StackRadar

CVE-2024-2398

High

Advisory

Published 27 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.6
base score, highest
EPSS
0.361
98th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
875
of 17,787 indexed, latest versions
Container images
838
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 875 of 17,787 indexed charts deploy, on 838 images.

Affected packageAffected versionsFixed inImages
curldeb7.47.0-1ubuntu2.2, 7.47.0-1ubuntu2.5, 7.47.0-1ubuntu2.6, 7.47.0-1ubuntu2.7+56 more7.47.0-1ubuntu2.19+esm12, 7.58.0-2ubuntu3.24+esm4, 7.68.0-1ubuntu2.22, 7.81.0-1ubuntu1.16+1 more451
curlapk7.86.0-r1, 7.87.0-r0, 7.87.0-r1, 7.87.0-r2+12 more8.7.1-r0187
curlrpm7.61.1-8.el8, 7.61.1-11.el8, 7.61.1-12.el8, 7.61.1-12.el8_2.4+26 more0:7.61.1-34.el8_10.2, 0:7.76.1-23.el9_2.7, 0:7.76.1-29.el9_4.1200
OSV records
ALPINE-CVE-2024-2398DEBIAN-CVE-2024-2398RHSA-2024:3998RHSA-2024:5529RHSA-2024:5654RLSA-2024:5654UBUNTU-CVE-2024-2398
Also known as
USN-6718-1, USN-6718-2

Charts affected

875 by stars
ChartLatestAffected imagesRadar Score
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.2

Open the chart page →

6,982
nginx-custom-selinuxnginx-custom1.0.01 of 1See more

nginx-custom-selinux nginx-custom 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
library/nginx:1.25-alpine516475cc129d
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

686
minio-directpvnineinfra-charts4.0.81 of 5See more

minio-directpv nineinfra-charts 4.0.8

1 of the 5 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
quay.io/minio/directpv:v4.0.84560083eb77d
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.2

Open the chart page →

7,035
minio-operatornineinfra-charts5.0.91 of 1See more

minio-operator nineinfra-charts 5.0.9

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
minio/operator:v5.0.9170b154d2c61
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.2

Open the chart page →

3,418
grafananodepulse7.1.01 of 1See more

grafana nodepulse 7.1.0

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
grafana/grafana:10.2.36b5b37eb35bb
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

2,966
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.22

Open the chart page →

22,713
ingress-helm-chartnotesprojectchart0.1.01 of 2See more

ingress-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.1e5c4824e7375
curl@8.1.2-r0
8.7.1-r0

Open the chart page →

2,956
notes-admin-front-helm-chartnotesprojectchart0.1.01 of 1See more

notes-admin-front-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
vlebediantsev/notes-admin-front:latest007c6670ff48
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u6

Open the chart page →

13,331
notes-project-fromt-helm-chartnotesprojectchart0.1.01 of 1See more

notes-project-fromt-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
vlebediantsev/notes-project-front:latest945675fd2636
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u6

Open the chart page →

13,405
registration-ms-front-helm-chartnotesprojectchart0.1.01 of 1See more

registration-ms-front-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u6

Open the chart page →

13,387
example-dev-toolsnoygal0.2.82 of 3See more

example-dev-tools noygal 0.2.8

2 of the 3 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
curl@7.58.0-2ubuntu3.19
7.58.0-2ubuntu3.24+esm4
linuxserver/codimd:latestb801bbcf6386
curl@7.58.0-2ubuntu3.12
7.58.0-2ubuntu3.24+esm4

Open the chart page →

27,486
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm4

Open the chart page →

27,667
nutanix-flow-cninutanix-helm-releasesVerified publisher1.1.01 of 7See more

nutanix-flow-cni nutanix-helm-releases 1.1.0

1 of the 7 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
natsio/nats-box:0.14.1a67913df95f1
curl@8.4.0-r0
8.7.1-r0

Open the chart page →

4,989
db-backupoleds-helm-chartsVerified publisher0.1.01 of 1See more

db-backup oleds-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
oled01/db-backup:0.1.06302fd2b5333
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.16

