StackRadar

CVE-2023-27535

Medium

Advisory

Published 20 Mar 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
664
of 17,781 indexed, latest versions
Container images
595
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 664 of 17,781 indexed charts deploy, on 595 images.

Affected packageAffected versionsFixed inImages
curldeb7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16, 7.35.0-1ubuntu2.19+48 more7.35.0-1ubuntu2.20+esm15, 7.47.0-1ubuntu2.19+esm8, 7.58.0-2ubuntu3.24, 7.68.0-1ubuntu2.18+1 more294
curlapk7.77.0-r1, 7.78.0-r0, 7.79.1-r0, 7.79.1-r1+19 more7.88.1-r1, 8.0.1-r0162
curlrpm7.61.1-8.el8, 7.61.1-11.el8, 7.61.1-12.el8, 7.61.1-12.el8_2.4+15 more0:7.61.1-30.el8_8.2, 0:7.76.1-23.el9_2.1139
OSV records
ALPINE-CVE-2023-27535RHSA-2023:2650RHSA-2023:3106UBUNTU-CVE-2023-27535RLSA-2023:3106
Also known as
USN-5964-1, USN-5964-2

Charts affected

664 by stars
ChartLatestAffected imagesRadar Score
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.18

Open the chart page →

11,909
svn-git-syncdevtron0.1.31 of 1See more

svn-git-sync devtron 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/svn-git-sync:v78e54bc2d261f
curl@7.83.1-r1
8.0.1-r0

Open the chart page →

1,860
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.10

Open the chart page →

12,949
clairdevtron-labs0.1.141 of 2See more

clair devtron-labs 0.1.14

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

6,237
devtron-enterprisedevtron-labs48.0.03 of 28See more

devtron-enterprise devtron-labs 48.0.0

3 of the 28 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
curl@7.80.0-r6
8.0.1-r0
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
curl@7.47.0-1ubuntu2.19
7.47.0-1ubuntu2.19+esm8
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
8.0.1-r0

Open the chart page →

68,240
devtron-operatordevtron-labs0.23.32 of 11See more

devtron-operator devtron-labs 0.23.3

2 of the 11 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
curl@7.80.0-r6
8.0.1-r0
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
8.0.1-r0

Open the chart page →

32,902
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.18

Open the chart page →

11,909
svn-git-syncdevtron-labs0.1.31 of 1See more

svn-git-sync devtron-labs 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/svn-git-sync:v78e54bc2d261f
curl@7.83.1-r1
8.0.1-r0

Open the chart page →

1,860
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.02 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
oscarsotosanchez/weatherservice:v1.0911ec961d10b
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24

Open the chart page →

27,550
pagesdipak1.0.02 of 3See more

pages dipak 1.0.0

2 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.18
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24

Open the chart page →

20,190
dnation-kubernetes-monitoring-stackdnationcloud4.0.22 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

2 of the 17 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2

Open the chart page →

21,641
api-postsdniel0.9.11 of 1See more

api-posts dniel 0.9.1

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dniel/api-posts:master45a667852f2a
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24

Open the chart page →

8,986
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.10

Open the chart page →

24,917
seleniumdoubanVerified publisher1.3.21 of 1See more

selenium douban 1.3.2

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

11,782
eoloplannerdreyg-jescribanob-chart-eoloplanner0.1.02 of 7See more

eoloplanner dreyg-jescribanob-chart-eoloplanner 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
oscarsotosanchez/weatherservice:v1.0911ec961d10b
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24

Open the chart page →

24,656
drogue-cloud-coredrogue-iotVerified publisher0.7.1121 of 22See more

drogue-cloud-core drogue-iot 0.7.11

21 of the 22 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
swaggerapi/swagger-ui:v4.12.00d7088d47928
curl@7.80.0-r1
8.0.1-r0
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
curl@7.61.1-25.el8
0:7.61.1-30.el8_8.2
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
quay.io/keycloak/keycloak:20.0054ef67eb7da
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2

Open the chart page →

55,666
drogue-cloud-examplesdrogue-iotVerified publisher0.7.113 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

3 of the 6 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
curl@7.81.0-1ubuntu1.2
7.81.0-1ubuntu1.10
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

30,699
drogue-cloud-twindrogue-iotVerified publisher0.7.112 of 8See more

drogue-cloud-twin drogue-iot 0.7.11

2 of the 8 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
swaggerapi/swagger-ui:v4.15.27ff9a86f35ff
curl@7.83.1-r3
8.0.1-r0
quay.io/keycloak/keycloak:20.0054ef67eb7da
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2

Open the chart page →

6,915
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
curl@7.47.0-1ubuntu2.14
7.47.0-1ubuntu2.19+esm8

Open the chart page →

19,802
eav-componenteav-component1.0.01 of 3See more

eav-component eav-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
curl@7.80.0-r0
8.0.1-r0

Open the chart page →

7,255
mintakaeclipse-aeriosVerified publisher1.0.01 of 2See more

mintaka eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
fiware/mintaka:0.7.092a3c5cf43c0
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

