StackRadar

CVE-2023-23914

Critical

Advisory

Published 15 Feb 2023In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.009
56th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
206
of 17,781 indexed, latest versions
Container images
183
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 206 of 17,781 indexed charts deploy, on 183 images.

Affected packageAffected versionsFixed inImages
curlapk7.77.0-r1, 7.78.0-r0, 7.79.1-r0, 7.79.1-r1+15 more7.79.1-r5, 7.80.0-r6, 7.83.1-r6, 7.87.0-r2151
curldeb7.81.0-1ubuntu1.2, 7.81.0-1ubuntu1.3, 7.81.0-1ubuntu1.4, 7.81.0-1ubuntu1.6+1 more7.81.0-1ubuntu1.832
OSV records
ALPINE-CVE-2023-23914UBUNTU-CVE-2023-23914
Also known as
USN-5891-1

Charts affected

206 by stars
ChartLatestAffected imagesRadar Score
test-chartapplication-chart0.2.01 of 1See more

test-chart application-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ahmedinfraplus/simple-app:STAGINGc50e6e81a637
curl@7.83.1-r2
7.83.1-r6

Open the chart page →

1,197
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:ui-latest20338b353aaf
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

9,369
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8

Open the chart page →

10,061
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
assistiot/open_api_kong:1.0.03fe850384689
curl@7.83.1-r4
7.83.1-r6

Open the chart page →

18,277
dashboard-pui9assist-iot-tactile-dashboard0.2.01 of 3See more

dashboard-pui9 assist-iot-tactile-dashboard 0.2.0

1 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
assistiot/tacticle_dashboard:web-latest25fc9f373524
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

4,145
shynetatrox0.1.11 of 1See more

shynet atrox 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.12.0e821e31140f7
curl@7.79.1-r0
7.79.1-r5

Open the chart page →

5,507
istio-discoveryaveshaVerified publisher1.16.01 of 1See more

istio-discovery avesha 1.16.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
istio/pilot:1.16.0ac0284d75ec9
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8

Open the chart page →

6,908
aws-web-service-proxifiedaws-web-service-proxified1.8.01 of 2See more

aws-web-service-proxified aws-web-service-proxified 1.8.0

1 of the 2 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
prefapp/nginx-proxified:latestf4d026fd9a26
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

3,009
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
curl@7.83.1-r2
7.83.1-r6

Open the chart page →

4,568
berichtserviceberichtservice1.0.01 of 3See more

berichtservice berichtservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

7,342
wg-access-serverbicarus-labs0.9.91 of 1See more

wg-access-server bicarus-labs 0.9.9

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
bicarus/wg-access-server:v0.8.206cab48e9334
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

2,748
stackbitpokeVerified publisher0.12.41 of 6See more

stack bitpoke 0.12.4

1 of the 6 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.154f7fe2c6c5a
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

9,897
castware-componentscastaiVerified publisher0.4.01 of 1See more

castware-components castai 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
curl@7.86.0-r1
7.87.0-r2

Open the chart page →

3,449
clechaosnative0.2.71 of 6See more

cle chaosnative 0.2.7

1 of the 6 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
chaosnative/cle-frontend:2.7.007b82a82a702
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

16,389
kamajiclastixVerified publisher0.0.0+latest1 of 4See more

kamaji clastix 0.0.0+latest

1 of the 4 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
clastix/kubectl:v1.2187fabaccb3a6
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

4,630
kamaji-etcdclastixVerified publisher0.17.01 of 4See more

kamaji-etcd clastix 0.17.0

1 of the 4 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
clastix/kubectl:v1.22d0376d87ac6b
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

11,995
lampcloudnativeapp1.1.01 of 3See more

lamp cloudnativeapp 1.1.0

1 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
library/php:7-fpm-alpine0aeb129a60da
curl@7.83.1-r4
7.83.1-r6

Open the chart page →

1,763
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
curl@7.83.1-r1
7.83.1-r6

Open the chart page →

6,921
dependency-trackcnieg3.0.81 of 2See more

dependency-track cnieg 3.0.8

1 of the 2 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
dependencytrack/frontend:4.6.124422d762e08
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

2,503
commonground-gatewaycommonground-gateway-frontend0.1.51 of 4See more

commonground-gateway commonground-gateway-frontend 0.1.5

1 of the 4 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/commonground-gateway-php:latest947882bf2c37
curl@7.83.1-r4
7.83.1-r6

