StackRadar

CVE-2026-56860

Medium

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,502
of 17,781 indexed, latest versions
Container images
5,248
deployed by those charts
Fix available
1 of 2
affected packages

Avoid quadratic complexity in resolvePath in net/url

Carried by container images the latest versions of 4,502 of 17,781 indexed charts deploy, on 5,248 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.135,248
OSV records
DEBIAN-CVE-2026-56860GO-2026-6218
Also known as
BIT-golang-2026-56860

Charts affected

4,502 by stars
ChartLatestAffected imagesRadar Score
signozsignoz0.141.15 of 5See more

signoz signoz 0.141.1

5 of the 5 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.21.2cd9252644ce0
stdlib@go1.19.10
1.25.13
altinity/metrics-exporter:0.21.2df3d57215356
stdlib@go1.19.10
1.25.13
signoz/signoz:v0.141.1c10fa03e103c
stdlib@go1.25.7
1.25.13
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
stdlib@go1.25.0
1.25.13
signoz/zookeeper:3.7.1fcc4a3288154
stdlib@go1.21.2
1.25.13

Open the chart page →

7,568
weblateweblateOfficialVerified publisher0.5.362 of 3See more

weblate weblate 0.5.36

2 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
bitnamilegacy/redis:latest5927ff3702df
stdlib@go1.24.5
1.25.13
weblate/weblate:2026.9.1.0990720d1737a
stdlib@go1.26.5
1.25.13

Open the chart page →

6,699
postgresgroundhog2k1.6.81 of 1See more

postgres groundhog2k 1.6.8

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

1,626
keelkeel1.2.21 of 1See more

keel keel 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/keel-hq/keel:0.22.3315e188a07c2
stdlib@go1.26.5
1.25.13

Open the chart page →

809
community-operatormongodb-helm-charts0.13.01 of 1See more

community-operator mongodb-helm-charts 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-kubernetes-operator:0.13.02dcc6393e6f7
stdlib@go1.24.2
1.25.13

Open the chart page →

1,127
prometheus-kafka-exporterprometheus-communityVerified publisher4.0.01 of 1See more

prometheus-kafka-exporter prometheus-community 4.0.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
danielqsj/kafka-exporter:v1.9.04150e46b2e96
stdlib@go1.24.0
1.25.13

Open the chart page →

716
prometheus-mongodb-exporterprometheus-communityVerified publisher3.22.01 of 1See more

prometheus-mongodb-exporter prometheus-community 3.22.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
percona/mongodb_exporter:0.53.00214e482b2cd
stdlib@go1.26.2
1.25.13

Open the chart page →

231
node-local-dnsdeliveryheroVerified publisher2.9.21 of 1See more

node-local-dns deliveryhero 2.9.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
stdlib@go1.24.8
1.25.13

Open the chart page →

1,685
fission-allfission-chartsOfficialVerified publisher1.27.03 of 3See more

fission-all fission-charts 1.27.0

3 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/fission/fission-bundle:v1.27.0d353720b037a
stdlib@go1.26.4
1.25.13
ghcr.io/fission/pre-upgrade-checks:v1.27.0b053fc3539b4
stdlib@go1.26.4
1.25.13
ghcr.io/fission/reporter:v1.27.0c77cc925debe
stdlib@go1.26.4
1.25.13

Open the chart page →

296
tempografana-communityVerified publisher3.0.01 of 1See more

tempo grafana-community 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
grafana/tempo:3.0.30296560ac66f
stdlib@go1.26.5
1.25.13

Open the chart page →

148
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
stdlib@go1.19.8
1.25.13

Open the chart page →

4,802
rancherrancher-latest2.15.12 of 2See more

rancher rancher-latest 2.15.1

2 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
rancher/rancher:v2.15.15f6c4dc52a05
stdlib@go1.26.5
1.25.13
rancher/shell:v0.8.1f293af9c635f
stdlib@go1.25.12
1.25.13

Open the chart page →

1,456
nacosygqygq2Verified publisher2.1.102 of 4See more

nacos ygqygq2 2.1.10

2 of the 4 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
nacos/nacos-peer-finder-plugin:latesta9c769301fa6
stdlib@go1.13.5
1.25.13
ygqygq2/mysql-exec-sql:latest54f30def1558
stdlib@go1.18.2
1.25.13

Open the chart page →

4,983
sealed-secretsbitnamiVerified publisher2.5.191 of 1See more

sealed-secrets bitnami 2.5.19

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
bitnami/sealed-secrets-controller:0.31.0-debian-12-r074eaff41382b
stdlib@go1.24.6
1.25.13

Open the chart page →

643
mariadbcloudpirates-mariadbVerified publisher0.16.141 of 1See more

mariadb cloudpirates-mariadb 0.16.14

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/mariadb:12.3.3ab1c3dd38194
stdlib@go1.24.6
1.25.13

