StackRadar

CVE-2026-94440

Medium

Advisory

Published 8 Oct 2026In the index since 9 Oct 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
5,515
of 18,090 indexed, latest versions
Container images
6,355
deployed by those charts
Fix available
1 of 3
affected packages

Memory limit bypass when parsing MIME headers in net/textproto, mime/multipart

Carried by container images the latest versions of 5,515 of 18,090 indexed charts deploy, on 6,355 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+212 more1.26.96,355
golang-1.19deb1.19.8-2no fix listed1
ingress-nginx-controller-1.15apk1.15.10-r3no fix listed1
OSV records
CGA-2wpp-p453-fwrjDEBIAN-CVE-2026-94440GO-2026-6608
Also known as
CGA-8235-g5m3-vf73, CGA-frxc-9943-gmf8, CGA-gmgx-vgc6-mmw7, CGA-gw93-g38m-27f8, CGA-j2rm-vrxp-7gvc
Trending
Rank 8 in indexed charts, since 9 Oct 2026. See the ranking →

Charts affected

5,515 by stars
ChartLatestAffected imagesRadar Score
promlenschristianhuthVerified publisher1.6.01 of 1See more

promlens christianhuth 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
prom/promlens:v0.4.04a377d1a0eaa
stdlib@go1.26.5
1.26.9

Open the chart page →

339
sloopchristianhuthVerified publisher0.4.01 of 1See more

sloop christianhuth 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/salesforce/sloop:sha-2ce8bbe119e24f24b1d
stdlib@go1.16.15
1.26.9

Open the chart page →

3,352
arbitrumchronicleVerified publisher0.3.51 of 1See more

arbitrum chronicle 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
stdlib@go1.24.5
1.26.9

Open the chart page →

8,015
basechronicleVerified publisher0.0.91 of 1See more

base chronicle 0.0.9

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
stdlib@go1.22.10
1.26.9

Open the chart page →

5,702
ethereumchronicleVerified publisher0.3.21 of 1See more

ethereum chronicle 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ethereum/client-go:v1.16.532b878e4144a
stdlib@go1.24.9
1.26.9

Open the chart page →

1,744
ethereum-metrics-exporterchronicleVerified publisher0.1.51 of 1See more

ethereum-metrics-exporter chronicle 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
samcm/ethereum-metrics-exporter:0.29.291a2d9a015c1
stdlib@go1.25.8
1.26.9

Open the chart page →

991
goferchronicleVerified publisher0.4.51 of 1See more

gofer chronicle 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/gofer:0.613915d2e41e04
stdlib@go1.24.6
1.26.9

Open the chart page →

1,301
mantlechronicleVerified publisher0.1.41 of 1See more

mantle chronicle 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
mantlenetworkio/l2geth:v0.4.36bf383d14291
stdlib@go1.19.10
1.26.9

Open the chart page →

2,756
sith-exporterschronicleVerified publisher0.2.61 of 1See more

sith-exporters chronicle 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/oracles-updates-exporter:0.0.4992d0e793af6
stdlib@go1.19.13
1.26.9

Open the chart page →

1,497
spirechronicleVerified publisher0.3.71 of 1See more

spire chronicle 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/spire:0.68.379df4fb20322
stdlib@go1.25.5
1.26.9

Open the chart page →

2,010
zksyncchronicleVerified publisher0.1.21 of 2See more

zksync chronicle 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/postgres:143e7dd0bfd7bf
stdlib@go1.24.6
1.26.9

Open the chart page →

7,117
chubaofschubaofs1.5.11 of 6See more

chubaofs chubaofs 1.5.1

1 of the 6 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.26.9

Open the chart page →

4,833
ciliumcilium21.20.23 of 3See more

cilium cilium2 1.20.2

3 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.20.22939231d0d3e
stdlib@go1.26.8
1.26.9
quay.io/cilium/cilium-envoy:v1.37.6-1789133542-cbec91f666af0bf742da986d43832932dbb26b82af7382699576
stdlib@go1.27.1
1.26.9
quay.io/cilium/operator-generic:v1.20.264d8798350e8
stdlib@go1.26.8
1.26.9

Open the chart page →

1,840
tetragoncilium21.7.12 of 3See more

tetragon cilium2 1.7.1

2 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/cilium/tetragon:v1.7.1afc9458ba4bc
stdlib@go1.26.7
1.26.9
quay.io/cilium/tetragon-operator:v1.7.1cd8b71f6860e
stdlib@go1.26.7
1.26.9

