StackRadar

CVE-2026-56860

Medium

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,490
of 17,792 indexed, latest versions
Container images
5,226
deployed by those charts
Fix available
1 of 2
affected packages

Avoid quadratic complexity in resolvePath in net/url

Carried by container images the latest versions of 4,490 of 17,792 indexed charts deploy, on 5,226 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+189 more1.25.135,226
OSV records
DEBIAN-CVE-2026-56860GO-2026-6218
Also known as
BIT-golang-2026-56860

Charts affected

4,490 by stars
ChartLatestAffected imagesRadar Score
kubernetes-mcp-serverhelmforgeVerified publisher1.0.61 of 1See more

kubernetes-mcp-server helmforge 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/containers/kubernetes-mcp-server:v0.0.666d650f4bd6ac
stdlib@go1.26.5
1.25.13

Open the chart page →

277
listmonkhelmforgeVerified publisher1.1.143 of 3See more

listmonk helmforge 1.1.14

3 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
stdlib@go1.24.6
1.25.13
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13
listmonk/listmonk:v6.2.0f535d59e1499
stdlib@go1.26.1
1.25.13

Open the chart page →

2,863
medikeephelmforgeVerified publisher2.0.12 of 3See more

medikeep helmforge 2.0.1

2 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
stdlib@go1.19.8
1.25.13

Open the chart page →

5,430
memoshelmforgeVerified publisher2.0.01 of 2See more

memos helmforge 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
neosmemo/memos:0.30.071a5b4738d1b
stdlib@go1.26.2
1.25.13

Open the chart page →

799
metabasehelmforgeVerified publisher1.2.291 of 3See more

metabase helmforge 1.2.29

1 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

1,676
metrics-serverhelmforgeVerified publisher1.0.41 of 1See more

metrics-server helmforge 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.25.13

Open the chart page →

163
middlewarehelmforgeVerified publisher1.2.62 of 4See more

middleware helmforge 1.2.6

2 of the 4 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13
middlewareeng/middleware:0.3.1747d880812f1
stdlib@go1.17.13
1.25.13

Open the chart page →

9,771
minecrafthelmforgeVerified publisher1.5.41 of 1See more

minecraft helmforge 1.5.4

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
itzg/minecraft-server:2026.9.1e8640538dac5
stdlib@go1.22.2
1.25.13

Open the chart page →

4,129
mongodbhelmforgeVerified publisher1.8.11 of 1See more

mongodb helmforge 1.8.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/mongo:8.3.981a1c8842a09
stdlib@go1.26.5
1.25.13

Open the chart page →

965
moodlehelmforgeVerified publisher1.1.01 of 2See more

moodle helmforge 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

6,206
mysqlhelmforgeVerified publisher2.0.31 of 1See more

mysql helmforge 2.0.3

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
stdlib@go1.24.6
1.25.13

Open the chart page →

463
netboxhelmforgeVerified publisher2.0.12 of 4See more

netbox helmforge 2.0.1

2 of the 4 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13
netboxcommunity/netbox:v4.6.10-5.0.291b823a05cb5
stdlib@go1.26.5
1.25.13

Open the chart page →

4,347
nextcloudhelmforgeVerified publisher1.0.01 of 3See more

nextcloud helmforge 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

7,211
olivetinhelmforgeVerified publisher1.2.21 of 2See more

olivetin helmforge 1.2.2

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
jamesread/olivetin:3000.20.0f3066e207efd
stdlib@go1.26.0
1.25.13

Open the chart page →

273
opencloudhelmforgeVerified publisher1.0.01 of 1See more

opencloud helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
opencloudeu/opencloud:7.2.46d992ccc5f1c
stdlib@go1.25.11
1.25.13

Open the chart page →

670
opencuthelmforgeVerified publisher1.1.91 of 5See more

opencut helmforge 1.1.9

1 of the 5 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

3,772
paprahelmforgeVerified publisher1.0.01 of 1See more

papra helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
stdlib@go1.20.7
1.25.13

