StackRadar

CVE-2026-84445

High

Advisory

Published 8 Sept 2026In the index since 9 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,309
of 17,787 indexed, latest versions
Container images
2,793
deployed by those charts
Fix available
2 of 2
affected packages

gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing `:authority` and `Host` headers

Carried by container images the latest versions of 2,309 of 17,787 indexed charts deploy, on 2,793 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+117 more1.82.2, 1.83.2, 1.85.0-dev.0.20260825072537-93e31b48545e2,792
kubernetes-1.34apk1.34.11-r21.34.11-r81
OSV records
GHSA-2v4p-qf9q-27wjCGA-2675-68qh-x3xm
Also known as
CGA-2rc7-c9wv-rg9j, CGA-2v9r-g7hg-wjpv, CGA-5pg3-vg83-278x, CGA-6jwq-4523-qrxc, CGA-6mqf-6cj9-rr4r, CGA-8vf4-hpwm-ghh8, CGA-96jx-jhxg-fxww, CGA-fg8c-vc3x-88hf, CGA-g3hq-cpjp-v4p5, CGA-hx92-g8xp-6m86, CGA-wgvj-wq84-52gh
Trending
Rank 7 in indexed charts, since 9 Sept 2026. See the ranking →

Charts affected

2,309 by stars
ChartLatestAffected imagesRadar Score
kube-prometheus-stackprometheus-communityOfficialVerified publisher91.4.02See more

kube-prometheus-stack prometheus-community 91.4.0

2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
google.golang.org/grpc@v1.79.3
1.82.2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.20.042cfe3723a5f
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

argo-cdargoOfficialVerified publisher10.9.11See more

argo-cd argo 10.9.1

1 container image this version deploys carries CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.45.18499afd690c4
google.golang.org/grpc@v1.79.1
1.82.2

Open the chart page →

prometheusprometheus-communityOfficialVerified publisher29.30.03See more

prometheus prometheus-community 29.30.0

3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.34.0690c7b525f43
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/prometheus/prometheus:v3.14.05ce7540c3c00
google.golang.org/grpc@v1.82.1
1.82.2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.20.042cfe3723a5f
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

metrics-servermetrics-serverVerified publisher3.14.01 of 1See more

metrics-server metrics-server 3.14.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

156
vaulthashicorpVerified publisher0.34.11 of 2See more

vault hashicorp 0.34.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
hashicorp/vault:2.0.45be49781ecf7
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

542
harborharborOfficialVerified publisher1.19.25 of 8See more

harbor harbor 1.19.2

5 of the 8 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
goharbor/harbor-core:v2.15.2d7b780d23721
google.golang.org/grpc@v1.81.1
1.82.2
goharbor/harbor-jobservice:v2.15.2f71a4452a095
google.golang.org/grpc@v1.81.1
1.82.2
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
google.golang.org/grpc@v0.0.0-20160317175043-d3ddb4469d5a
1.82.2
goharbor/registry-photon:v2.15.2c4ebef61ceb5
google.golang.org/grpc@v0.0.0-20160317175043-d3ddb4469d5a
1.82.2
goharbor/trivy-adapter-photon:v2.15.2215c07b71c37
google.golang.org/grpc@v1.81.0
1.82.2

Open the chart page →

1,650
external-secretsexternal-secrets-operatorVerified publisher2.10.01 of 1See more

external-secrets external-secrets-operator 2.10.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v2.10.0814117b0fd6d
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

77
longhornlonghorn1.12.12 of 3See more

longhorn longhorn 1.12.1

2 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.12.183b79f57043f
google.golang.org/grpc@v1.83.0
1.83.2
longhornio/longhorn-share-manager:v1.12.1efaf47aeb4e8
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

554
gitlab-runnergitlabVerified publisher0.92.11 of 1See more

gitlab-runner gitlab 0.92.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.3.1af0325804248
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

904
ciliumciliumOfficialVerified publisher1.20.13 of 3See more

cilium cilium 1.20.1

3 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
google.golang.org/grpc@v1.83.0
1.83.2
quay.io/cilium/operator-generic:v1.20.16c3885fc7b62
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

1,708
velerovmware-tanzu12.1.01 of 1See more

velero vmware-tanzu 12.1.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
velero/velero:v1.18.111459094b1b2
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