11,482
openldap-stack-haeclipse-aeriosVerified publisher4.1.21 of 4See more

openldap-stack-ha eclipse-aerios 4.1.2

1 of the 4 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
eclipseaerios/self-service-password:5.2.32f93bfa4cf0d
curl@7.80.0-r2
8.0.1-r0

Open the chart page →

7,534
marblerun-coordinatoredgelesssysVerified publisher0.5.01 of 1See more

marblerun-coordinator edgelesssys 0.5.0

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
curl@7.58.0-2ubuntu3.14
7.58.0-2ubuntu3.24

Open the chart page →

10,981
pagesedgwarepages1.0.02 of 3See more

pages edgwarepages 1.0.0

2 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.18
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24

Open the chart page →

20,190
education-componenteducation-component1.0.01 of 3See more

education-component education-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
curl@7.80.0-r0
8.0.1-r0

Open the chart page →

7,327
mongodb-charteks-3-tier-app-chart0.1.01 of 1See more

mongodb-chart eks-3-tier-app-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24

Open the chart page →

8,041
seafileeleksbai0.1.11 of 3See more

seafile eleksbai 0.1.1

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.106693911bcc40
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.18

Open the chart page →

25,122
elasticsearch-umbrellaempathyco0.8.121 of 3See more

elasticsearch-umbrella empathyco 0.8.12

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
empathyco/elasticsearch:7.17.2-memlock03e724e41eeb
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

10,564
eolicplantseolicplantsVerified publisher0.1.02 of 7See more

eolicplants eolicplants 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
oscarsotosanchez/weatherservice:v1.0911ec961d10b
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24

Open the chart page →

27,291
eoloPlanteolo-plannerVerified publisher0.1.03 of 7See more

eoloPlant eolo-planner 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2

Open the chart page →

27,537
eoloplannereoloplannerVerified publisher0.1.04 of 7See more

eoloplanner eoloplanner 0.1.0

4 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

32,205
eoloPlannerCommunicationsKubernetes3eoloplannercommunicationskuberneteshelmVerified publisher0.1.03 of 7See more

eoloPlannerCommunicationsKubernetes3 eoloplannercommunicationskuberneteshelm 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2

Open the chart page →

27,537
eoloplanner-mcaeoloplanner-mcaVerified publisher0.1.02 of 7See more

eoloplanner-mca eoloplanner-mca 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
oscarsotosanchez/weatherservice:v1.0911ec961d10b
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24

Open the chart page →

27,256
eoloplannereoloplanner-molynx-gat0.1.03 of 7See more

eoloplanner eoloplanner-molynx-gat 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:4.4.66efa05203990
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24

Open the chart page →

28,482
eolo-plannereolo-planner-repo0.1.02 of 7See more

eolo-planner eolo-planner-repo 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

27,096
eoloplanteoloplant1.0.03 of 7See more

eoloplant eoloplant 1.0.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2

Open the chart page →

27,537
eoloplantseoloplants-urjcVerified publisher0.1.03 of 7See more

eoloplants eoloplants-urjc 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

27,721
servereoloserverVerified publisher0.1.04 of 7See more

server eoloserver 0.1.0

4 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

32,205
flywayeosc-lot-1Verified publisher0.7.01 of 3See more

flyway eosc-lot-1 0.7.0

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
flyway/flyway:9.1545b5d7cdc75a
curl@7.68.0-1ubuntu2.16
7.68.0-1ubuntu2.18

Open the chart page →

9,334
blockscoutethereum-helm-chartsVerified publisher0.2.31 of 2See more

blockscout ethereum-helm-charts 0.2.3

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
blockscout/blockscout:5.1.5c365a8f2dc12
curl@7.83.1-r5
8.0.1-r0

Open the chart page →

1,928
nist-data-mirroreugen0.1.21 of 1See more

nist-data-mirror eugen 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/eugenmayer/nist-data-mirror:0.1.1a2162df94729
curl@7.87.0-r1
7.88.1-r1

Open the chart page →

1,958
supportpalevilgn0me0.1.61 of 1See more

supportpal evilgn0me 0.1.6

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.18

Open the chart page →

20,933
spring-boot-adminevryfs-ossVerified publisher0.1.101 of 1See more

spring-boot-admin evryfs-oss 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.10

Open the chart page →

5,998
degafactlyVerified publisher0.11.131 of 3See more

dega factly 0.11.13

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
factly/dega-studio:0.15.1140fbaa6d555
curl@7.79.1-r0
8.0.1-r0

Open the chart page →

5,747
kavachfactlyVerified publisher0.9.51 of 2See more

kavach factly 0.9.5

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
factly/kavach-web:0.22.30cf361b41798
curl@7.79.1-r0
8.0.1-r0

Open the chart page →

3,573
activityrelayfedihost0.1.41 of 2See more

activityrelay fedihost 0.1.4

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.10

Open the chart page →

13,450
vipienferama0.2.81 of 1See more

vipien ferama 0.2.8

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

7,481
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
curl@7.47.0-1ubuntu2.14
7.47.0-1ubuntu2.19+esm8

