StackRadar

CVE-2026-84445

High

Advisory

Published 8 Sept 2026In the index since 9 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,337
of 17,790 indexed, latest versions
Container images
2,838
deployed by those charts
Fix available
2 of 2
affected packages

gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing `:authority` and `Host` headers

Carried by container images the latest versions of 2,337 of 17,790 indexed charts deploy, on 2,838 images.

Affected packageAffected versionsFixed inImages
google.golang.org/grpcgolangv0.0.0-20160317175043-d3ddb4469d5a, v0.0.0-20170216003643-d0c32ee6a441, v1.10.0, v1.14.0+117 more1.82.2, 1.83.2, 1.85.0-dev.0.20260825072537-93e31b48545e2,837
kubernetes-1.34apk1.34.11-r21.34.11-r81
OSV records
GHSA-2v4p-qf9q-27wjCGA-2675-68qh-x3xm
Also known as
CGA-2rc7-c9wv-rg9j, CGA-2v9r-g7hg-wjpv, CGA-5pg3-vg83-278x, CGA-6jwq-4523-qrxc, CGA-6mqf-6cj9-rr4r, CGA-8vf4-hpwm-ghh8, CGA-96jx-jhxg-fxww, CGA-fg8c-vc3x-88hf, CGA-g3hq-cpjp-v4p5, CGA-hx92-g8xp-6m86, CGA-wgvj-wq84-52gh, GO-2026-6443
Trending
Rank 7 in indexed charts, since 9 Sept 2026. See the ranking →

Charts affected

2,337 by stars
ChartLatestAffected imagesRadar Score
commons-operatorkubedoopVerified publisher0.4.01 of 1See more

commons-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/commons-operator:0.4.01a353def9fe1
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

366
dolphinscheduler-operatorkubedoopVerified publisher0.4.01 of 1See more

dolphinscheduler-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/dolphinscheduler-operator:0.4.0d0a4e55eeb7f
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

358
hbase-operatorkubedoopVerified publisher0.4.01 of 1See more

hbase-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hbase-operator:0.4.069e9a1b0daf8
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

366
hdfs-operatorkubedoopVerified publisher0.4.01 of 1See more

hdfs-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hdfs-operator:0.4.0eb3c2928250e
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

415
hive-operatorkubedoopVerified publisher0.4.01 of 1See more

hive-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/hive-operator:0.4.0d66ba9149c22
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

358
kafka-operatorkubedoopVerified publisher0.4.01 of 1See more

kafka-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/kafka-operator:0.4.00a0b4c39c1ba
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

456
listener-operatorkubedoopVerified publisher0.4.05 of 6See more

listener-operator kubedoop 0.4.0

5 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/listener-csi-driver:0.4.0b69bed123b02
google.golang.org/grpc@v1.81.0
1.82.2
quay.io/zncdatadev/listener-operator:0.4.068b92dae8d75
google.golang.org/grpc@v1.81.0
1.82.2
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
google.golang.org/grpc@v1.65.0
1.82.2
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
google.golang.org/grpc@v1.65.0
1.82.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.12.00d23a6fd60c4
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

4,472
nifi-operatorkubedoopVerified publisher0.4.01 of 1See more

nifi-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/nifi-operator:0.4.0bb4e26ff5e2f
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

366
secret-operatorkubedoopVerified publisher0.4.04 of 5See more

secret-operator kubedoop 0.4.0

4 of the 5 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/secret-csi-driver:0.4.0604a7d98ab58
google.golang.org/grpc@v1.78.0
1.82.2
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
google.golang.org/grpc@v1.65.0
1.82.2
quay.io/zncdatadev/sig-storage/livenessprobe:v2.14.033692aed26aa
google.golang.org/grpc@v1.65.0
1.82.2
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.12.00d23a6fd60c4
google.golang.org/grpc@v1.65.0
1.82.2

Open the chart page →

4,414
spark-k8s-operatorkubedoopVerified publisher0.4.01 of 1See more

spark-k8s-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/spark-k8s-operator:0.4.0d3f2b10c4a6d
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

388
superset-operatorkubedoopVerified publisher0.4.01 of 1See more

superset-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/superset-operator:0.4.0102e66e32218
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

366
trino-operatorkubedoopVerified publisher0.4.01 of 1See more

trino-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/trino-operator:0.4.04f516757aee3
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

353
zookeeper-operatorkubedoopVerified publisher0.4.01 of 1See more

zookeeper-operator kubedoop 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/zncdatadev/zookeeper-operator:0.4.0b4f33d89ac45
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

