StackRadar

CVE-2025-9086

High

Advisory

Published 10 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.014
71st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
579
of 17,787 indexed, latest versions
Container images
632
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 579 of 17,787 indexed charts deploy, on 632 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.74.0-1.3+b1, 7.74.0-1.3+deb11u1, 7.74.0-1.3+deb11u2+12 more7.74.0-1.3+deb11u16, 8.14.1-2+deb13u1, 8.14.1-2+e1, 8.14.1-2ubuntu1.1291
curlapk8.14.0-r2, 8.14.1-r0, 8.14.1-r18.14.1-r235
curlrpm7.61.1-8.el8, 7.61.1-11.el8, 7.61.1-12.el8, 7.61.1-12.el8_2.4+34 more0:7.61.1-34.el8_10.9, 0:7.76.1-23.el9_2.8, 0:7.76.1-29.el9_4.3, 0:7.76.1-31.el9_6.2+2 more306
OSV records
ALPINE-CVE-2025-9086DEBIAN-CVE-2025-9086UBUNTU-CVE-2025-9086RHSA-2025:23043RHSA-2025:23125RHSA-2025:23127RHSA-2025:23383RHSA-2026:1350RHSA-2026:1825RLSA-2025:23383RLSA-2026:1350DLA-4432-1ECHO-6a25-e091-8eb3
Also known as
USN-8062-1

Charts affected

579 by stars
ChartLatestAffected imagesRadar Score
fsmopenshift0.1.8-ubi.66 of 6See more

fsm openshift 0.1.8-ubi.6

6 of the 6 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.9

Open the chart page →

16,554
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
curl@7.76.1-34.el9
0:7.76.1-35.el9_7.3

Open the chart page →

4,145
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.9

Open the chart page →

14,727
osm-edgeopenshift1.2.1-ubi87 of 7See more

osm-edge openshift 1.2.1-ubi8

7 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9

Open the chart page →

19,449
redhat-springboot-restopenshift0.0.11 of 1See more

redhat-springboot-rest openshift 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

3,063
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
curl@7.76.1-23.el9_2.2
0:7.76.1-23.el9_2.8

Open the chart page →

8,634
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,608
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

11,740
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,570
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,553
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,457
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,101
openshift-integration-operatoropenshift-integration-operatorVerified publisher0.8.21 of 2See more

openshift-integration-operator openshift-integration-operator 0.8.2

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3

Open the chart page →

2,063
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2023-02-28T00-12-59Zc631532a394e
curl@7.61.1-25.el8_7.3
0:7.61.1-34.el8_10.9

Open the chart page →

5,609
devpiowan-charts0.1.01 of 1See more

devpi owan-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
owanio1992/devpi:6.16.04ade8e1e4d7e
curl@7.74.0-1.3+deb11u14
7.74.0-1.3+deb11u16

Open the chart page →

510
mishtip2p-avs0.1.01 of 2See more

mishti p2p-avs 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
mishtinetwork/operator:latestbb3fe67a5f7c
curl@7.74.0-1.3+deb11u14
7.74.0-1.3+deb11u16

Open the chart page →

4,038
p4p40.1.02 of 7See more

p4 p4 0.1.0

2 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-34.el8_10.9

Open the chart page →

27,667
parcial-1parcial-1-chart1.0.02 of 5See more

parcial-1 parcial-1-chart 1.0.0

2 of the 5 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
esteban1930/frontend-1:1.8.0f9078279632c
curl@8.14.1-r1
8.14.1-r2
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
curl@8.14.1-r1
8.14.1-r2

Open the chart page →

3,852
pmm-ha-dependenciespercona1.0.01 of 4See more

pmm-ha-dependencies percona 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
percona/percona-postgresql-operator:2.8.06cce2698d3f5
curl@7.76.1-34.el9
0:7.76.1-35.el9_7.3

Open the chart page →

2,449
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9

Open the chart page →

15,466
apache-knox-helmpfisterer-knox0.1.111 of 1See more

apache-knox-helm pfisterer-knox 0.1.11

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
farberg/apache-knox-docker:1.6.14b4a22487394
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

