StackRadar

CVE-2023-23916

Medium

Advisory

Published 15 Feb 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.017
76th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
912
of 17,787 indexed, latest versions
Container images
865
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 912 of 17,787 indexed charts deploy, on 865 images.

Affected packageAffected versionsFixed inImages
curldeb7.58.0-2ubuntu3.3, 7.58.0-2ubuntu3.5, 7.58.0-2ubuntu3.6, 7.58.0-2ubuntu3.8+37 more7.58.0-2ubuntu3.23, 7.64.0-4+deb10u5, 7.68.0-1ubuntu2.16, 7.74.0-1.3+deb11u7+1 more581
curlapk7.77.0-r1, 7.78.0-r0, 7.79.1-r0, 7.79.1-r1+15 more7.79.1-r5, 7.80.0-r6, 7.83.1-r6, 7.87.0-r2152
curlrpm7.61.1-8.el8, 7.61.1-11.el8, 7.61.1-12.el8, 7.61.1-12.el8_2.4+14 more0:7.61.1-25.el8_7.3, 0:7.76.1-19.el9_1.2132
OSV records
ALPINE-CVE-2023-23916RHSA-2023:1140RHSA-2023:1701UBUNTU-CVE-2023-23916DLA-3341-1DSA-5365-1
Also known as
RHSA-2023:1842, USN-5891-1

Charts affected

912 by stars
ChartLatestAffected imagesRadar Score
supportpalevilgn0me0.1.61 of 1See more

supportpal evilgn0me 0.1.6

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.16

Open the chart page →

20,987
spring-boot-adminevryfs-ossVerified publisher0.1.101 of 1See more

spring-boot-admin evryfs-oss 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.8

Open the chart page →

6,038
faasnetfaasnet0.0.41 of 5See more

faasnet faasnet 0.0.4

1 of the 5 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
simpleidserver/faaswebsite:0.0.4367218ae760f
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u7

Open the chart page →

7,665
degafactlyVerified publisher0.11.131 of 3See more

dega factly 0.11.13

1 of the 3 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
factly/dega-studio:0.15.1140fbaa6d555
curl@7.79.1-r0
7.79.1-r5

Open the chart page →

5,747
huntingfactlyVerified publisher0.4.141 of 1See more

hunting factly 0.4.14

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
factly/hunting:0.2.0-stagv1.2ca5bc71d1d5c
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u7

Open the chart page →

4,085
kavachfactlyVerified publisher0.9.51 of 2See more

kavach factly 0.9.5

1 of the 2 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
factly/kavach-web:0.22.30cf361b41798
curl@7.79.1-r0
7.79.1-r5

Open the chart page →

3,573
yelbfairwinds-incubator0.1.11 of 5See more

yelb fairwinds-incubator 0.1.1

1 of the 5 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
quay.io/fairwinds/yelb-appserver:v0.6.0fae21f06131f
curl@7.64.0-4+deb10u2
7.64.0-4+deb10u5

Open the chart page →

5,101
smeejasfanzynoodle0.0.11 of 1See more

smeejas fanzynoodle 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
fanzynoodle/smeejas:0.0.15f9916c1a287
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u7

Open the chart page →

4,127
activityrelayfedihost0.1.42 of 2See more

activityrelay fedihost 0.1.4

2 of the 2 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
stratospire/activityrelay:0.2.3a4c34cb01117
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u7
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.8

Open the chart page →

13,491
vipienferama0.2.81 of 1See more

vipien ferama 0.2.8

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.16

Open the chart page →

7,519
kodiakfikaworks1.1.41 of 2See more

kodiak fikaworks 1.1.4

1 of the 2 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
cdignam/kodiak:v0.54.05a6a55b39cee
curl@7.64.0-4
7.64.0-4+deb10u5

Open the chart page →

3,892
fineractfineract-openshift0.1.11 of 4See more

fineract fineract-openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
openmf/community-app:latest496b60a51f28
curl@7.64.0-4+deb10u1
7.64.0-4+deb10u5

Open the chart page →

7,848
apollofiware0.1.41 of 1See more

apollo fiware 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
quay.io/fiware/apollo:0.0.1055330b1b60c1
curl@7.61.1-22.el8
0:7.61.1-25.el8_7.3

Open the chart page →

6,935
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
curl@7.61.1-22.el8
0:7.61.1-25.el8_7.3