366
cephfs-csikubegems1.0.81 of 6See more

cephfs-csi kubegems 1.0.8

1 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
google.golang.org/grpc@v1.42.0
1.82.2

Open the chart page →

4,452
chartmuseumkubegems3.8.01 of 1See more

chartmuseum kubegems 3.8.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.14.0878ef6a31fa0
google.golang.org/grpc@v1.43.0
1.82.2

Open the chart page →

3,526
gatewaykubegems0.3.21 of 2See more

gateway kubegems 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubegems/kube-rbac-proxy:v0.8.0941f557ed1ee
google.golang.org/grpc@v1.27.0
1.82.2

Open the chart page →

3,505
juicefs-csi-driverkubegems0.19.22 of 6See more

juicefs-csi-driver kubegems 0.19.2

2 of the 6 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
juicedata/csi-dashboard:v0.23.03e4daf9626d5
google.golang.org/grpc@v1.56.3
1.82.2
juicedata/juicefs-csi-driver:v0.23.0d915e899e322
google.golang.org/grpc@v1.48.0
1.82.2

Open the chart page →

4,838
knative-servingkubegems1.0.17 of 8See more

knative-serving kubegems 1.0.1

7 of the 8 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gcr.io/knative-releases/knative.dev/net-kourier/cmd/kourierdigest-pinned197fbb71d1f1
google.golang.org/grpc@v1.42.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/activatordigest-pinned08315309da4b
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/autoscalerdigest-pinned105bdd14ecaa
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/controllerdigest-pinnedbac158dfb0c7
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mappingdigest-pinnede384a295069b
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhookdigest-pinned15f1ce7f35b4
google.golang.org/grpc@v1.44.0
1.82.2
gcr.io/knative-releases/knative.dev/serving/cmd/webhookdigest-pinned1282a399cbb9
google.golang.org/grpc@v1.44.0
1.82.2

Open the chart page →

10,469
kubegems-edgekubegems1.24.101 of 1See more

kubegems-edge kubegems 1.24.10

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubegems/kubegems:v1.24.10a730bcf9322a
google.golang.org/grpc@v1.58.0
1.82.2

Open the chart page →

3,390
kubegems-multus-cnikubegems2.4.11 of 2See more

kubegems-multus-cni kubegems 2.4.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.2.16bebbda31416
google.golang.org/grpc@v1.58.3
1.82.2

Open the chart page →

1,391
prometheus-adapterkubegems4.14.11 of 1See more

prometheus-adapter kubegems 4.14.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
google.golang.org/grpc@v1.60.1
1.82.2

Open the chart page →

937
prometheus-blackbox-exporterkubegems7.1.31 of 1See more

prometheus-blackbox-exporter kubegems 7.1.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
prom/blackbox-exporter:v0.22.0608acee5704a
google.golang.org/grpc@v1.48.0
1.82.2

Open the chart page →

1,634
volcanokubegems1.12.12 of 3See more

volcano kubegems 1.12.1

2 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
volcanosh/vc-scheduler:v1.12.1b24ea8af2d16
google.golang.org/grpc@v1.57.0
1.82.2
volcanosh/vc-webhook-manager:v1.12.1f8b50088a732
google.golang.org/grpc@v1.57.0
1.82.2

Open the chart page →

5,036
xpai-schedulerkubegems1.12.11 of 2See more

xpai-scheduler kubegems 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
projecthami/volcano-vgpu-device-plugin:v1.9.40c94118d1d98
google.golang.org/grpc@v1.32.0
1.82.2

Open the chart page →

2,324
kube-oidc-proxykube-oidc-proxyVerified publisher1.8.11 of 1See more

kube-oidc-proxy kube-oidc-proxy 1.8.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/rafpe/kube-oidc-proxy:1.8.1300f51feb1a7
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

30
apm-serverkube-opsVerified publisher0.1.21 of 1See more

apm-server kube-ops 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
elastic/apm-server:7.17.6c7a1c63257d0
google.golang.org/grpc@v1.48.0
1.82.2

Open the chart page →

7,208
lokikube-opsVerified publisher1.7.31 of 1See more

loki kube-ops 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/kube-ops/loki:2.2.14fbd63194674
google.golang.org/grpc@v1.29.1
1.82.2

