StackRadar

CVE-2025-9086

High

Advisory

Published 10 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.014
71st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
579
of 17,787 indexed, latest versions
Container images
632
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 579 of 17,787 indexed charts deploy, on 632 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.74.0-1.3+b1, 7.74.0-1.3+deb11u1, 7.74.0-1.3+deb11u2+12 more7.74.0-1.3+deb11u16, 8.14.1-2+deb13u1, 8.14.1-2+e1, 8.14.1-2ubuntu1.1291
curlapk8.14.0-r2, 8.14.1-r0, 8.14.1-r18.14.1-r235
curlrpm7.61.1-8.el8, 7.61.1-11.el8, 7.61.1-12.el8, 7.61.1-12.el8_2.4+34 more0:7.61.1-34.el8_10.9, 0:7.76.1-23.el9_2.8, 0:7.76.1-29.el9_4.3, 0:7.76.1-31.el9_6.2+2 more306
OSV records
ALPINE-CVE-2025-9086DEBIAN-CVE-2025-9086UBUNTU-CVE-2025-9086RHSA-2025:23043RHSA-2025:23125RHSA-2025:23127RHSA-2025:23383RHSA-2026:1350RHSA-2026:1825RLSA-2025:23383RLSA-2026:1350DLA-4432-1ECHO-6a25-e091-8eb3
Also known as
USN-8062-1

Charts affected

579 by stars
ChartLatestAffected imagesRadar Score
fsmopenshift0.1.8-ubi.66 of 6See more

fsm openshift 0.1.8-ubi.6

6 of the 6 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.9

Open the chart page →

16,554
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
curl@7.76.1-34.el9
0:7.76.1-35.el9_7.3

Open the chart page →

4,145
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.9

Open the chart page →

14,727
osm-edgeopenshift1.2.1-ubi87 of 7See more

osm-edge openshift 1.2.1-ubi8

7 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.9

Open the chart page →

19,449
redhat-springboot-restopenshift0.0.11 of 1See more

redhat-springboot-rest openshift 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

3,063
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
curl@7.76.1-23.el9_2.2
0:7.76.1-23.el9_2.8

Open the chart page →

8,634
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,608
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

11,740
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,570
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,553
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,457
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

13,101
openshift-integration-operatoropenshift-integration-operatorVerified publisher0.8.21 of 2See more

openshift-integration-operator openshift-integration-operator 0.8.2

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3

Open the chart page →

2,063
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2023-02-28T00-12-59Zc631532a394e
curl@7.61.1-25.el8_7.3
0:7.61.1-34.el8_10.9

Open the chart page →

5,609
devpiowan-charts0.1.01 of 1See more

devpi owan-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
owanio1992/devpi:6.16.04ade8e1e4d7e
curl@7.74.0-1.3+deb11u14
7.74.0-1.3+deb11u16

Open the chart page →

510
mishtip2p-avs0.1.01 of 2See more

mishti p2p-avs 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
mishtinetwork/operator:latestbb3fe67a5f7c
curl@7.74.0-1.3+deb11u14
7.74.0-1.3+deb11u16

Open the chart page →

4,038
p4p40.1.02 of 7See more

p4 p4 0.1.0

2 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
mastercloudapps/server:v2.23f3d24dfe2686
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
mastercloudapps/weatherservice:v1.23de859d29c116
curl@7.61.1-22.el8_6.4
0:7.61.1-34.el8_10.9

Open the chart page →

27,667
parcial-1parcial-1-chart1.0.02 of 5See more

parcial-1 parcial-1-chart 1.0.0

2 of the 5 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
esteban1930/frontend-1:1.8.0f9078279632c
curl@8.14.1-r1
8.14.1-r2
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
curl@8.14.1-r1
8.14.1-r2

Open the chart page →

3,852
pmm-ha-dependenciespercona1.0.01 of 4See more

pmm-ha-dependencies percona 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
percona/percona-postgresql-operator:2.8.06cce2698d3f5
curl@7.76.1-34.el9
0:7.76.1-35.el9_7.3

Open the chart page →

2,449
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9

Open the chart page →

15,466
apache-knox-helmpfisterer-knox0.1.111 of 1See more

apache-knox-helm pfisterer-knox 0.1.11

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
farberg/apache-knox-docker:1.6.14b4a22487394
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

6,236
binaryvision-tlophntom0.0.41 of 1See more

binaryvision-tlo phntom 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
phntom/binaryvision-tlo-static:0.0.4e8b9ac93a3dd
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

