StackRadar

CVE-2023-27535

Medium

Advisory

Published 20 Mar 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
664
of 17,781 indexed, latest versions
Container images
595
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 664 of 17,781 indexed charts deploy, on 595 images.

Affected packageAffected versionsFixed inImages
curldeb7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16, 7.35.0-1ubuntu2.19+48 more7.35.0-1ubuntu2.20+esm15, 7.47.0-1ubuntu2.19+esm8, 7.58.0-2ubuntu3.24, 7.68.0-1ubuntu2.18+1 more294
curlapk7.77.0-r1, 7.78.0-r0, 7.79.1-r0, 7.79.1-r1+19 more7.88.1-r1, 8.0.1-r0162
curlrpm7.61.1-8.el8, 7.61.1-11.el8, 7.61.1-12.el8, 7.61.1-12.el8_2.4+15 more0:7.61.1-30.el8_8.2, 0:7.76.1-23.el9_2.1139
OSV records
ALPINE-CVE-2023-27535RHSA-2023:2650RHSA-2023:3106UBUNTU-CVE-2023-27535RLSA-2023:3106
Also known as
USN-5964-1, USN-5964-2

Charts affected

664 by stars
ChartLatestAffected imagesRadar Score
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.18

Open the chart page →

11,909
svn-git-syncdevtron0.1.31 of 1See more

svn-git-sync devtron 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/svn-git-sync:v78e54bc2d261f
curl@7.83.1-r1
8.0.1-r0

Open the chart page →

1,860
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.10

Open the chart page →

12,949
clairdevtron-labs0.1.141 of 2See more

clair devtron-labs 0.1.14

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

6,237
devtron-enterprisedevtron-labs48.0.03 of 28See more

devtron-enterprise devtron-labs 48.0.0

3 of the 28 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
curl@7.80.0-r6
8.0.1-r0
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
curl@7.47.0-1ubuntu2.19
7.47.0-1ubuntu2.19+esm8
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
8.0.1-r0

Open the chart page →

68,240
devtron-operatordevtron-labs0.23.32 of 11See more

devtron-operator devtron-labs 0.23.3

2 of the 11 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
curl@7.80.0-r6
8.0.1-r0
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
8.0.1-r0

Open the chart page →

32,902
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.18

Open the chart page →

11,909
svn-git-syncdevtron-labs0.1.31 of 1See more

svn-git-sync devtron-labs 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/devtron/svn-git-sync:v78e54bc2d261f
curl@7.83.1-r1
8.0.1-r0

Open the chart page →

1,860
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.02 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
oscarsotosanchez/weatherservice:v1.0911ec961d10b
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24

Open the chart page →

27,550
pagesdipak1.0.02 of 3See more

pages dipak 1.0.0

2 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.18
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24

Open the chart page →

20,190
dnation-kubernetes-monitoring-stackdnationcloud4.0.22 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

2 of the 17 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2

Open the chart page →

21,641
api-postsdniel0.9.11 of 1See more

api-posts dniel 0.9.1

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dniel/api-posts:master45a667852f2a
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24

Open the chart page →

8,986
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.10

Open the chart page →

24,917
seleniumdoubanVerified publisher1.3.21 of 1See more

selenium douban 1.3.2

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

11,782
eoloplannerdreyg-jescribanob-chart-eoloplanner0.1.02 of 7See more

eoloplanner dreyg-jescribanob-chart-eoloplanner 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
oscarsotosanchez/weatherservice:v1.0911ec961d10b
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24

Open the chart page →

24,656
drogue-cloud-coredrogue-iotVerified publisher0.7.1121 of 22See more

drogue-cloud-core drogue-iot 0.7.11

21 of the 22 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
swaggerapi/swagger-ui:v4.12.00d7088d47928
curl@7.80.0-r1
8.0.1-r0
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
curl@7.61.1-25.el8
0:7.61.1-30.el8_8.2
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
curl@7.76.1-19.el9
0:7.76.1-23.el9_2.1
quay.io/keycloak/keycloak:20.0054ef67eb7da
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2

Open the chart page →

55,666
drogue-cloud-examplesdrogue-iotVerified publisher0.7.113 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

3 of the 6 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
curl@7.81.0-1ubuntu1.2
7.81.0-1ubuntu1.10
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

30,699
drogue-cloud-twindrogue-iotVerified publisher0.7.112 of 8See more

drogue-cloud-twin drogue-iot 0.7.11

2 of the 8 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
swaggerapi/swagger-ui:v4.15.27ff9a86f35ff
curl@7.83.1-r3
8.0.1-r0
quay.io/keycloak/keycloak:20.0054ef67eb7da
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2

Open the chart page →

6,915
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
curl@7.47.0-1ubuntu2.14
7.47.0-1ubuntu2.19+esm8

Open the chart page →

19,802
eav-componenteav-component1.0.01 of 3See more

eav-component eav-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
curl@7.80.0-r0
8.0.1-r0

Open the chart page →

7,255
mintakaeclipse-aeriosVerified publisher1.0.01 of 2See more

mintaka eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
fiware/mintaka:0.7.092a3c5cf43c0
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