Open the chart page →

1,617
difydoubanVerified publisher0.10.04 of 6See more

dify douban 0.10.0

4 of the 6 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
stdlib@go1.21.9
1.25.13
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
stdlib@go1.25.5
1.25.13
langgenius/dify-sandbox:0.2.124e65e8a351a2
stdlib@go1.23.3
1.25.13
langgenius/dify-web:1.10.1-fix.1c306ac577912
stdlib@go1.23.5
1.25.13

Open the chart page →

19,391
dragonflydragonflyVerified publisher1.8.42 of 3See more

dragonfly dragonfly 1.8.4

2 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.4a1b52779c4dd
stdlib@go1.26.5
1.25.13
dragonflyoss/scheduler:v2.5.2-rc.06d710dc2bae0
stdlib@go1.26.2
1.25.13

Open the chart page →

3,787
kubesharkkubeshark-helm-chartsOfficialVerified publisher53.4.02 of 3See more

kubeshark kubeshark-helm-charts 53.4.0

2 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
kubeshark/hub:v53.46d3f22525a0e
stdlib@go1.26.5
1.25.13
kubeshark/worker:v53.4b226490dfa11
stdlib@go1.26.5
1.25.13

Open the chart page →

825
secrets-store-csi-driversecret-store-csi-driver1.6.13 of 4See more

secrets-store-csi-driver secret-store-csi-driver 1.6.1

3 of the 4 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
registry.k8s.io/csi-secrets-store/driver-crds:v1.6.1cdacfdbe8966
stdlib@go1.26.5
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
stdlib@go1.25.7
1.25.13
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
stdlib@go1.25.7
1.25.13

Open the chart page →

1,766
stackgres-operatorstackgres-chartsOfficialVerified publisher1.19.11 of 2See more

stackgres-operator stackgres-charts 1.19.1

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
stdlib@go1.20.10
1.25.13

Open the chart page →

2,119
victoria-logs-singlevictoriametricsVerified publisher0.13.91 of 1See more

victoria-logs-single victoriametrics 0.13.9

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
victoriametrics/victoria-logs:v1.52.047b820890d64
stdlib@go1.26.5
1.25.13

Open the chart page →

60
mongodbcloudpirates-mongodbVerified publisher0.18.131 of 1See more

mongodb cloudpirates-mongodb 0.18.13

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/mongo:8.3.981a1c8842a09
stdlib@go1.26.5
1.25.13

Open the chart page →

922
opensearch-operatoropensearch-operatorVerified publisher3.0.21 of 1See more

opensearch-operator opensearch-operator 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
opensearchproject/opensearch-operator:3.0.0-alphaf78bbdd1a386
stdlib@go1.24.11
1.25.13

Open the chart page →

603
pxc-operatorpercona1.20.11 of 1See more

pxc-operator percona 1.20.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.20.0ac4d0995c71e
stdlib@go1.26.4
1.25.13

Open the chart page →

392
akhqakhq0.28.01 of 1See more

akhq akhq 0.28.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
tchiotludo/akhq:0.28.0c2824dc2ae44
stdlib@go1.26.5
1.25.13

Open the chart page →

1,548
pulsarapache4.7.06 of 10See more

pulsar apache 4.7.0

6 of the 10 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
stdlib@go1.25.7
1.25.13
grafana/grafana:12.4.1e932bd6ed0e0
stdlib@go1.25.8
1.25.13
rancher/kubectl:v1.25.085a0d1148784
stdlib@go1.19
1.25.13
victoriametrics/operator:v0.68.3f52e1bd679cb
stdlib@go1.25.8
1.25.13
quay.io/prometheus/node-exporter:v1.10.2337ff1d356b6
stdlib@go1.25.3
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
stdlib@go1.25.5
1.25.13

Open the chart page →

9,864
miniocloudpirates-minioVerified publisher0.13.41 of 1See more

minio cloudpirates-minio 0.13.4

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
stdlib@go1.25.7
1.25.13

Open the chart page →

961
vertical-pod-autoscalercowboysysopVerified publisher11.1.14 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

4 of the 4 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
stdlib@go1.21.8
1.25.13
registry.k8s.io/autoscaling/vpa-admission-controller:1.5.19928d59477fb
stdlib@go1.24.6
1.25.13
registry.k8s.io/autoscaling/vpa-recommender:1.5.1e629c61b75eb
stdlib@go1.24.6
1.25.13
registry.k8s.io/autoscaling/vpa-updater:1.5.1cba2aa4b3239
stdlib@go1.24.6
1.25.13

