StackRadar

CVE-2021-22926

High

Advisory

Published 5 Aug 2021In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.098
95th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
33
of 17,781 indexed, latest versions
Container images
32
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 33 of 17,781 indexed charts deploy, on 32 images.

Affected packageAffected versionsFixed inImages
curlapk7.67.0-r0, 7.67.0-r1, 7.67.0-r37.67.0-r532
OSV records
ALPINE-CVE-2021-22926

Charts affected

33 by stars
ChartLatestAffected imagesRadar Score
apicurio-registryapicurio-registry-helmVerified publisher3.8.01 of 2See more

apicurio-registry apicurio-registry-helm 3.8.0

1 of the 2 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
quay.io/apicurio/apicurio-registry-kube-sync:1.0.170ef31840269
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

6,675
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
buddy/repman:1.4.0097c897f8b54
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

7,052
spinnakerdwardu-helm-charts2.2.61 of 2See more

spinnaker dwardu-helm-charts 2.2.6

1 of the 2 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
gcr.io/spinnaker-marketplace/halyard:1.32.00ee5f968d2ab
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

8,752
giteakeyporttech0.2.101 of 4See more

gitea keyporttech 0.2.10

1 of the 4 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
gitea/gitea:1.12.485416d6f65fe
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

5,408
repmanrepman-helmchartVerified publisher1.0.121 of 3See more

repman repman-helmchart 1.0.12

1 of the 3 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
buddy/repman:1.4.0097c897f8b54
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

3,596
matomot3n1.3.11 of 4See more

matomo t3n 1.3.1

1 of the 4 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
library/nginx:1.18.0-alpine93baf2ec1bfe
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

4,264
testhubteshubVerified publisher0.1.41 of 3See more

testhub teshub 0.1.4

1 of the 3 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
testhubio/testhub-frontend:on-preme86c2db53be8
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

7,517
customer-centeradfinisVerified publisher0.2.351 of 1See more

customer-center adfinis 0.2.35

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
ghcr.io/adfinis/customer-center/frontend:3.3.52a4667a761d9
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

789
get-cloudflare-logsanapsixVerified publisher0.6.01 of 1See more

get-cloudflare-logs anapsix 0.6.0

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
anapsix/get-cloudflare-logs:0.6.07cf7deb20399
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

956
argocd-ecr-updaterargocd-ecr-updater4.1.01 of 1See more

argocd-ecr-updater argocd-ecr-updater 4.1.0

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
odaniait/aws-kubectl:latest3fff8a8570ec
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

1,511
public-htmlcloudve0.1.01 of 1See more

public-html cloudve 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
library/nginx:1.19.0-alpine17ba9c1ca3db
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

1,271
cgrccommongroundregistratiecomponent0.1.01 of 3See more

cgrc commongroundregistratiecomponent 0.1.0

1 of the 3 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
conduction/cgrc-php:dev25415534d245
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

7,572
clamavfairwinds-incubator0.0.31 of 1See more

clamav fairwinds-incubator 0.0.3

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
quay.io/fairwinds/clamav:v0.0.3e12bdddaa81d
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

1,188
Governify-Bluejaygovernify0.1.01 of 12See more

Governify-Bluejay governify 0.1.0

1 of the 12 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

22,512
Governify-Falcongovernify0.1.01 of 10See more

Governify-Falcon governify 0.1.0

1 of the 10 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

24,319
matrix-appservice-gitterhalkeye0.1.01 of 1See more

matrix-appservice-gitter halkeye 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

3,003
jx-app-athensjenkins-x0.0.181 of 1See more

jx-app-athens jenkins-x 0.0.18

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
gomods/athens:v0.8.1d714c7ff0231
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

4,225
jx-app-ingressjenkins-x0.0.51 of 2See more

jx-app-ingress jenkins-x 0.0.5

1 of the 2 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
quay.io/kubernetes-ingress-controller/nginx-ingress-controller:0.32.0251e733bf41c
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

1,158
gogskeyporttech0.1.31 of 3See more

gogs keyporttech 0.1.3

1 of the 3 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
gogs/gogs:0.12.30195b095d0b2
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

3,523
nginxkubesphereVerified publisher1.3.51 of 1See more

nginx kubesphere 1.3.5

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
library/nginx:1.18.0-alpine93baf2ec1bfe
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

789
apisixkubesphere-testVerified publisher0.1.71 of 3See more

apisix kubesphere-test 0.1.7

1 of the 3 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
apache/apisix:1.5-alpine228eb0edf44b
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

1,259
owntracks-frontendleprechaun-charts0.1.81 of 1See more

owntracks-frontend leprechaun-charts 0.1.8

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
owntracks/frontend:2.12.048cbbb64f347
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

789
devspace-cloudloftVerified publisher0.3.33 of 8See more

devspace-cloud loft 0.3.3

3 of the 8 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
devspacecloud/auth:0.3.39ccfe38b31b5
curl@7.67.0-r0
7.67.0-r5
devspacecloud/manager:0.3.349c397413f7b
curl@7.67.0-r0
7.67.0-r5
quay.io/kubernetes-ingress-controller/nginx-ingress-controller:0.30.0b312c91d0de6
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

9,880
apica-ascentlogiqai2.0.42 of 19See more

apica-ascent logiqai 2.0.4

2 of the 19 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
logiqai/logiqctl:2.0.4798306811f2d
curl@7.67.0-r0
7.67.0-r5
logiqai/toolbox:2.0.155a574ec5b64
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

23,613
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
library/nginx:1.18-alpine93baf2ec1bfe
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

7,027
gogsmhio0.9.21 of 2See more

gogs mhio 0.9.2

1 of the 2 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
gogs/gogs:0.12.1420d53bb7277
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

