StackRadar

CVE-2026-84445

High

Advisory

Published 8 Sept 2026In the index since 9 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,348
of 17,781 indexed, latest versions
Container images
2,837
deployed by those charts
Fix available
2 of 2
affected packages

gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing `:authority` and `Host` headers

Carried by container images the latest versions of 2,348 of 17,781 indexed charts deploy, on 2,837 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+117 more1.82.2, 1.83.2, 1.85.0-dev.0.20260825072537-93e31b48545e2,836
kubernetes-1.34apk1.34.11-r21.34.11-r81
OSV records
GHSA-2v4p-qf9q-27wjCGA-2675-68qh-x3xm
Also known as
CGA-2rc7-c9wv-rg9j, CGA-2v9r-g7hg-wjpv, CGA-5pg3-vg83-278x, CGA-6jwq-4523-qrxc, CGA-6mqf-6cj9-rr4r, CGA-8vf4-hpwm-ghh8, CGA-96jx-jhxg-fxww, CGA-fg8c-vc3x-88hf, CGA-g3hq-cpjp-v4p5, CGA-hx92-g8xp-6m86, CGA-wgvj-wq84-52gh
Trending
Rank 7 in indexed charts, since 9 Sept 2026. See the ranking →

Charts affected

2,348 by stars
ChartLatestAffected imagesRadar Score
spirespiffeVerified publisher0.30.27 of 10See more

spire spiffe 0.30.2

7 of the 10 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/spiffe/oidc-discovery-provider:1.15.3bb95f13c2b4e
google.golang.org/grpc@v1.83.0
1.83.2
ghcr.io/spiffe/spiffe-csi-driver:0.2.79dfe4f0caff0
google.golang.org/grpc@v1.71.0
1.82.2
ghcr.io/spiffe/spiffe-helper:0.11.01c92e5998ad3
google.golang.org/grpc@v1.76.0
1.82.2
ghcr.io/spiffe/spire-agent:1.15.341b0dcd8b258
google.golang.org/grpc@v1.83.0
1.83.2
ghcr.io/spiffe/spire-controller-manager:0.7.0d7b9e710f542
google.golang.org/grpc@v1.82.1
1.82.2
ghcr.io/spiffe/spire-server:1.15.34082f30d3e0d
google.golang.org/grpc@v1.83.0
1.83.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
google.golang.org/grpc@v1.72.1
1.82.2

Open the chart page →

1,640
bytebasebytebase1.1.51 of 1See more

bytebase bytebase 1.1.5

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
bytebase/bytebase:latest9fcde38c0d5f
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

435
cert-manager-csi-drivercert-managerOfficialVerified publisher0.16.03 of 3See more

cert-manager-csi-driver cert-manager 0.16.0

3 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-csi-driver:v0.16.09d13db6dc80e
google.golang.org/grpc@v1.83.0
1.83.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/livenessprobe:v2.19.006da0d5b8908
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

489
ansible-semaphorecloudhippieVerified publisher15.2.101 of 1See more

ansible-semaphore cloudhippie 15.2.10

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
semaphoreui/semaphore:v2.19.1498ad9bc7a2a0
google.golang.org/grpc@v1.76.0
1.82.2

Open the chart page →

1,235
etcdcloudpirates-etcdVerified publisher0.8.81 of 1See more

etcd cloudpirates-etcd 0.8.8

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gcr.io/etcd-development/etcd:v3.7.1a9983dd6d928
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

128
rabbitmq-cluster-operatorcloudpirates-rabbitmq-cluster-operatorVerified publisher0.6.161 of 2See more

rabbitmq-cluster-operator cloudpirates-rabbitmq-cluster-operator 0.6.16

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/rabbitmq/messaging-topology-operator:1.20.3f377d3c3e221
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

8
codefreshcodefresh-onpremOfficialVerified publisher2.12.133 of 42See more

codefresh codefresh-onprem 2.12.13

3 of the 42 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
google.golang.org/grpc@v1.65.0
1.82.2
ghcr.io/helm/chartmuseum:v0.16.648bc27743c08
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/codefresh/dind:3.0.250885ab519dac
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