Open the chart page →

6,927
difydify-helmVerified publisher0.38.05 of 11See more

dify dify-helm 0.38.0

5 of the 11 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
bitnamilegacy/redis:7.0.11-debian-11-r121161dcd293a0
stdlib@go1.19.9
1.25.13
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
stdlib@go1.26.5
1.25.13
langgenius/dify-api:1.16.1dcefa5f7c47c
stdlib@go1.26.4
1.25.13
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
stdlib@go1.26.4
1.25.13
langgenius/dify-sandbox:0.2.15750e1111426e
stdlib@go1.24.13
1.25.13

Open the chart page →

22,002
eclipse-cheeclipse-cheVerified publisher7.122.01 of 1See more

eclipse-che eclipse-che 7.122.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
stdlib@go1.26.5
1.25.13

Open the chart page →

925
pyroscopegrafana2.3.12 of 3See more

pyroscope grafana 2.3.1

2 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
stdlib@go1.25.5
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
stdlib@go1.23.7
1.25.13

Open the chart page →

3,157
botkubeinfracloudioVerified publisher1.14.01 of 1See more

botkube infracloudio 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/kubeshop/botkube:v1.14.0c6fe64c7bfcd
stdlib@go1.21.13
1.25.13

Open the chart page →

1,097
operatorminio-operator7.1.11 of 1See more

operator minio-operator 7.1.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/minio/operator:v7.1.1cd587f60c43d
stdlib@go1.24.2
1.25.13

Open the chart page →

874
unleashunleash5.6.81 of 2See more

unleash unleash 5.6.8

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
stdlib@go1.24.6
1.25.13

Open the chart page →

2,059
ambassadordatawire6.9.51 of 2See more

ambassador datawire 6.9.5

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
datawire/aes:1.14.48588eafe6862
stdlib@go1.15
1.25.13

Open the chart page →

4,086
k6-operatorgrafana4.6.01 of 1See more

k6-operator grafana 4.6.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/grafana/k6-operator:controller-v1.6.0ba7f0fc1e22e
stdlib@go1.26.5
1.25.13

Open the chart page →

87
rabbitmqgroundhog2k2.3.81 of 2See more

rabbitmq groundhog2k 2.3.8

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/rabbitmq:4.3.51773ab33af6a
stdlib@go1.22.2
1.25.13

Open the chart page →

1,002
k8tzk8tzOfficialVerified publisher0.20.01 of 1See more

k8tz k8tz 0.20.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/k8tz/k8tz:0.20.0361628e53fc8
stdlib@go1.25.12
1.25.13

Open the chart page →

49
kiali-serverkiali2.31.01 of 1See more

kiali-server kiali 2.31.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/kiali/kiali:v2.31.0df636734606c
stdlib@go1.26.3
1.25.13

Open the chart page →

234
ingresskongOfficialVerified publisher0.24.01 of 2See more

ingress kong 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
kong/kubernetes-ingress-controller:3.5979f12864a13
stdlib@go1.25.12
1.25.13

Open the chart page →

1,135
oktetooktetoOfficialVerified publisher0.0.0-2026-08-037 of 10See more

okteto okteto 0.0.0-2026-08-03

7 of the 10 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/okteto/backend:0.0.0-2026-08-03244f87e8c52d
stdlib@go1.26.5
1.25.13
ghcr.io/okteto/buildkit:0.0.0-2026-08-0314527ca5d2a9
stdlib@go1.25.7
1.25.13
ghcr.io/okteto/daemon:0.0.0-2026-08-036a7f64382123
stdlib@go1.26.5
1.25.13
ghcr.io/okteto/ingress-nginx-chroot:0.0.0-2026-08-03b85a109a4d16
stdlib@go1.26.4
1.25.13
ghcr.io/okteto/okteto:3.22.0-beta.1e787b6bce27d
stdlib@go1.26.4
1.25.13
ghcr.io/okteto/registry:0.0.0-2026-08-03531cf36a5589
stdlib@go1.26.5
1.25.13
ghcr.io/okteto/reloader:0.0.0-2026-08-0304a3fce657c4
stdlib@go1.26.4
1.25.13

Open the chart page →

5,750
hydraory0.64.02 of 2See more

hydra ory 0.64.0

2 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
oryd/hydra:v26.2.0ff67c7fb5f95
stdlib@go1.26.0
1.25.13
oryd/hydra-maester:v0.0.420a7a2bfd0e7d
stdlib@go1.26.3
1.25.13

Open the chart page →

1,156
prometheus-msteamsprometheus-msteams1.3.61 of 1See more

prometheus-msteams prometheus-msteams 1.3.6

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/prometheusmsteams/prometheus-msteams:v1.5.3a9f4d31ab811
stdlib@go1.24.9
1.25.13

