StackRadar

CVE-2026-56865

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
453
of 17,781 indexed, latest versions
Container images
422
deployed by those charts
Fix available
1 of 2
affected packages

Fix transparency log tile verification bypass in golang.org/x/mod/sumdb/tlog

Carried by container images the latest versions of 453 of 17,781 indexed charts deploy, on 422 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
golang.org/x/modgolangv0.1.0, v0.2.0, v0.3.0, v0.4.2+38 more0.40.0421
OSV records
DEBIAN-CVE-2026-56865GO-2026-6179
Also known as
BIT-golang-2026-56865

Charts affected

453 by stars
ChartLatestAffected imagesRadar Score
k10restorekastenVerified publisher8.0.141 of 1See more

k10restore kasten 8.0.14

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
gcr.io/kasten-images/restorectl:8.0.145a0884f9a90c
golang.org/x/mod@v0.29.0
0.40.0

Open the chart page →

1,459
kcmkcm1.11.01 of 12See more

kcm kcm 1.11.0

1 of the 12 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/source-controller:v1.9.22b8d06650a1b
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

2,818
kestra-starterkestraOfficialVerified publisher2.0.11 of 5See more

kestra-starter kestra 2.0.1

1 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/docker:dind-rootlesse17fa54c2ffd
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

5,455
gogskeyporttech0.1.31 of 3See more

gogs keyporttech 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
gogs/gogs:0.12.30195b095d0b2
golang.org/x/mod@v0.2.0
0.40.0

Open the chart page →

3,523
mysqldumpkfirfer2.8.01 of 1See more

mysqldump kfirfer 2.8.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
golang.org/x/mod@v0.11.0
0.40.0

Open the chart page →

3,507
kiaekiae0.1.61 of 9See more

kiae kiae 0.1.6

1 of the 9 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.35.313964b29d63e
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0

Open the chart page →

19,168
longhornkomailo-helm-charts0.6.01 of 3See more

longhorn komailo-helm-charts 0.6.0

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.12.183b79f57043f
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

554
ksoc-pluginsksocOfficialVerified publisher1.9.101 of 5See more

ksoc-plugins ksoc 1.9.10

1 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
public.ecr.aws/n8h5y2v5/rad-security/rad-sbom:v1.1.34e97e0e7a2088
golang.org/x/mod@v0.20.0
0.40.0

Open the chart page →

3,199
tekton-operatorkubebb0.64.02 of 2See more

tekton-operator kubebb 0.64.0

2 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
hyperledgerk8s/tekton-operator-webhook:v0.64.02237cb80f52b
golang.org/x/mod@v0.7.0
0.40.0
hyperledgerk8s/tektoncd-operator:v0.64.0d0a3a35a138d
golang.org/x/mod@v0.7.0
0.40.0

Open the chart page →

2,406
u4a-componentkubebb0.2.101 of 8See more

u4a-component kubebb 0.2.10

1 of the 8 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kubebb/oidc-server:v0.2.02b5894ef1e2f
golang.org/x/mod@v0.5.1
0.40.0

Open the chart page →

13,819
geminikubeblocksVerified publisher0.13.41 of 8See more

gemini kubeblocks 0.13.4

1 of the 8 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
prom/alertmanager:v0.28.0d5155cfac40a
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

3,103
prometheuskubeblocksVerified publisher15.16.11 of 6See more

prometheus kubeblocks 15.16.1

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.24.0088464f949de
golang.org/x/mod@v0.5.1
0.40.0

Open the chart page →

10,302
victoria-metrics-alertkubeblocksVerified publisher0.8.3-reload1 of 3See more

victoria-metrics-alert kubeblocks 0.8.3-reload

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/mod@v0.7.0
0.40.0

Open the chart page →

3,715
kubecheckskubechecks3.0.01 of 1See more

kubechecks kubechecks 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/zapier/kubechecks:latest60cea46ce830
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

548
kubeclaritykubeclarity2.23.31 of 5See more

kubeclarity kubeclarity 2.23.3

1 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/openclarity/grype-server:v0.6.079412399f301
golang.org/x/mod@v0.12.0
0.40.0