6,236
binaryvision-tlophntom0.0.41 of 1See more

binaryvision-tlo phntom 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
phntom/binaryvision-tlo-static:0.0.4e8b9ac93a3dd
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

1,277
email-managerphntom0.1.221 of 2See more

email-manager phntom 0.1.22

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
phntom/email-manager:0.1.22d8e2a9f2f085
curl@7.74.0-1.3+deb11u5
7.74.0-1.3+deb11u16

Open the chart page →

2,565
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u16

Open the chart page →

4,644
mattermost-defaultbackendphntom0.1.41 of 1See more

mattermost-defaultbackend phntom 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
phntom/mattermost-defaultbackend:6.4.0c318dc90a4bf
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

1,393
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
curl@7.61.1-11.el8
0:7.61.1-34.el8_10.9

Open the chart page →

11,153
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.9

Open the chart page →

12,754
libretimepodzone-chartsVerified publisher0.4.14 of 9See more

libretime podzone-charts 0.4.1

4 of the 9 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ghcr.io/libretime/libretime-analyzer:latest3d5e236216ad
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16
ghcr.io/libretime/libretime-api:latesteae026cc8909
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16
ghcr.io/libretime/libretime-legacy:latest35b4531189c2
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16
ghcr.io/libretime/libretime-playout:latest71a8706531aa
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16

Open the chart page →

11,181
pollstrpollstr0.1.01 of 1See more

pollstr pollstr 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ghcr.io/mroxso/pollstr:latest0b4f97faa3d0
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u16

Open the chart page →

813
port-agentport-labsVerified publisher0.8.161 of 1See more

port-agent port-labs 0.8.16

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
curl@1:8.14.1-2+deb13u3+e1
8.14.1-2+e1

Open the chart page →

721
Practica_4_helmpr04helm0.1.02 of 7See more

Practica_4_helm pr04helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-34.el8_10.9

Open the chart page →

27,649
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
curl@7.74.0-1.3+b1
7.74.0-1.3+deb11u16

Open the chart page →

9,605
trinopresto-loadbalancer0.2.101 of 2See more

trino presto-loadbalancer 0.2.10

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
trinodb/trino:4796af989b0846d
curl@8.12.1-2.el10
0:8.12.1-2.el10_1.2

Open the chart page →

2,264
cdmswebapppyalive-cdmswebappVerified publisher0.1.01 of 3See more

cdmswebapp pyalive-cdmswebapp 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
sarwansharma/minio:v359d1da9385d1
curl@7.61.1-22.el8_6.3
0:7.61.1-34.el8_10.9

Open the chart page →

6,667
python-apppython-app-chart0.1.01 of 2See more

python-app python-app-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
mnaggar3396/python-app:latest371d8ed84b15
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

3,382
python-fastapi-postgrespython-fastapi-postgres0.1.01 of 1See more

python-fastapi-postgres python-fastapi-postgres 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
archish27/python-fastapi-postgres:latest6610071a2101
curl@7.74.0-1.3+deb11u2
7.74.0-1.3+deb11u16

Open the chart page →

2,983
vaultwardenqbittorrent-helm5.4.01 of 1See more

vaultwarden qbittorrent-helm 5.4.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
vaultwarden/server:1.29.1c2849f8189e4
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u16

Open the chart page →

680
rada-platformrada-platform0.1.03 of 7See more

rada-platform rada-platform 0.1.0

3 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
trinodb/trino:45038c6f24ab1a4
curl@7.76.1-29.el9_4
0:7.76.1-29.el9_4.3
ghcr.io/projectnessie/nessie:0.92.19efe3c74d55f
curl@7.76.1-29.el9_4
0:7.76.1-29.el9_4.3
registry.k8s.io/git-sync/git-sync:v3.6.96fa9042f6128
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u16

