StackRadar

CVE-2026-13608

High

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.006
49th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,384
of 17,781 indexed, latest versions
Container images
1,244
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,384 of 17,781 indexed charts deploy, on 1,244 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4+36 more1:8.14.1-2+deb13u3+e4899
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+3 more8.22.0-r0345
OSV records
ALPINE-CVE-2026-13608DEBIAN-CVE-2026-13608UBUNTU-CVE-2026-13608ECHO-f292-4a07-579c
Trending
Rank 44 in indexed charts, since 14 Sept 2026. See the ranking →

Charts affected

1,384 by stars
ChartLatestAffected imagesRadar Score
argo-cdargoOfficialVerified publisher10.9.01 of 3See more

argo-cd argo 10.9.0

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
curl@8.18.0-1ubuntu2.4
no fix listed

Open the chart page →

3,218
ingress-nginxingress-nginx4.15.11 of 2See more

ingress-nginx ingress-nginx 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,547
jenkinsjenkinsciOfficialVerified publisher5.9.581 of 2See more

jenkins jenkinsci 5.9.58

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-jdk21c1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,665
gitlab-runnergitlabVerified publisher0.92.11 of 1See more

gitlab-runner gitlab 0.92.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.3.1af0325804248
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

904
nextcloudnextcloud9.2.61 of 1See more

nextcloud nextcloud 9.2.6

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3-apacheb97df9e0e1ee
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,507
giteagiteaOfficialVerified publisher12.7.01 of 4See more

gitea gitea 12.7.0

1 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

8,811
pgadmin4runixVerified publisher1.66.01 of 1See more

pgadmin4 runix 1.66.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
dpage/pgadmin4:9.172f4ce946ddf8
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

398
artifact-hubartifact-hubVerified publisher1.23.01 of 7See more

artifact-hub artifact-hub 1.23.0

1 of the 7 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
aquasec/trivy:0.69.3bcc376de8d77
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

10,755
piholemojo2600Verified publisher2.38.01 of 1See more

pihole mojo2600 2.38.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
pihole/pihole:2026.07.2f7d1be836e3b
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

571
n8ncommunity-chartsVerified publisher1.24.401 of 1See more

n8n community-charts 1.24.40

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
n8nio/n8n:2.38.45d9f0cc5672b
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

772
mimir-distributedgrafana6.2.01 of 6See more

mimir-distributed grafana 6.2.0

1 of the 6 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

4,517
jupyterhubjupyterhubOfficialVerified publisher4.4.23 of 7See more

jupyterhub jupyterhub 4.4.2

3 of the 7 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.22.0-r0
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
curl@7.88.1-10+deb12u15
no fix listed
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

7,894
argo-cdargo-cd-oci10.9.01 of 3See more

argo-cd argo-cd-oci 10.9.0

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
curl@8.18.0-1ubuntu2.4
no fix listed

Open the chart page →

3,218
natsnatsVerified publisher2.14.61 of 3See more

nats nats 2.14.6

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,313
metabasepmint932.27.61 of 1See more

metabase pmint93 2.27.6

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
metabase/metabase:v0.61.1.x9491ed11c901
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,639
argocd-image-updaterargoOfficialVerified publisher1.3.11 of 1See more

argocd-image-updater argo 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/argocd-image-updater:v1.3.0cb009167015c
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

718
n8nopen-8gears2.1.11 of 1See more

n8n open-8gears 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
n8nio/n8n:2.36.8cfe2704ff858
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

1,038
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

30,159
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

11,367
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,227
kongkongOfficialVerified publisher3.4.11 of 2See more

kong kong 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

1,135
victoria-metrics-k8s-stackvictoriametricsVerified publisher0.92.11 of 7See more

victoria-metrics-k8s-stack victoriametrics 0.92.1

1 of the 7 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
grafana/grafana:13.1.17cb8c64c4d57
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

1,889
openebsopenebsOfficialVerified publisher4.6.11 of 35See more

openebs openebs 4.6.1

1 of the 35 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
openebs/provisioner-localpv:4.6.099f5116f5cb8
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