Open the chart page →

8,130
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.16

Open the chart page →

9,059
apicurioone-acre-fundVerified publisher2.3.03 of 5See more

apicurio one-acre-fund 2.3.0

3 of the 5 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.2
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.2
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.2

Open the chart page →

18,666
commonground-gatewayopencatalogi1.5.32 of 7See more

commonground-gateway opencatalogi 1.5.3

2 of the 7 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/commonground-gateway-nginx:latestb72cf734d85f
curl@8.5.0-r0
8.7.1-r0
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
7.88.1-10+deb12u6

Open the chart page →

9,736
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u6

Open the chart page →

5,688
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.2

Open the chart page →

18,023
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.24+esm4

Open the chart page →

63,277
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm12
omecproject/onos-progran:1.0.05715e5648aa0
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm12
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm12

Open the chart page →

88,616
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm12

Open the chart page →

26,234
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm4

Open the chart page →

15,722
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
omecproject/c3po-hssdb:master-latest28a90cc26716
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.22

Open the chart page →

40,795
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm4

Open the chart page →

12,939
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm12

Open the chart page →

38,889
sebaopencord1.0.01 of 17See more

seba opencord 1.0.0

1 of the 17 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm12

Open the chart page →

93,965
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm4
voltha/voltha-onos:5.1.8e038acb950d3
curl@7.58.0-2ubuntu3.19
7.58.0-2ubuntu3.24+esm4

Open the chart page →

41,088
minioopenobserve5.0.72 of 2See more

minio openobserve 5.0.7

2 of the 2 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2

Open the chart page →

7,457
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2

Open the chart page →

11,795
bpjstk-serviceopenshift1.0.03 of 6See more

bpjstk-service openshift 1.0.0

3 of the 6 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.2
andrianrf/backoffice-be:latest6036614803d4
curl@7.76.1-23.el9_2.1
0:7.76.1-23.el9_2.7
andrianrf/iso-server:latest7da47f525c7d
curl@7.76.1-23.el9_2.1
0:7.76.1-23.el9_2.7

Open the chart page →

34,721
chatbot-ai-sampleopenshift0.1.61 of 4See more

chatbot-ai-sample openshift 0.1.6

1 of the 4 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
curl@7.76.1-29.el9_4
0:7.76.1-29.el9_4.1

Open the chart page →

18,991
flomesh-consoleopenshift0.70.0-30-ubi82 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

2 of the 2 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.2
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.2

Open the chart page →

9,968
fsmopenshift0.1.8-ubi.66 of 6See more

fsm openshift 0.1.8-ubi.6

6 of the 6 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.2
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.2
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.2
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.2
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.2
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.2

Open the chart page →

16,554
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.2

Open the chart page →

14,727
osm-edgeopenshift1.2.1-ubi87 of 7See more

osm-edge openshift 1.2.1-ubi8

7 of the 7 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.2
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.2

Open the chart page →

19,449
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
curl@7.76.1-23.el9_2.2
0:7.76.1-23.el9_2.7

Open the chart page →

8,634
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2

Open the chart page →

13,608
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2

Open the chart page →

11,740
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2

Open the chart page →

13,570
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2

Open the chart page →

13,553
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2

Open the chart page →

13,457
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2

Open the chart page →

13,101
open-vpnopenvpn0.0.11 of 1See more

open-vpn openvpn 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm4

Open the chart page →

15,607
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.24+esm4

Open the chart page →

36,230
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2023-02-28T00-12-59Zc631532a394e
curl@7.61.1-25.el8_7.3
0:7.61.1-34.el8_10.2

Open the chart page →

5,609
lokiot-container-kit1.0.11 of 5See more

loki ot-container-kit 1.0.1

1 of the 5 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.24-alpinebe76a26e238d
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

4,831
pgaot-container-kit1.0.31 of 6See more

pga ot-container-kit 1.0.3

1 of the 6 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
grafana/grafana:11.1.0079600c9517b
curl@8.5.0-r0
8.7.1-r0

Open the chart page →

5,136
radiusp2p-avs0.1.01 of 1See more

radius p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
theradius/loggia:0.463ba348546ec
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u6