Open the chart page →

941
proxmox-csi-pluginproxmox-csi0.5.127 of 7See more

proxmox-csi-plugin proxmox-csi 0.5.12

7 of the 7 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/proxmox-csi-controller:v0.20.095ef74cce03e
stdlib@go1.26.5
1.25.13
ghcr.io/sergelogvinov/proxmox-csi-node:v0.20.0e0151137a1c5
stdlib@go1.26.5
1.25.13
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
stdlib@go1.26.3
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
stdlib@go1.26.3
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
stdlib@go1.26.3
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v2.2.1ea1d25e23479
stdlib@go1.26.3
1.25.13
registry.k8s.io/sig-storage/livenessprobe:v2.19.006da0d5b8908
stdlib@go1.26.3
1.25.13

Open the chart page →

1,766
thanosthanos-communityOfficialVerified publisher0.43.01 of 1See more

thanos thanos-community 0.43.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/thanos/thanos:v0.42.4b567818fe608
stdlib@go1.26.5
1.25.13

Open the chart page →

196
volsyncbackube-helm-chartsVerified publisher0.16.01 of 1See more

volsync backube-helm-charts 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/backube/volsync:0.16.00d03a6aad575
stdlib@go1.25.11
1.25.13

Open the chart page →

1,346
concourseconcourseVerified publisher20.3.02 of 2See more

concourse concourse 20.3.0

2 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
concourse/concourse:8.3.040a143ce5873
stdlib@go1.26.5
1.25.13
library/postgres:1767f41722b7a8
stdlib@go1.24.6
1.25.13

Open the chart page →

2,022
dynatrace-operatordynatraceVerified publisher1.10.21 of 1See more

dynatrace-operator dynatrace 1.10.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.10.252281db48c93
stdlib@go1.26.5
1.25.13

Open the chart page →

147
san-iscsi-csienixOfficialVerified publisher4.0.21 of 7See more

san-iscsi-csi enix 4.0.2

1 of the 7 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
enix/san-iscsi-csi:v4.0.2f963da81ecf7
stdlib@go1.16.8
1.25.13

Open the chart page →

4,154
headscalegabe565Verified publisher0.16.01 of 2See more

headscale gabe565 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/juanfont/headscale:v0.25.097febecbe6cb
stdlib@go1.23.4
1.25.13

Open the chart page →

1,979

Container images carrying it

5,248 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
stdlib@go1.25.12
1.25.13
4
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
stdlib@go1.25.12
1.25.13
4
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
stdlib@go1.25.12
1.25.13
4
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
stdlib@go1.25.5
1.25.13
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
stdlib@go1.26.5
1.25.13
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
stdlib@go1.18.10
1.25.13
4
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
stdlib@go1.25.0
1.25.13
4
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
stdlib@go1.22.4
1.25.13
4
quay.io/jetstack/cert-manager-cainjector:v1.13.172072d492b43
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
stdlib@go1.20.8
1.25.13
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.25.13
4
quay.io/prometheus/mysqld-exporter:latest:v0.20.0abed8dac117b
stdlib@go1.26.5
1.25.13
4
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.25.13
4
quay.io/prometheus/node-exporter:v1.9.1d00a542e409e
stdlib@go1.23.7
1.25.13
4
quay.io/thanos/thanos:v0.42.4b567818fe608
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-admission-controller:1.7.1be29624f7f12
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-recommender:1.7.189cea705535f
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-updater:1.7.1feb42a526970
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
stdlib@go1.19.4
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.0c9f76a75fd00
stdlib@go1.24.4
1.25.13
4
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.16.0e750cd4b43f7
stdlib@go1.24.4
1.25.13
4
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.25.13
4
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.25.13
4
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
stdlib@go1.23.1
1.25.13
4
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.25.13
4
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
stdlib@go1.24.2
1.25.13
4
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
stdlib@go1.25.7
1.25.13
4
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
stdlib@go1.26.3
1.25.13
4
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.13
4
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.25.13
3
alpine/git:latest:v2.54.06f3b5029566d
stdlib@go1.26.3
1.25.13
3
argoproj/argocd:v1.8.1830e86cacefd
stdlib@go1.14.12
1.25.13
3
bitnamilegacy/kubectl:latestcd354d5b2556
stdlib@go1.24.5
1.25.13
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.25.13
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
stdlib@go1.25.0
1.25.13
3
bitnami/mongodb:latest9aa916500f02
stdlib@go1.26.5
1.25.13
3
caddy/ingress:v0.2.118d1366fc0e9
stdlib@go1.21.4
1.25.13
3
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13
3
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
stdlib@go1.25.7
1.25.13
3
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
stdlib@go1.23.12
1.25.13
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.25.13
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.25.13
3
derailed/popeye:v0.22.18e68e22c7663
stdlib@go1.23.5
1.25.13
3
dgraph/dgraph:v21.12.03b55ea83fffe
stdlib@go1.17.3
1.25.13
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
stdlib@go1.26.5
1.25.13
3
envoyproxy/gateway:v1.7.5156b7d32c73b
stdlib@go1.26.5
1.25.13
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.