StackRadar

CVE-2026-56865

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
453
of 17,781 indexed, latest versions
Container images
422
deployed by those charts
Fix available
1 of 2
affected packages

Fix transparency log tile verification bypass in golang.org/x/mod/sumdb/tlog

Carried by container images the latest versions of 453 of 17,781 indexed charts deploy, on 422 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
golang.org/x/modgolangv0.1.0, v0.2.0, v0.3.0, v0.4.2+38 more0.40.0421
OSV records
DEBIAN-CVE-2026-56865GO-2026-6179
Also known as
BIT-golang-2026-56865

Charts affected

453 by stars
ChartLatestAffected imagesRadar Score
cosignedsigstoreVerified publisher0.1.231 of 2See more

cosigned sigstore 0.1.23

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
gcr.io/projectsigstore/cosigneddigest-pinned784518ff3ee7
golang.org/x/mod@v0.6.0-dev.0.20220106191415-9b9b3d81d5e3
0.40.0

Open the chart page →

5,118
rekor-tilessigstoreVerified publisher1.2.31 of 1See more

rekor-tiles sigstore 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/sigstore/rekor-tiles/gcp:v2.2.1e401cfe033c9
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

372
scaffoldsigstoreVerified publisher0.6.1141 of 15See more

scaffold sigstore 0.6.114

1 of the 15 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/sigstore/rekor/rekor-server:v1.5.4100d793d68d0
golang.org/x/mod@v0.38.0
0.40.0

Open the chart page →

7,710
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
golang.org/x/mod@v0.19.0
0.40.0

Open the chart page →

4,238
wireguardslybase-wireguardVerified publisher2.0.61 of 1See more

wireguard slybase-wireguard 2.0.6

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
linuxserver/wireguard:1.0.20260223-r0-ls122dca67384e3e9
golang.org/x/mod@v0.29.0
0.40.0

Open the chart page →

436
smallest-self-hostsmallest-self-hostVerified publisher0.2.21 of 12See more

smallest-self-host smallest-self-host 0.2.2

1 of the 12 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/grafana:11.0.00dc5a246ab16
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

7,685
artifact-hubsoftonic1.19.02 of 8See more

artifact-hub softonic 1.19.0

2 of the 8 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
aquasec/trivy:0.43.1944a04445179
golang.org/x/mod@v0.11.0
0.40.0
artifacthub/scanner:v1.19.0323d026e78c3
golang.org/x/mod@v0.15.0
0.40.0

Open the chart page →

14,491
stackradar-scannerstackradarVerified publisher0.3.01 of 1See more

stackradar-scanner stackradar 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/lockdep/stackradar-scanner:0.3.0dd8a35d50c2d
golang.org/x/mod@v0.32.0
0.40.0

Open the chart page →

1,209
supabasesupabse0.8.02 of 11See more

supabase supabse 0.8.0

2 of the 11 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
golang.org/x/mod@v0.27.0
0.40.0
supabase/gotrue:v2.189.0385184459f57
golang.org/x/mod@v0.34.0
0.40.0

Open the chart page →

18,075
tbotteleport-agent-kube18.11.01 of 1See more

tbot teleport-agent-kube 18.11.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
public.ecr.aws/gravitational/tbot-distroless:18.11.04ba5ace31fea
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

449
traefik-hubtraefikOfficialVerified publisher4.2.01 of 1See more

traefik-hub traefik 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/traefik/traefik-hub:v2.11.0322f5f8cc105
golang.org/x/mod@v0.13.0
0.40.0

Open the chart page →

3,165
atlantistrozz3.12.111 of 1See more

atlantis trozz 3.12.11

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.16.145fbaf7e207c
golang.org/x/mod@v0.3.0
0.40.0

Open the chart page →

5,280
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
golang.org/x/mod@v0.25.0
0.40.0

Open the chart page →

7,835
memoszekker6Verified publisher0.55.01 of 1See more

memos zekker6 0.55.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
neosmemo/memos:0.30.071a5b4738d1b
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

555
aerospike-kubernetes-operatoraerospike4.5.01 of 1See more

aerospike-kubernetes-operator aerospike 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
aerospike/aerospike-kubernetes-operator:4.5.070a9eeb991b8
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

