StackRadar

CVE-2026-84445

High

Advisory

Published 8 Sept 2026In the index since 9 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,348
of 17,781 indexed, latest versions
Container images
2,837
deployed by those charts
Fix available
2 of 2
affected packages

gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing `:authority` and `Host` headers

Carried by container images the latest versions of 2,348 of 17,781 indexed charts deploy, on 2,837 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+117 more1.82.2, 1.83.2, 1.85.0-dev.0.20260825072537-93e31b48545e2,836
kubernetes-1.34apk1.34.11-r21.34.11-r81
OSV records
GHSA-2v4p-qf9q-27wjCGA-2675-68qh-x3xm
Also known as
CGA-2rc7-c9wv-rg9j, CGA-2v9r-g7hg-wjpv, CGA-5pg3-vg83-278x, CGA-6jwq-4523-qrxc, CGA-6mqf-6cj9-rr4r, CGA-8vf4-hpwm-ghh8, CGA-96jx-jhxg-fxww, CGA-fg8c-vc3x-88hf, CGA-g3hq-cpjp-v4p5, CGA-hx92-g8xp-6m86, CGA-wgvj-wq84-52gh
Trending
Rank 7 in indexed charts, since 9 Sept 2026. See the ranking →

Charts affected

2,348 by stars
ChartLatestAffected imagesRadar Score
hydraory0.64.01 of 2See more

hydra ory 0.64.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
oryd/hydra:v26.2.0ff67c7fb5f95
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

1,156
proxmox-csi-pluginproxmox-csi0.5.127 of 7See more

proxmox-csi-plugin proxmox-csi 0.5.12

7 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/proxmox-csi-controller:v0.20.095ef74cce03e
google.golang.org/grpc@v1.83.0
1.83.2
ghcr.io/sergelogvinov/proxmox-csi-node:v0.20.0e0151137a1c5
google.golang.org/grpc@v1.83.0
1.83.2
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/csi-resizer:v2.2.1ea1d25e23479
google.golang.org/grpc@v1.79.3
1.82.2
registry.k8s.io/sig-storage/livenessprobe:v2.19.006da0d5b8908
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

1,766
thanosthanos-communityOfficialVerified publisher0.43.01 of 1See more

thanos thanos-community 0.43.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/thanos/thanos:v0.42.4b567818fe608
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

196
volsyncbackube-helm-chartsVerified publisher0.16.01 of 1See more

volsync backube-helm-charts 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/backube/volsync:0.16.00d03a6aad575
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

1,346
concourseconcourseVerified publisher20.3.01 of 2See more

concourse concourse 20.3.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
concourse/concourse:8.3.040a143ce5873
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

2,022
dynatrace-operatordynatraceVerified publisher1.10.21 of 1See more

dynatrace-operator dynatrace 1.10.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.10.252281db48c93
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

147
san-iscsi-csienixOfficialVerified publisher4.0.21 of 7See more

san-iscsi-csi enix 4.0.2

1 of the 7 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
enix/san-iscsi-csi:v4.0.2f963da81ecf7
google.golang.org/grpc@v1.31.0
1.82.2

Open the chart page →

4,154
headscalegabe565Verified publisher0.16.01 of 2See more

headscale gabe565 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/juanfont/headscale:v0.25.097febecbe6cb
google.golang.org/grpc@v1.69.0
1.82.2

Open the chart page →

1,979
oncallgrafana1.16.54 of 12See more

oncall grafana 1.16.5

4 of the 12 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/grafana:11.1.4886b56d5534e
google.golang.org/grpc@v1.64.0
1.82.2
quay.io/jetstack/cert-manager-controller:v1.8.0e1642bf8e933
google.golang.org/grpc@v1.43.0
1.82.2
quay.io/jetstack/cert-manager-ctl:v1.8.0595c548dee6f
google.golang.org/grpc@v1.43.0
1.82.2
quay.io/jetstack/cert-manager-webhook:v1.8.0fd798a5a773e
google.golang.org/grpc@v1.43.0
1.82.2

