StackRadar

CVE-2026-11856

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,704
of 17,790 indexed, latest versions
Container images
1,530
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,704 of 17,790 indexed charts deploy, on 1,530 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+109 more7.35.0-1ubuntu2.20+esm22, 7.47.0-1ubuntu2.19+esm18, 7.58.0-2ubuntu3.24+esm11, 7.68.0-1ubuntu2.25+esm6+4 more1,313
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
OSV records
ALPINE-CVE-2026-11856DEBIAN-CVE-2026-11856UBUNTU-CVE-2026-11856ECHO-895d-0fcf-45bd
Also known as
USN-8651-1

Charts affected

1,704 by stars
ChartLatestAffected imagesRadar Score
factoriogeek-cookbookVerified publisher1.2.21 of 2See more

factorio geek-cookbook 1.2.2

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
factoriotools/factorio:stablec6092b912bd1
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,459
gapsgeek-cookbookVerified publisher5.4.21 of 1See more

gaps geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
housewrecker/gaps:latestf417dd0a7547
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6

Open the chart page →

8,988
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

11,038
icinga2geek-cookbookVerified publisher4.2.01 of 1See more

icinga2 geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
jordan/icinga2:latestf75025fe8ea8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

9,150
jackettgeek-cookbookVerified publisher11.7.21 of 1See more

jackett geek-cookbook 11.7.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm6

Open the chart page →

9,740
komgageek-cookbookVerified publisher2.4.21 of 1See more

komga geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
gotson/komga:0.99.49b15ea6bfc30
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm11

Open the chart page →

12,592
lidarrgeek-cookbookVerified publisher14.2.21 of 1See more

lidarr geek-cookbook 14.2.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

14,338
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

13,077
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26

Open the chart page →

12,128
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6

Open the chart page →

17,755
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.25+esm6

Open the chart page →

28,028
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26

Open the chart page →

19,544
puppeteergeek-cookbookVerified publisher1.2.21 of 1See more

puppeteer geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6

Open the chart page →

15,779
qbittorrentgeek-cookbookVerified publisher13.5.21 of 1See more

qbittorrent geek-cookbook 13.5.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
curl@7.68.0-1ubuntu2.10
7.68.0-1ubuntu2.25+esm6

Open the chart page →

11,851
radarrgeek-cookbookVerified publisher16.3.21 of 1See more

radarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26

Open the chart page →

10,422
readarrgeek-cookbookVerified publisher6.4.21 of 1See more

readarr geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6

Open the chart page →

7,810
resilio-syncgeek-cookbookVerified publisher5.4.21 of 1See more

resilio-sync geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
curl@7.58.0-2ubuntu3.14
7.58.0-2ubuntu3.24+esm11

Open the chart page →

5,904
satisfactorygeek-cookbookVerified publisher1.2.21 of 1See more

satisfactory geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:lateste103700ae6ae
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26

Open the chart page →

3,469
sdtdgeek-cookbookVerified publisher0.3.21 of 1See more

sdtd geek-cookbook 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/reitermarkus/7d2d:main39953b387b61
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

2,533
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

24,366
skypilotgeek-cookbookVerified publisher0.0.11 of 3See more

skypilot geek-cookbook 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
curl@8.14.1-2
no fix listed

Open the chart page →

8,992
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
curl@7.58.0-2ubuntu3.3
7.58.0-2ubuntu3.24+esm11

Open the chart page →

26,997
transmissiongeek-cookbookVerified publisher8.4.31 of 1See more

transmission geek-cookbook 8.4.3

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm6

Open the chart page →

11,906
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm6

Open the chart page →

17,996
chproxygeneral-helm-chartsVerified publisher0.0.21 of 1See more

chproxy general-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
contentsquareplatform/chproxy:v1.26.524555f22d4be
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

3,735
dispatchoor-uigeneral-helm-chartsVerified publisher0.1.01 of 1See more

dispatchoor-ui general-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,339
mongogengxiankun-charts0.1.01 of 1See more

mongo gengxiankun-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
curl@7.68.0-1ubuntu2.25
7.68.0-1ubuntu2.25+esm6

Open the chart page →

4,010
rocketmqgengxiankun-charts0.3.01 of 1See more

rocketmq gengxiankun-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
apache/rocketmq:5.3.0434d8398f996
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.12

Open the chart page →

4,969
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,296
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.83 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

3 of the 5 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
jingking/geonetwork-hnap:4.2.843e74ab234e1
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm6
library/elasticsearch:7.17.1588c2ec10c7f2
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm6
library/kibana:7.17.150172f1c538e7
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm6

Open the chart page →

34,893
istiogetindataVerified publisher1.11.12 of 2See more

istio getindata 1.11.1

2 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:1.11.1c552478f8f11
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

16,854
knativegitlabVerified publisher0.10.03 of 10See more

knative gitlab 0.10.0

3 of the 10 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
istio/node-agent-k8s:1.2.9268ab879ea51
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm18
istio/pilot:1.2.9c09319753454
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm18
istio/proxyv2:1.2.90c78be035e98
curl@7.47.0-1ubuntu2.13
7.47.0-1ubuntu2.19+esm18

Open the chart page →

36,132
glpiglpi-chart0.1.12 of 3See more

glpi glpi-chart 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

12,359
goofy-chartgoofy-chart0.1.01 of 1See more

goofy-chart goofy-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,849
Governify-Bluejaygovernify0.1.01 of 12See more