Open the chart page →

8,528
endpoint-auth-servicefiware0.1.41 of 4See more

endpoint-auth-service fiware 0.1.4

1 of the 4 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
curl@7.61.1-22.el8
0:7.61.1-25.el8_7.3

Open the chart page →

11,834
ishare-satellitefiware1.3.21 of 1See more

ishare-satellite fiware 1.3.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
fiware/ishare-satellite:1.2.0c3c1c8ccfb45
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

1,778
mintakafiware0.4.71 of 1See more

mintaka fiware 0.4.7

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
fiware/mintaka:latestefc6793388cc
curl@7.61.1-22.el8
0:7.61.1-25.el8_7.3

Open the chart page →

7,019
orionfiware1.6.111 of 2See more

orion fiware 1.6.11

1 of the 2 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
curl@7.61.1-18.el8
0:7.61.1-25.el8_7.3

Open the chart page →

10,638
scorpio-brokerfiware0.3.31 of 10See more

scorpio-broker fiware 0.3.3

1 of the 10 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:config-server_1.1.0c46c1517e523
curl@7.74.0-1.3+b1
7.74.0-1.3+deb11u7

Open the chart page →

55,600
scorpiobrokerfiware0.1.21 of 10See more

scorpiobroker fiware 0.1.2

1 of the 10 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:config-server_1.1.0c46c1517e523
curl@7.74.0-1.3+b1
7.74.0-1.3+deb11u7

Open the chart page →

55,600
trusted-issuers-registryfiware0.13.01 of 1See more

trusted-issuers-registry fiware 0.13.0

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
curl@7.61.1-22.el8
0:7.61.1-25.el8_7.3

Open the chart page →

7,087
podinfoflagger6.1.41 of 1See more

podinfo flagger 6.1.4

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ghcr.io/stefanprodan/podinfo:6.1.3f25ebb9c6788
curl@7.80.0-r0
7.80.0-r6

Open the chart page →

2,808
flinkflink0.5.11 of 1See more

flink flink 0.5.1

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
library/flink:1.14.6-scala_2.122461f02672b3
curl@7.81.0-1ubuntu1.4
7.81.0-1ubuntu1.8

Open the chart page →

5,690
floriapp-mongodbfloriapp1.0.01 of 1See more

floriapp-mongodb floriapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.23

Open the chart page →

8,046
mod-aesfolio-org0.1.331 of 1See more

mod-aes folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
folioci/mod-aes:latest6d67e9564270
curl@7.83.1-r2
7.83.1-r6

Open the chart page →

2,281
mod-codex-ekbfolio-org0.1.341 of 1See more

mod-codex-ekb folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
folioci/mod-codex-ekb:latest235a3fa4adc9
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

2,113
mod-codex-inventoryfolio-org0.1.341 of 1See more

mod-codex-inventory folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
folioci/mod-codex-inventory:latest6d53ed758fd1
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

1,901
mod-codex-muxfolio-org0.1.341 of 1See more

mod-codex-mux folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
folioci/mod-codex-mux:latestd4138abfd30d
curl@7.83.1-r3
7.83.1-r6

Open the chart page →

1,755
mod-data-import-converter-storagefolio-org0.1.341 of 1See more

mod-data-import-converter-storage folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
folioci/mod-data-import-converter-storage:latest3028f333778f
curl@7.87.0-r0
7.87.0-r2

Open the chart page →

2,488
aptlyg0dscookie0.4.01 of 2See more

aptly g0dscookie 0.4.0

1 of the 2 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
library/nginx:1.212bcabc23b454
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u7

Open the chart page →

3,481
icinga2g0dscookie0.2.01 of 1See more

icinga2 g0dscookie 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u7

Open the chart page →

4,428
passboltg0dscookie0.5.21 of 2See more

passbolt g0dscookie 0.5.2

1 of the 2 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
curl@7.74.0-1.3+deb11u5
7.74.0-1.3+deb11u7

Open the chart page →

7,983
guacamolegabibbo970.3.01 of 3See more

guacamole gabibbo97 0.3.0

1 of the 3 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
guacamole/guacamole:1.3.0739cb6820ae8
curl@7.64.0-4+deb10u1
7.64.0-4+deb10u5