598
aerospike-backup-serviceaerospike-helmVerified publisher2.0.131 of 1See more

aerospike-backup-service aerospike-helm 2.0.13

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
aerospike/aerospike-backup-service:3.5.1be40d709c583
golang.org/x/mod@v0.33.0
0.40.0

Open the chart page →

628
wireguardalexpressoVerified publisher0.1.31 of 2See more

wireguard alexpresso 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
linuxserver/wireguard:latestbf03578ef731
golang.org/x/mod@v0.29.0
0.40.0

Open the chart page →

780
alluredeckalluredeckVerified publisher0.24.01 of 2See more

alluredeck alluredeck 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/mkutlak/alluredeck-api:0.41.0fa429df90c68
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

1,273
versitygw-webhook-pulsar-proxyalpineworks0.1.11 of 1See more

versitygw-webhook-pulsar-proxy alpineworks 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/versitygw-webhook-pulsar-proxy:v1.0.06e9ced773732
golang.org/x/mod@v0.20.0
0.40.0

Open the chart page →

893
buildkit-serviceandrcunsVerified publisher1.8.01 of 1See more

buildkit-service andrcuns 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
moby/buildkit:v0.31.0a095b3d11ce1
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

1,285
app-mobilityappmo0.1.01 of 5See more

app-mobility appmo 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
velero/velero:v1.8.18d784580931c
golang.org/x/mod@v0.4.2
0.40.0

Open the chart page →

12,521
accounts-uiappscodeVerified publisher2026.9.111 of 1See more

accounts-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

2,592
aceappscodeVerified publisher2026.9.111 of 2See more

ace appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

2,894
ace-installerappscodeVerified publisher2026.9.111 of 2See more

ace-installer appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

3,225
ace-installer-certifiedappscodeVerified publisher2026.9.111 of 2See more

ace-installer-certified appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

3,225
billingappscodeVerified publisher2026.9.111 of 1See more

billing appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

2,592
capi-ops-managerappscodeVerified publisher2024.8.141 of 2See more

capi-ops-manager appscode 2024.8.14

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/capi-ops-manager:v0.0.57465f35b684c
golang.org/x/mod@v0.17.0
0.40.0

Open the chart page →

3,416
cluster-presetsappscodeVerified publisher2026.9.111 of 1See more

cluster-presets appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/cluster-presets:v0.0.128fbdd2479645
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

332
kubedb-provider-awsappscodeVerified publisher2026.7.101 of 1See more

kubedb-provider-aws appscode 2026.7.10

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubedb/provider-aws:v0.27.049b1c312e342
golang.org/x/mod@v0.15.0
0.40.0

Open the chart page →

2,527
kubedb-provider-azureappscodeVerified publisher2026.7.101 of 1See more

kubedb-provider-azure appscode 2026.7.10

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubedb/provider-azure:v0.27.0aa0c8526ae5e
golang.org/x/mod@v0.15.0
0.40.0

Open the chart page →

2,705
kubedb-provider-gcpappscodeVerified publisher2026.7.101 of 2See more

kubedb-provider-gcp appscode 2026.7.10

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubedb/provider-gcp:v0.27.0a1d4cf8b8fe1
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0

Open the chart page →

3,033
kubeform-provider-awsappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-aws appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-aws:v0.0.1e3d1f1302e49
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0

Open the chart page →

2,796
kubeform-provider-azureappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-azure appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-azure:v0.0.1ac8459f70f85
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0

Open the chart page →

2,716
kubeform-provider-gcpappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-gcp appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-gcp:v0.0.1af77073c184f
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0

Open the chart page →

2,743
marketplace-apiappscodeVerified publisher2026.9.111 of 1See more

marketplace-api appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

2,592
persesappscodeVerified publisher2026.6.21 of 1See more

perses appscode 2026.6.2

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/opnpulse/perses:v2026.4.24b880da90aa1a
golang.org/x/mod@v0.27.0
0.40.0

Open the chart page →

530
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

37,268
harbor-scanner-trivyaqua-helm0.17.01 of 1See more

harbor-scanner-trivy aqua-helm 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
golang.org/x/mod@v0.3.0
0.40.0

Open the chart page →

5,202
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.42.18186d6dd81f4
golang.org/x/mod@v0.23.0
0.40.0