Open the chart page →

16,251
k8sgpt-operatork8sgptOfficialVerified publisher0.2.292 of 2See more

k8sgpt-operator k8sgpt 0.2.29

2 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/k8sgpt-ai/k8sgpt-operator:v0.2.2982d0adcce816
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/brancz/kube-rbac-proxy:v0.19.19f21034731c7
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

966
node-feature-discoverynode-feature-discoveryOfficialVerified publisher0.19.01 of 1See more

node-feature-discovery node-feature-discovery 0.19.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/nfd/node-feature-discovery:v0.19.02fa1c99ad09b
google.golang.org/grpc@v1.82.0
1.82.2

Open the chart page →

207
openbaoopenbaoVerified publisher0.29.41 of 2See more

openbao openbao 0.29.4

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/openbao/openbao:2.6.211fd73a2102c
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

1,508
kratosory0.64.01 of 1See more

kratos ory 0.64.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
oryd/kratos:v26.2.02a13bb8d362c
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

866
sftpgosftpgoOfficialVerified publisher0.47.01 of 1See more

sftpgo sftpgo 0.47.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/drakkan/sftpgo:v2.7.46cb60f08fede
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

1,232
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.14.3f09282d281f6
google.golang.org/grpc@v1.29.1
1.82.2

Open the chart page →

11,384
apisix-ingress-controllerapisix1.3.11 of 2See more

apisix-ingress-controller apisix 1.3.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
apache/apisix-ingress-controller:2.2.05c5efa4c7f2a
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

1,616
aws-cloudwatch-metricsaws0.0.111 of 1See more

aws-cloudwatch-metrics aws 0.0.11

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
amazon/cloudwatch-agent:1.300032.2b36173b79b02f03a
google.golang.org/grpc@v1.57.0
1.82.2

Open the chart page →

1,556
csi-driver-smbcsi-driver-smbVerified publisher1.20.35 of 6See more

csi-driver-smb csi-driver-smb 1.20.3

5 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/csi-resizer:v2.2.0a2d40c1c3ccb
google.golang.org/grpc@v1.79.3
1.82.2
registry.k8s.io/sig-storage/livenessprobe:v2.19.006da0d5b8908
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

2,945
daprdapr1.18.45 of 5See more

dapr dapr 1.18.4

5 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/dapr/injector:1.18.45ac0db7ca106
google.golang.org/grpc@v1.82.1
1.82.2
ghcr.io/dapr/operator:1.18.4af58fae3e7c9
google.golang.org/grpc@v1.82.1
1.82.2
ghcr.io/dapr/placement:1.18.490d2293f42a3
google.golang.org/grpc@v1.82.1
1.82.2
ghcr.io/dapr/scheduler:1.18.4239eac864320
google.golang.org/grpc@v1.82.1
1.82.2
ghcr.io/dapr/sentry:1.18.405286fc952e7
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

175
emissary-ingressdatawire7.1.8-ea1 of 1See more

emissary-ingress datawire 7.1.8-ea

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
datawire/emissary:2.0.2-ea9716efbdd24b
google.golang.org/grpc@v1.34.0
1.82.2

Open the chart page →

4,918
gadgetgadgetOfficialVerified publisher0.56.01 of 1See more

gadget gadget 0.56.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/inspektor-gadget/inspektor-gadget:v0.56.0bdb8f3ee121d
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

51
hpe-csi-driverhpe-storageVerified publisher3.3.010 of 14See more

hpe-csi-driver hpe-storage 3.3.0

10 of the 14 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/hpestorage/csi-driver:v3.3.0e58e22427b38
google.golang.org/grpc@v1.83.1
1.83.2
quay.io/hpestorage/csi-extensions:v1.3.0df65cea35805
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/hpestorage/volume-group-provisioner:v1.1.09ba017780f80
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/hpestorage/volume-group-snapshotter:v1.1.0b26660528928
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/hpestorage/volume-mutator:v1.4.03890d0b3aa89
google.golang.org/grpc@v1.82.1
1.82.2
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
google.golang.org/grpc@v1.81.1
1.82.2
registry.k8s.io/sig-storage/csi-resizer:v2.2.1ea1d25e23479
google.golang.org/grpc@v1.79.3
1.82.2
registry.k8s.io/sig-storage/csi-snapshotter:v8.6.042af0929bcd6
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

