StackRadar

CVE-2026-84445

High

Advisory

Published 8 Sept 2026In the index since 9 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,348
of 17,781 indexed, latest versions
Container images
2,837
deployed by those charts
Fix available
2 of 2
affected packages

gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing `:authority` and `Host` headers

Carried by container images the latest versions of 2,348 of 17,781 indexed charts deploy, on 2,837 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+117 more1.82.2, 1.83.2, 1.85.0-dev.0.20260825072537-93e31b48545e2,836
kubernetes-1.34apk1.34.11-r21.34.11-r81
OSV records
GHSA-2v4p-qf9q-27wjCGA-2675-68qh-x3xm
Also known as
CGA-2rc7-c9wv-rg9j, CGA-2v9r-g7hg-wjpv, CGA-5pg3-vg83-278x, CGA-6jwq-4523-qrxc, CGA-6mqf-6cj9-rr4r, CGA-8vf4-hpwm-ghh8, CGA-96jx-jhxg-fxww, CGA-fg8c-vc3x-88hf, CGA-g3hq-cpjp-v4p5, CGA-hx92-g8xp-6m86, CGA-wgvj-wq84-52gh
Trending
Rank 7 in indexed charts, since 9 Sept 2026. See the ranking →

Charts affected

2,348 by stars
ChartLatestAffected imagesRadar Score
loadtesterflagger0.39.01 of 1See more

loadtester flagger 0.39.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flagger-loadtester:0.39.06a8546993cb5
google.golang.org/grpc@v1.67.1
1.82.2

Open the chart page →

1,760
flannelflannel0.28.91 of 2See more

flannel flannel 0.28.9

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/flannel-io/flannel:v0.28.9708a2c9c1cfb
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

609
lndfold0.3.153 of 4See more

lnd fold 0.3.15

3 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.16.4-beta-c287129953689
google.golang.org/grpc@v1.41.0
1.82.2
thesisrobot/loop:v0.11.1-beta89ae07e787ca
google.golang.org/grpc@v1.24.0
1.82.2
thesisrobot/pool:v0.3.3-alpha2d1c388a4bda
google.golang.org/grpc@v1.29.1
1.82.2

Open the chart page →

8,835
intel-gpu-plugingeek-cookbookVerified publisher4.4.21 of 1See more

intel-gpu-plugin geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
intel/intel-gpu-plugin:0.20.0143f0a45e174
google.golang.org/grpc@v1.27.1
1.82.2

Open the chart page →

1,738
gitops-promotergitops-promoterOfficialVerified publisher0.17.01 of 2See more

gitops-promoter gitops-promoter 0.17.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.22.1e8cad21b2f9a
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

2,814
alloy-operatorgrafana0.7.11 of 1See more

alloy-operator grafana 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/grafana/alloy-operator:1.12.14ee4b71cf16a
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

401
grafana-mcpgrafana-communityVerified publisher0.23.11 of 1See more

grafana-mcp grafana-community 0.23.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/mcp-grafana:1.4.1cfcf06863c23
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

1,073
klusterviewklusterviewVerified publisher0.1.02 of 4See more

klusterview klusterview 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
google.golang.org/grpc@v1.81.1
1.82.2
quay.io/prometheus/prometheus:latest5ce7540c3c00
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

3,795
gateway-operatorkongOfficialVerified publisher0.6.11 of 1See more

gateway-operator kong 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kong/gateway-operator:1.603510967482b
google.golang.org/grpc@v1.71.1
1.82.2

Open the chart page →

842
kong-meshkong-meshVerified publisher2.14.42 of 3See more

kong-mesh kong-mesh 2.14.4

2 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kong/kuma-cp:2.14.47e4f53630a28
google.golang.org/grpc@v1.83.1
1.83.2
kong/kumactl:2.14.463d11b2d3f60
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

