StackRadar

CVE-2026-56865

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
453
of 17,781 indexed, latest versions
Container images
422
deployed by those charts
Fix available
1 of 2
affected packages

Fix transparency log tile verification bypass in golang.org/x/mod/sumdb/tlog

Carried by container images the latest versions of 453 of 17,781 indexed charts deploy, on 422 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
golang.org/x/modgolangv0.1.0, v0.2.0, v0.3.0, v0.4.2+38 more0.40.0421
OSV records
DEBIAN-CVE-2026-56865GO-2026-6179
Also known as
BIT-golang-2026-56865

Charts affected

453 by stars
ChartLatestAffected imagesRadar Score
k10restorekastenVerified publisher8.0.141 of 1See more

k10restore kasten 8.0.14

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
gcr.io/kasten-images/restorectl:8.0.145a0884f9a90c
golang.org/x/mod@v0.29.0
0.40.0

Open the chart page →

1,459
kcmkcm1.11.01 of 12See more

kcm kcm 1.11.0

1 of the 12 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/source-controller:v1.9.22b8d06650a1b
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

2,818
kestra-starterkestraOfficialVerified publisher2.0.11 of 5See more

kestra-starter kestra 2.0.1

1 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/docker:dind-rootlesse17fa54c2ffd
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

5,455
gogskeyporttech0.1.31 of 3See more

gogs keyporttech 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
gogs/gogs:0.12.30195b095d0b2
golang.org/x/mod@v0.2.0
0.40.0

Open the chart page →

3,523
mysqldumpkfirfer2.8.01 of 1See more

mysqldump kfirfer 2.8.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
golang.org/x/mod@v0.11.0
0.40.0

Open the chart page →

3,507
kiaekiae0.1.61 of 9See more

kiae kiae 0.1.6

1 of the 9 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.35.313964b29d63e
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0

Open the chart page →

19,168
longhornkomailo-helm-charts0.6.01 of 3See more

longhorn komailo-helm-charts 0.6.0

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.12.183b79f57043f
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

554
ksoc-pluginsksocOfficialVerified publisher1.9.101 of 5See more

ksoc-plugins ksoc 1.9.10

1 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
public.ecr.aws/n8h5y2v5/rad-security/rad-sbom:v1.1.34e97e0e7a2088
golang.org/x/mod@v0.20.0
0.40.0

Open the chart page →

3,199
tekton-operatorkubebb0.64.02 of 2See more

tekton-operator kubebb 0.64.0

2 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
hyperledgerk8s/tekton-operator-webhook:v0.64.02237cb80f52b
golang.org/x/mod@v0.7.0
0.40.0
hyperledgerk8s/tektoncd-operator:v0.64.0d0a3a35a138d
golang.org/x/mod@v0.7.0
0.40.0

Open the chart page →

2,406
u4a-componentkubebb0.2.101 of 8See more

u4a-component kubebb 0.2.10

1 of the 8 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kubebb/oidc-server:v0.2.02b5894ef1e2f
golang.org/x/mod@v0.5.1
0.40.0

Open the chart page →

13,819
geminikubeblocksVerified publisher0.13.41 of 8See more

gemini kubeblocks 0.13.4

1 of the 8 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
prom/alertmanager:v0.28.0d5155cfac40a
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

3,103
prometheuskubeblocksVerified publisher15.16.11 of 6See more

prometheus kubeblocks 15.16.1

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.24.0088464f949de
golang.org/x/mod@v0.5.1
0.40.0

Open the chart page →

10,302
victoria-metrics-alertkubeblocksVerified publisher0.8.3-reload1 of 3See more

victoria-metrics-alert kubeblocks 0.8.3-reload

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/mod@v0.7.0
0.40.0

Open the chart page →

3,715
kubecheckskubechecks3.0.01 of 1See more

kubechecks kubechecks 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/zapier/kubechecks:latest60cea46ce830
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

548
kubeclaritykubeclarity2.23.31 of 5See more

kubeclarity kubeclarity 2.23.3

1 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/openclarity/grype-server:v0.6.079412399f301
golang.org/x/mod@v0.12.0
0.40.0

Open the chart page →

5,496
keycloak-operatorkubehippie-keycloak-operatorVerified publisher1.6.01 of 1See more

keycloak-operator kubehippie-keycloak-operator 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubehippie/keycloak-operator:1.6.06c0275fb9736
golang.org/x/mod@v0.38.0
0.40.0

