StackRadar

CVE-2026-10536

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,121
of 17,781 indexed, latest versions
Container images
990
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,121 of 17,781 indexed charts deploy, on 990 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4+33 more8.5.0-2ubuntu10.11, 8.14.1-2+e19, 8.14.1-2ubuntu1.5, 8.18.0-1ubuntu2.3773
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
OSV records
ALPINE-CVE-2026-10536DEBIAN-CVE-2026-10536UBUNTU-CVE-2026-10536ECHO-0d6f-7fbe-c7fa
Also known as
USN-8525-1

Charts affected

1,121 by stars
ChartLatestAffected imagesRadar Score
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

20,403
chibisafel4gVerified publisher0.1.11 of 3See more

chibisafe l4g 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/caddy:2-alpine5f5c8640aae0
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

5,654
overpass-apil4gVerified publisher0.1.21 of 1See more

overpass-api l4g 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
wiktorn/overpass-api:latest9bb5f4a9b54c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,544
langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

3,980
lgtm-stacklgtm-stackVerified publisher0.1.31 of 8See more

lgtm-stack lgtm-stack 0.1.3

1 of the 8 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
grafana/grafana:13.1.0121a7a9ece6d
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

5,576
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

35,050
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

7,874
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,201
flaresolverrm0nsterrr-flaresolverrVerified publisher2.4.11 of 1See more

flaresolverr m0nsterrr-flaresolverr 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

6,136
jellyfinmedia-servarrVerified publisher0.16.01 of 2See more

jellyfin media-servarr 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

2,753
medusamedusaVerified publisher1.3.81 of 1See more

medusa medusa 1.3.8

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
linuxserver/medusa:v1.0.26-ls2884477fb1ce3ca
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

977
metrics-server-exportermetrics-server-exporterVerified publisher2.4.01 of 1See more

metrics-server-exporter metrics-server-exporter 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
mrnim94/metrics-server-exporter:v2.4.086c4807a4bca
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,272
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
curl@8.14.1-2ubuntu1
8.14.1-2ubuntu1.5

Open the chart page →

11,103
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

13,738
redminemt1905027.3.41 of 3See more

redmine mt190502 7.3.4

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/redmine:6.1.204ac44a2595b
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

7,527
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

1,879
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
curl@7.88.1-10+deb12u5
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

37,373
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

14,250
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

5,039
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

14,838
librechatopenshift1.9.01 of 3See more

librechat openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11

Open the chart page →

5,779
opentelemetry-demoopentelemetry-helmVerified publisher0.41.12 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

2 of the 34 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
grafana/grafana:13.1.0121a7a9ece6d
curl@8.20.0-r1
8.21.0-r0
ghcr.io/open-telemetry/demo:3.0.0-telemetry-docs3519858704e7
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

22,420
opikopikOfficialVerified publisher2.2.593 of 13See more

opik opik 2.2.59

3 of the 13 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.0862d86046bbc
curl@8.17.0-r1
8.22.0-r0
ghcr.io/comet-ml/opik/opik-frontend:2.2.59bc2f49e9bb3e
curl@8.19.0-r0
8.22.0-r0
ghcr.io/comet-ml/opik/opik-python-backend:2.2.59269d0e55ea97
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

14,334
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

3,681
prowlarrpanzer1119Verified publisher0.4.181 of 2See more

prowlarr panzer1119 0.4.18

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
linuxserver/prowlarr:2.4.0.5397-ls149a46d0ce0a823
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,001
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,489
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

6,883
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

7,035
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
matomopockostVerified publisher1.3.01 of 3See more

matomo pockost 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
pockost/matomo:5.13.07f5d293cbe4e
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

5,047
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

31,844
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,476
home-assistantpree-helm-chartsVerified publisher1.80.01 of 1See more

home-assistant pree-helm-charts 1.80.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

2,133
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
prowlercloud/prowler-api:5.31.14f252d579be2
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

8,158
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

3,201
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,240
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
curl@7.88.1-10+deb12u12
no fix listed
reportportal/k8s-wait-for:latest06cdf299b397
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

11,869
kimai2robjuz5.0.131 of 2See more

kimai2 robjuz 5.0.13

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
kimai/kimai2:2.65.06dfc63199654
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

4,693
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,740
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,315
kyoorubxkubeVerified publisher0.1.103 of 9See more

kyoo rubxkube 0.1.10

3 of the 9 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
curl@7.88.1-10+deb12u8
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
curl@7.88.1-10+deb12u8
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

30,234
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

38,107
sceptresceptreai0.1.122 of 5See more

sceptre sceptreai 0.1.12

2 of the 5 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
maponyacharles/sceptreai:seaweedfs-0.1.127c8a525f08e9
curl@8.20.0-r0
8.22.0-r0
maponyacharles/sceptreai:ui-0.1.127cd0f11c5e55
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

