StackRadar

CVE-2026-97032

Medium

Advisory

Published 8 Oct 2026In the index since 9 Oct 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
5,553
of 18,090 indexed, latest versions
Container images
6,402
deployed by those charts
Fix available
8 of 9
affected packages

HTTP/2 server crash due to HPACK encoder race in net/http

Carried by container images the latest versions of 5,553 of 18,090 indexed charts deploy, on 6,402 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+212 more1.26.9, 1.27.26,378
golang.org/x/netgolangv0.0.0-20170114055629-f2499483f923, v0.0.0-20180301190904-22ae77b79946, v0.0.0-20180811021610-c39426892332, v0.0.0-20180906233101-161cd47e91fd+227 more0.60.05,149
golang-1.19deb1.19.8-2no fix listed1
helm-4apk4.3.0-r04.3.0-r21
ingress-nginx-controller-1.15apk1.15.10-r31.15.10-r81
kineapk0.17.1-r10.17.2-r21
kubernetes-1.37apk1.37.1-r01.37.1-r21
runcapk1.5.2-r01.5.2-r31
tetragonapk1.7.1-r41.7.1-r61
OSV records
CGA-4653-rw6m-872gCGA-4h9w-grf4-6jppCGA-8xvx-5mh6-vrc3CGA-9hgh-r65w-7q99CGA-f937-jwj2-rj5jCGA-fjhw-67fq-pm89DEBIAN-CVE-2026-97032GO-2026-6617
Also known as
CGA-387c-5f4p-4rh4, CGA-3qgw-9846-f468, CGA-499x-7xc5-927w, CGA-4qpc-rjrp-f4h4, CGA-5pv4-5xjw-qg97, CGA-5rcr-cqmr-f8hp, CGA-5vh8-jrpp-m4r3, CGA-8g7x-r6mw-97j8, CGA-8mf9-xfh8-jx3h, CGA-923f-66wm-xfq4, CGA-fjfp-jwwq-vjp3, CGA-gg5j-j7wm-wf6w, CGA-jrgf-gwq3-rf5w, CGA-m46j-x3g6-mqj4, CGA-mq7q-c763-9cvx, CGA-p4p3-mvmj-v95v, CGA-qpfw-4v8x-3667, CGA-qpqr-hw3x-7qxj, CGA-qqxw-hjpg-6rhv, CGA-r654-5gg7-p6xf, CGA-rggh-6rrq-mfp4, CGA-rwc6-gqq6-4p7r, CGA-vh2x-9247-h576, CGA-w2j8-94m3-rxc6, CGA-w2rp-6hc9-f8qw, CGA-w39g-2gpg-cfqr
Trending
Rank 11 in indexed charts, since 9 Oct 2026. See the ranking →

Charts affected

5,553 by stars
ChartLatestAffected imagesRadar Score
airbyte-keycloakairbyteVerified publisher0.1.21 of 2See more

airbyte-keycloak airbyte 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
library/postgres:17d74eeac9a635
stdlib@go1.24.6
1.26.9

Open the chart page →

1,919
pod-sweeperairbyteVerified publisher1.5.11 of 1See more

pod-sweeper airbyte 1.5.1

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
airbyte/pod-sweeper:1.5.198d2c39d512e
golang.org/x/net@v0.26.0
stdlib@go1.23.4
0.60.0
1.26.9

Open the chart page →

5,823
airbyteairbyte-v2Verified publisher2.4.03 of 10See more

airbyte airbyte-v2 2.4.0

3 of the 10 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
airbyte/db:2.4.091f7b485f019
stdlib@go1.24.6
1.26.9
airbyte/minio:RELEASE.2023-11-20T22-40-07Zfdae972eaf0e
golang.org/x/net@v0.17.0
stdlib@go1.21.4
0.60.0
1.26.9
temporalio/auto-setup:1.27.2b44cbfeb43db
golang.org/x/net@v0.34.0
stdlib@go1.23.2
0.60.0
1.26.9

Open the chart page →

15,544
airports-kafkaairports-kafka0.1.01 of 2See more

airports-kafka airports-kafka 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
golang.org/x/net@v0.0.0-20211216030914-fe4d6282115f
stdlib@go1.17.10
0.60.0
1.26.9

