StackRadar

CVE-2021-22898

Low

Advisory

Published 26 May 2021In the index since 6 Sept 2026
Severity
Low
worst across findings
CVSS
3.1
base score, highest
EPSS
0.045
91st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
366
of 17,781 indexed, latest versions
Container images
263
deployed by those charts
Fix available
3 of 3
affected packages

Security update for curl

Carried by container images the latest versions of 366 of 17,781 indexed charts deploy, on 263 images.

Affected packageAffected versionsFixed inImages
curlrpm7.66.0-4.6.17.66.0-4.17.11
curlapk7.65.1-r0, 7.66.0-r0, 7.66.0-r3, 7.67.0-r0+8 more7.66.0-r4, 7.67.0-r4, 7.77.0-r0139
curldeb7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16, 7.35.0-1ubuntu2.19+26 more7.35.0-1ubuntu2.20+esm14, 7.47.0-1ubuntu2.19+esm3, 7.58.0-2ubuntu3.14, 7.68.0-1ubuntu2.6123
OSV records
ALPINE-CVE-2021-22898UBUNTU-CVE-2021-22898SUSE-SU-2021:1762-1
Also known as
USN-5021-1, USN-5021-2, USN-5894-1

Charts affected

366 by stars
ChartLatestAffected imagesRadar Score
lightstepupdater-lightstep-satellite1.2.21 of 1See more

lightstep updater-lightstep-satellite 1.2.2

1 of the 1 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm3

Open the chart page →

15,330
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
curl@7.69.1-r0
7.77.0-r0

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
curl@7.69.1-r0
7.77.0-r0

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
curl@7.69.1-r0
7.77.0-r0

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
curl@7.69.1-r0
7.77.0-r0

Open the chart page →

7,429
pagesvictor-pages1.0.02 of 3See more

pages victor-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.6
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.14

Open the chart page →

20,190
pageswalter1.0.02 of 3See more

pages walter 1.0.0

2 of the 3 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.6
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.14

Open the chart page →

20,190
alpinewenerme1.0.01 of 1See more

alpine wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
wener/base:3.12.0ef3bd19da190
curl@7.69.1-r0
7.77.0-r0

Open the chart page →

1,263
athens-proxywenerme0.5.21 of 2See more

athens-proxy wenerme 0.5.2

1 of the 2 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
gomods/athens:v0.11.0efb811df7844
curl@7.67.0-r3
7.67.0-r4

Open the chart page →

4,984
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/tcheck:latest0147d87c2019
curl@7.69.1-r1
7.77.0-r0

Open the chart page →

10,127
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.14

Open the chart page →

10,843
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
curl@7.74.0-r0
7.77.0-r0

Open the chart page →

2,555
wireguardwireguard-bananas1.5.01 of 1See more

wireguard wireguard-bananas 1.5.0

1 of the 1 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
place1/wg-access-server:v0.4.62b2f3ea80ed6
curl@7.66.0-r3
7.66.0-r4

Open the chart page →

2,745
dex-k8s-authenticatorwiremindVerified publisher1.7.01 of 1See more

dex-k8s-authenticator wiremind 1.7.0

1 of the 1 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
curl@7.66.0-r3
7.66.0-r4

Open the chart page →

2,791
apicurio-registry-sqlwitcom-gmbh0.1.01 of 1See more

apicurio-registry-sql witcom-gmbh 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
curl@7.67.0-r0
7.67.0-r4

Open the chart page →

3,424
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2021-22898.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
curl@7.69.1-r0
7.77.0-r0