Open the chart page →

2,653
promtailkube-opsVerified publisher1.5.11 of 2See more

promtail kube-ops 1.5.1

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/kube-ops/promtail:2.2.134de6387233b
google.golang.org/grpc@v1.29.1
1.82.2

Open the chart page →

4,157
kube-ovnkube-ovn-test1.14.01 of 1See more

kube-ovn kube-ovn-test 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubeovn/kube-ovn:v1.14.06722b54eb5c0
google.golang.org/grpc@v1.73.0
1.82.2

Open the chart page →

5,003
kuberay-apiserverkuberay-operator1.7.02 of 2See more

kuberay-apiserver kuberay-operator 1.7.0

2 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/kuberay/apiserver:v1.7.05bb3ad7621c8
google.golang.org/grpc@v1.79.3
1.82.2
quay.io/kuberay/security-proxy:nightly4525b5acd23c
google.golang.org/grpc@v1.79.3
1.82.2

Open the chart page →

258
kuberecordkuberecordVerified publisher0.4.01 of 1See more

kuberecord kuberecord 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/kuberecord/kuberecord:v0.4.02a19792ad2ec
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

182
cloudflaredkubernetes-homelab-helm-chartsVerified publisher0.1.11 of 1See more

cloudflared kubernetes-homelab-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

1,460
pocket-idkubernetes-homelab-helm-chartsVerified publisher0.1.01 of 1See more

pocket-id kubernetes-homelab-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/pocket-id/pocket-id:v2.7.045bdeaf3fcd6
google.golang.org/grpc@v1.80.0
1.82.2

Open the chart page →

1,520
scrutinykubernetes-homelab-helm-chartsVerified publisher0.2.21 of 3See more

scrutiny kubernetes-homelab-helm-charts 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
library/influxdb:2.8571eb4514977
google.golang.org/grpc@v1.64.1
1.82.2

Open the chart page →

5,547
uptime-kumakubernetes-homelab-helm-chartsVerified publisher0.1.21 of 1See more

uptime-kuma kubernetes-homelab-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.2.1-slim059b49d64739
google.golang.org/grpc@v1.72.2
1.82.2

Open the chart page →

6,391
brudi-operatorkubernetes-replicator0.2.31 of 1See more

brudi-operator kubernetes-replicator 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
google.golang.org/grpc@v1.53.0
1.82.2

Open the chart page →

3,630
harbor-operatorkubernetes-replicator1.6.31 of 1See more

harbor-operator kubernetes-replicator 1.6.3

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
quay.io/mittwald/harbor-operator:v1.6.365a38180e27a
google.golang.org/grpc@v1.60.1
1.82.2

Open the chart page →

1,205
api-serverkubeshop0.11.161 of 2See more

api-server kubeshop 0.11.16

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
google.golang.org/grpc@v1.71.0
1.82.2

Open the chart page →

3,432
kusk-gatewaykubeshop0.0.651 of 2See more

kusk-gateway kubeshop 0.0.65

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubeshop/kusk-gateway:v1.5.48b5bfd57a3ce
google.golang.org/grpc@v1.47.0
1.82.2

Open the chart page →

1,621
testkube-apikubeshop2.1.1621 of 2See more

testkube-api kubeshop 2.1.162

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubeshop/testkube-api-server:2.1.162e97dc620d9b4
google.golang.org/grpc@v1.70.0
1.82.2

Open the chart page →

1,670
testkube-logskubeshop0.2.21 of 1See more

testkube-logs kubeshop 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubeshop/testkube-logs-server:latest094186b19698
google.golang.org/grpc@v1.70.0
1.82.2

Open the chart page →

1,286
testkube-operatorkubeshop2.1.1541 of 3See more

testkube-operator kubeshop 2.1.154

1 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubeshop/testkube-operator:2.1.154def0d0f0d4ab
google.golang.org/grpc@v1.70.0
1.82.2

Open the chart page →

1,011
testkube-runnerkubeshop2.13.21 of 1See more

testkube-runner kubeshop 2.13.2

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubeshop/testkube-api-server:2.13.244166c28422f
google.golang.org/grpc@v1.83.1
1.83.2

Open the chart page →

372
tracetestkubeshop0.3.391 of 2See more

tracetest kubeshop 0.3.39

1 of the 2 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
kubeshop/tracetest:v1.7.173d7e3a2db43
google.golang.org/grpc@v1.58.3
1.82.2

Open the chart page →

1,562
cloudnative-pgkube-site-follower0.23.01 of 1See more

cloudnative-pg kube-site-follower 0.23.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/cloudnative-pg:1.25.0a27779ed1085
google.golang.org/grpc@v1.69.2
1.82.2