524
kubeflowkubeflow1.6.218 of 45See more

kubeflow kubeflow 1.6.2

18 of the 45 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
google.golang.org/grpc@v1.36.0
1.82.2
istio/proxyv2:1.14.1df69c1a7af7c
google.golang.org/grpc@v1.45.0
1.82.2
kserve/kserve-controller:v0.8.0f0692a9ea09f
google.golang.org/grpc@v1.42.0
1.82.2
kubeflownotebookswg/profile-controller:v1.6.19f01767a460f
google.golang.org/grpc@v1.42.0
1.82.2
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.2.0f253b82941c2
google.golang.org/grpc@v1.42.0
1.82.2
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.2.0a705c1ea8e9e
google.golang.org/grpc@v1.42.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.2.593ff6e693577
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.2.5007820fdb75b
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.2.575cfdcfa050a
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping:v1.2.523baa1932232
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook:v1.2.5847bb97e3844
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.2.59084ea8498ea
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/ml-pipeline/cache-server:2.0.0-alpha.583e79c709df3
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/ml-pipeline/persistenceagent:2.0.0-alpha.500db9796a37b
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/ml-pipeline/scheduledworkflow:2.0.0-alpha.5795a0c8a0e13
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/ml-pipeline/workflow-controller:v3.3.8-license-compliance6c8e4e2a6443
google.golang.org/grpc@v1.44.0
1.82.2
quay.io/dexidp/dex:v2.24.0c9b7f6d0d953
google.golang.org/grpc@v1.26.0
1.82.2

Open the chart page →

96,941
testkubekubeshop2.13.11 of 5See more

testkube kubeshop 2.13.1

1 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubeshop/testkube-api-server:2.13.18ffed0d2d494
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

2,368
openelbkubesphere-stable0.5.01 of 2See more

openelb kubesphere-stable 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubesphere/openelb:v0.5.0b5b665c4672c
google.golang.org/grpc@v1.26.0
1.82.2

Open the chart page →

4,329
sbomscannerkubewardenVerified publisher0.12.13 of 5See more

sbomscanner kubewarden 0.12.1

3 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/kubewarden/sbomscanner/controller:v0.12.1153ccb651e49
google.golang.org/grpc@v1.83.1
1.83.2
ghcr.io/kubewarden/sbomscanner/storage:v0.12.1811ed0383187
google.golang.org/grpc@v1.83.1
1.83.2
ghcr.io/kubewarden/sbomscanner/worker:v0.12.1b4274b7cc473
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

987
venti-stackkuossOfficialVerified publisher0.5.03 of 9See more

venti-stack kuoss 0.5.0

3 of the 9 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/prometheus/alertmanager:v0.34.0690c7b525f43
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/prometheus/prometheus:v3.13.2508729e0e2d1
google.golang.org/grpc@v1.82.1
1.82.2
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.185108987d044
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

3,808
local-ailocalai3.4.21 of 1See more

local-ai localai 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/go-skynet/local-ai:latestd78cd113b2bc
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

3,997
vclustermainVerified publisher0.17.06 of 10See more

vcluster main 0.17.0

6 of the 10 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/kubermatic/machine-controller:v1.57.0476ae867ae56
google.golang.org/grpc@v1.51.0
1.82.2
registry.k8s.io/etcd:3.6.4-0e36c08168342
google.golang.org/grpc@v1.71.1
1.82.2
registry.k8s.io/kas-network-proxy/proxy-server:v0.0.37c2f596cae3c6
google.golang.org/grpc@v1.40.0
1.82.2
registry.k8s.io/kube-apiserver:v1.25.0f6902791fb9a
google.golang.org/grpc@v1.47.0
1.82.2
registry.k8s.io/kube-controller-manager:v1.25.066ce7d460e53
google.golang.org/grpc@v1.47.0
1.82.2
registry.k8s.io/kube-scheduler:v1.25.09330c53feca7
google.golang.org/grpc@v1.47.0
1.82.2

Open the chart page →

11,552
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
headscale/headscale:0.25.1a7a8ae9616bb
google.golang.org/grpc@v1.69.0
1.82.2

Open the chart page →

7,949
node-local-dnsnode-local-dns2.4.01 of 1See more

node-local-dns node-local-dns 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
google.golang.org/grpc@v1.56.3
1.82.2

Open the chart page →

2,593
nri-memtierdnri-pluginsOfficialVerified publisher0.14.01 of 1See more

nri-memtierd nri-plugins 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/containers/nri-plugins/nri-memtierd:v0.14.09138314e12ba
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

269
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
google.golang.org/grpc@v1.56.1
1.82.2

Open the chart page →

8,722
capsuleprojectcapsuleOfficialVerified publisher0.14.51 of 2See more

capsule projectcapsule 0.14.5

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/projectcapsule/capsule:v0.14.5e9ee63f6196c
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

1,229
proxmox-cloud-controller-managerproxmox-ccm0.2.301 of 1See more

proxmox-cloud-controller-manager proxmox-ccm 0.2.30

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/proxmox-cloud-controller-manager:v0.15.0fbc553921145
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

109
rke2-multusrke2-charts3.7.1-build20210416011 of 2See more

rke2-multus rke2-charts 3.7.1-build2021041601

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
google.golang.org/grpc@v1.23.0
1.82.2

