StackRadar

CVE-2026-11856

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,704
of 17,790 indexed, latest versions
Container images
1,530
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,704 of 17,790 indexed charts deploy, on 1,530 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+109 more7.35.0-1ubuntu2.20+esm22, 7.47.0-1ubuntu2.19+esm18, 7.58.0-2ubuntu3.24+esm11, 7.68.0-1ubuntu2.25+esm6+4 more1,313
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
OSV records
ALPINE-CVE-2026-11856DEBIAN-CVE-2026-11856UBUNTU-CVE-2026-11856ECHO-895d-0fcf-45bd
Also known as
USN-8651-1

Charts affected

1,704 by stars
ChartLatestAffected imagesRadar Score
quialexmorbo-quiVerified publisher0.1.01 of 1See more

qui alexmorbo-qui 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/autobrr/qui:v1.14.110b7945d4f09
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,624
nginx-sni-proxyalexpressoVerified publisher1.0.21 of 1See more

nginx-sni-proxy alexpresso 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,849
alluredeckalluredeckVerified publisher0.24.01 of 2See more

alluredeck alluredeck 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/mkutlak/alluredeck-ui:0.41.0c19509b1b336
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,280
allure-docker-helm-chartallure-service-chartVerified publisher0.1.01 of 2See more

allure-docker-helm-chart allure-service-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:latestdc171ec796d5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

3,691
pagesalstom-pages-app1.0.02 of 3See more

pages alstom-pages-app 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.25+esm6
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm11

Open the chart page →

20,242
amorphieamorphie0.1.21 of 18See more

amorphie amorphie 0.1.2

1 of the 18 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26

Open the chart page →

28,289
anchore-admission-controlleranchore-charts0.8.51 of 2See more

anchore-admission-controller anchore-charts 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

7,605
music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,865
stalwartandibraeuVerified publisher1.0.21 of 1See more

stalwart andibraeu 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.1425001929f36a
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,609
buildkit-serviceandrcunsVerified publisher1.8.01 of 1See more

buildkit-service andrcuns 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
moby/buildkit:v0.31.0a095b3d11ce1
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,294
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
7.68.0-1ubuntu2.25+esm6
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm11

Open the chart page →

20,242
mathesarandrenarchyVerified publisher1.8.01 of 1See more

mathesar andrenarchy 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
mathesar/mathesar:0.12.0091757cb01fe
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,312
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,063
games-on-whalesangelnu2.0.01 of 7See more

games-on-whales angelnu 2.0.0

1 of the 7 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6

Open the chart page →

42,325
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

5,591
ansible-playbook-operatoransible-playbook-operatorVerified publisher0.1.71 of 1See more

ansible-playbook-operator ansible-playbook-operator 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
kenchrcum/ansible-playbook-operator:0.1.712fb213debf1
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,340
antigenic-docuseal-helm-chartantigenic-docuseal-helm-chartVerified publisher0.2.01 of 1See more

antigenic-docuseal-helm-chart antigenic-docuseal-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
docuseal/docuseal:2.4.17493fd7f6728
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,766
antmediaantmediaVerified publisher3.1.01 of 4See more

antmedia antmedia 3.1.0

1 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:8.002a0cc7939f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

4,621
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

3,261
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
curl@7.81.0-1ubuntu1.14
7.81.0-1ubuntu1.26

Open the chart page →

6,256
d.vazquezm.2021_helmapphelmVerified publisher1.0.01 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6

Open the chart page →

19,788
accounts-uiappscodeVerified publisher2026.9.111 of 1See more

accounts-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,655
aceappscodeVerified publisher2026.9.111 of 2See more

ace appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,957
ace-installerappscodeVerified publisher2026.9.111 of 2See more

ace-installer appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,296
ace-installer-certifiedappscodeVerified publisher2026.9.111 of 2See more

ace-installer-certified appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,296
billingappscodeVerified publisher2026.9.111 of 1See more

billing appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,655
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.26

Open the chart page →

4,005
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26
ghcr.io/appscode/inbox-server:latest536358d7b17e
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.26