Open the chart page →

6,425
ldap-account-managergabibbo970.2.11 of 1See more

ldap-account-manager gabibbo97 0.2.1

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ldapaccountmanager/lam:7.295533a96a4c1
curl@7.64.0-4+deb10u1
7.64.0-4+deb10u5

Open the chart page →

2,404
galoygaloymoney0.34.71 of 24See more

galoy galoymoney 0.34.7

1 of the 24 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
curl@7.83.1-r4
7.83.1-r6

Open the chart page →

8,679
galoygaloymoney20.34.71 of 24See more

galoy galoymoney2 0.34.7

1 of the 24 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
groundnuty/k8s-wait-for:v2.0c14d7271e401
curl@7.83.1-r4
7.83.1-r6

Open the chart page →

8,679
pagesgary-pages1.0.02 of 3See more

pages gary-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.16
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.23

Open the chart page →

20,233
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.16

Open the chart page →

18,217
anonaddygeek-cookbookVerified publisher6.0.01 of 1See more

anonaddy geek-cookbook 6.0.0

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
anonaddy/anonaddy:0.12.3957a95565166
curl@7.83.1-r2
7.83.1-r6

Open the chart page →

4,788
apache-musicindexgeek-cookbookVerified publisher2.4.21 of 1See more

apache-musicindex geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.16

Open the chart page →

14,698
autobrrgeek-cookbookVerified publisher1.1.31 of 1See more

autobrr geek-cookbook 1.1.3

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ghcr.io/autobrr/autobrr:v1.10.0d4022cd32df5
curl@7.83.1-r4
7.83.1-r6

Open the chart page →

2,236
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
curl@7.58.0-2ubuntu3.16
7.58.0-2ubuntu3.23

Open the chart page →

19,234
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.16

Open the chart page →

16,178
cryptofoliogeek-cookbookVerified publisher1.4.21 of 1See more

cryptofolio geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
xtrendence/cryptofolio:V.2.2.0e6e6612bb94c
curl@7.74.0-1.3+b1
7.74.0-1.3+deb11u7

Open the chart page →

1,493
delugegeek-cookbookVerified publisher5.4.21 of 1See more

deluge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
curl@7.58.0-2ubuntu3.16
7.58.0-2ubuntu3.23

Open the chart page →

13,572
double-takegeek-cookbookVerified publisher2.3.21 of 1See more

double-take geek-cookbook 2.3.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
jakowenko/double-take:1.6.0b858bac9e32a
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.16

Open the chart page →

12,270
embygeek-cookbookVerified publisher3.4.21 of 1See more

emby geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.16

Open the chart page →

8,584
gapsgeek-cookbookVerified publisher5.4.21 of 1See more

gaps geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
housewrecker/gaps:latestf417dd0a7547
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.16

Open the chart page →

8,982
gotifygeek-cookbookVerified publisher1.2.21 of 1See more

gotify geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
gotify/server:2.1.409c79bc1e403
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u7

Open the chart page →

3,131
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2023-23916.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.16

Open the chart page →

11,042

Container images carrying it

865 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/opsmxpublic/forwarder-controller:v3.5.7f0c5bebaec96
curl@7.83.1-r3
7.83.1-r6
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
curl@7.61.1-18.el8_4.1
0:7.61.1-25.el8_7.3
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
curl@7.78.0-r0
7.79.1-r5
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
curl@7.78.0-r0
7.79.1-r5
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
curl@7.61.1-21.el8
0:7.61.1-25.el8_7.3
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u7
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
curl@7.61.1-18.el8
0:7.61.1-25.el8_7.3
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
curl@7.61.1-22.el8
0:7.61.1-25.el8_7.3
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.16
1
registry.gitlab.com/open-forms/design-catalogue:latestf21f19346b29
curl@7.64.0-4+deb10u1
7.64.0-4+deb10u5
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
curl@7.61.1-22.el8
0:7.61.1-25.el8_7.3
1
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
curl@7.87.0-r1
7.87.0-r2
1
registry.k8s.io/ingress-nginx/controller:v1.3.154f7fe2c6c5a
curl@7.83.1-r3
7.83.1-r6
1
registry.k8s.io/ingress-nginx/controller:v1.2.15516d103a9c2
curl@7.79.1-r1
7.79.1-r5
1
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
curl@7.83.1-r2
7.83.1-r6
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.