Open the chart page →

512
chekrckotzbauerVerified publisher0.5.31 of 2See more

chekr ckotzbauer 0.5.3

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/ckotzbauer/chekrdigest-pinnedf299baf467b5
stdlib@go1.17.3
1.26.9

Open the chart page →

4,567
vulnerability-operatorckotzbauerVerified publisher0.31.151 of 1See more

vulnerability-operator ckotzbauer 0.31.15

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/ckotzbauer/vulnerability-operator:0.28.167008df32715c
stdlib@go1.26.4
1.26.9

Open the chart page →

442
clairclair-helmVerified publisher0.12.02 of 3See more

clair clair-helm 0.12.0

2 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/postgres:17-alpineb0f9560a2de0
stdlib@go1.24.6
1.26.9
quay.io/projectquay/clair:4.9.023329c3368e4
stdlib@go1.24.11
1.26.9

Open the chart page →

2,335
calico-cniclastixVerified publisher3.28.13 of 3See more

calico-cni clastix 3.28.1

3 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
calico/cni:v3.28.1e486870cfde8
stdlib@go1.22.5
1.26.9
calico/kube-controllers:v3.28.1eadb3a25109a
stdlib@go1.22.5
1.26.9
calico/node:v3.28.1d8c644a8a3ee
stdlib@go1.22.5
1.26.9

Open the chart page →

4,584
capi-kamaji-vsphere-fullclastixVerified publisher1.0.19 of 9See more

capi-kamaji-vsphere-full clastix 1.0.1

9 of the 9 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
registry.k8s.io/autoscaling/cluster-autoscaler:v1.33.06ef10d108e0e
stdlib@go1.24.4
1.26.9
registry.k8s.io/cloud-pv-vsphere/cloud-provider-vsphere:v1.32.0f9f4dfd733ab
stdlib@go1.23.0
1.26.9
registry.k8s.io/csi-vsphere/driver:v3.4.0f5349a8ae3f3
stdlib@go1.22.12
1.26.9
registry.k8s.io/csi-vsphere/syncer:v3.4.0179ebf195595
stdlib@go1.22.12
1.26.9
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.26.9
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.26.9
registry.k8s.io/sig-storage/csi-resizer:v1.13.28ddd178ba5d0
stdlib@go1.23.1
1.26.9
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.15f4bb469fec5
stdlib@go1.23.6
1.26.9
registry.k8s.io/sig-storage/livenessprobe:v2.15.02c5f9dc4ea5a
stdlib@go1.23.1
1.26.9

Open the chart page →

10,135
capsule-rancher-addonclastixVerified publisher0.1.15 of 5See more

capsule-rancher-addon clastix 0.1.1

5 of the 5 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
clastix/capsule-rancher-addon:v0.1.143d301afbca8
stdlib@go1.19.2
1.26.9
quay.io/jetstack/cert-manager-cainjector:v1.11.05c3eb25b0854
stdlib@go1.19.5
1.26.9
quay.io/jetstack/cert-manager-controller:v1.11.0d429b6d696e0
stdlib@go1.19.5
1.26.9
quay.io/jetstack/cert-manager-ctl:v1.11.074611761f052
stdlib@go1.19.5
1.26.9
quay.io/jetstack/cert-manager-webhook:v1.11.06730d96fc382
stdlib@go1.19.5
1.26.9

Open the chart page →

10,934
kamajiclastixVerified publisher0.0.0+latest3 of 4See more

kamaji clastix 0.0.0+latest

3 of the 4 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
clastix/kamaji:latestbb4bd5e1d9eb
stdlib@go1.26.5
1.26.9
quay.io/coreos/etcd:v3.5.628cb0630cb85
stdlib@go1.16.15
1.26.9
quay.io/coreos/etcd:v3.6.12702d7b4881c6
stdlib@go1.25.10
1.26.9

Open the chart page →

6,450
kamaji-consoleclastixVerified publisher0.1.31 of 1See more

kamaji-console clastix 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
stdlib@go1.23.7
1.26.9

Open the chart page →

3,350
kamaji-etcdclastixVerified publisher0.18.12 of 4See more

kamaji-etcd clastix 0.18.1

2 of the 4 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/coreos/etcd:v3.5.628cb0630cb85
stdlib@go1.16.15
1.26.9
quay.io/coreos/etcd:v3.6.12702d7b4881c6
stdlib@go1.25.10
1.26.9