Open the chart page →

6,066
airports-postgresairports-postgres0.1.01 of 1See more

airports-postgres airports-postgres 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
postgis/postgis:latest01a6a70e41e6
stdlib@go1.18.2
1.26.9

Open the chart page →

1,893
akeyless-csi-providerakeyless-services-helmVerified publisher1.0.41 of 1See more

akeyless-csi-provider akeyless-services-helm 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
akeyless/akeyless-csi-provider:lateste48bddc5dd72
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.60.0
1.26.9

Open the chart page →

626
akeyless-gatewayakeyless-services-helmVerified publisher3.8.01 of 2See more

akeyless-gateway akeyless-services-helm 3.8.0

1 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
akeyless/gateway:5.5.053301745cb50
golang.org/x/net@v0.58.0
stdlib@go1.26.6
0.60.0
1.26.9

Open the chart page →

1,420
akeyless-secrets-injectionakeyless-services-helmVerified publisher2.4.01 of 1See more

akeyless-secrets-injection akeyless-services-helm 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
akeyless/k8s-webhook-server:0.39.0996cd9afb3b4
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.60.0
1.26.9

Open the chart page →

737
akriakri0.12.551 of 3See more

akri akri 0.12.55

1 of the 3 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.9
0.60.0
1.26.9

Open the chart page →

2,650
aktoakto0.2.01 of 7See more

akto akto 0.2.0

1 of the 7 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.60.0
1.26.9

Open the chart page →

14,532
akto-ai-guardrailsakto0.1.21 of 2See more

akto-ai-guardrails akto 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-agent-guard-service:latest5c6ff17c5849
stdlib@go1.25.5
1.26.9

Open the chart page →

568
akto-ai-guardrails-v2akto0.3.02 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

2 of the 6 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
golang.org/x/net@v0.40.0
stdlib@go1.26.3
0.60.0
1.26.9
aktosecurity/guardrails-service:2.14.8a6218d07e84f
golang.org/x/net@v0.55.0
stdlib@go1.25.14
0.60.0
1.26.9

Open the chart page →

51,564
akto-aws-api-gateway-connectorakto0.1.11 of 1See more

akto-aws-api-gateway-connector akto 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/mirror-api-logging:api-gateway-logging-multi-logging1a1bc76d50fe
stdlib@go1.23.3
1.26.9

Open the chart page →

821
akto-central-setupakto1.2.43 of 5See more

akto-central-setup akto 1.2.4

3 of the 5 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/akto-threat-detection-backend:1.18.75a0c66e59678
stdlib@go1.26.7
1.26.9
library/eclipse-temurin:213e3c176ffed1
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.2.28e01c0305844
stdlib@go1.26.4
1.26.9

Open the chart page →

4,544
akto-hybrid-redactakto1.44.84 of 5See more

akto-hybrid-redact akto 1.44.8

4 of the 5 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.60.0
1.26.9
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:1.74.7_local6b75164ae737
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.74.7_local500745200425
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.1-1-ubi9d20bd62f0182
stdlib@go1.25.4
1.26.9

Open the chart page →

6,143
akto-k8s-agentakto0.1.21 of 1See more

akto-k8s-agent akto 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/mirror-api-logging:k8s_agentc8266e943ff9
golang.org/x/net@v0.56.0
stdlib@go1.26.8
0.60.0
1.26.9

Open the chart page →

267
akto-k8s-ebpfakto0.1.31 of 1See more

akto-k8s-ebpf akto 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/mirror-api-logging:k8s_ebpf3e506f5e5f47
golang.org/x/net@v0.38.0
stdlib@go1.26.5
0.60.0
1.26.9

Open the chart page →

979
akto-k8s-ebpf-openshiftakto0.1.11 of 1See more

akto-k8s-ebpf-openshift akto 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/mirror-api-logging:k8s_ebpf_core_impd94ce715f051
golang.org/x/net@v0.52.0
stdlib@go1.25.9
0.60.0
1.26.9

Open the chart page →

1,799
akto-mini-runtimeakto0.7.234 of 5See more

akto-mini-runtime akto 0.7.23

4 of the 5 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latesteeff3738d708
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/akto-threat-detection:latesta1fe1ef75a55
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.2.2-1-ubi98e01c0305844
stdlib@go1.26.4
1.26.9
public.ecr.aws/aktosecurity/keelhq-keel:latest1eb61443d68e
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.60.0
1.26.9

