StackRadar

CVE-2026-11856

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,693
of 17,787 indexed, latest versions
Container images
1,510
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,693 of 17,787 indexed charts deploy, on 1,510 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+109 more7.35.0-1ubuntu2.20+esm22, 7.47.0-1ubuntu2.19+esm18, 7.58.0-2ubuntu3.24+esm11, 7.68.0-1ubuntu2.25+esm6+4 more1,295
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0215
OSV records
ALPINE-CVE-2026-11856DEBIAN-CVE-2026-11856UBUNTU-CVE-2026-11856ECHO-895d-0fcf-45bd
Also known as
USN-8651-1

Charts affected

1,693 by stars
ChartLatestAffected imagesRadar Score
anchore-admission-controlleranchore-charts0.8.51See more

anchore-admission-controller anchore-charts 0.8.5

1 container image this version deploys carries CVE-2026-11856.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,817
stalwartandibraeuVerified publisher1.0.21 of 1See more

stalwart andibraeu 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.1425001929f36a
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,587
buildkit-serviceandrcunsVerified publisher1.8.01 of 1See more

buildkit-service andrcuns 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
moby/buildkit:v0.31.0a095b3d11ce1
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,285
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.25+esm6
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm11

Open the chart page →

20,190
mathesarandrenarchyVerified publisher1.8.01 of 1See more

mathesar andrenarchy 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
mathesar/mathesar:0.12.0091757cb01fe
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,239
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

3,991
games-on-whalesangelnu2.0.01 of 7See more

games-on-whales angelnu 2.0.0

1 of the 7 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

42,126
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

5,558
ansible-playbook-operatoransible-playbook-operatorVerified publisher0.1.71 of 1See more

ansible-playbook-operator ansible-playbook-operator 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
kenchrcum/ansible-playbook-operator:0.1.712fb213debf1
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,339
antigenic-docuseal-helm-chartantigenic-docuseal-helm-chartVerified publisher0.2.01 of 1See more

antigenic-docuseal-helm-chart antigenic-docuseal-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
docuseal/docuseal:2.4.17493fd7f6728
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,766
antmediaantmediaVerified publisher3.1.01 of 4See more

antmedia antmedia 3.1.0

1 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:8.002a0cc7939f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

4,576
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

3,239
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
curl@7.81.0-1ubuntu1.14
7.81.0-1ubuntu1.26

Open the chart page →

6,187
d.vazquezm.2021_helmapphelmVerified publisher1.0.01 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6

Open the chart page →

19,745
accounts-uiappscodeVerified publisher2026.9.111 of 1See more

accounts-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
aceappscodeVerified publisher2026.9.111 of 2See more

ace appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,894
ace-installerappscodeVerified publisher2026.9.111 of 2See more

ace-installer appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,225
ace-installer-certifiedappscodeVerified publisher2026.9.111 of 2See more

ace-installer-certified appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,225
billingappscodeVerified publisher2026.9.111 of 1See more

billing appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.26

Open the chart page →

3,963
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26
ghcr.io/appscode/inbox-server:latest536358d7b17e
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.26

Open the chart page →

15,573
james-komposeappscodeVerified publisher0.1.02 of 4See more

james-kompose appscode 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26

Open the chart page →

16,975
marketplace-apiappscodeVerified publisher2026.9.111 of 1See more

marketplace-api appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
platform-apiappscodeVerified publisher2026.9.112 of 3See more

platform-api appscode 2026.9.11

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
curl@8.16.0-4~bpo13+1
no fix listed

Open the chart page →

37,268
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.26

Open the chart page →

3,270
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

5,657
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

8,866
appwriteappwrite-helmVerified publisher1.3.22 of 8See more

appwrite appwrite-helm 1.3.2

2 of the 8 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
curl@8.17.0-r1
8.22.0-r0
clamav/clamav:1.0dd0d9cc746af
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

9,847
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
curl@8.14.1-2
no fix listed

Open the chart page →

7,489
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.12

Open the chart page →

7,300
arlas-aiasarlas-stackVerified publisher28.8.011 of 22See more

arlas-aias arlas-stack 28.8.0

11 of the 22 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
curl@7.88.1-10+deb12u8
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
curl@7.88.1-10+deb12u12
no fix listed
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

40,238
arlas-uisarlas-stackVerified publisher28.8.04 of 4See more

arlas-uis arlas-stack 28.8.0

4 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,985
titilerarlas-stackVerified publisher28.8.01 of 1See more

titiler arlas-stack 28.8.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,445
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
curl@7.68.0-1ubuntu2.16
7.68.0-1ubuntu2.25+esm6

Open the chart page →

23,353
keystonearzu0.2.292 of 4See more

keystone arzu 0.2.29

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm6
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm6

Open the chart page →

22,568
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
curl@7.47.0-1ubuntu2.8
7.47.0-1ubuntu2.19+esm18
hyperledger/fabric-couchdb:0.4.15f6c724592abf
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm18

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
curl@7.47.0-1ubuntu2.8
7.47.0-1ubuntu2.19+esm18
hyperledger/fabric-couchdb:0.4.15f6c724592abf
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm18

Open the chart page →

77,706
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm6

Open the chart page →

9,369
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.26

Open the chart page →

10,061
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26

Open the chart page →

18,277
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,032
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
curl@7.68.0-1ubuntu2.19
7.68.0-1ubuntu2.25+esm6

Open the chart page →

7,936
sd-wanassist-iot-sd-wan1.0.01 of 2See more

sd-wan assist-iot-sd-wan 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:4.2.21-bionic9cb28f7291d9
curl@7.58.0-2ubuntu3.19
7.58.0-2ubuntu3.24+esm11