Open the chart page →

2,825
commonground-gateway-frontendcommonground-gateway-frontend0.1.01 of 1See more

commonground-gateway-frontend commonground-gateway-frontend 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/commonground-gateway-frontend:dev3b3fbb57cae8
curl@7.83.1-r2
7.83.1-r6

Open the chart page →

1,142
quickchartcowboysysopVerified publisher5.0.01 of 1See more

quickchart cowboysysop 5.0.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ianw/quickchart:v1.7.1dc49dd460c37
curl@7.80.0-r3
7.80.0-r6

Open the chart page →

5,488
bitwarden-rscronce0.1.71 of 1See more

bitwarden-rs cronce 0.1.7

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
vaultwarden/server:1.27.0-alpine7cd450642c54
curl@7.87.0-r0
7.87.0-r2

Open the chart page →

1,589
symfony-appdefault-ghVerified publisher0.6.52 of 3See more

symfony-app default-gh 0.6.5

2 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
alpine/git:2.36.366b210a97bc0
curl@7.83.1-r4
7.83.1-r6
xvilo/php:8.2-composera138e57d3204
curl@7.87.0-r1
7.87.0-r2

Open the chart page →

5,122
pleromaderp0.1.91 of 1See more

pleroma derp 0.1.9

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/mjohnson9/docker-pleroma:v0.1.44f08e2823756
curl@7.83.1-r4
7.83.1-r6

Open the chart page →

2,707
apachedevops0.1.01 of 4See more

apache devops 0.1.0

1 of the 4 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8

Open the chart page →

30,031
laraveldevops0.10.31 of 4See more

laravel devops 0.10.3

1 of the 4 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8

Open the chart page →

29,033
lxd8sdevplayer0Verified publisher0.5.11 of 2See more

lxd8s devplayer0 0.5.1

1 of the 2 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/lxd8s:0.3.1e159ba41aede
curl@7.78.0-r0
7.79.1-r5

Open the chart page →

5,431
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.8

Open the chart page →

12,949
devtron-enterprisedevtron48.0.01 of 28See more

devtron-enterprise devtron 48.0.0

1 of the 28 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

68,240
svn-git-syncdevtron0.1.31 of 1See more

svn-git-sync devtron 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/devtron/svn-git-sync:v78e54bc2d261f
curl@7.83.1-r1
7.83.1-r6

Open the chart page →

1,860
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.8

Open the chart page →

12,949
devtron-enterprisedevtron-labs48.0.01 of 28See more

devtron-enterprise devtron-labs 48.0.0

1 of the 28 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

68,240
devtron-operatordevtron-labs0.23.31 of 11See more

devtron-operator devtron-labs 0.23.3

1 of the 11 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

32,902
svn-git-syncdevtron-labs0.1.31 of 1See more

svn-git-sync devtron-labs 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/devtron/svn-git-sync:v78e54bc2d261f
curl@7.83.1-r1
7.83.1-r6

Open the chart page →

1,860
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.8

Open the chart page →

24,917
drogue-cloud-coredrogue-iotVerified publisher0.7.111 of 22See more

drogue-cloud-core drogue-iot 0.7.11

1 of the 22 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
swaggerapi/swagger-ui:v4.12.00d7088d47928
curl@7.80.0-r1
7.80.0-r6

Open the chart page →

55,666
drogue-cloud-examplesdrogue-iotVerified publisher0.7.111 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

1 of the 6 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
curl@7.81.0-1ubuntu1.2
7.81.0-1ubuntu1.8

Open the chart page →

30,699
drogue-cloud-twindrogue-iotVerified publisher0.7.111 of 8See more

drogue-cloud-twin drogue-iot 0.7.11

1 of the 8 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
swaggerapi/swagger-ui:v4.15.27ff9a86f35ff
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

6,915
eav-componenteav-component1.0.01 of 3See more

eav-component eav-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

7,255
openldap-stack-haeclipse-aeriosVerified publisher4.1.21 of 4See more

openldap-stack-ha eclipse-aerios 4.1.2

1 of the 4 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
eclipseaerios/self-service-password:5.2.32f93bfa4cf0d
curl@7.80.0-r2
7.80.0-r6

Open the chart page →

7,534
education-componenteducation-component1.0.01 of 3See more

education-component education-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

7,327
blockscoutethereum-helm-chartsVerified publisher0.2.31 of 2See more

blockscout ethereum-helm-charts 0.2.3

1 of the 2 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
blockscout/blockscout:5.1.5c365a8f2dc12
curl@7.83.1-r5
7.83.1-r6