1,615
imgproxyimgproxy1.1.01 of 1See more

imgproxy imgproxy 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
google.golang.org/grpc@v1.75.1
1.82.2

Open the chart page →

2,321
cloudflaredkubitodevVerified publisher1.7.91 of 1See more

cloudflared kubitodev 1.7.9

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

1,437
trident-operatornetapp-tridentVerified publisher100.2606.11 of 1See more

trident-operator netapp-trident 100.2606.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
netapp/trident-operator:26.06.15e8ba78f4ab1
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

47
argocdnicklasfrahm-argocdVerified publisher0.3.01 of 2See more

argocd nicklasfrahm-argocd 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
google.golang.org/grpc@v1.68.1
1.82.2

Open the chart page →

5,240
zotzot0.1.1241 of 1See more

zot zot 0.1.124

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/project-zot/zot:v2.1.216b69512c00dc
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

318
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
google.golang.org/grpc@v1.56.3
1.82.2

Open the chart page →

2,993
netbirdjaconiVerified publisher0.15.13 of 4See more

netbird jaconi 0.15.1

3 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
netbirdio/management:0.45.10c9994b393ea
google.golang.org/grpc@v1.64.1
1.82.2
netbirdio/relay:0.45.1872e3add0e1e
google.golang.org/grpc@v1.64.1
1.82.2
netbirdio/signal:0.45.146ce5a45538f
google.golang.org/grpc@v1.64.1
1.82.2

Open the chart page →

8,390
k8upk8upVerified publisher4.10.01 of 1See more

k8up k8up 4.10.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/k8up-io/k8up:v2.16.029458113b8b6
google.golang.org/grpc@v1.81.1
1.82.2

Open the chart page →

717
linkerd-jaegerlinkerd2Verified publisher30.12.112 of 4See more

linkerd-jaeger linkerd2 30.12.11

2 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.3104d224a9999b
google.golang.org/grpc@v1.44.0
1.82.2
otel/opentelemetry-collector:0.59.0ee9da0b08d83
google.golang.org/grpc@v1.49.0
1.82.2

Open the chart page →

4,405
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

9,683
renovate-operatormogeniusVerified publisher6.3.01 of 2See more

renovate-operator mogenius 6.3.0

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/mogenius/renovate-operator:6.3.0eab6fb669412
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

77
open-feature-operatoropen-feature-operatorOfficialVerified publisher0.9.31 of 1See more

open-feature-operator open-feature-operator 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/open-feature/open-feature-operator:v0.9.3b37a442c0497
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

128
telepresence-osstelepresence-ossOfficialVerified publisher2.31.21 of 2See more

telepresence-oss telepresence-oss 2.31.2

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/telepresenceio/tel2:2.31.26f1d705594ba
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

1,036
trivytrivy-operator0.26.01 of 1See more

trivy trivy-operator 0.26.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
aquasec/trivy:0.74.062b1e65e8869
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

430
amd-gpuamd-gpu-helmOfficialVerified publisher0.22.01 of 1See more

amd-gpu amd-gpu-helm 0.22.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
rocm/k8s-device-plugin:1.31.0.926212c665aab
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

1,023
cert-manager-webhook-ovhcert-manager-webhook-ovhVerified publisher0.9.161 of 1See more

cert-manager-webhook-ovh cert-manager-webhook-ovh 0.9.16

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/aureq/cert-manager-webhook-ovh:0.9.160339cf9a75ca
google.golang.org/grpc@v1.83.0
1.83.2

Open the chart page →

195
edge-stackdatawire7.1.8-ea1 of 2See more

edge-stack datawire 7.1.8-ea

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
datawire/aes:2.0.3-ea07f8fe4f4f8e
google.golang.org/grpc@v1.34.0
1.82.2

Open the chart page →

5,173
falcosidekickfalcosecurity0.14.01 of 1See more

falcosidekick falcosecurity 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
falcosecurity/falcosidekick:2.32.01976da721518
google.golang.org/grpc@v1.75.0
1.82.2

