StackRadar

CVE-2026-94448

Medium

Advisory

Published 8 Oct 2026In the index since 9 Oct 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
5,533
of 18,090 indexed, latest versions
Container images
6,378
deployed by those charts
Fix available
2 of 3
affected packages

Reset context tracking on consecutive template expressions in html/template

Carried by container images the latest versions of 5,533 of 18,090 indexed charts deploy, on 6,378 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+212 more1.26.96,378
golang-1.19deb1.19.8-2no fix listed1
ingress-nginx-controller-1.15apk1.15.10-r31.15.10-r81
OSV records
CGA-98rx-6p2c-qw5vDEBIAN-CVE-2026-94448GO-2026-6599
Also known as
CGA-2h88-jxv5-q7mv, CGA-7269-wr3g-w84m, CGA-8p8w-2cqf-g6hq, CGA-9h83-8hpv-mrf5, CGA-qgc9-59hj-5mr6
Trending
Rank 12 in indexed charts, since 9 Oct 2026. See the ranking →

Charts affected

5,533 by stars
ChartLatestAffected imagesRadar Score
matrimonygabe565Verified publisher0.7.01 of 1See more

matrimony gabe565 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/gabe565/matrimony:latestd39a9d7c3e1b
stdlib@go1.22.0
1.26.9

Open the chart page →

1,670
podgrabgabe565Verified publisher0.5.21 of 1See more

podgrab gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/akhilrex/podgrab:1.0.0bce133f3f511
stdlib@go1.15.2
1.26.9

Open the chart page →

3,626
relax-soundsgabe565Verified publisher1.1.01 of 1See more

relax-sounds gabe565 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/gabe565/relax-sounds:latestd9330eda7d8e
stdlib@go1.27.1
1.26.9

Open the chart page →

617
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
stdlib@go1.19.8
1.26.9

Open the chart page →

15,042
smarter-device-managergabe565Verified publisher0.5.21 of 1See more

smarter-device-manager gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.11826b984e75d4
stdlib@go1.19.1
1.26.9

Open the chart page →

2,084
transsmutegabe565Verified publisher1.1.01 of 1See more

transsmute gabe565 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/gabe565/transsmute:latestc8ac95a30c31
stdlib@go1.24.1
1.26.9

Open the chart page →

1,345
guacamolegabibbo970.3.01 of 3See more

guacamole gabibbo97 0.3.0

1 of the 3 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
stdlib@go1.24.6
1.26.9

Open the chart page →

8,590
galoygaloymoney0.34.74 of 24See more

galoy galoymoney 0.34.7

4 of the 24 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.26.9
oryd/hydra:v2.2.02c93beb5e5f2
stdlib@go1.21.5
1.26.9
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.26.9
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.26.9

Open the chart page →

11,795
galoy-depsgaloymoney0.10.208 of 9See more

galoy-deps galoymoney 0.10.20

8 of the 9 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
stdlib@go1.18.9
1.26.9
otel/opentelemetry-collector-k8s:0.111.032b3c8296dcc
stdlib@go1.23.2
1.26.9
quay.io/jetstack/cert-manager-cainjector:v1.14.39395dec77fcf
stdlib@go1.21.7
1.26.9
quay.io/jetstack/cert-manager-controller:v1.14.364adcb95ce09
stdlib@go1.21.7
1.26.9
quay.io/jetstack/cert-manager-startupapicheck:v1.14.3df8677135139
stdlib@go1.21.7
1.26.9
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
stdlib@go1.21.7
1.26.9
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
stdlib@go1.20.5
1.26.9
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.26.9

Open the chart page →

17,684
lndgaloymoney0.10.61 of 3See more

lnd galoymoney 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.26.9

Open the chart page →

2,735
monitoringgaloymoney0.12.215 of 6See more

monitoring galoymoney 0.12.21

5 of the 6 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
stdlib@go1.23.1
1.26.9
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
stdlib@go1.23.2
1.26.9
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.26.9
quay.io/prometheus/prometheus:v2.55.0378f4e037035
stdlib@go1.23.2
1.26.9
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.26.9