Open the chart page →

5,496
keycloak-operatorkubehippie-keycloak-operatorVerified publisher1.6.01 of 1See more

keycloak-operator kubehippie-keycloak-operator 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubehippie/keycloak-operator:1.6.06c0275fb9736
golang.org/x/mod@v0.38.0
0.40.0

Open the chart page →

14
kube-ovnkube-ovn-test1.14.01 of 1See more

kube-ovn kube-ovn-test 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kubeovn/kube-ovn:v1.14.06722b54eb5c0
golang.org/x/mod@v0.25.0
0.40.0

Open the chart page →

4,940
testkube-apikubeshop2.1.1621 of 2See more

testkube-api kubeshop 2.1.162

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kubeshop/testkube-api-server:2.1.162e97dc620d9b4
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

1,663
harborkubesphereVerified publisher1.9.31 of 11See more

harbor kubesphere 1.9.3

1 of the 11 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
golang.org/x/mod@v0.6.0-dev.0.20220106191415-9b9b3d81d5e3
0.40.0

Open the chart page →

17,798
easegresskubesphere-stable1.0.01 of 1See more

easegress kubesphere-stable 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
megaease/easegress:latestfad1c7452958
golang.org/x/mod@v0.30.0
0.40.0

Open the chart page →

1,308
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.42 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

2 of the 9 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
golang.org/x/mod@v0.21.0
0.40.0
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
golang.org/x/mod@v0.26.0
0.40.0

Open the chart page →

20,204
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

6,824
dynatrace-operatorkvalitetsitVerified publisher1.3.01 of 1See more

dynatrace-operator kvalitetsit 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
golang.org/x/mod@v0.20.0
0.40.0

Open the chart page →

1,286
krakendkvalitetsitVerified publisher0.0.31 of 1See more

krakend kvalitetsit 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/mod@v0.19.0
0.40.0

Open the chart page →

1,242
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

2,113
listmonklbenicio-communityVerified publisher0.1.01 of 1See more

listmonk lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
listmonk/listmonk:latestf535d59e1499
golang.org/x/mod@v0.33.0
0.40.0

Open the chart page →

720
prometheuslectures-k8sinfra15.8.51 of 6See more

prometheus lectures-k8sinfra 15.8.5

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/mod@v0.4.2
0.40.0

Open the chart page →

9,092
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0

Open the chart page →

4,271
ccm-linodelinode-cloud-controller-managerOfficialVerified publisher0.9.81 of 1See more

ccm-linode linode-cloud-controller-manager 0.9.8

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
linode/linode-cloud-controller-manager:v0.9.8cd8c17512206
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

153
listmonklistmonk-chartVerified publisher2.0.11 of 2See more

listmonk listmonk-chart 2.0.1

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
listmonk/listmonk:v6.0.0bf3903d54a46
golang.org/x/mod@v0.29.0
0.40.0

Open the chart page →

3,067
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

10,716
livekit-serverlivekit-server1.9.01 of 1See more

livekit-server livekit-server 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
livekit/livekit-server:v1.9.03602a85840d5
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

1,552
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
sky5367/locust-plugins-grafana:latestd51bf68d4b26
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

7,510
devpod-proloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

devpod-pro loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
golang.org/x/mod@v0.15.0
0.40.0

Open the chart page →

3,225
loft-agentloftVerified publisher3.2.41 of 1See more

loft-agent loft 3.2.4

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/agent:3.2.45c109914ff73
golang.org/x/mod@v0.8.0
0.40.0

Open the chart page →

2,444
vcluster-control-planeloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

vcluster-control-plane loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
golang.org/x/mod@v0.15.0
0.40.0

Open the chart page →

3,225
vcluster-hpmloftVerified publisher0.2.71 of 1See more

vcluster-hpm loft 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-hpm:0.2.7f65f6810ea23
golang.org/x/mod@v0.25.0
0.40.0