Open the chart page →

4,519
fulciosigstoreVerified publisher2.11.14 of 6See more

fulcio sigstore 2.11.1

4 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/sigstore/fulcio:v1.8.8ef72cf56c64b
google.golang.org/grpc@v1.81.1
1.82.2
ghcr.io/sigstore/scaffolding/createctconfig:v0.7.313a061734c5be
google.golang.org/grpc@v1.76.0
1.82.2
ghcr.io/sigstore/scaffolding/createtree:v0.7.31e5232e8c9122
google.golang.org/grpc@v1.76.0
1.82.2
ghcr.io/sigstore/scaffolding/ct_server:v0.7.3166664ba563e7
google.golang.org/grpc@v1.76.0
1.82.2

Open the chart page →

3,490
policy-controllersigstoreVerified publisher0.10.71 of 2See more

policy-controller sigstore 0.10.7

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/sigstore/policy-controller/policy-controllerdigest-pinned0bcd60beb93f
google.golang.org/grpc@v1.71.1
1.82.2

Open the chart page →

911
pubsubplus-hasolaceVerified publisher3.10.01 of 1See more

pubsubplus-ha solace 3.10.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
solace/solace-pubsub-standard:latest8e8ad105595e
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

236
sops-secrets-operatorsops-secrets-operatorVerified publisher0.28.11 of 1See more

sops-secrets-operator sops-secrets-operator 0.28.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/isindir/sops-secrets-operator:0.21.27bba7083dfa0
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

781
steampipe-powerpipe-kubernetessteampipe-powerpipe-kubernetesVerified publisher0.13.12 of 2See more

steampipe-powerpipe-kubernetes steampipe-powerpipe-kubernetes 0.13.1

2 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--powerpipe:latesta16ab5ca10a7
google.golang.org/grpc@v1.79.3
1.82.2
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--steampipe:latestc0c8d53df9f3
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

5,468
topolvmtopolvmVerified publisher17.2.01 of 1See more

topolvm topolvm 17.2.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
google.golang.org/grpc@v1.78.0
1.82.2

Open the chart page →

2,316
uffizzi-appuffizzi-app1.3.03 of 14See more

uffizzi-app uffizzi-app 1.3.0

3 of the 14 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-controller:v1.13.29c67cf8c92d8
google.golang.org/grpc@v1.58.3
1.82.2
quay.io/jetstack/cert-manager-ctl:v1.13.24d9fce2c050e
google.golang.org/grpc@v1.58.3
1.82.2
quay.io/jetstack/cert-manager-webhook:v1.13.20a9470447ebf
google.golang.org/grpc@v1.58.3
1.82.2

Open the chart page →

19,337
valdvald1.8.04 of 5See more

vald vald 1.8.0

4 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
vdaas/vald-agent-ngt:v1.8.032e3695fe585
google.golang.org/grpc@v1.83.0
1.83.2
vdaas/vald-discoverer-k8s:v1.8.0f6495f38ae92
google.golang.org/grpc@v1.83.0
1.83.2
vdaas/vald-lb-gateway:v1.8.061009e319a9a
google.golang.org/grpc@v1.83.0
1.83.2
vdaas/vald-manager-index:v1.8.0ab881d2262d8
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

188
vault-operatorvault-operatorVerified publisher1.24.01 of 1See more

vault-operator vault-operator 1.24.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/bank-vaults/vault-operator:v1.24.06f622c5fb8a9
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

535
vault-secrets-webhookvault-secrets-webhookVerified publisher1.23.11 of 1See more

vault-secrets-webhook vault-secrets-webhook 1.23.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/bank-vaults/vault-secrets-webhook:v1.23.198baf045a1c9
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

518
athens-proxyvolker-raschekVerified publisher2.0.31 of 1See more

athens-proxy volker-raschek 2.0.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gomods/athens:v0.17.10f61d1e62359
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

2,039
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/dexidp/dex:v2.24.0c9b7f6d0d953
google.golang.org/grpc@v1.26.0
1.82.2

Open the chart page →

13,562
yunikornyunikornVerified publisher1.9.02 of 3See more

yunikorn yunikorn 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
apache/yunikorn:scheduler-1.9.096832082e9cf
google.golang.org/grpc@v1.79.3
1.82.2
apache/yunikorn:admission-1.9.0fe8f5ec91f6c
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

398
aperture-controlleraperture2.34.02 of 5See more

aperture-controller aperture 2.34.0

2 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
fluxninja/aperture-operator:2.34.0356d7aa86632
google.golang.org/grpc@v1.60.1
1.82.2
quay.io/prometheus/prometheus:v2.33.591100b06e86d
google.golang.org/grpc@v1.43.0
1.82.2