14,956
aws-ebs-csi-driverdeliveryheroVerified publisher2.17.46 of 6See more

aws-ebs-csi-driver deliveryhero 2.17.4

6 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
public.ecr.aws/ebs-csi-driver/aws-ebs-csi-driver:v1.16.11564359e1e0e
google.golang.org/grpc@v1.51.0
1.82.2
public.ecr.aws/eks-distro/kubernetes-csi/external-attacher:v4.1.0-eks-1-25-latest701eea03388c
google.golang.org/grpc@v1.51.0
1.82.2
public.ecr.aws/eks-distro/kubernetes-csi/external-provisioner:v3.4.0-eks-1-25-latest460ee1a59fea
google.golang.org/grpc@v1.51.0
1.82.2
public.ecr.aws/eks-distro/kubernetes-csi/external-resizer:v1.7.0-eks-1-25-lateste711da25e7a0
google.golang.org/grpc@v1.51.0
1.82.2
public.ecr.aws/eks-distro/kubernetes-csi/livenessprobe:v2.9.0-eks-1-25-latest8a305e162caa
google.golang.org/grpc@v1.49.0
1.82.2
public.ecr.aws/eks-distro/kubernetes-csi/node-driver-registrar:v2.7.0-eks-1-25-latestf4345e67df8f
google.golang.org/grpc@v1.51.0
1.82.2

Open the chart page →

6,483
eck-exporterenixVerified publisher1.14.01 of 1See more

eck-exporter enix 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.20.042cfe3723a5f
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

82
gitlab-operatorgitlabVerified publisher3.3.21 of 1See more

gitlab-operator gitlab 3.3.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:3.3.242dd426130a9
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

145
loki-simple-scalablegrafana1.8.112 of 3See more

loki-simple-scalable grafana 1.8.11

2 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/agent-operator:v0.25.1a136c6208aa3
google.golang.org/grpc@v1.44.0
1.82.2
grafana/loki:2.6.11ee60f980950
google.golang.org/grpc@v1.44.0
1.82.2

Open the chart page →

6,470
kube-prometheus-stackkube-prometheus-stack-oci91.2.12 of 6See more

kube-prometheus-stack kube-prometheus-stack-oci 91.2.1

2 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:13.2.1-distroless3600073f45a9
google.golang.org/grpc@v1.79.3
1.82.2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.20.042cfe3723a5f
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

647
kube-vipkube-vip0.11.11 of 1See more

kube-vip kube-vip 0.11.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/kube-vip/kube-vip:v1.2.32fcdbb014a2e
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

119
lakefslakefsVerified publisher1.12.281 of 1See more

lakefs lakefs 1.12.28

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
treeverse/lakefs:1.86.0fb7a0d90f77e
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

395
spegelspegelVerified publisher0.7.41 of 1See more

spegel spegel 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/spegel-org/spegeldigest-pinned26c60b05e08a
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

176
supabasetokens-studioVerified publisher1.0.02 of 14See more

supabase tokens-studio 1.0.0

2 of the 14 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.26476cb08c816a
google.golang.org/grpc@v1.67.1
1.82.2
supabase/gotrue:v2.163.0ba4ddc594b0b
google.golang.org/grpc@v1.63.2
1.82.2

Open the chart page →

23,123
woodpeckerwoodpecker-ci3.7.32 of 2See more

woodpecker woodpecker-ci 3.7.3

2 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
woodpeckerci/woodpecker-agent:v3.18.0b10103626eb8
google.golang.org/grpc@v1.83.1
1.83.2
woodpeckerci/woodpecker-server:v3.18.05192aee400df
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

32
budibasebudibase0.0.0-master1 of 7See more

budibase budibase 0.0.0-master

1 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
google.golang.org/grpc@v1.71.0
1.82.2

Open the chart page →

10,775
kube-prometheuschoerodon9.3.12 of 7See more

kube-prometheus choerodon 9.3.1

2 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
google.golang.org/grpc@v1.27.1
1.82.2
squareup/ghostunnel:v1.5.270f4cf270425
google.golang.org/grpc@v1.24.0
1.82.2

Open the chart page →

12,237
csi-secrets-store-provider-azurecsi-secrets-store-provider-azureVerified publisher1.8.24 of 5See more

csi-secrets-store-provider-azure csi-secrets-store-provider-azure 1.8.2

4 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/azure/secrets-store/provider-azure:v1.8.2f21fca343428
google.golang.org/grpc@v1.83.1
1.83.2
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-node-driver-registrar:v2.14.06cb172e3de7e
google.golang.org/grpc@v1.72.1
1.82.2
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
google.golang.org/grpc@v1.71.0
1.82.2
mcr.microsoft.com/oss/v2/kubernetes-csi/secrets-store/driver:v1.5.65f91243cfd60
google.golang.org/grpc@v1.56.3
1.82.2

Open the chart page →

2,235
waypointhashicorpVerified publisher0.1.211 of 2See more

waypoint hashicorp 0.1.21

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
hashicorp/waypoint:0.11.397d521a27498
google.golang.org/grpc@v1.50.1
1.82.2

