StackRadar

CVE-2026-56860

Medium

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,526
of 17,790 indexed, latest versions
Container images
5,288
deployed by those charts
Fix available
1 of 2
affected packages

Avoid quadratic complexity in resolvePath in net/url

Carried by container images the latest versions of 4,526 of 17,790 indexed charts deploy, on 5,288 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.135,288
OSV records
DEBIAN-CVE-2026-56860GO-2026-6218
Also known as
BIT-golang-2026-56860

Charts affected

4,526 by stars
ChartLatestAffected imagesRadar Score
xatu-cl-mimicryethereum-helm-chartsVerified publisher0.0.21 of 1See more

xatu-cl-mimicry ethereum-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13

Open the chart page →

606
xatu-consumoorethereum-helm-chartsVerified publisher0.0.11 of 1See more

xatu-consumoor ethereum-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13

Open the chart page →

606
xatu-discoveryethereum-helm-chartsVerified publisher0.0.61 of 1See more

xatu-discovery ethereum-helm-charts 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13

Open the chart page →

606
xatu-mimicryethereum-helm-chartsVerified publisher0.0.71 of 1See more

xatu-mimicry ethereum-helm-charts 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13

Open the chart page →

606
xatu-relay-monitorethereum-helm-chartsVerified publisher0.0.11 of 1See more

xatu-relay-monitor ethereum-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13

Open the chart page →

606
xatu-sageethereum-helm-chartsVerified publisher0.0.11 of 1See more

xatu-sage ethereum-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13

Open the chart page →

606
xatu-sentryethereum-helm-chartsVerified publisher0.0.81 of 1See more

xatu-sentry ethereum-helm-charts 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13

Open the chart page →

606
xatu-serverethereum-helm-chartsVerified publisher0.0.141 of 1See more

xatu-server ethereum-helm-charts 0.0.14

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethpandaops/xatu:latest74d4cf2c436c
stdlib@go1.26.5
1.25.13

Open the chart page →

606
beeethersphereVerified publisher0.17.41 of 1See more

bee ethersphere 0.17.4

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethersphere/bee:2.2.0a884fd84b72f
stdlib@go1.22.7
1.25.13

Open the chart page →

3,483
beekeeperethersphereVerified publisher0.4.141 of 1See more

beekeeper ethersphere 0.4.14

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethersphere/beekeeper:lateste4cda693ed63
stdlib@go1.26.5
1.25.13

Open the chart page →

1,626
ethexporterethersphereVerified publisher0.3.01 of 1See more

ethexporter ethersphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
darkobas/ethexporter:latest62e6464491ba
stdlib@go1.19.1
1.25.13

Open the chart page →

2,394
ethproxyethersphereVerified publisher0.2.01 of 1See more

ethproxy ethersphere 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethersphere/ethproxy:latest3a8a3926caa2
stdlib@go1.18.7
1.25.13

Open the chart page →

1,400
geth-swapethersphereVerified publisher0.6.31 of 2See more

geth-swap ethersphere 0.6.3

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethereum/client-go:v1.10.186d6d12a40465
stdlib@go1.18.2
1.25.13

Open the chart page →

4,756
onboarding-faucetethersphereVerified publisher0.2.01 of 1See more

onboarding-faucet ethersphere 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ethersphere/onboarding-faucet:0.3.0513154aab230
stdlib@go1.18.2
1.25.13

Open the chart page →

3,320
tokenexporterethersphereVerified publisher0.3.01 of 1See more

tokenexporter ethersphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
darkobas/tokenexporter:latesta0349a0eedf0
stdlib@go1.19.1
1.25.13

Open the chart page →

2,394
localpatheugen1.3.21 of 1See more

localpath eugen 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.361eba82e9c386
stdlib@go1.26.3
1.25.13

Open the chart page →

521
snyk-farcaster-agenteugen1.0.11 of 1See more

snyk-farcaster-agent eugen 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
probely/farcaster-onprem-agent:v3741b34e8166f
stdlib@go1.26.5
1.25.13

Open the chart page →

1,100
whatsmyipeugen1.3.21 of 1See more

whatsmyip eugen 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/eugenmayer/whatsmyip:0.0.14b6700cc0e2d
stdlib@go1.22.1
1.25.13