Open the chart page →

6,304
akto-mini-runtime-shaakto0.7.231 of 3See more

akto-mini-runtime-sha akto 0.7.23

1 of the 3 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/confluentinc-cp-kafkadigest-pinnedd20bd62f0182
stdlib@go1.25.4
1.26.9

Open the chart page →

4,178
akto-mini-testingakto1.46.03 of 5See more

akto-mini-testing akto 1.46.0

3 of the 5 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.74.8_localfa276f7090a4
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.2.2-1-ubi98e01c0305844
stdlib@go1.26.4
1.26.9
public.ecr.aws/aktosecurity/keelhq-keel:akto_v1.0.01eb61443d68e
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.60.0
1.26.9

Open the chart page →

6,025
akto-mini-testing-kafkaakto1.42.11 of 5See more

akto-mini-testing-kafka akto 1.42.1

1 of the 5 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.60.0
1.26.9

Open the chart page →

7,768
akto-mrs-runtime-combinedakto0.0.21 of 2See more

akto-mrs-runtime-combined akto 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
stdlib@go1.24.6
1.26.9

Open the chart page →

2,580
akto-protectionakto0.1.01 of 4See more

akto-protection akto 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.60.0
1.26.9

Open the chart page →

12,611
akto-regional-setupakto1.4.104 of 9See more

akto-regional-setup akto 1.4.10

4 of the 9 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/guardrails-service:2.40.663e9235153a3
golang.org/x/net@v0.55.0
stdlib@go1.25.14
0.60.0
1.26.9
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
stdlib@go1.26.5
1.26.9
public.ecr.aws/aktosecurity/akto-threat-detection:1.18.755b1bd20ef02
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.2.28e01c0305844
stdlib@go1.26.4
1.26.9

Open the chart page →

32,802
akto-runtimeakto0.1.82 of 2See more

akto-runtime akto 0.1.8

2 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest6b75164ae737
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.2.2-1-ubi98e01c0305844
stdlib@go1.26.4
1.26.9

Open the chart page →

1,867
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
stdlib@go1.22.5
1.26.9

Open the chart page →

6,212
akto-testing-db-layerakto1.42.171 of 2See more

akto-testing-db-layer akto 1.42.17

1 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
keelhq/keel:latest73714afb4443
golang.org/x/net@v0.33.0
stdlib@go1.23.4
0.60.0
1.26.9

Open the chart page →

41,916
akto-threat-backendakto0.1.52 of 2See more

akto-threat-backend akto 0.1.5

2 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/akto-threat-detection-backend:latestd9d0e7c78578
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.2.2-1-ubi98e01c0305844
stdlib@go1.26.4
1.26.9

Open the chart page →

1,943
akto-threat-clientakto0.2.02 of 2See more

akto-threat-client akto 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-threat-detection:latestf14d68a2b1cf
stdlib@go1.26.7
1.26.9
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.2.2-1-ubi98e01c0305844
stdlib@go1.26.4
1.26.9

Open the chart page →

1,974
api-gateway-loggingakto0.1.21 of 1See more

api-gateway-logging akto 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
aktosecurity/mirror-api-logging:api-gateway-logging-openapi12ed2544756f
stdlib@go1.23.3
1.26.9

Open the chart page →

821
browserlessalekcVerified publisher1.3.01 of 1See more

browserless alekc 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/browserless/chrome:v2.57.0f4fcb054396a
stdlib@go1.26.7
1.26.9

Open the chart page →

1,400
cliproxyapialekcVerified publisher1.0.71 of 1See more

cliproxyapi alekc 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
eceasy/cli-proxy-api:v8.0.23fc250aafe345
golang.org/x/net@v0.57.0
0.60.0

Open the chart page →

1,289
gitlab-runner-operatoralekcVerified publisher2.5.12 of 2See more

gitlab-runner-operator alekc 2.5.1

2 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/alekc/gitlab-runner-operator:v2.1.0be19341e829b
golang.org/x/net@v0.57.0
stdlib@go1.26.6
0.60.0
1.26.9
registry.k8s.io/kubectl:v1.37.1b7cab618e281
golang.org/x/net@v0.57.0
stdlib@go1.26.8
0.60.0
1.26.9

Open the chart page →

419
gostalekcVerified publisher0.3.01 of 1See more

gost alekc 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
gogost/gost:3.3.0f7a958c45192
golang.org/x/net@v0.57.0
stdlib@go1.26.7
0.60.0
1.26.9