Open the chart page →

4,167
jaeger-all-in-onejaeger-all-in-oneVerified publisher0.1.121 of 1See more

jaeger-all-in-one jaeger-all-in-one 0.1.12

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.55f6b5d09073f1
google.golang.org/grpc@v1.62.0
1.82.2

Open the chart page →

1,216
etcdkubelauncherVerified publisher0.4.31 of 1See more

etcd kubelauncher 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/etcddigest-pinned8ab954711fb9
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

767
minecraft-proxyminecraft-server-chartsVerified publisher3.10.01 of 1See more

minecraft-proxy minecraft-server-charts 3.10.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
itzg/bungeecord:latest1c59f9631f3b
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

3,074
opentelemetry-kube-stackopentelemetry-helmVerified publisher0.20.91 of 2See more

opentelemetry-kube-stack opentelemetry-helm 0.20.9

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/opentelemetry-operator/opentelemetry-operator:0.154.0263699ffea0c
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

551
prometheus-stackdriver-exporterprometheus-communityVerified publisher5.1.01 of 1See more

prometheus-stackdriver-exporter prometheus-community 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
prometheuscommunity/stackdriver-exporter:v0.19.0c0a0cbf76570
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

348
thanosstevehipwellVerified publisher1.24.11 of 1See more

thanos stevehipwell 1.24.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/thanos/thanos:v0.42.4b567818fe608
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

196
tailing-sidecar-operatortailing-sidecar-operatorOfficialVerified publisher0.111.01 of 2See more

tailing-sidecar-operator tailing-sidecar-operator 0.111.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.19.19f21034731c7
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

1,205
caddyalekcVerified publisher0.9.01 of 1See more

caddy alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
library/caddy:2.11.4-alpine5f5c8640aae0
google.golang.org/grpc@v1.81.0
1.82.2

Open the chart page →

845
openstack-cinder-csicloud-provider-openstack2.36.57 of 7See more

openstack-cinder-csi cloud-provider-openstack 2.36.5

7 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/provider-os/cinder-csi-plugin:v1.36.078adaeb154c7
google.golang.org/grpc@v1.80.0
1.82.2
registry.k8s.io/sig-storage/csi-attacher:v4.10.0be59d0556508
google.golang.org/grpc@v1.72.1
1.82.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
google.golang.org/grpc@v1.72.1
1.82.2
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
google.golang.org/grpc@v1.72.1
1.82.2
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
google.golang.org/grpc@v1.69.2
1.82.2
registry.k8s.io/sig-storage/csi-snapshotter:v8.4.0c7e0a3718832
google.golang.org/grpc@v1.72.1
1.82.2
registry.k8s.io/sig-storage/livenessprobe:v2.17.09b75b9ade162
google.golang.org/grpc@v1.72.1
1.82.2

Open the chart page →

3,604
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
securesystemsengineering/connaisseur:v3.12.038918befbdad
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

3,012
dependabot-gitlabdependabot-gitlabVerified publisher6.3.01 of 3See more

dependabot-gitlab dependabot-gitlab 6.3.0

1 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

4,556
devtron-operatordevtron0.23.37 of 11See more

devtron-operator devtron 0.23.3

7 of the 11 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
google.golang.org/grpc@v1.36.1
1.82.2
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
google.golang.org/grpc@v1.79.3
1.82.2
quay.io/devtron/dex:v2.30.22e4c14d1b444
google.golang.org/grpc@v1.34.0
1.82.2
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
google.golang.org/grpc@v1.79.3
1.82.2
quay.io/devtron/kubectl:latest2ad610626658
google.golang.org/grpc@v1.47.0
1.82.2
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
google.golang.org/grpc@v1.79.3
1.82.2
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
google.golang.org/grpc@v1.51.0
1.82.2

Open the chart page →

32,902
fluent-operatorfluent4.3.01 of 1See more

fluent-operator fluent 4.3.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/fluent/fluent-operator/fluent-operator:3.10.03108194a4ecc
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

135
gatekeepergogatekeeperVerified publisher0.1.641 of 1See more

gatekeeper gogatekeeper 0.1.64

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/gogatekeeper/gatekeeper:4.9.0dcf583aba224
google.golang.org/grpc@v1.81.0
1.82.2

