StackRadar

CVE-2026-12064

High

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,010
of 17,781 indexed, latest versions
Container images
872
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,010 of 17,781 indexed charts deploy, on 872 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4+24 more8.14.1-2+e22, 8.14.1-2ubuntu1.5, 8.18.0-1ubuntu2.3655
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
OSV records
ALPINE-CVE-2026-12064DEBIAN-CVE-2026-12064UBUNTU-CVE-2026-12064ECHO-2ea7-d2c8-d549
Also known as
USN-8525-1

Charts affected

1,010 by stars
ChartLatestAffected imagesRadar Score
ingress-nginxingress-nginx4.15.11 of 2See more

ingress-nginx ingress-nginx 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,547
jenkinsjenkinsciOfficialVerified publisher5.9.581 of 2See more

jenkins jenkinsci 5.9.58

1 of the 2 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-jdk21c1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,665
nextcloudnextcloud9.2.61 of 1See more

nextcloud nextcloud 9.2.6

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3-apacheb97df9e0e1ee
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,507
giteagiteaOfficialVerified publisher12.7.01 of 4See more

gitea gitea 12.7.0

1 of the 4 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

8,811
artifact-hubartifact-hubVerified publisher1.23.01 of 7See more

artifact-hub artifact-hub 1.23.0

1 of the 7 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
aquasec/trivy:0.69.3bcc376de8d77
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

10,755
mimir-distributedgrafana6.2.01 of 6See more

mimir-distributed grafana 6.2.0

1 of the 6 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

4,517
jupyterhubjupyterhubOfficialVerified publisher4.4.23 of 7See more

jupyterhub jupyterhub 4.4.2

3 of the 7 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.22.0-r0
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
curl@7.88.1-10+deb12u15
no fix listed
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

7,894
natsnatsVerified publisher2.14.61 of 3See more

nats nats 2.14.6

1 of the 3 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,313
metabasepmint932.27.61 of 1See more

metabase pmint93 2.27.6

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
metabase/metabase:v0.61.1.x9491ed11c901
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,639
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

30,159
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

11,367
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,227
openebsopenebsOfficialVerified publisher4.6.11 of 35See more

openebs openebs 4.6.1

1 of the 35 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
openebs/provisioner-localpv:4.6.099f5116f5cb8
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

23,894
netdatanetdataVerified publisher3.7.1731 of 1See more

netdata netdata 3.7.173

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
netdata/netdata:v2.11.0c45c71eb23ff
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,092
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

5,366
flux2fluxcd-community2.19.01 of 7See more

flux2 fluxcd-community 2.19.0

1 of the 7 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/kustomize-controller:v1.9.23aecec8bafdb
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,951
vaultwardengissilabs1.4.21 of 1See more

vaultwarden gissilabs 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,744
zammadzammadOfficialVerified publisher18.0.51 of 5See more

zammad zammad 18.0.5

1 of the 5 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

6,887
clamavwiremindVerified publisher3.7.31 of 1See more

clamav wiremind 3.7.3

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,060
atlantisatlantis6.15.01 of 1See more

atlantis atlantis 6.15.0

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
ghcr.io/runatlantis/atlantis:v0.47.1511231955463
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

1,891
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

10,622
penpotpenpotOfficialVerified publisher1.9.01 of 4See more

penpot penpot 1.9.0

1 of the 4 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
penpotapp/frontend:2.17.294fa2864d8fc
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

4,314
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

2,705
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

4,802
dragonflydragonflyVerified publisher1.8.42 of 3See more

dragonfly dragonfly 1.8.4

2 of the 3 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.4a1b52779c4dd
curl@7.88.1-10+deb12u15
no fix listed
dragonflyoss/scheduler:v2.5.2-rc.06d710dc2bae0
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

3,787
pulsarapache4.7.02 of 10See more

pulsar apache 4.7.0

2 of the 10 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.21.0-r0
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

9,864
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

6,927
difydify-helmVerified publisher0.38.04 of 11See more

dify dify-helm 0.38.0

4 of the 11 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
curl@7.88.1-10+deb12u15
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
curl@7.88.1-10+deb12u15
no fix listed
langgenius/dify-sandbox:0.2.15750e1111426e
curl@8.19.0-3
no fix listed
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

22,002
oktetooktetoOfficialVerified publisher0.0.0-2026-08-032 of 10See more

okteto okteto 0.0.0-2026-08-03

2 of the 10 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
ghcr.io/okteto/buildkit:0.0.0-2026-08-0314527ca5d2a9
curl@8.20.0-r0
8.22.0-r0
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-033e56bdd1b90d
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

5,750
yourlsyourlsOfficialVerified publisher8.9.111 of 2See more

yourls yourls 8.9.11

1 of the 2 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
ghcr.io/yourls/yourls:1.10.69b220ea83329
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,203
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.02 of 5See more

openproject openproject-helm-charts 13.11.0

2 of the 5 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
openproject/hocuspocus:release-338001b288dc1359dfb5
curl@7.88.1-10+deb12u12
no fix listed
openproject/openproject:17.8.0-slim48952034215d
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

19,926
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

11,384
lemmyananace-chartsVerified publisher0.6.152 of 5See more

lemmy ananace-charts 0.6.15

2 of the 5 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
dessalines/lemmy:0.19.2079e9f02c286c
curl@7.88.1-10+deb12u15
no fix listed
dessalines/lemmy-ui:0.19.20ee4c620d8e93
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

