StackRadar

CVE-2026-10536

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,123
of 17,787 indexed, latest versions
Container images
994
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,123 of 17,787 indexed charts deploy, on 994 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4+33 more8.5.0-2ubuntu10.11, 8.14.1-2+e19, 8.14.1-2ubuntu1.5, 8.18.0-1ubuntu2.3776
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0218
OSV records
ALPINE-CVE-2026-10536DEBIAN-CVE-2026-10536UBUNTU-CVE-2026-10536ECHO-0d6f-7fbe-c7fa
Also known as
USN-8525-1

Charts affected

1,123 by stars
ChartLatestAffected imagesRadar Score
pipekitpipekit-helmOfficialVerified publisher7.6.01 of 6See more

pipekit pipekit-helm 7.6.0

1 of the 6 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
fluent/fluent-bit:5.1.1a941bdd5ca55
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,046
web-chartpjw-ktcloudlab0.1.01 of 1See more

web-chart pjw-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
planectlplanectlVerified publisher0.7.02 of 10See more

planectl planectl 0.7.0

2 of the 10 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/node:208f693eaa7e0a
curl@7.88.1-10+deb12u14
no fix listed
quay.io/argoproj/argocd:v2.14.115fc69e31c755
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

25,626
k8s-oidc-discovery-providerpnnl-miscscripts0.1.21 of 2See more

k8s-oidc-discovery-provider pnnl-miscscripts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:1.29.49dd288848f44
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

4,273
nginx-apppnnl-miscscripts0.1.21 of 1See more

nginx-app pnnl-miscscripts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
pixiecore-simpleconfigpnnl-miscscripts0.1.51 of 1See more

pixiecore-simpleconfig pnnl-miscscripts 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

11,680
libretimepodzone-chartsVerified publisher0.4.12 of 9See more

libretime podzone-charts 0.4.1

2 of the 9 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed
ghcr.io/libretime/icecast:latest3c98b92e9535
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

11,181
static-sitepodzone-chartsVerified publisher0.1.12 of 2See more

static-site podzone-charts 0.1.1

2 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/httpd:alpine1b766f17b840
curl@8.20.0-r1
8.21.0-r0
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,575
agentpolyaxon2.16.43 of 4See more

agent polyaxon 2.16.4

3 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
curl@8.14.1-2+deb13u4
no fix listed
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
curl@8.14.1-2+deb13u4
no fix listed
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

10,004
polyaxonpolyaxon2.16.43 of 5See more

polyaxon polyaxon 2.16.4

3 of the 5 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
curl@8.14.1-2+deb13u4
no fix listed
polyaxon/polyaxon-api:2.16.42b55c3265a90
curl@8.14.1-2+deb13u4
no fix listed
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

13,520
quickwitportefaix-hub0.1.11 of 1See more

quickwit portefaix-hub 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.1d29332bdadcc
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

3,185
port-agentport-labsVerified publisher0.8.161 of 1See more

port-agent port-labs 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
curl@1:8.14.1-2+deb13u3+e1
8.14.1-2+e19

Open the chart page →

721
prefect-agentprefectVerified publisher2024.8.301638221 of 1See more

prefect-agent prefect 2024.8.30163822

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

4,996
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

6,932
prismeai-appsprismeai0.7.11 of 4See more

prismeai-apps prismeai 0.7.1

1 of the 4 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,752
prismeai-coreprismeai1.12.11 of 7See more

prismeai-core prismeai 1.12.1

1 of the 7 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

3,271
wp-chartprojet-devops0.1.01 of 2See more

wp-chart projet-devops 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

5,234
web-chartpsb-ktcloudlab0.1.01 of 1See more

web-chart psb-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
web-chartpsg-ktcloudlab0.1.01 of 1See more

web-chart psg-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
nginx-chartpshs-nginx0.1.01 of 1See more

nginx-chart pshs-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
apppvillaverdeVerified publisher0.2.51 of 1See more

app pvillaverde 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:1.3105b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
pyredispyredis-helm0.1.01 of 2See more

pyredis pyredis-helm 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
avinash263/pyredis263:latestaa2b8727f1a6
curl@7.88.1-10
no fix listed

Open the chart page →

12,652
mychartpythonweb0.1.01 of 1See more

mychart pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

11,400
mypythonpythonweb0.1.01 of 1See more

mypython pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

11,400
open-terminalqaoruVerified publisher0.2.41 of 1See more

open-terminal qaoru 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,000
qubivaqubiva0.3.21 of 3See more

qubiva qubiva 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

4,231
cupsr2dlan-helm-chartsVerified publisher0.1.01 of 1See more

cups r2dlan-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
anujdatar/cups:25.07.01685df04a643b
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

7,691
nginx-chartrabsnginx0.1.01 of 1See more

nginx-chart rabsnginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:1.276784fb0834aa
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

4,117
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
apache/airflow:2.10.2-python3.9ce90bdc3d2af
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

20,812
app-configradar-baseVerified publisher1.7.21 of 1See more

app-config radar-base 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11

Open the chart page →

2,075
catalog-serverradar-baseVerified publisher0.9.31 of 1See more

catalog-server radar-base 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11