Open the chart page →

553
hcloud-csihcloud2.23.05 of 6See more

hcloud-csi hcloud 2.23.0

5 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
google.golang.org/grpc@v1.72.2
1.82.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
google.golang.org/grpc@v1.78.0
1.82.2
registry.k8s.io/sig-storage/csi-provisioner:v6.2.06be9f63ca4ca
google.golang.org/grpc@v1.79.1
1.82.2
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
google.golang.org/grpc@v1.78.0
1.82.2
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
google.golang.org/grpc@v1.78.0
1.82.2

Open the chart page →

2,630
envoy-gatewayhelmforgeVerified publisher2.1.01 of 3See more

envoy-gateway helmforge 2.1.0

1 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
envoyproxy/gateway:v1.9.10049bcb384c5
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

2,379
ilumilumOfficialVerified publisher6.7.34 of 19See more

ilum ilum 6.7.3

4 of the 19 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
google.golang.org/grpc@v1.71.0
1.82.2
gitea/gitea:1.22.376f516a1a8c2
google.golang.org/grpc@v1.62.1
1.82.2
ilum/api:6.7.3624fd09528c8
google.golang.org/grpc@v1.65.0
1.82.2
minio/mc:RELEASE.2025-04-16T18-13-26Zaead63c77f9d
google.golang.org/grpc@v1.71.0
1.82.2

Open the chart page →

23,228
kube-greenkube-green-officialOfficialVerified publisher0.7.11 of 1See more

kube-green kube-green-official 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubegreen/kube-green:0.7.12dc0f0a6034c
google.golang.org/grpc@v1.68.1
1.82.2

Open the chart page →

493
temporallemontechVerified publisher0.37.03 of 13See more

temporal lemontech 0.37.0

3 of the 13 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
google.golang.org/grpc@v1.23.1
1.82.2
temporalio/server:1.22.4c0a44c26397b
google.golang.org/grpc@v1.59.0
1.82.2
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
google.golang.org/grpc@v1.40.0
1.82.2

Open the chart page →

14,893
netris-controllernetrisai2.8.22 of 14See more

netris-controller netrisai 2.8.2

2 of the 14 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
google.golang.org/grpc@v1.14.0
1.82.2
netrisai/controller-grpc:4.6.0.00753178bf173c2
google.golang.org/grpc@v1.56.3
1.82.2

Open the chart page →

30,326
nuclionuclio0.23.81 of 2See more

nuclio nuclio 0.23.8

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/nuclio/dashboard:1.17.8-amd64b5f5bd4efbee
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

963
syftopenmined0.9.52 of 6See more

syft openmined 0.9.5

2 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
library/traefik:v2.11.00a5157f742d2
google.golang.org/grpc@v1.59.0
1.82.2
openmined/syft-seaweedfs:0.9.53a4144c0bb82
google.golang.org/grpc@v1.61.1
1.82.2

Open the chart page →

17,245
k8s-infrasignoz0.17.11 of 1See more

k8s-infra signoz 0.17.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.139.0faf125d656fa
google.golang.org/grpc@v1.76.0
1.82.2

Open the chart page →

1,039
helm-exportersstarcher0.5.01 of 1See more

helm-exporter sstarcher 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
sstarcher/helm-exporter:0.5.011769d01ba35
google.golang.org/grpc@v1.24.0
1.82.2

Open the chart page →

4,154
gatustwin1.5.01 of 1See more

gatus twin 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
twinproduction/gatus:v5.34.03fff895e77d3
google.golang.org/grpc@v1.77.0
1.82.2

Open the chart page →

721
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
google.golang.org/grpc@v1.54.0
1.82.2

Open the chart page →

5,630
astarte-operatorastarteOfficialVerified publisher26.5.21 of 1See more

astarte-operator astarte 26.5.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
astarte/astarte-kubernetes-operator:26.5.1e3ff1b3c0c98
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

695
awx-operatorawx-operator-helm3.2.12 of 2See more

awx-operator awx-operator-helm 3.2.1

2 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
google.golang.org/grpc@v1.60.1
1.82.2
quay.io/brancz/kube-rbac-proxy:v0.15.02c7b120590cb
google.golang.org/grpc@v1.47.0
1.82.2

Open the chart page →

9,868
cerboscerbosVerified publisher0.55.01 of 1See more

cerbos cerbos 0.55.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/cerbos/cerbos:0.55.04b9d3b58c4f1
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