1,331
metallbmetallbVerified publisher0.16.13 of 4See more

metallb metallb 0.16.1

3 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.16.1f51ab515de9c
google.golang.org/grpc@v1.72.1
1.82.2
quay.io/metallb/frr-k8s:v0.0.251cb06fb2d553
google.golang.org/grpc@v1.68.1
1.82.2
quay.io/metallb/speaker:v0.16.116561e96531e
google.golang.org/grpc@v1.72.1
1.82.2

Open the chart page →

2,127
cloudnative-pgcloudnative-pgVerified publisher0.29.01 of 1See more

cloudnative-pg cloudnative-pg 0.29.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.30.0a2701eb97cdd
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

118
rancherrancher-stable2.15.12 of 2See more

rancher rancher-stable 2.15.1

2 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
rancher/rancher:v2.15.15f6c4dc52a05
google.golang.org/grpc@v1.79.3
1.82.2
rancher/shell:v0.8.1f293af9c635f
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

1,456
oauth2-proxyoauth2-proxyOfficialVerified publisher10.7.01 of 1See more

oauth2-proxy oauth2-proxy 10.7.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.15.310a1165743a1
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

147
nginx-ingressnginxVerified publisher2.7.11 of 1See more

nginx-ingress nginx 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
nginx/nginx-ingress:5.6.18ca7b42ae702
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

1,285
kedakedacore2.20.23 of 3See more

keda kedacore 2.20.2

3 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/kedacore/keda:2.20.2fe74c7b88495
google.golang.org/grpc@v1.81.1
1.82.2
ghcr.io/kedacore/keda-admission-webhooks:2.20.241f74102aba7
google.golang.org/grpc@v1.81.1
1.82.2
ghcr.io/kedacore/keda-metrics-apiserver:2.20.227286536a8a7
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

873
artifact-hubartifact-hubVerified publisher1.23.04 of 7See more

artifact-hub artifact-hub 1.23.0

4 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
aquasec/trivy:0.69.3bcc376de8d77
google.golang.org/grpc@v1.78.0
1.82.2
artifacthub/hub:v1.23.07d3a91c539dc
google.golang.org/grpc@v1.82.0
1.82.2
artifacthub/scanner:v1.23.02d8365601f0e
google.golang.org/grpc@v1.78.0
1.82.2
artifacthub/tracker:v1.23.05368d21a6e5c
google.golang.org/grpc@v1.75.1
1.82.2

Open the chart page →

10,755
kube-state-metricsprometheus-communityVerified publisher8.5.01See more

kube-state-metrics prometheus-community 8.5.0

1 container image this version deploys carries CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.20.042cfe3723a5f
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

alloygrafana1.12.11 of 2See more

alloy grafana 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/alloy:v1.19.2b8ec653c4423
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

1,100
prometheus-blackbox-exporterprometheus-communityOfficialVerified publisher11.18.01 of 1See more

prometheus-blackbox-exporter prometheus-community 11.18.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/prometheus/blackbox-exporter:v0.28.0e753ff9f3fc4
google.golang.org/grpc@v1.77.0
1.82.2

Open the chart page →

594
deschedulerdescheduler0.36.01 of 1See more

descheduler descheduler 0.36.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/descheduler/descheduler:v0.36.07ca92c0a7b4f
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

569
argo-rolloutsargoOfficialVerified publisher2.43.11 of 1See more

argo-rollouts argo 2.43.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-rollouts:v1.10.0187630ba7228
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

115
jaegerjaegertracingOfficialVerified publisher4.13.11 of 1See more

jaeger jaegertracing 4.13.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
jaegertracing/jaeger:2.20.046a886260e04
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

294
jupyterhubjupyterhubOfficialVerified publisher4.4.21 of 7See more

jupyterhub jupyterhub 4.4.2

1 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/kube-scheduler:v1.30.1474a5cf9cfa9f
google.golang.org/grpc@v1.58.3
1.82.2

Open the chart page →

7,894
argo-cdargo-cd-oci10.9.11See more

argo-cd argo-cd-oci 10.9.1

1 container image this version deploys carries CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.45.18499afd690c4
google.golang.org/grpc@v1.79.1
1.82.2

