StackRadar

CVE-2026-94440

High

Advisory

Published 8 Oct 2026In the index since 9 Oct 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
33rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
5,533
of 18,090 indexed, latest versions
Container images
6,378
deployed by those charts
Fix available
2 of 3
affected packages

Memory limit bypass when parsing MIME headers in net/textproto, mime/multipart

Carried by container images the latest versions of 5,533 of 18,090 indexed charts deploy, on 6,378 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+212 more1.26.96,378
golang-1.19deb1.19.8-2no fix listed1
ingress-nginx-controller-1.15apk1.15.10-r31.15.10-r81
OSV records
CGA-2wpp-p453-fwrjDEBIAN-CVE-2026-94440GO-2026-6608
Also known as
CGA-8235-g5m3-vf73, CGA-frxc-9943-gmf8, CGA-gmgx-vgc6-mmw7, CGA-gw93-g38m-27f8, CGA-j2rm-vrxp-7gvc
Trending
Rank 4 in indexed charts, since 9 Oct 2026. See the ranking →

Charts affected

5,533 by stars
ChartLatestAffected imagesRadar Score
butane-operatorbutane-operatorVerified publisher0.3.02 of 2See more

butane-operator butane-operator 0.3.0

2 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/naval-group/butane-operator:v0.1.1-rc285818b510780
stdlib@go1.26.0
1.26.9
registry.k8s.io/kubebuilder/kube-rbac-proxy:v0.16.0771a9a173e03
stdlib@go1.21.7
1.26.9

Open the chart page →

2,497
butlercibutlerciVerified publisher0.1.01 of 1See more

butlerci butlerci 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
etejeda/butlerci:0.1.0737d58183abc
stdlib@go1.16.3
1.26.9

Open the chart page →

3,711
accelerationbuttahtoastVerified publisher0.1.01 of 1See more

acceleration buttahtoast 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
goharbor/harbor-acceld:0.2.13451103a6c8d8
stdlib@go1.21.5
1.26.9

Open the chart page →

2,104
fluobuttahtoastVerified publisher0.1.01 of 1See more

fluo buttahtoast 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/flatcar/flatcar-linux-update-operator:v0.10.0-rc1f9063e20b1f6
stdlib@go1.20.6
1.26.9

Open the chart page →

1,985
kubermatic-operatorbuttahtoastVerified publisher2.24.51 of 1See more

kubermatic-operator buttahtoast 2.24.5

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/kubermatic/kubermatic:v2.24.5ebba936046ab
stdlib@go1.20.6
1.26.9

Open the chart page →

3,573
kubevirt-managerbuttahtoastVerified publisher0.1.31 of 1See more

kubevirt-manager buttahtoast 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
kubevirtmanager/kubevirt-manager:1.3.3df3ea27d4a9e
stdlib@go1.21.7
1.26.9

Open the chart page →

2,139
gotenbergbysamioVerified publisher0.2.01 of 1See more

gotenberg bysamio 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8-chromium0d28ae9a9644
stdlib@go1.27.1
1.26.9

Open the chart page →

10,280
mariadbbysamioVerified publisher1.0.21 of 1See more

mariadb bysamio 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/mariadb:12.0.2607835cd628b
stdlib@go1.24.6
1.26.9

Open the chart page →

3,557
payloadboxbyteforkVerified publisher0.0.41 of 1See more

payloadbox bytefork 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/bytefork/payloadbox:0.0.73e0164e975b3
stdlib@go1.26.3
1.26.9

Open the chart page →

302
caddycaddyVerified publisher0.0.41 of 1See more

caddy caddy 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/caddy:2.11.2-alpine834468128c76
stdlib@go1.26.0
1.26.9

Open the chart page →

2,180
etcdcagriekinVerified publisher0.1.51 of 1See more

etcd cagriekin 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/coreos/etcd:v3.5.16d967d98a12dc
stdlib@go1.22.7
1.26.9

