StackRadar

CVE-2026-56865

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
453
of 17,781 indexed, latest versions
Container images
422
deployed by those charts
Fix available
1 of 2
affected packages

Fix transparency log tile verification bypass in golang.org/x/mod/sumdb/tlog

Carried by container images the latest versions of 453 of 17,781 indexed charts deploy, on 422 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
golang.org/x/modgolangv0.1.0, v0.2.0, v0.3.0, v0.4.2+38 more0.40.0421
OSV records
DEBIAN-CVE-2026-56865GO-2026-6179
Also known as
BIT-golang-2026-56865

Charts affected

453 by stars
ChartLatestAffected imagesRadar Score
terraboardcamptocamp32.4.01 of 1See more

terraboard camptocamp3 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/terraboard:v2.3.0df53e2c8998c
golang.org/x/mod@v0.13.0
0.40.0

Open the chart page →

1,330
caninecanine0.1.102 of 7See more

canine canine 0.1.10

2 of the 7 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/traefik:v3.7.16b9cbca6fac4
golang.org/x/mod@v0.35.0
0.40.0
ghcr.io/caninehq/canine:latesta058034ca006
golang.org/x/mod@v0.25.0
0.40.0

Open the chart page →

14,130
traefikcanine40.2.01 of 1See more

traefik canine 40.2.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/traefik:v3.7.16b9cbca6fac4
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

1,023
ranchercarbide-charts2.15.12 of 2See more

rancher carbide-charts 2.15.1

2 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
rancher/rancher:v2.15.15f6c4dc52a05
golang.org/x/mod@v0.36.0
0.40.0
rancher/shell:v0.8.1f293af9c635f
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

1,456
temporalcastaiVerified publisher0.54.22 of 14See more

temporal castai 0.54.2

2 of the 14 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/grafana:11.0.00dc5a246ab16
golang.org/x/mod@v0.14.0
0.40.0
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

16,198
catalyst-agentscatalyst-agents0.1.301 of 18See more

catalyst-agents catalyst-agents 0.1.30

1 of the 18 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.156.0125bdbeb7590
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

15,027
memoscharts-derwitt-devVerified publisher1.4.01 of 1See more

memos charts-derwitt-dev 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
neosmemo/memos:0.30.071a5b4738d1b
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

555
basechronicleVerified publisher0.0.81 of 1See more

base chronicle 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
golang.org/x/mod@v0.21.0
0.40.0

Open the chart page →

4,810
goferchronicleVerified publisher0.4.41 of 1See more

gofer chronicle 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/gofer:0.613915d2e41e04
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

721
spirechronicleVerified publisher0.3.61 of 1See more

spire chronicle 0.3.6

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/spire:0.68.379df4fb20322
golang.org/x/mod@v0.29.0
0.40.0

Open the chart page →

1,515
vulnerability-operatorckotzbauerVerified publisher0.31.151 of 1See more

vulnerability-operator ckotzbauer 0.31.15

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/ckotzbauer/vulnerability-operator:0.28.167008df32715c
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

187
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
golang.org/x/mod@v0.4.2
0.40.0

Open the chart page →

6,695
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
golang.org/x/mod@v0.6.0-dev.0.20220106191415-9b9b3d81d5e3
0.40.0

Open the chart page →

6,921
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad2 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

2 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
golang.org/x/mod@v0.6.0-dev.0.20220419223038-86c51ed26bb4
0.40.0
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
golang.org/x/mod@v0.25.0
0.40.0

Open the chart page →

18,293
pulsarcloudve0.2.01 of 2See more

pulsar cloudve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/docker:dind5efed980cba3
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

6,162
argo-eventscluster-deploy0.1.01 of 1See more

argo-events cluster-deploy 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-events:v1.9.10a83d2699ae53
golang.org/x/mod@v0.32.0
0.40.0

Open the chart page →

1,035
traefikcluster-deploy0.3.01 of 1See more

traefik cluster-deploy 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/traefik:v3.7.109c3b91d5fb77
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

340
door-agentcnoVerified publisher3.0.152 of 15See more

door-agent cno 3.0.15

2 of the 15 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
beopenit/door-cd-operator:v3.0.4d3999cb8d026
golang.org/x/mod@v0.12.0
0.40.0
library/docker:27-dindaa3df78ecf32
golang.org/x/mod@v0.21.0
0.40.0

Open the chart page →

19,338
coder-logstream-kubecoder-logstream-kube0.0.151 of 1See more

coder-logstream-kube coder-logstream-kube 0.0.15

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/coder/coder-logstream-kube:v0.0.1510ae596d296e
golang.org/x/mod@v0.33.0
0.40.0