7,210
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

6,543
stacks-blockchain-apihirosystemsVerified publisher6.5.12 of 5See more

stacks-blockchain-api hirosystems 6.5.1

2 of the 5 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
google/cloud-sdk:alpinef7d3e6d6d4f4
curl@8.20.0-r0
8.22.0-r0
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

8,364
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,987
factorio-server-chartsfactorio-server-chartsVerified publisher2.5.21 of 1See more

factorio-server-charts factorio-server-charts 2.5.2

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
factoriotools/factorio:lateste9227748c507
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,437
netbirdjaconiVerified publisher0.15.11 of 4See more

netbird jaconi 0.15.1

1 of the 4 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
library/golang:latest512690a56605
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,390
localstacklocalstack0.7.01 of 1See more

localstack localstack 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
localstack/localstack-pro:latest4aef81c53168
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,156
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
curl@8.21.0-2~bpo13+1
no fix listed

Open the chart page →

9,683
oneuptimeoneuptimeOfficialVerified publisher13.0.42 of 7See more

oneuptime oneuptime 13.0.4

2 of the 7 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
oneuptime/probe:release6b2d98713711
curl@7.88.1-10+deb12u15
no fix listed
oneuptime/runner:release4accc516d800
curl@8.14.1-2+deb13u5
no fix listed

Open the chart page →

11,192
openclawopenclaw-helmVerified publisher1.5.401 of 2See more

openclaw openclaw-helm 1.5.40

1 of the 2 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,660
stalwart-mailstalwart-mailVerified publisher2.0.101 of 1See more

stalwart-mail stalwart-mail 2.0.10

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,403
prefect-serverprefectVerified publisher2026.9.32126051 of 2See more

prefect-server prefect 2026.9.3212605

1 of the 2 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
prefecthq/prefect:3.8.5-python3.110018d02259bc
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

5,786
rustfscloudpirates-rustfsVerified publisher0.11.41 of 1See more

rustfs cloudpirates-rustfs 0.11.4

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
rustfs/rustfs:1.0.0-beta.13c2d55977829
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

885
codefreshcodefresh-onpremOfficialVerified publisher2.12.132 of 42See more

codefresh codefresh-onprem 2.12.13

2 of the 42 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
curl@7.88.1-10+deb12u7
no fix listed
bitnamilegacy/rabbitmq:4.1.39e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

14,956
apim3graviteeioVerified publisher4.12.192 of 4See more

apim3 graviteeio 4.12.19

2 of the 4 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
curl@8.14.1-2+deb13u4
no fix listed
graviteeio/apim-management-api:4.12.19-debian27374522cd04
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,806
wordpressgroundhog2k0.16.41 of 1See more

wordpress groundhog2k 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,685
supabasetokens-studioVerified publisher1.0.02 of 14See more

supabase tokens-studio 1.0.0

2 of the 14 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
supabase/realtime:v2.33.8d207e6e23ad3
curl@7.88.1-10+deb12u7
no fix listed
supabase/studio:20241021-9f9b08326d8070c55e9
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

23,123
renterdartur9010Verified publisher1.4.41 of 2See more

renterd artur9010 1.4.4

1 of the 2 container images this version deploys carry CVE-2026-12064.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

8,493

Container images carrying it

872 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.31:1.31.5:latest:trixie05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed
106
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed
23
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed
13
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed
7
library/phpmyadmin:5.2.3-apache:latest3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed
7
vaultwarden/server:1.37.2:latest094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
7
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed
6
library/wordpress:7.1.0-apache:latest5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed
5
library/httpd:2.4:2.4.68:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0
5
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
curl@7.88.1-10+deb12u12
no fix listed
4
grafana/grafana:13.1.0121a7a9ece6d
curl@8.20.0-r1
8.21.0-r0
4
library/httpd:2.4-alpine:alpine1b766f17b840
curl@8.20.0-r1
8.21.0-r0
4
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
4
apache/superset:6.1.0:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
curl@7.88.1-10+deb12u15
no fix listed
3
fluent/fluent-bit:5.1.2:latestd792375ca8e5
curl@8.14.1-2+deb13u4
no fix listed
3
library/nginx:1.25:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
no fix listed
3
library/node:ltsbe23f54a88d3
curl@7.88.1-10+deb12u15
no fix listed
3
localstack/localstack-pro:latest4aef81c53168
curl@8.14.1-2+deb13u4
no fix listed
3
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0
3
vaultwarden/server:1.37.1ebdfe70701c6
curl@8.14.1-2+deb13u4
no fix listed
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
curl@7.88.1-10+deb12u14
no fix listed
3
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.22.0-r0
3
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.21.0-r0
2
alpine/kubectl:1.35.49ccd82364762
curl@8.17.0-r1
8.22.0-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
curl@8.17.0-r1
8.22.0-r0
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
curl@8.14.1-2+deb13u4
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed
2
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.22.0-r0
2
dunglas/mercure:v0:v0.24.2916834e49961
curl@8.17.0-r1
8.22.0-r0
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
curl@8.14.1-2+deb13u2
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
no fix listed
2
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
2
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
no fix listed
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.