StackRadar

CVE-2026-56862

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
46th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
4,613
of 17,837 indexed, latest versions
Container images
5,291
deployed by those charts
Fix available
1 of 2
affected packages

Limit handshake messages we are willing to accept post-handshake in crypto/tls

Carried by container images the latest versions of 4,613 of 17,837 indexed charts deploy, on 5,291 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+193 more1.25.135,291
OSV records
DEBIAN-CVE-2026-56862GO-2026-6090
Also known as
BIT-golang-2026-56862

Charts affected

4,613 by stars
ChartLatestAffected imagesRadar Score
IMgrycapOfficialVerified publisher1.8.01 of 3See more

IM grycap 1.8.0

1 of the 3 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
library/mysql:8.485b9bf2e29cf
stdlib@go1.24.6
1.25.13

Open the chart page →

4,270
oscargrycapOfficialVerified publisher4.1.31 of 2See more

oscar grycap 4.1.3

1 of the 2 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/grycap/oscar:latest0c58ff972451
stdlib@go1.25.11
1.25.13

Open the chart page →

432
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
stdlib@go1.21.13
1.25.13

Open the chart page →

10,280
haproxy-unified-gatewayhaproxytechVerified publisher1.2.01 of 1See more

haproxy-unified-gateway haproxytech 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
haproxytech/haproxy-unified-gateway:1.0.7b9bffe2d0fd1
stdlib@go1.26.5
1.25.13

Open the chart page →

675
boundary-controllerhashicorpVerified publisher0.1.11 of 1See more

boundary-controller hashicorp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
hashicorp/boundary-enterprise:1.0.1-ent38d2f9bdee0d
stdlib@go1.26.4
1.25.13

Open the chart page →

304
boundary-workerhashicorpVerified publisher0.1.11 of 1See more

boundary-worker hashicorp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
hashicorp/boundary-enterprise:1.0.1-ent38d2f9bdee0d
stdlib@go1.26.4
1.25.13

Open the chart page →

304
terraform-cloud-operatorhashicorpVerified publisher2.5.02 of 2See more

terraform-cloud-operator hashicorp 2.5.0

2 of the 2 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
hashicorp/terraform-cloud-operator:2.5.0c2f78a575a8a
stdlib@go1.22.4
1.25.13
quay.io/brancz/kube-rbac-proxy:v0.18.0754ab2a723c8
stdlib@go1.22.4
1.25.13

Open the chart page →

1,478
hawkhawk1.1.53 of 4See more

hawk hawk 1.1.5

3 of the 4 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
grafana/grafana:8.5.042d3e6bc1865
stdlib@go1.17.9
1.25.13
library/postgres:16.109f23e02d766
stdlib@go1.18.2
1.25.13
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
stdlib@go1.20.11
1.25.13

Open the chart page →

13,824
clickstackhdx-oss-v21.1.11 of 5See more

clickstack hdx-oss-v2 1.1.1

1 of the 5 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
library/mongo:5.0.32-focal3b6c281e1c08
stdlib@go1.24.0
1.25.13

Open the chart page →

4,805
headscale-uiheadscale-uiVerified publisher0.2.91 of 1See more

headscale-ui headscale-ui 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/gurucomputing/headscale-ui:2026.03.17015f5ba04bcb
stdlib@go1.25.8
1.25.13

Open the chart page →

1,502
guacamolehelmforgeVerified publisher1.5.22 of 5See more

guacamole helmforge 1.5.2

2 of the 5 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie86c951e05bf5
stdlib@go1.24.6
1.25.13
library/postgres:17.5-bookwormfbcea1bd13b6
stdlib@go1.18.2
1.25.13

Open the chart page →

8,730
mariadbhelmforgeVerified publisher2.1.11 of 1See more

mariadb helmforge 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
library/mariadb:12.3.3805c8e104bd5
stdlib@go1.24.6
1.25.13

Open the chart page →

1,681
matomohelmforgeVerified publisher2.3.01 of 3See more

matomo helmforge 2.3.0

1 of the 3 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
library/mysql:9.7.230a0abfa7b50
stdlib@go1.24.6
1.25.13

Open the chart page →

2,493
uptime-kumahelmforgeVerified publisher1.5.131 of 1See more

uptime-kuma helmforge 1.5.13

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
stdlib@go1.20.5
1.25.13

Open the chart page →

31,207
velerohelmforgeVerified publisher1.4.102 of 2See more

velero helmforge 1.4.10

2 of the 2 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
velero/velero:v1.18.237396519f399
stdlib@go1.25.11
1.25.13
velero/velero-plugin-for-aws:v1.14.07e82f717f44e
stdlib@go1.25.7
1.25.13