Open the chart page →

1,633
glasskube-operatorglasskubeOfficialVerified publisher0.12.22 of 3See more

glasskube-operator glasskube 0.12.2

2 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
google.golang.org/grpc@v1.58.0
1.82.2
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
google.golang.org/grpc@v1.58.0
1.82.2

Open the chart page →

11,933
beylagrafana1.16.111 of 1See more

beyla grafana 1.16.11

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
grafana/beyla:3.32.03ff0f7cf2bbf
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

123
helm-dashboardkomodorVerified publisher2.0.71 of 1See more

helm-dashboard komodor 2.0.7

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
komodorio/helm-dashboard:2.1.3258a9044e658
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

308
kubescape-operatorkubescape1.40.45 of 6See more

kubescape-operator kubescape 1.40.4

5 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/kubescape/kubescape:v4.0.1358651dce3376
google.golang.org/grpc@v1.83.1
1.83.2
quay.io/kubescape/kubevuln:v0.3.4309bed2f723ea0
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/kubescape/node-agent:v0.3.2192044ed750f5e
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/kubescape/operator:v0.2.16901b2694425e9
google.golang.org/grpc@v1.82.1
1.82.2
quay.io/kubescape/storage:v0.0.33101f2b053ace1
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

920
linkerd-vizlinkerd2-edgeVerified publisher30.14.11-edge1 of 5See more

linkerd-viz linkerd2-edge 30.14.11-edge

1 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
prom/prometheus:v2.48.1a67e5e402ff5
google.golang.org/grpc@v1.58.3
1.82.2

Open the chart page →

1,346
plane-cemakeplaneOfficialVerified publisher1.8.12 of 11See more

plane-ce makeplane 1.8.1

2 of the 11 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
google.golang.org/grpc@v1.71.0
1.82.2
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
google.golang.org/grpc@v1.71.0
1.82.2

Open the chart page →

4,854
milvusmilvus-helm5.0.272 of 4See more

milvus milvus-helm 5.0.27

2 of the 4 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
milvusdb/etcd:3.5.25-r1fededb2f2d63
google.golang.org/grpc@v1.71.1
1.82.2
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
google.golang.org/grpc@v1.69.0
1.82.2

Open the chart page →

10,670
coreneuvectorchartsVerified publisher2.11.13 of 5See more

core neuvectorcharts 2.11.1

3 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
neuvector/controller:5.6.1ae45c394f1ac
google.golang.org/grpc@v1.82.1
1.82.2
neuvector/enforcer:5.6.1aa2137cc90ec
google.golang.org/grpc@v1.82.1
1.82.2
neuvector/scanner:6ac0167154880
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

884
opa-kube-mgmtopa-kube-mgmtVerified publisher11.0.121 of 2See more

opa-kube-mgmt opa-kube-mgmt 11.0.12

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
openpolicyagent/opa:1.19.0852359995443
google.golang.org/grpc@v1.82.1
1.82.2

Open the chart page →

601
redis-operatorot-container-kit0.26.11 of 1See more

redis-operator ot-container-kit 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/opstree/redis-operator:v0.26.01c6818e5e505
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

