StackRadar

CVE-2024-8096

Medium

Advisory

Published 11 Sept 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.007
52nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,031
of 17,787 indexed, latest versions
Container images
979
deployed by those charts
Fix available
3 of 3
affected packages

curl - security update

Carried by container images the latest versions of 1,031 of 17,787 indexed charts deploy, on 979 images.

Affected packageAffected versionsFixed inImages
curldeb7.47.0-1ubuntu2.2, 7.47.0-1ubuntu2.5, 7.47.0-1ubuntu2.6, 7.47.0-1ubuntu2.7+75 more7.47.0-1ubuntu2.19+esm17, 7.58.0-2ubuntu3.24+esm10, 7.68.0-1ubuntu2.24, 7.74.0-1.3+deb11u14+3 more801
curlapk8.0.1-r2, 8.1.0-r0, 8.1.1-r1, 8.1.2-r0+11 more8.10.0-r0176
curlrpm7.60.0-lp151.5.6.18.10.0-1.12
OSV records
ALPINE-CVE-2024-8096DEBIAN-CVE-2024-8096UBUNTU-CVE-2024-8096DLA-3951-1openSUSE-SU-2024:14333-1
Also known as
USN-7012-1, USN-8525-1

Charts affected

1,031 by stars
ChartLatestAffected imagesRadar Score
resultappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u14

Open the chart page →

1,263
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

2 of the 5 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u14
kodekloud/examplevotingapp_vote:v13a856afb02a3
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u14

Open the chart page →

8,287
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.24

Open the chart page →

11,444
wallarm-ingress-rcwallarmVerified publisher4.8.41 of 2See more

wallarm-ingress-rc wallarm 4.8.4

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
wallarm/ingress-controller:4.8.0-1a591b9c91570
curl@8.4.0-r0
8.10.0-r0

Open the chart page →

2,635
pageswalter1.0.02 of 3See more

pages walter 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.24
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm10

Open the chart page →

20,233
consulwarjiang1.3.01 of 2See more

consul warjiang 1.3.0

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
curl@8.4.0-r0
8.10.0-r0

Open the chart page →

4,059
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.24

Open the chart page →

11,167
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u14

Open the chart page →

2,019
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.18

Open the chart page →

6,272
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14

Open the chart page →

2,132
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u8

Open the chart page →

6,540
wbaas-backupwbstack0.1.01 of 1See more

wbaas-backup wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
curl@7.58.0-2ubuntu3.18
7.58.0-2ubuntu3.24+esm10

Open the chart page →

9,748
drillwearefrank1.3.62 of 3See more

drill wearefrank 1.3.6

2 of the 3 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u14

Open the chart page →

9,399
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.24

Open the chart page →

9,225
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.24

Open the chart page →

9,225
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
curl@7.88.1-10
7.88.1-10+deb12u8

Open the chart page →

8,858
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14

Open the chart page →

7,552
emissary-ingresswenerme8.12.22 of 2See more

emissary-ingress wenerme 8.12.2

2 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
datawire/emissary:3.12.21f67a1292d2a
curl@8.9.1-r1
8.10.0-r0
istio/kubectl:1.5.10dbb7726d1bf0
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.24+esm10

Open the chart page →

10,857
hazelcastwenerme5.10.31 of 2See more

hazelcast wenerme 5.10.3

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
hazelcast/hazelcast:5.5.05dd5d31c7a06
curl@8.9.0-r0
8.10.0-r0

Open the chart page →

2,623
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.24

Open the chart page →

15,287
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.18

Open the chart page →

9,296
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
dwdraju/alpine-curl-jq:latest83bd9be2b14b
curl@8.9.1-r1
8.10.0-r0

Open the chart page →

6,323
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u8

Open the chart page →

5,548
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14

Open the chart page →

1,585
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14

Open the chart page →

2,021
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.18

Open the chart page →

14,172
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u8

Open the chart page →

7,685
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
murtazashah46/helmfile:latest4d11726cf803
curl@7.88.1-10+deb12u7
7.88.1-10+deb12u8

Open the chart page →

13,197
prometheusalertygqygq2Verified publisher1.0.01 of 1See more

prometheusalert ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
feiyu563/prometheus-alert:v4.9.1224cfa68cbd9
curl@8.5.0-r0
8.10.0-r0

Open the chart page →

1,610
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u14

Open the chart page →

1,838
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-8096.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latestf166a963b550
curl@8.5.0-r0
8.10.0-r0

