StackRadar

CVE-2023-46219

Medium

Advisory

Published 12 Dec 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
166
of 17,781 indexed, latest versions
Container images
144
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 166 of 17,781 indexed charts deploy, on 144 images.

Affected packageAffected versionsFixed inImages
curlapk7.86.0-r1, 7.87.0-r0, 7.87.0-r1, 7.87.0-r2+11 more8.5.0-r0108
curldeb7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u47.88.1-10+deb12u536
OSV records
ALPINE-CVE-2023-46219DEBIAN-CVE-2023-46219

Charts affected

166 by stars
ChartLatestAffected imagesRadar Score
keycloak-configuratorsikalabs0.2.01 of 1See more

keycloak-configurator sikalabs 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
hashicorp/terraform:1.44dcb45513699
curl@8.2.1-r0
8.5.0-r0

Open the chart page →

2,863
sorry-cypresssoftonic1.20.01 of 4See more

sorry-cypress softonic 1.20.0

1 of the 4 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
agoldis/sorry-cypress-dashboard:2.5.11e061e5714238
curl@8.1.1-r1
8.5.0-r0

Open the chart page →

4,285
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5

Open the chart page →

20,223
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
l7mp/kurento-one2one-call-server:latestfd2b2d06fff6
curl@8.2.1-r0
8.5.0-r0

Open the chart page →

12,460
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
l7mp/kurento-one2one-call-server:latestfd2b2d06fff6
curl@8.2.1-r0
8.5.0-r0

Open the chart page →

12,460
ingress-nginxsvtech-public-helm-charts1.0.01 of 1See more

ingress-nginx svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.9.45b161f051d01
curl@8.4.0-r0
8.5.0-r0

Open the chart page →

1,480
synadia-serversynadiaVerified publisher1.1.101 of 2See more

synadia-server synadia 1.1.10

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
curl@8.4.0-r0
8.5.0-r0

Open the chart page →

1,970
super-mariotechpreta0.1.11 of 1See more

super-mario techpreta 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
nirmalnaveen/supermario:latest8541a39162f3
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5

Open the chart page →

6,297
temporaltemporal0.28.93 of 13See more

temporal temporal 0.28.9

3 of the 13 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.22.0836af062af30
curl@8.2.0-r1
8.5.0-r0
temporalio/server:1.22.0ddeebf8bad8f
curl@8.2.0-r1
8.5.0-r0
temporalio/ui:2.16.2af9c9349708f
curl@8.1.2-r0
8.5.0-r0

Open the chart page →

21,005
posteetrivy-operator2.14.01 of 3See more

postee trivy-operator 2.14.0

1 of the 3 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
aquasec/postee:2.12.0-amd640795cba777e7
curl@8.1.2-r0
8.5.0-r0

Open the chart page →

4,815
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5

Open the chart page →

14,358
wallarm-ingress-rcwallarmVerified publisher4.8.41 of 2See more

wallarm-ingress-rc wallarm 4.8.4

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
curl@8.4.0-r0
8.5.0-r0

Open the chart page →

2,635
consulwarjiang1.3.01 of 2See more

consul warjiang 1.3.0

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
curl@8.4.0-r0
8.5.0-r0

Open the chart page →

4,060
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
curl@7.88.1-10
7.88.1-10+deb12u5

Open the chart page →

10,001
generic-webhookwebhooks0.1.11 of 1See more

generic-webhook webhooks 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
curl@7.87.0-r2
8.5.0-r0

Open the chart page →

2,030
zahori-consulzahoriVerified publisher1.0.11 of 2See more

zahori-consul zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-46219.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
curl@8.1.2-r0
8.5.0-r0