Open the chart page →

473
whoamieugen1.0.31 of 1See more

whoami eugen 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
traefik/whoami:v1.101699d99cb4b9
stdlib@go1.23.5
1.25.13

Open the chart page →

359
whoami-tlseugen0.1.31 of 1See more

whoami-tls eugen 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/eugenmayer/whoami-tls:0.1.0477be2d05aba
stdlib@go1.24.1
1.25.13

Open the chart page →

353
evicted-pod-reaperevicted-pod-reaper0.1.01 of 1See more

evicted-pod-reaper evicted-pod-reaper 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
public.ecr.aws/kyos/evicted-pod-reaper:1.0.0b9d047442ce2
stdlib@go1.24.6
1.25.13

Open the chart page →

385
domain_exporterevilgn0me0.1.41 of 1See more

domain_exporter evilgn0me 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
caarlos0/domain_exporter:v1.23.0d11dec138900
stdlib@go1.21.6
1.25.13

Open the chart page →

1,277
ingressmonitorcontrollerevilgn0me0.0.51 of 1See more

ingressmonitorcontroller evilgn0me 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/evilgn0me/ingressmonitorcontroller:v0.0.50bbfa4db14b9
stdlib@go1.24.13
1.25.13

Open the chart page →

583
supportpalevilgn0me0.1.61 of 1See more

supportpal evilgn0me 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
stdlib@go1.18.1
1.25.13

Open the chart page →

20,983
pgbouncerevilmartians0.2.01 of 2See more

pgbouncer evilmartians 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/evl.ms/pgbouncer-exporter:0.4.074f919b78494
stdlib@go1.14.4
1.25.13

Open the chart page →

1,838
preview-appsevilmartians0.4.01 of 1See more

preview-apps evilmartians 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/mittwald/kubernetes-replicator:v2.10.0b79e77d421d0
stdlib@go1.20.14
1.25.13

Open the chart page →

625
preview-apps-infrastructureevilmartians0.7.01 of 1See more

preview-apps-infrastructure evilmartians 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/mittwald/kubernetes-replicator:v2.11.13185496b3af3
stdlib@go1.24.1
1.25.13

Open the chart page →

440
exa-csiexa-csi-driver0.2.0-rev26 of 6See more

exa-csi exa-csi-driver 0.2.0-rev2

6 of the 6 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/ddn/exascaler-csi-file-driver:v2.2.6fe2e2e5a2751
stdlib@go1.23.0
1.25.13
registry.k8s.io/sig-storage/csi-attacher:v4.5.19dcd469f02bb
stdlib@go1.21.5
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.10.1f25af73ee708
stdlib@go1.21.5
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v1.10.14ecda2818f6d
stdlib@go1.21.5
1.25.13
registry.k8s.io/sig-storage/csi-snapshotter:v5.0.189e900a160a9
stdlib@go1.17.3
1.25.13

Open the chart page →

7,091
exchange-hackexchange-hack0.1.01 of 1See more

exchange-hack exchange-hack 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
oranhack7/solidproject:77c6453942223f
stdlib@go1.21.7
1.25.13

Open the chart page →

818
express-ts-app-helm-chartsexpress-ts-app-helm-chartsVerified publisher1.0.03 of 4See more

express-ts-app-helm-charts express-ts-app-helm-charts 1.0.0

3 of the 4 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
grafana/loki:2.9.66ca6e2cd3b6f
stdlib@go1.21.3
1.25.13
grafana/loki-canary:2.9.6549a40203e97
stdlib@go1.21.3
1.25.13
grafana/promtail:3.5.165bfae480b57
stdlib@go1.24.3
1.25.13

Open the chart page →

5,813
extended-ceph-exporterextended-ceph-exporterVerified publisher1.10.01 of 2See more

extended-ceph-exporter extended-ceph-exporter 1.10.0

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
galexrt/extended-ceph-exporter:v1.8.05373078a3a08
stdlib@go1.24.8
1.25.13

Open the chart page →

2,926
extractedprismextractedprismVerified publisher0.2.01 of 1See more

extractedprism extractedprism 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/lexfrei/extractedprism:v0.3.0d10417753727
stdlib@go1.26.0
1.25.13

Open the chart page →

286
siyuanextrim-helm-chartsVerified publisher0.1.11 of 2See more

siyuan extrim-helm-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
b3log/siyuan:v3.1.2595c0d129bc19
stdlib@go1.24.1
1.25.13