123

Container images carrying it

2,837 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/prometheus:latest:v3.14.05ce7540c3c00
google.golang.org/grpc@v1.82.1
1.82.2
18
minio/minio:latest:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
google.golang.org/grpc@v1.71.0
1.82.2
16
grafana/grafana:latestf772d434e8fa
google.golang.org/grpc@v1.81.1
1.82.2
12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
google.golang.org/grpc@v1.75.1
1.82.2
12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
google.golang.org/grpc@v1.81.1
1.82.2
12
ethpandaops/xatu:latest74d4cf2c436c
google.golang.org/grpc@v1.80.0
1.82.2
10
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
google.golang.org/grpc@v1.81.1
1.82.2
10
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
google.golang.org/grpc@v1.69.0
1.82.2
8
quay.io/prometheus/alertmanager:latest:v0.34.0690c7b525f43
google.golang.org/grpc@v1.82.1
1.82.2
8
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.20.042cfe3723a5f
google.golang.org/grpc@v1.79.3
1.82.2
8
minio/mc:latest:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
google.golang.org/grpc@v1.71.0
1.82.2
7
wurstmeister/kafka:latest2d4bbf9cc83d
google.golang.org/grpc@v1.44.0
1.82.2
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
google.golang.org/grpc@v1.69.2
1.82.2
7
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
google.golang.org/grpc@v1.67.1
1.82.2
7
quay.io/thanos/thanos:v0.37.24ec6df40fdb9
google.golang.org/grpc@v1.63.2
1.82.2
7
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.185108987d044
google.golang.org/grpc@v1.79.3
1.82.2
7
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
google.golang.org/grpc@v1.72.1
1.82.2
7
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
google.golang.org/grpc@v1.78.0
1.82.2
7
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
google.golang.org/grpc@v1.78.0
1.82.2
7
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
google.golang.org/grpc@v1.69.2
1.82.2
7
grafana/grafana:7.0.3d72946c8e5d5
google.golang.org/grpc@v1.27.1
1.82.2
6
ghcr.io/quenchworks/images/grafana3ccc56791c8a
google.golang.org/grpc@v1.82.1
1.82.2
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
google.golang.org/grpc@v1.36.1
1.82.2
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
google.golang.org/grpc@v1.34.0
1.82.2
6
quay.io/devtron/kubectl:latest2ad610626658
google.golang.org/grpc@v1.47.0
1.82.2
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
google.golang.org/grpc@v1.51.0
1.82.2
6
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
google.golang.org/grpc@v1.81.1
1.82.2
6
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0:v2.8.1f6717ce72a26
google.golang.org/grpc@v1.54.0
1.82.2
6
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
google.golang.org/grpc@v1.72.1
1.82.2
6
registry.k8s.io/sig-storage/livenessprobe:v2.19.006da0d5b8908
google.golang.org/grpc@v1.81.1
1.82.2
6
grafana/grafana:13.2.1-distroless3600073f45a9
google.golang.org/grpc@v1.79.3
1.82.2
5
keelhq/keel:latest73714afb4443
google.golang.org/grpc@v1.68.0
1.82.2
5
prom/prometheus:v2.13.10a8caa2e9f19
google.golang.org/grpc@v1.22.1
1.82.2
5
quay.io/brancz/kube-rbac-proxy:v0.19.19f21034731c7
google.golang.org/grpc@v1.65.0
1.82.2
5
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
google.golang.org/grpc@v1.10.0
1.82.2
5
quay.io/prometheus/blackbox-exporter:latest:v0.28.0e753ff9f3fc4
google.golang.org/grpc@v1.77.0
1.82.2
5
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
google.golang.org/grpc@v1.72.2
1.82.2
5
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
google.golang.org/grpc@v1.36.0
1.82.2
5
registry.k8s.io/sig-storage/csi-provisioner:v6.2.06be9f63ca4ca
google.golang.org/grpc@v1.79.1
1.82.2
5
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
google.golang.org/grpc@v1.54.0
1.82.2
5
registry.k8s.io/sig-storage/csi-resizer:v2.2.0a2d40c1c3ccb
google.golang.org/grpc@v1.79.3
1.82.2
5
registry.k8s.io/sig-storage/csi-resizer:v2.2.1ea1d25e23479
google.golang.org/grpc@v1.79.3
1.82.2
5
registry.k8s.io/sig-storage/csi-snapshotter:v8.6.042af0929bcd6
google.golang.org/grpc@v1.81.1
1.82.2
5
registry.k8s.io/sig-storage/csi-snapshotter:v8.5.0da081c27e8a6
google.golang.org/grpc@v1.78.0
1.82.2
5
cloudflare/cloudflared:2026.8.3:latest51c9cefcb456
google.golang.org/grpc@v1.83.0
1.83.2
4
cloudflare/cloudflared:2026.3.06b599ca3e974
google.golang.org/grpc@v1.72.2
1.82.2
4
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
google.golang.org/grpc@v1.36.0
1.82.2
4
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
google.golang.org/grpc@v1.36.0
1.82.2
4
grafana/grafana:13.1.0121a7a9ece6d
google.golang.org/grpc@v1.79.3
1.82.2
4
grafana/grafana:6.7.11ff3999e0fc0
google.golang.org/grpc@v1.23.1
1.82.2
4

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.