Open the chart page →

8,128
galoygaloymoney20.34.74 of 24See more

galoy galoymoney2 0.34.7

4 of the 24 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
stdlib@go1.19.3
1.26.9
oryd/hydra:v2.2.02c93beb5e5f2
stdlib@go1.21.5
1.26.9
oryd/kratos:v1.0.0d06fc5845f63
stdlib@go1.20.5
1.26.9
oryd/oathkeeper:v0.40.6e8cb9b79a89c
stdlib@go1.20.5
1.26.9

Open the chart page →

11,795
galoy-depsgaloymoney20.10.208 of 9See more

galoy-deps galoymoney2 0.10.20

8 of the 9 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ayushsobti/kube-monkey:v0.5.24c94e8f8924e
stdlib@go1.18.9
1.26.9
otel/opentelemetry-collector-k8s:0.111.032b3c8296dcc
stdlib@go1.23.2
1.26.9
quay.io/jetstack/cert-manager-cainjector:v1.14.39395dec77fcf
stdlib@go1.21.7
1.26.9
quay.io/jetstack/cert-manager-controller:v1.14.364adcb95ce09
stdlib@go1.21.7
1.26.9
quay.io/jetstack/cert-manager-startupapicheck:v1.14.3df8677135139
stdlib@go1.21.7
1.26.9
quay.io/jetstack/cert-manager-webhook:v1.14.3d8ad5515f44f
stdlib@go1.21.7
1.26.9
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
stdlib@go1.20.5
1.26.9
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.26.9

Open the chart page →

17,684
lndgaloymoney20.10.61 of 3See more

lnd galoymoney2 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
stdlib@go1.22.5
1.26.9

Open the chart page →

2,735
monitoringgaloymoney20.12.215 of 6See more

monitoring galoymoney2 0.12.21

5 of the 6 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
stdlib@go1.23.1
1.26.9
quay.io/prometheus-operator/prometheus-config-reloader:v0.77.2c96d4fb1d57f
stdlib@go1.23.2
1.26.9
quay.io/prometheus/node-exporter:v1.8.24032c6d5bfd7
stdlib@go1.22.5
1.26.9
quay.io/prometheus/prometheus:v2.55.0378f4e037035
stdlib@go1.23.2
1.26.9
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.13.0639a1e2da549
stdlib@go1.22.5
1.26.9

Open the chart page →

8,128
gameserver-operatorgameserver-operator0.3.01 of 1See more

gameserver-operator gameserver-operator 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/idebeijer/gameserver-operator:latest1b099cfe9e5e
stdlib@go1.25.7
1.26.9

Open the chart page →

768
pagesgary-pages1.0.01 of 3See more

pages gary-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
stdlib@go1.24.6
1.26.9

Open the chart page →

21,310
alertmanager-discordgeek-cookbookVerified publisher1.3.21 of 1See more

alertmanager-discord geek-cookbook 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
rogerrum/alertmanager-discord:1.0.3827593369625
stdlib@go1.17.4
1.26.9

Open the chart page →

1,972
anonaddygeek-cookbookVerified publisher6.0.01 of 1See more

anonaddy geek-cookbook 6.0.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
anonaddy/anonaddy:0.12.3957a95565166
stdlib@go1.18.3
1.26.9

Open the chart page →

5,703
apache-musicindexgeek-cookbookVerified publisher2.4.21 of 1See more

apache-musicindex geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
stdlib@go1.18.4
1.26.9

Open the chart page →

16,183
autobrrgeek-cookbookVerified publisher1.1.31 of 1See more

autobrr geek-cookbook 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/autobrr/autobrr:v1.10.0d4022cd32df5
stdlib@go1.19.3
1.26.9

Open the chart page →

3,092
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
stdlib@go1.16.7
1.26.9