Open the chart page →

mimir-distributedgrafana6.2.04 of 6See more

mimir-distributed grafana 6.2.0

4 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/mimir:3.2.0736f7459913d
google.golang.org/grpc@v1.82.1
1.82.2
grafana/rollout-operator:v0.38.132fe838b79dd
google.golang.org/grpc@v1.82.0
1.82.2
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
google.golang.org/grpc@v1.67.1
1.82.2
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
google.golang.org/grpc@v1.69.0
1.82.2

Open the chart page →

4,517
argocd-image-updaterargoOfficialVerified publisher1.3.11 of 1See more

argocd-image-updater argo 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/argocd-image-updater:v1.3.0cb009167015c
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

718
headlampheadlampOfficialVerified publisher0.45.01 of 1See more

headlamp headlamp 0.45.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/headlamp-k8s/headlamp:v0.45.0db3f0e0fc58d
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

229
dexdexVerified publisher0.24.11 of 1See more

dex dex 0.24.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.44.05d0656fce7d4
google.golang.org/grpc@v1.72.1
1.82.2

Open the chart page →

1,765
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
google.golang.org/grpc@v1.79.2
1.82.2

Open the chart page →

30,159
falcofalcosecurity9.1.03 of 3See more

falco falcosecurity 9.1.0

3 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
falcosecurity/falco:0.44.1d0cfe422d6ac
google.golang.org/grpc@v1.79.3
1.82.2
falcosecurity/falco-driver-loader:0.44.17df783d5269a
google.golang.org/grpc@v1.79.3
1.82.2
falcosecurity/falcoctl:0.13.00eeb79adc580
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

5,227
alertmanagerprometheus-communityOfficialVerified publisher1.43.11 of 1See more

alertmanager prometheus-community 1.43.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.34.0690c7b525f43
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

63
kongkongOfficialVerified publisher3.4.11 of 2See more

kong kong 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kong/kubernetes-ingress-controller:3.5979f12864a13
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

1,135
chartmuseumchartmuseumVerified publisher3.10.41 of 1See more

chartmuseum chartmuseum 3.10.4

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.16.3c81f105c3682
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

1,360
rook-cephrookOfficialVerified publisher1.20.71 of 2See more

rook-ceph rook 1.20.7

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/cephcsi/ceph-csi-operator:v1.0.4c62933fd4083
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

1,447
argo-eventsargoOfficialVerified publisher2.4.271 of 1See more

argo-events argo 2.4.27

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-events:v1.9.11fa07b2c9ece6
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

969
grafanagrafana-communityVerified publisher13.2.41 of 1See more

grafana grafana-community 13.2.4

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

431
victoria-metrics-k8s-stackvictoriametricsVerified publisher0.92.13 of 7See more

victoria-metrics-k8s-stack victoriametrics 0.92.1

3 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:13.1.17cb8c64c4d57
google.golang.org/grpc@v1.81.1
1.82.2
victoriametrics/operator:v0.74.17310c4a80b94
google.golang.org/grpc@v1.82.1
1.82.2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.185108987d044
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

1,889
openebsopenebsOfficialVerified publisher4.6.115 of 35See more

openebs openebs 4.6.1

15 of the 35 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
google.golang.org/grpc@v1.71.0
1.82.2
grafana/loki:3.4.258a6c186ce78
google.golang.org/grpc@v1.70.0
1.82.2
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
google.golang.org/grpc@v1.71.1
1.82.2
openebs/lvm-driver:1.10.141f73aba7f31
google.golang.org/grpc@v1.79.3
1.82.2
openebs/provisioner-localpv:4.6.099f5116f5cb8
google.golang.org/grpc@v1.82.1
1.82.2
openebs/zfs-driver:2.11.116f1a74bb249
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
google.golang.org/grpc@v1.67.1
1.82.2
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
google.golang.org/grpc@v1.69.0
1.82.2
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
google.golang.org/grpc@v1.69.4
1.82.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
google.golang.org/grpc@v1.69.0
1.82.2
registry.k8s.io/sig-storage/csi-provisioner:v5.2.0d5e46da8aff7
google.golang.org/grpc@v1.69.2
1.82.2
registry.k8s.io/sig-storage/csi-provisioner:v6.1.0e5900dc98b0d
google.golang.org/grpc@v1.75.1
1.82.2
registry.k8s.io/sig-storage/csi-resizer:v2.0.04a95d94e57ad
google.golang.org/grpc@v1.72.1
1.82.2
registry.k8s.io/sig-storage/csi-resizer:v1.13.28ddd178ba5d0
google.golang.org/grpc@v1.69.2
1.82.2
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.0dd788d79cf4c
google.golang.org/grpc@v1.68.0
1.82.2