4,369
immichsecustorVerified publisher2.0.41 of 1See more

immich secustor 2.0.4

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v3.2.0ae13784ffcfc
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,059
sentry-k8ssentry-k8sVerified publisher1.4.12 of 11See more

sentry-k8s sentry-k8s 1.4.1

2 of the 11 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:1.31.0-alpine2f07d83bf561
curl@8.19.0-r0
8.22.0-r0
ghcr.io/getsentry/snuba:26.7.210f8d164109b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

16,449
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
curl@7.88.1-10+deb12u12
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

11,532

Container images carrying it

990 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
2
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
no fix listed
2
gotenberg/gotenberg:8.36.087c16b9f3642
curl@8.21.0-2~bpo13+1
no fix listed
2
gotenberg/gotenberg:8:8.37.0f29984bd1e22
curl@8.21.0-2~bpo13+1
no fix listed
2
grafana/grafana:12.3.12175aaa91c96
curl@8.17.0-r1
8.22.0-r0
2
grafana/grafana:12.3.39e1e77ade304
curl@8.17.0-r1
8.22.0-r0
2
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.22.0-r0
2
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
curl@8.14.1-2+deb13u4
no fix listed
2
graviteeio/apim-management-api:4.12.19-debian27374522cd04
curl@8.14.1-2+deb13u4
no fix listed
2
infisical/infisical:latest:v0.165.602082bf13163
curl@8.14.1-2+deb13u4
no fix listed
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
curl@7.88.1-10+deb12u4
no fix listed
2
jenkins/jenkins:2.541.3-jdk21c4098086090c
curl@8.14.1-2+deb13u2
no fix listed
2
jupyterhub/configurable-http-proxy:5.3.0:latest69a7170eeeda
curl@8.19.0-r0
8.22.0-r0
2
kurento/kurento-media-server:latest03c0d34d0828
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
2
library/buildpack-deps:curl04907bdd423b
curl@8.14.1-2+deb13u4
no fix listed
2
library/caddy:2.11.4-alpine:2-alpine5f5c8640aae0
curl@8.19.0-r0
8.22.0-r0
2
library/caddy:latestdf7f1c2fb114
curl@8.19.0-r0
8.22.0-r0
2
library/elasticsearch:8.19.1289729a95066a
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11
2
library/influxdb:2.7b8d940ca9376
curl@7.88.1-10+deb12u14
no fix listed
2
library/mongo:8.0.20098862b1339f
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11
2
library/nextcloud:34.0.3:34.0.3-apacheb97df9e0e1ee
curl@8.14.1-2+deb13u4
no fix listed
2
library/nginx:latest6e23479198b9
curl@8.14.1-2+deb13u2
no fix listed
2
library/nginx:1.27.098f8ec75657d
curl@7.88.1-10+deb12u6
no fix listed
2
library/nginx:1.29.49dd288848f44
curl@8.14.1-2+deb13u2
no fix listed
2
library/phpmyadmin:5.2.16e75aa8f767c
curl@7.88.1-10+deb12u8
no fix listed
2
library/python:3.7eedf63967cdb
curl@7.88.1-10+deb12u1
no fix listed
2
library/redmine:6.1.3-trixief474a901faec
curl@8.14.1-2+deb13u4
no fix listed
2
library/wordpress:6.8.3-apache:6.8-apache30bff39330d1
curl@8.14.1-2+deb13u2
no fix listed
2
louislam/uptime-kuma:2.5.4917318f9d7be
curl@7.88.1-10+deb12u14
no fix listed
2
louislam/uptime-kuma:2.3.29aeb4e51d038
curl@7.88.1-10+deb12u14
no fix listed
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
curl@7.88.1-10+deb12u14
no fix listed
2
metabase/metabase:v0.61.1.x9491ed11c901
curl@8.19.0-r0
8.22.0-r0
2
moby/buildkit:v0.32.2-rootless504731e577c2
curl@8.20.0-r0
8.22.0-r0
2
moreillon/group-manager-front:v3.3.1c9f85db3baa5
curl@7.88.1-10+deb12u6
no fix listed
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
curl@7.88.1-10+deb12u4
no fix listed
2
moreillon/user-manager-front:v5.0.3b067dbbbb6af
curl@7.88.1-10+deb12u4
no fix listed
2
nginxinc/nginx-unprivileged:stablecb92301e719d
curl@8.14.1-2+deb13u4
no fix listed
2
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
curl@7.88.1-10+deb12u8
no fix listed
2
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
curl@7.88.1-10+deb12u8
no fix listed
2
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
curl@7.88.1-10+deb12u8
no fix listed
2
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
curl@7.88.1-10+deb12u8
no fix listed
2
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
curl@7.88.1-10+deb12u8
no fix listed
2
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
curl@7.88.1-10+deb12u8
no fix listed
2
opendatacube/ows:latest668cbb41473c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
2
openebs/provisioner-localpv:4.6.099f5116f5cb8
curl@8.20.0-r0
8.22.0-r0
2
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
curl@8.14.1-2+deb13u4
no fix listed
2
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
curl@8.14.1-2+deb13u4
no fix listed
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.