Open the chart page →

18,147
dendritegeek-cookbookVerified publisher6.4.01 of 1See more

dendrite geek-cookbook 6.4.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/dendrite-monolith:v0.9.43267d27d392f
stdlib@go1.18.5
1.26.9

Open the chart page →

3,090
duplicatigeek-cookbookVerified publisher5.4.21 of 1See more

duplicati geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/duplicati:latest78883c4ea7a3
stdlib@go1.24.9
1.26.9

Open the chart page →

1,878
embygeek-cookbookVerified publisher3.4.21 of 1See more

emby geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
stdlib@go1.15
1.26.9

Open the chart page →

9,943
gatusgeek-cookbookVerified publisher1.1.21 of 1See more

gatus geek-cookbook 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
twinproduction/gatus:v3.8.049dc0d9b2e2c
stdlib@go1.18.1
1.26.9

Open the chart page →

2,927
gonicgeek-cookbookVerified publisher6.4.21 of 1See more

gonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
sentriz/gonic:v0.13.1a74012a6adf3
stdlib@go1.16.4
1.26.9

Open the chart page →

4,778
gotifygeek-cookbookVerified publisher1.2.21 of 1See more

gotify geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
gotify/server:2.1.409c79bc1e403
stdlib@go1.16
1.26.9

Open the chart page →

4,883
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
stdlib@go1.15
1.26.9

Open the chart page →

12,541
jackettgeek-cookbookVerified publisher11.7.21 of 1See more

jackett geek-cookbook 11.7.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
stdlib@go1.18.3
1.26.9

Open the chart page →

10,975
lidarrgeek-cookbookVerified publisher14.2.21 of 1See more

lidarr geek-cookbook 14.2.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
stdlib@go1.16.7
1.26.9

Open the chart page →

15,847
maddygeek-cookbookVerified publisher3.2.01 of 1See more

maddy geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
foxcpp/maddy:v0.5.28fa2bd8f6830
stdlib@go1.17.2
1.26.9

Open the chart page →

3,757
minifluxgeek-cookbookVerified publisher5.2.01 of 2See more

miniflux geek-cookbook 5.2.0

1 of the 2 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
miniflux/miniflux:2.0.36e2fb990dae74
stdlib@go1.17.8
1.26.9

Open the chart page →

3,481
navidromegeek-cookbookVerified publisher6.4.21 of 1See more

navidrome geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
deluan/navidrome:0.43.04e9ae3bff6aa
stdlib@go1.16.4
1.26.9

Open the chart page →

4,902
nullservgeek-cookbookVerified publisher2.4.21 of 1See more

nullserv geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nullserv:v1.3.00792c7e6d814
stdlib@go1.16.5
1.26.9

Open the chart page →

2,099
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
stdlib@go1.18.4
1.26.9

Open the chart page →

13,483
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
stdlib@go1.15
1.26.9

Open the chart page →

19,375
owncloud-ocisgeek-cookbookVerified publisher2.4.21 of 1See more

owncloud-ocis geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
owncloud/ocis:1.7.0d2efcae92c84
stdlib@go1.16.5
1.26.9

Open the chart page →

4,461
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
stdlib@go1.18.3
1.26.9

Open the chart page →

21,621
pod-gatewaygeek-cookbookVerified publisher5.6.21 of 2See more

pod-gateway geek-cookbook 5.6.2

1 of the 2 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/gateway-admision-controller:v3.5.0175512bb3f61
stdlib@go1.18.3
1.26.9

Open the chart page →

3,327
pod-gateway-settergeek-cookbookVerified publisher1.0.01 of 1See more

pod-gateway-setter geek-cookbook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/gateway-admision-controller:v2.0.00d6d0df98fe4
stdlib@go1.16.4
1.26.9

Open the chart page →

2,813
qbittorrentgeek-cookbookVerified publisher13.5.21 of 1See more

qbittorrent geek-cookbook 13.5.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
stdlib@go1.16.8
1.26.9

