StackRadar

CVE-2026-84303

Medium

Advisory

Published 1 Sept 2026In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.003
24th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,257
of 17,792 indexed, latest versions
Container images
2,718
deployed by those charts
Fix available
1 of 2
affected packages

gRPC-Go: xDS RBAC HTTP Filter bypass via mixed-case Header Matching and gRFC A41 validation evasion

Carried by container images the latest versions of 2,257 of 17,792 indexed charts deploy, on 2,718 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+114 more1.83.12,715
grpcdeb1.16.1-1ubuntu5, 1.51.1-4.1build5no fix listed3
OSV records
GHSA-qc2q-p7wx-3px3UBUNTU-CVE-2026-84303
Also known as
GO-2026-6441

Charts affected

2,257 by stars
ChartLatestAffected imagesRadar Score
boundaryboundary-chart0.3.121 of 1See more

boundary boundary-chart 0.3.12

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
hashicorp/boundary:0.15.3339b78b61750
google.golang.org/grpc@v1.59.0
1.83.1

Open the chart page →

1,630
brpservicebrpservice1.1.01 of 4See more

brpservice brpservice 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
google.golang.org/grpc@v1.27.0
1.83.1

Open the chart page →

7,839
btrfs-nfs-csibtrfs-nfs-csi0.4.06 of 7See more

btrfs-nfs-csi btrfs-nfs-csi 0.4.0

6 of the 7 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
google.golang.org/grpc@v1.72.2
1.83.1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
google.golang.org/grpc@v1.78.0
1.83.1
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
google.golang.org/grpc@v1.72.1
1.83.1
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
google.golang.org/grpc@v1.78.0
1.83.1
registry.k8s.io/sig-storage/csi-snapshotter:v8.5.0da081c27e8a6
google.golang.org/grpc@v1.78.0
1.83.1
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
google.golang.org/grpc@v1.78.0
1.83.1

Open the chart page →

3,226
bucket-backup-restorebucket-backup-restore0.1.01 of 2See more

bucket-backup-restore bucket-backup-restore 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
abohatyrenko/bucket-backup-restore:latestfa98af15a13e
google.golang.org/grpc@v1.59.0
1.83.1

Open the chart page →

2,049
agentbuildkite0.6.41 of 1See more

agent buildkite 0.6.4

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
buildkite/agent:3.25.0aec38cfaae0e
google.golang.org/grpc@v0.0.0-20170216003643-d0c32ee6a441
1.83.1

Open the chart page →

2,670
buildkite-agent-metricsbuildkite-agent-metrics0.1.01 of 1See more

buildkite-agent-metrics buildkite-agent-metrics 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
public.ecr.aws/buildkite/agent-metrics:v5.11.016e7f5c7161e
google.golang.org/grpc@v1.75.0
1.83.1

Open the chart page →

1,541
argocd-source-trackercableship0.0.91 of 1See more

argocd-source-tracker cableship 0.0.9

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/cableship/argocd-source-tracker:0.0.6ff7dd45aa774
google.golang.org/grpc@v1.68.1
1.83.1

Open the chart page →

1,490
chart-sentinelcableship0.0.121 of 1See more

chart-sentinel cableship 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/cableship/chart-sentinel:0.1.0a037f1042b28
google.golang.org/grpc@v1.68.1
1.83.1

Open the chart page →

1,490
blackbox-exportercamptocamp31.0.01 of 1See more

blackbox-exporter camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.25.0b04a9fef4fa0
google.golang.org/grpc@v1.63.2
1.83.1

Open the chart page →

913
capsulecapsuleOfficialVerified publisher0.14.61 of 2See more

capsule capsule 0.14.6

1 of the 2 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/projectcapsule/capsule:v0.14.6ac02588e65e8
google.golang.org/grpc@v1.83.0
1.83.1

Open the chart page →

1,238
celestia-nodecelestia-node0.1.71 of 1See more

celestia-node celestia-node 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.16.041177982c584
google.golang.org/grpc@v1.65.0
1.83.1