Open the chart page →

5,033

Container images carrying it

144 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
6
natsio/nats-box:0.14.1a67913df95f1
curl@8.4.0-r0
8.5.0-r0
5
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
curl@7.88.1-r1
8.5.0-r0
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
7.88.1-10+deb12u5
3
quay.io/jupyterhub/configurable-http-proxy:4.6.1fd916f75415f
curl@8.4.0-r0
8.5.0-r0
3
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
curl@8.1.2-r0
8.5.0-r0
3
agoldis/sorry-cypress-dashboard:2.5.11e061e5714238
curl@8.1.1-r1
8.5.0-r0
2
chatwoot/chatwoot:v3.1.0d530ab8c1753
curl@8.2.1-r0
8.5.0-r0
2
cs3org/wopiserver:v9.4.202a9e78757b4
curl@7.88.1-r0
8.5.0-r0
2
daniacobext/airports-frontend:latest9eae4d39fc33
curl@8.1.2-r0
8.5.0-r0
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
7.88.1-10+deb12u5
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
2
krtk6160/galoy-nostrcc82a694f818
curl@7.87.0-r2
8.5.0-r0
2
l7mp/kurento-one2one-call-server:latestfd2b2d06fff6
curl@8.2.1-r0
8.5.0-r0
2
lachlanevenson/k8s-kubectl:v1.25.4af5cea3f2e40
curl@7.86.0-r1
8.5.0-r0
2
library/influxdb:2.6.1-alpine44a366dd7724
curl@7.88.1-r1
8.5.0-r0
2
library/python:3.7eedf63967cdb
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5
2
metabase/metabase:v0.45.21fb334ce4820
curl@7.87.0-r1
8.5.0-r0
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
2
moreillon/user-manager-front:v5.0.3b067dbbbb6af
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
2
organizr/organizr:latest1ce319d73cdf
curl@8.4.0-r0
8.5.0-r0
2
taigaio/taiga-front:latest570c8792ce80
curl@7.88.1-r1
8.5.0-r0
2
temporalio/server:1.22.4c0a44c26397b
curl@8.4.0-r0
8.5.0-r0
2
temporalio/ui:2.16.2af9c9349708f
curl@8.1.2-r0
8.5.0-r0
2
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
curl@7.87.0-r2
8.5.0-r0
2
registry.k8s.io/ingress-nginx/controller:v1.9.45b161f051d01
curl@8.4.0-r0
8.5.0-r0
2
abdullahkhabir/radio:latest56526d0cc929
curl@8.3.0-r0
8.5.0-r0
1
akaunting/akaunting:3.0.1552811b36ec3a
curl@7.88.1-10
7.88.1-10+deb12u5
1
alpine/k8s:1.27.321b24e6bf801
curl@8.1.2-r0
8.5.0-r0
1
alpine/k8s:1.28.2fc059f056ad0
curl@8.3.0-r0
8.5.0-r0
1
andrcuns/smocker:0.18.5b4a8eb20581a
curl@8.4.0-r0
8.5.0-r0
1
aquasec/postee:2.12.0-amd640795cba777e7
curl@8.1.2-r0
8.5.0-r0
1
aquasec/trivy:0.43.1944a04445179
curl@8.1.2-r0
8.5.0-r0
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u5
1
avinash263/pyredis263:latestaa2b8727f1a6
curl@7.88.1-10
7.88.1-10+deb12u5
1
avzini/web-app:latestf40b30210ed0
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
casbin/casdoor:v1.224.066f836ef778b
curl@7.87.0-r1
8.5.0-r0
1
cloudnativelabs/kube-router:v1.6.00ec7cd73f43f
curl@8.1.2-r0
8.5.0-r0
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
curl@7.87.0-r0
8.5.0-r0
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
devopstales/trivy-operator:2.575136aa7a26e
curl@7.87.0-r1
8.5.0-r0
1
dnsforge/xteve:latest4d9a685c8c28
curl@7.87.0-r1
8.5.0-r0
1
dobtc/bitcoin:25.1a870f7cb1105
curl@7.88.1-10+deb12u4
7.88.1-10+deb12u5
1
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
curl@7.88.1-r0
8.5.0-r0
1
emqx/emqx:4.4.1971db5ed95db3
curl@8.1.2-r0
8.5.0-r0
1
epamedp/jenkins-operator:2.15.328ef56bc0ca3
curl@8.4.0-r0
8.5.0-r0
1
eqalpha/keydb:alpine_x86_64_v6.3.4f1d60f12cb3c
curl@8.4.0-r0
8.5.0-r0
1
factly/mande-studio:0.34.19db4bee30e63
curl@8.2.1-r0
8.5.0-r0
1
fedodo/fedodo.ui.home:3c69413c4d690
curl@8.1.2-r0
8.5.0-r0
1
fedodo/fedodo.ui.micro:12b2b540081c21
curl@8.1.2-r0
8.5.0-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.