Open the chart page →

1,451
kafkacagriekinVerified publisher0.2.01 of 2See more

kafka cagriekin 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
danielqsj/kafka-exporter:v1.9.04150e46b2e96
stdlib@go1.24.0
1.26.9

Open the chart page →

3,133
rediscagriekinVerified publisher1.5.21 of 2See more

redis cagriekin 1.5.2

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
oliver006/redis_exporter:v1.67.0120f7ec77293
stdlib@go1.23.4
1.26.9

Open the chart page →

2,055
calibre-web-automatedcalibre-web-automatedVerified publisher1.2.31 of 1See more

calibre-web-automated calibre-web-automated 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
crocodilestick/calibre-web-automated:v4.0.6c31a738b6d5e
stdlib@go1.17.8
1.26.9

Open the chart page →

8,176
ct-singlecalltelemetry0.8.44 of 7See more

ct-single calltelemetry 0.8.4

4 of the 7 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/nats:2.8.4-alpine988010f74b61
stdlib@go1.17.10
1.26.9
natsio/nats-box:0.11.09fbf7bf684e4
stdlib@go1.18.1
1.26.9
natsio/nats-server-config-reloader:0.7.2911ce7ed2f55
stdlib@go1.19
1.26.9
natsio/prometheus-nats-exporter:0.10.016048afb67a5
stdlib@go1.19
1.26.9

Open the chart page →

13,879
stablecalltelemetry0.7.14 of 9See more

stable calltelemetry 0.7.1

4 of the 9 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/nats:2.8.4-alpine988010f74b61
stdlib@go1.17.10
1.26.9
natsio/nats-box:0.11.09fbf7bf684e4
stdlib@go1.18.1
1.26.9
natsio/nats-server-config-reloader:0.7.2911ce7ed2f55
stdlib@go1.19
1.26.9
natsio/prometheus-nats-exporter:0.10.016048afb67a5
stdlib@go1.19
1.26.9

Open the chart page →

11,119
stable-hacalltelemetry0.11.43 of 7See more

stable-ha calltelemetry 0.11.4

3 of the 7 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/nats:2.10.12-alpinebca70839d953
stdlib@go1.21.8
1.26.9
natsio/nats-box:0.14.2e808e0644ce1
stdlib@go1.21.5
1.26.9
natsio/nats-server-config-reloader:0.14.10d50270fa374
stdlib@go1.20.5
1.26.9

Open the chart page →

6,288
pagescamden-pages1.0.01 of 3See more

pages camden-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.26.9

Open the chart page →

21,310
camellia-redis-proxycamellia-redis-proxy1.4.01 of 2See more

camellia-redis-proxy camellia-redis-proxy 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/redis:5.0fc5ecd863862
stdlib@go1.16.7
1.26.9

Open the chart page →

9,711
geoservercamptocamp20.0.31 of 12See more

geoserver camptocamp2 0.0.3

1 of the 12 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
stdlib@go1.18.2
1.26.9

Open the chart page →

92,494
bucket-clonercamptocamp31.0.41 of 1See more

bucket-cloner camptocamp3 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
camptocamp/bucket-cloner:latestacfafc308d88
stdlib@go1.16.5
1.26.9

Open the chart page →

6,783
getconfigcamptocamp30.1.11 of 1See more

getconfig camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.3.08c21390be87d
stdlib@go1.17.10
1.26.9

Open the chart page →

3,215
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/prometheus-puppetdb-sd:0.14.0414c0c99fd06
stdlib@go1.23.5
1.26.9

Open the chart page →

6,971
redisoperatorcamptocamp33.0.11 of 1See more

redisoperator camptocamp3 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/spotahome/redis-operator:latest8c772955184e
stdlib@go1.20.7
1.26.9

Open the chart page →

1,875
s3-exportercamptocamp32.2.01 of 1See more

s3-exporter camptocamp3 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ribbybibby/s3-exporter:v0.5.0998184c51a00
stdlib@go1.15.15
1.26.9