Open the chart page →

1,810
cert-estuarycert-estuaryVerified publisher0.2.11 of 1See more

cert-estuary cert-estuary 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/hsn723/cert-estuary:0.2.00c4b6132b0ad
google.golang.org/grpc@v1.80.0
1.83.1

Open the chart page →

268
cert-manager-google-cas-issuercert-managerOfficialVerified publisher0.12.01 of 1See more

cert-manager-google-cas-issuer cert-manager 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-google-cas-issuer:v0.12.08bd9cdb714a6
google.golang.org/grpc@v1.80.0
1.83.1

Open the chart page →

164
finops-stackcert-managerVerified publisher0.0.57 of 12See more

finops-stack cert-manager 0.0.5

7 of the 12 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
grafana/grafana:11.1.3b23b588cf7cb
google.golang.org/grpc@v1.64.0
1.83.1
ghcr.io/kyverno/background-controller:v1.12.506ed5db6cd33
google.golang.org/grpc@v1.62.1
1.83.1
ghcr.io/kyverno/cleanup-controller:v1.12.5b914032ef9ad
google.golang.org/grpc@v1.62.1
1.83.1
ghcr.io/kyverno/kyverno:v1.12.5a61c7022abcf
google.golang.org/grpc@v1.62.1
1.83.1
ghcr.io/kyverno/kyverno-cli:v1.12.5832a32779e6d
google.golang.org/grpc@v1.62.1
1.83.1
ghcr.io/kyverno/kyvernopre:v1.12.563f7eaf5aa8a
google.golang.org/grpc@v1.62.1
1.83.1
ghcr.io/kyverno/reports-controller:v1.12.5c62e3347611c
google.golang.org/grpc@v1.62.1
1.83.1

Open the chart page →

12,611
cert-manager-webhook-arvancloudcert-manager-webhook-arvancloudVerified publisher0.1.11 of 1See more

cert-manager-webhook-arvancloud cert-manager-webhook-arvancloud 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/mohammadv184/cert-manager-webhook-arvancloud:latest179bee5ef8b2
google.golang.org/grpc@v1.54.0
1.83.1

Open the chart page →

1,074
cert-manager-webhook-gandicert-manager-webhook-gandi0.6.01 of 1See more

cert-manager-webhook-gandi cert-manager-webhook-gandi 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/sintef/cert-manager-webhook-gandi:0.6.06819b34ccac8
google.golang.org/grpc@v1.64.1
1.83.1

Open the chart page →

1,031
etcd-defragchristianhuthVerified publisher1.6.11 of 1See more

etcd-defrag christianhuth 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
quay.io/coreos/etcd:v3.7.13c66a5191d37
google.golang.org/grpc@v1.82.1
1.83.1

Open the chart page →

135
shlink-backendchristianhuthVerified publisher11.11.11 of 1See more

shlink-backend christianhuth 11.11.1

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
shlinkio/shlink:5.1.6666cc24edf72
google.golang.org/grpc@v1.81.1
1.83.1

Open the chart page →

195
erpcchronicleVerified publisher0.7.01 of 1See more

erpc chronicle 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/erpc/erpc:0.1.18bfed3d49a08
google.golang.org/grpc@v1.81.1
1.83.1

Open the chart page →

382
clickhouse-operator-helmclickhouse-operator0.0.71 of 1See more

clickhouse-operator-helm clickhouse-operator 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/clickhouse/clickhouse-operator:v0.0.7d51ca53f0967
google.golang.org/grpc@v1.82.0
1.83.1

Open the chart page →

110
cloudflare-tunnelcloudflare-tunnelVerified publisher0.16.61 of 1See more

cloudflare-tunnel cloudflare-tunnel 0.16.6

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.9.0ff69a2225ad7
google.golang.org/grpc@v1.83.0
1.83.1