Open the chart page →

20,812
kubecostradar-baseVerified publisher1.0.02 of 7See more

kubecost radar-base 1.0.0

2 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gcr.io/kubecost1/cost-model:prod-2.6.39e507ac0aebb
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3
gcr.io/kubecost1/kubecost-modeling:v0.1.22a461dc5cb96a
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3

Open the chart page →

9,389
radar-cp-ksql-serverradar-baseVerified publisher0.0.21 of 2See more

radar-cp-ksql-server radar-base 0.0.2

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

5,269
radar-kafkaradar-baseVerified publisher0.4.12 of 2See more

radar-kafka radar-base 0.4.1

2 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
curl@7.74.0-1.3+deb11u2
7.74.0-1.3+deb11u16
quay.io/strimzi/operator:0.46.0ac434a48ac2b
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3

Open the chart page →

4,236
strimzi-kafka-operatorradar-baseVerified publisher0.46.01 of 1See more

strimzi-kafka-operator radar-base 0.46.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.46.0ac434a48ac2b
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3

Open the chart page →

1,968
raven_profilerraven-profilerVerified publisher0.1.621 of 1See more

raven_profiler raven-profiler 0.1.62

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
public.ecr.aws/t0u0d5o5/ecr_authenticator:latest077e4e57e41c
curl@7.74.0-1.3+deb11u11
7.74.0-1.3+deb11u16

Open the chart page →

1,300
ibm-mongodb-enterprise-helmredhat0.3.01 of 1See more

ibm-mongodb-enterprise-helm redhat 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
curl@7.61.1-14.el8_3.1
0:7.61.1-34.el8_10.9

Open the chart page →

12,248
ansible-automation-platformredhat-cop0.0.91 of 1See more

ansible-automation-platform redhat-cop 0.0.9

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9

Open the chart page →

15,290
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9

Open the chart page →

15,290
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
curl@7.61.1-12.el8_2.4
0:7.61.1-34.el8_10.9

Open the chart page →

11,437
sonatype-nexusredhat-cop1.1.131 of 2See more

sonatype-nexus redhat-cop 1.1.13

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
curl@7.61.1-22.el8_6.12
0:7.61.1-34.el8_10.9

Open the chart page →

16,060
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
curl@7.61.1-21.el8
0:7.61.1-34.el8_10.9

Open the chart page →

29,226

Container images carrying it

632 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
curl@7.76.1-31.el9_6.1
0:7.76.1-31.el9_6.2
1
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
curl@1:8.14.1-2+deb13u3+e1
8.14.1-2+e1
1
public.ecr.aws/jtekt-corporation/annotation-tool:ef974ad9abd817eb6845
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u16
1
public.ecr.aws/jtekt-corporation/polygonal-annotation-tool:a3fa936056efd38500d6
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u16
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
curl@7.61.1-34.el8_10.2
0:7.61.1-34.el8_10.9
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3
1
public.ecr.aws/r3m4q3r9/pleco:0.24.0651739583336
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16
1
public.ecr.aws/t0u0d5o5/ecr_authenticator:latest077e4e57e41c
curl@7.74.0-1.3+deb11u11
7.74.0-1.3+deb11u16
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
curl@7.76.1-29.el9_4.1
0:7.76.1-29.el9_4.3
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
curl@7.76.1-29.el9_4.1
0:7.76.1-29.el9_4.3
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9
1
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.9
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
curl@7.61.1-30.el8_8.2
0:7.61.1-34.el8_10.9
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.9
1
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
curl@7.61.1-34.el8_10.2
0:7.61.1-34.el8_10.9
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.9
1
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.9
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.9
1
quay.io/fiware/contract-management:3.3.122bcfcf874451
curl@7.61.1-34.el8_10.2
0:7.61.1-34.el8_10.9
1
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
curl@7.61.1-34.el8_10.2
0:7.61.1-34.el8_10.9
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.9
1
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-account:1.18.06b25aac03414
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.9
1
quay.io/fiware/trusted-issuers-list:0.9.13c886ce5c056
curl@7.76.1-31.el9_6.1
0:7.76.1-31.el9_6.2
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.9
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.