Open the chart page →

909
apisix-dashboardkubesphereVerified publisher0.3.01 of 1See more

apisix-dashboard kubesphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
apache/apisix-dashboard:2.9.0c010ea7d1694
google.golang.org/grpc@v1.26.0
1.82.2

Open the chart page →

2,525
gitlabkubesphereVerified publisher4.2.35 of 17See more

gitlab kubesphere 4.2.3

5 of the 17 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
google.golang.org/grpc@v1.21.1
1.82.2
mirrorgitlabcontainers/gitaly:v13.2.283599461ef8b
google.golang.org/grpc@v1.24.0
1.82.2
mirrorgitlabcontainers/gitlab-container-registry:v2.9.1-gitlab06b19a4bc805
google.golang.org/grpc@v1.24.0
1.82.2
mirrorgitlabcontainers/gitlab-shell:v13.3.09f3654f1eafc
google.golang.org/grpc@v1.24.0
1.82.2
mirrorgitlabcontainers/gitlab-workhorse-ce:v13.2.2a6d7bf42805a
google.golang.org/grpc@v1.24.0
1.82.2

Open the chart page →

38,178
harborkubesphereVerified publisher1.9.37 of 11See more

harbor kubesphere 1.9.3

7 of the 11 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
goharbor/chartmuseum-photon:v2.5.36ab3ca28e9e5
google.golang.org/grpc@v1.43.0
1.82.2
goharbor/harbor-core:v2.5.386bf3031f4a7
google.golang.org/grpc@v1.41.0
1.82.2
goharbor/harbor-jobservice:v2.5.38d5339ff2d74
google.golang.org/grpc@v1.41.0
1.82.2
goharbor/harbor-registryctl:v2.5.37f82ed1e2635
google.golang.org/grpc@v1.41.0
1.82.2
goharbor/notary-server-photon:v2.5.3fd91a4a1273f
google.golang.org/grpc@v1.27.1
1.82.2
goharbor/notary-signer-photon:v2.5.3a92b51aa7d6e
google.golang.org/grpc@v1.27.1
1.82.2
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
google.golang.org/grpc@v1.47.0
1.82.2

Open the chart page →

17,851
chaos-meshkubesphere-stable2.5.13 of 3See more

chaos-mesh kubesphere-stable 2.5.1

3 of the 3 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
google.golang.org/grpc@v1.43.0
1.82.2
ghcr.io/chaos-mesh/chaos-dashboard:v2.5.1448cb346b12c
google.golang.org/grpc@v1.43.0
1.82.2
ghcr.io/chaos-mesh/chaos-mesh:v2.5.1700bb42ac21d
google.golang.org/grpc@v1.43.0
1.82.2

Open the chart page →

8,580
cni-hostnickubesphere-stable0.1.01 of 1See more

cni-hostnic kubesphere-stable 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-84445.

Container imageDigestPackageFixed in
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
google.golang.org/grpc@v1.27.1
1.82.2