Open the chart page →

336
cloudflow-enterprise-componentscloudflow-helm-charts0.0.0-NIGHTLY011220201 of 9See more

cloudflow-enterprise-components cloudflow-helm-charts 0.0.0-NIGHTLY01122020

1 of the 9 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
prom/prometheus:v2.21.0d43417c260e5
google.golang.org/grpc@v1.29.1
1.83.1

Open the chart page →

4,265
cnpg-sandboxcloudnative-pgVerified publisher0.6.12 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

2 of the 6 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
grafana/grafana:8.3.5cd7cb4345aa7
google.golang.org/grpc@v1.41.0
1.83.1
quay.io/prometheus-operator/prometheus-operator:v0.54.0be2aef39a2f8
google.golang.org/grpc@v1.40.0
1.83.1

Open the chart page →

7,597
grafanacloudposse0.2.61 of 1See more

grafana cloudposse 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
google.golang.org/grpc@v1.81.1
1.83.1

Open the chart page →

728
openstack-manila-csicloud-provider-openstack2.36.35 of 5See more

openstack-manila-csi cloud-provider-openstack 2.36.3

5 of the 5 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
google.golang.org/grpc@v1.80.0
1.83.1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
google.golang.org/grpc@v1.72.1
1.83.1
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
google.golang.org/grpc@v1.72.1
1.83.1
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
google.golang.org/grpc@v1.69.2
1.83.1
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
google.golang.org/grpc@v1.72.1
1.83.1

Open the chart page →

3,785
cloudttycloudtty0.8.92 of 2See more

cloudtty cloudtty 0.8.9

2 of the 2 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/cloudtty/cloudshell:v0.8.900984ba0f0eb
google.golang.org/grpc@v1.72.1
1.83.1
ghcr.io/cloudtty/cloudshell-operator:v0.8.9e43ad91f0684
google.golang.org/grpc@v1.54.1
1.83.1

Open the chart page →

3,985
cluster-api-provider-oxidecluster-api-provider-oxide0.2.31 of 1See more

cluster-api-provider-oxide cluster-api-provider-oxide 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/oxidecomputer/cluster-api-provider-oxide:0.2.37b05d3bbfbfa
google.golang.org/grpc@v1.82.1
1.83.1

Open the chart page →

122
clustereye-stackclustereyeVerified publisher0.1.11 of 5See more

clustereye-stack clustereye 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
johnblack77/clustereye-api:latest9b8dbc0264ac
google.golang.org/grpc@v1.71.0
1.83.1

Open the chart page →

4,906
clusternet-hubclusternet1.0.01 of 1See more

clusternet-hub clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
google.golang.org/grpc@v1.65.0
1.83.1

Open the chart page →

1,403
clusternet-schedulerclusternet1.0.01 of 1See more

clusternet-scheduler clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
google.golang.org/grpc@v1.65.0
1.83.1

Open the chart page →

1,403
cluster-setupcluster-setup1.5.04 of 8See more

cluster-setup cluster-setup 1.5.0

4 of the 8 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
google.golang.org/grpc@v1.71.0
1.83.1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
google.golang.org/grpc@v1.71.0
1.83.1
quay.io/jetstack/cert-manager-controller:v1.17.22c314feeb5e8
google.golang.org/grpc@v1.69.2
1.83.1
quay.io/jetstack/cert-manager-webhook:v1.17.237b16a9dff00
google.golang.org/grpc@v1.69.2
1.83.1

Open the chart page →

10,111
istio-allcode4devsVerified publisher1.2.04 of 6See more

istio-all code4devs 1.2.0

4 of the 6 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
google.golang.org/grpc@v1.67.1
1.83.1
istio/pilot:1.24.2-distroless137e44e3d1d2
google.golang.org/grpc@v1.67.1
1.83.1
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
google.golang.org/grpc@v1.63.2
1.83.1
quay.io/prometheus/prometheus:v2.54.1f6639335d34a
google.golang.org/grpc@v1.65.0
1.83.1

