StackRadar

CVE-2026-10536

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,121
of 17,781 indexed, latest versions
Container images
990
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,121 of 17,781 indexed charts deploy, on 990 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4+33 more8.5.0-2ubuntu10.11, 8.14.1-2+e19, 8.14.1-2ubuntu1.5, 8.18.0-1ubuntu2.3773
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
OSV records
ALPINE-CVE-2026-10536DEBIAN-CVE-2026-10536UBUNTU-CVE-2026-10536ECHO-0d6f-7fbe-c7fa
Also known as
USN-8525-1

Charts affected

1,121 by stars
ChartLatestAffected imagesRadar Score
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

6,328
rustfscloudpirates-rustfsVerified publisher0.11.41 of 1See more

rustfs cloudpirates-rustfs 0.11.4

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
rustfs/rustfs:1.0.0-beta.13c2d55977829
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

885
codefreshcodefresh-onpremOfficialVerified publisher2.12.132 of 42See more

codefresh codefresh-onprem 2.12.13

2 of the 42 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
curl@7.88.1-10+deb12u7
no fix listed
bitnamilegacy/rabbitmq:4.1.39e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

14,956
apim3graviteeioVerified publisher4.12.192 of 4See more

apim3 graviteeio 4.12.19

2 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
curl@8.14.1-2+deb13u4
no fix listed
graviteeio/apim-management-api:4.12.19-debian27374522cd04
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,806
wordpressgroundhog2k0.16.41 of 1See more

wordpress groundhog2k 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,685
supabasetokens-studioVerified publisher1.0.02 of 14See more

supabase tokens-studio 1.0.0

2 of the 14 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
supabase/realtime:v2.33.8d207e6e23ad3
curl@7.88.1-10+deb12u7
no fix listed
supabase/studio:20241021-9f9b08326d8070c55e9
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

23,123
renterdartur9010Verified publisher1.4.41 of 2See more

renterd artur9010 1.4.4

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

8,493
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
curl@8.5.0-2ubuntu10.9
8.5.0-2ubuntu10.11

Open the chart page →

1,710
budibasebudibase0.0.0-master2 of 7See more

budibase budibase 0.0.0-master

2 of the 7 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
curl@7.88.1-10+deb12u14
no fix listed
budibase/proxy:3.41.38d780b6ee602
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

10,775
quickwitquickwit0.8.161 of 1See more

quickwit quickwit 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

3,480
caddyalekcVerified publisher0.9.01 of 1See more

caddy alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/caddy:2.11.4-alpine5f5c8640aae0
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

845
umamichristianhuthVerified publisher7.13.01 of 2See more

umami christianhuth 7.13.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/umami-software/umami:postgresql-v2.20.173ca19b41745
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,367
devtron-operatordevtron0.23.32 of 11See more

devtron-operator devtron 0.23.3

2 of the 11 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
curl@8.5.0-2ubuntu10.10
8.5.0-2ubuntu10.11

Open the chart page →

32,902
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

3,606
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

5,357
nextcloudgroundhog2k0.22.51 of 3See more

nextcloud groundhog2k 0.22.5

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3:34.0.3-apacheb97df9e0e1ee
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,507
ilumilumOfficialVerified publisher6.7.31 of 19See more

ilum ilum 6.7.3

1 of the 19 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

23,228
syncthingk8s-home-lab-repo5.2.01 of 1See more

syncthing k8s-home-lab-repo 5.2.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
syncthing/syncthing:2.1.1775c4aac4862
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,230
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.11

Open the chart page →

3,395
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

7,007
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
curl@8.14.1-2
no fix listed

Open the chart page →

5,634
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

4,332
netris-controllernetrisai2.8.21 of 14See more

netris-controller netrisai 2.8.2

1 of the 14 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
netrisai/controller-web-service-frontend:4.6.0-0138c5074f55ae5
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