Open the chart page →

14,697
local-path-provisionerclastixVerified publisher0.0.301 of 1See more

local-path-provisioner clastix 0.0.30

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.309b9148811700
stdlib@go1.23.1
1.26.9

Open the chart page →

1,672
vcloud-csiclastixVerified publisher1.6.04 of 5See more

vcloud-csi clastix 1.6.0

4 of the 5 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.26.9
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.26.9
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.26.9
registry.k8s.io/sig-storage/csi-resizer:v1.4.09ebbf9f023e7
stdlib@go1.17.3
1.26.9

Open the chart page →

11,743
cloudflare-ddnsclouddrove0.1.51 of 1See more

cloudflare-ddns clouddrove 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
favonia/cloudflare-ddns:15e61736b982b
stdlib@go1.27.1
1.26.9

Open the chart page →

124
cloudflared-tunnelclouddrove0.1.41 of 1See more

cloudflared-tunnel clouddrove 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2025.8.0eb5c9324efe3
stdlib@go1.24.4
1.26.9

Open the chart page →

2,350
cronjobclouddrove1.0.11 of 1See more

cronjob clouddrove 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
library/ubuntu:latestf144425ff09b
stdlib@go1.26.7
1.26.9

Open the chart page →

610
kube-acp-stackcloudentity2.29.13 of 7See more

kube-acp-stack cloudentity 2.29.1

3 of the 7 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
bitnamilegacy/redis-cluster:7.4.3-debian-12-r0a53d023fdfaf
stdlib@go1.23.8
1.26.9
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
stdlib@go1.21.13
1.26.9
gcr.io/cockroachlabs-helm-charts/cockroach-self-signer-cert:1.3e225fe7eaa55
stdlib@go1.13.14
1.26.9

Open the chart page →

24,606
openbankingcloudentity0.1.96 of 6See more

openbanking cloudentity 0.1.9

6 of the 6 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
stdlib@go1.15.14
1.26.9
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
stdlib@go1.15.14
1.26.9
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
stdlib@go1.15.2
1.26.9
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
stdlib@go1.16.6
1.26.9
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
stdlib@go1.15.2
1.26.9
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
stdlib@go1.15.2
1.26.9

Open the chart page →

24,753
cloudflare-ddns-updatecloudflare-ddns-update0.1.21 of 1See more

cloudflare-ddns-update cloudflare-ddns-update 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
stdlib@go1.22.4
1.26.9

Open the chart page →

1,829
cloudflare-dyndnscloudflare-dyndnsVerified publisher1.1.01 of 1See more

cloudflare-dyndns cloudflare-dyndns 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/msueberkrueb/cloudflare-dyndns:1.0.0e5c945a3b000
stdlib@go1.25.1
1.26.9

Open the chart page →

622
cloudflare-tunnel-ingress-controllercloudflare-tunnel-ingress-controller0.2.31 of 1See more

cloudflare-tunnel-ingress-controller cloudflare-tunnel-ingress-controller 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/oliverbaehler/cloudflare-tunnel-ingress-controller:0.2.30aec31e36d95
stdlib@go1.23.7
1.26.9

Open the chart page →

873
cloudfront-tenant-operatorcloudfront-tenant-operatorVerified publisher0.3.01 of 1See more

cloudfront-tenant-operator cloudfront-tenant-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/dsp0x4/cloudfront-tenant-operator:0.3.0eb40174cd20d
stdlib@go1.26.2
1.26.9

Open the chart page →

566
hcloud-ccm-mgmtcloudhippieVerified publisher1.13.01 of 1See more

hcloud-ccm-mgmt cloudhippie 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
hetznercloud/hcloud-cloud-controller-manager:v1.39.0d6fee5698759
stdlib@go1.26.8
1.26.9

Open the chart page →

238
hcloud-csi-mgmtcloudhippieVerified publisher2.11.05 of 5See more

hcloud-csi-mgmt cloudhippie 2.11.0

5 of the 5 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
hetznercloud/hcloud-csi-driver:v2.23.0024ea4b07161
stdlib@go1.26.7
1.26.9
registry.k8s.io/sig-storage/csi-attacher:v4.13.0d1a26170efed
stdlib@go1.26.6
1.26.9
registry.k8s.io/sig-storage/csi-provisioner:v6.4.06ebe60fd8ed6
stdlib@go1.26.6
1.26.9
registry.k8s.io/sig-storage/csi-resizer:v2.3.048fb3deb93cd
stdlib@go1.26.6
1.26.9
registry.k8s.io/sig-storage/livenessprobe:v2.20.019f2cf2f40e1
stdlib@go1.26.6
1.26.9