Open the chart page →

2,148
snyk-exportercamptocamp30.1.41 of 1See more

snyk-exporter camptocamp3 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/lunarway/snyk_exporter:v1.11.155e5cc5aaa0a
stdlib@go1.17.7
1.26.9

Open the chart page →

1,965
ssl-exportercamptocamp30.1.01 of 1See more

ssl-exporter camptocamp3 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ribbybibby/ssl-exporter:2.4.2718abe7f5e79
stdlib@go1.18.3
1.26.9

Open the chart page →

2,605
terraboardcamptocamp32.4.01 of 1See more

terraboard camptocamp3 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/terraboard:v2.3.0df53e2c8998c
stdlib@go1.21.3
1.26.9

Open the chart page →

2,032
apachecamptocamp-apache0.4.01 of 2See more

apache camptocamp-apache 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/lusitaniae/apache-exporter:latest438b1b6177eb
stdlib@go1.25.11
1.26.9

Open the chart page →

1,812
mapservercamptocamp-apache0.1.101 of 2See more

mapserver camptocamp-apache 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
camptocamp/mapserver:master18959d939a66
stdlib@go1.26.5
1.26.9

Open the chart page →

1,532
caninecanine0.1.106 of 7See more

canine canine 0.1.10

6 of the 7 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/traefik:v3.7.16b9cbca6fac4
stdlib@go1.25.10
1.26.9
ghcr.io/caninehq/canine:latest68b19aee1c64
stdlib@go1.24.4
1.26.9
quay.io/jetstack/cert-manager-cainjector:v1.15.3e0ce8ae280c8
stdlib@go1.22.5
1.26.9
quay.io/jetstack/cert-manager-controller:v1.15.3eee34b3de2dd
stdlib@go1.22.5
1.26.9
quay.io/jetstack/cert-manager-startupapicheck:v1.15.34cbc1b022a23
stdlib@go1.22.5
1.26.9
quay.io/jetstack/cert-manager-webhook:v1.15.3fdcb9ac4963f
stdlib@go1.22.5
1.26.9

Open the chart page →

18,506
cert-managercanine1.15.34 of 4See more

cert-manager canine 1.15.3

4 of the 4 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.15.3e0ce8ae280c8
stdlib@go1.22.5
1.26.9
quay.io/jetstack/cert-manager-controller:v1.15.3eee34b3de2dd
stdlib@go1.22.5
1.26.9
quay.io/jetstack/cert-manager-startupapicheck:v1.15.34cbc1b022a23
stdlib@go1.22.5
1.26.9
quay.io/jetstack/cert-manager-webhook:v1.15.3fdcb9ac4963f
stdlib@go1.22.5
1.26.9

Open the chart page →

5,129
traefikcanine40.2.01 of 1See more

traefik canine 40.2.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/traefik:v3.7.16b9cbca6fac4
stdlib@go1.25.10
1.26.9

Open the chart page →

1,456
capi2argo-cluster-operatorcapi2argo1.5.01 of 1See more

capi2argo-cluster-operator capi2argo 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/dntosas/capi2argo-cluster-operator:v1.5.0fb8c6457ef6e
stdlib@go1.25.6
1.26.9

Open the chart page →

686
capsule-argo-addoncapsule-argo-addonVerified publisher0.8.02 of 2See more

capsule-argo-addon capsule-argo-addon 0.8.0

2 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
clastix/kubectl:v1.3122918a06c253
stdlib@go1.22.5
1.26.9
ghcr.io/peak-scale/capsule-argo-addon:0.8.064b8c5389b33
stdlib@go1.27.1
1.26.9

Open the chart page →

1,919
freebox-exportercaptnbpVerified publisher1.0.01 of 1See more

freebox-exporter captnbp 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
captnbp/freebox-exporter:1.0.0-r01600c5a253e0
stdlib@go1.21.3
1.26.9

Open the chart page →

1,373
ranchercarbide-charts2.15.22 of 2See more

rancher carbide-charts 2.15.2

2 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
rancher/rancher:v2.15.20c3d8e570255
stdlib@go1.26.4
1.26.9
rancher/shell:v0.8.21eeed72d4eda
stdlib@go1.26.8
1.26.9

