StackRadar

CVE-2026-84445

High

Advisory

Published 8 Sept 2026In the index since 9 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,342
of 17,787 indexed, latest versions
Container images
2,841
deployed by those charts
Fix available
2 of 2
affected packages

gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing `:authority` and `Host` headers

Carried by container images the latest versions of 2,342 of 17,787 indexed charts deploy, on 2,841 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+117 more1.82.2, 1.83.2, 1.85.0-dev.0.20260825072537-93e31b48545e2,840
kubernetes-1.34apk1.34.11-r21.34.11-r81
OSV records
GHSA-2v4p-qf9q-27wjCGA-2675-68qh-x3xm
Also known as
CGA-2rc7-c9wv-rg9j, CGA-2v9r-g7hg-wjpv, CGA-5pg3-vg83-278x, CGA-6jwq-4523-qrxc, CGA-6mqf-6cj9-rr4r, CGA-8vf4-hpwm-ghh8, CGA-96jx-jhxg-fxww, CGA-fg8c-vc3x-88hf, CGA-g3hq-cpjp-v4p5, CGA-hx92-g8xp-6m86, CGA-wgvj-wq84-52gh
Trending
Rank 7 in indexed charts, since 9 Sept 2026. See the ranking →

Charts affected

2,342 by stars
ChartLatestAffected imagesRadar Score
hetzner-dyndnsitsmethemojoVerified publisher1.4.01 of 1See more

hetzner-dyndns itsmethemojo 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
hashicorp/terraform:1.9.7b77efab1a448
google.golang.org/grpc@v1.59.0
1.82.2

Open the chart page →

1,836
thehiveittrident-oss0.1.01 of 6See more

thehive ittrident-oss 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
google.golang.org/grpc@v1.71.0
1.82.2

Open the chart page →

6,037
jaasjaasVerified publisher2026.6.15+1013541 of 1See more

jaas jaas 2026.6.15+101354

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/metio/jaas:2026.6.15e28772028e56
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

346
opencloudjacobcolvinVerified publisher0.2.32 of 13See more

opencloud jacobcolvin 0.2.3

2 of the 13 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
google.golang.org/grpc@v1.71.0
1.82.2
opencloudeu/opencloud-rolling:2.1.0f9634bb04905
google.golang.org/grpc@v1.71.1
1.82.2

Open the chart page →

45,392
rclonejacobcolvinVerified publisher1.0.11 of 1See more

rclone jacobcolvin 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
rclone/rclone:1.63.008e1af3c8814
google.golang.org/grpc@v1.54.0
1.82.2

Open the chart page →

2,143
koptimizejaconiVerified publisher0.5.42 of 2See more

koptimize jaconi 0.5.4

2 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
alpine/k8s:1.27.321b24e6bf801
google.golang.org/grpc@v1.53.0
1.82.2
ghcr.io/jaconi-io/koptimize:1.2.5aca1bbd609b6
google.golang.org/grpc@v1.55.0
1.82.2

Open the chart page →

5,716
janus-shieldjanus-shield1.0.01 of 2See more

janus-shield janus-shield 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/cilium/tetragon:v1.1.096fac2482898
google.golang.org/grpc@v1.63.2
1.82.2

Open the chart page →

2,377
newtjeffrescVerified publisher0.2.11 of 1See more

newt jeffresc 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
fosrl/newt:1.10.4ccd2b0e9a049
google.golang.org/grpc@v1.79.1
1.82.2

Open the chart page →

1,097
athens-proxyjenkins-x0.2.21 of 2See more

athens-proxy jenkins-x 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:latestab6f1a1f0fb4
google.golang.org/grpc@v1.76.0
1.82.2

Open the chart page →

1,337
jx-app-athensjenkins-x0.0.181 of 1See more

jx-app-athens jenkins-x 0.0.18

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gomods/athens:v0.8.1d714c7ff0231
google.golang.org/grpc@v1.20.1
1.82.2

Open the chart page →

4,225
jx-app-datadogjenkins-x0.0.101 of 2See more

jx-app-datadog jenkins-x 0.0.10

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
datadog/agent:6aad9994de6a7
google.golang.org/grpc@v1.62.1
1.82.2

