StackRadar

CVE-2026-11856

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,708
of 17,787 indexed, latest versions
Container images
1,531
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,708 of 17,787 indexed charts deploy, on 1,531 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+109 more7.35.0-1ubuntu2.20+esm22, 7.47.0-1ubuntu2.19+esm18, 7.58.0-2ubuntu3.24+esm11, 7.68.0-1ubuntu2.25+esm6+4 more1,313
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0218
OSV records
ALPINE-CVE-2026-11856DEBIAN-CVE-2026-11856UBUNTU-CVE-2026-11856ECHO-895d-0fcf-45bd
Also known as
USN-8651-1

Charts affected

1,708 by stars
ChartLatestAffected imagesRadar Score
embygeek-cookbookVerified publisher3.4.21 of 1See more

emby geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6

Open the chart page →

8,584
factoriogeek-cookbookVerified publisher1.2.21 of 2See more

factorio geek-cookbook 1.2.2

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
factoriotools/factorio:stablec6092b912bd1
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,449
gapsgeek-cookbookVerified publisher5.4.21 of 1See more

gaps geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
housewrecker/gaps:latestf417dd0a7547
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6

Open the chart page →

8,982
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

11,042
icinga2geek-cookbookVerified publisher4.2.01 of 1See more

icinga2 geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
jordan/icinga2:latestf75025fe8ea8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

9,103
jackettgeek-cookbookVerified publisher11.7.21 of 1See more

jackett geek-cookbook 11.7.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm6

Open the chart page →

9,736
komgageek-cookbookVerified publisher2.4.21 of 1See more

komga geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
gotson/komga:0.99.49b15ea6bfc30
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm11

Open the chart page →

12,586
lidarrgeek-cookbookVerified publisher14.2.21 of 1See more

lidarr geek-cookbook 14.2.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

14,328
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

12,993
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26

Open the chart page →

12,124
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6

Open the chart page →

17,758
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.25+esm6

Open the chart page →

28,039
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26

Open the chart page →

19,560
puppeteergeek-cookbookVerified publisher1.2.21 of 1See more

puppeteer geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6

Open the chart page →

15,792
qbittorrentgeek-cookbookVerified publisher13.5.21 of 1See more

qbittorrent geek-cookbook 13.5.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
curl@7.68.0-1ubuntu2.10
7.68.0-1ubuntu2.25+esm6

Open the chart page →

11,855
radarrgeek-cookbookVerified publisher16.3.21 of 1See more

radarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26

Open the chart page →

10,418
readarrgeek-cookbookVerified publisher6.4.21 of 1See more

readarr geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6

Open the chart page →

7,806
resilio-syncgeek-cookbookVerified publisher5.4.21 of 1See more

resilio-sync geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
curl@7.58.0-2ubuntu3.14
7.58.0-2ubuntu3.24+esm11

Open the chart page →

5,900
satisfactorygeek-cookbookVerified publisher1.2.21 of 1See more

satisfactory geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:lateste103700ae6ae
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26

Open the chart page →

3,466
sdtdgeek-cookbookVerified publisher0.3.21 of 1See more

sdtd geek-cookbook 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/reitermarkus/7d2d:main39953b387b61
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

2,523
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

24,355
skypilotgeek-cookbookVerified publisher0.0.11 of 3See more

skypilot geek-cookbook 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
curl@8.14.1-2
no fix listed

Open the chart page →

8,955
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
curl@7.58.0-2ubuntu3.3
7.58.0-2ubuntu3.24+esm11

Open the chart page →

26,996
transmissiongeek-cookbookVerified publisher8.4.31 of 1See more

transmission geek-cookbook 8.4.3

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm6

Open the chart page →

11,909
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm6

Open the chart page →

17,996
chproxygeneral-helm-chartsVerified publisher0.0.21 of 1See more

chproxy general-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
contentsquareplatform/chproxy:v1.26.524555f22d4be
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

3,724
dispatchoor-uigeneral-helm-chartsVerified publisher0.1.01 of 1See more

dispatchoor-ui general-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,339
mongogengxiankun-charts0.1.01 of 1See more

mongo gengxiankun-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
curl@7.68.0-1ubuntu2.25
7.68.0-1ubuntu2.25+esm6

Open the chart page →

4,007
rocketmqgengxiankun-charts0.3.01 of 1See more

rocketmq gengxiankun-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
apache/rocketmq:5.3.0434d8398f996
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.12

Open the chart page →

4,961
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,266
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.83 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

3 of the 5 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
jingking/geonetwork-hnap:4.2.843e74ab234e1
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm6
library/elasticsearch:7.17.1588c2ec10c7f2
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm6
library/kibana:7.17.150172f1c538e7
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm6

Open the chart page →

34,879
istiogetindataVerified publisher1.11.12 of 2See more

istio getindata 1.11.1

2 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:1.11.1c552478f8f11
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

16,834
knativegitlabVerified publisher0.10.03 of 10See more

knative gitlab 0.10.0

3 of the 10 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
istio/node-agent-k8s:1.2.9268ab879ea51
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm18
istio/pilot:1.2.9c09319753454
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm18
istio/proxyv2:1.2.90c78be035e98
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm18