Open the chart page →

2,584
stigatroncarbide-charts0.4.13 of 10See more

stigatron carbide-charts 0.4.1

3 of the 10 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/nats:2.10.5-alpine85319e5e541b
stdlib@go1.21.4
1.26.9
natsio/nats-box:0.14.1a67913df95f1
stdlib@go1.21.3
1.26.9
natsio/nats-server-config-reloader:0.13.0b3359eeb10bf
stdlib@go1.20.5
1.26.9

Open the chart page →

6,223
pagescarina-pages1.0.01 of 3See more

pages carina-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.26.9

Open the chart page →

21,310
pagescarmel-pages-dell1.0.01 of 3See more

pages carmel-pages-dell 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.26.9

Open the chart page →

21,310
cassandra-webcassandra-web0.1.01 of 1See more

cassandra-web cassandra-web 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ipushc/cassandra-web:latestfa3e0c66c289
stdlib@go1.20.2
1.26.9

Open the chart page →

2,085
castai-evictorcastaiVerified publisher0.35.1483 of 3See more

castai-evictor castai 0.35.148

3 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/castai/images/cpa/cpvpa:v0.8.14dd5743f37f60
stdlib@go1.26.5
1.26.9
ghcr.io/castai/images/evictor:v0.35.148937cc7ab4d5d
stdlib@go1.26.6
1.26.9
registry.k8s.io/kubectl:v1.35.64d8c68e8c2bf
stdlib@go1.25.11
1.26.9

Open the chart page →

984
castai-livecastaiVerified publisher0.140.21 of 1See more

castai-live castai 0.140.2

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/castai/images/clm:v0.140.2566f0c5ff554
stdlib@go1.26.8
1.26.9

Open the chart page →

989
castai-tetragoncastaiVerified publisher0.6.12 of 4See more

castai-tetragon castai 0.6.1

2 of the 4 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/cilium/tetragon-ci:b6f3056a3f6cf05e366a3e07348f7c0b6265a60f5efd991d218b
stdlib@go1.19.2
1.26.9
quay.io/cilium/tetragon-operator:v0.8.34ab8e6604204
stdlib@go1.18.3
1.26.9

Open the chart page →

6,124
castai-watchdogcastaiVerified publisher0.2.4821 of 1See more

castai-watchdog castai 0.2.482

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/castai/images/watchdog:v0.2.4828f70018e61ca
stdlib@go1.26.6
1.26.9

Open the chart page →

317
castware-componentscastaiVerified publisher0.4.01 of 1See more

castware-components castai 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
stdlib@go1.19.3
1.26.9

Open the chart page →

4,310
oci-csi-drivercastaiVerified publisher1.13.86 of 7See more

oci-csi-driver castai 1.13.8

6 of the 7 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-attacher:v4.12.0b9dc9a714a48
stdlib@go1.26.3
1.26.9
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.17.0f9de845b1701
stdlib@go1.26.3
1.26.9
registry.k8s.io/sig-storage/csi-provisioner:v6.3.0a4b0b1a37605
stdlib@go1.26.3
1.26.9
registry.k8s.io/sig-storage/csi-resizer:v2.2.0a2d40c1c3ccb
stdlib@go1.26.3
1.26.9
registry.k8s.io/sig-storage/csi-snapshotter:v8.6.042af0929bcd6
stdlib@go1.26.3
1.26.9
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
stdlib@go1.26.3
1.26.9