1,277
email-managerphntom0.1.221 of 2See more

email-manager phntom 0.1.22

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
phntom/email-manager:0.1.22d8e2a9f2f085
curl@7.74.0-1.3+deb11u5
7.74.0-1.3+deb11u16

Open the chart page →

2,565
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u16

Open the chart page →

4,644
mattermost-defaultbackendphntom0.1.41 of 1See more

mattermost-defaultbackend phntom 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
phntom/mattermost-defaultbackend:6.4.0c318dc90a4bf
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

1,393
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
curl@7.61.1-11.el8
0:7.61.1-34.el8_10.9

Open the chart page →

11,153
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.9

Open the chart page →

12,754
libretimepodzone-chartsVerified publisher0.4.14 of 9See more

libretime podzone-charts 0.4.1

4 of the 9 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ghcr.io/libretime/libretime-analyzer:latest3d5e236216ad
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16
ghcr.io/libretime/libretime-api:latesteae026cc8909
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16
ghcr.io/libretime/libretime-legacy:latest35b4531189c2
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16
ghcr.io/libretime/libretime-playout:latest71a8706531aa
curl@7.74.0-1.3+deb11u15
7.74.0-1.3+deb11u16

Open the chart page →

11,181
pollstrpollstr0.1.01 of 1See more

pollstr pollstr 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ghcr.io/mroxso/pollstr:latest0b4f97faa3d0
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u16

Open the chart page →

813
port-agentport-labsVerified publisher0.8.161 of 1See more

port-agent port-labs 0.8.16

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
curl@1:8.14.1-2+deb13u3+e1
8.14.1-2+e1

Open the chart page →

721
Practica_4_helmpr04helm0.1.02 of 7See more

Practica_4_helm pr04helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.9
codeurjc/weatherservice:v1.0b9e2f7234349
curl@7.61.1-22.el8_6.4
0:7.61.1-34.el8_10.9

Open the chart page →

27,649
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
curl@7.74.0-1.3+b1
7.74.0-1.3+deb11u16

Open the chart page →

9,605
trinopresto-loadbalancer0.2.101 of 2See more

trino presto-loadbalancer 0.2.10

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
trinodb/trino:4796af989b0846d
curl@8.12.1-2.el10
0:8.12.1-2.el10_1.2

Open the chart page →

2,264
cdmswebapppyalive-cdmswebappVerified publisher0.1.01 of 3See more

cdmswebapp pyalive-cdmswebapp 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
sarwansharma/minio:v359d1da9385d1
curl@7.61.1-22.el8_6.3
0:7.61.1-34.el8_10.9

Open the chart page →

6,667
python-apppython-app-chart0.1.01 of 2See more

python-app python-app-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
mnaggar3396/python-app:latest371d8ed84b15
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16

Open the chart page →

3,382
python-fastapi-postgrespython-fastapi-postgres0.1.01 of 1See more

python-fastapi-postgres python-fastapi-postgres 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
archish27/python-fastapi-postgres:latest6610071a2101
curl@7.74.0-1.3+deb11u2
7.74.0-1.3+deb11u16

Open the chart page →

2,983
vaultwardenqbittorrent-helm5.4.01 of 1See more

vaultwarden qbittorrent-helm 5.4.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
vaultwarden/server:1.29.1c2849f8189e4
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u16

Open the chart page →

680
rada-platformrada-platform0.1.03 of 7See more

rada-platform rada-platform 0.1.0

3 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
trinodb/trino:45038c6f24ab1a4
curl@7.76.1-29.el9_4
0:7.76.1-29.el9_4.3
ghcr.io/projectnessie/nessie:0.92.19efe3c74d55f
curl@7.76.1-29.el9_4
0:7.76.1-29.el9_4.3
registry.k8s.io/git-sync/git-sync:v3.6.96fa9042f6128
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u16

Open the chart page →

20,812
kubecostradar-baseVerified publisher1.0.02 of 7See more

kubecost radar-base 1.0.0

2 of the 7 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
gcr.io/kubecost1/cost-model:prod-2.6.39e507ac0aebb
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3
gcr.io/kubecost1/kubecost-modeling:v0.1.22a461dc5cb96a
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3

Open the chart page →

9,389
radar-cp-ksql-serverradar-baseVerified publisher0.0.21 of 2See more

radar-cp-ksql-server radar-base 0.0.2

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9

Open the chart page →

5,269
radar-kafkaradar-baseVerified publisher0.4.12 of 2See more

radar-kafka radar-base 0.4.1

2 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
curl@7.74.0-1.3+deb11u2
7.74.0-1.3+deb11u16
quay.io/strimzi/operator:0.46.0ac434a48ac2b
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3

