StackRadar

CVE-2026-19931

Critical

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.012
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,801
of 17,781 indexed, latest versions
Container images
1,613
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,801 of 17,781 indexed charts deploy, on 1,613 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.68.0-1ubuntu2.2, 7.68.0-1ubuntu2.4, 7.68.0-1ubuntu2.5+78 moreno fix listed1,268
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+3 more8.22.0-r0345
OSV records
ALPINE-CVE-2026-19931DEBIAN-CVE-2026-19931UBUNTU-CVE-2026-19931ECHO-5bd0-12f6-d009
Trending
Rank 20 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,801 by stars
ChartLatestAffected imagesRadar Score
supabasesupabse0.8.03 of 11See more

supabase supabse 0.8.0

3 of the 11 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
supabase/postgres:17.6.1.136f371b5f3f2ac
curl@8.19.0-r0
8.22.0-r0
supabase/realtime:v2.102.3aa1c92c0cf32
curl@7.88.1-10+deb12u14
no fix listed
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

18,075
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

3,240
mumblesyntaxerror404Verified publisher1.0.41 of 1See more

mumble syntaxerror404 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

2,099
kubedeploysysbee1.2.21 of 1See more

kubedeploy sysbee 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
ipsec-vpn-servertaskmediaVerified publisher2.2.01 of 2See more

ipsec-vpn-server taskmedia 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
hwdsl2/ipsec-vpn-server:latest2e939ffe5913
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

770
apptaxmd-helm-chart0.0.21 of 1See more

app taxmd-helm-chart 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
curl@8.14.1-2+deb13u3+dhi3
no fix listed

Open the chart page →

2,522
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

9,102
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

9,102
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
curl@8.5.0-2ubuntu10.5
no fix listed

Open the chart page →

4,020
espocrmtwenty20-helm-chartsVerified publisher2.0.51 of 2See more

espocrm twenty20-helm-charts 2.0.5

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
espocrm/espocrm:10.0.8-fpm-alpine4bd92daf5f0c
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

493
typemilltypemill-helm-chart2.2.02 of 2See more

typemill typemill-helm-chart 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
kixote/typemilldigest-pinned4e9dff179519
curl@8.14.1-2+deb13u4
no fix listed
kixote/typemilldigest-pinned628f79a08cc7
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

5,338
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
no fix listed

Open the chart page →

3,764
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
no fix listed

Open the chart page →

3,764
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

12,581
varnish-ingress-controllervarnish-ingress-controllerVerified publisher0.5.01 of 1See more

varnish-ingress-controller varnish-ingress-controller 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
mariusm/vingress:0.5.0b3db186c3d72
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,251
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

4,010
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,225
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
curl@7.68.0-1ubuntu2.19
no fix listed
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
curl@7.68.0-1ubuntu2.11
no fix listed

Open the chart page →

26,657
vite-react-app-helm-chartsvite-react-app-helm-charts1.0.01 of 1See more

vite-react-app-helm-charts vite-react-app-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/marcuwynu23/vite-app-sample:latest21247f2b97c4
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,085
waldurwaldur-chartsVerified publisher8.1.22 of 3See more

waldur waldur-charts 8.1.2

2 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
opennode/waldur-homeport:8.1.2a8b5b4777027
curl@8.21.0-r0
8.22.0-r0
opennode/waldur-mastermind:8.1.24c82b15d9042
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,839
ingress-nginxwenerme4.15.11 of 2See more

ingress-nginx wenerme 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,547
natswenerme2.14.61 of 3See more

nats wenerme 2.14.6

1 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,313
wikiwenerme2.2.01 of 2See more

wiki wenerme 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
requarks/wiki:latest68f0d1848261
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

3,833
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
curl@7.68.0-1ubuntu2.25
no fix listed

Open the chart page →

7,835
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/wordpress:6.8-apache30bff39330d1
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