Open the chart page →

454
kpubberalekcVerified publisher0.0.41 of 1See more

kpubber alekc 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/alekc/kpubber:v0.0.2a462d5797e14
golang.org/x/net@v0.0.0-20210520170846-37e1c6afe023
stdlib@go1.16.9
0.60.0
1.26.9

Open the chart page →

3,334
plexalekcVerified publisher2.10.11 of 1See more

plex alekc 2.10.1

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
linuxserver/plex:1.43.406e07af2851e
stdlib@go1.26.7
1.26.9

Open the chart page →

670
rabbitmq-cluster-operatoralekcVerified publisher2.9.01 of 1See more

rabbitmq-cluster-operator alekc 2.9.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
rabbitmqoperator/cluster-operator:2.19.2840be4bad78e
golang.org/x/net@v0.51.0
stdlib@go1.25.8
0.60.0
1.26.9

Open the chart page →

638
smokeping-exporteralekcVerified publisher0.3.01 of 1See more

smokeping-exporter alekc 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
quay.io/superq/smokeping-prober:v0.12.02524b895bdae
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.60.0
1.26.9

Open the chart page →

577
valkey-operatoralekcVerified publisher0.4.01 of 1See more

valkey-operator alekc 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/hyperspike/valkey-operator:v0.0.617d8c669f11a4
golang.org/x/net@v0.44.0
stdlib@go1.25.2
0.60.0
1.26.9

Open the chart page →

771
vault-operatoralekcVerified publisher1.26.21 of 1See more

vault-operator alekc 1.26.2

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/bank-vaults/vault-operator:v1.24.1b5529976f0f6
golang.org/x/net@v0.58.0
stdlib@go1.27.1
0.60.0
1.27.2

Open the chart page →

255
alertmanager-graph-bridgealertmanager-graph-bridge1.0.01 of 1See more

alertmanager-graph-bridge alertmanager-graph-bridge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/slauger/alertmanager-graph-bridge:1.0.0ccca112b6557
stdlib@go1.27.1
1.27.2

Open the chart page →

250
mautrix-signalalexanderbadel0.1.11 of 2See more

mautrix-signal alexanderbadel 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
signald/signald:0.18.20ffad7ccc2eb
stdlib@go1.18.1
1.26.9

Open the chart page →

3,401
pushproxalexmorbo-pushproxVerified publisher1.0.01 of 1See more

pushprox alexmorbo-pushprox 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
prometheuscommunity/pushprox:v0.2.02f32058f4fae
stdlib@go1.22.1
1.26.9

Open the chart page →

966
qbittorrentalexmorbo-qbittorrentVerified publisher1.2.11 of 1See more

qbittorrent alexmorbo-qbittorrent 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/squat/generic-device-plugin:36bfc606bba2064de6ede0ff2764cbb52edff70dba6f0b4cf6c8
golang.org/x/net@v0.17.0
stdlib@go1.20.2
0.60.0
1.26.9

Open the chart page →

1,659
quialexmorbo-quiVerified publisher0.1.01 of 1See more

qui alexmorbo-qui 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/autobrr/qui:v1.14.110b7945d4f09
golang.org/x/net@v0.49.0
stdlib@go1.25.7
0.60.0
1.26.9

Open the chart page →

2,104
rabbitmq-cluster-operatoralexmorbo-rabbitmq-cluster-operatorVerified publisher1.0.01 of 1See more

rabbitmq-cluster-operator alexmorbo-rabbitmq-cluster-operator 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
quay.io/rabbitmqoperator/cluster-operator:2.22.52727b84b835a
golang.org/x/net@v0.58.0
stdlib@go1.26.7
0.60.0
1.26.9

Open the chart page →

243
rabbitmq-messaging-topology-operatoralexmorbo-rabbitmq-messaging-topology-operatorVerified publisher1.0.11 of 1See more

rabbitmq-messaging-topology-operator alexmorbo-rabbitmq-messaging-topology-operator 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
quay.io/rabbitmqoperator/messaging-topology-operator:1.20.229174b668012
golang.org/x/net@v0.58.0
stdlib@go1.26.7
0.60.0
1.26.9

Open the chart page →

243
slskdalexmorbo-slskdVerified publisher0.3.01 of 1See more

slskd alexmorbo-slskd 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
stdlib@go1.22.2
1.26.9

Open the chart page →

2,374
wireguardalexpressoVerified publisher0.1.71 of 2See more

wireguard alexpresso 0.1.7

1 of the 2 container images this version deploys carry CVE-2026-97032.