Open the chart page →

36,145
glpiglpi-chart0.1.12 of 3See more

glpi glpi-chart 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

12,270
goofy-chartgoofy-chart0.1.01 of 1See more

goofy-chart goofy-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
Governify-Bluejaygovernify0.1.01 of 12See more

Governify-Bluejay governify 0.1.0

1 of the 12 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

22,565
Governify-Falcongovernify0.1.01 of 10See more

Governify-Falcon governify 0.1.0

1 of the 10 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

24,360
jaegergpg-dev3.3.32 of 5See more

jaeger gpg-dev 3.3.3

2 of the 5 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26
library/cassandra:3.11.65aa8400b4b3b
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.24+esm11

Open the chart page →

19,291
kube-prometheus-stackgpg-dev84.0.01 of 6See more

kube-prometheus-stack gpg-dev 84.0.0

1 of the 6 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
grafana/grafana:13.0.10f86bada30d6
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

4,290
kubernetes-dashboardgpg-dev7.5.01 of 5See more

kubernetes-dashboard gpg-dev 7.5.0

1 of the 5 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26

Open the chart page →

6,075
opentelemetry-demogpg-dev0.33.83 of 27See more

opentelemetry-demo gpg-dev 0.33.8

3 of the 27 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
curl@7.88.1-10+deb12u6
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
curl@7.88.1-10+deb12u7
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.12

Open the chart page →

47,117
video-analytics-demogpu-operator0.1.92 of 3See more

video-analytics-demo gpu-operator 0.1.9

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
anguda/ant-media:2.5c435285fc241
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.25+esm6
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

15,780
video-analytics-demo-l4tgpu-operator0.1.31 of 3See more

video-analytics-demo-l4t gpu-operator 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,839
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.12

Open the chart page →

7,935
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.26

Open the chart page →

4,604
grayloggraylogVerified publisher1.0.22 of 4See more

graylog graylog 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
graylog/graylog:6.1.1019de1aff48c2
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26
library/mongo:85211c51171f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

5,339
routergroundcover1.12.3592 of 7See more

router groundcover 1.12.359

2 of the 7 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26
quay.io/groundcover/tools:20260719b705e0cbe171
curl@1:8.14.1-2+deb13u3+e1
8.14.1-2+e18

Open the chart page →

6,038
temporalgroundcover1.12.3592 of 2See more

temporal groundcover 1.12.359

2 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
curl@1:8.14.1-2+deb13u3+e1
8.14.1-2+e18
public.ecr.aws/groundcovercom/temporalio/server:1.29.6-mini-20260702-170f191d0a80e
curl@8.14.1-2+e14
8.14.1-2+e18

Open the chart page →

2,001
gwangju_2-3gwangju2-30.1.01 of 5See more

gwangju_2-3 gwangju2-3 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
fluent/fluent-bit:latestd792375ca8e5
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

6,450
octoboxhalkeye0.1.11 of 1See more

octobox halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
octoboxio/octobox:latestd909041c46eb
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

3,256

Container images carrying it

1,531 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0
3
selenium/hub:3.141.5902f251d48d5f
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
3
vaultwarden/server:1.37.1ebdfe70701c6
curl@8.14.1-2+deb13u4
no fix listed
3
xenondb/percona:5.7.330e26872a2b67
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.26
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
curl@8.5.0-2ubuntu10.10
8.5.0-2ubuntu10.12
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
curl@7.47.0-1ubuntu2.19
7.47.0-1ubuntu2.19+esm18
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.26
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
curl@7.88.1-10+deb12u14
no fix listed
3
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.22.0-r0
3
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.21.0-r0
2
alpine/kubectl:1.35.49ccd82364762
curl@8.17.0-r1
8.22.0-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
curl@8.17.0-r1
8.22.0-r0
2
apache/nifi-registry:1.26.07cdfd8deec92
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.26
2
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.12
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.12
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
curl@8.14.1-2+deb13u4
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed
2
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.22.0-r0
2
dunglas/mercure:v0:v0.24.2916834e49961
curl@8.17.0-r1
8.22.0-r0
2
eqalpha/keydb:latest6537505c4235
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm6
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm6
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
curl@8.14.1-2+deb13u2
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
no fix listed
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm11
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
2
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
2
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
no fix listed
2
gotenberg/gotenberg:8.36.087c16b9f3642
curl@8.21.0-2~bpo13+1
no fix listed
2
gotenberg/gotenberg:8:8.37.0f29984bd1e22
curl@8.21.0-2~bpo13+1
no fix listed
2
gotson/komga:1.26.36c2a967bbe9a
curl@8.18.0-1ubuntu2.3
8.18.0-1ubuntu2.4
2
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26
2
grafana/grafana:12.3.12175aaa91c96
curl@8.17.0-r1
8.22.0-r0
2
grafana/grafana:12.3.39e1e77ade304
curl@8.17.0-r1
8.22.0-r0
2
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.22.0-r0
2
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
curl@8.14.1-2+deb13u4
no fix listed
2
graviteeio/apim-management-api:4.12.19-debian27374522cd04
curl@8.14.1-2+deb13u4
no fix listed
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.