Open the chart page →

15,718
james-komposeappscodeVerified publisher0.1.02 of 4See more

james-kompose appscode 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26

Open the chart page →

17,122
marketplace-apiappscodeVerified publisher2026.9.111 of 1See more

marketplace-api appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,655
platform-apiappscodeVerified publisher2026.9.112 of 3See more

platform-api appscode 2026.9.11

2 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
curl@8.16.0-4~bpo13+1
no fix listed

Open the chart page →

37,629
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.26

Open the chart page →

3,313
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

5,680
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
8.5.0-2ubuntu10.12

Open the chart page →

8,913
appwriteappwrite-helmVerified publisher1.3.22 of 8See more

appwrite appwrite-helm 1.3.2

2 of the 8 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
curl@8.17.0-r1
8.22.0-r0
clamav/clamav:1.0dd0d9cc746af
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

9,855
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
curl@8.14.1-2
no fix listed

Open the chart page →

7,558
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.12

Open the chart page →

7,359
argonix-apiargonix0.2.31 of 4See more

argonix-api argonix 0.2.3

1 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/argonix-io/argonix-api:1.0.0cb5f24732197
curl@8.14.1-2+deb13u5
no fix listed

Open the chart page →

4,956
arlas-aiasarlas-stackVerified publisher28.8.011 of 22See more

arlas-aias arlas-stack 28.8.0

11 of the 22 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
curl@7.88.1-10+deb12u8
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
curl@7.88.1-10+deb12u12
no fix listed
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

40,580
arlas-uisarlas-stackVerified publisher28.8.04 of 4See more

arlas-uis arlas-stack 28.8.0

4 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,987
titilerarlas-stackVerified publisher28.8.01 of 1See more

titiler arlas-stack 28.8.0

1 of the 1 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,466
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
curl@7.68.0-1ubuntu2.16
7.68.0-1ubuntu2.25+esm6

Open the chart page →

23,425
keystonearzu0.2.292 of 4See more

keystone arzu 0.2.29

2 of the 4 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm6
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm6

Open the chart page →

22,663
assemblylineassemblylineVerified publisher7.4.193 of 12See more

assemblyline assemblyline 7.4.19

3 of the 12 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
cccs/assemblyline-core:4.7.4.stable19c914f21a41d7
curl@7.88.1-10+deb12u15
no fix listed
cccs/assemblyline-socketio:4.7.4.stable19caf40394bd17
curl@7.88.1-10+deb12u15
no fix listed
cccs/assemblyline-ui:4.7.4.stable190426ed7884a2
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

12,666
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
curl@7.47.0-1ubuntu2.8
7.47.0-1ubuntu2.19+esm18
hyperledger/fabric-couchdb:0.4.15f6c724592abf
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm18

Open the chart page →

77,883
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
curl@7.47.0-1ubuntu2.8
7.47.0-1ubuntu2.19+esm18
hyperledger/fabric-couchdb:0.4.15f6c724592abf
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm18

Open the chart page →

77,883
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm6

Open the chart page →

9,411
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.26

Open the chart page →

10,127
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.26

Open the chart page →

18,357
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-11856.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,052

Container images carrying it

1,530 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-assistant/home-assistant:2026.8.256690a89c79a
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-assistant/home-assistant:2026.9.1:latest612d76760b54
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/bazarr:1.5.680cb090162b4
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.12
1
ghcr.io/home-operations/prowlarr:2.4.0b7da6e9defbe
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/qbittorrent:5.2.224f2d793cb7f
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/home-operations/radarr:6.2.1a566e7d364b9
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/sonarr:4.0.171989718e9fce
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/hotio/qbittorrent:release-5.2.007198d49e5b4
curl@8.19.0-r0
8.22.0-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
curl@8.14.1-2+deb13u2
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/immich-app/immich-server:v3.2.12ab6a6273755
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
curl@8.14.1-2+deb13u3
no fix listed
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
curl@8.14.1-2
no fix listed
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
curl@8.14.1-2+deb13u3
no fix listed
1
ghcr.io/jeremylong/open-vulnerability-data-mirror:v9.0.49a69aa14dc3e
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.12
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
curl@7.58.0-2ubuntu3.24
7.58.0-2ubuntu3.24+esm11
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.12
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.12
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
curl@7.68.0-1ubuntu2.10
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.26
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm6
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm6
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.