11,482
openldap-stack-haeclipse-aeriosVerified publisher4.1.21 of 4See more

openldap-stack-ha eclipse-aerios 4.1.2

1 of the 4 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
eclipseaerios/self-service-password:5.2.32f93bfa4cf0d
curl@7.80.0-r2
8.0.1-r0

Open the chart page →

7,534
marblerun-coordinatoredgelesssysVerified publisher0.5.01 of 1See more

marblerun-coordinator edgelesssys 0.5.0

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
curl@7.58.0-2ubuntu3.14
7.58.0-2ubuntu3.24

Open the chart page →

10,981
pagesedgwarepages1.0.02 of 3See more

pages edgwarepages 1.0.0

2 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.18
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24

Open the chart page →

20,190
education-componenteducation-component1.0.01 of 3See more

education-component education-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
curl@7.80.0-r0
8.0.1-r0

Open the chart page →

7,327
mongodb-charteks-3-tier-app-chart0.1.01 of 1See more

mongodb-chart eks-3-tier-app-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24

Open the chart page →

8,041
seafileeleksbai0.1.11 of 3See more

seafile eleksbai 0.1.1

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.106693911bcc40
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.18

Open the chart page →

25,122
elasticsearch-umbrellaempathyco0.8.121 of 3See more

elasticsearch-umbrella empathyco 0.8.12

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
empathyco/elasticsearch:7.17.2-memlock03e724e41eeb
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

10,564
eolicplantseolicplantsVerified publisher0.1.02 of 7See more

eolicplants eolicplants 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
oscarsotosanchez/weatherservice:v1.0911ec961d10b
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24

Open the chart page →

27,291
eoloPlanteolo-plannerVerified publisher0.1.03 of 7See more

eoloPlant eolo-planner 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2

Open the chart page →

27,537
eoloplannereoloplannerVerified publisher0.1.04 of 7See more

eoloplanner eoloplanner 0.1.0

4 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

32,205
eoloPlannerCommunicationsKubernetes3eoloplannercommunicationskuberneteshelmVerified publisher0.1.03 of 7See more

eoloPlannerCommunicationsKubernetes3 eoloplannercommunicationskuberneteshelm 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2

Open the chart page →

27,537
eoloplanner-mcaeoloplanner-mcaVerified publisher0.1.02 of 7See more

eoloplanner-mca eoloplanner-mca 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
oscarsotosanchez/weatherservice:v1.0911ec961d10b
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24

Open the chart page →

27,256
eoloplannereoloplanner-molynx-gat0.1.03 of 7See more

eoloplanner eoloplanner-molynx-gat 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:4.4.66efa05203990
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24

Open the chart page →

28,482
eolo-plannereolo-planner-repo0.1.02 of 7See more

eolo-planner eolo-planner-repo 0.1.0

2 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

27,096
eoloplanteoloplant1.0.03 of 7See more

eoloplant eoloplant 1.0.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2

Open the chart page →

27,537
eoloplantseoloplants-urjcVerified publisher0.1.03 of 7See more

eoloplants eoloplants-urjc 0.1.0

3 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

27,721
servereoloserverVerified publisher0.1.04 of 7See more

server eoloserver 0.1.0

4 of the 7 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.10
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-30.el8_8.2
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

32,205
flywayeosc-lot-1Verified publisher0.7.01 of 3See more

flyway eosc-lot-1 0.7.0

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
flyway/flyway:9.1545b5d7cdc75a
curl@7.68.0-1ubuntu2.16
7.68.0-1ubuntu2.18

Open the chart page →

9,334
blockscoutethereum-helm-chartsVerified publisher0.2.31 of 2See more

blockscout ethereum-helm-charts 0.2.3

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
blockscout/blockscout:5.1.5c365a8f2dc12
curl@7.83.1-r5
8.0.1-r0

Open the chart page →

1,928
nist-data-mirroreugen0.1.21 of 1See more

nist-data-mirror eugen 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/eugenmayer/nist-data-mirror:0.1.1a2162df94729
curl@7.87.0-r1
7.88.1-r1

Open the chart page →

1,958
supportpalevilgn0me0.1.61 of 1See more

supportpal evilgn0me 0.1.6

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.18

Open the chart page →

20,933
spring-boot-adminevryfs-ossVerified publisher0.1.101 of 1See more

spring-boot-admin evryfs-oss 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.10

Open the chart page →

5,998
degafactlyVerified publisher0.11.131 of 3See more

dega factly 0.11.13

1 of the 3 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
factly/dega-studio:0.15.1140fbaa6d555
curl@7.79.1-r0
8.0.1-r0

Open the chart page →

5,747
kavachfactlyVerified publisher0.9.51 of 2See more

kavach factly 0.9.5

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
factly/kavach-web:0.22.30cf361b41798
curl@7.79.1-r0
8.0.1-r0

Open the chart page →

3,573
activityrelayfedihost0.1.41 of 2See more

activityrelay fedihost 0.1.4

1 of the 2 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.10

Open the chart page →

13,450
vipienferama0.2.81 of 1See more

vipien ferama 0.2.8

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18

Open the chart page →

7,481
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
curl@7.47.0-1ubuntu2.14
7.47.0-1ubuntu2.19+esm8

