StackRadar

CVE-2022-22576

High

Advisory

Published 27 Apr 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.022
81st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
469
of 17,781 indexed, latest versions
Container images
380
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 469 of 17,781 indexed charts deploy, on 380 images.

Affected packageAffected versionsFixed inImages
curldeb7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16, 7.35.0-1ubuntu2.19+30 more7.58.0-2ubuntu3.17, 7.68.0-1ubuntu2.10197
curlapk7.69.1-r0, 7.69.1-r1, 7.69.1-r3, 7.74.0-r0+7 more7.79.1-r1, 7.80.0-r1183
OSV records
ALPINE-CVE-2022-22576UBUNTU-CVE-2022-22576
Also known as
USN-5397-1

Charts affected

469 by stars
ChartLatestAffected imagesRadar Score
lightstepupdater-lightstep-satellite1.2.21 of 1See more

lightstep updater-lightstep-satellite 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
curl@7.47.0-1ubuntu2.12
no fix listed

Open the chart page →

15,330
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
curl@7.69.1-r0
7.79.1-r1

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
curl@7.69.1-r0
7.79.1-r1

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
curl@7.69.1-r0
7.79.1-r1

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
curl@7.69.1-r0
7.79.1-r1

Open the chart page →

7,429
pagesvictor-pages1.0.02 of 3See more

pages victor-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.10
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.17

Open the chart page →

20,190
pageswalter1.0.02 of 3See more

pages walter 1.0.0

2 of the 3 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.10
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.17

Open the chart page →

20,190
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10

Open the chart page →

11,119
queryservice-uiwbstack0.2.01 of 1See more

queryservice-ui wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-ui:1.4bc79fbb50230
curl@7.80.0-r0
7.80.0-r1

Open the chart page →

1,996
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
curl@7.80.0-r0
7.80.0-r1

Open the chart page →

7,552
alpinewenerme1.0.01 of 1See more

alpine wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
wener/base:3.12.0ef3bd19da190
curl@7.69.1-r0
7.79.1-r1

Open the chart page →

1,263
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/tcheck:latest0147d87c2019
curl@7.69.1-r1
7.79.1-r1

Open the chart page →

10,127
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.17

Open the chart page →

10,843
frpcwenerme1.0.11 of 1See more

frpc wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
wener/frpc:v0.37.0cc9fd4da44c0
curl@7.79.1-r0
7.79.1-r1

Open the chart page →

3,359
longhornwenerme1.2.32 of 2See more

longhorn wenerme 1.2.3

2 of the 2 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
longhornio/longhorn-ui:v1.2.3148598de4b7d
curl@7.79.1-r0
7.79.1-r1

Open the chart page →

15,230
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
curl@7.74.0-r0
7.79.1-r1

Open the chart page →

2,555
temporalwenerme0.15.12 of 13See more

temporal wenerme 0.15.1

2 of the 13 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.15.135034611d981
curl@7.79.1-r0
7.79.1-r1
temporalio/server:1.15.1e26758f5a1bf
curl@7.79.1-r0
7.79.1-r1

Open the chart page →

22,665
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
curl@7.79.1-r0
7.79.1-r1

Open the chart page →

2,534
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-22576.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
curl@7.69.1-r0
7.79.1-r1

Open the chart page →

1,198

Container images carrying it

380 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
epamedp/codebase-operator:2.12.0-MDTU-DDM-SNAPSHOT.1096028c86f0dd
curl@7.79.1-r0
7.79.1-r1
1
epamedp/gerrit-operator:2.11.0-MDTU-DDM-SNAPSHOT.2b71fb39e0c9e
curl@7.79.1-r0
7.79.1-r1
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
curl@7.47.0-1ubuntu2.5
no fix listed
1
factly/dega-studio:0.15.1140fbaa6d555
curl@7.79.1-r0
7.79.1-r1
1
factly/kavach-web:0.22.30cf361b41798
curl@7.79.1-r0
7.79.1-r1
1
factly/vidcheck-studio:0.12.024be158ec7d3
curl@7.78.0-r0
7.79.1-r1
1
felddy/foundryvtt:0.8.36c5d90b90349
curl@7.76.1-r0
7.79.1-r1
1
filebrowser/filebrowser:v2.18.04fcd47af573c
curl@7.79.1-r0
7.79.1-r1
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.17
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.17
1
free5gmano/nextepc-mongodb:latest36f806935519
curl@7.47.0-1ubuntu2.11
no fix listed
1
galaxy/galaxy-init:v18.010267bad550e6
curl@7.35.0-1ubuntu2.16
no fix listed
1
galaxy/galaxy-stable:v18.018e577a626dfd
curl@7.35.0-1ubuntu2.16
no fix listed
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.17
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
gethue/hue:4.10.05702b2c37ff9
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.17
1
gitea/gitea:1.13.0d5ab14cd29af
curl@7.69.1-r1
7.79.1-r1
1
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
curl@7.69.1-r0
7.79.1-r1
1
gluufederation/opendj:4.3.0_011a1128b28b95
curl@7.79.1-r0
7.79.1-r1
1
gmelillo/bind9:latesteeb2f9371b71
curl@7.69.1-r3
7.79.1-r1
1
gmelillo/nginx:2021-01-091b30f79cf7ea
curl@7.69.1-r3
7.79.1-r1
1
golenski/fibonacci-front:2.0.048cfd60b8413
curl@7.69.1-r0
7.79.1-r1
1
gotson/komga:0.99.49b15ea6bfc30
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.17
1
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
curl@7.69.1-r0
7.79.1-r1
1
hashicorp/vault-k8s:0.6.05697b85bc69a
curl@7.69.1-r1
7.79.1-r1
1
haugene/transmission-openvpn:4.0059216cfae4b
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.10
1
haveagitgat/tdarr:2.00.181256348872ce
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.10
1
housewrecker/gaps:latestf417dd0a7547
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.17
1
hugohg34/toposervice:0.0.2812a03b3f274
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
curl@7.47.0-1ubuntu2.8
no fix listed
1
ibarreche/cloud-back-ci:lateste16a469c5791
curl@7.80.0-r0
7.80.0-r1
1
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
curl@7.47.0-1ubuntu2.8
no fix listed
1
ibmcom/icp-swift-sample:latestb5d8c6714dbc
curl@7.47.0-1ubuntu2.7
no fix listed
1
ibmcom/microclimate-theia:lateste17bdccc5030
curl@7.47.0-1ubuntu2.7
no fix listed
1
ibmcom/skydive:0.22.0395e60cc6e3d
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.17
1
instrumentisto/coturn:4.56c25f154177c
curl@7.69.1-r3
7.79.1-r1
1
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
istio/install-cni:1.10.32232f365aed6
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.17
1
istio/node-agent-k8s:1.2.9268ab879ea51
curl@7.47.0-1ubuntu2.13
no fix listed
1
istio/operator:1.10.3655eefa11c84
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.17
1
istio/operator:1.12.06cfce8a071b9
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.10
1
istio/pilot:1.10.0294ca55bd1cc
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.17
1
istio/pilot:1.2.9c09319753454
curl@7.47.0-1ubuntu2.13
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.