StackRadar

CVE-2023-28319

High

Advisory

Published 26 May 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.025
84th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
173
of 17,781 indexed, latest versions
Container images
140
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 173 of 17,781 indexed charts deploy, on 140 images.

Affected packageAffected versionsFixed inImages
curlapk7.80.0-r0, 7.80.0-r1, 7.80.0-r2, 7.80.0-r3+17 more8.1.0-r0140
OSV records
ALPINE-CVE-2023-28319

Charts affected

173 by stars
ChartLatestAffected imagesRadar Score
k8s-node-image-1-23pnnl-miscscripts0.2.1231 of 2See more

k8s-node-image-1-23 pnnl-miscscripts 0.2.123

1 of the 2 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
curl@7.83.1-r5
8.1.0-r0

Open the chart page →

1,403
k8s-node-image-1-24pnnl-miscscripts0.2.1281 of 2See more

k8s-node-image-1-24 pnnl-miscscripts 0.2.128

1 of the 2 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
curl@7.83.1-r5
8.1.0-r0

Open the chart page →

1,403
k8s-node-image9-1-21pnnl-miscscripts0.2.381 of 2See more

k8s-node-image9-1-21 pnnl-miscscripts 0.2.38

1 of the 2 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
curl@7.88.1-r1
8.1.0-r0

Open the chart page →

2,612
k8s-node-image9-1-22pnnl-miscscripts0.2.311 of 2See more

k8s-node-image9-1-22 pnnl-miscscripts 0.2.31

1 of the 2 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
curl@7.88.1-r1
8.1.0-r0

Open the chart page →

2,612
k8s-node-image9-1-23pnnl-miscscripts0.2.271 of 2See more

k8s-node-image9-1-23 pnnl-miscscripts 0.2.27

1 of the 2 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
curl@7.88.1-r1
8.1.0-r0

Open the chart page →

2,612
tenant-namespacepnnl-miscscripts0.6.231 of 1See more

tenant-namespace pnnl-miscscripts 0.6.23

1 of the 1 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.3.0d1707ca76d3b
curl@7.83.1-r2
8.1.0-r0

Open the chart page →

2,578
reportportalreportportal5.7.22 of 8See more

reportportal reportportal 5.7.2

2 of the 8 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
reportportal/migrations:5.7.0da5d8e1395fe
curl@7.80.0-r0
8.1.0-r0
reportportal/service-ui:5.7.20a08784eb901
curl@7.83.1-r1
8.1.0-r0

Open the chart page →

25,737
devtron-enterpriseromholdings48.0.02 of 28See more

devtron-enterprise romholdings 48.0.0

2 of the 28 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
curl@7.80.0-r6
8.1.0-r0
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
8.1.0-r0

Open the chart page →

68,240
devtron-operatorromholdings0.23.32 of 11See more

devtron-operator romholdings 0.23.3

2 of the 11 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
curl@7.80.0-r6
8.1.0-r0
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
8.1.0-r0

Open the chart page →

32,902
svn-git-syncromholdings0.1.31 of 1See more

svn-git-sync romholdings 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
quay.io/devtron/svn-git-sync:v78e54bc2d261f
curl@7.83.1-r1
8.1.0-r0

Open the chart page →

1,860
scalyr-k8snode-managerscalyr-k8snode-managerVerified publisher0.1.71 of 1See more

scalyr-k8snode-manager scalyr-k8snode-manager 0.1.7

1 of the 1 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
ghcr.io/dodevops/scalyr-k8snode-manager:latestfc39fcdd3968
curl@7.80.0-r1
8.1.0-r0

Open the chart page →

2,150
serviceexampleserviceexample0.1.01 of 5See more

serviceexample serviceexample 0.1.0

1 of the 5 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
natsio/nats-box:0.13.559cf2e949181
curl@7.88.1-r0
8.1.0-r0