Open the chart page →

4,038
jx-app-flaggerjenkins-x0.0.51 of 2See more

jx-app-flagger jenkins-x 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:6.5.1befcd84da2c1
google.golang.org/grpc@v1.23.1
1.82.2

Open the chart page →

6,028
knative-servingjenkins-x0.19.124 of 4See more

knative-serving jenkins-x 0.19.12

4 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned1e3db4f2eeed
google.golang.org/grpc@v1.33.1
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinneddb6ceff2aab4
google.golang.org/grpc@v1.33.1
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedb2cd45b8a8a4
google.golang.org/grpc@v1.33.1
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinnedd27b4495ccc3
google.golang.org/grpc@v1.33.1
1.82.2

Open the chart page →

9,699
vaultjfrog0.25.01 of 2See more

vault jfrog 0.25.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
hashicorp/vault:1.14.0b2177a8bfe85
google.golang.org/grpc@v1.55.0
1.82.2

Open the chart page →

3,969
missing-container-metricsjimdo-missing-container-metrics0.5.01 of 1See more

missing-container-metrics jimdo-missing-container-metrics 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
google.golang.org/grpc@v1.36.0
1.82.2

Open the chart page →

2,409
job-manager-syncerjob-manager-syncer1.27.01 of 1See more

job-manager-syncer job-manager-syncer 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/job-manager-syncer:1.27.086957bbeeff5
google.golang.org/grpc@v1.67.0
1.82.2

Open the chart page →

455
cloudnative-pgjouveVerified publisher0.27.01 of 1See more

cloudnative-pg jouve 0.27.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.28.034198e85b6e6
google.golang.org/grpc@v1.77.0
1.82.2

Open the chart page →

647
corednsjouveVerified publisher1.45.01 of 1See more

coredns jouve 1.45.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
coredns/coredns:1.13.19b9128672209
google.golang.org/grpc@v1.75.1
1.82.2

Open the chart page →

887
distributionjouveVerified publisher0.2.31 of 1See more

distribution jouve 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
distribution/distribution:3.1.1bca24727f400
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

835
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
google.golang.org/grpc@v1.47.0
1.82.2

Open the chart page →

16,626
daily-restartjuniorjpdj0.1.691 of 1See more

daily-restart juniorjpdj 0.1.69

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/juniorjpdj/containers/openssl-kubectl:1.36.1-r358afba209ea0
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

458
mumbledjjuniorjpdj0.1.1991 of 2See more

mumbledj juniorjpdj 0.1.199

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/juniorjpdj/containers/openssl-kubectl:1.36.1-r358afba209ea0
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

959
nginx-gateway-fabricjupyter-jscVerified publisher2.4.11 of 1See more

nginx-gateway-fabric jupyter-jsc 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/nginx/nginx-gateway-fabric:2.4.180f3a0a51af5
google.golang.org/grpc@v1.78.0
1.82.2

Open the chart page →

359
k8s-aibomk8s-aibomVerified publisher1.4.01 of 1See more

k8s-aibom k8s-aibom 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/googlecloudplatform/k8s-aibomdigest-pinned05e86c39c535
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

72
deploydefenderk8s-custom-controllerVerified publisher0.1.31 of 1See more

deploydefender k8s-custom-controller 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

1,893
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
google.golang.org/grpc@v1.68.1
1.82.2

Open the chart page →

8,879
giteak8s-home-lab-repo2.6.01 of 1See more

gitea k8s-home-lab-repo 2.6.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gitea/gitea:1.26.27d13848af126
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

2,140
maddyk8s-home-lab-repo4.2.11 of 1See more

maddy k8s-home-lab-repo 4.2.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
foxcpp/maddy:0.8.2eeb5813fc4d1
google.golang.org/grpc@v1.70.0
1.82.2

Open the chart page →

1,052
librephotosk8sonlabVerified publisher1.1.61 of 7See more

librephotos k8sonlab 1.1.6

1 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
alpine/k8s:1.22.600ac10bcb759
google.golang.org/grpc@v1.30.0
1.82.2

