StackRadar

CVE-2023-46218

Medium

Advisory

Published 6 Dec 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.017
76th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
904
of 17,787 indexed, latest versions
Container images
826
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 904 of 17,787 indexed charts deploy, on 826 images.

Affected packageAffected versionsFixed inImages
curldeb7.47.0-1ubuntu2.2, 7.47.0-1ubuntu2.5, 7.47.0-1ubuntu2.6, 7.47.0-1ubuntu2.7+61 more7.47.0-1ubuntu2.19+esm11, 7.58.0-2ubuntu3.24+esm3, 7.68.0-1ubuntu2.21, 7.74.0-1.3+deb11u11+2 more588
curlapk7.80.0-r0, 7.80.0-r1, 7.80.0-r2, 7.80.0-r3+24 more8.5.0-r0215
curlrpm7.76.1-19.el9, 7.76.1-23.el9_2.1, 7.76.1-23.el9_2.2, 7.76.1-23.el9_2.4+1 more0:7.76.1-23.el9_2.6, 0:7.76.1-26.el9_3.323
OSV records
ALPINE-CVE-2023-46218DEBIAN-CVE-2023-46218RHSA-2024:0452RHSA-2024:1129UBUNTU-CVE-2023-46218DSA-5587-1
Also known as
USN-6535-1, USN-6641-1

Charts affected

904 by stars
ChartLatestAffected imagesRadar Score
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-46218.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u11

Open the chart page →

2,021
workadventureworkadventure1.1.02 of 9See more

workadventure workadventure 1.1.0

2 of the 9 container images this version deploys carry CVE-2023-46218.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
curl@7.80.0-r1
8.5.0-r0
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
curl@7.80.0-r5
8.5.0-r0

Open the chart page →

16,083
zahori-consulzahoriVerified publisher1.0.11 of 2See more

zahori-consul zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-46218.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
curl@8.1.2-r0
8.5.0-r0

Open the chart page →

5,033
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2023-46218.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u11

Open the chart page →

1,838

Container images carrying it

826 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u11
1
mailserver/docker-mailserver:11.0.0e0809756dc96
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u11
1
maissacrement/pock8snodejs:0.0.16da0db1159da
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u11
1
manojchaulagain/go-k8s:0.1.0f237b5f637ae
curl@7.74.0-1.3+deb11u5
7.74.0-1.3+deb11u11
1
mantlenetworkio/l2geth:v0.4.36bf383d14291
curl@8.2.1-r0
8.5.0-r0
1
markdegroot/unifi-protect-arm64:latestd8445f2a0de6
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u11
1
matrixdotorg/synapse:v1.53.0cb89c0f17ba1
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u11
1
matrixdotorg/synapse:v1.78.0def97fd537d8
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u11
1
mediagis/nominatim:3.7c15e941485ef
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.21
1
metabase/metabase:v0.46.09ebdc664a6b2
curl@7.88.1-r1
8.5.0-r0
1
mezmohq/vector:1.17.3ad5794b112af
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u11
1
michaelepitech/sample-app:latestaf51d61c19f5
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u11
1
mide/minecraft-overviewer:latest4eee0dcb715f
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u11
1
milvusdb/milvus:v2.2.13a3a55e1c1497
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.21
1
mintproject/data-catalog-db:9be70359feabe03ed55bfdbf92c20a7e43ab928b9bf26fedd848
curl@7.83.1-r4
8.5.0-r0
1
mintproject/mint-ui-lit:246a8771e8c043f8c1840d3c32262d3d6a9a553208c1a13c3397
curl@7.83.1-r4
8.5.0-r0
1
mintproject/model-catalog-explorer:0b2f9f0a9124076aeb492add2f123d0757066f6bdeb80c93b4a9
curl@7.83.1-r4
8.5.0-r0
1
mnaggar3396/python-app:latest371d8ed84b15
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u11
1
moby/buildkit:v0.10.0c2aeafaed434
curl@7.80.0-r0
8.5.0-r0
1
moreillon/face-recognition-fastapi:x86bacb2ddd8394
curl@7.74.0-1.3+b1
7.74.0-1.3+deb11u11
1
moreillon/mqtt-logger-front:50030b8bfc4d12db1d3e
curl@7.74.0-1.3+deb11u5
7.74.0-1.3+deb11u11
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
mshanley80/httpbin2022:latest5b189a70c0fb
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.21
1
muluder/prograncontrollermcord:0.1.843b597a93da7
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm11
1
n22107670/sample-app:0.4.08f3072db7aeb
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u11
1
n8nio/n8n:0.212.0a9195bc499a3
curl@7.83.1-r4
8.5.0-r0
1
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u11
1
natsio/nats-box:0.13.559cf2e949181
curl@7.88.1-r0
8.5.0-r0
1
neilpang/acme.sh:3.0.2595809ad43a2
curl@7.80.0-r0
8.5.0-r0
1
netboxcommunity/netbox:v3.2.83d652dca5351
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.15
1
nirmalnaveen/supermario:latest8541a39162f3
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u11
1
nrrrus/nginx-test:latest5f55cd4ef557
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u11
1
ntakashi/gitana:1.4.04171ec641120
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u11
1
nvidia/k8s-device-plugin:v0.9.0964847cc3fd8
curl@7.47.0-1ubuntu2.18
7.47.0-1ubuntu2.19+esm11
1
oled01/db-backup:0.1.06302fd2b5333
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.15
1
omecproject/c3po-hssdb:master-latest28a90cc26716
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.21
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.24+esm3
1
omecproject/onos-progran:1.0.05715e5648aa0
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm11
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm11
1
onosproject/onos:2.2.144914a8d4b3f
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm3
1
opendatacube/pipelines:wofs-1.225d810e8504b8
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.24+esm3
1
opendatacube/restcube:latest91870111837c
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm3
1
opendatacube/wms:latest1b90cdf68831
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm3
1
openelevation/open-elevation:latest82fb21612e86
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.21
1
openemr/openemr:6.1.089eaa6d9a4e3
curl@7.80.0-r0
8.5.0-r0
1
openhab/openhab:3.2.0d0aa4af452c1
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u11
1
openkm/openkm-ce:6.3.113bc465a7461b
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.21
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.21
1
openspeedtest/latest:v2.0.0d4d62f4b7d85
curl@8.1.2-r0
8.5.0-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.