Open the chart page →

14
kube-ovnkube-ovn-test1.14.01 of 1See more

kube-ovn kube-ovn-test 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kubeovn/kube-ovn:v1.14.06722b54eb5c0
golang.org/x/mod@v0.25.0
0.40.0

Open the chart page →

4,940
testkube-apikubeshop2.1.1621 of 2See more

testkube-api kubeshop 2.1.162

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kubeshop/testkube-api-server:2.1.162e97dc620d9b4
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

1,663
harborkubesphereVerified publisher1.9.31 of 11See more

harbor kubesphere 1.9.3

1 of the 11 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
golang.org/x/mod@v0.6.0-dev.0.20220106191415-9b9b3d81d5e3
0.40.0

Open the chart page →

17,798
easegresskubesphere-stable1.0.01 of 1See more

easegress kubesphere-stable 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
megaease/easegress:latestfad1c7452958
golang.org/x/mod@v0.30.0
0.40.0

Open the chart page →

1,308
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.42 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

2 of the 9 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
golang.org/x/mod@v0.21.0
0.40.0
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
golang.org/x/mod@v0.26.0
0.40.0

Open the chart page →

20,204
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

6,824
dynatrace-operatorkvalitetsitVerified publisher1.3.01 of 1See more

dynatrace-operator kvalitetsit 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
golang.org/x/mod@v0.20.0
0.40.0

Open the chart page →

1,286
krakendkvalitetsitVerified publisher0.0.31 of 1See more

krakend kvalitetsit 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/mod@v0.19.0
0.40.0

Open the chart page →

1,242
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

2,113
listmonklbenicio-communityVerified publisher0.1.01 of 1See more

listmonk lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
listmonk/listmonk:latestf535d59e1499
golang.org/x/mod@v0.33.0
0.40.0

Open the chart page →

720
prometheuslectures-k8sinfra15.8.51 of 6See more

prometheus lectures-k8sinfra 15.8.5

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/mod@v0.4.2
0.40.0

Open the chart page →

9,092
trivy-serverlemontechVerified publisher0.1.01 of 1See more

trivy-server lemontech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
aquasec/trivy:0.32.0973d0df16189
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0

Open the chart page →

4,271
ccm-linodelinode-cloud-controller-managerOfficialVerified publisher0.9.81 of 1See more

ccm-linode linode-cloud-controller-manager 0.9.8

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
linode/linode-cloud-controller-manager:v0.9.8cd8c17512206
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

153
listmonklistmonk-chartVerified publisher2.0.11 of 2See more

listmonk listmonk-chart 2.0.1

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
listmonk/listmonk:v6.0.0bf3903d54a46
golang.org/x/mod@v0.29.0
0.40.0

Open the chart page →

3,067
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

10,716
livekit-serverlivekit-server1.9.01 of 1See more

livekit-server livekit-server 1.9.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
livekit/livekit-server:v1.9.03602a85840d5
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

1,552
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
sky5367/locust-plugins-grafana:latestd51bf68d4b26
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

7,510
devpod-proloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

devpod-pro loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
golang.org/x/mod@v0.15.0
0.40.0

Open the chart page →

3,225
loft-agentloftVerified publisher3.2.41 of 1See more

loft-agent loft 3.2.4

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/agent:3.2.45c109914ff73
golang.org/x/mod@v0.8.0
0.40.0

Open the chart page →

2,444
vcluster-control-planeloftVerified publisher0.0.0-ci.4-do-not-use1 of 1See more

vcluster-control-plane loft 0.0.0-ci.4-do-not-use

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
golang.org/x/mod@v0.15.0
0.40.0

Open the chart page →

3,225
vcluster-hpmloftVerified publisher0.2.71 of 1See more

vcluster-hpm loft 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-hpm:0.2.7f65f6810ea23
golang.org/x/mod@v0.25.0
0.40.0

Open the chart page →

826
vcluster-proloftVerified publisher0.0.0-ci-run.101 of 2See more

vcluster-pro loft 0.0.0-ci-run.10

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

5,085
vcluster-pro-eksloftVerified publisher0.0.0-ci-run.101 of 4See more

vcluster-pro-eks loft 0.0.0-ci-run.10

1 of the 4 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

5,936
vcluster-pro-k0sloftVerified publisher0.0.0-ci-run.102 of 2See more

vcluster-pro-k0s loft 0.0.0-ci-run.10

2 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
golang.org/x/mod@v0.7.0
0.40.0
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