23,894
jiraatlassian-data-centerVerified publisher2.0.151 of 2See more

jira atlassian-data-center 2.0.15

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
atlassian/jira-software:11.3.11e5548cd4eea8
curl@8.5.0-2ubuntu10.13
no fix listed

Open the chart page →

1,490
zabbixzabbix-communityVerified publisher7.1.04 of 5See more

zabbix zabbix-community 7.1.0

4 of the 5 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
curl@8.5.0-2ubuntu10.6
no fix listed
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
curl@8.5.0-2ubuntu10.6
no fix listed
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
curl@8.5.0-2ubuntu10.6
no fix listed
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

13,664
graylogkong-zVerified publisher3.0.321 of 5See more

graylog kong-z 3.0.32

1 of the 5 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
graylog/graylog:7.2.0-beta.2-1e8431d59b84d
curl@8.5.0-2ubuntu10.13
no fix listed

Open the chart page →

2,699
netdatanetdataVerified publisher3.7.1731 of 1See more

netdata netdata 3.7.173

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
netdata/netdata:v2.11.0c45c71eb23ff
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,092
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

5,366
flux2fluxcd-community2.19.01 of 7See more

flux2 fluxcd-community 2.19.0

1 of the 7 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/kustomize-controller:v1.9.23aecec8bafdb
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,951
vaultwardengissilabs1.4.21 of 1See more

vaultwarden gissilabs 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,744
netboxnetboxOfficialVerified publisher8.3.741 of 5See more

netbox netbox 8.3.74

1 of the 5 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/netbox-community/netbox:v4.7.01685e91c61bb
curl@8.18.0-1ubuntu2.5
no fix listed

Open the chart page →

1,015
zammadzammadOfficialVerified publisher18.0.51 of 5See more

zammad zammad 18.0.5

1 of the 5 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

6,887
podinfopodinfo6.15.01 of 1See more

podinfo podinfo 6.15.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/stefanprodan/podinfo:6.15.0ec73780a8425
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

289
clamavwiremindVerified publisher3.7.31 of 1See more

clamav wiremind 3.7.3

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,060
atlantisatlantis6.15.01 of 1See more

atlantis atlantis 6.15.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/runatlantis/atlantis:v0.47.1511231955463
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

1,891
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

10,622
penpotpenpotOfficialVerified publisher1.9.03 of 4See more

penpot penpot 1.9.0

3 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
penpotapp/exporter:2.17.272a8061e8806
curl@8.18.0-1ubuntu2.4
no fix listed
penpotapp/frontend:2.17.294fa2864d8fc
curl@8.20.0-r0
8.22.0-r0
penpotapp/mcp:2.17.284f3f07ead11
curl@8.18.0-1ubuntu2.4
no fix listed

Open the chart page →

4,314
weblateweblateOfficialVerified publisher0.5.361 of 3See more

weblate weblate 0.5.36

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
weblate/weblate:2026.9.1.0990720d1737a
curl@8.18.0-1ubuntu2.4
no fix listed

Open the chart page →

6,699
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

2,705
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

4,802
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

19,391
dragonflydragonflyVerified publisher1.8.42 of 3See more

dragonfly dragonfly 1.8.4

2 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.4a1b52779c4dd
curl@7.88.1-10+deb12u15
no fix listed
dragonflyoss/scheduler:v2.5.2-rc.06d710dc2bae0
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

3,787
kubesharkkubeshark-helm-chartsOfficialVerified publisher53.4.01 of 3See more

kubeshark kubeshark-helm-charts 53.4.0

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
kubeshark/front:v53.4cc7f07b99fac
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

825
mongodbcloudpirates-mongodbVerified publisher0.18.131 of 1See more

mongodb cloudpirates-mongodb 0.18.13

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/mongo:8.3.981a1c8842a09
curl@8.5.0-2ubuntu10.13
no fix listed

Open the chart page →

922
akhqakhq0.28.01 of 1See more

akhq akhq 0.28.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
tchiotludo/akhq:0.28.0c2824dc2ae44
curl@8.18.0-1ubuntu2.3
no fix listed