Open the chart page →

885
coder-ai-gatewaycoder-v2Verified publisher2.37.11 of 1See more

coder-ai-gateway coder-v2 2.37.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/coder/coder:v2.37.10c6994bb4c5a
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

187
coder-provisionercoder-v2OfficialVerified publisher2.37.11 of 1See more

coder-provisioner coder-v2 2.37.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/coder/coder:v2.37.10c6994bb4c5a
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

187
loki-stackcommon-chartsVerified publisher1.0.31 of 12See more

loki-stack common-charts 1.0.3

1 of the 12 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.0491b0578c049
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

5,329
cosmo-traefikcosmoVerified publisher0.9.11 of 2See more

cosmo-traefik cosmo 0.9.1

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/traefik:v2.10.11489caffaedb
golang.org/x/mod@v0.6.0
0.40.0

Open the chart page →

3,672
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/docker:dind5efed980cba3
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

14,559
csghubcsghubVerified publisher2.4.32 of 34See more

csghub csghub 2.4.3

2 of the 34 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
golang.org/x/mod@v0.37.0
0.40.0
gcr.io/knative-releases/knative.dev/operator/cmd/operator:v1.22.1ea30f1ce8dc4
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

58,897
dapr-agentsdapr-agents-devVerified publisher0.1.52 of 31See more

dapr-agents dapr-agents-dev 0.1.5

2 of the 31 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.145.0a7343f018690
golang.org/x/mod@v0.31.0
0.40.0
public.ecr.aws/diagrid-dev/diagrid-dashboard:latestf1348a65664a
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

22,193
dask-gatewaydask2026.3.01 of 2See more

dask-gateway dask 2026.3.0

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
library/traefik:3.3.5104204dadedf
golang.org/x/mod@v0.22.0
0.40.0

Open the chart page →

1,994
defactopsdefactops1.0.91 of 2See more

defactops defactops 1.0.9

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
defactops/defactops-ui:1.0.16825cdf9ba706
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

4,509
kyvernodevopstalesVerified publisher2.5.12 of 2See more

kyverno devopstales 2.5.1

2 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/kyverno/kyverno:v1.7.19c73f1841ebc
golang.org/x/mod@v0.6.0-dev.0.20220106191415-9b9b3d81d5e3
0.40.0
ghcr.io/kyverno/kyvernopre:v1.7.1185d2eebc60c
golang.org/x/mod@v0.6.0-dev.0.20220106191415-9b9b3d81d5e3
0.40.0

Open the chart page →

4,722
devtron-enterprisedevtron48.0.02 of 28See more

devtron-enterprise devtron 48.0.0

2 of the 28 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
golang.org/x/mod@v0.30.0
0.40.0
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/mod@v0.13.0
0.40.0

Open the chart page →

68,240
devtron-enterprisedevtron-labs48.0.02 of 28See more

devtron-enterprise devtron-labs 48.0.0

2 of the 28 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
golang.org/x/mod@v0.30.0
0.40.0
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/mod@v0.13.0
0.40.0

Open the chart page →

68,240
devtron-operatordevtron-labs0.23.31 of 11See more

devtron-operator devtron-labs 0.23.3

1 of the 11 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
golang.org/x/mod@v0.30.0
0.40.0

Open the chart page →

32,902
truecommanddjjudas21Verified publisher0.1.01 of 1See more

truecommand djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ixsystems/truecommand:3.2.019c218455cd2
golang.org/x/mod@v0.26.0
0.40.0

Open the chart page →

5,174
dnsmasq-k8sdnsmasq-k8s1.4.11 of 1See more

dnsmasq-k8s dnsmasq-k8s 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
golang.org/x/mod@v0.30.0
0.40.0

Open the chart page →

3,032
corednsdoubanVerified publisher1.39.21 of 1See more

coredns douban 1.39.2

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
coredns/coredns:1.12.040384aa1f5ea
golang.org/x/mod@v0.18.0
0.40.0

Open the chart page →

1,132
temporaldtrdnk-helm-chartsVerified publisher0.35.01 of 13See more

temporal dtrdnk-helm-charts 0.35.0

1 of the 13 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/mod@v0.4.2
0.40.0

Open the chart page →

20,205
api-gatewayeclipse-aeriosVerified publisher1.7.01 of 1See more

api-gateway eclipse-aerios 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
devopsfaith/krakend:2.6.34c678c224f67
golang.org/x/mod@v0.17.0
0.40.0

Open the chart page →

1,296
openfaas2eclipse-aeriosVerified publisher12.0.51 of 6See more

openfaas2 eclipse-aerios 12.0.5

1 of the 6 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
golang.org/x/mod@v0.14.0
0.40.0

