StackRadar

CVE-2026-13608

High

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.006
49th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,384
of 17,781 indexed, latest versions
Container images
1,244
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,384 of 17,781 indexed charts deploy, on 1,244 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.88.1-10, 7.88.1-10+deb12u1, 7.88.1-10+deb12u4+36 more1:8.14.1-2+deb13u3+e4899
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+3 more8.22.0-r0345
OSV records
ALPINE-CVE-2026-13608DEBIAN-CVE-2026-13608UBUNTU-CVE-2026-13608ECHO-f292-4a07-579c
Trending
Rank 44 in indexed charts, since 14 Sept 2026. See the ranking →

Charts affected

1,384 by stars
ChartLatestAffected imagesRadar Score
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

8,866
appwriteappwrite-helmVerified publisher1.3.22 of 8See more

appwrite appwrite-helm 1.3.2

2 of the 8 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
curl@8.17.0-r1
8.22.0-r0
clamav/clamav:1.0dd0d9cc746af
curl@8.20.0-r1
8.22.0-r0

Open the chart page →

9,847
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
curl@8.14.1-2
no fix listed

Open the chart page →

7,489
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

7,300
argonix-apiargonix0.2.01 of 4See more

argonix-api argonix 0.2.0

1 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/argonix-io/argonix-api:1.0.068e17a8aaa40
curl@8.14.1-2+deb13u5
no fix listed

Open the chart page →

4,923
aias-servicesarlas-stackVerified publisher28.8.04 of 5See more

aias-services arlas-stack 28.8.0

4 of the 5 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
gisaia/agate:0.18.198213fa403ae
curl@8.21.0-r0
8.22.0-r0
gisaia/airs:0.18.15abfe00317bf
curl@8.21.0-r0
8.22.0-r0
gisaia/aproc-service:0.18.1ac6564921994
curl@8.21.0-r0
8.22.0-r0
gisaia/fam:0.18.1ae525930b4b6
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

1,001
arlas-aiasarlas-stackVerified publisher28.8.015 of 22See more

arlas-aias arlas-stack 28.8.0

15 of the 22 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
curl@7.88.1-10+deb12u8
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
curl@7.88.1-10+deb12u12
no fix listed
gisaia/agate:0.18.198213fa403ae
curl@8.21.0-r0
8.22.0-r0
gisaia/airs:0.18.15abfe00317bf
curl@8.21.0-r0
8.22.0-r0
gisaia/aproc-service:0.18.1ac6564921994
curl@8.21.0-r0
8.22.0-r0
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
gisaia/fam:0.18.1ae525930b4b6
curl@8.21.0-r0
8.22.0-r0
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

40,238
arlas-uisarlas-stackVerified publisher28.8.04 of 4See more

arlas-uis arlas-stack 28.8.0

4 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,985
titilerarlas-stackVerified publisher28.8.01 of 1See more

titiler arlas-stack 28.8.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,445
assemblylineassemblylineVerified publisher7.4.173 of 12See more

assemblyline assemblyline 7.4.17

3 of the 12 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
cccs/assemblyline-core:4.7.4.stable177c3c25d4d6e0
curl@7.88.1-10+deb12u15
no fix listed
cccs/assemblyline-socketio:4.7.4.stable1724646dbfd944
curl@7.88.1-10+deb12u15
no fix listed
cccs/assemblyline-ui:4.7.4.stable171a7a103668f5
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

12,898
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,032
smartorchestratorassist-iot-smart-orchestrator4.0.01 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

1 of the 14 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

45,363
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

13,913
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

32,501
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

9,412
bamboo-agentatlassian-data-centerVerified publisher2.0.151 of 1See more

bamboo-agent atlassian-data-center 2.0.15

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
atlassian/bamboo-agent-base:12.1.1151c2d7274eef
curl@8.5.0-2ubuntu10.13
no fix listed

Open the chart page →

1,581
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,297
nas-appsawesomeVerified publisher2.0.04 of 8See more

nas-apps awesome 2.0.0

4 of the 8 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed
linuxserver/jackett:latest609a1830692d
curl@8.21.0-r0
8.22.0-r0
linuxserver/qbittorrent:latesta00b6a597a38
curl@8.21.0-r0
8.22.0-r0
wettyoss/wetty:latest7423b3d40ba2
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

7,152
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:news3e8880fbbb96
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:blog4a7707410bf1
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:shop84a9d9766345
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

18,344
aws-web-service-proxifiedaws-web-service-proxified1.8.01 of 2See more

aws-web-service-proxified aws-web-service-proxified 1.8.0

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,009
axosyslogaxosyslogVerified publisher0.21.01 of 1See more

axosyslog axosyslog 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/axoflow/axosyslog:4.27.00379598e9ad2
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

394
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

2,738
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,297
my-nginx-appbassant-nginx-app0.1.01 of 1See more

my-nginx-app bassant-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
lidarrbdclark-helm-chartsVerified publisher0.1.01 of 1See more

lidarr bdclark-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
linuxserver/lidarr:3.1.0c74c32408fdf
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

377
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,028
prowlarrbdclark-helm-chartsVerified publisher0.3.41 of 1See more

prowlarr bdclark-helm-charts 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
linuxserver/prowlarr:2.5.291844fa2c927
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

255
sonarrbdclark-helm-chartsVerified publisher0.4.31 of 1See more

sonarr bdclark-helm-charts 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
linuxserver/sonarr:4.0.194d9df314875e
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

320
pangolinbdcode0.14.11 of 1See more

pangolin bdcode 0.14.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
fosrl/pangolin:latest83a55f933b4d
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