Open the chart page →

4,811
istio-control-planecode4devsVerified publisher1.0.02 of 3See more

istio-control-plane code4devs 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
google.golang.org/grpc@v1.67.1
1.83.1
istio/pilot:1.24.2-distroless137e44e3d1d2
google.golang.org/grpc@v1.67.1
1.83.1

Open the chart page →

2,373
maintenancecodewithemadVerified publisher0.1.61 of 1See more

maintenance codewithemad 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
library/caddy:2.9-alpineb4e3952384eb
google.golang.org/grpc@v1.67.1
1.83.1

Open the chart page →

1,476
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
google.golang.org/grpc@v1.27.0
1.83.1

Open the chart page →

7,313
cortex-tenantcortex-tenantVerified publisher0.8.11 of 1See more

cortex-tenant cortex-tenant 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/blind-oracle/cortex-tenant:v2.0.09f8896ffc15b
google.golang.org/grpc@v1.71.0
1.83.1

Open the chart page →

786
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
google.golang.org/grpc@v1.27.0
1.83.1

Open the chart page →

6,480
chalk-operatorcrashoverride-helm-chartsVerified publisher0.1.11 of 1See more

chalk-operator crashoverride-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/crashappsec/chalk-operator:v0.1.128eee62e9bfa
google.golang.org/grpc@v1.68.1
1.83.1

Open the chart page →

375
cronjob-scale-down-operatorcronschedules0.4.41 of 1See more

cronjob-scale-down-operator cronschedules 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
ghcr.io/cronschedules/cronjob-scale-down-operator:0.4.41c4e803d7169
google.golang.org/grpc@v1.80.0
1.83.1

Open the chart page →

444
revadcs3orgOfficialVerified publisher1.6.11 of 1See more

revad cs3org 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
cs3org/revad:v1.24.0e80a4d67b352
google.golang.org/grpc@v1.52.0
1.83.1

Open the chart page →

1,711
cubefscubefs3.2.06 of 10See more

cubefs cubefs 3.2.0

6 of the 10 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
google.golang.org/grpc@v1.22.1
1.83.1
ghcr.io/cubefs/cfs-csi-driver:3.2.0.150.08723616a976a
google.golang.org/grpc@v1.29.1
1.83.1
registry.k8s.io/sig-storage/csi-attacher:v3.4.08b9c313c05f5
google.golang.org/grpc@v1.40.0
1.83.1
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.5.04fd21f36075b
google.golang.org/grpc@v1.40.0
1.83.1
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
google.golang.org/grpc@v1.36.0
1.83.1
registry.k8s.io/sig-storage/csi-resizer:v1.3.06e0546563b18
google.golang.org/grpc@v1.38.0
1.83.1

Open the chart page →

15,931
cview-issuercview-issuerVerified publisher0.0.421 of 1See more

cview-issuer cview-issuer 0.0.42

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
devsecurely/cview-issuer:0.0.42eecd4314e933
google.golang.org/grpc@v1.81.0
1.83.1

Open the chart page →

419
cyphernetes-operatorcyphernetes-operatorVerified publisher0.1.01 of 1See more

cyphernetes-operator cyphernetes-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
fatliverfreddy/cyphernetes-operator:lateste79f24ca7371
google.golang.org/grpc@v1.67.3
1.83.1

Open the chart page →

504
aibrixdanchevVerified publisher0.7.02 of 5See more

aibrix danchev 0.7.0

2 of the 5 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
aibrix/controller-manager:v0.7.076aabbbfda79
google.golang.org/grpc@v1.65.0
1.83.1
aibrix/gateway-plugins:v0.7.05b93ea4c753a
google.golang.org/grpc@v1.65.0
1.83.1

Open the chart page →

5,343
data-fairdata354-helmVerified publisher1.1.21 of 12See more

data-fair data354-helm 1.1.2

1 of the 12 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:latest5ce7540c3c00
google.golang.org/grpc@v1.82.1
1.83.1

Open the chart page →

38,441
dbrepodbrepo1.13.33 of 25See more

dbrepo dbrepo 1.13.3

3 of the 25 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
google.golang.org/grpc@v1.66.0
1.83.1
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
google.golang.org/grpc@v1.65.0
1.83.1
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
google.golang.org/grpc@v1.72.0
1.83.1