Container imageDigestPackageFixed in
linuxserver/wireguard:latest216ca1ce9da7
golang.org/x/net@v0.47.0
stdlib@go1.26.8
0.60.0
1.26.9

Open the chart page →

747

Container images carrying it

6,402 by charts deploying them

A fixed version is listed for 8 of the 9 affected packages.

Container imageDigestPackageFixed inUsed by
ethpandaops/assertoor:latest1efa2fba6711
golang.org/x/net@v0.56.0
stdlib@go1.25.11
0.60.0
1.26.9
1
ethpandaops/blob-me-baby:latestad26158420dd
stdlib@go1.20.1
1.26.9
1
ethpandaops/buildoor:maina04c231ce0e8
golang.org/x/net@v0.57.0
stdlib@go1.26.8
0.60.0
1.26.9
1
ethpandaops/cbt:latest99f52ce7bad8
golang.org/x/net@v0.57.0
stdlib@go1.26.6
0.60.0
1.26.9
1
ethpandaops/cbt-api:latestd60029a656db
golang.org/x/net@v0.52.0
stdlib@go1.26.3-X:jsonv2
0.60.0
1.26.9
1
ethpandaops/clickhouse-movoor:latestc0e6cc6542c1
golang.org/x/net@v0.55.0
stdlib@go1.26.4
0.60.0
1.26.9
1
ethpandaops/contributoor:latest1edd4074fd79
golang.org/x/net@v0.53.0
stdlib@go1.26.1
0.60.0
1.26.9
1
ethpandaops/dora:master13be067c3cf7
golang.org/x/net@v0.58.0
stdlib@go1.26.8
0.60.0
1.26.9
1
ethpandaops/dugtrio:1.0.0e261d1734e9f
golang.org/x/net@v0.10.0
stdlib@go1.21.4
0.60.0
1.26.9
1
ethpandaops/ethereum-address-metrics-exporter:latest431cd3790ed2
stdlib@go1.26.1
1.26.9
1
ethpandaops/ethereumjs:masterfb84b718500f
stdlib@go1.23.12
1.26.9
1
ethpandaops/ethereum-metrics-exporter:0.21.0d1780db2e286
golang.org/x/net@v0.0.0-20220607020251-c690dde0001d
stdlib@go1.18.10
0.60.0
1.26.9
1
ethpandaops/ethereum-validator-metrics-exporter:latest38448e9d4aef
stdlib@go1.19.10
1.26.9
1
ethpandaops/execution-processor:latest5c4832e9588f
stdlib@go1.25.4
1.26.9
1
ethpandaops/forky:debian-latestc937f4ba737c
golang.org/x/net@v0.52.0
stdlib@go1.26.4
0.60.0
1.26.9
1
ethpandaops/panda-pulse:latestad6fc3b3e6b8
stdlib@go1.26.1
1.26.9
1
ethpandaops/rpc-snooper:latestc0b30fcf64bc
golang.org/x/net@v0.43.0
stdlib@go1.25.12
0.60.0
1.26.9
1
ethpandaops/service-authenticatoor:main27b8e5ea3125
stdlib@go1.25.12
1.26.9
1
ethpandaops/slashoor:latesta71967db581f
stdlib@go1.23.12
1.26.9
1
ethpandaops/spamoor:latestc8c6ab0816c4
golang.org/x/net@v0.58.0
stdlib@go1.26.8
0.60.0
1.26.9
1
ethpandaops/splitoor:latest989da6bea4bd
golang.org/x/net@v0.38.0
stdlib@go1.26.1
0.60.0
1.26.9
1
ethpandaops/stubbies:latest9f1d6aec0d04
stdlib@go1.19.8
1.26.9
1
ethpandaops/xatu-cbt-api:latestf7dec2e07091
golang.org/x/net@v0.44.0
stdlib@go1.25.1
0.60.0
1.26.9
1
evcc/evcc:0.317.042bf170708f9
golang.org/x/net@v0.59.0
stdlib@go1.27.1
0.60.0
1.27.2
1
evcc/evcc:0.300.8ddf2a25afce5
golang.org/x/net@v0.49.0
stdlib@go1.25.6
0.60.0
1.26.9
1
everpcpc/channels:latestb378d137ae8b