Open the chart page →

2,560
pimcorehelmforgeVerified publisher2.0.12 of 6See more

pimcore helmforge 2.0.1

2 of the 6 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
dunglas/mercure:v0.24.2916834e49961
stdlib@go1.26.3
1.25.13
library/mariadb:12.3.3dd9b303aed4f
stdlib@go1.24.6
1.25.13

Open the chart page →

3,212
reactive-resumehelmforgeVerified publisher1.0.02 of 4See more

reactive-resume helmforge 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13
ghcr.io/amruthpillai/reactive-resume:v5.3.0c487ec5edcfe
stdlib@go1.26.4
1.25.13

Open the chart page →

3,071
ryothelmforgeVerified publisher1.0.02 of 2See more

ryot helmforge 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
stdlib@go1.23.1
1.25.13

Open the chart page →

6,068
strapihelmforgeVerified publisher2.3.141 of 3See more

strapi helmforge 2.3.14

1 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

2,084
strava-statisticshelmforgeVerified publisher1.1.161 of 2See more

strava-statistics helmforge 1.1.16

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
robiningelbrecht/strava-statistics:v5.0.040842cdfd616
stdlib@go1.26.3
1.25.13

Open the chart page →

853
supersethelmforgeVerified publisher1.3.62 of 5See more

superset helmforge 1.3.6

2 of the 5 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
helmforge/kubectl:1.35.3c3f97e954c47
stdlib@go1.25.7
1.25.13
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

5,784
twentyhelmforgeVerified publisher1.0.11 of 5See more

twenty helmforge 1.0.1

1 of the 5 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13

Open the chart page →

3,649
wallabaghelmforgeVerified publisher1.3.62 of 3See more

wallabag helmforge 1.3.6

2 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
stdlib@go1.24.6
1.25.13
wallabag/wallabag:2.6.144a527e027e0d
stdlib@go1.25.1
1.25.13

Open the chart page →

2,784
zookeeperhelmforgeVerified publisher1.0.21 of 1See more

zookeeper helmforge 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5f258365d4882
stdlib@go1.18.1
1.25.13

Open the chart page →

3,145
harborhelm-harborVerified publisher2.3.55 of 8See more

harbor helm-harbor 2.3.5

5 of the 8 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
goharbor/harbor-core:v2.15.2d7b780d23721
stdlib@go1.26.4
1.25.13
goharbor/harbor-jobservice:v2.15.2f71a4452a095
stdlib@go1.26.4
1.25.13
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
stdlib@go1.26.4
1.25.13
goharbor/registry-photon:v2.15.2c4ebef61ceb5
stdlib@go1.26.4
1.25.13
goharbor/trivy-adapter-photon:v2.15.2215c07b71c37
stdlib@go1.26.4
1.25.13

Open the chart page →

1,686
openbashelm-openbasVerified publisher1.8.143 of 7See more

openbas helm-openbas 1.8.14

3 of the 7 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
openbas/caldera-server:5.1.0a277796d9724
golang-1.19@1.19.8-2
stdlib@go1.19.8
no fix listed
1.25.13
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
stdlib@go1.23.4
1.25.13
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
stdlib@go1.23.4
1.25.13

Open the chart page →

25,190
release-cleanerhelm-release-cleanerVerified publisher1.0.01 of 1See more

release-cleaner helm-release-cleaner 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
alpine/helm:4.1.0905a068da431
stdlib@go1.25.6
1.25.13

Open the chart page →

2,001
pageshelm-repo1.0.01 of 3See more

pages helm-repo 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.25.13

Open the chart page →

20,242
steampipehelm-steampipeVerified publisher2.4.11 of 1See more

steampipe helm-steampipe 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
stdlib@go1.26.1
1.25.13

Open the chart page →

3,154
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
stdlib@go1.24.3
1.25.13

Open the chart page →

6,085
postgres-backup-localheywood8-helm-chartsVerified publisher0.1.131 of 1See more

postgres-backup-local heywood8-helm-charts 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
prodrigestivill/postgres-backup-local:12-alpine-8d72d2d6ed2afadc326
stdlib@go1.16
1.25.13