Open the chart page →

53,108
dregsydeliveryheroVerified publisher0.1.51 of 1See more

dregsy deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
xelalex/dregsy:0.4.3574054e1c417
google.golang.org/grpc@v1.44.0
1.83.1

Open the chart page →

2,977
developer-operatordeveloper-operatorVerified publisher2.1.21 of 1See more

developer-operator developer-operator 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
google.golang.org/grpc@v1.73.0
1.83.1

Open the chart page →

1,862
trivy-operatordevopstalesVerified publisher2.5.01 of 1See more

trivy-operator devopstales 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
devopstales/trivy-operator:2.575136aa7a26e
google.golang.org/grpc@v1.50.1
1.83.1

Open the chart page →

5,607
calicodevtron0.1.13 of 4See more

calico devtron 0.1.1

3 of the 4 container images this version deploys carry CVE-2026-84303.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
google.golang.org/grpc@v1.27.1
1.83.1
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
google.golang.org/grpc@v1.27.1
1.83.1
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
google.golang.org/grpc@v1.27.1
1.83.1

Open the chart page →

10,094

Container images carrying it

2,718 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/appscode/inbox-agent:v0.0.66b99ee9feece
google.golang.org/grpc@v1.72.1
1.83.1
1
ghcr.io/appscode/kube-rbac-proxy:v0.18.27de54b6dedc8
google.golang.org/grpc@v1.65.0
1.83.1
1
ghcr.io/appscode/kube-rbac-proxy:v0.15.0d8cc6ffb9819
google.golang.org/grpc@v1.47.0
1.83.1
1
ghcr.io/appscode/kube-ui-server:v0.7.079e67164b4f0
google.golang.org/grpc@v1.80.0
1.83.1
1
ghcr.io/appscode/license-proxyserver:v0.0.8d6c2532ea386
google.golang.org/grpc@v1.59.0
1.83.1
1
ghcr.io/appscode/offline-license-server:v0.0.76e4b66308d8f6
google.golang.org/grpc@v1.72.1
1.83.1
1
ghcr.io/appscode/operator-shard-manager:v0.0.64a16c6ccecb8
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/appscode/panopticon:v0.0.23a645b40d2d3b
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/appscode/pgoutbox:v0.0.4a96e06ec5e9f
google.golang.org/grpc@v1.66.2
1.83.1
1
ghcr.io/appscode/scanner:v0.0.2116907aae5de1
google.golang.org/grpc@v1.76.0
1.83.1
1
ghcr.io/appscode/secrets-store-csi-driver-provider-virtual-secrets:v0.2.07afb394f9f97
google.golang.org/grpc@v1.82.1
1.83.1
1
ghcr.io/appscode/sidekick:v0.0.16d8d2a3c22ee7
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/appscode/storage-metrics-server:v0.1.09cb4acb742a9
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/appscode/supervisor:v0.0.1223affde10a92
google.golang.org/grpc@v1.75.1
1.83.1
1
ghcr.io/appscode/taskqueue:v0.0.36877c958a3c6
google.golang.org/grpc@v1.72.1
1.83.1
1
ghcr.io/appscode/virtual-secrets-server:v0.4.0efa03f4c9551
google.golang.org/grpc@v1.82.1
1.83.1
1
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
google.golang.org/grpc@v1.55.0
1.83.1
1
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
google.golang.org/grpc@v1.65.0
1.83.1
1
ghcr.io/arpa-network/node-client:latest657a2c9f6e6d