7,696
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

8,217
workflows-aggregatorworkflows-aggregatorVerified publisher0.16.91 of 1See more

workflows-aggregator workflows-aggregator 0.16.9

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
curl@8.18.0-1ubuntu2.4
no fix listed

Open the chart page →

1,290
aeneabotygdrassilOfficialVerified publisher0.2.01 of 2See more

aeneabot ygdrassil 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
elautoestopista/aeneabot:4.2.1125ba620d528
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,697
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
curl@7.81.0-1ubuntu1.10
no fix listed

Open the chart page →

9,783
qleverzazukoVerified publisher0.7.01 of 2See more

qlever zazuko 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/zazukoians/qlever-server:v0.10.0f10fd24b2290
curl@8.5.0-2ubuntu10.11
no fix listed

Open the chart page →

2,900
zcash-stackzcashVerified publisher0.4.51 of 2See more

zcash-stack zcash 0.4.5

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
electriccoinco/lightwalletd:v0.5.42ae3a551e111
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,835
opencode-serveraardbol-opencode-serverVerified publisher1.5.01 of 1See more

opencode-server aardbol-opencode-server 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/aardbol/opencode-server:v1.18.23-alpine7930061993f7
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

723
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

4,554
active-mqactivemq-helm-chartVerified publisher1.8.21 of 3See more

active-mq activemq-helm-chart 1.8.2

1 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.44.00305c26f19ed
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

3,188
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
curl@7.68.0-1ubuntu2.4
no fix listed

Open the chart page →

25,443
jenkinsaditisingh-jenkins1.0.01 of 1See more

jenkins aditisingh-jenkins 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,476
gobackupadnoctemVerified publisher0.4.01 of 1See more

gobackup adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
huacnlee/gobackup:v3.1.1560be93229a5
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

1,828
gotenbergadnoctemVerified publisher0.5.01 of 1See more

gotenberg adnoctem 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.37.0f29984bd1e22
curl@8.21.0-2~bpo13+1
no fix listed

Open the chart page →

5,582
linkwardenadnoctemVerified publisher0.5.11 of 2See more

linkwarden adnoctem 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,820
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

30,028
bootaerokube1.0.11 of 4See more

boot aerokube 1.0.1

1 of the 4 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
quay.io/aerokube/keygen:1.0.1578934444f04
curl@7.81.0-1ubuntu1.16
no fix listed

Open the chart page →

7,834
ahnlich-dbahnlich-dbVerified publisher0.1.11 of 1See more

ahnlich-db ahnlich-db 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/deven96/ahnlich-db:latest45d8b5aab491
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,587
pod-sweeperairbyteVerified publisher1.5.11 of 1See more

pod-sweeper airbyte 1.5.1

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
airbyte/pod-sweeper:1.5.198d2c39d512e
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

4,922
airbyteairbyte-v2Verified publisher2.2.01 of 10See more

airbyte airbyte-v2 2.2.0

1 of the 10 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
airbyte/manifest-server:7.23.73b3a670af168
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

12,473
akeyless-gatewayakeyless-services-helmVerified publisher3.5.31 of 2See more

akeyless-gateway akeyless-services-helm 3.5.3

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
akeyless/gateway:5.3.13d2e7dce5eb9
curl@8.5.0-2ubuntu10.13
no fix listed

Open the chart page →

1,522
aktoakto0.2.02 of 7See more

akto akto 0.2.0

2 of the 7 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-dashboard:latestb53a854bd7c1
curl@8.5.0-2ubuntu10.12
no fix listed
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
curl@8.5.0-2ubuntu10.12
no fix listed

Open the chart page →

13,613
akto-ai-guardrails-v2akto0.3.01 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

1 of the 6 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
curl@8.18.0-1ubuntu2.2
no fix listed