Open the chart page →

1,928
nist-data-mirroreugen0.1.21 of 1See more

nist-data-mirror eugen 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/eugenmayer/nist-data-mirror:0.1.1a2162df94729
curl@7.87.0-r1
7.87.0-r2

Open the chart page →

1,958
spring-boot-adminevryfs-ossVerified publisher0.1.101 of 1See more

spring-boot-admin evryfs-oss 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8

Open the chart page →

5,998
degafactlyVerified publisher0.11.131 of 3See more

dega factly 0.11.13

1 of the 3 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
factly/dega-studio:0.15.1140fbaa6d555
curl@7.79.1-r0
7.79.1-r5

Open the chart page →

5,747
kavachfactlyVerified publisher0.9.51 of 2See more

kavach factly 0.9.5

1 of the 2 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
factly/kavach-web:0.22.30cf361b41798
curl@7.79.1-r0
7.79.1-r5

Open the chart page →

3,573
activityrelayfedihost0.1.41 of 2See more

activityrelay fedihost 0.1.4

1 of the 2 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8

Open the chart page →

13,450
ishare-satellitefiware1.3.21 of 1See more

ishare-satellite fiware 1.3.2

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
fiware/ishare-satellite:1.2.0c3c1c8ccfb45
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

1,778
podinfoflagger6.1.41 of 1See more

podinfo flagger 6.1.4

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/stefanprodan/podinfo:6.1.3f25ebb9c6788
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

2,808

Container images carrying it

183 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/dodevops/scalyr-k8snode-manager:latestfc39fcdd3968
curl@7.80.0-r1
7.80.0-r6
1
ghcr.io/eugenmayer/nist-data-mirror:0.1.1a2162df94729
curl@7.87.0-r1
7.87.0-r2
1
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
curl@7.79.1-r0
7.79.1-r5
1
ghcr.io/k10app/businit:latest94c9a3e799c2
curl@7.86.0-r1
7.87.0-r2
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
ghcr.io/k8up-io/k8up:v2.3.257419b6d3830
curl@7.83.1-r1
7.83.1-r6
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
ghcr.io/mjohnson9/docker-pleroma:v0.1.44f08e2823756
curl@7.83.1-r4
7.83.1-r6
1
ghcr.io/netsoc/docs:latest48890a52b327
curl@7.79.1-r0
7.79.1-r5
1
ghcr.io/netsoc/website:latesta9618107fa50
curl@7.79.1-r0
7.79.1-r5
1
ghcr.io/reitermarkus/strongswan:v1.0.0e7a8afe6e6eb
curl@7.80.0-r0
7.80.0-r6
1
ghcr.io/stefanprodan/podinfo:6.1.3f25ebb9c6788
curl@7.80.0-r0
7.80.0-r6
1
ghcr.io/volosoft/eshoponabp/app-web:1.0.0056bb4271626
curl@7.83.1-r2
7.83.1-r6
1
ghcr.io/wbstack/queryservice-ui:1.4bc79fbb50230
curl@7.80.0-r0
7.80.0-r6
1
ghcr.io/wbstack/ui:3.94b01f67faadf1
curl@7.80.0-r1
7.80.0-r6
1
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
curl@7.79.1-r0
7.79.1-r5
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
curl@7.83.1-r1
7.83.1-r6
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8
1
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
curl@7.83.1-r4
7.83.1-r6
1
quay.io/netwarps/blockscoutbecd3e39360a
curl@7.80.0-r0
7.80.0-r6
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
curl@7.80.0-r0
7.80.0-r6
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
curl@7.79.1-r1
7.79.1-r5
1
quay.io/opsmxpublic/forwarder-controller:v3.5.7f0c5bebaec96
curl@7.83.1-r3
7.83.1-r6
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
curl@7.78.0-r0
7.79.1-r5
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
curl@7.78.0-r0
7.79.1-r5
1
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
curl@7.87.0-r1
7.87.0-r2
1
registry.k8s.io/ingress-nginx/controller:v1.3.154f7fe2c6c5a
curl@7.83.1-r3
7.83.1-r6
1
registry.k8s.io/ingress-nginx/controller:v1.2.15516d103a9c2
curl@7.79.1-r1
7.79.1-r5
1
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
curl@7.83.1-r2
7.83.1-r6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.