Open the chart page →

3,733
temporalcastaiVerified publisher0.54.210 of 14See more

temporal castai 0.54.2

10 of the 14 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
grafana/grafana:11.0.00dc5a246ab16
stdlib@go1.21.10
1.26.9
temporalio/admin-tools:1.26.237e2e33dbd7b
stdlib@go1.22.5
1.26.9
temporalio/server:1.26.21e2626efcbc1
stdlib@go1.23.2
1.26.9
temporalio/ui:2.33.05c586a3c8ec5
stdlib@go1.23.0
1.26.9
quay.io/prometheus-operator/prometheus-config-reloader:v0.74.0d55631c7a740
stdlib@go1.22.3
1.26.9
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
stdlib@go1.21.7
1.26.9
quay.io/prometheus/node-exporter:v1.8.1fa7fa12a57ef
stdlib@go1.22.3
1.26.9
quay.io/prometheus/prometheus:v2.53.0075b1ba2c4eb
stdlib@go1.22.4
1.26.9
quay.io/prometheus/pushgateway:v1.8.0c159e946abf4
stdlib@go1.22.1
1.26.9
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.12.0b401fae262a5
stdlib@go1.21.8
1.26.9

Open the chart page →

23,074
catalyst-agentscatalyst-agents0.1.3514 of 18See more

catalyst-agents catalyst-agents 0.1.35

14 of the 18 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
alpine/k8s:1.32.3eec354133193
stdlib@go1.23.6
1.26.9
grafana/grafana:13.1.3ab5cb380e3ff
stdlib@go1.26.5
1.26.9
grafana/loki:3.0.0757b5fadf816
stdlib@go1.21.9
1.26.9
grafana/loki-canary:3.0.028d7c00588aa
stdlib@go1.21.9
1.26.9
grafana/tempo:2.5.0f0200a9bff6d
stdlib@go1.21.3
1.26.9
otel/opentelemetry-collector-contrib:0.156.0125bdbeb7590
stdlib@go1.26.4
1.26.9
prom/memcached-exporter:v0.14.2d8a61419b841
stdlib@go1.21.5
1.26.9
ghcr.io/chaos-mesh/chaos-coredns:v0.2.838bfdf5e3774
stdlib@go1.25.5
1.26.9
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
stdlib@go1.25.11
1.26.9
ghcr.io/chaos-mesh/chaos-mesh:v2.8.3bdb31f3121a2
stdlib@go1.25.11
1.26.9
ghcr.io/jkroepke/kube-webhook-certgen:1.8.5d0e80b2f62fe
stdlib@go1.26.5
1.26.9
quay.io/prometheus-operator/prometheus-operator:v0.93.0a001ed10a382
stdlib@go1.26.5
1.26.9
quay.io/prometheus/node-exporter:v1.12.1-distroless8c9bac11973b
stdlib@go1.26.5
1.26.9
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.19.185108987d044
stdlib@go1.26.4
1.26.9

Open the chart page →

24,898
mongodb-operatorccowleyVerified publisher0.1.11 of 1See more

mongodb-operator ccowley 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
stdlib@go1.14.10
1.26.9