Open the chart page →

7,300
argonix-apiargonix0.2.01 of 4See more

argonix-api argonix 0.2.0

1 of the 4 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/argonix-io/argonix-api:1.0.068e17a8aaa40
golang.org/x/mod@v0.16.0
0.40.0

Open the chart page →

4,923
otel-collectorarieotechVerified publisher0.1.01 of 1See more

otel-collector arieotech 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.154.0b3079f45e19b
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

245
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/mod@v0.7.0
0.40.0

Open the chart page →

23,353
smartorchestratorassist-iot-smart-orchestrator4.0.01 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

1 of the 14 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/mod@v0.19.0
0.40.0

Open the chart page →

45,363
attestkeepattestkeepVerified publisher1.1.01 of 2See more

attestkeep attestkeep 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/attestkeep/attestkeep-k8s:1.1.040f46bb38d0f
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

1,588
krakendbaboulinet0.1.341 of 1See more

krakend baboulinet 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
devopsfaith/krakend:2.7.09219cda867e2
golang.org/x/mod@v0.17.0
0.40.0

Open the chart page →

1,191
grafanabook-k8sinfra-v28.8.21 of 1See more

grafana book-k8sinfra-v2 8.8.2

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/grafana:11.4.0d8ea37798ccc
golang.org/x/mod@v0.20.0
0.40.0

Open the chart page →

1,800
kube-prometheus-stackbook-k8sinfra-v265.5.11 of 6See more

kube-prometheus-stack book-k8sinfra-v2 65.5.1

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/grafana:11.2.2-security-01464eac539793
golang.org/x/mod@v0.18.0
0.40.0

Open the chart page →

6,036
prometheusbook-k8sinfra-v226.0.11 of 6See more

prometheus book-k8sinfra-v2 26.0.1

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

5,304
pyroscopebook-k8sinfra-v21.10.02 of 3See more

pyroscope book-k8sinfra-v2 1.10.0

2 of the 3 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/alloy:v1.1.1c3dac4e26471
golang.org/x/mod@v0.16.0
0.40.0
grafana/pyroscope:1.10.0319bf32ae06b
golang.org/x/mod@v0.17.0
0.40.0

Open the chart page →

3,244
bitmagnetbrandan-schmitz-helm-chartsVerified publisher1.0.61 of 2See more

bitmagnet brandan-schmitz-helm-charts 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/bitmagnet-io/bitmagnet:v0.10.0cf2c16fac5b5
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

