StackRadar

CVE-2023-23914

Critical

Advisory

Published 15 Feb 2023In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.009
56th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
206
of 17,781 indexed, latest versions
Container images
183
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 206 of 17,781 indexed charts deploy, on 183 images.

Affected packageAffected versionsFixed inImages
curlapk7.77.0-r1, 7.78.0-r0, 7.79.1-r0, 7.79.1-r1+15 more7.79.1-r5, 7.80.0-r6, 7.83.1-r6, 7.87.0-r2151
curldeb7.81.0-1ubuntu1.2, 7.81.0-1ubuntu1.3, 7.81.0-1ubuntu1.4, 7.81.0-1ubuntu1.6+1 more7.81.0-1ubuntu1.832
OSV records
ALPINE-CVE-2023-23914UBUNTU-CVE-2023-23914
Also known as
USN-5891-1

Charts affected

206 by stars
ChartLatestAffected imagesRadar Score
queryservice-uiwbstack0.2.01 of 1See more

queryservice-ui wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-ui:1.4bc79fbb50230
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

1,996
uiwbstack0.4.01 of 1See more

ui wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/wbstack/ui:3.94b01f67faadf1
curl@7.80.0-r1
7.80.0-r6

Open the chart page →

1,523
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

7,552
frpcwenerme1.0.11 of 1See more

frpc wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
wener/frpc:v0.37.0cc9fd4da44c0
curl@7.79.1-r0
7.79.1-r5

Open the chart page →

3,359
workadventureworkadventure1.1.02 of 9See more

workadventure workadventure 1.1.0

2 of the 9 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
curl@7.80.0-r1
7.80.0-r6
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
curl@7.80.0-r5
7.80.0-r6

Open the chart page →

16,083
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2023-23914.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
curl@7.79.1-r0
7.79.1-r5

Open the chart page →

2,534

Container images carrying it

183 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/dodevops/scalyr-k8snode-manager:latestfc39fcdd3968
curl@7.80.0-r1
7.80.0-r6
1
ghcr.io/eugenmayer/nist-data-mirror:0.1.1a2162df94729
curl@7.87.0-r1
7.87.0-r2
1
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
curl@7.79.1-r0
7.79.1-r5
1
ghcr.io/k10app/businit:latest94c9a3e799c2
curl@7.86.0-r1
7.87.0-r2
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
ghcr.io/k8up-io/k8up:v2.3.257419b6d3830
curl@7.83.1-r1
7.83.1-r6
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
ghcr.io/mjohnson9/docker-pleroma:v0.1.44f08e2823756
curl@7.83.1-r4
7.83.1-r6
1
ghcr.io/netsoc/docs:latest48890a52b327
curl@7.79.1-r0
7.79.1-r5
1
ghcr.io/netsoc/website:latesta9618107fa50
curl@7.79.1-r0
7.79.1-r5
1
ghcr.io/reitermarkus/strongswan:v1.0.0e7a8afe6e6eb
curl@7.80.0-r0
7.80.0-r6
1
ghcr.io/stefanprodan/podinfo:6.1.3f25ebb9c6788
curl@7.80.0-r0
7.80.0-r6
1
ghcr.io/volosoft/eshoponabp/app-web:1.0.0056bb4271626
curl@7.83.1-r2
7.83.1-r6
1
ghcr.io/wbstack/queryservice-ui:1.4bc79fbb50230
curl@7.80.0-r0
7.80.0-r6
1
ghcr.io/wbstack/ui:3.94b01f67faadf1
curl@7.80.0-r1
7.80.0-r6
1
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
curl@7.79.1-r0
7.79.1-r5
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
curl@7.83.1-r1
7.83.1-r6
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8
1
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
curl@7.83.1-r4
7.83.1-r6
1
quay.io/netwarps/blockscoutbecd3e39360a
curl@7.80.0-r0
7.80.0-r6
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
curl@7.80.0-r0
7.80.0-r6
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
curl@7.79.1-r1
7.79.1-r5
1
quay.io/opsmxpublic/forwarder-controller:v3.5.7f0c5bebaec96
curl@7.83.1-r3
7.83.1-r6
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
curl@7.78.0-r0
7.79.1-r5
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
curl@7.78.0-r0
7.79.1-r5
1
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
curl@7.87.0-r1
7.87.0-r2
1
registry.k8s.io/ingress-nginx/controller:v1.3.154f7fe2c6c5a
curl@7.83.1-r3
7.83.1-r6
1
registry.k8s.io/ingress-nginx/controller:v1.2.15516d103a9c2
curl@7.79.1-r1
7.79.1-r5
1
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
curl@7.83.1-r2
7.83.1-r6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.