Open the chart page →

1,247
faasnetfaasnet0.0.42 of 5See more

faasnet faasnet 0.0.4

2 of the 5 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
simpleidserver/faasprometheus:0.0.425e378d57d78
stdlib@go1.17.1
1.25.13
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
stdlib@go1.26.1
1.25.13

Open the chart page →

7,704
degafactlyVerified publisher0.11.132 of 3See more

dega factly 0.11.13

2 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
factly/dega-api:0.15.166fafc7b0a17
stdlib@go1.16.2
1.25.13
factly/dega-server:0.15.194d21479382e
stdlib@go1.16.2
1.25.13

Open the chart page →

5,747
kavachfactlyVerified publisher0.9.51 of 2See more

kavach factly 0.9.5

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
factly/kavach-server:0.22.3be85ff1b9bd3
stdlib@go1.16.2
1.25.13

Open the chart page →

3,573
mandefactlyVerified publisher0.5.161 of 3See more

mande factly 0.5.16

1 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
factly/mande-server:0.34.1384d384310ef
stdlib@go1.18.10
1.25.13

Open the chart page →

4,785
basic-demofairwinds-incubator1.0.01 of 1See more

basic-demo fairwinds-incubator 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/fairwinds/docker-demo:1.4.0d53cb940196c
stdlib@go1.20.4
1.25.13

Open the chart page →

1,599
datadog-apmfairwinds-incubator2.0.01 of 1See more

datadog-apm fairwinds-incubator 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
stdlib@go1.24.9
1.25.13

Open the chart page →

2,838
kubebenchfairwinds-incubator1.0.51 of 2See more

kubebench fairwinds-incubator 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.15.07a8fa32dce21
stdlib@go1.26.0
1.25.13

Open the chart page →

1,188
oom-event-generatorfairwinds-incubator0.2.21 of 1See more

oom-event-generator fairwinds-incubator 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
stdlib@go1.13
1.25.13

Open the chart page →

4,647
skopeo-syncfairwinds-incubator0.3.11 of 1See more

skopeo-sync fairwinds-incubator 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/skopeo/stable:v1.134853591bd1d2
stdlib@go1.21.0
1.25.13

Open the chart page →

1,743
stackdriver-metrics-adapterfairwinds-incubator0.3.01 of 1See more

stackdriver-metrics-adapter fairwinds-incubator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
gcr.io/gke-release/custom-metrics-stackdriver-adapter:v0.13.1-gke.06937c0a9b203
stdlib@go1.19.3
1.25.13

Open the chart page →

1,765
yelbfairwinds-incubator0.1.11 of 5See more

yelb fairwinds-incubator 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

5,113
fairwinds-insightsfairwinds-stableVerified publisher10.1.104 of 13See more

fairwinds-insights fairwinds-stable 10.1.10

4 of the 13 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.49ccd82364762
stdlib@go1.25.9
1.25.13
temporalio/admin-tools:1.31.2dbc5fcd6ee8f
stdlib@go1.26.4
1.25.13
temporalio/server:1.31.2b5ecdb8282be
stdlib@go1.26.4
1.25.13
temporalio/ui:2.52.0fc47cd8202c9
stdlib@go1.26.3
1.25.13

Open the chart page →

3,820
fake-network-operatorfake-network-operatorVerified publisher0.1.01 of 1See more

fake-network-operator fake-network-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/muhmmadayan/fake-network-operator:0.1.03806b1fd4a4b
stdlib@go1.23.12
1.25.13

Open the chart page →

502
event-generatorfalcosecurity0.4.01 of 1See more

event-generator falcosecurity 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
falcosecurity/event-generator:latest932956d86c99
stdlib@go1.26.3
1.25.13