Open the chart page →

23,894
prometheus-adapterprometheus-communityOfficialVerified publisher5.3.01 of 1See more

prometheus-adapter prometheus-community 5.3.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
google.golang.org/grpc@v1.60.1
1.82.2

Open the chart page →

930
actions-runner-controlleractions-runner-controller0.23.71 of 2See more

actions-runner-controller actions-runner-controller 0.23.7

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.13.1738c854322f5
google.golang.org/grpc@v1.47.0
1.82.2

Open the chart page →

2,883
corednscorednsVerified publisher1.47.11 of 1See more

coredns coredns 1.47.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
coredns/coredns:1.14.6900f9c109f7a
google.golang.org/grpc@v1.82.0
1.82.2

Open the chart page →

330
opentelemetry-operatoropentelemetry-helmVerified publisher0.122.11See more

opentelemetry-operator opentelemetry-helm 0.122.1

1 container image this version deploys carries CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/opentelemetry-operator/opentelemetry-operator:0.158.0d4789a6537fd
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

apisixapisix2.17.01 of 3See more

apisix apisix 2.17.0

1 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
bitnamilegacy/etcd:latest99b408c15272
google.golang.org/grpc@v1.71.1
1.82.2

Open the chart page →

3,045
netdatanetdataVerified publisher3.7.1731 of 1See more

netdata netdata 3.7.173

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
netdata/netdata:v2.11.0c45c71eb23ff
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

3,092
node-problem-detectordeliveryheroVerified publisher2.4.11 of 1See more

node-problem-detector deliveryhero 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
google.golang.org/grpc@v1.77.0
1.82.2

Open the chart page →

1,955
miniominio-official5.4.02 of 2See more

minio minio-official 5.4.0

2 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
google.golang.org/grpc@v1.67.1
1.82.2
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
google.golang.org/grpc@v1.69.0
1.82.2

Open the chart page →

2,483
opencostopencostOfficialVerified publisher2.5.311 of 2See more

opencost opencost 2.5.31

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost:1.121.2de2784434527
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

265
openfaasopenfaas15.0.132 of 6See more

openfaas openfaas 15.0.13

2 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.34.0690c7b525f43
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/prometheus/prometheus:v3.14.05ce7540c3c00
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

