StackRadar

CVE-2026-13608

High

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.006
49th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,397
of 17,792 indexed, latest versions
Container images
1,262
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,397 of 17,792 indexed charts deploy, on 1,262 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4+36 more1:8.14.1-2+deb13u3+e4905
curlapk8.10.1-r0, 8.10.1-r1, 8.12.0-r1, 8.12.1-r0+10 more8.22.0-r0357
OSV records
ALPINE-CVE-2026-13608CGA-wfwx-52wx-xm5jDEBIAN-CVE-2026-13608UBUNTU-CVE-2026-13608ECHO-f292-4a07-579c
Also known as
CGA-x99g-hxrw-x4jm

Charts affected

1,397 by stars
ChartLatestAffected imagesRadar Score
paperless-ngxrtomik-helm-chartsVerified publisher0.0.51 of 1See more

paperless-ngx rtomik-helm-charts 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

10,657
flaresolverrrubxkubeVerified publisher0.1.11 of 1See more

flaresolverr rubxkube 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

27,655
gitearubxkubeVerified publisher1.2.31 of 1See more

gitea rubxkube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
gitea/gitea:1.27.134e3f6b75f5c
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

599
jellyfinrubxkubeVerified publisher1.3.11 of 1See more

jellyfin rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

2,639
komgarubxkubeVerified publisher0.1.31 of 1See more

komga rubxkube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
gotson/komga:1.26.36c2a967bbe9a
curl@8.18.0-1ubuntu2.3
no fix listed

Open the chart page →

2,305
linkdingrubxkubeVerified publisher1.2.41 of 1See more

linkding rubxkube 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.47.0e35cb50e0581
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,059
simple-coffeerubxkubeVerified publisher0.1.01 of 1See more

simple-coffee rubxkube 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
qjoly/kubernetes-coffee-image:simpleec94d3bdc035
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,554
sonarrrubxkubeVerified publisher1.4.21 of 1See more

sonarr rubxkube 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
linuxserver/sonarr:4.0.194d9df314875e
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

320
spindlerubxkubeVerified publisher0.1.21 of 2See more

spindle rubxkube 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/qjoly/spindle:v1.16.1-alphaaab0c99d313f
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

1,166
stirling-pdfrubxkubeVerified publisher0.1.21 of 1See more

stirling-pdf rubxkube 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
curl@8.5.0-2ubuntu10.8
no fix listed

Open the chart page →

6,291
suwayomirubxkubeVerified publisher0.1.21 of 1See more

suwayomi rubxkube 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/suwayomi/suwayomi-server:v2.3.2320d2c3218c7f9f
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

1,673
tranquil-pdsrubxkubeVerified publisher0.2.01 of 2See more

tranquil-pds rubxkube 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

635
uptime-kumarubxkubeVerified publisher1.2.11 of 1See more

uptime-kuma rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.4.091e963bfda56
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

30,590
vaultwardenrubxkubeVerified publisher1.2.41 of 1See more

vaultwarden rubxkube 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,766
your-spotifyrubxkubeVerified publisher1.0.11 of 3See more

your-spotify rubxkube 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:latestb0652af9c8d0
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,107
runwhen-localrunwhen-contribVerified publisher0.6.171 of 3See more

runwhen-local runwhen-contrib 0.6.17

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,748
rybbitrybbit-helm1.3.01 of 7See more

rybbit rybbit-helm 1.3.0

1 of the 7 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.22.0-r0

Open the chart page →

5,858
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
curl@8.14.1-2
no fix listed

Open the chart page →

9,738
safe-stacksafe-global0.1.01 of 9See more

safe-stack safe-global 0.1.0

1 of the 9 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
no fix listed

Open the chart page →

19,714
safe-transaction-servicesafe-global0.1.01 of 6See more

safe-transaction-service safe-global 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
no fix listed

Open the chart page →

16,736
samplesample0.1.01 of 2See more

sample sample 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/mongo:noble6ede2806c78e
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

2,366
piholesantisbon0.2.01 of 1See more

pihole santisbon 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
pihole/pihole:latestf7d1be836e3b
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

571
speedtestsantisbon0.1.03 of 3See more

speedtest santisbon 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
curl@8.21.0-r0
8.22.0-r0
library/influxdb:2.7b8d940ca9376
curl@7.88.1-10+deb12u14
no fix listed
santisbon/speedtest:latest8ee3a1697227
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