Open the chart page →

2,434
goshimmerhiveroad0.2.141 of 1See more

goshimmer hiveroad 0.2.14

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
iotaledger/goshimmer:v0.8.6b02a8f77474f
stdlib@go1.17.2
1.25.13

Open the chart page →

2,550
cratedb-adapterhmdmph0.1.01 of 1See more

cratedb-adapter hmdmph 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
crate/crate_adapter:latestb8d89fa5d19b
stdlib@go1.16.3
1.25.13

Open the chart page →

2,920
printserverhmediadeVerified publisher1.0.22 of 4See more

printserver hmediade 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.9.5b3aba22b1da8
stdlib@go1.21.5
1.25.13
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20231011-8b53cabe0a7943503b45d
stdlib@go1.21.3
1.25.13

Open the chart page →

10,948
imageproxyhmphuVerified publisher0.1.11 of 1See more

imageproxy hmphu 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
willnorris/imageproxy:latest21d0c90f4c31
stdlib@go1.16.8
1.25.13

Open the chart page →

2,147
homeboxhomebox-helmVerified publisher0.3.01 of 2See more

homebox homebox-helm 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
sysadminsmedia/homebox:0.26.056e880b62309
stdlib@go1.26.4
1.25.13

Open the chart page →

564
cert-managerhomeenterpriseinc1.10.13 of 3See more

cert-manager homeenterpriseinc 1.10.1

3 of the 3 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.10.1b5657161d2c2
stdlib@go1.19.3
1.25.13
quay.io/jetstack/cert-manager-controller:v1.10.11143471c90db
stdlib@go1.19.3
1.25.13
quay.io/jetstack/cert-manager-webhook:v1.10.164121721c665
stdlib@go1.19.3
1.25.13

Open the chart page →

4,734
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
stdlib@go1.19.8
1.25.13

Open the chart page →

16,415
honeydipperhoneydipperVerified publisher0.1.111 of 2See more

honeydipper honeydipper 0.1.11

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/redis:5fc5ecd863862
stdlib@go1.16.7
1.25.13

Open the chart page →

1,731
hoppscotchhoppscotch0.1.11 of 1See more

hoppscotch hoppscotch 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
stdlib@go1.21.10
1.25.13

Open the chart page →

3,621
universal-web-apphotrungnhanVerified publisher0.2.61 of 2See more

universal-web-app hotrungnhan 0.2.6

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
traefik/whoami:latestc4717a8d1f01
stdlib@go1.26.5
1.25.13

Open the chart page →

93
paperlesshpVerified publisher0.1.23 of 5See more

paperless hp 0.1.2

3 of the 5 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
apache/tika:3.3.1.090b7fa1dc018
stdlib@go1.26.2
1.25.13
gotenberg/gotenberg:8.3467097317623a
stdlib@go1.26.2
1.25.13
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
stdlib@go1.24.4
1.25.13

Open the chart page →

26,984
wallabaghpVerified publisher0.1.71 of 1See more

wallabag hp 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
wallabag/wallabag:2.6.144a527e027e0d
stdlib@go1.25.1
1.25.13

Open the chart page →

1,135
hammerspace-csihscsi1.2.86 of 6See more

hammerspace-csi hscsi 1.2.8

6 of the 6 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
hammerspaceinc/csi-plugin:v1.2.8-rc2395bee4504fc
stdlib@go1.24.4
1.25.13
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v5.2.0d5e46da8aff7
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
stdlib@go1.24.2
1.25.13
registry.k8s.io/sig-storage/csi-snapshotter:v8.0.25f051159c95f
stdlib@go1.22.5
1.25.13

Open the chart page →

4,498
eoloplanthttpd-eoloplant0.1.03 of 7See more

eoloplant httpd-eoloplant 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
stdlib@go1.18.10
1.25.13
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.25.13
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.25.13

Open the chart page →

32,372
http-headershttp-headers1.2.11 of 1See more

http-headers http-headers 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
stdlib@go1.19.2
1.25.13