Open the chart page →

953
hcloud-csi-usercloudhippieVerified publisher1.8.03 of 3See more

hcloud-csi-user cloudhippie 1.8.0

3 of the 3 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
hetznercloud/hcloud-csi-driver:v2.23.0024ea4b07161
stdlib@go1.26.7
1.26.9
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.18.0b7fefd08651f
stdlib@go1.26.6
1.26.9
registry.k8s.io/sig-storage/livenessprobe:v2.20.019f2cf2f40e1
stdlib@go1.26.6
1.26.9

Open the chart page →

668
cloudian-exportercloudian-exporter0.1.41 of 1See more

cloudian-exporter cloudian-exporter 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/dodevops/cloudian-exporter:0.1.18b7f2816541c
stdlib@go1.23.2
1.26.9

Open the chart page →

1,311
mercurecloudnativeapp1.0.21 of 1See more

mercure cloudnativeapp 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
dunglas/mercure:v0916834e49961
stdlib@go1.26.3
1.26.9

Open the chart page →

1,403
nginx-ingress-controllercloudnativeapp3.4.51 of 2See more

nginx-ingress-controller cloudnativeapp 3.4.5

1 of the 2 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
bitnami/nginx:latestb8d42f076789
stdlib@go1.26.8
1.26.9

Open the chart page →

111
argocd-operatorcloud-native-toolkit0.6.11 of 1See more

argocd-operator cloud-native-toolkit 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
bitnami/kubectl:latestf7f9e4f64d9e
stdlib@go1.26.8
1.26.9

Open the chart page →

141
cp4d-deployercloud-native-toolkit1.0.01 of 1See more

cp4d-deployer cloud-native-toolkit 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
stdlib@go1.19.10
1.26.9

Open the chart page →

26,588
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
stdlib@go1.17.5
1.26.9

Open the chart page →

8,068
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
stdlib@go1.18.1
1.26.9

Open the chart page →

8,269
ocs-operatorcloud-native-toolkit0.2.41 of 1See more

ocs-operator cloud-native-toolkit 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:lateste7965645fac6
stdlib@go1.26.7
1.26.9

Open the chart page →

505
pact-brokercloud-native-toolkit0.3.01 of 1See more

pact-broker cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.101.0.0a3021fc42834
stdlib@go1.14.4
1.26.9

Open the chart page →

3,878
refarch-infraconfigcloud-native-toolkit0.2.21 of 1See more

refarch-infraconfig cloud-native-toolkit 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:lateste7965645fac6
stdlib@go1.26.7
1.26.9

Open the chart page →

505
robot-shopcloud-native-toolkit1.1.12 of 12See more

robot-shop cloud-native-toolkit 1.1.1

2 of the 12 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.26.9
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.26.9

Open the chart page →

39,467
tool-testcloud-native-toolkit0.2.11 of 1See more

tool-test cloud-native-toolkit 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
bitnami/nginx:latestb8d42f076789
stdlib@go1.26.8
1.26.9

Open the chart page →

111
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad5 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

5 of the 6 container images this version deploys carry CVE-2026-94440.

Container imageDigestPackageFixed in
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
stdlib@go1.20.12
1.26.9
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
stdlib@go1.23.8
1.26.9
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
stdlib@go1.19.1
1.26.9
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
stdlib@go1.24.6
1.26.9
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
stdlib@go1.23.8
1.26.9