109

Container images carrying it

2,837 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
grafana/loki:2.6.11ee60f980950
google.golang.org/grpc@v1.44.0
1.82.2
4
grafana/loki:3.6.73c8fd3570dd9
google.golang.org/grpc@v1.75.1
1.82.2
4
grafana/tempo:2.9.065a578975943
google.golang.org/grpc@v1.75.0
1.82.2
4
hyperledger/fabric-ca:latesta70b6ba64a08
google.golang.org/grpc@v1.82.1
1.82.2
4
hyperledger/fabric-orderer:2.46ec3fe59ea55
google.golang.org/grpc@v1.31.0
1.82.2
4
hyperledger/fabric-peer:2.46ff36af21eb1
google.golang.org/grpc@v1.31.0
1.82.2
4
hyperledger/fabric-tools:2.4b1194f509085
google.golang.org/grpc@v1.31.0
1.82.2
4
jaegertracing/jaeger-agent:1.53.00214a0ef24b1
google.golang.org/grpc@v1.60.0
1.82.2
4
jaegertracing/jaeger-collector:1.53.07f1269222903
google.golang.org/grpc@v1.60.0
1.82.2
4
jaegertracing/jaeger-query:1.53.0049bb0d64ea3
google.golang.org/grpc@v1.60.0
1.82.2
4
library/registry:3.1.1:latest1be55279f18a
google.golang.org/grpc@v1.80.0
1.82.2
4
rancher/rancher:v2.15.15f6c4dc52a05
google.golang.org/grpc@v1.79.3
1.82.2
4
rancher/shell:v0.8.1f293af9c635f
google.golang.org/grpc@v1.79.3
1.82.2
4
traefik/whoami:latestc4717a8d1f01
google.golang.org/grpc@v1.82.1
1.82.2
4
victoriametrics/operator:v0.74.17310c4a80b94
google.golang.org/grpc@v1.82.1
1.82.2
4
ghcr.io/appscode/petset:v0.1.093fa0daf603c
google.golang.org/grpc@v1.72.1
1.82.2
4
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
google.golang.org/grpc@v1.82.1
1.82.2
4
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
google.golang.org/grpc@v1.79.3
1.82.2
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
google.golang.org/grpc@v1.55.0
1.82.2
4
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
google.golang.org/grpc@v1.76.0
1.82.2
4
ghcr.io/synapsecns/sanguine/omnirpc:latest5217e3d1fc70
google.golang.org/grpc@v1.64.0
1.82.2
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
google.golang.org/grpc@v1.57.0
1.82.2
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
google.golang.org/grpc@v1.57.0
1.82.2
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
google.golang.org/grpc@v1.57.0
1.82.2
4
quay.io/thanos/thanos:v0.42.4b567818fe608
google.golang.org/grpc@v1.81.1
1.82.2
4
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.16.0e750cd4b43f7
google.golang.org/grpc@v1.68.1
1.82.2
4
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
google.golang.org/grpc@v1.81.1
1.82.2
4
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
google.golang.org/grpc@v1.69.4
1.82.2
4
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.13.0d7138bcc3aa5
google.golang.org/grpc@v1.69.0
1.82.2
4
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
google.golang.org/grpc@v1.60.0
1.82.2
4
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
google.golang.org/grpc@v1.72.0
1.82.2
4
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
google.golang.org/grpc@v1.78.0
1.82.2
4
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
google.golang.org/grpc@v1.81.1
1.82.2
4
argoproj/argocd:v1.8.1830e86cacefd
google.golang.org/grpc@v1.15.0
1.82.2
3
caddy/ingress:v0.2.118d1366fc0e9
google.golang.org/grpc@v1.59.0
1.82.2
3
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
google.golang.org/grpc@v1.74.2
1.82.2
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
google.golang.org/grpc@v1.36.0
1.82.2
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
google.golang.org/grpc@v1.34.0
1.82.2
3
dgraph/dgraph:v21.12.03b55ea83fffe
google.golang.org/grpc@v1.20.1
1.82.2
3
envoyproxy/gateway:v1.7.5156b7d32c73b
google.golang.org/grpc@v1.82.0
1.82.2
3
ethpandaops/tracoor:latestd8514b9f4c59
google.golang.org/grpc@v1.64.1
1.82.2
3
goharbor/harbor-core:v2.15.2d7b780d23721
google.golang.org/grpc@v1.81.1
1.82.2
3
goharbor/harbor-jobservice:v2.15.2f71a4452a095
google.golang.org/grpc@v1.81.1
1.82.2
3
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
google.golang.org/grpc@v0.0.0-20160317175043-d3ddb4469d5a
1.82.2
3
goharbor/registry-photon:v2.15.2c4ebef61ceb5
google.golang.org/grpc@v0.0.0-20160317175043-d3ddb4469d5a
1.82.2
3
goharbor/trivy-adapter-photon:v2.15.2215c07b71c37
google.golang.org/grpc@v1.81.0
1.82.2
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.