Open the chart page →

6,678
kube-ecp-stackemqx-operator2.5.11 of 16See more

kube-ecp-stack emqx-operator 2.5.1

1 of the 16 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
emqx/ecp-main:2.5.1fa876f71e5d6
golang.org/x/mod@v0.18.0
0.40.0

Open the chart page →

23,685
eoapi-supporteoapiVerified publisher0.1.71 of 7See more

eoapi-support eoapi 0.1.7

1 of the 7 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/grafana:10.3.38640e5038e83
golang.org/x/mod@v0.12.0
0.40.0

Open the chart page →

8,648
assertoorethereum-helm-chartsVerified publisher1.2.01 of 1See more

assertoor ethereum-helm-charts 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ethpandaops/assertoor:latest1efa2fba6711
golang.org/x/mod@v0.37.0
0.40.0

Open the chart page →

2,891
buildoor-overviewethereum-helm-chartsVerified publisher0.0.11 of 1See more

buildoor-overview ethereum-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ethpandaops/buildoor:maina51b9a1a770c
golang.org/x/mod@v0.38.0
0.40.0

Open the chart page →

833
chaos-meshethereum-helm-chartsVerified publisher0.0.31 of 4See more

chaos-mesh ethereum-helm-charts 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.0e7f9e8f1d565
golang.org/x/mod@v0.28.0
0.40.0

Open the chart page →

12,127
doraethereum-helm-chartsVerified publisher1.0.121 of 2See more

dora ethereum-helm-charts 1.0.12

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ethpandaops/dora:master2381ea793a12
golang.org/x/mod@v0.38.0
0.40.0

Open the chart page →

2,991
spamoorethereum-helm-chartsVerified publisher1.0.11 of 1See more

spamoor ethereum-helm-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
ethpandaops/spamoor:latest5f731b20ec50
golang.org/x/mod@v0.36.0
0.40.0

Open the chart page →

1,115
siyuanextrim-helm-chartsVerified publisher0.1.11 of 2See more

siyuan extrim-helm-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
b3log/siyuan:v3.1.2595c0d129bc19
golang.org/x/mod@v0.24.0
0.40.0

Open the chart page →

1,247
datadog-apmfairwinds-incubator2.0.01 of 1See more

datadog-apm fairwinds-incubator 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
golang.org/x/mod@v0.29.0
0.40.0

Open the chart page →

2,785
skopeo-syncfairwinds-incubator0.3.11 of 1See more

skopeo-sync fairwinds-incubator 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
quay.io/skopeo/stable:v1.134853591bd1d2
golang.org/x/mod@v0.10.0
0.40.0

Open the chart page →

1,736
farm-observabilityfarm-observabilityOfficialVerified publisher0.27.23 of 18See more

farm-observability farm-observability 0.27.2

3 of the 18 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
grafana/alloy:v1.16.384b76d56c594
golang.org/x/mod@v0.35.0
0.40.0
grafana/alloy:v1.12.2f94b1c82957a
golang.org/x/mod@v0.29.0
0.40.0
grafana/pyroscope:2.0.3cfd00e7f73c2
golang.org/x/mod@v0.35.0
0.40.0

Open the chart page →

13,255
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-56865.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
golang.org/x/mod@v0.27.0
0.40.0