Open the chart page →

3,796
farm-observabilityfarm-observabilityOfficialVerified publisher0.27.214 of 18See more

farm-observability farm-observability 0.27.2

14 of the 18 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
grafana/alloy:v1.16.384b76d56c594
stdlib@go1.26.3
1.25.13
grafana/alloy:v1.12.2f94b1c82957a
stdlib@go1.25.5
1.25.13
grafana/grafana:13.0.1-security-012d1f9ae67c17
stdlib@go1.26.2
1.25.13
grafana/loki:3.6.73c8fd3570dd9
stdlib@go1.24.13
1.25.13
grafana/loki-canary:3.6.70dac7d5cb383
stdlib@go1.24.13
1.25.13
grafana/pyroscope:2.0.3cfd00e7f73c2
stdlib@go1.25.11
1.25.13
grafana/tempo:2.9.065a578975943
stdlib@go1.25.1
1.25.13
prom/memcached-exporter:v0.15.4b6763ecb3c47
stdlib@go1.25.3
1.25.13
ghcr.io/jkroepke/kube-webhook-certgen:1.8.38ce13c365c8e
stdlib@go1.26.3
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.91.07d9e4eea5f11
stdlib@go1.25.9
1.25.13
quay.io/prometheus-operator/prometheus-config-reloader:v0.81.0959d47672fbf
stdlib@go1.23.7
1.25.13
quay.io/prometheus-operator/prometheus-operator:v0.91.09e53e1313921
stdlib@go1.25.9
1.25.13
quay.io/prometheus/node-exporter:v1.11.1-distroless6112664fd761
stdlib@go1.26.1
1.25.13
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.06b2f0b6f2f86
stdlib@go1.26.2
1.25.13

Open the chart page →

13,409
jenkinsfatihtepe-jenkins1.0.01 of 1See more

jenkins fatihtepe-jenkins 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
stdlib@go1.25.3
1.25.13

Open the chart page →

2,498
quickstartfeatureformVerified publisher0.1.12 of 3See more

quickstart featureform 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
featureformcom/quickstart-loader:latest82396f8fb5e8
stdlib@go1.21.11
1.25.13
library/postgres:latest4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

3,575

Container images carrying it

5,288 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
stdlib@go1.25.12
1.25.13
4
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
stdlib@go1.25.12
1.25.13
4
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
stdlib@go1.25.5
1.25.13
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
stdlib@go1.26.5
1.25.13
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
stdlib@go1.18.10
1.25.13
4
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
stdlib@go1.25.0
1.25.13
4
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
stdlib@go1.22.4
1.25.13
4
quay.io/jetstack/cert-manager-cainjector:v1.13.172072d492b43
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
stdlib@go1.20.8
1.25.13
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.25.13
4
quay.io/prometheus/mysqld-exporter:latest:v0.20.0abed8dac117b
stdlib@go1.26.5
1.25.13
4
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.25.13
4
quay.io/prometheus/node-exporter:v1.9.1d00a542e409e
stdlib@go1.23.7
1.25.13
4
quay.io/thanos/thanos:v0.42.4b567818fe608
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-admission-controller:1.7.1be29624f7f12
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-recommender:1.7.189cea705535f
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-updater:1.7.1feb42a526970
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
stdlib@go1.19.4
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.0c9f76a75fd00
stdlib@go1.24.4
1.25.13
4
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.16.0e750cd4b43f7
stdlib@go1.24.4
1.25.13
4
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.25.13
4
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
stdlib@go1.22.2
1.25.13
4
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.25.13
4
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
stdlib@go1.23.1
1.25.13
4
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.25.13
4
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
stdlib@go1.24.2
1.25.13
4
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
stdlib@go1.25.7
1.25.13
4
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
stdlib@go1.26.3
1.25.13
4
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.13
4
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.25.13
3
alpine/git:latest:v2.54.06f3b5029566d
stdlib@go1.26.3
1.25.13
3
argoproj/argocd:v1.8.1830e86cacefd
stdlib@go1.14.12
1.25.13
3
bitnamilegacy/kubectl:latestcd354d5b2556
stdlib@go1.24.5
1.25.13
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.25.13
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
stdlib@go1.25.0
1.25.13
3
bitnami/mongodb:latest9aa916500f02
stdlib@go1.26.5
1.25.13
3
caddy/ingress:v0.2.118d1366fc0e9
stdlib@go1.21.4
1.25.13
3
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13
3
cloudflare/cloudflared:2026.8.3:latest51c9cefcb456
stdlib@go1.26.4
1.25.13
3
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
stdlib@go1.25.7
1.25.13
3
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
stdlib@go1.23.12
1.25.13
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.25.13
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.25.13
3
derailed/popeye:v0.22.18e68e22c7663
stdlib@go1.23.5
1.25.13
3
dgraph/dgraph:v21.12.03b55ea83fffe
stdlib@go1.17.3
1.25.13
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
stdlib@go1.26.5
1.25.13
3

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.