google.golang.org/grpc@v1.63.0
1.83.1
1
ghcr.io/aserto-dev/topaz:0.32.594c708ecf7dc4
google.golang.org/grpc@v1.71.1
1.83.1
1
ghcr.io/ashvinbambhaniya/nexus-tasks-backend:2.0.0f80349eb018b
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
google.golang.org/grpc@v1.79.2
1.83.1
1
ghcr.io/astradns/astradns-operator:v0.2.909e58b62416a
google.golang.org/grpc@v1.72.2
1.83.1
1
ghcr.io/astriaorg/astria-indexer:0.1.05cf1e5709820
google.golang.org/grpc@v1.64.1
1.83.1
1
ghcr.io/astriaorg/astria-indexer-api:0.1.03490d9900af1
google.golang.org/grpc@v1.64.1
1.83.1
1
ghcr.io/astriaorg/flame:0.1.0c8af1c5aae40
google.golang.org/grpc@v1.64.1
1.83.1
1
ghcr.io/astriaorg/seq-faucet:0.9.0bf3cb9b505b6
google.golang.org/grpc@v1.64.1
1.83.1
1
ghcr.io/aureq/cert-manager-webhook-ovh:0.9.160339cf9a75ca
google.golang.org/grpc@v1.83.0
1.83.1
1
ghcr.io/aureum-cloud/frp-operator:v1.0.196b01d7e7025
google.golang.org/grpc@v1.68.1
1.83.1
1
ghcr.io/automata-network/multi-prover-avs/operator:v0.6.0752f1aa02438
google.golang.org/grpc@v1.64.1
1.83.1
1
ghcr.io/axonops/axonops-operator:0.1.0e0cdb993f0b1
google.golang.org/grpc@v1.79.2
1.83.1
1
ghcr.io/b100to/idle-reaper:0.1.447b4a0e091f0
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/bank-vaults/bank-vaults:v1.33.198b6ea2ed319
google.golang.org/grpc@v1.81.1
1.83.1
1
ghcr.io/bank-vaults/vault-secrets-webhook:v1.23.198baf045a1c9
google.golang.org/grpc@v1.81.1
1.83.1
1
ghcr.io/bbdsoftware/litellm-operator:1.1.2167a51113d90
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/beluga-cloud/helm-dashboard/dashboard:1.3.39ab9a675c405
google.golang.org/grpc@v1.57.0
1.83.1
1
ghcr.io/bionicstork/bionicstork/relay:latest13290b9a64af
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
google.golang.org/grpc@v1.81.0
1.83.1
1
ghcr.io/bitwarden/sm-operator:2.1.0846624161f32
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/blind-oracle/cortex-tenant:v2.0.09f8896ffc15b
google.golang.org/grpc@v1.71.0
1.83.1
1
ghcr.io/bnb-chain/bsc:1.6.2fd0e3ec7d960
google.golang.org/grpc@v1.69.4
1.83.1
1
ghcr.io/bodgit/nri-plugin-runtime:v0.0.3130c0b1b6fa3
google.golang.org/grpc@v1.57.1
1.83.1
1
ghcr.io/bojanzelic/cloudflare-zero-trust-operator:0.7.1f4b2dbc19a78
google.golang.org/grpc@v1.65.0
1.83.1
1
ghcr.io/borchero/switchboard:0.7.454a193b757da
google.golang.org/grpc@v1.79.3
1.83.1
1
ghcr.io/browsersec/kubebrowse-frontend:chore-improve-backbd6bea5e487c
google.golang.org/grpc@v1.73.0
1.83.1
1
ghcr.io/buildbarn/bb-scheduler:20260908T142432Z-77f7642f627ab242890
google.golang.org/grpc@v1.81.1
1.83.1
1
ghcr.io/buildbarn/bb-storage:20260908T142448Z-db6204132ebc54b769b
google.golang.org/grpc@v1.81.1
1.83.1
1
ghcr.io/buoyantio/controller:preview-26.8.431a2f3922a61
google.golang.org/grpc@v1.83.0
1.83.1
1
ghcr.io/buoyantio/linkerd-dashboard-server:0.11.1dd6a29588242
google.golang.org/grpc@v1.83.0
1.83.1
1
ghcr.io/buoyantio/metrics-api:preview-25.4.32cef2a3f97da
google.golang.org/grpc@v1.71.1
1.83.1
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.