Open the chart page →

2,457
data-dashboard-backendradar-baseVerified publisher0.6.21 of 1See more

data-dashboard-backend radar-base 0.6.2

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11

Open the chart page →

2,058
management-portalradar-baseVerified publisher1.7.01 of 1See more

management-portal radar-base 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
curl@8.18.0-1ubuntu2.1
8.18.0-1ubuntu2.3

Open the chart page →

3,221
radar-gatewayradar-baseVerified publisher1.9.01 of 2See more

radar-gateway radar-base 1.9.0

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11

Open the chart page →

2,322
radar-integrationradar-baseVerified publisher0.9.01 of 1See more

radar-integration radar-base 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

2,893
radar-outputradar-baseVerified publisher1.2.101 of 1See more

radar-output radar-base 1.2.10

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.11

Open the chart page →

2,504
radar-push-endpointradar-baseVerified publisher0.6.81 of 2See more

radar-push-endpoint radar-base 0.6.8

1 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
radarbase/radar-push-endpoint:0.4.0e1758508e033
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

3,057
radar-upload-connect-backendradar-baseVerified publisher0.9.11 of 1See more

radar-upload-connect-backend radar-base 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

2,571
s3-proxyradar-baseVerified publisher0.6.01 of 1See more

s3-proxy radar-base 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.11

Open the chart page →

2,776
sqpreadyset-sqp-nightly0.1.0-nightly.202604302 of 3See more

sqp readyset-sqp-nightly 0.1.0-nightly.20260430

2 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
readysettech/sqp:latest588f3507280e
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
readysettech/sqp-duckdb:latest67a83203ce60
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11

Open the chart page →

3,514
redis-enforce-expireredis-enforce-expire1.0.01 of 1See more

redis-enforce-expire redis-enforce-expire 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
udhos/redis-enforce-expire:1.0.0615b6a7d742e
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,303
my-nginx-apprepo-for-helm-nginx-app0.1.01 of 1See more

my-nginx-app repo-for-helm-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
redminerestic-pvc-backupVerified publisher0.2.61 of 1See more

redmine restic-pvc-backup 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,252
delugeretsamedocVerified publisher26.9.01 of 1See more

deluge retsamedoc 26.9.0

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
linuxserver/deluge:2.2.09505c64720af
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

782
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

6,562
juicepassproxyretsamedocVerified publisher2026.2.41 of 1See more

juicepassproxy retsamedoc 2026.2.4

1 of the 1 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

3,753
istio-helloworldrgnu1.0.12 of 2See more

istio-helloworld rgnu 1.0.1

2 of the 2 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
istio/examples-helloworld-v1:latest328b237e4fb1
curl@7.88.1-10+deb12u5
no fix listed
istio/examples-helloworld-v2:latest0a7f02b2c7c9
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

8,298
kresusrm3lVerified publisher0.2.11 of 3See more

kresus rm3l 0.2.1

1 of the 3 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
bnjbvr/kresus:0.22.137e216b182c8
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

15,623
matrix-stackrock8sVerified publisher0.8.11 of 7See more

matrix-stack rock8s 0.8.1

1 of the 7 container images this version deploys carry CVE-2026-10536.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

9,275

Container images carrying it

994 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.31:1.31.5:latest:trixie05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed
106
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed
23
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed
13
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed
7
library/phpmyadmin:5.2.3-apache:latest3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed
7
vaultwarden/server:1.37.2:latest094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
7
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed
6
library/wordpress:7.1.0-apache:latest5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed
5
library/httpd:2.4:2.4.68:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0
5
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
curl@7.88.1-10+deb12u12
no fix listed
4
grafana/grafana:13.1.0121a7a9ece6d
curl@8.20.0-r1
8.21.0-r0
4
library/httpd:2.4-alpine:alpine1b766f17b840
curl@8.20.0-r1
8.21.0-r0
4
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
4
apache/superset:6.1.0:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
curl@7.88.1-10+deb12u15
no fix listed
3
fluent/fluent-bit:5.1.2:latestd792375ca8e5
curl@8.14.1-2+deb13u4
no fix listed
3
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
3
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
3
library/nginx:1.25:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
no fix listed
3
library/node:ltsbe23f54a88d3
curl@7.88.1-10+deb12u15
no fix listed
3
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0
3
vaultwarden/server:1.37.1ebdfe70701c6
curl@8.14.1-2+deb13u4
no fix listed
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
curl@8.5.0-2ubuntu10.10
8.5.0-2ubuntu10.11
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
curl@7.88.1-10+deb12u14
no fix listed
3
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.22.0-r0
3
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.21.0-r0
2
alpine/kubectl:1.35.49ccd82364762
curl@8.17.0-r1
8.22.0-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
curl@8.17.0-r1
8.22.0-r0
2
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.11
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.11
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
curl@8.14.1-2+deb13u4
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed
2
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.22.0-r0
2
dunglas/mercure:v0:v0.24.2916834e49961
curl@8.17.0-r1
8.22.0-r0
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
curl@8.14.1-2+deb13u2
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
no fix listed
2
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.