Open the chart page →

2,009
cac-systemhuangchengwu-helm-chart0.1.07 of 9See more

cac-system huangchengwu-helm-chart 0.1.0

7 of the 9 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
huangchengwu6904/hi-app:cac-16910478061b932f8221a9
stdlib@go1.20.4
1.25.13
quay.io/jetstack/cert-manager-cainjector:v1.12.0e0a5b06b231c
stdlib@go1.20.4
1.25.13
quay.io/jetstack/cert-manager-controller:v1.12.04a9d0264055b
stdlib@go1.20.4
1.25.13
quay.io/jetstack/cert-manager-ctl:v1.12.08d54fe9d0c0d
stdlib@go1.20.4
1.25.13
quay.io/jetstack/cert-manager-webhook:v1.12.0ec4306b243d9
stdlib@go1.20.4
1.25.13
quay.io/metallb/controller:v0.13.101b33357b3595
stdlib@go1.19.5
1.25.13
quay.io/metallb/speaker:v0.13.1000406ccb1fa0
stdlib@go1.19.5
1.25.13

Open the chart page →

11,221
jenkinshuangchengwu-helm-chart0.1.01 of 2See more

jenkins huangchengwu-helm-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56860.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
stdlib@go1.26.5
1.25.13

Open the chart page →

738

Container images carrying it

5,226 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
stdlib@go1.25.12
1.25.13
4
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
stdlib@go1.25.12
1.25.13
4
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
stdlib@go1.25.5
1.25.13
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
stdlib@go1.26.5
1.25.13
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
stdlib@go1.18.10
1.25.13
4
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
stdlib@go1.25.0
1.25.13
4
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
stdlib@go1.22.4
1.25.13
4
quay.io/jetstack/cert-manager-cainjector:v1.13.172072d492b43
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
stdlib@go1.20.8
1.25.13
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
stdlib@go1.20.8
1.25.13
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.25.13
4
quay.io/prometheus/mysqld-exporter:latest:v0.20.0abed8dac117b
stdlib@go1.26.5
1.25.13
4
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.25.13
4
quay.io/prometheus/node-exporter:v1.9.1d00a542e409e
stdlib@go1.23.7
1.25.13
4
quay.io/thanos/thanos:v0.42.4b567818fe608
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-admission-controller:1.7.1be29624f7f12
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-recommender:1.7.189cea705535f
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/autoscaling/vpa-updater:1.7.1feb42a526970
stdlib@go1.26.5
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20221220-controller-v1.5.1-58-g787ea74b64d99688e5573
stdlib@go1.19.4
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.25.13
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.0c9f76a75fd00
stdlib@go1.24.4
1.25.13
4
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.16.0e750cd4b43f7
stdlib@go1.24.4
1.25.13
4
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.25.13
4
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
stdlib@go1.22.2
1.25.13
4
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.25.13
4
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
stdlib@go1.23.1
1.25.13
4
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.25.13
4
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
stdlib@go1.24.2
1.25.13
4
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
stdlib@go1.25.7
1.25.13
4
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
stdlib@go1.26.3
1.25.13
4
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.25.13
4
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.25.13
3
alpine/git:latest:v2.54.06f3b5029566d
stdlib@go1.26.3
1.25.13
3
argoproj/argocd:v1.8.1830e86cacefd
stdlib@go1.14.12
1.25.13
3
bitnamilegacy/kubectl:latestcd354d5b2556
stdlib@go1.24.5
1.25.13
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.25.13
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
stdlib@go1.25.0
1.25.13
3
bitnami/mongodb:latest9aa916500f02
stdlib@go1.26.5
1.25.13
3
caddy/ingress:v0.2.118d1366fc0e9
stdlib@go1.21.4
1.25.13
3
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.25.13
3
cloudflare/cloudflared:2026.8.3:latest51c9cefcb456
stdlib@go1.26.4
1.25.13
3
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
stdlib@go1.25.7
1.25.13
3
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
stdlib@go1.23.12
1.25.13
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.25.13
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.25.13
3
derailed/popeye:v0.22.18e68e22c7663
stdlib@go1.23.5
1.25.13
3
dgraph/dgraph:v21.12.03b55ea83fffe
stdlib@go1.17.3
1.25.13
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
stdlib@go1.26.5
1.25.13
3

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.