3,543

Container images carrying it

2,793 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
google.golang.org/grpc@v1.33.1
1.82.2
1
chrislusf/seaweedfs:3.64634b094b2183
google.golang.org/grpc@v1.61.1
1.82.2
1
chrislusf/seaweedfs:3.56ed80f00fde46
google.golang.org/grpc@v1.57.0
1.82.2
1
chrislusf/seaweedfs-csi-driver:v1.4.32570605bc413c
google.golang.org/grpc@v1.85.0-dev
1.85.0-dev.0.20260825072537-93e31b48545e
1
chrislusf/seaweedfs-mount:v1.4.32c97e6f49e90c
google.golang.org/grpc@v1.85.0-dev
1.85.0-dev.0.20260825072537-93e31b48545e
1
ciscolabs/msm-nc:0710202336d02faad958
google.golang.org/grpc@v1.56.1
1.82.2
1
clastix/kamaji:latesta7c5d108810b
google.golang.org/grpc@v1.79.3
1.82.2
1
cleanstart/minio:latest544bdb8811e1
google.golang.org/grpc@v1.81.1
1.82.2
1
cloud37io/s3-encryption-gateway:0.11.10f8ff2092b8af
google.golang.org/grpc@v1.83.0
1.83.2
1
cloudflare/cloudflared:2024.8.314d9c6b01b29
google.golang.org/grpc@v1.63.0
1.82.2
1
cloudflare/cloudflared:2024.5.05d5f70a59d5e
google.golang.org/grpc@v1.63.0
1.82.2
1
cloudflare/cloudflared:2023.10.0c18744ae1767
google.golang.org/grpc@v1.51.0
1.82.2
1
cloudflare/cloudflared:2025.8.0eb5c9324efe3
google.golang.org/grpc@v1.72.2
1.82.2
1
cloudflare/cloudflared:2026.9.0ff69a2225ad7
google.golang.org/grpc@v1.83.0
1.83.2
1
cloudnativelabs/kube-router:v1.6.00ec7cd73f43f
google.golang.org/grpc@v1.51.0
1.82.2
1
cockroachdb/cockroach-operator:v2.1.0983312754620
google.golang.org/grpc@v1.29.1
1.82.2
1
codenotary/immudb:1.9.77c85d7cc4f22
google.golang.org/grpc@v1.57.1
1.82.2
1
coderenvs/coder-service:1.44.61deffc4670e6
google.golang.org/grpc@v1.52.3
1.82.2
1
cometbft/cometbft:v0.38.1722c2ac018f40
google.golang.org/grpc@v1.70.0
1.82.2
1
concourse/concourse:8.3.040a143ce5873
google.golang.org/grpc@v1.80.0
1.82.2
1
conduction/agendaservice-php:latest9cfeeb6c7c20
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/balance-registration-php:devc36094a41369
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/betaalservice-php:latestece1ab544c57
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/cgrc-php:dev25415534d245
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/checkin-component-php:dev3423845692c1
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/conduction-ui-php:dev2744565516e8
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/contactmoment-component-php:deve1d4ad1e22a8
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/docparser-php:devb6f95c8ead7d
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/kvk-php:dev8f177f9f8a7b
google.golang.org/grpc@v1.27.0
1.82.2
1
conduction/pan-php:dev24f03c57568f
google.golang.org/grpc@v1.27.0
1.82.2
1
containous/maesh:v1.3.2587162516502
google.golang.org/grpc@v1.27.1
1.82.2
1
coordimap/coordimap-agent:latest7748fd0fae9f
google.golang.org/grpc@v1.67.1
1.82.2
1
coredns/coredns:1.12.040384aa1f5ea
google.golang.org/grpc@v1.68.0
1.82.2
1
coredns/coredns:1.7.073ca82b4ce82
google.golang.org/grpc@v1.29.1
1.82.2
1
coredns/coredns:1.14.6900f9c109f7a
google.golang.org/grpc@v1.82.0
1.82.2
1
coredns/coredns:1.10.1a0ead06651cf
google.golang.org/grpc@v1.52.3
1.82.2
1
cortezaproject/corteza:2024.9.60bcdcbcd3c63
google.golang.org/grpc@v1.61.1
1.82.2
1
cortezaproject/corteza:2024.9.08eb7a26605c9
google.golang.org/grpc@v1.61.1
1.82.2
1
cortezaproject/corteza:2024.9.4cb9f200de5d2
google.golang.org/grpc@v1.61.1
1.82.2
1
craftypath/sops-operator:v0.8.0402a0024c732
google.golang.org/grpc@v1.27.0
1.82.2
1
crowdfox/external-service-operator:v1.1.06fa7e8063d27
google.golang.org/grpc@v1.27.0
1.82.2
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
google.golang.org/grpc@v1.26.0
1.82.2
1
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
google.golang.org/grpc@v1.33.1
1.82.2
1
cyberark/conjur-k8s-csi-provider:latest737a967088d9
google.golang.org/grpc@v1.82.1
1.82.2
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
google.golang.org/grpc@v1.75.0
1.82.2
1
cyverse/irods-csi-driver:v0.12.0aa69d105b292
google.golang.org/grpc@v1.81.0
1.82.2
1
czerwonk/junos_exporter:v0.16.2cb2279ae53d7
google.golang.org/grpc@v1.83.0
1.83.2
1
daprio/dashboard:0.15.04be696707bd1
google.golang.org/grpc@v1.61.0
1.82.2
1
daprio/dashboard:0.14.07ba5d51e5b97
google.golang.org/grpc@v1.53.0
1.82.2
1
daprio/injector:1.11.2763b9b70b0c8
google.golang.org/grpc@v1.56.2
1.82.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.