1,720

Container images carrying it

422 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/fluxcd/flagger:1.45.015b372d35012
golang.org/x/mod@v0.38.0
0.40.0
1
ghcr.io/fluxcd/notification-controller:v1.9.29ce503e7bcb8
golang.org/x/mod@v0.36.0
0.40.0
1
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
golang.org/x/mod@v0.22.0
0.40.0
1
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
golang.org/x/mod@v0.25.0
0.40.0
1
ghcr.io/gnana997/periscope:1.1.621b284fb00f2
golang.org/x/mod@v0.36.0
0.40.0
1
ghcr.io/honeycombio/refinery/refinery:3.4.0d437676941d6
golang.org/x/mod@v0.38.0
0.40.0
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
golang.org/x/mod@v0.27.0
0.40.0
1
ghcr.io/inlets/inlets-operator:0.17.2208265c006973
golang.org/x/mod@v0.34.0
0.40.0
1
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
golang.org/x/mod@v0.27.0
0.40.0
1
ghcr.io/jarodr47/portager:0.5.06a7a61b37568
golang.org/x/mod@v0.38.0
0.40.0
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
golang.org/x/mod@v0.20.0
0.40.0
1
ghcr.io/kedacore/keda:2.20.2fe74c7b88495
golang.org/x/mod@v0.36.0
0.40.0
1
ghcr.io/kedacore/keda-admission-webhooks:2.20.241f74102aba7
golang.org/x/mod@v0.36.0
0.40.0
1
ghcr.io/kedacore/keda-metrics-apiserver:2.20.227286536a8a7
golang.org/x/mod@v0.36.0
0.40.0
1
ghcr.io/kgma74/dockyard:0.4.0b40439329191
golang.org/x/mod@v0.21.0
0.40.0
1
ghcr.io/kubedb/provider-aws:v0.27.049b1c312e342
golang.org/x/mod@v0.15.0
0.40.0
1
ghcr.io/kubedb/provider-azure:v0.27.0aa0c8526ae5e
golang.org/x/mod@v0.15.0
0.40.0
1
ghcr.io/kubedb/provider-gcp:v0.27.0a1d4cf8b8fe1
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
golang.org/x/mod@v0.25.0
0.40.0
1
ghcr.io/kubeform/provider-aws:v0.0.1e3d1f1302e49
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0
1
ghcr.io/kubeform/provider-azure:v0.0.1ac8459f70f85
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0
1
ghcr.io/kubeform/provider-gcp:v0.0.1af77073c184f
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0
1
ghcr.io/kubehippie/keycloak-operator:1.6.06c0275fb9736
golang.org/x/mod@v0.38.0
0.40.0
1
ghcr.io/kubiyabot/tool-manager:0.5.80cca6760763a
golang.org/x/mod@v0.26.0
0.40.0
1
ghcr.io/kyverno/background-controller:v1.12.506ed5db6cd33
golang.org/x/mod@v0.16.0
0.40.0
1
ghcr.io/kyverno/cleanup-controller:v1.12.5b914032ef9ad
golang.org/x/mod@v0.16.0
0.40.0
1
ghcr.io/kyverno/kyverno:v1.7.19c73f1841ebc
golang.org/x/mod@v0.6.0-dev.0.20220106191415-9b9b3d81d5e3
0.40.0
1
ghcr.io/kyverno/kyverno:v1.12.5a61c7022abcf
golang.org/x/mod@v0.16.0
0.40.0
1
ghcr.io/kyverno/kyverno-cli:v1.12.5832a32779e6d
golang.org/x/mod@v0.16.0
0.40.0
1
ghcr.io/kyverno/kyvernopre:v1.7.1185d2eebc60c
golang.org/x/mod@v0.6.0-dev.0.20220106191415-9b9b3d81d5e3
0.40.0
1
ghcr.io/kyverno/kyvernopre:v1.12.563f7eaf5aa8a
golang.org/x/mod@v0.16.0
0.40.0
1
ghcr.io/kyverno/policy-reporter:3.10.0a77e93fe5117
golang.org/x/mod@v0.39.0
0.40.0
1
ghcr.io/kyverno/reports-controller:v1.12.5c62e3347611c
golang.org/x/mod@v0.16.0
0.40.0
1
ghcr.io/lockdep/stackradar-scanner:0.3.0dd8a35d50c2d
golang.org/x/mod@v0.32.0
0.40.0
1
ghcr.io/loft-sh/agent:3.2.45c109914ff73
golang.org/x/mod@v0.8.0
0.40.0
1
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
golang.org/x/mod@v0.15.0
0.40.0
1
ghcr.io/loft-sh/loft:0.0.0-ci.14b69bcdaa8492
golang.org/x/mod@v0.12.0
0.40.0
1
ghcr.io/loft-sh/vcluster:0.16.484f70425f4dd
golang.org/x/mod@v0.10.0
0.40.0
1
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
golang.org/x/mod@v0.15.0
0.40.0
1
ghcr.io/loft-sh/vcluster-hpm:0.2.7f65f6810ea23
golang.org/x/mod@v0.25.0
0.40.0
1
ghcr.io/loft-sh/vcluster-platform:4.12.0ef92da4621e6
golang.org/x/mod@v0.36.0
0.40.0
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
golang.org/x/mod@v0.14.0
0.40.0
1
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
golang.org/x/mod@v0.20.0
0.40.0
1
ghcr.io/mkutlak/alluredeck-api:0.41.0fa429df90c68
golang.org/x/mod@v0.37.0
0.40.0
1
ghcr.io/okteto/backend:0.0.0-2026-08-03244f87e8c52d
golang.org/x/mod@v0.38.0
0.40.0
1
ghcr.io/okteto/buildkit:0.0.0-2026-08-0314527ca5d2a9
golang.org/x/mod@v0.36.0
0.40.0
1
ghcr.io/openclarity/grype-server:v0.6.079412399f301
golang.org/x/mod@v0.12.0
0.40.0
1
ghcr.io/open-feature/flagd:v0.16.032234e63c1d0
golang.org/x/mod@v0.33.0
0.40.0
1
ghcr.io/open-feature/flagd:v0.11.1a7ea52f87446
golang.org/x/mod@v0.19.0
0.40.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.