Open the chart page →

5,449
commonground-gatewayskeleton-pip0.1.71 of 5See more

commonground-gateway skeleton-pip 0.1.7

1 of the 5 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/commonground-gateway-php:latest947882bf2c37
curl@7.83.1-r4
8.1.0-r0

Open the chart page →

2,825
smarter-k3s-edgesmarterVerified publisher0.0.121 of 2See more

smarter-k3s-edge smarter 0.0.12

1 of the 2 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
library/nginx:1.23.2-alpine455c39afebd4
curl@7.83.1-r4
8.1.0-r0

Open the chart page →

3,462
prestashopstack-prestahop22.0.01 of 4See more

prestashop stack-prestahop 22.0.0

1 of the 4 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.23.086e8449ff8ff
curl@7.83.1-r4
8.1.0-r0

Open the chart page →

3,073
webapp1test-helm-chart-10.1.01 of 1See more

webapp1 test-helm-chart-1 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
devopsjourney1/mywebapp:latestbd1ec6838570
curl@7.83.1-r2
8.1.0-r0

Open the chart page →

1,469
test0tohlejezkouska0.1.01 of 2See more

test0 tohlejezkouska 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
devopsjourney1/mywebapp:latestbd1ec6838570
curl@7.83.1-r2
8.1.0-r0

Open the chart page →

3,296
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
jupyterhub/configurable-http-proxy:4.5.39e2c0107c7a3
curl@7.83.1-r3
8.1.0-r0

Open the chart page →

8,607
queryservice-uiwbstack0.2.01 of 1See more

queryservice-ui wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-ui:1.4bc79fbb50230
curl@7.80.0-r0
8.1.0-r0

Open the chart page →

1,996
uiwbstack0.4.01 of 1See more

ui wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
ghcr.io/wbstack/ui:3.94b01f67faadf1
curl@7.80.0-r1
8.1.0-r0

Open the chart page →

1,523
generic-webhookwebhooks0.1.11 of 1See more

generic-webhook webhooks 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
curl@7.87.0-r2
8.1.0-r0

Open the chart page →

2,030
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
curl@7.80.0-r0
8.1.0-r0

Open the chart page →

7,552
workadventureworkadventure1.1.02 of 9See more

workadventure workadventure 1.1.0

2 of the 9 container images this version deploys carry CVE-2023-28319.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
curl@7.80.0-r1
8.1.0-r0
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
curl@7.80.0-r5
8.1.0-r0