Open the chart page →

2,443

Container images carrying it

2,838 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/prometheus:latest:v3.14.05ce7540c3c00
google.golang.org/grpc@v1.82.1
1.82.2
18
minio/minio:latest:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
google.golang.org/grpc@v1.71.0
1.82.2
16
grafana/grafana:latestf772d434e8fa
google.golang.org/grpc@v1.81.1
1.82.2
12
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.18.01545919b72e3
google.golang.org/grpc@v1.75.1
1.82.2
12
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
google.golang.org/grpc@v1.81.1
1.82.2
12
ethpandaops/xatu:latest74d4cf2c436c
google.golang.org/grpc@v1.80.0
1.82.2
10
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
google.golang.org/grpc@v1.81.1
1.82.2
10
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.20.042cfe3723a5f
google.golang.org/grpc@v1.79.3
1.82.2
9
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
google.golang.org/grpc@v1.69.0
1.82.2
8
quay.io/prometheus/alertmanager:latest:v0.34.0690c7b525f43
google.golang.org/grpc@v1.82.1
1.82.2
8
wurstmeister/kafka:latest2d4bbf9cc83d
google.golang.org/grpc@v1.44.0
1.82.2
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
google.golang.org/grpc@v1.69.2
1.82.2
7
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
google.golang.org/grpc@v1.67.1
1.82.2
7
quay.io/thanos/thanos:v0.37.24ec6df40fdb9
google.golang.org/grpc@v1.63.2
1.82.2
7
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.185108987d044
google.golang.org/grpc@v1.79.3
1.82.2
7
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.15.011f199f6bec4
google.golang.org/grpc@v1.72.1
1.82.2
7
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.16.0ab482308a492
google.golang.org/grpc@v1.78.0
1.82.2
7
registry.k8s.io/sig-storage/csi-resizer:v2.1.0589e525cddef
google.golang.org/grpc@v1.78.0
1.82.2
7
registry.k8s.io/sig-storage/csi-resizer:v1.14.05e7cbb63fd49
google.golang.org/grpc@v1.69.2
1.82.2
7
grafana/grafana:7.0.3d72946c8e5d5
google.golang.org/grpc@v1.27.1
1.82.2
6
minio/mc:latest:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
google.golang.org/grpc@v1.71.0
1.82.2
6
ghcr.io/quenchworks/images/grafana3ccc56791c8a
google.golang.org/grpc@v1.82.1
1.82.2
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
google.golang.org/grpc@v1.36.1
1.82.2
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
google.golang.org/grpc@v1.34.0
1.82.2
6
quay.io/devtron/kubectl:latest2ad610626658
google.golang.org/grpc@v1.47.0
1.82.2
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
google.golang.org/grpc@v1.51.0
1.82.2
6
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
google.golang.org/grpc@v1.81.1
1.82.2
6
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.8.0:v2.8.1f6717ce72a26
google.golang.org/grpc@v1.54.0
1.82.2
6
registry.k8s.io/sig-storage/csi-provisioner:v5.3.0bb057f866177
google.golang.org/grpc@v1.72.1
1.82.2
6
registry.k8s.io/sig-storage/livenessprobe:v2.19.006da0d5b8908
google.golang.org/grpc@v1.81.1
1.82.2
6
keelhq/keel:latest73714afb4443
google.golang.org/grpc@v1.68.0
1.82.2
5
prom/prometheus:v2.13.10a8caa2e9f19
google.golang.org/grpc@v1.22.1
1.82.2
5
traefik/whoami:latest:v1.12.0c4717a8d1f01
google.golang.org/grpc@v1.82.1
1.82.2
5
quay.io/brancz/kube-rbac-proxy:v0.19.19f21034731c7
google.golang.org/grpc@v1.65.0
1.82.2
5
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
google.golang.org/grpc@v1.10.0
1.82.2
5
quay.io/prometheus/blackbox-exporter:latest:v0.28.0e753ff9f3fc4
google.golang.org/grpc@v1.77.0
1.82.2
5
registry.k8s.io/sig-storage/csi-attacher:v4.11.0b74b05b39501
google.golang.org/grpc@v1.72.2
1.82.2
5
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
google.golang.org/grpc@v1.36.0
1.82.2
5
registry.k8s.io/sig-storage/csi-provisioner:v6.2.06be9f63ca4ca
google.golang.org/grpc@v1.79.1
1.82.2
5
registry.k8s.io/sig-storage/csi-provisioner:v3.5.0d078dc174323
google.golang.org/grpc@v1.54.0
1.82.2
5
registry.k8s.io/sig-storage/csi-resizer:v2.2.0a2d40c1c3ccb
google.golang.org/grpc@v1.79.3
1.82.2
5
registry.k8s.io/sig-storage/csi-resizer:v2.2.1ea1d25e23479
google.golang.org/grpc@v1.79.3
1.82.2
5
registry.k8s.io/sig-storage/csi-snapshotter:v8.6.042af0929bcd6
google.golang.org/grpc@v1.81.1
1.82.2
5
registry.k8s.io/sig-storage/csi-snapshotter:v8.5.0da081c27e8a6
google.golang.org/grpc@v1.78.0
1.82.2
5
cloudflare/cloudflared:2026.3.06b599ca3e974
google.golang.org/grpc@v1.72.2
1.82.2
4
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
google.golang.org/grpc@v1.36.0
1.82.2
4
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
google.golang.org/grpc@v1.36.0
1.82.2
4
grafana/grafana:13.1.0121a7a9ece6d
google.golang.org/grpc@v1.79.3
1.82.2
4
grafana/grafana:6.7.11ff3999e0fc0
google.golang.org/grpc@v1.23.1
1.82.2
4
grafana/grafana:13.2.2-distroless69a5d2d957ca
google.golang.org/grpc@v1.83.1
1.83.2
4

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.