StackRadar

CVE-2026-10536

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,107
of 17,787 indexed, latest versions
Container images
973
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,107 of 17,787 indexed charts deploy, on 973 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4+33 more8.5.0-2ubuntu10.11, 8.14.1-2+e19, 8.14.1-2ubuntu1.5, 8.18.0-1ubuntu2.3758
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0215
OSV records
ALPINE-CVE-2026-10536DEBIAN-CVE-2026-10536UBUNTU-CVE-2026-10536ECHO-0d6f-7fbe-c7fa
Also known as
USN-8525-1

Charts affected

1,107 by stars
ChartLatestAffected imagesRadar Score
flaresolverralexmorbo-flaresolverrVerified publisher0.2.01 of 1See more

flaresolverr alexmorbo-flaresolverr 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

27,274
lidarralexmorbo-lidarrVerified publisher0.1.21 of 1See more

lidarr alexmorbo-lidarr 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,870
quialexmorbo-quiVerified publisher0.1.01 of 1See more

qui alexmorbo-qui 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/autobrr/qui:v1.14.110b7945d4f09
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,623
nginx-sni-proxyalexpressoVerified publisher1.0.21 of 1See more

nginx-sni-proxy alexpresso 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
alluredeckalluredeckVerified publisher0.24.01 of 2See more

alluredeck alluredeck 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/mkutlak/alluredeck-ui:0.41.0c19509b1b336
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,273
anchore-admission-controlleranchore-charts0.8.51See more

anchore-admission-controller anchore-charts 0.8.5

1 container image this version deploys carries CVE-2026-10536.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,817
stalwartandibraeuVerified publisher1.0.21 of 1See more

stalwart andibraeu 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.1425001929f36a
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,587
buildkit-serviceandrcunsVerified publisher1.8.01 of 1See more

buildkit-service andrcuns 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
moby/buildkit:v0.31.0a095b3d11ce1
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,285
mathesarandrenarchyVerified publisher1.8.01 of 1See more

mathesar andrenarchy 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
mathesar/mathesar:0.12.0091757cb01fe
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,239
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

3,991
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

5,558
ansible-playbook-operatoransible-playbook-operatorVerified publisher0.1.71 of 1See more

ansible-playbook-operator ansible-playbook-operator 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
kenchrcum/ansible-playbook-operator:0.1.712fb213debf1
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,339
antigenic-docuseal-helm-chartantigenic-docuseal-helm-chartVerified publisher0.2.01 of 1See more

antigenic-docuseal-helm-chart antigenic-docuseal-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
docuseal/docuseal:2.4.17493fd7f6728
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,766
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

3,239
accounts-uiappscodeVerified publisher2026.9.111 of 1See more

accounts-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
aceappscodeVerified publisher2026.9.111 of 2See more

ace appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,894
ace-installerappscodeVerified publisher2026.9.111 of 2See more

ace-installer appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,225
ace-installer-certifiedappscodeVerified publisher2026.9.111 of 2See more

ace-installer-certified appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,225
billingappscodeVerified publisher2026.9.111 of 1See more

billing appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
marketplace-apiappscodeVerified publisher2026.9.111 of 1See more

marketplace-api appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
platform-apiappscodeVerified publisher2026.9.112 of 3See more

platform-api appscode 2026.9.11

2 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
curl@8.16.0-4~bpo13+1
no fix listed

Open the chart page →

37,268
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

5,657
appwriteappwrite-helmVerified publisher1.3.22 of 8See more

appwrite appwrite-helm 1.3.2

2 of the 8 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
curl@8.17.0-r1
8.22.0-r0
clamav/clamav:1.0dd0d9cc746af
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

9,847
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
curl@8.14.1-2
no fix listed

Open the chart page →

7,489
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

7,300
arlas-aiasarlas-stackVerified publisher28.8.011 of 22See more

arlas-aias arlas-stack 28.8.0

11 of the 22 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
curl@7.88.1-10+deb12u8
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
curl@7.88.1-10+deb12u12
no fix listed
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

40,238
arlas-uisarlas-stackVerified publisher28.8.04 of 4See more

arlas-uis arlas-stack 28.8.0

4 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,985
titilerarlas-stackVerified publisher28.8.01 of 1See more

titiler arlas-stack 28.8.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,445
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,032
smartorchestratorassist-iot-smart-orchestrator4.0.01 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

1 of the 14 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

45,363
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

13,913
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

32,501
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

9,412
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,297
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

7,152
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:news3e8880fbbb96
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:blog4a7707410bf1
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:shop84a9d9766345
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

18,344
aws-web-service-proxifiedaws-web-service-proxified1.8.01 of 2See more

aws-web-service-proxified aws-web-service-proxified 1.8.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,009
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

2,738
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,297
my-nginx-appbassant-nginx-app0.1.01 of 1See more

my-nginx-app bassant-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,028
pangolinbdcode0.14.11 of 1See more

pangolin bdcode 0.14.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
fosrl/pangolin:latest83a55f933b4d
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