Open the chart page →

14,673
apollofiware0.1.41 of 1See more

apollo fiware 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/fiware/apollo:0.0.1055330b1b60c1
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

6,936
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

8,528

Container images carrying it

595 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
apache/skywalking-oap-server:9.2.0133d35d2c263
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.10
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18
1
apache/skywalking-ui:9.2.0295f1dc87d98
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.10
1
apache/skywalking-ui:8.9.180530f0308a5
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
curl@7.61.1-18.el8
0:7.61.1-30.el8_8.2
1
aquasec/trivy:0.32.0973d0df16189
curl@7.83.1-r3
8.0.1-r0
1
assistiot/fl_orchestrator:ui-latest20338b353aaf
curl@7.83.1-r3
8.0.1-r0
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.18
1
assistiot/identity-manager_kc:latest0df4b4fa899a
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
1
assistiot/location_processing:lateste9bae124095f
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.10
1
assistiot/open_api_kong:1.0.03fe850384689
curl@7.83.1-r4
8.0.1-r0
1
assistiot/tacticle_dashboard:web-latest25fc9f373524
curl@7.83.1-r3
8.0.1-r0
1
atlassian/confluence-server:7.10.03b9222ab32ef
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.10
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18
1
bicarus/wg-access-server:v0.8.206cab48e9334
curl@7.83.1-r3
8.0.1-r0
1
blockscout/blockscout:5.1.5c365a8f2dc12
curl@7.83.1-r5
8.0.1-r0
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.18
1
bsgrigorov/helm-operator:latest45ab095f09c8
curl@7.61.1-14.el8_3.1
0:7.61.1-30.el8_8.2
1
casbin/casdoor:v1.224.066f836ef778b
curl@7.87.0-r1
7.88.1-r1
1
chaosnative/cle-frontend:2.7.007b82a82a702
curl@7.80.0-r0
8.0.1-r0
1
charmcli/soft-serve:v0.4.039523c1a6ba8
curl@7.83.1-r2
8.0.1-r0
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
curl@7.35.0-1ubuntu2.20
7.35.0-1ubuntu2.20+esm15
1
chetangautamm/repo:sipp.v3e7f7049e1544
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.18
1
cheyang/distributed-tf:1.6.046cc34755493
curl@7.47.0-1ubuntu2.6
7.47.0-1ubuntu2.19+esm8
1
clastix/kubectl:v1.2187fabaccb3a6
curl@7.80.0-r0
8.0.1-r0
1
clastix/kubectl:v1.22d0376d87ac6b
curl@7.80.0-r0
8.0.1-r0
1
cloudve/ttyd:latestd79c1c5881c0
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.24
1
cockroachdb/cockroach:v22.2.91116820f4134
curl@7.61.1-25.el8_7.3
0:7.61.1-30.el8_8.2
1
cockroachdb/cockroach-operator:v2.1.0983312754620
curl@7.61.1-18.el8
0:7.61.1-30.el8_8.2
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
curl@7.61.1-14.el8_3.1
0:7.61.1-30.el8_8.2
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
curl@7.61.1-14.el8_3.1
0:7.61.1-30.el8_8.2
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
curl@7.61.1-14.el8_3.1
0:7.61.1-30.el8_8.2
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
curl@7.61.1-14.el8_3.1
0:7.61.1-30.el8_8.2
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
curl@7.61.1-14.el8_3.1
0:7.61.1-30.el8_8.2
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
curl@7.61.1-14.el8_3.1
0:7.61.1-30.el8_8.2
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
curl@7.61.1-14.el8_3.1
0:7.61.1-30.el8_8.2
1
craftypath/sops-operator:v0.8.0402a0024c732
curl@7.61.1-18.el8
0:7.61.1-30.el8_8.2
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
curl@7.87.0-r0
7.88.1-r1
1
cribl/cribl:3.0.2762747cb6796
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
curl@7.47.0-1ubuntu2.19
7.47.0-1ubuntu2.19+esm8
1
ctron/hawkbit-operator:0.1.48fdea8f76499
curl@7.61.1-12.el8
0:7.61.1-30.el8_8.2
1
daskdev/dask-notebook:1.1.0052630f5ca04
curl@7.58.0-2ubuntu3.5
7.58.0-2ubuntu3.24
1
datadog/extendeddaemonset:v0.8.0513a4377aed5
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2
1
datalust/seq:5.0.832-pre9c731bb207a6
curl@7.47.0-1ubuntu2.6
7.47.0-1ubuntu2.19+esm8
1
datawire/ambassador-operator:v1.3.0f95ae710d75c
curl@7.61.1-18.el8
0:7.61.1-30.el8_8.2
1
dellcloud/category:distributed02fc234353a9
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.18
1
dellcloud/pages:1.04d2eb25b9225
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.18
1
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
1
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.