12,769
airflowsb-helm-charts0.3.01 of 1See more

airflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
apache/airflow:2.8.1e5560ad0b86e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

10,236
jellyfinsb-helm-charts0.4.01 of 1See more

jellyfin sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.317c3a8d9dddb
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

4,144
nextcloudsb-helm-charts0.4.01 of 2See more

nextcloud sb-helm-charts 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/nextcloud:31.0.10-apacheb7faa1653c39
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

9,863
phpmyadminsb-helm-charts0.3.01 of 1See more

phpmyadmin sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

5,410
rsshubsb-helm-charts0.3.01 of 1See more

rsshub sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
diygod/rsshub:2025-11-097a6312cac0d5
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,715
vaultwardensb-helm-charts0.4.01 of 1See more

vaultwarden sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
vaultwarden/server:1.34.384fd8a47f58d
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

3,345
wordpresssb-helm-charts0.4.01 of 2See more

wordpress sb-helm-charts 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/wordpress:6.4.3-apache8ae66efb09a2
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

13,610
factorioschichtelVerified publisher0.1.11 of 1See more

factorio schichtel 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
factoriotools/factorio:2.0.67-rootlessf7909f7361d6
curl@8.14.1-2
no fix listed

Open the chart page →

2,995
photonschichtelVerified publisher0.2.01 of 1See more

photon schichtel 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
rtuszik/photon-docker:2.4.021549c60f9e6
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

2,893
s3-backupschichtelVerified publisher0.10.01 of 1See more

s3-backup schichtel 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

2,384
vaultwardenschichtelVerified publisher0.9.21 of 1See more

vaultwarden schichtel 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,766
wordpressschichtelVerified publisher0.10.102 of 2See more

wordpress schichtel 0.10.10

2 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/wordpress:6.9.4-fpmad4a8bae2eb4
curl@8.14.1-2+deb13u3
no fix listed
nginxinc/nginx-unprivileged:1.29.5c5b989ebc150
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

8,316
otterwikischmitzis0.1.01 of 1See more

otterwiki schmitzis 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
redimp/otterwiki:2778bf30da3da
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,234
snipeitschmitzis6.1.01 of 2See more

snipeit schmitzis 6.1.0

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
snipe/snipe-it:v8.3.1141ebf2386fe
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

6,224
cinnyappschoenwald1.0.111 of 1See more

cinnyapp schoenwald 1.0.11

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/cinnyapp/cinny:v4.12.6a7805a8a60ff
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

800
etherpadschoenwald0.3.01 of 1See more

etherpad schoenwald 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
etherpad/etherpad:2.7.2b723fe5f2594
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,130
synapse-adminschoenwald1.0.11 of 1See more

synapse-admin schoenwald 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
awesometechnologies/synapse-admin:0.11.4a1c1f4662875
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,798
jellyfinschoolguys-helmcharts0.4.21 of 1See more

jellyfin schoolguys-helmcharts 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.81694ff069f0c
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

3,035
photoprismschoolguys-helmcharts0.3.81 of 1See more

photoprism schoolguys-helmcharts 0.3.8

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
photoprism/photoprism:260601650c6ad5a651
curl@8.18.0-1ubuntu2.1
no fix listed

Open the chart page →

10,464
typo3schoolguys-helmcharts0.4.21 of 1See more

typo3 schoolguys-helmcharts 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,931
vaultwardenschoolguys-helmcharts0.3.91 of 1See more

vaultwarden schoolguys-helmcharts 0.3.9

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.1-alpineb094afed4ed5
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

290
sealed-secrets-uisealed-secrets-uiVerified publisher0.0.81 of 1See more

sealed-secrets-ui sealed-secrets-ui 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

4,728
persistence-elasticsecurecodebox-persistence-elastic5.7.01 of 1See more

persistence-elastic securecodebox-persistence-elastic 5.7.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
securecodebox/persistence-elastic-dashboard-importer:5.7.0afcefbd56d61
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

879
trivysecurecodebox-trivy5.9.01 of 1See more

trivy securecodebox-trivy 5.9.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
aquasec/trivy:0.74.062b1e65e8869
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

439
service-exampleservice-example-10.1.01 of 7See more

service-example service-example-1 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

9,109
serviceexampleserviceexample-chart0.3.01 of 4See more

serviceexample serviceexample-chart 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

4,042
serviceexampleservice-example-helm-chart0.1.01 of 4See more

serviceexample service-example-helm-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