Open the chart page →

4,663
k8upappuio2.0.51 of 1See more

k8up appuio 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/k8up-io/k8up:v2.3.257419b6d3830
google.golang.org/grpc@v1.38.0
1.82.2

Open the chart page →

3,300
athens-proxyathens-chartsOfficialVerified publisher0.17.11 of 1See more

athens-proxy athens-charts 0.17.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gomods/athens:v0.18.197cc113b34b0
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

1,298
openshift-consoleav1o-chartsVerified publisher0.3.61 of 1See more

openshift-console av1o-charts 0.3.6

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
google.golang.org/grpc@v1.38.0
1.82.2

Open the chart page →

9,052
prometheusaveshaVerified publisher19.3.01 of 4See more

prometheus avesha 19.3.0

1 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
google.golang.org/grpc@v1.51.0
1.82.2

Open the chart page →

5,484
snapschedulerbackube-helm-chartsVerified publisher3.5.01 of 2See more

snapscheduler backube-helm-charts 3.5.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/brancz/kube-rbac-proxy:v0.19.19f21034731c7
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

1,224
boundaryboundaryVerified publisher0.1.01 of 1See more

boundary boundary 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
hashicorp/boundary:0.21.037bf86488b74
google.golang.org/grpc@v1.76.0
1.82.2

Open the chart page →

1,438
caddy-ingress-controllercaddy-ingress1.3.01 of 1See more

caddy-ingress-controller caddy-ingress 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
caddy/ingress:v0.2.118d1366fc0e9
google.golang.org/grpc@v1.59.0
1.82.2

Open the chart page →

1,884
cert-managerchoerodon1.8.23 of 4See more

cert-manager choerodon 1.8.2

3 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-controller:v1.8.2a20c44021a5d
google.golang.org/grpc@v1.43.0
1.82.2
quay.io/jetstack/cert-manager-ctl:v1.8.281b2d775edad
google.golang.org/grpc@v1.43.0
1.82.2
quay.io/jetstack/cert-manager-webhook:v1.8.2ada7edd90bec
google.golang.org/grpc@v1.43.0
1.82.2

Open the chart page →

7,775
sbom-operatorckotzbauerVerified publisher0.46.21 of 1See more

sbom-operator ckotzbauer 0.46.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/ckotzbauer/sbom-operator:0.45.2dbdb3e524dea
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

40
cloudprobercloudproberOfficialVerified publisher1.14.251 of 1See more

cloudprober cloudprober 1.14.25

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/cloudprober/cloudprober:v0.14.540c6d960ae4f
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

211
dumpscriptcloudscriptVerified publisher1.8.31 of 1See more

dumpscript cloudscript 1.8.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/cloudscript-technology/dumpscript:v0.0.42-alpine-edgefce5b6fd161c
google.golang.org/grpc@v1.76.0
1.82.2

Open the chart page →

2,125
cluster-manager-servercluster-manager-server1.8.01 of 1See more

cluster-manager-server cluster-manager-server 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/cluster-manager-server:1.8.0364b3ff0fcb7
google.golang.org/grpc@v1.68.1
1.82.2