Open the chart page →

13,377
radarrgeek-cookbookVerified publisher16.3.21 of 1See more

radarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
stdlib@go1.18.4
1.26.9

Open the chart page →

11,591
readarrgeek-cookbookVerified publisher6.4.21 of 1See more

readarr geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
stdlib@go1.15
1.26.9

Open the chart page →

9,108
satisfactorygeek-cookbookVerified publisher1.2.21 of 1See more

satisfactory geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:latestac252dba4165
stdlib@go1.18.1
1.26.9

Open the chart page →

3,449
searxgeek-cookbookVerified publisher5.6.23 of 4See more

searx geek-cookbook 5.6.2

3 of the 4 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
dalf/filtron:latestb19cbf5b2f37
stdlib@go1.18.2
1.26.9
dalf/morty:latest248a4849c350
stdlib@go1.18.2
1.26.9
library/caddy:2.2.0-alpine7367adca165f
stdlib@go1.15.2
1.26.9

Open the chart page →

10,638
skypilotgeek-cookbookVerified publisher0.0.13 of 3See more

skypilot geek-cookbook 0.0.1

3 of the 3 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
stdlib@go1.23.5
1.26.9
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
stdlib@go1.24.4
1.26.9
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.0c9f76a75fd00
stdlib@go1.24.4
1.26.9

Open the chart page →

11,421
torrservergeek-cookbookVerified publisher1.2.21 of 1See more

torrserver geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
smailkoz/torrserver:1.0.1117b52d15de8f0
stdlib@go1.17.5
1.26.9

Open the chart page →

4,232
transmissiongeek-cookbookVerified publisher8.4.31 of 1See more

transmission geek-cookbook 8.4.3

1 of the 1 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
stdlib@go1.18.4
1.26.9

Open the chart page →

13,227
vikunjageek-cookbookVerified publisher6.2.02 of 4See more

vikunja geek-cookbook 6.2.0

2 of the 4 container images this version deploys carry CVE-2026-94448.

Container imageDigestPackageFixed in
library/caddy:2.4.2-alpinefbc51bcf1ab0
stdlib@go1.16.5
1.26.9
vikunja/api:0.17.18cba0520bf8c
stdlib@go1.16.5
1.26.9