Open the chart page →

11,095
p4p40.1.03 of 7See more

p4 p4 0.1.0

3 of the 7 container images this version deploys carry CVE-2024-2398.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.16
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-34.el8_10.2

Open the chart page →

27,667

Container images carrying it

838 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
curl@8.5.0-r0
8.7.1-r0
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
curl@7.81.0-1ubuntu1.2
7.81.0-1ubuntu1.16
2
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
curl@7.87.0-r2
8.7.1-r0
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.22
2
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.2
2
quay.io/keycloak/keycloak:20.0054ef67eb7da
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.2
2
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.2
2
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
2
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.2
2
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
curl@7.61.1-30.el8_8.2
0:7.61.1-34.el8_10.2
2
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.2
2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.2
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.2
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.2
2
quay.io/strimzi/operator:0.39.002f6f143fc6d
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2
2
registry.k8s.io/ingress-nginx/controller:v1.9.45b161f051d01
curl@8.4.0-r0
8.7.1-r0
2
registry.k8s.io/ingress-nginx/controller:v1.9.5b3aba22b1da8
curl@8.5.0-r0
8.7.1-r0
2
5200710/hadoop:3.2.3-java8092d3088a5fb
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.22
1
abdullahkhabir/radio:latest56526d0cc929
curl@8.3.0-r0
8.7.1-r0
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.22
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.22
1
akaunting/akaunting:3.0.1552811b36ec3a
curl@7.88.1-10
7.88.1-10+deb12u6
1
akeyless/base-rhel:0.0.14ba8900a0061
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.2
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
curl@7.58.0-2ubuntu3.19
7.58.0-2ubuntu3.24+esm4
1
alpine/curl:8.5.0513c4f0d7123
curl@8.5.0-r0
8.7.1-r0
1
alpine/k8s:1.27.321b24e6bf801
curl@8.1.2-r0
8.7.1-r0
1
alpine/k8s:1.30.0bd01dae02676
curl@8.5.0-r0
8.7.1-r0
1
alpine/k8s:1.28.2fc059f056ad0
curl@8.3.0-r0
8.7.1-r0
1
altinity/clickhouse-operator:0.19.07a85f522c5bc
curl@7.61.1-25.el8_7.3
0:7.61.1-34.el8_10.2
1
altinity/clickhouse-operator:0.20.08f0f582d41f0
curl@7.61.1-30.el8_8.2
0:7.61.1-34.el8_10.2
1
altinity/metrics-exporter:0.20.01a46d104406d
curl@7.61.1-30.el8_8.2
0:7.61.1-34.el8_10.2
1
anchore/anchore-engine:v0.10.0bde9eedf639d
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.2
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
curl@7.61.1-11.el8
0:7.61.1-34.el8_10.2
1
andrcuns/smocker:0.18.5b4a8eb20581a
curl@8.4.0-r0
8.7.1-r0
1
andrianrf/backoffice:latest047a7837651e
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.2
1
andrianrf/backoffice-be:latest6036614803d4
curl@7.76.1-23.el9_2.1
0:7.76.1-23.el9_2.7
1
andrianrf/iso-server:latest7da47f525c7d
curl@7.76.1-23.el9_2.1
0:7.76.1-23.el9_2.7
1
anguda/ant-media:2.5c435285fc241
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.22
1
apache/airflow:2.8.4-python3.964e58748b6b9
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u6
1
apache/airflow:2.8.1e5560ad0b86e
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u6
1
apache/camel-k:1.10.43bb13d14f64a
curl@7.61.1-22.el8_6.4
0:7.61.1-34.el8_10.2
1
apache/iotdb:0.13.3-nodeafa47bf1692a
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.22
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.16
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.22
1
apachepulsar/pulsar:2.9.0d056c89b7131
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.22
1
apachepulsar/pulsar:2.8.2d538416d5afe
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.22
1
apache/rocketmq-exporter:0.0.2c8fb51195444
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.16
1
apache/skywalking-oap-server:9.2.0133d35d2c263
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.16
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.22
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.