github-exporter:v2.3.1a36fbedeedf8
stdlib@go1.26.4
1.25.13

Open the chart page →

68
librephotosk8sonlabVerified publisher1.1.63 of 7See more

librephotos k8sonlab 1.1.6

3 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
alpine/k8s:1.22.600ac10bcb759
stdlib@go1.17.6
1.25.13
bitnamilegacy/redis:latest5927ff3702df
stdlib@go1.24.5
1.25.13
reallibrephotos/librephotos-frontend:1.0.358cdf5e93471
stdlib@go1.24.13
1.25.13

Open the chart page →

14,912
thanosk8sonlabVerified publisher1.1.71 of 1See more

thanos k8sonlab 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
thanosio/thanos:v0.41.0cf3e9b292e43
stdlib@go1.25.7
1.25.13

Open the chart page →

592
unifik8sonlabVerified publisher0.3.71 of 1See more

unifi k8sonlab 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
stdlib@go1.24.6
1.25.13

Open the chart page →

7,407
k8s-pausek8s-pause0.1.41 of 1See more

k8s-pause k8s-pause 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/doodlescheduling/k8s-pause:v0.1.16b3215e37738
stdlib@go1.17.8
1.25.13

Open the chart page →

1,846
k8s-redirectsk8s-redirects1.0.01 of 1See more

k8s-redirects k8s-redirects 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
traefik/whoami:latestc4717a8d1f01
stdlib@go1.26.5
1.25.13

Open the chart page →

93
k8s-s3-bucket-operatork8s-s3-bucket-operator0.2.21 of 1See more

k8s-s3-bucket-operator k8s-s3-bucket-operator 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/devangradadiya/k8s-s3-bucket-operator:0.2.258288de9f9fa
stdlib@go1.25.8
1.25.13

Open the chart page →

535
k8s-ssh-bastionk8s-ssh-bastion0.5.41 of 1See more

k8s-ssh-bastion k8s-ssh-bastion 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
stdlib@go1.21.11
1.25.13

Open the chart page →

3,337
k8s-validating-webhookk8s-validating-webhook0.4.01 of 2See more

k8s-validating-webhook k8s-validating-webhook 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
stdlib@go1.22.5
1.25.13

Open the chart page →

2,012
kube-admission-controller-starterk8s-validating-webhook0.2.01 of 2See more

kube-admission-controller-starter k8s-validating-webhook 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/docker-kubectl:maind04c003d7593
stdlib@go1.22.5
1.25.13

Open the chart page →

2,168
k8svault-controllerk8svault-controller0.1.21 of 1See more

k8svault-controller k8svault-controller 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/doodlescheduling/k8svault-controller:v0.2.0627e5e211766
stdlib@go1.16.15
1.25.13

Open the chart page →

1,885
kagentkagent0.10.13 of 6See more

kagent kagent 0.10.1

3 of the 6 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mcp/grafana:latest9362bcf6aa0e
stdlib@go1.26.5
1.25.13
ghcr.io/kagent-dev/kagent/tools:0.2.150b431281d3e
stdlib@go1.25.8
1.25.13
ghcr.io/kagent-dev/kmcp/controller:0.3.086ab878da25a
stdlib@go1.24.13
1.25.13

Open the chart page →

2,950
authentikkagiso-me0.1.11 of 1See more

authentik kagiso-me 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
stdlib@go1.25.5
1.25.13

Open the chart page →

4,603
postgresqlkagiso-me0.4.01 of 1See more

postgresql kagiso-me 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:17.4-alpine7062a2109c4b
stdlib@go1.18.2
1.25.13

Open the chart page →

1,488
rediskagiso-me0.1.61 of 1See more

redis kagiso-me 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/redis:7.4.2-alpine02419de7eddf
stdlib@go1.18.2
1.25.13

Open the chart page →

1,288
kom-operatorkaisoVerified publisher1.3.01 of 2See more

kom-operator kaiso 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
kaiso/kom-operator:v2.2.0e0e22b928bdd
stdlib@go1.21.5
1.25.13

Open the chart page →

710
gpu-provisionerkaitoVerified publisher0.2.01 of 1See more

gpu-provisioner kaito 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mcr.microsoft.com/aks/kaito/gpu-provisioner:0.2.01204a7e948e9
stdlib@go1.21.8
1.25.13