Open the chart page →

9,931

Container images carrying it

6,378 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
stdlib@go1.20.8
1.26.9
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
stdlib@go1.20.8
1.26.9
4
quay.io/jetstack/cert-manager-webhook:v1.13.148ea4a77dfa7
stdlib@go1.20.8
1.26.9
4
quay.io/openshift/origin-cli:latest486bf8e8f5b5
stdlib@go1.24.11
1.26.9
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
stdlib@go1.19.4
1.26.9
4
quay.io/prometheus/blackbox-exporter:latest:v0.29.09613f2884689
stdlib@go1.27.1
1.26.9
4
quay.io/prometheus/node-exporter:v1.11.10f422f62c15f
stdlib@go1.26.1
1.26.9
4
quay.io/prometheus/node-exporter:v1.5.039c642b2b337
stdlib@go1.19.3
1.26.9
4
quay.io/prometheus-operator/prometheus-config-reloader:v0.91.07d9e4eea5f11
stdlib@go1.25.9
1.26.9
4
quay.io/prometheus-operator/prometheus-operator:v0.50.0ab4f480f2cc6
stdlib@go1.16
1.26.9
4
quay.io/prometheus/prometheus:latest:v3.14.05ce7540c3c00
stdlib@go1.26.6
1.26.9
4
quay.io/thanos/thanos:v0.42.4b567818fe608
stdlib@go1.26.5
1.26.9
4
quay.io/zncdatadev/sig-storage/csi-provisioner:v5.1.0672e45d6a556
stdlib@go1.22.5
1.26.9
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.26.9
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.26.9
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.6.0c9f76a75fd00
stdlib@go1.24.4
1.26.9
4
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.16.0e750cd4b43f7
stdlib@go1.24.4
1.26.9
4
registry.k8s.io/metrics-server/metrics-server:v0.9.0d9862115e7c7
stdlib@go1.26.4
1.26.9
4
registry.k8s.io/prometheus-adapter/prometheus-adapter:v0.12.0932eae60e2bc
stdlib@go1.22.2
1.26.9
4
registry.k8s.io/sig-storage/csi-attacher:v4.8.169888dba5815
stdlib@go1.23.1
1.26.9
4
registry.k8s.io/sig-storage/csi-attacher:v4.13.0d1a26170efed
stdlib@go1.26.6
1.26.9
4
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.18.0b7fefd08651f
stdlib@go1.26.6
1.26.9
4
registry.k8s.io/sig-storage/csi-provisioner:v4.0.1bf5a235b67d8
stdlib@go1.21.5
1.26.9
4
registry.k8s.io/sig-storage/csi-resizer:v2.2.0a2d40c1c3ccb
stdlib@go1.26.3
1.26.9
4
registry.k8s.io/sig-storage/csi-snapshotter:v8.2.0dd788d79cf4c
stdlib@go1.23.1
1.26.9
4
registry.k8s.io/sig-storage/livenessprobe:v2.16.088092d100909
stdlib@go1.24.2
1.26.9
4
registry.k8s.io/sig-storage/livenessprobe:v2.18.0c4cc074199c0
stdlib@go1.25.7
1.26.9
4
registry.k8s.io/sig-storage/snapshot-controller:v8.6.081e79f205083
stdlib@go1.26.3
1.26.9
4
registry.k8s.io/sig-storage/snapshot-controller:v8.2.09dade8f2f3ab
stdlib@go1.23.1
1.26.9
4
alfhou/hammond:v0.0.24c85dc0293aa1
stdlib@go1.20.6
1.26.9
3
alpine/git:latesta4bb51f1a355
stdlib@go1.26.8
1.26.9
3
apache/apisix-ingress-controller:2.2.05c5efa4c7f2a
stdlib@go1.26.5
1.26.9
3
argoproj/argocd:v1.8.1830e86cacefd
stdlib@go1.14.12
1.26.9
3
bitnamilegacy/etcd:latest99b408c15272
stdlib@go1.23.10
1.26.9
3
bitnamilegacy/kubectl:latestcd354d5b2556
stdlib@go1.24.5
1.26.9
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.26.9
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
stdlib@go1.25.0
1.26.9
3
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
stdlib@go1.25.0
1.26.9
3
bitnami/sealed-secrets-controller:0.40.0b1ff382e9300
stdlib@go1.26.8
1.26.9
3
bitnami/valkey:latest3ab4091a7e3c
stdlib@go1.26.8
1.26.9
3
caddy/ingress:v0.2.118d1366fc0e9
stdlib@go1.21.4
1.26.9
3
ciscolabs/rtsp-server:latestb59fc10bb821
stdlib@go1.19.2
1.26.9
3
cloudflare/cloudflared:2026.9.3:latest072c067d25cc
stdlib@go1.26.8
1.26.9
3
cloudpirates/image-minio:RELEASE.2025-10-15T17-29-55Z-hardened8dc02a7e5093
stdlib@go1.25.7
1.26.9
3
csiplugin/csi-qingcloud:v1.4.00766163dc046
stdlib@go1.19.13
1.26.9
3
datawire/aes:1.14.48588eafe6862
stdlib@go1.15
1.26.9
3
derailed/popeye:v0.22.18e68e22c7663
stdlib@go1.23.5
1.26.9
3
dgraph/dgraph:v21.12.03b55ea83fffe
stdlib@go1.17.3
1.26.9
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
stdlib@go1.26.5
1.26.9
3
envoyproxy/gateway:v1.7.5156b7d32c73b
stdlib@go1.26.5
1.26.9
3

syft 1.42.1 · advisories as of 11 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.