5,768
vcluster-pro-k8sloftVerified publisher0.0.0-ci-run.101 of 4See more

vcluster-pro-k8s loft 0.0.0-ci-run.10

1 of the 4 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

8,202
m9sweeperm9sweeperVerified publisher1.6.01 of 6See more

m9sweeper m9sweeper 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

9,774
magistralamagistrala-devopsVerified publisher0.16.21 of 42See more

magistrala magistrala-devops 0.16.2

1 of the 42 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
prom/alertmanager:v0.28.0d5155cfac40a
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

24,400
mattermostmattermostVerified publisher2.8.11 of 1See more

mattermost mattermost 2.8.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
mattermost/mattermost-enterprise-edition:11.7ca5e5553a767
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

417
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

4,089
mayastormayastorVerified publisher2.12.11 of 31See more

mayastor mayastor 2.12.1

1 of the 31 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

21,064
traefik2mesosphere9.18.01 of 1See more

traefik2 mesosphere 9.18.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/traefik:2.4.8eda951fd29a8
golang.org/x/mod@v0.3.0
0.40.0

Open the chart page →

3,341
dexmesosphere-stable2.14.12 of 5See more

dex mesosphere-stable 2.14.1

2 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
mesosphere/dex:v2.37.0-d2iq.1b093d78a21ed
golang.org/x/mod@v0.11.0
0.40.0
mesosphere/dex-controller:v0.16.11b2dd9c0b0fc
golang.org/x/mod@v0.17.0
0.40.0

Open the chart page →

19,214
gogsmhio0.9.21 of 2See more

gogs mhio 0.9.2

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
gogs/gogs:0.12.1420d53bb7277
golang.org/x/mod@v0.2.0
0.40.0

Open the chart page →

3,230
memosmt1905027.3.21 of 3See more

memos mt190502 7.3.2

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
neosmemo/memos:0.26.23eefcc231141
golang.org/x/mod@v0.31.0
0.40.0