Open the chart page →

14,833
k8s-redirectsk8s-redirects1.0.01 of 1See more

k8s-redirects k8s-redirects 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
traefik/whoami:latestc4717a8d1f01
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

87
k8s-s3-bucket-operatork8s-s3-bucket-operator0.2.21 of 1See more

k8s-s3-bucket-operator k8s-s3-bucket-operator 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/devangradadiya/k8s-s3-bucket-operator:0.2.258288de9f9fa
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

528
kagentkagent0.10.13 of 6See more

kagent kagent 0.10.1

3 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
mcp/grafana:latest9362bcf6aa0e
google.golang.org/grpc@v1.80.0
1.82.2
ghcr.io/kagent-dev/kagent/tools:0.2.150b431281d3e
google.golang.org/grpc@v1.79.3
1.82.2
ghcr.io/kagent-dev/kmcp/controller:0.3.086ab878da25a
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

2,950
gpu-provisionerkaitoVerified publisher0.2.01 of 1See more

gpu-provisioner kaito 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
mcr.microsoft.com/aks/kaito/gpu-provisioner:0.2.01204a7e948e9
google.golang.org/grpc@v1.56.3
1.82.2

Open the chart page →

1,038
ragenginekaitoVerified publisher0.12.01 of 1See more

ragengine kaito 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
mcr.microsoft.com/aks/kaito/ragengine:0.12.07bfe651c92db
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

31
workspacekaitoVerified publisher0.12.07 of 7See more

workspace kaito 0.12.0

7 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
mcr.microsoft.com/acstor/local-csi-driver:v0.3.0f9af53a79fd1
google.golang.org/grpc@v1.83.0
1.83.2
mcr.microsoft.com/acstor/local-csi-manager:v0.3.04f464b52ba85
google.golang.org/grpc@v1.83.0
1.83.2
mcr.microsoft.com/aks/kaito/workspace:0.12.0c4b887ca0542
google.golang.org/grpc@v1.82.1
1.82.2
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-node-driver-registrar:v2.16.0b5ff0d884b68
google.golang.org/grpc@v1.83.1
1.83.2
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v5.2.0afdfa3da79df
google.golang.org/grpc@v1.69.2
1.82.2
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v1.13.2fa8eba9843ff
google.golang.org/grpc@v1.69.2
1.82.2
mcr.microsoft.com/oss/v2/nvidia/k8s-device-plugin:v0.18.2-125a4e52c87bb9
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

2,364
dockerdkarljorgensen0.1.01 of 1See more

dockerd karljorgensen 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
library/docker:28.5.2-dind2a232a42256f
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

2,034
k10restorekastenVerified publisher8.0.141 of 1See more

k10restore kasten 8.0.14

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gcr.io/kasten-images/restorectl:8.0.145a0884f9a90c
google.golang.org/grpc@v1.76.0
1.82.2

Open the chart page →

1,478
kbot-self-hostedkbot-self-hostedVerified publisher0.1.81 of 7See more

kbot-self-hosted kbot-self-hosted 0.1.8

1 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.30206a6c708fc6
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

32,522
kcmkcm1.11.05 of 12See more

kcm kcm 1.11.0

5 of the 12 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flux-cli:v2.9.1020edbaee890
google.golang.org/grpc@v1.80.0
1.82.2
ghcr.io/fluxcd/helm-controller:v1.6.2e17ab0e5885d
google.golang.org/grpc@v1.80.0
1.82.2
ghcr.io/fluxcd/source-controller:v1.9.22b8d06650a1b
google.golang.org/grpc@v1.81.1
1.82.2
quay.io/jetstack/cert-manager-controller:v1.21.0e370f7800a53
google.golang.org/grpc@v1.81.1
1.82.2
quay.io/jetstack/cert-manager-webhook:v1.21.0c33cca307541
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

2,822
kcp-operatorkcp-devVerified publisher0.7.101 of 1See more

kcp-operator kcp-dev 0.7.10

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/kcp-dev/kcp-operator:v0.9.0cd8bf46d98e0
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