1,901
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

5,059
tenzu-frontbiru-scop3.1.01 of 1See more

tenzu-front biru-scop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

845
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

10,145
bdbablackduck2026.6.31 of 9See more

bdba blackduck 2026.6.3

1 of the 9 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.2.6a52221a2a3eb
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

9,521
blackduck-alertblackduck8.4.02 of 4See more

blackduck-alert blackduck 8.4.0

2 of the 4 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
curl@8.17.0-r1
8.22.0-r0
blackducksoftware/blackduck-alert-rabbitmq:8.4.08f422b18d171
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

4,292
bluespacebluespace0.3.01 of 1See more

bluespace bluespace 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
curl@7.88.1-10+deb12u12
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

26,996
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

8,323
Filebrowserbrandan-schmitz-helm-chartsVerified publisher1.3.11 of 1See more

Filebrowser brandan-schmitz-helm-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.63.15-s6dbac07403040
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

995
flaresolverrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

flaresolverr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

27,274
prowlarrbrandan-schmitz-helm-chartsVerified publisher2.1.01 of 1See more

prowlarr brandan-schmitz-helm-charts 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
linuxserver/prowlarr:version-2.4.0.53974fd7a166c8f4
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

413
qbittorrentbrandan-schmitz-helm-chartsVerified publisher2.2.01 of 1See more

qbittorrent brandan-schmitz-helm-charts 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
linuxserver/qbittorrent:5.2.2dd24a5f3db32
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

956
radarrbrandan-schmitz-helm-chartsVerified publisher3.1.01 of 1See more

radarr brandan-schmitz-helm-charts 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
linuxserver/radarr:version-6.2.1.10461549c4a075496
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

480
sonarrbrandan-schmitz-helm-chartsVerified publisher2.0.101 of 1See more

sonarr brandan-schmitz-helm-charts 2.0.10

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
linuxserver/sonarr:version-4.0.17.295202bc962946fe
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

866
tenantsbrbarmex-tenant2.0.01 of 1See more

tenants brbarmex-tenant 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
tautullibryanalves0.1.01 of 1See more

tautulli bryanalves 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
tautulli/tautulli:latest670e68dd9efc
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,907
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
curl@7.88.1-10+deb12u15
no fix listed
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

14,352
plexbryopsida0.2.01 of 1See more

plex bryopsida 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
curl@8.18.0-1ubuntu2.4
no fix listed

Open the chart page →

810
nginx-chartbtrepoVerified publisher0.1.01 of 1See more

nginx-chart btrepo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

11,869
casepack-docsbysamioVerified publisher0.8.01 of 1See more

casepack-docs bysamio 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-13608.

Container imageDigestPackageFixed in
ghcr.io/bysamio/casepack-docs:0.8.0443d9850a688
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

370

Container images carrying it

1,244 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.31:1.31.5:latest:trixie05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed
106
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed
23
library/postgres:18.6-alpine:18-alpine:alpined3e1620b530c
curl@8.21.0-r0
8.22.0-r0
17
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed
13
grafana/grafana:latestf772d434e8fa
curl@8.21.0-r0
8.22.0-r0
12
library/mongo:8:8.3.8:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed
12
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed
7
library/phpmyadmin:5.2.3-apache:latest3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed
7
vaultwarden/server:1.37.2:latest094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
7
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed
6
library/wordpress:7.1.0-apache:latest5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
5
dpage/pgadmin4:9.17:latest2f4ce946ddf8
curl@8.21.0-r0
8.22.0-r0
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed
5
library/adminer:6.0.1:latestf742dcf1b6ca
curl@8.21.0-r0
8.22.0-r0
5
library/httpd:2.4:2.4.68:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed
5
library/kong:3.9:latest2a8cf3b110cd
curl@8.5.0-2ubuntu10.11
no fix listed
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0
5
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
curl@7.88.1-10+deb12u12
no fix listed
4
decisionrules/server:latestf38d8571fa06
curl@8.21.0-r0
8.22.0-r0
4
grafana/grafana:13.1.0121a7a9ece6d
curl@8.20.0-r1
8.22.0-r0
4
library/httpd:2.4-alpine:alpine1b766f17b840
curl@8.20.0-r1
8.22.0-r0
4
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
4
linuxserver/sonarr:4.0.19:latest4d9df314875e
curl@8.21.0-r0
8.22.0-r0
4
pihole/pihole:2026.07.2:latestf7d1be836e3b
curl@8.21.0-r0
8.22.0-r0
4
rustfs/rustfs:1.0.0-beta.12:latest41fe89380f41
curl@8.21.0-r0
8.22.0-r0
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
curl@8.18.0-1ubuntu2.4
no fix listed
4
alpine/git:latest:v2.54.06f3b5029566d
curl@8.21.0-r0
8.22.0-r0
3
apache/superset:6.1.0:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
3
decisionrules/client:latest92e459f2c673
curl@8.21.0-r0
8.22.0-r0
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
curl@7.88.1-10+deb12u15
no fix listed
3
fluent/fluent-bit:5.1.2:latestd792375ca8e5
curl@8.14.1-2+deb13u4
no fix listed
3
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
no fix listed
3
grafana/grafana:13.1.17cb8c64c4d57
curl@8.21.0-r0
8.22.0-r0
3
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
no fix listed
3
library/nginx:1.25:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
no fix listed
3
library/node:ltsbe23f54a88d3
curl@7.88.1-10+deb12u15
no fix listed
3
localstack/localstack-pro:latest4aef81c53168
curl@8.14.1-2+deb13u4
no fix listed
3
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0
3
vaultwarden/server:1.37.1ebdfe70701c6
curl@8.14.1-2+deb13u4
no fix listed
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
curl@8.18.0-1ubuntu2.4
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
curl@8.5.0-2ubuntu10.11
no fix listed
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.