Open the chart page →

5,363
smartorchestratorassist-iot-smart-orchestrator4.0.02 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

2 of the 14 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
curl@7.88.1-10+deb12u1
no fix listed
library/mongo:4.4.66efa05203990
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24+esm11

Open the chart page →

45,363
videoaugmentationassist-iot-video-augmentation0.1.02 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.25+esm6
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

13,913
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.26
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

32,501
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

9,412
istio-discoveryaveshaVerified publisher1.16.01 of 1See more

istio-discovery avesha 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
istio/pilot:1.16.0ac0284d75ec9
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.26

Open the chart page →

6,908
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,297

Container images carrying it

1,510 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
fosrl/pangolin:1.13.0c32ad797ab96
curl@8.17.0-r1
8.22.0-r0
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm11
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm11
1
frankescobar/allure-docker-service:latestdc171ec796d5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12
1
free5gmano/nextepc-mongodb:latest36f806935519
curl@7.47.0-1ubuntu2.11
7.47.0-1ubuntu2.19+esm18
1
freeradius/freeradius-server:3.2.8af6fd34a5b78
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26
1
galaxy/cloudman-server:lateste5c265fe9fcd
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.25+esm6
1
galaxy/galaxy-init:v18.010267bad550e6
curl@7.35.0-1ubuntu2.16
7.35.0-1ubuntu2.20+esm22
1
galaxy/galaxy-stable:v18.018e577a626dfd
curl@7.35.0-1ubuntu2.16
7.35.0-1ubuntu2.20+esm22
1
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
curl@7.88.1-10+deb12u12
no fix listed
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
curl@7.81.0-1ubuntu1.24
7.81.0-1ubuntu1.26
1
geonode/geoserver_data:2.28.4-latest435cbc5f3f05
curl@8.20.0-r1
8.21.0-r0
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm11
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
geoservercloud/geoserver-cloud-gateway:3.0.1.1de0b20bd2a43
curl@8.18.0-1ubuntu2.3
8.18.0-1ubuntu2.4
1
geoservercloud/geoserver-cloud-gwc:3.0.1.1b04ed89b5d2b
curl@8.18.0-1ubuntu2.3
8.18.0-1ubuntu2.4
1
geoservercloud/geoserver-cloud-rest:3.0.1.1318254b52f96
curl@8.18.0-1ubuntu2.3
8.18.0-1ubuntu2.4
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
geoservercloud/geoserver-cloud-wcs:3.0.1.14f077124f591
curl@8.18.0-1ubuntu2.3
8.18.0-1ubuntu2.4
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
geoservercloud/geoserver-cloud-webui:3.0.1.14f91e3048ac8
curl@8.18.0-1ubuntu2.3
8.18.0-1ubuntu2.4
1
geoservercloud/geoserver-cloud-wfs:3.0.1.1299f0d6232d1
curl@8.18.0-1ubuntu2.3
8.18.0-1ubuntu2.4
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
geoservercloud/geoserver-cloud-wms:3.0.1.15164f687ce4d
curl@8.18.0-1ubuntu2.3
8.18.0-1ubuntu2.4
1
gethue/hue:4.11.011b649636e68
curl@7.68.0-1ubuntu2.15
7.68.0-1ubuntu2.25+esm6
1
gethue/hue:4.10.05702b2c37ff9
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24+esm11
1
gethue/hue:latest7d5c1b9f8a79
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.26
1
getsentry/relay:24.10.0ba7bf9163219
curl@7.88.1-10+deb12u7
no fix listed
1
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
curl@7.88.1-10+deb12u14
no fix listed
1
gitea/act_runner:nightly7940221bcfc9
curl@8.17.0-r1
8.22.0-r0
1
gitea/act_runner:0.3.1c2a169c5e998
curl@8.17.0-r1
8.22.0-r0
1
gitea/gitea:1.26.27d13848af126
curl@8.19.0-r0
8.22.0-r0
1
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm6
1
glpi/glpi:latest4b681082a79e
curl@8.14.1-2+deb13u4
no fix listed
1
gomods/athens:v0.17.10f61d1e62359
curl@8.17.0-r1
8.22.0-r0
1
gomods/athens:v0.18.197cc113b34b0
curl@8.20.0-r0
8.22.0-r0
1
google/cloud-sdk:alpinef7d3e6d6d4f4
curl@8.20.0-r0
8.22.0-r0
1
gotenberg/gotenberg:8.30206a6c708fc6
curl@8.19.0-1~bpo13+1
no fix listed
1
gotenberg/gotenberg:8.3467097317623a
curl@8.20.0-5~bpo13+1
no fix listed
1
gotenberg/gotenberg:8-chromiuma40f92d7419a
curl@8.14.1-2+deb13u4
no fix listed
1
gotson/komga:0.99.49b15ea6bfc30
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm11
1
gradiant/open5gs-dbctl:0.10.3332031245fce
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.12
1
grafana/grafana:13.0.10f86bada30d6
curl@8.17.0-r1
8.22.0-r0
1
grafana/grafana:13.0.1-security-012d1f9ae67c17
curl@8.17.0-r1
8.22.0-r0
1
grafana/grafana:12.3.2ba93c9d192e5
curl@8.17.0-r1
8.22.0-r0
1
graviteeio/ae-engine:3.0.24140932887e0
curl@8.20.0-r0
8.22.0-r0
1
graylog/graylog:6.1.1019de1aff48c2
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26
1
graylog/graylog-enterprise:7.1.88a1f641cd7aa
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.