2,309

Container images carrying it

1,262 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/zalando/postgres-operator:v2.0.275f69eac43ac
curl@8.21.0-r0
8.22.0-r0
1
ghcr.io/zammad/zammad:7.1.3-0014ce435c77651e
curl@8.14.1-2+deb13u5
no fix listed
1
ghcr.io/zazukoians/qlever-server:v0.10.11de7869ab46e
curl@8.5.0-2ubuntu10.13
no fix listed
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
curl@7.88.1-10+deb12u8
no fix listed
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
curl@8.5.0-2ubuntu10.11
no fix listed
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
curl@8.5.0-2ubuntu10.9
no fix listed
1
public.ecr.aws/aktosecurity/akto-ai-automated-testing:latest5a5d32281374
curl@7.88.1-10+deb12u15
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.66.9138c8b82c398
curl@8.5.0-2ubuntu10.12
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:latestf669a6eacf8c
curl@8.5.0-2ubuntu10.12
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest5d55a742a2bc
curl@8.18.0-1ubuntu2.4
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest8be3ed26f746
curl@8.18.0-1ubuntu2.4
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.72.6_local43316f900242
curl@8.18.0-1ubuntu2.3
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.74.4_local5bda14f66e8e
curl@8.18.0-1ubuntu2.5
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
curl@8.5.0-2ubuntu10.6
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
curl@8.5.0-2ubuntu10.12
no fix listed
1
public.ecr.aws/aktosecurity/akto-threat-detection:latest3f103ce347ce
curl@8.18.0-1ubuntu2.4
no fix listed
1
public.ecr.aws/aktosecurity/akto-threat-detection:1.16.2a47eb6cc17ea
curl@8.18.0-1ubuntu2.4
no fix listed
1
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
curl@8.5.0-2ubuntu10.11
no fix listed
1
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
curl@1:8.14.1-2+deb13u3+e1
1:8.14.1-2+deb13u3+e4
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
curl@7.88.1-10+deb12u7
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
curl@7.88.1-10+deb12u7
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
curl@7.88.1-10+deb12u5
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
curl@7.88.1-10+deb12u5
no fix listed
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
curl@7.88.1-10+deb12u4
no fix listed
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
curl@7.88.1-10+deb12u14
no fix listed
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
curl@7.88.1-10+deb12u8
no fix listed
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
curl@8.5.0-2ubuntu10.6
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
curl@7.88.1-10+deb12u5
no fix listed
1
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
curl@8.18.0-1ubuntu2.3
no fix listed
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
curl@8.5.0-2ubuntu10.6
no fix listed
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
curl@8.5.0-2ubuntu10.6
no fix listed
1
quay.io/argoprojlabs/argocd-image-updater:v1.2.13c56f354fac5
curl@8.19.0-r0
8.22.0-r0
1
quay.io/argoprojlabs/gitops-promoter:v0.39.0de07cc7c72b6
curl@8.14.1-2+deb13u4
no fix listed
1
quay.io/codefresh/dind:3.0.250885ab519dac
curl@8.21.0-r0
8.22.0-r0
1
quay.io/deployhub/ms-nginx:svccat-v11.0.815-g717581d2d3400664e8
curl@8.17.0-r1
8.22.0-r0
1
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
curl@8.14.1-2+deb13u4
no fix listed
1
quay.io/go-skynet/local-ai:latestd78cd113b2bc
curl@8.5.0-2ubuntu10.11
no fix listed
1
quay.io/groundcover/tools:20260719b705e0cbe171
curl@1:8.14.1-2+deb13u3+e1
1:8.14.1-2+deb13u3+e4
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
curl@7.88.1-10+deb12u15
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
curl@7.88.1-10+deb12u14
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
curl@7.88.1-10+deb12u14
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
curl@7.88.1-10+deb12u15
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
curl@8.14.1-2+deb13u2
no fix listed
1
quay.io/shesselink81/anna-nginx:v1.31.1120c19fa8a918
curl@8.21.0-r0
8.22.0-r0
1
quay.io/shesselink81/hesselinkme-nginx:v1.31.114f43beb13fc2
curl@8.21.0-r0
8.22.0-r0
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
curl@7.88.1-10+deb12u1
no fix listed
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
curl@8.5.0-2ubuntu10.10
no fix listed
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
curl@8.18.0-1ubuntu2.4
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.