Open the chart page →

14,673
apollofiware0.1.41 of 1See more

apollo fiware 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/fiware/apollo:0.0.1055330b1b60c1
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

6,936
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2023-27535.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2

Open the chart page →

8,528

Container images carrying it

595 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
curl@7.47.0-1ubuntu2.15
7.47.0-1ubuntu2.19+esm8
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
curl@7.61.1-11.el8
0:7.61.1-30.el8_8.2
1
pnnlmiscscripts/k8s-node-image:1.18.20-nginx-323bfca2cfaaaf
curl@7.79.1-r1
8.0.1-r0
1
pnnlmiscscripts/k8s-node-image:1.17.17-nginx-3685debe11edc4
curl@7.79.1-r1
8.0.1-r0
1
pnnlmiscscripts/k8s-node-image:1.20.15-nginx-18bbc7a777f9f7
curl@7.83.1-r1
8.0.1-r0
1
pnnlmiscscripts/k8s-node-image:1.19.16-nginx-20c5c2b19e53a2
curl@7.79.1-r1
8.0.1-r0
1
postgis/postgis:10-3.2-alpine7e3e68a36d53
curl@7.83.1-r4
8.0.1-r0
1
pozetroninc/keydb:v6.0.1653ae64f29da8
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24
1
prefapp/nginx-proxified:latestf4d026fd9a26
curl@7.83.1-r3
8.0.1-r0
1
project2team4/react:latest3ff031a08887
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.18
1
qumine/minecraft-server:v0.1.15c0b650d51132
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.10
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
curl@7.47.0-1ubuntu2.9
7.47.0-1ubuntu2.19+esm8
1
reportportal/migrations:5.7.0da5d8e1395fe
curl@7.80.0-r0
8.0.1-r0
1
reportportal/service-ui:5.7.20a08784eb901
curl@7.83.1-r1
8.0.1-r0
1
resouer/redis-slave:v2e2f198b49ba7
curl@7.35.0-1ubuntu2.3
7.35.0-1ubuntu2.20+esm15
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.18
1
robotshop/rs-mongodb:latest119b545823cd
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.18
1
rundeck/rundeck:3.2.74d64fe56f767
curl@7.47.0-1ubuntu2.14
7.47.0-1ubuntu2.19+esm8
1
rundeck/rundeck:3.0.16b13e8059ad72
curl@7.47.0-1ubuntu2.11
7.47.0-1ubuntu2.19+esm8
1
sarwansharma/minio:v359d1da9385d1
curl@7.61.1-22.el8_6.3
0:7.61.1-30.el8_8.2
1
scrapinghub/splash:3.4.1a5f89bc84606
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24
1
seafileltd/seafile-mc:9.0.106693911bcc40
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.18
1
seafileltd/seafile-mc:9.0.97ac833196f60
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.18
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.18
1
seldonio/locust-core:0.81d0da98a2d76
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm8
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
curl@7.61.1-18.el8_4.1
0:7.61.1-30.el8_8.2
1
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
curl@7.61.1-22.el8_6.4
0:7.61.1-30.el8_8.2
1
sismics/docs:v1.10f4b0ef019cf1
curl@7.58.0-2ubuntu3.3
7.58.0-2ubuntu3.24
1
slagattollas/weatherservice-practica:latest68e7f56393fc
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24
1
snipe/snipe-it:v6.0.1455fb7636a98c
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.18
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.18
1
soulou2019/angular-nginx:latesta3970f97c215
curl@7.80.0-r0
8.0.1-r0
1
splunk/splunk-operator:2.0.0c4e0d3146226
curl@7.61.1-22.el8_6.3
0:7.61.1-30.el8_8.2
1
stakater/workshop-operator:v0.0.3897bf456cc97c
curl@7.61.1-22.el8
0:7.61.1-30.el8_8.2
1
statcan/ckan:2.93921305425b8
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.18
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.18
1
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
curl@7.80.0-r1
8.0.1-r0
1
swaggerapi/swagger-ui:v4.12.00d7088d47928
curl@7.80.0-r1
8.0.1-r0
1
swaggerapi/swagger-ui:v4.15.511b20aebb92c
curl@7.83.1-r3
8.0.1-r0
1
swaggerapi/swagger-ui:v4.15.27ff9a86f35ff
curl@7.83.1-r3
8.0.1-r0
1
t3nde/matomo:4.3.1-fpm-alpine329ce194393a
curl@7.77.0-r1
8.0.1-r0
1
taemon1337/image-api:0.0.1247bc1dc4f07
curl@7.80.0-r0
8.0.1-r0
1
taemon1337/ingress-dashboard:0.0.10e8f5096c66bb
curl@7.80.0-r0
8.0.1-r0
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
curl@7.47.0-1ubuntu2.6
7.47.0-1ubuntu2.19+esm8
1
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
curl@7.80.0-r1
8.0.1-r0
1
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
curl@7.80.0-r5
8.0.1-r0
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.10
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
curl@7.81.0-1ubuntu1.2
7.81.0-1ubuntu1.10
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.