Open the chart page →

1,045
workspacekaitoVerified publisher0.12.05 of 7See more

workspace kaito 0.12.0

5 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mcr.microsoft.com/acstor/local-csi-driver:v0.3.0f9af53a79fd1
stdlib@go1.26.5
1.25.13
mcr.microsoft.com/acstor/local-csi-manager:v0.3.04f464b52ba85
stdlib@go1.26.5
1.25.13
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v5.2.0afdfa3da79df
stdlib@go1.25.5
1.25.13
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v1.13.2fa8eba9843ff
stdlib@go1.25.7
1.25.13
mcr.microsoft.com/oss/v2/nvidia/k8s-device-plugin:v0.18.2-125a4e52c87bb9
stdlib@go1.26.5
1.25.13

Open the chart page →

2,482
jenkinskallakruparaju-jenkins1.0.01 of 1See more

jenkins kallakruparaju-jenkins 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.13

Open the chart page →

2,498
crashlooping-pod-deleterkarljorgensen0.1.31 of 1See more

crashlooping-pod-deleter karljorgensen 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
stdlib@go1.24.6
1.25.13

Open the chart page →

1,153
dockerdkarljorgensen0.1.01 of 1See more

dockerd karljorgensen 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/docker:28.5.2-dind2a232a42256f
stdlib@go1.24.9
1.25.13

Open the chart page →

2,044
music-assistantkarljorgensen0.1.31 of 1See more

music-assistant karljorgensen 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
stdlib@go1.25.7
1.25.13

Open the chart page →

7,125
karpenter-provider-proxmoxkarpenter-provider-proxmox0.4.91 of 1See more

karpenter-provider-proxmox karpenter-provider-proxmox 0.4.9

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/karpenter-provider-proxmox:v0.12.0ea8b8e60a020
stdlib@go1.26.5
1.25.13

Open the chart page →

66
k10restorekastenVerified publisher8.0.141 of 1See more

k10restore kasten 8.0.14

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
gcr.io/kasten-images/restorectl:8.0.145a0884f9a90c
stdlib@go1.25.4
1.25.13

Open the chart page →

1,485
kbot-self-hostedkbot-self-hostedVerified publisher0.1.81 of 7See more

kbot-self-hosted kbot-self-hosted 0.1.8

1 of the 7 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.30206a6c708fc6
stdlib@go1.26.0
1.25.13

Open the chart page →

32,902
kc-chartkc-chart1.0.01 of 3See more

kc-chart kc-chart 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mysql:latest66aec17cd21a
stdlib@go1.24.6
1.25.13

Open the chart page →

8,895
kcmkcm1.11.011 of 12See more

kcm kcm 1.11.0

11 of the 12 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flux-cli:v2.9.1020edbaee890
stdlib@go1.26.4
1.25.13
ghcr.io/fluxcd/helm-controller:v1.6.2e17ab0e5885d
stdlib@go1.26.4
1.25.13
ghcr.io/fluxcd/source-controller:v1.9.22b8d06650a1b
stdlib@go1.26.4
1.25.13
ghcr.io/k0rdent/kcm/controller:1.11.04de19a5373db
stdlib@go1.26.5
1.25.13
ghcr.io/k0rdent/kcm/telemetry:1.11.0aabb136cbaaf
stdlib@go1.26.5
1.25.13
ghcr.io/stakater/reloader:v1.4.190530cf462fa3
stdlib@go1.26.4
1.25.13
quay.io/jetstack/cert-manager-cainjector:v1.21.0ad1dcc5b2fcc
stdlib@go1.26.5
1.25.13
quay.io/jetstack/cert-manager-controller:v1.21.0e370f7800a53
stdlib@go1.26.5
1.25.13
quay.io/jetstack/cert-manager-startupapicheck:v1.21.068b3c5029dc6
stdlib@go1.26.5
1.25.13
quay.io/jetstack/cert-manager-webhook:v1.21.0c33cca307541
stdlib@go1.26.5
1.25.13
quay.io/reactiveops/rbac-manager:v1.9.587e3f461446f
stdlib@go1.25.5
1.25.13

Open the chart page →

2,857
kcp-operatorkcp-devVerified publisher0.7.101 of 1See more

kcp-operator kcp-dev 0.7.10

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/kcp-dev/kcp-operator:v0.9.0cd8bf46d98e0
stdlib@go1.26.4
1.25.13