Open the chart page →

1,461
uptimekumahelm-l3st86Verified publisher0.1.101 of 1See more

uptimekuma helm-l3st86 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.1396510915e6be
stdlib@go1.19.6
1.25.13

Open the chart page →

4,252
helm-operatorhelm-operatorVerified publisher0.0.21 of 1See more

helm-operator helm-operator 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
bsgrigorov/helm-operator:latest45ab095f09c8
stdlib@go1.15.12
1.25.13

Open the chart page →

6,999
spirehelm-spireVerified publisher0.30.24 of 10See more

spire helm-spire 0.30.2

4 of the 10 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/spiffe/spiffe-csi-driver:0.2.79dfe4f0caff0
stdlib@go1.24.0
1.25.13
ghcr.io/spiffe/spiffe-helper:0.11.01c92e5998ad3
stdlib@go1.25.3
1.25.13
ghcr.io/spiffe/spire-controller-manager:0.7.0d7b9e710f542
stdlib@go1.26.5
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
stdlib@go1.24.6
1.25.13

Open the chart page →

1,688
helmuphelmupVerified publisher0.1.01 of 3See more

helmup helmup 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
sirrend/helmup-engine:0.1.13699e79e3d4e2
stdlib@go1.20.4
1.25.13

Open the chart page →

16,882
hivemq-platform-operatorhivemqOfficialVerified publisher0.2.261 of 1See more

hivemq-platform-operator hivemq 0.2.26

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
hivemq/hivemq-platform-operator:2.2.2a919f990141b
stdlib@go1.26.5
1.25.13

Open the chart page →

999
hiverhiverVerified publisher0.1.459 of 10See more

hiver hiver 0.1.45

9 of the 10 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
hiversh/antigravity:0.1.45-microvm0e36d98402bc
stdlib@go1.26.5
1.25.13
hiversh/browser:0.1.45-microvmb5048c6342ce
stdlib@go1.26.5
1.25.13
hiversh/claude:0.1.45-microvm2fbf9f264498
stdlib@go1.26.5
1.25.13
hiversh/codex:0.1.45-microvm4f43130f51e5
stdlib@go1.26.5
1.25.13
hiversh/controller:0.1.45b0b85f8942c7
stdlib@go1.19.8
1.25.13
hiversh/copilot:0.1.45-microvm50c07b84f298
stdlib@go1.26.5
1.25.13
hiversh/node:0.1.45-alpine-microvm836a37641941
stdlib@go1.26.5
1.25.13
hiversh/openclaw:0.1.45-microvm958b7ebb4eb4
stdlib@go1.19.8
1.25.13
hiversh/python:0.1.45-3.13-alpine-microvm63a5ae179a9f
stdlib@go1.19.8
1.25.13

Open the chart page →

22,479
cratedb-adapter-v2hmdmph0.2.11 of 1See more

cratedb-adapter-v2 hmdmph 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
crate/crate_adapter:latestb8d89fa5d19b
stdlib@go1.16.3
1.25.13

Open the chart page →

2,922
holoinsightholoinsight0.2.52 of 6See more

holoinsight holoinsight 0.2.5

2 of the 6 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
holoinsight/otelcontribcol:latest42ba8dc3113c
stdlib@go1.19
1.25.13
library/mysql:885b9bf2e29cf
stdlib@go1.24.6
1.25.13

Open the chart page →

27,978
holoinsight-agentholoinsight0.2.51 of 2See more

holoinsight-agent holoinsight 0.2.5

1 of the 2 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
holoinsight/agent:latest5c3994e742f8
stdlib@go1.22.1
1.25.13

Open the chart page →

1,805
openprojecthomeenterpriseinc0.5.01 of 1See more

openproject homeenterpriseinc 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
openproject/community:12.0.2734743d11094
stdlib@go1.17
1.25.13

Open the chart page →

7,055
honeycombhoneycomb1.9.31 of 1See more

honeycomb honeycomb 1.9.3

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
honeycombio/honeycomb-kubernetes-agent:2.7.448c38d0870f2
stdlib@go1.24.3
1.25.13

Open the chart page →

437
hpe-greenlake-file-csi-driverhpe-storageVerified publisher2.6.45 of 7See more

hpe-greenlake-file-csi-driver hpe-storage 2.6.4

5 of the 7 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.8.0a399393ff5bd
stdlib@go1.23.1
1.25.13
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
stdlib@go1.24.6
1.25.13
registry.k8s.io/sig-storage/csi-provisioner:v6.1.0e5900dc98b0d
stdlib@go1.24.6
1.25.13
registry.k8s.io/sig-storage/csi-resizer:v1.12.0ab774734705a
stdlib@go1.22.5
1.25.13
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
stdlib@go1.24.6
1.25.13