Open the chart page →

1,548
pulsarapache4.7.02 of 10See more

pulsar apache 4.7.0

2 of the 10 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.22.0-r0
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

9,864
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

3,606
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

6,927
difydify-helmVerified publisher0.38.05 of 11See more

dify dify-helm 0.38.0

5 of the 11 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
curl@7.88.1-10+deb12u15
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
curl@7.88.1-10+deb12u15
no fix listed
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
curl@8.5.0-2ubuntu10.9
no fix listed
langgenius/dify-sandbox:0.2.15750e1111426e
curl@8.19.0-3
no fix listed
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

22,002
plantumlstevehipwellVerified publisher3.49.01 of 1See more

plantuml stevehipwell 3.49.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
plantuml/plantuml-server:jetty-v1.2026.85f6f99ec2fc1
curl@8.5.0-2ubuntu10.13
no fix listed

Open the chart page →

1,869

Container images carrying it

1,244 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.31:1.31.5:latest:trixie05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed
106
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed
23
library/postgres:18.6-alpine:18-alpine:alpined3e1620b530c
curl@8.21.0-r0
8.22.0-r0
17
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed
13
grafana/grafana:latestf772d434e8fa
curl@8.21.0-r0
8.22.0-r0
12
library/mongo:8:8.3.8:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed
12
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed
7
library/phpmyadmin:5.2.3-apache:latest3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed
7
vaultwarden/server:1.37.2:latest094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
7
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed
6
library/wordpress:7.1.0-apache:latest5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
5
dpage/pgadmin4:9.17:latest2f4ce946ddf8
curl@8.21.0-r0
8.22.0-r0
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed
5
library/adminer:6.0.1:latestf742dcf1b6ca
curl@8.21.0-r0
8.22.0-r0
5
library/httpd:2.4:2.4.68:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed
5
library/kong:3.9:latest2a8cf3b110cd
curl@8.5.0-2ubuntu10.11
no fix listed
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0
5
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
curl@7.88.1-10+deb12u12
no fix listed
4
decisionrules/server:latestf38d8571fa06
curl@8.21.0-r0
8.22.0-r0
4
grafana/grafana:13.1.0121a7a9ece6d
curl@8.20.0-r1
8.22.0-r0
4
library/httpd:2.4-alpine:alpine1b766f17b840
curl@8.20.0-r1
8.22.0-r0
4
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
4
linuxserver/sonarr:4.0.19:latest4d9df314875e
curl@8.21.0-r0
8.22.0-r0
4
pihole/pihole:2026.07.2:latestf7d1be836e3b
curl@8.21.0-r0
8.22.0-r0
4
rustfs/rustfs:1.0.0-beta.12:latest41fe89380f41
curl@8.21.0-r0
8.22.0-r0
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
curl@8.18.0-1ubuntu2.4
no fix listed
4
alpine/git:latest:v2.54.06f3b5029566d
curl@8.21.0-r0
8.22.0-r0
3
apache/superset:6.1.0:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
3
decisionrules/client:latest92e459f2c673
curl@8.21.0-r0
8.22.0-r0
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
curl@7.88.1-10+deb12u15
no fix listed
3
fluent/fluent-bit:5.1.2:latestd792375ca8e5
curl@8.14.1-2+deb13u4
no fix listed
3
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
no fix listed
3
grafana/grafana:13.1.17cb8c64c4d57
curl@8.21.0-r0
8.22.0-r0
3
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
no fix listed
3
library/nginx:1.25:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
no fix listed
3
library/node:ltsbe23f54a88d3
curl@7.88.1-10+deb12u15
no fix listed
3
localstack/localstack-pro:latest4aef81c53168
curl@8.14.1-2+deb13u4
no fix listed
3
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0
3
vaultwarden/server:1.37.1ebdfe70701c6
curl@8.14.1-2+deb13u4
no fix listed
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
curl@8.18.0-1ubuntu2.4
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
curl@8.5.0-2ubuntu10.11
no fix listed
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.