Open the chart page →

1,198

Container images carrying it

263 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.14
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
curl@7.47.0-1ubuntu2.8
7.47.0-1ubuntu2.19+esm3
1
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
curl@7.47.0-1ubuntu2.8
7.47.0-1ubuntu2.19+esm3
1
ibmcom/icp-swift-sample:latestb5d8c6714dbc
curl@7.47.0-1ubuntu2.7
7.47.0-1ubuntu2.19+esm3
1
ibmcom/microclimate-theia:lateste17bdccc5030
curl@7.47.0-1ubuntu2.7
7.47.0-1ubuntu2.19+esm3
1
ibmcom/skydive:0.22.0395e60cc6e3d
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.14
1
instrumentisto/coturn:4.56c25f154177c
curl@7.69.1-r3
7.77.0-r0
1
istio/install-cni:1.10.32232f365aed6
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
istio/node-agent-k8s:1.2.9268ab879ea51
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm3
1
istio/operator:1.10.3655eefa11c84
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
istio/pilot:1.10.0294ca55bd1cc
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
istio/pilot:1.2.9c09319753454
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm3
1
istio/pilot:1.10.3e7e110a421c2
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
istio/proxyv2:1.2.90c78be035e98
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm3
1
istio/proxyv2:1.9.687a9db561d2e
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
istio/proxyv2:1.10.088c6c693e67a
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
jacobalberty/unifi:5.10.19c409924e2463
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm3
1
jfwenisch/alpine-tor:latest9e6c229f953c
curl@7.76.1-r0
7.77.0-r0
1
jijiechen/alpine-curl-git:v2.24.10ee39a17903f
curl@7.67.0-r0
7.67.0-r4
1
jmferrer/azure-devops-agent:latest030f68ec6998
curl@7.47.0-1ubuntu2.14
7.47.0-1ubuntu2.19+esm3
1
johnblack77/clustereye:latest-amd64bb53ceb8442e
curl@7.76.1-r0
7.77.0-r0
1
jupyterhub/configurable-http-proxy:4.2.281bd96729c14
curl@7.69.1-r1
7.77.0-r0
1
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.6
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.6
1
keitaro/ckan-datapusher:0.0.175bf1a45f45c1
curl@7.69.1-r1
7.77.0-r0
1
keyporttech/csi-driver-nfs:2.0.05bd7955ea2f1
curl@7.69.1-r1
7.77.0-r0
1
kubeoperator/webkubectl:v2.4.0be8f0d624640
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.14
1
layer5/meshery-cpx:stable-latest8c20a8a1d6a4
curl@7.69.1-r0
7.77.0-r0
1
library/adminer:4.7143ec8cc2f3a
curl@7.74.0-r0
7.77.0-r0
1
library/adminer:4.7.5-standalonef42d935fec5a
curl@7.67.0-r0
7.67.0-r4
1
library/mongo:4.4-bionic3d0e6df9fd5b
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
library/mongo:4.2.16ca49afbcb2b
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.14
1
library/nginx:1.19.0-alpine17ba9c1ca3db
curl@7.67.0-r0
7.67.0-r4
1
library/nginx:1.19.3-alpine5aa44b407756
curl@7.69.1-r1
7.77.0-r0
1
lightbend/curl:7.47.0b0c9894ac8dd
curl@7.47.0-1ubuntu2.9
7.47.0-1ubuntu2.19+esm3
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
linuxserver/codimd:latestb801bbcf6386
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.14
1
linuxserver/lazylibrarian:version-1152df82f93d2560e233
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.14
1
litmuschaos/mongo:4.2.899961210d467
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.14
1
logiqai/logiqctl:2.0.4798306811f2d
curl@7.67.0-r0
7.67.0-r4
1
logiqai/toolbox:2.0.155a574ec5b64
curl@7.67.0-r0
7.67.0-r4
1
longhornio/longhorn-manager:v1.1.1ede61fe2a472
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.14
1
longhornio/longhorn-ui:v1.1.165560eabe3ee
curl@7.76.1-r0
7.77.0-r0
1
lsmaster/kafka-connect-wrapper:6.1.0-0.1061eb5fbfa00
curl@7.66.0-r3
7.66.0-r4
1
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
curl@7.67.0-r0
7.67.0-r4
1
minio/minio:RELEASE.2020-12-03T05-49-24Z053f103f4894
curl@7.69.1-r1
7.77.0-r0
1
minio/minio:RELEASE.2020-09-17T04-49-20Ze2b7b633c250
curl@7.69.1-r1
7.77.0-r0
1
mintel/dex-k8s-authenticator:1.2.0a3789f95d734
curl@7.65.1-r0
7.66.0-r4
1
moikot/basic-git-server:0.0.20d941bd30ffa
curl@7.69.1-r1
7.77.0-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.