Open the chart page →

16,083

Container images carrying it

140 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
curl@7.83.1-r5
8.1.0-r0
10
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
curl@7.80.0-r6
8.1.0-r0
6
quay.io/devtron/kubectl:latest2ad610626658
curl@7.83.1-r3
8.1.0-r0
6
ghcr.io/conductionnl/commonground-gateway-php:latest947882bf2c37
curl@7.83.1-r4
8.1.0-r0
5
hyperledger/fabric-tools:2.4b1194f509085
curl@7.83.1-r6
8.1.0-r0
4
groundnuty/k8s-wait-for:v2.0c14d7271e401
curl@7.83.1-r4
8.1.0-r0
3
lachlanevenson/k8s-kubectl:v1.23.2e4d83478963b
curl@7.80.0-r0
8.1.0-r0
3
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
curl@7.88.1-r1
8.1.0-r0
3
quay.io/devtron/svn-git-sync:v78e54bc2d261f
curl@7.83.1-r1
8.1.0-r0
3
registry.k8s.io/ingress-nginx/controller:v1.5.14ba73c697770
curl@7.83.1-r4
8.1.0-r0
3
cs3org/wopiserver:v9.4.202a9e78757b4
curl@7.88.1-r0
8.1.0-r0
2
dependencytrack/frontend:4.6.124422d762e08
curl@7.83.1-r3
8.1.0-r0
2
devopsjourney1/mywebapp:latestbd1ec6838570
curl@7.83.1-r2
8.1.0-r0
2
filebrowser/filebrowser:v2.23.086e8449ff8ff
curl@7.83.1-r4
8.1.0-r0
2
hashicorp/consul:1.14.2e38576edcdfd
curl@7.80.0-r4
8.1.0-r0
2
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
curl@7.83.1-r5
8.1.0-r0
2
krtk6160/galoy-nostrcc82a694f818
curl@7.87.0-r2
8.1.0-r0
2
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
curl@7.86.0-r1
8.1.0-r0
2
library/influxdb:2.6.1-alpine44a366dd7724
curl@7.88.1-r1
8.1.0-r0
2
metabase/metabase:v0.45.21fb334ce4820
curl@7.87.0-r1
8.1.0-r0
2
phpipam/phpipam-cron:v1.5.2f770577cb946
curl@7.80.0-r6
8.1.0-r0
2
phpipam/phpipam-www:v1.5.23c6fd1332aeb
curl@7.80.0-r6
8.1.0-r0
2
taigaio/taiga-front:latest570c8792ce80
curl@7.88.1-r1
8.1.0-r0
2
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
curl@7.87.0-r2
8.1.0-r0
2
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
curl@7.80.0-r1
8.1.0-r0
2
quay.io/iver-wharf/wharf-web:v1.6.2dc5d1ed91c26
curl@7.80.0-r1
8.1.0-r0
2
ahmedinfraplus/simple-app:STAGINGc50e6e81a637
curl@7.83.1-r2
8.1.0-r0
1
akaunting/akaunting:3.1.21-fpm-alpine-nginxe7d5c245b1a0
curl@7.80.0-r3
8.1.0-r0
1
alpine/git:2.36.366b210a97bc0
curl@7.83.1-r4
8.1.0-r0
1
alpine/k8s:1.22.600ac10bcb759
curl@7.80.0-r0
8.1.0-r0
1
anonaddy/anonaddy:0.12.3957a95565166
curl@7.83.1-r2
8.1.0-r0
1
aquasec/trivy:0.32.0973d0df16189
curl@7.83.1-r3
8.1.0-r0
1
assistiot/fl_orchestrator:ui-latest20338b353aaf
curl@7.83.1-r3
8.1.0-r0
1
assistiot/open_api_kong:1.0.03fe850384689
curl@7.83.1-r4
8.1.0-r0
1
assistiot/tacticle_dashboard:web-latest25fc9f373524
curl@7.83.1-r3
8.1.0-r0
1
bicarus/wg-access-server:v0.8.206cab48e9334
curl@7.83.1-r3
8.1.0-r0
1
blockscout/blockscout:5.1.5c365a8f2dc12
curl@7.83.1-r5
8.1.0-r0
1
casbin/casdoor:v1.224.066f836ef778b
curl@7.87.0-r1
8.1.0-r0
1
chaosnative/cle-frontend:2.7.007b82a82a702
curl@7.80.0-r0
8.1.0-r0
1
charmcli/soft-serve:v0.4.039523c1a6ba8
curl@7.83.1-r2
8.1.0-r0
1
clastix/kubectl:v1.2187fabaccb3a6
curl@7.80.0-r0
8.1.0-r0
1
clastix/kubectl:v1.22d0376d87ac6b
curl@7.80.0-r0
8.1.0-r0
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
curl@7.87.0-r0
8.1.0-r0
1
devopstales/trivy-operator:2.575136aa7a26e
curl@7.87.0-r1
8.1.0-r0
1
dipugodocker/pdf-editor:1.0-frontendd431c37fe1cd
curl@7.80.0-r3
8.1.0-r0
1
dnsforge/xteve:latest4d9a685c8c28
curl@7.87.0-r1
8.1.0-r0
1
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
curl@7.88.1-r0
8.1.0-r0
1
eclipseaerios/self-service-password:5.2.32f93bfa4cf0d
curl@7.80.0-r2
8.1.0-r0
1
emqx/emqx:4.4.41d36535ba9de
curl@7.80.0-r1
8.1.0-r0
1
ethereumoptimism/l2geth:0.5.315577036dc36d
curl@7.80.0-r5
8.1.0-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.