Open the chart page →

2,443

Container images carrying it

422 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
minio/operator:v5.0.9170b154d2c61
golang.org/x/mod@v0.10.0
0.40.0
1
moby/buildkit:v0.31.0a095b3d11ce1
golang.org/x/mod@v0.36.0
0.40.0
1
neosmemo/memos:0.293e1253477066
golang.org/x/mod@v0.35.0
0.40.0
1
neosmemo/memos:0.26.23eefcc231141
golang.org/x/mod@v0.31.0
0.40.0
1
neosmemo/memos:0.24c6defc2dfb98
golang.org/x/mod@v0.24.0
0.40.0
1
netbirdio/netbird-server:0.78.13086534361a1
golang.org/x/mod@v0.39.0
0.40.0
1
netbirdio/netbird-server:0.77.1e71f39cefcd9
golang.org/x/mod@v0.39.0
0.40.0
1
noooste/garage-ui:v0.12.10b68a9237da6
golang.org/x/mod@v0.36.0
0.40.0
1
openbas/caldera-server:5.1.0a277796d9724
golang-1.19@1.19.8-2
no fix listed
1
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
golang.org/x/mod@v0.37.0
0.40.0
1
oryd/hydra:v2.3.0b94007e19a1f
golang.org/x/mod@v0.19.0
0.40.0
1
oryd/hydra:v26.2.0ff67c7fb5f95
golang.org/x/mod@v0.30.0
0.40.0
1
oryd/keto:v26.2.0bfdb8b9e283a
golang.org/x/mod@v0.30.0
0.40.0
1
oryd/kratos:v26.2.02a13bb8d362c
golang.org/x/mod@v0.30.0
0.40.0
1
otel/opentelemetry-collector-contrib:0.114.037fa87091cfa
golang.org/x/mod@v0.21.0
0.40.0
1
otel/opentelemetry-collector-contrib:0.143.03bc07732530c
golang.org/x/mod@v0.31.0
0.40.0
1
otel/opentelemetry-collector-contrib:0.113.05ac3e0ba2b0b
golang.org/x/mod@v0.21.0
0.40.0
1
otel/opentelemetry-collector-contrib:0.145.0a7343f018690
golang.org/x/mod@v0.31.0
0.40.0
1
otel/opentelemetry-collector-contrib:0.154.0b3079f45e19b
golang.org/x/mod@v0.36.0
0.40.0
1
otel/opentelemetry-collector-contrib:0.157.0f2f01157055a
golang.org/x/mod@v0.38.0
0.40.0
1
otel/opentelemetry-collector-contrib:0.139.0faf125d656fa
golang.org/x/mod@v0.29.0
0.40.0
1
percona/mongodb_exporter:0.53.00214e482b2cd
golang.org/x/mod@v0.37.0
0.40.0
1
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
golang.org/x/mod@v0.24.0
0.40.0
1
percona/percona-server-mongodb-operator:1.23.0feaff989e253
golang.org/x/mod@v0.36.0
0.40.0
1
percona/pmm-server:3.9.1003f9c25f842
golang.org/x/mod@v0.37.0
0.40.0
1
persesdev/perses:v0.54.0a0e34ddaf9d7
golang.org/x/mod@v0.38.0
0.40.0
1
photoprism/photoprism:260601650c6ad5a651
golang.org/x/mod@v0.36.0
0.40.0
1
photoprism/photoprism:260728958642220223
golang.org/x/mod@v0.38.0
0.40.0
1
photoprism/photoprism:251130db16ee6b1ba3
golang.org/x/mod@v0.30.0
0.40.0
1
portainer/portainer-ce:2.45.0511f3f06c96f
golang.org/x/mod@v0.37.0
0.40.0
1
prowlercloud/prowler-api:5.31.14f252d579be2
golang.org/x/mod@v0.36.0
0.40.0
1
qualys/qscanner:5.1.0-59ff255352422
golang.org/x/mod@v0.37.0
0.40.0
1
rancher/harvester-csi-driver:v0.2.9f9099b5ef8cb
golang.org/x/mod@v0.32.0
0.40.0
1
rancher/k3s:v1.28.2-k3s18c2599ecfca8
golang.org/x/mod@v0.10.0
0.40.0
1
rss3/op-batcher:d2c5ced00901227473fc196fda838191f0cb4e02e8adc09d9c07
golang.org/x/mod@v0.13.0
0.40.0
1
rss3/op-node:a77d1f52fc3492bf21915bdff8ee8e0b5bd2cb8a45b91380bbe7
golang.org/x/mod@v0.13.0
0.40.0
1
rss3/op-proposer:d2c5ced00901227473fc196fda838191f0cb4e0296672897ba9e
golang.org/x/mod@v0.13.0
0.40.0
1
runatlantis/atlantis:v0.16.145fbaf7e207c
golang.org/x/mod@v0.3.0
0.40.0
1
sealio/hermitcrab:v0.1.4a326a2f03660
golang.org/x/mod@v0.17.0
0.40.0
1
sealio/terraform-deployer:v1.5.7-seal.1b0389d9848a5
golang.org/x/mod@v0.8.0
0.40.0
1
securesystemsengineering/connaisseur:v3.12.038918befbdad
golang.org/x/mod@v0.38.0
0.40.0
1
semaphoreui/semaphore:latest:v2.19.123996804607eb
golang.org/x/mod@v0.30.0
0.40.0
1
semaphoreui/semaphore:v2.19.1498ad9bc7a2a0
golang.org/x/mod@v0.24.0
0.40.0
1
semaphoreui/semaphore:v2.18.3e9260bfa8255
golang.org/x/mod@v0.30.0
0.40.0
1
signoz/alertmanager:0.5.07bc7de2e33c2
golang.org/x/mod@v0.4.2
0.40.0
1
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
golang.org/x/mod@v0.35.0
0.40.0
1
sirrend/helmup-engine:0.1.13699e79e3d4e2
golang.org/x/mod@v0.13.0
0.40.0
1
sky5367/locust-plugins-grafana:latestd51bf68d4b26
golang.org/x/mod@v0.14.0
0.40.0
1
stashapp/stash:latest24dbd7607174
golang.org/x/mod@v0.3.0
0.40.0
1
stevenweathers/thunderdome-planning-poker:latestc7eb7b10f186
golang.org/x/mod@v0.34.0
0.40.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.