Open the chart page →

4,236
strimzi-kafka-operatorradar-baseVerified publisher0.46.01 of 1See more

strimzi-kafka-operator radar-base 0.46.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.46.0ac434a48ac2b
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3

Open the chart page →

1,968
raven_profilerraven-profilerVerified publisher0.1.621 of 1See more

raven_profiler raven-profiler 0.1.62

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
public.ecr.aws/t0u0d5o5/ecr_authenticator:latest077e4e57e41c
curl@7.74.0-1.3+deb11u11
7.74.0-1.3+deb11u16

Open the chart page →

1,300
ibm-mongodb-enterprise-helmredhat0.3.01 of 1See more

ibm-mongodb-enterprise-helm redhat 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
curl@7.61.1-14.el8_3.1
0:7.61.1-34.el8_10.9

Open the chart page →

12,248
ansible-automation-platformredhat-cop0.0.91 of 1See more

ansible-automation-platform redhat-cop 0.0.9

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9

Open the chart page →

15,290
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.9

Open the chart page →

15,290
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
curl@7.61.1-12.el8_2.4
0:7.61.1-34.el8_10.9

Open the chart page →

11,437
sonatype-nexusredhat-cop1.1.131 of 2See more

sonatype-nexus redhat-cop 1.1.13

1 of the 2 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
curl@7.61.1-22.el8_6.12
0:7.61.1-34.el8_10.9

Open the chart page →

16,060
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2025-9086.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
curl@7.61.1-21.el8
0:7.61.1-34.el8_10.9

Open the chart page →

29,226

Container images carrying it

632 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
curl@7.74.0-1.3+deb11u3
7.74.0-1.3+deb11u16
1
quay.io/open-cluster-management/kueue-addon:v0.1.47f728514fead
curl@7.76.1-31.el9_6.1
0:7.76.1-31.el9_6.2
1
quay.io/open-cluster-management/managed-serviceaccount:v0.10.0d6284bd7765a
curl@7.76.1-34.el9
0:7.76.1-35.el9_7.3
1
quay.io/openshift/origin-cli:4.66722d5041b47
curl@7.61.1-12.el8_2.4
0:7.61.1-34.el8_10.9
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
curl@7.61.1-12.el8_2.4
0:7.61.1-34.el8_10.9
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
curl@7.61.1-22.el8_6.12
0:7.61.1-34.el8_10.9
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
curl@7.61.1-34.el8_10.8
0:7.61.1-34.el8_10.9
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
curl@7.61.1-34.el8_10.8
0:7.61.1-34.el8_10.9
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
curl@7.61.1-34.el8_10.8
0:7.61.1-34.el8_10.9
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
curl@7.61.1-18.el8_4.1
0:7.61.1-34.el8_10.9
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
curl@7.61.1-34.el8_10.8
0:7.61.1-34.el8_10.9
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
curl@7.61.1-34.el8_10.8
0:7.61.1-34.el8_10.9
1
quay.io/projectquay/clair:4.9.023329c3368e4
curl@7.61.1-34.el8_10.8
0:7.61.1-34.el8_10.9
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
curl@7.76.1-29.el9_4
0:7.76.1-29.el9_4.3
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
curl@7.76.1-23.el9_2.2
0:7.76.1-23.el9_2.8
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.9
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
curl@7.76.1-29.el9_4
0:7.76.1-29.el9_4.3
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
curl@7.61.1-21.el8
0:7.61.1-34.el8_10.9
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
curl@7.61.1-34.el8_10.2
0:7.61.1-34.el8_10.9
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
curl@7.74.0-1.3+deb11u1
7.74.0-1.3+deb11u16
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
curl@7.76.1-31.el9
0:7.76.1-35.el9_7.3
1
quay.io/strimzi/operator:0.45.158c727cd2e68
curl@7.76.1-31.el9_6.1
0:7.76.1-31.el9_6.2
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
curl@7.61.1-30.el8_8.2
0:7.61.1-34.el8_10.9
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
curl@7.61.1-25.el8_7.3
0:7.61.1-34.el8_10.9
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.9
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.9
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.9
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
curl@7.76.1-31.el9
0:7.76.1-31.el9_6.2
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
curl@8.14.1-2
8.14.1-2+deb13u1
1
registry.k8s.io/git-sync/git-sync:v3.6.96fa9042f6128
curl@7.74.0-1.3+deb11u7
7.74.0-1.3+deb11u16
1
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
curl@8.14.1-r1
8.14.1-r2
1
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
curl@8.14.1-r1
8.14.1-r2
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.