Governify-Bluejay governify 0.1.0

1 of the 12 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

22,587
Governify-Falcongovernify0.1.01 of 10See more

Governify-Falcon governify 0.1.0

1 of the 10 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

24,379
jaegergpg-dev3.3.32 of 5See more

jaeger gpg-dev 3.3.3

2 of the 5 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26
library/cassandra:3.11.65aa8400b4b3b
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.24+esm11

Open the chart page →

19,311
kube-prometheus-stackgpg-dev84.0.01 of 6See more

kube-prometheus-stack gpg-dev 84.0.0

1 of the 6 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
grafana/grafana:13.0.10f86bada30d6
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

4,303
kubernetes-dashboardgpg-dev7.5.01 of 5See more

kubernetes-dashboard gpg-dev 7.5.0

1 of the 5 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26

Open the chart page →

6,078
opentelemetry-demogpg-dev0.33.83 of 27See more

opentelemetry-demo gpg-dev 0.33.8

3 of the 27 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
curl@7.88.1-10+deb12u6
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
curl@7.88.1-10+deb12u7
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.12

Open the chart page →

49,362
video-analytics-demogpu-operator0.1.92 of 3See more

video-analytics-demo gpu-operator 0.1.9

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
anguda/ant-media:2.5c435285fc241
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.25+esm6
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

15,797
video-analytics-demo-l4tgpu-operator0.1.31 of 3See more

video-analytics-demo-l4t gpu-operator 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,849
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.12

Open the chart page →

7,956
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.26

Open the chart page →

4,632
grayloggraylogVerified publisher1.0.22 of 4See more

graylog graylog 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
graylog/graylog:6.1.1019de1aff48c2
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26
library/mongo:85211c51171f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

5,347
routergroundcover1.12.3622 of 7See more

router groundcover 1.12.362

2 of the 7 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26
quay.io/groundcover/tools:20260719b705e0cbe171
curl@1:8.14.1-2+deb13u3+e1
8.14.1-2+e18

Open the chart page →

6,070
temporalgroundcover1.12.3622 of 2See more

temporal groundcover 1.12.362

2 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
curl@1:8.14.1-2+deb13u3+e1
8.14.1-2+e18
public.ecr.aws/groundcovercom/temporalio/server:1.29.6-mini-20260702-170f191d0a80e
curl@8.14.1-2+e14
8.14.1-2+e18

Open the chart page →

2,027
gwangju_2-3gwangju2-30.1.01 of 5See more

gwangju_2-3 gwangju2-3 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
fluent/fluent-bit:latestd792375ca8e5
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

6,506
octoboxhalkeye0.1.11 of 1See more

octobox halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
octoboxio/octobox:latestd909041c46eb
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

3,256
hatchet-hahatchetOfficialVerified publisher0.19.01 of 8See more

hatchet-ha hatchet 0.19.0

1 of the 8 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

7,407

Container images carrying it

1,530 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
curl@8.14.1-2+deb13u3
no fix listed
1
ghcr.io/comet-ml/opik/opik-frontend:2.2.64f0363376b260
curl@8.19.0-r0
8.22.0-r0
1
ghcr.io/comet-ml/opik/opik-python-backend:2.2.64272d92a59e8a
curl@8.19.0-r0
8.22.0-r0
1
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.12
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
curl@8.14.1-2+deb13u2
no fix listed
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/cross-seed/cross-seed:6.13.7a1fed512261f
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/dakera-ai/dakera:0.11.101af610992a416
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/dakera-ai/dakera-dashboard:0.3.292e059589f7f7
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/damap-org/damap-backend:5.0.0f3d0c7d35498
curl@8.5.0-2ubuntu10.9
8.5.0-2ubuntu10.12
1
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
curl@8.14.1-2+deb13u3
no fix listed
1
ghcr.io/dani-garcia/vaultwarden:1.35.2d89a6d21e361
curl@8.14.1-2+deb13u2
no fix listed
1
ghcr.io/dask/dask:2024.1.0080150de7d86
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
curl@8.14.1-2+deb13u2
no fix listed
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/deven96/ahnlich-db:latest45d8b5aab491
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
curl@8.14.1-2
no fix listed
1
ghcr.io/ding113/claude-code-hub:latest87f9e8a92bd7
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
curl@8.5.0-2ubuntu10.5
8.5.0-2ubuntu10.12
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
curl@7.88.1-10+deb12u4
no fix listed
1
ghcr.io/duyet/clickhouse-monitoring:latest84edfe8a67a8
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
curl@7.58.0-2ubuntu3.14
7.58.0-2ubuntu3.24+esm11
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
curl@8.14.1-2+deb13u3
no fix listed
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/ethpandaops/benchmarkoor-ui:latestd090bb2060d9
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
curl@7.88.1-10+deb12u5
no fix listed
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/feresberbeche/alertigate:1.2.1628d49e0e01b
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/firecrawl/firecrawl:2.11.340529f38bab2c3
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/fluxcd/kustomize-controller:v1.9.23aecec8bafdb
curl@8.19.0-r0
8.22.0-r0
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.26
1
ghcr.io/gchq/cyberchef:11.0.045082a0ac41d
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/getsentry/snuba:26.7.210f8d164109b
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/gla-rad/enav-eureka:latest05002092c621
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/gluufederation/flex/persistence-loader:0.0.0-nightlyc26589258dec
curl@8.20.0-r0
8.22.0-r0
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
curl@8.14.1-2+deb13u2
no fix listed
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.12
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.