stdlib@go1.17
1.26.9
1
evoapicloud/evolution-api:latest966625532d90
stdlib@go1.23.12
1.26.9
1
expediagroup/kubernetes-sidecar-injector:1.0.1193a00ec8dd4
golang.org/x/net@v0.0.0-20211209124913-491a49abca63
stdlib@go1.18.3
0.60.0
1.26.9
1
factly/dega-api:0.15.166fafc7b0a17
stdlib@go1.16.2
1.26.9
1
factly/dega-server:0.15.194d21479382e
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.16.2
0.60.0
1.26.9
1
factly/kavach-server:0.22.3be85ff1b9bd3
golang.org/x/net@v0.0.0-20210405180319-a5a99cb37ef4
stdlib@go1.16.2
0.60.0
1.26.9
1
factly/mande-server:0.34.1384d384310ef
golang.org/x/net@v0.7.0
stdlib@go1.18.10
0.60.0
1.26.9
1
factly/vidcheck-server:0.12.087064eb0463c
golang.org/x/net@v0.0.0-20210226172049-e18ecbb05110
stdlib@go1.14.2
0.60.0
1.26.9
1
falcosecurity/event-generator:latest932956d86c99
golang.org/x/net@v0.54.0
stdlib@go1.26.3
0.60.0
1.26.9
1
falcosecurity/falco:0.45.0788f1129c542
golang.org/x/net@v0.58.0
stdlib@go1.26.8
0.60.0
1.26.9
1
falcosecurity/falcoctl:0.14.290ba9627886e
golang.org/x/net@v0.59.0
stdlib@go1.27.1
0.60.0
1.27.2
1
falcosecurity/falco-driver-loader:0.45.0d7d287d4dcee
golang.org/x/net@v0.59.0
stdlib@go1.26.8
0.60.0
1.26.9
1
falcosecurity/falco-operator:0.4.18a99fcc57a57
golang.org/x/net@v0.53.0
stdlib@go1.26.0
0.60.0
1.26.9
1
falcosecurity/falcosidekick:2.32.01976da721518
golang.org/x/net@v0.43.0
stdlib@go1.25.1
0.60.0
1.26.9
1
falcosecurity/falcosidekick:2.27.0828ee36cb13a
golang.org/x/net@v0.0.0-20220826154423-83b083e8dc8b
stdlib@go1.18.1
0.60.0
1.26.9
1
falcosecurity/k8s-metacollector:0.1.42c9b17ec36e8
golang.org/x/net@v0.58.0
stdlib@go1.26.8
0.60.0
1.26.9
1
farmer1992/sshpiperd:v1.6.19ddc25422cc2
golang.org/x/net@v0.55.0
stdlib@go1.26.5
0.60.0
1.26.9
1
fatliverfreddy/cyphernetes-operator:lateste79f24ca7371
golang.org/x/net@v0.38.0
stdlib@go1.24.4
0.60.0
1.26.9
1
favonia/cloudflare-ddns:15e61736b982b
golang.org/x/net@v0.59.0
stdlib@go1.27.1
0.60.0
1.27.2
1
featureformcom/quickstart-loader:latest82396f8fb5e8
stdlib@go1.21.11
1.26.9
1
federid/webhook:0.1.0fbfb7c6510a7
golang.org/x/net@v0.30.0
stdlib@go1.23.3
0.60.0
1.26.9
1
feiyu563/prometheus-alert:v4.9.1224cfa68cbd9
golang.org/x/net@v0.24.0
stdlib@go1.20.6
0.60.0
1.26.9
1
feiyu563/prometheus-alert:v4.9.28192368b0578
golang.org/x/net@v0.24.0
stdlib@go1.20.6
0.60.0
1.26.9
1
filebrowser/filebrowser:v2.18.04fcd47af573c
golang.org/x/net@v0.0.0-20200528225125-3c3fba18258b
stdlib@go1.16.9
0.60.0
1.26.9
1
filebrowser/filebrowser:v2.63.15-s6dbac07403040
golang.org/x/net@v0.56.0
stdlib@go1.26.4
0.60.0
1.26.9
1

syft 1.42.1 · advisories as of 11 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.