Open the chart page →

22,851

Container images carrying it

6,355 by charts deploying them

A fixed version is listed for 1 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ethpandaops/tracoor:latest89424dbe2d6b
stdlib@go1.26.1
1.26.9
3
glanceapp/glance:latest:v0.8.69dfb09470b20
stdlib@go1.27.1
1.26.9
3
goharbor/harbor-core:v2.15.2d7b780d23721
stdlib@go1.26.4
1.26.9
3
goharbor/harbor-jobservice:v2.15.2f71a4452a095
stdlib@go1.26.4
1.26.9
3
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
stdlib@go1.26.4
1.26.9
3
goharbor/registry-photon:v2.15.2c4ebef61ceb5
stdlib@go1.26.4
1.26.9
3
goharbor/trivy-adapter-photon:v2.15.2215c07b71c37
stdlib@go1.26.4
1.26.9
3
grafana/grafana:8.2.500568d89c4f8
stdlib@go1.17
1.26.9
3
grafana/grafana:13.1.0121a7a9ece6d
stdlib@go1.25.7
1.26.9
3
grafana/grafana:13.2.2-distroless69a5d2d957ca
stdlib@go1.26.7
1.26.9
3
grafana/grafana:11.3.0a0f881232a6f
stdlib@go1.23.1
1.26.9
3
grafana/loki:3.7.8:latest1107dd5274e0
stdlib@go1.26.6
1.26.9
3
grafana/loki:3.6.1144148ad243c0
stdlib@go1.26.2
1.26.9
3
grafana/loki:3.4.258a6c186ce78
stdlib@go1.23.6
1.26.9
3
grafana/loki-canary:3.6.70dac7d5cb383
stdlib@go1.24.13
1.26.9
3
grafana/promtail:2.4.2626900031c4e
stdlib@go1.17.2
1.26.9
3
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.26.9
3
hashicorp/consul:2.0.41c59f007df8e
stdlib@go1.26.7
1.26.9
3
hashicorp/consul-k8s-control-plane:2.0.49334d7f4bcf0
stdlib@go1.26.7
1.26.9
3
hashicorp/http-echo:1.0.0:latestfcb75f691c8b
stdlib@go1.21.1
1.26.9
3
hashicorp/vault:2.0.45be49781ecf7
stdlib@go1.26.5
1.26.9
3
hashicorp/vault-k8s:1.7.655e27b080c9b
stdlib@go1.26.5
1.26.9
3
hetznercloud/hcloud-csi-driver:v2.23.0024ea4b07161
stdlib@go1.26.7
1.26.9
3
jacobalberty/unifi:v10.0.162896c0ab82d33
stdlib@go1.24.6
1.26.9
3
kubegems/kubegems:v1.24.10a730bcf9322a
stdlib@go1.24.10
1.26.9
3
kubernetesui/dashboard-api:1.14.096a702cfd339
stdlib@go1.23.12
1.26.9
3
kubernetesui/dashboard-auth:1.4.053e9917898bf
stdlib@go1.23.12
1.26.9
3
kubernetesui/dashboard-metrics-scraper:1.2.25154b68252bd
stdlib@go1.23.4
1.26.9
3
kubernetesui/dashboard-web:1.7.0cc7c31bd2d84
stdlib@go1.23.9
1.26.9
3
kubespheredev/kube-webhook-certgen:v1.1.123a03c9c381f
stdlib@go1.16.9
1.26.9
3
l7mp/stunner-auth-server:devc4654dade66e
stdlib@go1.27.1
1.26.9
3
library/caddy:latestf2a1290d0463
stdlib@go1.26.8
1.26.9
3
library/docker:20.10-dind:20-dindaf96c680a7e1
stdlib@go1.19.7
1.26.9
3
library/mongo:8:8.3.11:latest5d7043a4ffe0
stdlib@go1.26.5
1.26.9
3
library/mongo:7:7.09854f7139445
stdlib@go1.26.5
1.26.9
3
library/nats:2.10-alpineb83efabe3e7d
stdlib@go1.24.2
1.26.9
3
library/nats:latestcd3fcd4ecdda
stdlib@go1.27.1
1.26.9
3
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.26.9
3
library/postgres:15.7-alpine:15.7-alpine3.20468d34fefd63
stdlib@go1.18.2
1.26.9
3
library/postgres:14-alpine4ea9e5ed0659
stdlib@go1.24.6
1.26.9
3
library/postgres:115d2aa4a7b5f9
stdlib@go1.16.7
1.26.9
3
library/postgres:1665b16a8b326e
stdlib@go1.24.6
1.26.9
3
library/postgres:18:18.6-trixie6737476511d4
stdlib@go1.24.6
1.26.9
3
library/postgres:15724292da1f2e
stdlib@go1.24.6
1.26.9
3
library/registry:3.1.1:latest1be55279f18a
stdlib@go1.25.9
1.26.9
3
library/traefik:v3.7.1324841fe2de73
stdlib@go1.26.8
1.26.9
3
mcp/grafana:latest9362bcf6aa0e
stdlib@go1.26.5
1.26.9
3
meshery/meshery:stable-latest44b64ee128fb
stdlib@go1.26.4
1.26.9
3
mikefarah/yq:2.4.16fc625c402de
stdlib@go1.13.3
1.26.9
3
minio/operator:v4.3.754393e03f3b2
stdlib@go1.17.4
1.26.9
3

syft 1.42.1 · advisories as of 10 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.