Open the chart page →

826
vcluster-proloftVerified publisher0.0.0-ci-run.101 of 2See more

vcluster-pro loft 0.0.0-ci-run.10

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

5,085
vcluster-pro-eksloftVerified publisher0.0.0-ci-run.101 of 4See more

vcluster-pro-eks loft 0.0.0-ci-run.10

1 of the 4 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

5,936
vcluster-pro-k0sloftVerified publisher0.0.0-ci-run.102 of 2See more

vcluster-pro-k0s loft 0.0.0-ci-run.10

2 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
golang.org/x/mod@v0.7.0
0.40.0
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

5,768
vcluster-pro-k8sloftVerified publisher0.0.0-ci-run.101 of 4See more

vcluster-pro-k8s loft 0.0.0-ci-run.10

1 of the 4 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

8,202
m9sweeperm9sweeperVerified publisher1.6.01 of 6See more

m9sweeper m9sweeper 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

9,774
magistralamagistrala-devopsVerified publisher0.16.21 of 42See more

magistrala magistrala-devops 0.16.2

1 of the 42 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
prom/alertmanager:v0.28.0d5155cfac40a
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

24,400
mattermostmattermostVerified publisher2.8.11 of 1See more

mattermost mattermost 2.8.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
mattermost/mattermost-enterprise-edition:11.7ca5e5553a767
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

417
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

4,089
mayastormayastorVerified publisher2.12.11 of 31See more

mayastor mayastor 2.12.1

1 of the 31 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

21,064
traefik2mesosphere9.18.01 of 1See more

traefik2 mesosphere 9.18.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/traefik:2.4.8eda951fd29a8
golang.org/x/mod@v0.3.0
0.40.0

Open the chart page →

3,341
dexmesosphere-stable2.14.12 of 5See more

dex mesosphere-stable 2.14.1

2 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
mesosphere/dex:v2.37.0-d2iq.1b093d78a21ed
golang.org/x/mod@v0.11.0
0.40.0
mesosphere/dex-controller:v0.16.11b2dd9c0b0fc
golang.org/x/mod@v0.17.0
0.40.0

Open the chart page →

19,214
gogsmhio0.9.21 of 2See more

gogs mhio 0.9.2

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
gogs/gogs:0.12.1420d53bb7277
golang.org/x/mod@v0.2.0
0.40.0

Open the chart page →

3,230
memosmt1905027.3.21 of 3See more

memos mt190502 7.3.2

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
neosmemo/memos:0.26.23eefcc231141
golang.org/x/mod@v0.31.0
0.40.0