Open the chart page →

9,321
akto-central-setupakto1.1.104 of 5See more

akto-central-setup akto 1.1.10

4 of the 5 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
aktosecurity/akto-threat-detection-backend:1.15.7a6c1b933517f
curl@8.18.0-1ubuntu2.3
no fix listed
library/eclipse-temurin:211f79c73404fb
curl@8.18.0-1ubuntu2.5
no fix listed
public.ecr.aws/aktosecurity/akto-api-security-dashboard:1.69.2b53a854bd7c1
curl@8.5.0-2ubuntu10.12
no fix listed
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.66.9138c8b82c398
curl@8.5.0-2ubuntu10.12
no fix listed

Open the chart page →

4,905
akto-dashboardakto0.1.71 of 1See more

akto-dashboard akto 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
aktosecurity/akto-api-security-dashboard:latest3aeaee66bc66
curl@8.5.0-2ubuntu10.12
no fix listed

Open the chart page →

1,162

Container images carrying it

1,613 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.31:1.31.5:latest:trixie05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed
106
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
79
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed
23
library/postgres:18.6-alpine:18-alpine:alpined3e1620b530c
curl@8.21.0-r0
8.22.0-r0
17
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed
13
grafana/grafana:latestf772d434e8fa
curl@8.21.0-r0
8.22.0-r0
12
library/mongo:8:8.3.8:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed
12
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
no fix listed
10
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed
7
library/kong:3.6a42d2b4503e7
curl@7.81.0-1ubuntu1.20
no fix listed
7
library/phpmyadmin:5.2.3-apache:latest3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed
7
vaultwarden/server:1.37.2:latest094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
7
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed
6
library/wordpress:7.1.0-apache:latest5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
5
dpage/pgadmin4:9.17:latest2f4ce946ddf8
curl@8.21.0-r0
8.22.0-r0
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed
5
library/adminer:6.0.1:latestf742dcf1b6ca
curl@8.21.0-r0
8.22.0-r0
5
library/httpd:2.4:2.4.68:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed
5
library/kong:3.9:latest2a8cf3b110cd
curl@8.5.0-2ubuntu10.11
no fix listed
5
library/mongo:4.44be76f674fc4
curl@7.68.0-1ubuntu2.25
no fix listed
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0
5
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
curl@7.88.1-10+deb12u12
no fix listed
4
decisionrules/server:latestf38d8571fa06
curl@8.21.0-r0
8.22.0-r0
4
grafana/grafana:13.1.0121a7a9ece6d
curl@8.20.0-r1
8.22.0-r0
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
no fix listed
4
library/httpd:2.4-alpine:alpine1b766f17b840
curl@8.20.0-r1
8.22.0-r0
4
library/mongo:5.0-focal5e15a3f014ed
curl@7.68.0-1ubuntu2.25
no fix listed
4
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
4
linuxserver/sonarr:4.0.19:latest4d9df314875e
curl@8.21.0-r0
8.22.0-r0
4
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
no fix listed
4
pihole/pihole:2026.07.2:latestf7d1be836e3b
curl@8.21.0-r0
8.22.0-r0
4
rustfs/rustfs:1.0.0-beta.12:latest41fe89380f41
curl@8.21.0-r0
8.22.0-r0
4
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
curl@7.81.0-1ubuntu1.27
no fix listed
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
curl@8.18.0-1ubuntu2.4
no fix listed
4
alpine/git:latest:v2.54.06f3b5029566d
curl@8.21.0-r0
8.22.0-r0
3
apache/superset:6.1.0:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
curl@7.68.0-1ubuntu2.7
no fix listed
3
codeurjc/planner:v1.0800cf520c245
curl@7.81.0-1ubuntu1.8
no fix listed
3
decisionrules/client:latest92e459f2c673
curl@8.21.0-r0
8.22.0-r0
3
dgraph/dgraph:v21.12.03b55ea83fffe
curl@7.68.0-1ubuntu2.6
no fix listed
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
curl@7.88.1-10+deb12u15
no fix listed
3
fluent/fluent-bit:5.1.2:latestd792375ca8e5
curl@8.14.1-2+deb13u4
no fix listed
3
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
no fix listed
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.