30,326
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,489
tbmq-clustertbmq-helm-chartOfficialVerified publisher2.1.02 of 3See more

tbmq-cluster tbmq-helm-chart 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
thingsboard/tbmq-integration-executor:2.4.0b5a9c1addf80
curl@8.14.1-2+deb13u4
no fix listed
thingsboard/tbmq-node:2.4.070661025dba5
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,534
elasticsearch-clusterwiremindVerified publisher4.5.21 of 2See more

elasticsearch-cluster wiremind 4.5.2

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11

Open the chart page →

2,283
home-assistantalekcVerified publisher2.11.21 of 1See more

home-assistant alekc 2.11.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

2,133
phpmyadminalekcVerified publisher0.3.11 of 1See more

phpmyadmin alekc 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,582
home-assistantandrenarchyVerified publisher14.103.01 of 1See more

home-assistant andrenarchy 14.103.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.1612d76760b54
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

2,133
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

6,457
cortexcortex3.3.81 of 4See more

cortex cortex 3.3.8

1 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:1.3105b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,897
kubernetes-ingresshaproxytechVerified publisher1.54.01 of 1See more

kubernetes-ingress haproxytech 1.54.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
haproxytech/kubernetes-ingress:3.2.14d90f628d659e
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

418
docmosthelmforgeVerified publisher1.2.111 of 4See more

docmost helmforge 1.2.11

1 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
docmost/docmost:0.95.041c8d777cf23
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,564
wordpresshelmforgeVerified publisher3.0.61 of 3See more

wordpress helmforge 3.0.6

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,148
mercuremercureOfficialVerified publisher0.24.01 of 1See more

mercure mercure 0.24.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
dunglas/mercure:v0.24.080fcb704a741
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,409
meshery-operatormesheryOfficialVerified publisher1.0.691 of 2See more

meshery-operator meshery 1.0.69

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
alpine/k8s:1.35.6b7a12c5ddf26
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

2,415
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

8,636
passboltpassbolt2.1.11 of 6See more

passbolt passbolt 2.1.1

1 of the 6 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

13,350
thehivestrangebee-helmOfficialVerified publisher1.0.63 of 7See more

thehive strangebee-helm 1.0.6

3 of the 7 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
strangebee/thehive:5.7.6-1e77b713124dd
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

16,210
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

14,240
agonesagones1.60.01 of 5See more

agones agones 1.60.0

1 of the 5 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.49ccd82364762
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,122
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,380
cloudflaredartur9010Verified publisher1.0.91 of 3See more

cloudflared artur9010 1.0.9

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,984
baserowbaserow-chartVerified publisher1.0.562 of 6See more

baserow baserow-chart 1.0.56

2 of the 6 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
curl@8.14.1-2+deb13u4
no fix listed
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

17,263
dolibarrcowboysysopVerified publisher9.0.31 of 3See more

dolibarr cowboysysop 9.0.3

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
dolibarr/dolibarr:22.0.47ad88fc9b13c
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

9,106
seafiledatamateVerified publisher0.6.01 of 6See more

seafile datamate 0.6.0

1 of the 6 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

27,267
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

2,604
flyteflyte1.16.81 of 11See more

flyte flyte 1.16.8

1 of the 11 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
redocly/redoc:latest2e26bb660574
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

3,281
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

2,539
geonode-k8sgeonode-k8sVerified publisher2.0.02 of 10See more

geonode-k8s geonode-k8s 2.0.0

2 of the 10 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
geonode/geoserver_data:2.28.4-latest435cbc5f3f05
curl@8.20.0-r1
8.21.0-r0
nginxinc/nginx-unprivileged:1.31.2-alpine3.236320020c7da8
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

