StackRadar

CVE-2023-46219

Medium

Advisory

Published 12 Dec 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
166
of 17,781 indexed, latest versions
Container images
144
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 166 of 17,781 indexed charts deploy, on 144 images.

Affected packageAffected versionsFixed inImages
curlapk7.86.0-r1, 7.87.0-r0, 7.87.0-r1, 7.87.0-r2+11 more8.5.0-r0108
curldeb7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u47.88.1-10+deb12u536
OSV records
ALPINE-CVE-2023-46219DEBIAN-CVE-2023-46219

Charts affected

166 by stars
ChartLatestAffected imagesRadar Score
keycloak-configuratorsikalabs0.2.01 of 1See more

keycloak-configurator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
hashicorp/terraform:1.44dcb45513699
curl@8.2.1-r0
8.5.0-r0

Open the chart page →

2,863
sorry-cypresssoftonic1.20.01 of 4See more

sorry-cypress softonic 1.20.0

1 of the 4 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
agoldis/sorry-cypress-dashboard:2.5.11e061e5714238
curl@8.1.1-r1
8.5.0-r0

Open the chart page →

4,285
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5

Open the chart page →

20,223
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
l7mp/kurento-one2one-call-server:latestfd2b2d06fff6
curl@8.2.1-r0
8.5.0-r0

Open the chart page →

12,460
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
l7mp/kurento-one2one-call-server:latestfd2b2d06fff6
curl@8.2.1-r0
8.5.0-r0

Open the chart page →

12,460
ingress-nginxsvtech-public-helm-charts1.0.01 of 1See more

ingress-nginx svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.9.45b161f051d01
curl@8.4.0-r0
8.5.0-r0

Open the chart page →

1,480
synadia-serversynadiaVerified publisher1.1.101 of 2See more

synadia-server synadia 1.1.10

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
curl@8.4.0-r0
8.5.0-r0

Open the chart page →

1,970
super-mariotechpreta0.1.11 of 1See more

super-mario techpreta 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
nirmalnaveen/supermario:latest8541a39162f3
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5

Open the chart page →

6,297
temporaltemporal0.28.93 of 13See more

temporal temporal 0.28.9

3 of the 13 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.22.0836af062af30
curl@8.2.0-r1
8.5.0-r0
temporalio/server:1.22.0ddeebf8bad8f
curl@8.2.0-r1
8.5.0-r0
temporalio/ui:2.16.2af9c9349708f
curl@8.1.2-r0
8.5.0-r0

Open the chart page →

21,005
posteetrivy-operator2.14.01 of 3See more

postee trivy-operator 2.14.0

1 of the 3 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
aquasec/postee:2.12.0-amd640795cba777e7
curl@8.1.2-r0
8.5.0-r0

Open the chart page →

4,815
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5

Open the chart page →

14,358
wallarm-ingress-rcwallarmVerified publisher4.8.41 of 2See more

wallarm-ingress-rc wallarm 4.8.4

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
curl@8.4.0-r0
8.5.0-r0

Open the chart page →

2,635
consulwarjiang1.3.01 of 2See more

consul warjiang 1.3.0

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
curl@8.4.0-r0
8.5.0-r0

Open the chart page →

4,060
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
curl@7.88.1-10
7.88.1-10+deb12u5

Open the chart page →

10,001
generic-webhookwebhooks0.1.11 of 1See more

generic-webhook webhooks 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
curl@7.87.0-r2
8.5.0-r0

Open the chart page →

2,030
zahori-consulzahoriVerified publisher1.0.11 of 2See more

zahori-consul zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
curl@8.1.2-r0
8.5.0-r0