Open the chart page →

2,443

Container images carrying it

422 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/sigstore/rekor/rekor-server:v1.5.4100d793d68d0
golang.org/x/mod@v0.38.0
0.40.0
2
public.ecr.aws/gravitational/tbot-distroless:18.11.04ba5ace31fea
golang.org/x/mod@v0.37.0
0.40.0
2
quay.io/argoproj/argo-events:v1.9.11fa07b2c9ece6
golang.org/x/mod@v0.38.0
0.40.0
2
aerospike/aerospike-backup-service:3.5.1be40d709c583
golang.org/x/mod@v0.33.0
0.40.0
1
aerospike/aerospike-kubernetes-operator:4.5.070a9eeb991b8
golang.org/x/mod@v0.36.0
0.40.0
1
alireza7/s-ui:1.5.302aa86983cdb
golang.org/x/mod@v0.35.0
0.40.0
1
anchore/anchore-engine:v0.10.0bde9eedf639d
golang.org/x/mod@v0.3.0
0.40.0
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
golang.org/x/mod@v0.38.0
0.40.0
1
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
golang.org/x/mod@v0.26.0
0.40.0
1
aquasec/harbor-scanner-trivy:0.31.26e790e233872
golang.org/x/mod@v0.16.0
0.40.0
1
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
golang.org/x/mod@v0.3.0
0.40.0
1
aquasec/trivy:0.43.1944a04445179
golang.org/x/mod@v0.11.0
0.40.0
1
aquasec/trivy:0.32.0973d0df16189
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0
1
aquasec/trivy:0.69.3bcc376de8d77
golang.org/x/mod@v0.31.0
0.40.0
1
artifacthub/hub:v1.23.07d3a91c539dc
golang.org/x/mod@v0.37.0
0.40.0
1
artifacthub/scanner:v1.23.02d8365601f0e
golang.org/x/mod@v0.31.0
0.40.0
1
artifacthub/scanner:v1.19.0323d026e78c3
golang.org/x/mod@v0.15.0
0.40.0
1
artifacthub/tracker:v1.23.05368d21a6e5c
golang.org/x/mod@v0.37.0
0.40.0
1
b3log/siyuan:v3.1.2595c0d129bc19
golang.org/x/mod@v0.24.0
0.40.0
1
beopenit/door-cd-operator:v3.0.4d3999cb8d026
golang.org/x/mod@v0.12.0
0.40.0
1
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
golang.org/x/mod@v0.20.0
0.40.0
1
bitnami/mongodb-exporter:latestf7034c13af4e
golang.org/x/mod@v0.37.0
0.40.0
1
bytebase/bytebase:latest9fcde38c0d5f
golang.org/x/mod@v0.38.0
0.40.0
1
bytesafe/bytesafe-ce:v1.0.4ee287384c005
golang.org/x/mod@v0.10.0
0.40.0
1
concourse/concourse:8.3.040a143ce5873
golang.org/x/mod@v0.36.0
0.40.0
1
coredns/coredns:1.12.040384aa1f5ea
golang.org/x/mod@v0.18.0
0.40.0
1
coredns/coredns:1.14.6900f9c109f7a
golang.org/x/mod@v0.36.0
0.40.0
1
darthsim/imgproxy:v3.30.13b709e4a0e5e
golang.org/x/mod@v0.27.0
0.40.0
1
darthsim/imgproxy:v3.26476cb08c816a
golang.org/x/mod@v0.21.0
0.40.0
1
darthsim/imgproxy:v3.29.17d12c7c8fc66
golang.org/x/mod@v0.25.0
0.40.0
1
datadog/agent:6aad9994de6a7
golang.org/x/mod@v0.19.0
0.40.0
1
ddosify/alaz:v0.12.0ea602056d9ce
golang.org/x/mod@v0.12.0
0.40.0
1
defactops/defactops-ui:1.0.16825cdf9ba706
golang.org/x/mod@v0.14.0
0.40.0
1
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
golang.org/x/mod@v0.30.0
0.40.0
1
devopsfaith/krakend:2.6.34c678c224f67
golang.org/x/mod@v0.17.0
0.40.0
1
devopsfaith/krakend:2.7.09219cda867e2
golang.org/x/mod@v0.17.0
0.40.0
1
devopstales/trivy-operator:2.575136aa7a26e
golang.org/x/mod@v0.6.0
0.40.0
1
dexidp/dex:v2.39.1-distroless43655afd1a8f
golang.org/x/mod@v0.15.0
0.40.0
1
dongjiang1989/cosign-webhook:v1.1.02a3ead6a55dc
golang.org/x/mod@v0.11.0
0.40.0
1
eginnovations/agent:7.5.4e4dfe242fe9f
golang.org/x/mod@v0.35.0
0.40.0
1
emqx/ecp-main:2.5.1fa876f71e5d6
golang.org/x/mod@v0.18.0
0.40.0
1
ethpandaops/assertoor:latest1efa2fba6711
golang.org/x/mod@v0.37.0
0.40.0
1
ethpandaops/buildoor:maina51b9a1a770c
golang.org/x/mod@v0.38.0
0.40.0
1
ethpandaops/dora:master2381ea793a12
golang.org/x/mod@v0.38.0
0.40.0
1
ethpandaops/spamoor:latest5f731b20ec50
golang.org/x/mod@v0.36.0
0.40.0
1
falcosecurity/falcoctl:0.13.00eeb79adc580
golang.org/x/mod@v0.35.0
0.40.0
1
falcosecurity/falco-driver-loader:0.44.17df783d5269a
golang.org/x/mod@v0.35.0
0.40.0
1
flanksource/batch-runner:v1.0.44689687a7cf95
golang.org/x/mod@v0.27.0
0.40.0
1
gabekangas/owncast:0.0.797461aedb580
golang.org/x/mod@v0.4.2
0.40.0
1
getconvoy/convoy:v26.7.6f4934cc05e31
golang.org/x/mod@v0.35.0
0.40.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.