Open the chart page →

7,714

Container images carrying it

6,378 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
stdlib@go1.17.8
1.26.9
1
chocobozzz/peertube:v8.1.5052712130691
stdlib@go1.24.4
1.26.9
1
chriseaton/adventureworks:latest54c3384ce701
stdlib@go1.23.1
1.26.9
1
chrislusf/seaweedfs:3.64634b094b2183
stdlib@go1.22.1
1.26.9
1
chrislusf/seaweedfs:4.346620371e8af8
stdlib@go1.25.11
1.26.9
1
chrislusf/seaweedfs:3.56ed80f00fde46
stdlib@go1.20.8
1.26.9
1
chrislusf/seaweedfs-csi-driver:v1.4.341fca534c9001
stdlib@go1.26.8
1.26.9
1
chrislusf/seaweedfs-mount:v1.4.347c6250e96001
stdlib@go1.26.8
1.26.9
1
chriswells0/first-mate:1.0.5f3918ec8471c
stdlib@go1.20.5
1.26.9
1
circleci/container-agent:34d8d0ae5efc3
stdlib@go1.19.7
1.26.9
1
circleci/runner:launch-agent9bdc62f02162
stdlib@go1.21.5
1.26.9
1
ciscolabs/msm-nc:0710202336d02faad958
stdlib@go1.20.5
1.26.9
1
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
stdlib@go1.18.1
1.26.9
1
clastix/capsule-rancher-addon:v0.1.143d301afbca8
stdlib@go1.19.2
1.26.9
1
clastix/kamaji:latestbb4bd5e1d9eb
stdlib@go1.26.5
1.26.9
1
cleanstart/minio:latestf1156f7fd14a
stdlib@go1.26.4
1.26.9
1
clickhouse/clickhouse-server:23.8512bb8a21483
stdlib@go1.19.10
1.26.9
1
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
stdlib@go1.19.5
1.26.9
1
cloud37io/s3-encryption-gateway:0.12.310e791e98b62
stdlib@go1.27.1
1.26.9
1
cloudbees/cert-requester:2.3.31d44fb4f799b
stdlib@go1.20.1
1.26.9
1
cloudbees/sidecar-injector:2.3.38f102ef0383a
stdlib@go1.20.1
1.26.9
1
cloudecho/hello:0.1.0f76ede067ab9
stdlib@go1.16.6
1.26.9
1
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
stdlib@go1.15.14
1.26.9
1
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
stdlib@go1.15.14
1.26.9
1
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
stdlib@go1.15.2
1.26.9
1
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
stdlib@go1.16.6
1.26.9
1
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
stdlib@go1.15.2
1.26.9
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
stdlib@go1.15.2
1.26.9
1
cloudflare/cloudflared:2024.8.314d9c6b01b29
stdlib@go1.22.2-devel-cf
1.26.9
1
cloudflare/cloudflared:2024.5.05d5f70a59d5e
stdlib@go1.22.2-devel-cf
1.26.9
1
cloudflare/cloudflared:2024.11.1665dda65335e
stdlib@go1.22.5-devel-cf
1.26.9
1
cloudflare/cloudflared:2023.10.0c18744ae1767
stdlib@go1.20.6
1.26.9
1
cloudflare/cloudflared:2025.8.0eb5c9324efe3
stdlib@go1.24.4
1.26.9
1
cloudflare/origin-ca-issuer:v0.15.09ee05675fa9c
stdlib@go1.27.1
1.26.9
1
cloudnativelabs/kube-router:v1.6.00ec7cd73f43f
stdlib@go1.19.5
1.26.9
1
cloudposse/bastion:latest0d9507e8a760
stdlib@go1.13.3
1.26.9
1
cloudreve/cloudreve:3.8.009093aec5a20
stdlib@go1.20
1.26.9
1
cloudreve/cloudreve:4.18.0f7a464100bf6
stdlib@go1.25.5
1.26.9
1
cloudtooling/moodle:5.3.0.2d3e3607acf56
stdlib@go1.26.4
1.26.9
1
cloudtooling/wordpress:7.1.3fb4863035a05
stdlib@go1.26.4
1.26.9
1
cmacrae/d2-prometheus-exporter:v0.1.0fc5fecba436e
stdlib@go1.15
1.26.9
1
cmacrae/lgtm:0.1.0dec8d490fe40
stdlib@go1.14.1
1.26.9
1
cockroachdb/cockroach-operator:v2.1.0983312754620
stdlib@go1.13.14
1.26.9
1
codecov/self-hosted-gateway:24.4.1de483faad6e5
stdlib@go1.22.0
1.26.9
1
codenotary/immudb:1.9.77c85d7cc4f22
stdlib@go1.18.10
1.26.9
1
codercom/code-server:4.11.0-debian1e2cc688008e
stdlib@go1.14.4
1.26.9
1
codercom/code-server:3.10.247605610ad8d
stdlib@go1.14.4
1.26.9
1
coderenvs/coder-service:1.44.61deffc4670e6
stdlib@go1.21.9
1.26.9
1
codeskyblue/gohttpserver:latestcaa862590e34
stdlib@go1.16.3
1.26.9
1
codiacimages/codiac-deployment-bundle:0.0.15d7d1e91eccde
stdlib@go1.24.11
1.26.9
1

syft 1.42.1 · advisories as of 11 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.