13,953

Container images carrying it

990 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
curl@7.88.1-10+deb12u5
no fix listed
1
bitnamilegacy/mongodb:latestb0652af9c8d0
curl@7.88.1-10+deb12u12
no fix listed
1
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
curl@7.88.1-10+deb12u7
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
curl@7.88.1-10+deb12u7
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
curl@7.88.1-10+deb12u12
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
curl@7.88.1-10+deb12u5
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
curl@7.88.1-10+deb12u12
no fix listed
1
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
curl@7.88.1-10+deb12u12
no fix listed
1
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
curl@7.88.1-10+deb12u6
no fix listed
1
bitnami/mongodb:8.0.8b3bd5b6be9a0
curl@7.88.1-10+deb12u12
no fix listed
1
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
curl@8.17.0-r1
8.22.0-r0
1
blackducksoftware/blackduck-alert-rabbitmq:8.4.08f422b18d171
curl@8.17.0-r1
8.22.0-r0
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
curl@7.88.1-10+deb12u8
no fix listed
1
bmeares/meerschaum:2.8.48e9c5bacaa82
curl@7.88.1-10+deb12u8
no fix listed
1
bnjbvr/kresus:0.22.137e216b182c8
curl@7.88.1-10+deb12u8
no fix listed
1
boky/postfix:5.1.0aafc77238423
curl@8.14.1-2+deb13u2
no fix listed
1
boky/postfix:4.4.0f3f247fd4252
curl@7.88.1-10+deb12u8
no fix listed
1
budibase/database:2.1.0d90f656261c9
curl@7.88.1-10+deb12u14
no fix listed
1
budibase/proxy:3.41.38d780b6ee602
curl@8.14.1-2+deb13u4
no fix listed
1
byjg/easy-haproxy:6.1.1230fdb7b00ae
curl@8.20.0-r1
8.21.0-r0
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
curl@7.88.1-10+deb12u8
no fix listed
1
cars10/elasticvue:1.15.0efddf4fa0fd8
curl@8.17.0-r1
8.22.0-r0
1
casbin/casdoor:3.62.17729da148c61
curl@8.19.0-r0
8.22.0-r0
1
casbin/casdoor:3.62.0e08231f16c00
curl@8.19.0-r0
8.22.0-r0
1
castlemock/castlemock:latestb7f3f1527ba9
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
castopod/castopod:1.12.101fd37280cbb2
curl@7.88.1-10+deb12u7
no fix listed
1
castopod/castopod:1.15.54e4f0440520f
curl@8.14.1-2+deb13u2
no fix listed
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
cccs/assemblyline-core:4.7.4.stable177c3c25d4d6e0
curl@7.88.1-10+deb12u15
no fix listed
1
cccs/assemblyline-socketio:4.7.4.stable1724646dbfd944
curl@7.88.1-10+deb12u15
no fix listed
1
cccs/assemblyline-ui:4.7.4.stable171a7a103668f5
curl@7.88.1-10+deb12u15
no fix listed
1
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
curl@8.14.1-2+deb13u2
no fix listed
1
chocobozzz/peertube:v8.1.5052712130691
curl@8.14.1-2+deb13u3
no fix listed
1
ckan/ckan-base:2.12.087ecf3f27ad6
curl@7.88.1-10+deb12u15
no fix listed
1
ckulka/baikal:0.10.1-nginx434bdd162247
curl@7.88.1-10+deb12u12
no fix listed
1
clamav/clamav:1.0dd0d9cc746af
curl@8.20.0-r1
8.21.0-r0
1
cloudtooling/moodle:5.2.3f4f04e0fc401
curl@7.88.1-10+deb12u15
no fix listed
1
cm2network/squad:latest8cba47f53df5
curl@8.14.1-2+deb13u2
no fix listed
1
collabora/code:24.04.13.2.101dc4ab83977
curl@7.88.1-10+deb12u8
no fix listed
1
collabora/code:23.05.10.1.105299b452f7f
curl@7.88.1-10+deb12u5
no fix listed
1
conductoross/conductor:3.31.09fba127693e6
curl@8.14.1-2+deb13u3
no fix listed
1
consensys/teku:25.4.1bf6ecd2ea716
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
1
contentsquareplatform/chproxy:v1.26.524555f22d4be
curl@7.88.1-10+deb12u7
no fix listed
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
curl@7.88.1-10+deb12u12
no fix listed
1
cspconsole/config-provider:1.0.365524a26a6c23
curl@7.88.1-10+deb12u14
no fix listed
1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
curl@7.88.1-10+deb12u14
no fix listed
1
cspconsole/report-collector:1.0.15839750248193b
curl@7.88.1-10+deb12u14
no fix listed
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
curl@8.14.1-2+deb13u2
no fix listed
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
curl@7.88.1-10+deb12u4
no fix listed
1
dannielkil/book-frontend:latest937993927694
curl@7.88.1-10+deb12u7
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.