Open the chart page →

6,343
htnn-controllerhtnnVerified publisher0.5.01 of 1See more

htnn-controller htnn 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
stdlib@go1.21.12
1.25.13

Open the chart page →

4,394
demoryhuseyinbabalOfficialVerified publisher0.7.01 of 1See more

demory huseyinbabal 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
huseyinbabal/demory:0.0.0-rc.20ae8eb4053c60
stdlib@go1.17.2
1.25.13

Open the chart page →

1,580
hybrid-csi-pluginhybrid-csi-plugin0.1.111 of 1See more

hybrid-csi-plugin hybrid-csi-plugin 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/hybrid-csi-provisioner:v0.3.1221e07794a8a
stdlib@go1.25.5
1.25.13

Open the chart page →

380
spoolmanideaplexusVerified publisher2.7.11 of 1See more

spoolman ideaplexus 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
stdlib@go1.19.8
1.25.13

Open the chart page →

1,873
backendikusi-bk-chart1.0.31 of 3See more

backend ikusi-bk-chart 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
library/postgres:15dfbbb0ad8cab
stdlib@go1.24.6
1.25.13

Open the chart page →

5,790
ilum-coreilumOfficialVerified publisher6.7.32 of 5See more

ilum-core ilum 6.7.3

2 of the 5 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
stdlib@go1.24.6
1.25.13
ilum/mongodb:6.0.542b6d774c37d
stdlib@go1.20.12
1.25.13

Open the chart page →

3,561
ilum-jupyterilumVerified publisher6.7.31 of 2See more

ilum-jupyter ilum 6.7.3

1 of the 2 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
bitnamisecure/gitdigest-pinned72ae5bd9715f
stdlib@go1.24.6
1.25.13

Open the chart page →

645
odooimioVerified publisher3.1.01 of 3See more

odoo imio 3.1.0

1 of the 3 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
library/postgres:17.10ebba4f4de37f
stdlib@go1.24.6
1.25.13

Open the chart page →

3,159
immichimmich-helm0.3.01 of 4See more

immich immich-helm 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
stdlib@go1.18.2
1.25.13

Open the chart page →

16,116
webhook-broker-chartimytech0.2.41 of 1See more

webhook-broker-chart imytech 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
public.ecr.aws/optimizely/webhook-broker:v0.2.3cfc92cc2de65
stdlib@go1.23.0
1.25.13

Open the chart page →

1,254
inbucketinbucketVerified publisher2.5.01 of 1See more

inbucket inbucket 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
inbucket/inbucket:3.0.01f10a0efea69
stdlib@go1.17.1
1.25.13

Open the chart page →

2,168
inference-manager-serverinference-manager-server1.46.01 of 1See more

inference-manager-server inference-manager-server 1.46.0

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/inference-manager-server:1.46.00bbb5f5ddf71
stdlib@go1.25.9
1.25.13

Open the chart page →

257
telegraf-operatorinfluxdata1.4.01 of 1See more

telegraf-operator influxdata 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
quay.io/influxdb/telegraf-operator:v1.3.11eec10ef37cc3
stdlib@go1.18.10
1.25.13

Open the chart page →

925
valkey-clusterinnagoVerified publisher1.1.01 of 2See more

valkey-cluster innago 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.66.0d98e6db8094f
stdlib@go1.23.2
1.25.13

Open the chart page →

2,700
supersetinseefrlab1.4.01 of 4See more

superset inseefrlab 1.4.0

1 of the 4 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
jwilder/dockerize:latestf94fb59fb4f6
stdlib@go1.25.5
1.25.13

Open the chart page →

7,739
interlinkinterlink0.6.11 of 2See more

interlink interlink 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
stdlib@go1.24.5
1.25.13

Open the chart page →

2,524
irsa-managerirsa-managerVerified publisher0.3.21 of 1See more

irsa-manager irsa-manager 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
ghcr.io/kkb0318/irsa-manager:0.3.296d600ae97b4
stdlib@go1.22.7
1.25.13

Open the chart page →

821
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
stdlib@go1.16.6
1.25.13

Open the chart page →

72,008
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
stdlib@go1.16.6
1.25.13

Open the chart page →

72,082
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
stdlib@go1.16.6
1.25.13

Open the chart page →

72,028
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
stdlib@go1.16.6
1.25.13

Open the chart page →

72,028
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
stdlib@go1.16.6
1.25.13

Open the chart page →

72,309
istio-ratelimitistio-ratelimitVerified publisher0.0.51 of 2See more

istio-ratelimit istio-ratelimit 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-56862.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:4d2efd61ede09a75a84c
stdlib@go1.14.15
1.25.13

Open the chart page →

1,820

Container images carrying it

5,291 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

No deployed image carries CVE-2026-56862.

syft 1.42.1 · advisories as of 23 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.