127
qdrant-operatorkeiailabVerified publisher0.10.11 of 1See more

qdrant-operator keiailab 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/keiailab/qdrant-operator:v0.10.1360ec1df72b5
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

31
kestra-starterkestraOfficialVerified publisher2.0.11 of 5See more

kestra-starter kestra 2.0.1

1 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
library/docker:dind-rootlesse17fa54c2ffd
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

5,469
csi-driver-nfskeyporttech0.1.41 of 2See more

csi-driver-nfs keyporttech 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
keyporttech/csi-driver-nfs:2.0.05bd7955ea2f1
google.golang.org/grpc@v1.20.0
1.82.2

Open the chart page →

3,357
mysqldumpkfirfer2.8.01 of 1See more

mysqldump kfirfer 2.8.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
google.golang.org/grpc@v1.53.0
1.82.2

Open the chart page →

3,506
kiaekiae0.1.66 of 9See more

kiae kiae 0.1.6

6 of the 9 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/loki:2.6.11ee60f980950
google.golang.org/grpc@v1.44.0
1.82.2
grafana/promtail:2.6.1072527b12cdf
google.golang.org/grpc@v1.44.0
1.82.2
istio/pilot:1.15.2db08d6963975
google.golang.org/grpc@v1.47.0
1.82.2
otel/opentelemetry-collector-contrib:0.63.1dfb3a55ea8c9
google.golang.org/grpc@v1.50.1
1.82.2
ghcr.io/dexidp/dex:v2.35.313964b29d63e
google.golang.org/grpc@v1.49.0
1.82.2
ghcr.io/kiaedev/kiae:latestebd03028ff6a
google.golang.org/grpc@v1.48.0
1.82.2

Open the chart page →

19,208
cdashkitwareVerified publisher0.19.01 of 3See more

cdash kitware 0.19.0

1 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.12.18-debian-12-r0cce234b4381a
google.golang.org/grpc@v1.69.0
1.82.2

Open the chart page →

12,131
rabbitmq-cluster-operatorklicktippVerified publisher0.4.22 of 3See more

rabbitmq-cluster-operator klicktipp 0.4.2

2 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/rabbitmq/cluster-operator:2.20.1a96853470256
google.golang.org/grpc@v1.80.0
1.82.2
ghcr.io/rabbitmq/messaging-topology-operator:1.19.124c4649ef3ef
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

796
rabbitmq-topology-operatorklicktippVerified publisher0.4.11 of 2See more

rabbitmq-topology-operator klicktipp 0.4.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/rabbitmq/messaging-topology-operator:1.19.124c4649ef3ef
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

542
klustre-csi-pluginklustre-csi-plugin0.1.11 of 2See more

klustre-csi-plugin klustre-csi-plugin 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.10.1f25af73ee708
google.golang.org/grpc@v1.60.1
1.82.2

Open the chart page →

1,465
knative-servingknative-servingVerified publisher1.18.37 of 7See more

knative-serving knative-serving 1.18.3

7 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-istio/cmd/controllerdigest-pinned0d5f740b4224
google.golang.org/grpc@v1.71.1
1.82.2
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhookdigest-pinned697668be7893
google.golang.org/grpc@v1.71.1
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned031408ec516f
google.golang.org/grpc@v1.71.1
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned3502bb5aa60f
google.golang.org/grpc@v1.71.1
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler-hpadigest-pinned7405faeb7636
google.golang.org/grpc@v1.71.1
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinned5b93308a392c
google.golang.org/grpc@v1.71.1
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinned50831d9aaa69
google.golang.org/grpc@v1.71.1
1.82.2