Open the chart page →

746

Container images carrying it

2,837 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
grafana/grafana:8.2.500568d89c4f8
google.golang.org/grpc@v1.40.0
1.82.2
3
grafana/grafana:11.0.00dc5a246ab16
google.golang.org/grpc@v1.62.1
1.82.2
3
grafana/grafana:13.1.17cb8c64c4d57
google.golang.org/grpc@v1.81.1
1.82.2
3
grafana/grafana:11.3.0a0f881232a6f
google.golang.org/grpc@v1.66.0
1.82.2
3
grafana/loki:3.4.258a6c186ce78
google.golang.org/grpc@v1.70.0
1.82.2
3
grafana/loki:3.7.7:latestd70e4659623f
google.golang.org/grpc@v1.82.1
1.82.2
3
grafana/loki-canary:3.6.70dac7d5cb383
google.golang.org/grpc@v1.75.1
1.82.2
3
grafana/promtail:2.4.2626900031c4e
google.golang.org/grpc@v1.40.0
1.82.2
3
jaegertracing/all-in-one:latestab6f1a1f0fb4
google.golang.org/grpc@v1.76.0
1.82.2
3
library/docker:20.10-dind:20-dindaf96c680a7e1
google.golang.org/grpc@v1.50.1
1.82.2
3
mcp/grafana:latest9362bcf6aa0e
google.golang.org/grpc@v1.80.0
1.82.2
3
migrate/migrate:latestcc4ad8e19d66
google.golang.org/grpc@v1.74.2
1.82.2
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
google.golang.org/grpc@v1.26.0
1.82.2
3
neosmemo/memos:0.30.071a5b4738d1b
google.golang.org/grpc@v1.80.0
1.82.2
3
oryd/hydra:v2.2.02c93beb5e5f2
google.golang.org/grpc@v1.59.0
1.82.2
3
prom/prometheus:v3.0.1565ee8650122
google.golang.org/grpc@v1.67.1
1.82.2
3
prom/prometheus:v2.19.0bfad037f95e5
google.golang.org/grpc@v1.29.1
1.82.2
3
solace/solace-pubsub-standard:latest8e8ad105595e
google.golang.org/grpc@v1.82.1
1.82.2
3
tykio/tyk-dashboard:v5.13.10e03b94c153d
google.golang.org/grpc@v1.80.0
1.82.2
3
tykio/tyk-gateway-ee:v5.13.13e907e675bf9
google.golang.org/grpc@v1.80.0
1.82.2
3
ghcr.io/appscode/sidekick:v0.0.15d1036b07e348
google.golang.org/grpc@v1.72.1
1.82.2
3
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
google.golang.org/grpc@v1.69.2
1.82.2
3
ghcr.io/coder/coder:v2.37.10c6994bb4c5a
google.golang.org/grpc@v1.80.0
1.82.2
3
ghcr.io/dexidp/dex:v2.45.18499afd690c4
google.golang.org/grpc@v1.79.1
1.82.2
3
ghcr.io/external-secrets/external-secrets:v2.10.0814117b0fd6d
google.golang.org/grpc@v1.82.1
1.82.2
3
ghcr.io/kubevault/vault-operator:v0.25.0c8e042b5cee8
google.golang.org/grpc@v1.82.1
1.82.2
3
ghcr.io/quenchworks/images/loki97bbf905a6c1
google.golang.org/grpc@v1.82.1
1.82.2
3
ghcr.io/quenchworks/images/prometheuse9037c190bc1
google.golang.org/grpc@v1.82.1
1.82.2
3
ghcr.io/quenchworks/images/tempo9e889ec33f96
google.golang.org/grpc@v1.82.1
1.82.2
3
ghcr.io/sigstore/scaffolding/createctconfig:v0.7.313a061734c5be
google.golang.org/grpc@v1.76.0
1.82.2
3
ghcr.io/sigstore/scaffolding/ct_server:v0.7.3166664ba563e7
google.golang.org/grpc@v1.76.0
1.82.2
3
ghcr.io/sigstore/scaffolding/trillian_log_server5a878e4e4f03
google.golang.org/grpc@v1.82.0
1.82.2
3
ghcr.io/sigstore/scaffolding/trillian_log_signer28c5ff40963f
google.golang.org/grpc@v1.82.0
1.82.2
3
ghcr.io/spiffe/spire-agent:1.15.341b0dcd8b258
google.golang.org/grpc@v1.83.0
1.83.2
3
ghcr.io/tremolosecurity/kube-oidc-proxy:1.0.12d7747f308042
google.golang.org/grpc@v1.80.0
1.82.2
3
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
google.golang.org/grpc@v1.75.1
1.82.2
3
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-node-driver-registrar:v2.17.0b767078c36e0
google.golang.org/grpc@v1.83.1
1.83.2
3
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v6.3.09915a2058ad6
google.golang.org/grpc@v1.83.1
1.83.2
3
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v2.2.04bfe19fe8919
google.golang.org/grpc@v1.83.1
1.83.2
3
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.19.0bd19535678a8
google.golang.org/grpc@v1.83.1
1.83.2
3
public.ecr.aws/zinclabs/zinc:latestfefa9ee7256a
google.golang.org/grpc@v1.41.0
1.82.2
3
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
google.golang.org/grpc@v1.81.1
1.82.2
3
quay.io/argoproj/workflow-controller:v3.0.7aa4da00c5b96
google.golang.org/grpc@v1.33.1
1.82.2
3
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
google.golang.org/grpc@v1.53.0
1.82.2
3
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
google.golang.org/grpc@v1.82.1
1.82.2
3
quay.io/cilium/operator-generic:v1.20.16c3885fc7b62
google.golang.org/grpc@v1.82.1
1.82.2
3
quay.io/devtron/ai-agent:0.0.16545dac92173
google.golang.org/grpc@v1.64.0
1.82.2
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
google.golang.org/grpc@v1.43.0
1.82.2
3
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
google.golang.org/grpc@v1.27.1
1.82.2
3
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
google.golang.org/grpc@v1.27.1
1.82.2
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.