3,230
adminermogaal0.2.11 of 1See more

adminer mogaal 0.2.1

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
library/adminer:4.7.5-standalonef42d935fec5a
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

1,572
k8s-node-image-1-14pnnl-miscscripts0.1.582 of 2See more

k8s-node-image-1-14 pnnl-miscscripts 0.1.58

2 of the 2 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20200421-1700-nginx-1bbb6940d849f
curl@7.67.0-r0
7.67.0-r5
pnnlmiscscripts/k8s-node-image:1.14.10-nginx-78af4c559fff0
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

2,594
k8s-node-image-1-15pnnl-miscscripts0.2.611 of 2See more

k8s-node-image-1-15 pnnl-miscscripts 0.2.61

1 of the 2 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
pnnlmiscscripts/k8s-node-image:1.15.12-nginx-5d710d31000ce
curl@7.67.0-r1
7.67.0-r5

Open the chart page →

1,786
static-siteredhat-cop0.0.241 of 2See more

static-site redhat-cop 0.0.24

1 of the 2 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
jijiechen/alpine-curl-git:v2.24.10ee39a17903f
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

1,726
repmanteam-blueVerified publisher0.3.01 of 5See more

repman team-blue 0.3.0

1 of the 5 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
buddy/repman:1.4.0097c897f8b54
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

3,993
athens-proxywenerme0.5.21 of 2See more

athens-proxy wenerme 0.5.2

1 of the 2 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
gomods/athens:v0.11.0efb811df7844
curl@7.67.0-r3
7.67.0-r5

Open the chart page →

4,984
apicurio-registry-sqlwitcom-gmbh0.1.01 of 1See more

apicurio-registry-sql witcom-gmbh 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-22926.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
curl@7.67.0-r0
7.67.0-r5

Open the chart page →

3,424

Container images carrying it

32 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
buddy/repman:1.4.0097c897f8b54
curl@7.67.0-r0
7.67.0-r5
3
library/nginx:1.18.0-alpine:1.18-alpine93baf2ec1bfe
curl@7.67.0-r3
7.67.0-r5
3
governify/assets-manager:v1.4.12987672448c7
curl@7.67.0-r3
7.67.0-r5
2
anapsix/get-cloudflare-logs:0.6.07cf7deb20399
curl@7.67.0-r0
7.67.0-r5
1
apache/apisix:1.5-alpine228eb0edf44b
curl@7.67.0-r0
7.67.0-r5
1
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
curl@7.67.0-r0
7.67.0-r5
1
conduction/cgrc-php:dev25415534d245
curl@7.67.0-r0
7.67.0-r5
1
devspacecloud/auth:0.3.39ccfe38b31b5
curl@7.67.0-r0
7.67.0-r5
1
devspacecloud/manager:0.3.349c397413f7b
curl@7.67.0-r0
7.67.0-r5
1
gitea/gitea:1.12.485416d6f65fe
curl@7.67.0-r0
7.67.0-r5
1
gogs/gogs:0.12.30195b095d0b2
curl@7.67.0-r0
7.67.0-r5
1
gogs/gogs:0.12.1420d53bb7277
curl@7.67.0-r0
7.67.0-r5
1
gomods/athens:v0.8.1d714c7ff0231
curl@7.67.0-r0
7.67.0-r5
1
gomods/athens:v0.11.0efb811df7844
curl@7.67.0-r3
7.67.0-r5
1
jijiechen/alpine-curl-git:v2.24.10ee39a17903f
curl@7.67.0-r0
7.67.0-r5
1
library/adminer:4.7.5-standalonef42d935fec5a
curl@7.67.0-r0
7.67.0-r5
1
library/nginx:1.19.0-alpine17ba9c1ca3db
curl@7.67.0-r0
7.67.0-r5
1
logiqai/logiqctl:2.0.4798306811f2d
curl@7.67.0-r0
7.67.0-r5
1
logiqai/toolbox:2.0.155a574ec5b64
curl@7.67.0-r0
7.67.0-r5
1
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
curl@7.67.0-r0
7.67.0-r5
1
odaniait/aws-kubectl:latest3fff8a8570ec
curl@7.67.0-r0
7.67.0-r5
1
owntracks/frontend:2.12.048cbbb64f347
curl@7.67.0-r3
7.67.0-r5
1
pnnlmiscscripts/anaconda:20200421-1700-nginx-1bbb6940d849f
curl@7.67.0-r0
7.67.0-r5
1
pnnlmiscscripts/k8s-node-image:1.14.10-nginx-78af4c559fff0
curl@7.67.0-r0
7.67.0-r5
1
pnnlmiscscripts/k8s-node-image:1.15.12-nginx-5d710d31000ce
curl@7.67.0-r1
7.67.0-r5
1
testhubio/testhub-frontend:on-preme86c2db53be8
curl@7.67.0-r3
7.67.0-r5
1
gcr.io/spinnaker-marketplace/halyard:1.32.00ee5f968d2ab
curl@7.67.0-r0
7.67.0-r5
1
ghcr.io/adfinis/customer-center/frontend:3.3.52a4667a761d9
curl@7.67.0-r3
7.67.0-r5
1
quay.io/apicurio/apicurio-registry-kube-sync:1.0.170ef31840269
curl@7.67.0-r0
7.67.0-r5
1
quay.io/fairwinds/clamav:v0.0.3e12bdddaa81d
curl@7.67.0-r0
7.67.0-r5
1
quay.io/kubernetes-ingress-controller/nginx-ingress-controller:0.32.0251e733bf41c
curl@7.67.0-r0
7.67.0-r5
1
quay.io/kubernetes-ingress-controller/nginx-ingress-controller:0.30.0b312c91d0de6
curl@7.67.0-r0
7.67.0-r5
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.