Open the chart page →

3,728

Container images carrying it

2,841 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
grafana/grafana:6.7.11ff3999e0fc0
google.golang.org/grpc@v1.23.1
1.82.2
4
grafana/loki:2.6.11ee60f980950
google.golang.org/grpc@v1.44.0
1.82.2
4
grafana/loki:3.6.73c8fd3570dd9
google.golang.org/grpc@v1.75.1
1.82.2
4
grafana/tempo:2.9.065a578975943
google.golang.org/grpc@v1.75.0
1.82.2
4
hyperledger/fabric-ca:latesta70b6ba64a08
google.golang.org/grpc@v1.82.1
1.82.2
4
hyperledger/fabric-orderer:2.46ec3fe59ea55
google.golang.org/grpc@v1.31.0
1.82.2
4
hyperledger/fabric-peer:2.46ff36af21eb1
google.golang.org/grpc@v1.31.0
1.82.2
4
hyperledger/fabric-tools:2.4b1194f509085
google.golang.org/grpc@v1.31.0
1.82.2
4
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
google.golang.org/grpc@v1.60.0
1.82.2
4
jaegertracing/jaeger-collector:1.53.07f1269222903
google.golang.org/grpc@v1.60.0
1.82.2
4
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
google.golang.org/grpc@v1.60.0
1.82.2
4
library/registry:3.1.1:latest1be55279f18a
google.golang.org/grpc@v1.80.0
1.82.2
4
rancher/rancher:v2.15.15f6c4dc52a05
google.golang.org/grpc@v1.79.3
1.82.2
4
rancher/shell:v0.8.1f293af9c635f
google.golang.org/grpc@v1.79.3
1.82.2
4
victoriametrics/operator:v0.74.17310c4a80b94
google.golang.org/grpc@v1.82.1
1.82.2
4
ghcr.io/appscode/petset:v0.1.093fa0daf603c
google.golang.org/grpc@v1.72.1
1.82.2
4
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
google.golang.org/grpc@v1.82.1
1.82.2
4
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
google.golang.org/grpc@v1.55.0
1.82.2
4
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
google.golang.org/grpc@v1.76.0
1.82.2
4
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
google.golang.org/grpc@v1.64.0
1.82.2
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
google.golang.org/grpc@v1.57.0
1.82.2
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
google.golang.org/grpc@v1.57.0
1.82.2
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
google.golang.org/grpc@v1.57.0
1.82.2
4
quay.io/thanos/thanos:v0.42.4b567818fe608
google.golang.org/grpc@v1.81.1
1.82.2
4
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.16.0e750cd4b43f7
google.golang.org/grpc@v1.68.1
1.82.2
4
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
google.golang.org/grpc@v1.81.1
1.82.2
4
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
google.golang.org/grpc@v1.60.1
1.82.2
4
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
google.golang.org/grpc@v1.69.4
1.82.2
4
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
google.golang.org/grpc@v1.69.0
1.82.2
4
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
google.golang.org/grpc@v1.60.0
1.82.2
4
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
google.golang.org/grpc@v1.72.0
1.82.2
4
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
google.golang.org/grpc@v1.78.0
1.82.2
4
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
google.golang.org/grpc@v1.81.1
1.82.2
4
argoproj/argocd:v1.8.1830e86cacefd
google.golang.org/grpc@v1.15.0
1.82.2
3
caddy/ingress:v0.2.118d1366fc0e9
google.golang.org/grpc@v1.59.0
1.82.2
3
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
google.golang.org/grpc@v1.74.2
1.82.2
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
google.golang.org/grpc@v1.36.0
1.82.2
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
google.golang.org/grpc@v1.34.0
1.82.2
3
dgraph/dgraph:v21.12.03b55ea83fffe
google.golang.org/grpc@v1.20.1
1.82.2
3
envoyproxy/gateway:v1.7.5156b7d32c73b
google.golang.org/grpc@v1.82.0
1.82.2
3
ethpandaops/tracoor:latestd8514b9f4c59
google.golang.org/grpc@v1.64.1
1.82.2
3
goharbor/harbor-core:v2.15.2d7b780d23721
google.golang.org/grpc@v1.81.1
1.82.2
3
goharbor/harbor-jobservice:v2.15.2f71a4452a095
google.golang.org/grpc@v1.81.1
1.82.2
3
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
google.golang.org/grpc@v0.0.0-20160317175043-d3ddb4469d5a
1.82.2
3
goharbor/registry-photon:v2.15.2c4ebef61ceb5
google.golang.org/grpc@v0.0.0-20160317175043-d3ddb4469d5a
1.82.2
3

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.