Open the chart page →

134
keeper-injectorkeeper-injectorVerified publisher0.10.02 of 2See more

keeper-injector keeper-injector 0.10.0

2 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
keeper/injector-webhook:0.10.0aeb5476b95f0
stdlib@go1.25.6
1.25.13
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.4a9f03b34a3cb
stdlib@go1.22.8
1.25.13

Open the chart page →

758
keeper-injectorkeeper-securityVerified publisher0.11.31 of 2See more

keeper-injector keeper-security 0.11.3

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.4a9f03b34a3cb
stdlib@go1.22.8
1.25.13

Open the chart page →

505
nodevitalskeiailabVerified publisher0.8.61 of 1See more

nodevitals keiailab 0.8.6

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/keiailab/nodevitals:0.8.597107e46f0d3
stdlib@go1.26.5
1.25.13

Open the chart page →

434
kenerkener-chart0.0.71 of 1See more

kener kener-chart 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
stdlib@go1.20.7
1.25.13

Open the chart page →

5,251
kestra-starterkestraOfficialVerified publisher2.0.22 of 5See more

kestra-starter kestra 2.0.2

2 of the 5 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/postgres:17.5aadf2c0696f5
stdlib@go1.18.2
1.25.13
versity/versitygw:v1.1.0f730e0dbc1ef
stdlib@go1.25.5
1.25.13

Open the chart page →

5,473
keycloak-operator-legacykeycloak-operator-legacy1.0.01 of 1See more

keycloak-operator-legacy keycloak-operator-legacy 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
stdlib@go1.13.8
1.25.13

Open the chart page →

5,067
csi-driver-nfskeyporttech0.1.41 of 2See more

csi-driver-nfs keyporttech 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
keyporttech/csi-driver-nfs:2.0.05bd7955ea2f1
stdlib@go1.14.2
1.25.13

Open the chart page →

3,364
gogskeyporttech0.1.31 of 3See more

gogs keyporttech 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
gogs/gogs:0.12.30195b095d0b2
stdlib@go1.14.7
1.25.13

Open the chart page →

3,524
helm-mongodb-operatorkeyporttech0.1.01 of 1See more

helm-mongodb-operator keyporttech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
stdlib@go1.13.15
1.25.13

Open the chart page →

8,829
connectkfirfer1.15.02 of 2See more

connect kfirfer 1.15.0

2 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
1password/connect-api:1.7.26aa94cf713f9
stdlib@go1.20.6
1.25.13
1password/connect-sync:1.7.2fe527ed9d81f
stdlib@go1.20.6
1.25.13

Open the chart page →

2,787
dex-k8s-authenticatorkfirfer0.0.31 of 1See more

dex-k8s-authenticator kfirfer 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
stdlib@go1.13.11
1.25.13

Open the chart page →

2,792
home-assistantkfirfer0.5.41 of 1See more

home-assistant kfirfer 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2023.10.3021e2afc6e57
stdlib@go1.17.1
1.25.13

Open the chart page →

6,458
keelkfirfer1.0.51 of 1See more

keel kfirfer 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
keelhq/keel:0.19.202ac4ea616c4
stdlib@go1.20.5
1.25.13

Open the chart page →

2,083
kubernetes-replicatorkfirfer2.9.11 of 1See more

kubernetes-replicator kfirfer 2.9.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/mittwald/kubernetes-replicator:v2.9.1baf5f784398b
stdlib@go1.20.5
1.25.13

Open the chart page →

864
mysqldumpkfirfer2.8.01 of 1See more

mysqldump kfirfer 2.8.0

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
stdlib@go1.21.5
1.25.13

Open the chart page →

3,515
pod-cleanupkfirfer0.0.41 of 1See more

pod-cleanup kfirfer 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/ci-cd/gitlab-runner-pod-cleanup:latest4369f3ba1d9a
stdlib@go1.25.0
1.25.13

Open the chart page →

742
prometheus-elasticsearch-exporterkfirfer6.5.11 of 1See more

prometheus-elasticsearch-exporter kfirfer 6.5.1

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/elasticsearch-exporter:v1.8.0073dd360de2c
stdlib@go1.22.7
1.25.13

Open the chart page →

778
scriptskfirfer0.1.361 of 1See more

scripts kfirfer 0.1.36

1 of the 1 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
kfirfer/scripts:0.0.2481e5c4e5d70e
stdlib@go1.17.10
1.25.13