1,901
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

5,059
tenzu-frontbiru-scop3.1.01 of 1See more

tenzu-front biru-scop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

845
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

10,145
bdbablackduck2026.6.31 of 9See more

bdba blackduck 2026.6.3

1 of the 9 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.2.6a52221a2a3eb
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

9,521
blackduck-alertblackduck8.4.02 of 4See more

blackduck-alert blackduck 8.4.0

2 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
curl@8.17.0-r1
8.22.0-r0
blackducksoftware/blackduck-alert-rabbitmq:8.4.08f422b18d171
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

4,292
bluespacebluespace0.3.01 of 1See more

bluespace bluespace 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
curl@7.88.1-10+deb12u12
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

26,996

Container images carrying it

973 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
openvino/model_server:2025.2.11e7cd1d70cc1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
owncloud/ocis:8.0.1b38fd8fdd58f
curl@8.17.0-r1
8.22.0-r0
1
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
curl@8.14.1-2+deb13u3
no fix listed
1
penpotapp/frontend:2.17.294fa2864d8fc
curl@8.20.0-r0
8.22.0-r0
1
peterdavehello/tor-socks-proxy:latest0cc12d36d312
curl@8.17.0-r1
8.22.0-r0
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
curl@7.88.1-10+deb12u12
no fix listed
1
photoprism/photoprism:260601650c6ad5a651
curl@8.18.0-1ubuntu2.1
8.18.0-1ubuntu2.3
1
photoprism/photoprism:251130db16ee6b1ba3
curl@8.14.1-2ubuntu1
8.14.1-2ubuntu1.5
1
photoprism/photoprism:240711-cefc6fd632ca74
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.11
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
curl@8.14.1-2
no fix listed
1
pk910/powfaucet:v2-stable3dcae6a62896
curl@7.88.1-10+deb12u12
no fix listed
1
pockost/matomo:5.13.07f5d293cbe4e
curl@8.14.1-2+deb13u4
no fix listed
1
polyaxon/polyaxon-api:2.16.42b55c3265a90
curl@8.14.1-2+deb13u4
no fix listed
1
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
curl@8.14.1-2+deb13u4
no fix listed
1
postgis/postgis:18-3.67e00e8c3539f
curl@8.14.1-2+deb13u4
no fix listed
1
powerdns/pdns-recursor-54:5.4.533aadc74a8d6
curl@8.14.1-2+deb13u4
no fix listed
1
praravind1801/helmimages:3.0.0f29d637b9ce1
curl@7.88.1-10+deb12u5
no fix listed
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
curl@7.88.1-10+deb12u6
no fix listed
1
pretix/standalone:2026.7.05df3b7aa852e
curl@8.14.1-2+deb13u4
no fix listed
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
curl@8.14.1-2
no fix listed
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.11
1
prowlercloud/prowler-api:5.31.14f252d579be2
curl@7.88.1-10+deb12u14
no fix listed
1
qjoly/kubernetes-coffee-image:simpleec94d3bdc035
curl@8.14.1-2+deb13u4
no fix listed
1
quickwit/quickwit:v0.8.1d29332bdadcc
curl@7.88.1-10+deb12u5
no fix listed
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
readysettech/sqp:latest588f3507280e
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
readysettech/sqp-duckdb:latest67a83203ce60
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
reallibrephotos/librephotos-proxy:1.0.398a13dabbadc
curl@8.14.1-2+deb13u3
no fix listed
1
redash/redash:25.8.000d813437db5
curl@7.88.1-10+deb12u12
no fix listed
1
redash/redash:26.3.0c5c9148f5c38
curl@7.88.1-10+deb12u14
no fix listed
1
redimp/otterwiki:2778bf30da3da
curl@7.88.1-10+deb12u15
no fix listed
1
redocly/redoc:latest2e26bb660574
curl@8.19.0-r0
8.22.0-r0
1
redpandadata/redpanda:latest468bd13a9f2b
curl@8.14.1-2+deb13u4
no fix listed
1
reportportal/k8s-wait-for:latest06cdf299b397
curl@8.19.0-r0
8.22.0-r0
1
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
curl@7.88.1-10+deb12u14
no fix listed
1
robiningelbrecht/strava-statistics:v5.0.040842cdfd616
curl@8.19.0-r0
8.22.0-r0
1
rocketchat/freeswitch:stablecfba5c20a5cc
curl@7.88.1-10+deb12u12
no fix listed
1
rommapp/romm:5.2.03512f2ca4557
curl@8.17.0-r1
8.22.0-r0
1
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
curl@8.14.1-2+deb13u3
no fix listed
1
rustfs/rustfs:1.0.0-beta.13c2d55977829
curl@8.17.0-r1
8.22.0-r0
1
rustfs/rustfs:1.0.0-alpha.947d49faa88c04
curl@8.17.0-r1
8.22.0-r0
1
santisbon/speedtest:latest8ee3a1697227
curl@7.88.1-10+deb12u1
no fix listed
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
curl@7.88.1-10+deb12u7
no fix listed
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
curl@7.88.1-10+deb12u4
no fix listed
1
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
curl@8.18.0-1ubuntu2.1
8.18.0-1ubuntu2.3
1
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
curl@8.18.0-1ubuntu2.1
8.18.0-1ubuntu2.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.