Open the chart page →

5,033

Container images carrying it

144 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
felipecs8/qrcode-generator:v1d5f4f17cb066
curl@7.87.0-r1
8.5.0-r0
1
firefart/requesttracker:5.0.40d6249906d8c
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
firefart/requesttracker:nginx-nightly-202307101028236b42a0
curl@8.1.2-r0
8.5.0-r0
1
flomesh/pipy-repo:0.90.3-3874975c50e3d9
curl@8.3.0-r0
8.5.0-r0
1
folioci/mod-data-import-converter-storage:latest3028f333778f
curl@7.87.0-r0
8.5.0-r0
1
glenndehaan/sunflare-tools:latesta5b3f1dd865d
curl@8.2.1-r0
8.5.0-r0
1
grafana/grafana:10.1.50679e877ba20
curl@8.4.0-r0
8.5.0-r0
1
grafana/grafana:10.1.11b9ca4bbc4a2
curl@8.2.1-r0
8.5.0-r0
1
grafana/grafana:9.5.239c849cebccc
curl@8.0.1-r0
8.5.0-r0
1
gulacedia/web-dvwa-new:v367b467d961ca
curl@7.88.1-10
7.88.1-10+deb12u5
1
hashicorp/consul:1.17.0712fe02d2f84
curl@8.4.0-r0
8.5.0-r0
1
hashicorp/consul:1.15.3ddff34041c5c
curl@8.1.2-r0
8.5.0-r0
1
hashicorp/terraform:1.44dcb45513699
curl@8.2.1-r0
8.5.0-r0
1
hashicorp/waypoint:0.11.397d521a27498
curl@8.1.2-r0
8.5.0-r0
1
hazelcast/hazelcast:5.3.18fe26efde8e1
curl@8.2.1-r0
8.5.0-r0
1
homeassistant/home-assistant:2023.10.3021e2afc6e57
curl@8.3.0-r0
8.5.0-r0
1
homeassistant/home-assistant:2023.12.48d000332b09b
curl@8.4.0-r0
8.5.0-r0
1
huangchengwu6904/hi-app:cac-16910478061b932f8221a9
curl@8.1.2-r0
8.5.0-r0
1
i4trust/activation-service:2.2.09f3719176893
curl@8.1.2-r0
8.5.0-r0
1
ildarmukhametzyanov/priceapp:0.115d23720a3ee
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5
1
invoiceninja/invoiceninja:5.6.241437916dee01
curl@8.1.2-r0
8.5.0-r0
1
iomesh/prepare-csi:v1.0.3-rc0063b18afb6a1
curl@8.1.2-r0
8.5.0-r0
1
iomesh/prepare-csi:v1.0.24206d42b92f1
curl@8.1.2-r0
8.5.0-r0
1
jupyterhub/configurable-http-proxy:4.5.67adeeed34a36
curl@8.2.1-r0
8.5.0-r0
1
kfirfer/king:latestc05d9fc7ae77
curl@8.2.1-r0
8.5.0-r0
1
kvalitetsit/stakit-frontend:0.2.5fd5c4f60ef80
curl@8.2.1-r0
8.5.0-r0
1
kyso/jupyter-diff:latest82299a9e5a86
curl@8.2.1-r0
8.5.0-r0
1
lachlanevenson/k8s-kubectl:v1.22.1638b7962cd016
curl@7.86.0-r1
8.5.0-r0
1
library/influxdb:2.7.4-alpinea10d46445d68
curl@8.4.0-r0
8.5.0-r0
1
library/nginx:1.25.167f9a4f10d14
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5
1
linuxserver/grocy:4.0.1f8f5f96b6ea8
curl@8.2.1-r0
8.5.0-r0
1
linuxserver/healthchecks:2.7.2023033194696dab3c50
curl@7.88.1-r1
8.5.0-r0
1
linuxserver/yq:3.2.26f5b9586a93e
curl@8.2.1-r0
8.5.0-r0
1
mantlenetworkio/l2geth:v0.4.36bf383d14291
curl@8.2.1-r0
8.5.0-r0
1
metabase/metabase:v0.46.09ebdc664a6b2
curl@7.88.1-r1
8.5.0-r0
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
natsio/nats-box:0.13.559cf2e949181
curl@7.88.1-r0
8.5.0-r0
1
nirmalnaveen/supermario:latest8541a39162f3
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
openspeedtest/latest:v2.0.0d4d62f4b7d85
curl@8.1.2-r0
8.5.0-r0
1
phntom/chartmuseum:v0.16.053883b65d9b7
curl@8.2.0-r1
8.5.0-r0
1
phntom/postgresql-backup-s3:1.0.2249b6488f618b
curl@7.86.0-r1
8.5.0-r0
1
pnnlmiscscripts/k8s-node-image9:1.23.17-nginx-3479ada675515f
curl@8.2.1-r0
8.5.0-r0
1
pnnlmiscscripts/k8s-node-image9:1.22.17-nginx-34b85e437ae261
curl@8.2.1-r0
8.5.0-r0
1
pnnlmiscscripts/k8s-node-image9:1.21.14-nginx-33fa8f5906d36a
curl@8.2.1-r0
8.5.0-r0
1
postgis/postgis:15-3.3-alpine4738bee21eb6
curl@8.2.1-r0
8.5.0-r0
1
prodrigestivill/postgres-backup-local:12-alpine-8d72d2d6ed2afadc326
curl@7.88.1-r1
8.5.0-r0
1
santisbon/speedtest:latest8ee3a1697227
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
shyim/shopware:6.4.6.0a951c0e6b836
curl@8.2.1-r0
8.5.0-r0
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.