Open the chart page →

1,588

Container images carrying it

979 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
kubestar/event-exporter:latest656606941255
curl@8.5.0-r0
8.10.0-r0
1
kubevirtmanager/kubevirt-manager:1.3.3df3ea27d4a9e
curl@8.5.0-r0
8.10.0-r0
1
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.18
1
langgenius/dify-api:0.6.11fca918260dd6
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u8
1
lib42/jackett:latesta55596cda383
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u8
1
library/cassandra:3.11.10b095ff3248c6
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.24
1
library/docker:26.1-dinddd43b430341a
curl@8.8.0-r0
8.10.0-r0
1
library/elasticsearch:8.15.0310b9fc03b06
curl@7.68.0-1ubuntu2.23
7.68.0-1ubuntu2.24
1
library/elasticsearch:7.17.0332c6d416808
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.24
1
library/elasticsearch:7.17.1588c2ec10c7f2
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.24
1
library/elasticsearch:7.17.8fdc73b3249c1
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.24
1
library/flink:1.14.6-scala_2.122461f02672b3
curl@7.81.0-1ubuntu1.4
7.81.0-1ubuntu1.18
1
library/httpd:2.4.54ee2117e77c35
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u14
1
library/influxdb:2.7.4-alpinea10d46445d68
curl@8.4.0-r0
8.10.0-r0
1
library/kibana:7.17.150172f1c538e7
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.24
1
library/kibana:7.17.8c5781ba340ef
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.24
1
library/kibana:7.17.3e2e2031c15be
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.24
1
library/logstash:7.17.817a4f64e9cf5
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.24
1
library/mongo:4.4.1305678ae4e5e1
curl@7.68.0-1ubuntu2.10
7.68.0-1ubuntu2.24
1
library/mongo:4.4-bionic3d0e6df9fd5b
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24+esm10
1
library/mongo:5.0.14-focal50cae5081ab4
curl@7.68.0-1ubuntu2.15
7.68.0-1ubuntu2.24
1
library/mongo:6.0.12646902910d6a
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.18
1
library/mongo:4.2699d652ed674
curl@7.58.0-2ubuntu3.24
7.58.0-2ubuntu3.24+esm10
1
library/mongo:4.2.16ca49afbcb2b
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm10
1
library/mongo:6.0.271a63fc2438e
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.24
1
library/mongo:5.0.217c81758cb295
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.24
1
library/mongo:4.2.21-bionic9cb28f7291d9
curl@7.58.0-2ubuntu3.19
7.58.0-2ubuntu3.24+esm10
1
library/mongo:7.0.12ae1cf99fa7bf
curl@7.81.0-1ubuntu1.17
7.81.0-1ubuntu1.18
1
library/mongo:4.4.18d23ec07162ca
curl@7.68.0-1ubuntu2.15
7.68.0-1ubuntu2.24
1
library/monica:3.7.0-apacheceb1ba4196ab
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u14
1
library/nginx:1.25.4-alpine31bad00311cb
curl@8.5.0-r0
8.10.0-r0
1
library/nginx:1.23.03536d368b898
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14
1
library/nginx:1.25.167f9a4f10d14
curl@7.88.1-10+deb12u1
7.88.1-10+deb12u8
1
library/nginx:1.25.49ff236ed47fe
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u8
1
library/nginx:1.23.2ab589a3c466e
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u14
1
library/nginx:1.23.3f4e3b6489888
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u14
1
library/nginx:1.23f5747a42e3ad
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u14
1
library/php:7.3-apacheb9872cd287ef
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14
1
library/python:3.8d41127070014
curl@7.88.1-10+deb12u7
7.88.1-10+deb12u8
1
library/solr:8.7.0d124efd81fbb
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14
1
library/sonarqube:10.0.0-communityef9723cf4fe4
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.18
1
library/telegraf:1.20.428e98eece020
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14
1
library/telegraf:1.27507a3eecf809
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u8
1
library/wordpress:6.0.0-php8.0-apache277c6c25980f
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u14
1
library/wordpress:6.4.3-apache8ae66efb09a2
curl@7.88.1-10+deb12u5
7.88.1-10+deb12u8
1
library/zookeeper:3.8-temurin55d1e5b2e601
curl@7.81.0-1ubuntu1.14
7.81.0-1ubuntu1.18
1
librenms/librenms:24.11.00920bc9117a8
curl@8.9.1-r1
8.10.0-r0
1
lightbend/curl:7.47.0b0c9894ac8dd
curl@7.47.0-1ubuntu2.9
7.47.0-1ubuntu2.19+esm17
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24+esm10
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.24
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.