Open the chart page →

5,292

Container images carrying it

422 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/alertmanager:latest:v0.34.0690c7b525f43
golang.org/x/mod@v0.38.0
0.40.0
8
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
golang.org/x/mod@v0.14.0
0.40.0
8
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
golang.org/x/mod@v0.35.0
0.40.0
7
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
golang.org/x/mod@v0.4.2
0.40.0
5
rancher/rancher:v2.15.15f6c4dc52a05
golang.org/x/mod@v0.36.0
0.40.0
4
rancher/shell:v0.8.1f293af9c635f
golang.org/x/mod@v0.37.0
0.40.0
4
rss3/op-geth:rss3-main-1ecad3026148aa1bc52
golang.org/x/mod@v0.14.0
0.40.0
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
golang.org/x/mod@v0.10.0
0.40.0
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
golang.org/x/mod@v0.7.0
0.40.0
4
goharbor/trivy-adapter-photon:v2.15.2215c07b71c37
golang.org/x/mod@v0.36.0
0.40.0
3
grafana/grafana:11.0.00dc5a246ab16
golang.org/x/mod@v0.14.0
0.40.0
3
grafana/grafana:11.3.0a0f881232a6f
golang.org/x/mod@v0.20.0
0.40.0
3
neosmemo/memos:0.30.071a5b4738d1b
golang.org/x/mod@v0.35.0
0.40.0
3
oryd/hydra:v2.2.02c93beb5e5f2
golang.org/x/mod@v0.14.0
0.40.0
3
prom/alertmanager:v0.28.0d5155cfac40a
golang.org/x/mod@v0.22.0
0.40.0
3
rss3/op-node:d2c5ced00901227473fc196fda838191f0cb4e02d1d2ae6efd05
golang.org/x/mod@v0.13.0
0.40.0
3
tykio/tyk-dashboard:v5.13.10e03b94c153d
golang.org/x/mod@v0.36.0
0.40.0
3
tykio/tyk-gateway-ee:v5.13.13e907e675bf9
golang.org/x/mod@v0.36.0
0.40.0
3
ghcr.io/coder/coder:v2.37.10c6994bb4c5a
golang.org/x/mod@v0.35.0
0.40.0
3
ghcr.io/dexidp/dex:v2.45.18499afd690c4
golang.org/x/mod@v0.32.0
0.40.0
3
ghcr.io/spiffe/spire-agent:1.15.341b0dcd8b258
golang.org/x/mod@v0.38.0
0.40.0
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
golang.org/x/mod@v0.30.0
0.40.0
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
golang.org/x/mod@v0.30.0
0.40.0
3
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
golang.org/x/mod@v0.13.0
0.40.0
3
quay.io/prometheus/alertmanager:v0.26.0361db356b330
golang.org/x/mod@v0.9.0
0.40.0
3
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.3.1af0325804248
golang.org/x/mod@v0.38.0
0.40.0
3
coredns/coredns:1.13.19b9128672209
golang.org/x/mod@v0.27.0
0.40.0
2
devopsfaith/krakend:latestf8bdaa8a1a43
golang.org/x/mod@v0.19.0
0.40.0
2
grafana/alloy:v1.8.17790f6f7fbd8
golang.org/x/mod@v0.24.0
0.40.0
2
grafana/alloy:v1.12.2f94b1c82957a
golang.org/x/mod@v0.29.0
0.40.0
2
grafana/grafana:11.1.0079600c9517b
golang.org/x/mod@v0.18.0
0.40.0
2
grafana/grafana:11.1.4886b56d5534e
golang.org/x/mod@v0.18.0
0.40.0
2
grafana/grafana:11.4.0d8ea37798ccc
golang.org/x/mod@v0.20.0
0.40.0
2
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
golang.org/x/mod@v0.7.0
0.40.0
2
library/docker:dind5efed980cba3
golang.org/x/mod@v0.36.0
0.40.0
2
library/traefik:v3.7.16b9cbca6fac4
golang.org/x/mod@v0.35.0
0.40.0
2
library/traefik:v2.57d5a6ae66572
golang.org/x/mod@v0.4.2
0.40.0
2
listmonk/listmonk:v2.1.0d2eac77ddfad
golang.org/x/mod@v0.5.1
0.40.0
2
listmonk/listmonk:latest:v6.2.0f535d59e1499
golang.org/x/mod@v0.33.0
0.40.0
2
longhornio/longhorn-manager:v1.12.183b79f57043f
golang.org/x/mod@v0.37.0
0.40.0
2
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
golang.org/x/mod@v0.24.0
0.40.0
2
moby/buildkit:v0.32.2-rootless504731e577c2
golang.org/x/mod@v0.38.0
0.40.0
2
oryd/kratos:v1.3.1fe2428f103a6
golang.org/x/mod@v0.19.0
0.40.0
2
otel/opentelemetry-collector-contrib:0.156.0125bdbeb7590
golang.org/x/mod@v0.37.0
0.40.0
2
rss3/op-batcher:a77d1f52fc3492bf21915bdff8ee8e0b5bd2cb8adae8a5bdd7a6
golang.org/x/mod@v0.13.0
0.40.0
2
rss3/op-proposer:a77d1f52fc3492bf21915bdff8ee8e0b5bd2cb8aa4059dd32c48
golang.org/x/mod@v0.13.0
0.40.0
2
tkpd/gripmock:1.10.174441dadcfbd
golang.org/x/mod@v0.4.2
0.40.0
2
uffizzi/controller:latest0344805f267b
golang.org/x/mod@v0.8.0
0.40.0
2
uselagoon/docker-host:v3.6.12c89ed939b8b
golang.org/x/mod@v0.24.0
0.40.0
2
ghcr.io/fluxcd/source-controller:v1.9.22b8d06650a1b
golang.org/x/mod@v0.36.0
0.40.0
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.