Open the chart page →

2,320
kiaekiae0.1.66 of 9See more

kiae kiae 0.1.6

6 of the 9 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
grafana/loki:2.6.11ee60f980950
stdlib@go1.17.9
1.25.13
grafana/promtail:2.6.1072527b12cdf
stdlib@go1.17.9
1.25.13
istio/pilot:1.15.2db08d6963975
stdlib@go1.19.2
1.25.13
otel/opentelemetry-collector-contrib:0.63.1dfb3a55ea8c9
stdlib@go1.19.2
1.25.13
ghcr.io/dexidp/dex:v2.35.313964b29d63e
stdlib@go1.19.2
1.25.13
ghcr.io/kiaedev/kiae:latestebd03028ff6a
stdlib@go1.18.9
1.25.13

Open the chart page →

19,267
kimai-helmchartkimai2tet0.1.01 of 2See more

kimai-helmchart kimai2tet 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56859.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.13

Open the chart page →

1,518

Container images carrying it

5,256 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.13
89
library/postgres:18:18.6:18.6-trixie:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.13
69
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.25.13
22
library/postgres:16.15-alpine:16-alpinecf78e76683b9
stdlib@go1.24.6
1.25.13
17
library/postgres:18.6-alpine:18-alpine:alpined3e1620b530c
stdlib@go1.24.6
1.25.13
17
library/mysql:8:8.4:8.4.11b3b90af2a655
stdlib@go1.24.6
1.25.13
16
minio/minio:latest:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
stdlib@go1.24.6
1.25.13
15
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.13
14
codeurjc/toposervice:v1.0:v1.239fb4c11e6a49
stdlib@go1.18.10
1.25.13
13
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
stdlib@go1.25.3
1.25.13
13
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.13
13
ghcr.io/appscode/kubectl-nonroot:1.340b26892cec94
stdlib@go1.24.13
1.25.13
13
grafana/grafana:latestf772d434e8fa
stdlib@go1.26.5
1.25.13
12
library/postgres:16f1c3376c26f2
stdlib@go1.24.6
1.25.13
12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.13
12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
stdlib@go1.26.3
1.25.13
12
library/mariadb:12.3.3:latest:ltsdd9b303aed4f
stdlib@go1.24.6
1.25.13
11
library/mongo:8:8.3.8:latest5211c51171f5
stdlib@go1.26.5
1.25.13
11
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.13
11
library/postgres:15-alpinefe0737ba566a
stdlib@go1.24.6
1.25.13
11
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13
10
jwilder/dockerize:latestf94fb59fb4f6
stdlib@go1.25.5
1.25.13
10
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.13
10
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.13
10
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
stdlib@go1.26.3
1.25.13
10
bitnami/mongodb:lateste46cffb66274
stdlib@go1.26.5
1.25.13
9
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.25.13
9
library/rabbitmq:3.13-management:3-managemente582c0bc7766
stdlib@go1.22.2
1.25.13
8
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.25.13
8
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
stdlib@go1.21.7
1.25.13
8
quay.io/prometheus/node-exporter:latest:v1.12.11b4e4438faca
stdlib@go1.26.5
1.25.13
8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.25.13
8
library/postgres:14156f0b253fd6
stdlib@go1.24.6
1.25.13
7
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.25.13
7
wurstmeister/kafka:latest2d4bbf9cc83d
stdlib@go1.17.10
1.25.13
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
stdlib@go1.25.3
1.25.13
7
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
stdlib@go1.24.4
1.25.13
7
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.2.2:8.2.2-1-ubi98e01c0305844
stdlib@go1.26.4
1.25.13
7
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
stdlib@go1.23.4
1.25.13
7
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
stdlib@go1.23.4
1.25.13
7
quay.io/openshift/origin-cli:latest605eaa5d469c
stdlib@go1.26.5
1.25.13
7
quay.io/prometheus/node-exporter:v1.12.1-distroless8c9bac11973b
stdlib@go1.26.5
1.25.13
7
quay.io/thanos/thanos:v0.37.24ec6df40fdb9
stdlib@go1.23.4
1.25.13
7
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.185108987d044
stdlib@go1.26.4
1.25.13
7
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
stdlib@go1.24.6
1.25.13
7
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
stdlib@go1.25.7
1.25.13
7
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
stdlib@go1.25.7
1.25.13
7
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
stdlib@go1.24.2
1.25.13
7
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
stdlib@go1.19.12
1.25.13
6
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
stdlib@go1.25.0
1.25.13
6

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.