StackRadar

CVE-2026-19931

Critical

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.012
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,781
of 17,787 indexed, latest versions
Container images
1,596
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,781 of 17,787 indexed charts deploy, on 1,596 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.68.0-1ubuntu2.2, 7.68.0-1ubuntu2.4, 7.68.0-1ubuntu2.5+78 moreno fix listed1,246
curlapk8.10.1-r0, 8.10.1-r1, 8.12.0-r1, 8.12.1-r0+8 more8.22.0-r0350
OSV records
ALPINE-CVE-2026-19931DEBIAN-CVE-2026-19931UBUNTU-CVE-2026-19931CGA-4wpj-77jq-67v6ECHO-5bd0-12f6-d009
Also known as
CGA-h86j-p398-8x8h
Trending
Rank 21 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,781 by stars
ChartLatestAffected imagesRadar Score
chekrckotzbauerVerified publisher0.5.31 of 2See more

chekr ckotzbauer 0.5.3

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:mainline-alpinee93571f3d083
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

3,469
kamaji-etcdclastixVerified publisher0.17.01 of 4See more

kamaji-etcd clastix 0.17.0

1 of the 4 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
cfssl/cfssl:latestc9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

11,995
helmchartclouddrove1.4.01 of 1See more

helmchart clouddrove 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
kube-acp-stackcloudentity2.28.01 of 7See more

kube-acp-stack cloudentity 2.28.0

1 of the 7 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
curl@7.81.0-1ubuntu1.20
no fix listed

Open the chart page →

20,900
lampcloudnativeapp1.1.01 of 3See more

lamp cloudnativeapp 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/httpd:2.4-alpine1b766f17b840
curl@8.20.0-r1
8.22.0-r0

Open the chart page →

1,763
mercurecloudnativeapp1.0.21 of 1See more

mercure cloudnativeapp 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
dunglas/mercure:v0916834e49961
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,098
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

23,665
seleniumcloudnativeapp1.0.81 of 1See more

selenium cloudnativeapp 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

11,782
robot-shopcloud-native-toolkit1.1.11 of 12See more

robot-shop cloud-native-toolkit 1.1.1

1 of the 12 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
robotshop/rs-mongodb:latest119b545823cd
curl@7.68.0-1ubuntu2.6
no fix listed

Open the chart page →

29,555
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad1 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

1 of the 6 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
curl@7.81.0-1ubuntu1.20
no fix listed

Open the chart page →

18,293
cloudvaultcloudvaultOfficialVerified publisher1.0.21 of 3See more

cloudvault cloudvault 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/postgres:18.3-alpine54451ecb8ab3
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,184
cloudlaunchcloudve0.6.01 of 5See more

cloudlaunch cloudve 0.6.0

1 of the 5 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

12,457
cloudlaunch-servercloudve0.2.01 of 5See more

cloudlaunch-server cloudve 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

12,131
cloudlaunchservercloudve0.6.01 of 4See more

cloudlaunchserver cloudve 0.6.0

1 of the 4 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

11,592
galaxycloudve6.8.61 of 3See more

galaxy cloudve 6.8.6

1 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,601
galaxy-depscloudve1.1.11 of 7See more

galaxy-deps cloudve 1.1.1

1 of the 7 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

10,531
galaxykubemancloudve2.10.11 of 7See more

galaxykubeman cloudve 2.10.1

1 of the 7 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
curl@7.68.0-1ubuntu2.13
no fix listed

Open the chart page →

16,069
pulsarcloudve0.2.01 of 2See more

pulsar cloudve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

6,162
argo-cdcluster-deploy0.3.22 of 3See more

argo-cd cluster-deploy 0.3.2

2 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
curl@8.18.0-1ubuntu2.3
no fix listed
quay.io/argoprojlabs/argocd-image-updater:v1.2.13c56f354fac5
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

3,693
chowdacluster-deploy0.2.01 of 1See more

chowda cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/chowda:main86ab9effd1a5
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,834
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

8,009
monitoringcluster-deploy0.3.01 of 11See more

monitoring cluster-deploy 0.3.0

1 of the 11 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

8,183
pbcore-utilcluster-deploy0.0.11 of 1See more

pbcore-util cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

9,128
rustfscluster-deploy0.0.61 of 2See more

rustfs cluster-deploy 0.0.6

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
rustfs/rustfs:1.0.0-rc.3800cf3f352a0
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

289
clusterfactoryclusterfactory0.2.02 of 5See more

clusterfactory clusterfactory 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
gitea/act_runner:0.3.1c2a169c5e998
curl@8.17.0-r1
8.22.0-r0
jenkins/jenkins:2.541.3-jdk21c4098086090c
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

7,168
gitea-jenkinsclusterfactory0.1.12 of 5See more

gitea-jenkins clusterfactory 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
gitea/act_runner:latestb5c35d6bdbb9
curl@8.17.0-r1
8.22.0-r0
jenkins/jenkins:2.541.3-jdk21c4098086090c
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

5,238
clusterplexclusterplexVerified publisher1.1.102 of 3See more

clusterplex clusterplex 1.1.10

2 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
curl@8.18.0-1ubuntu2.4
no fix listed
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

3,868
web-chartcms-ktcloudlab0.1.01 of 1See more

web-chart cms-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
appcnapVerified publisher1.2.01 of 1See more

app cnap 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

4,578
cobbler-webcobbler0.2.11 of 1See more

cobbler-web cobbler 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/cobbler/cobbler-web:v1.1.0c17978fb13dd
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

370
codehubcodehubVerified publisher6.2.183 of 5See more

codehub codehub 6.2.18

3 of the 5 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
jupyterhub/jupyterhub:5.4.63974ba945e65
curl@8.5.0-2ubuntu10.9
no fix listed
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

13,220
coderstudio-strapi-devcoderstudio-strapi-devVerified publisher0.0.12 of 3See more

coderstudio-strapi-dev coderstudio-strapi-dev 0.0.1

2 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/adminer:latestf742dcf1b6ca
curl@8.21.0-r0
8.22.0-r0
library/postgres:alpined3e1620b530c
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

5,141
docker-composecoderstudio-strapi-devVerified publisher0.0.12 of 3See more

docker-compose coderstudio-strapi-dev 0.0.1

2 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/adminer:latestf742dcf1b6ca
curl@8.21.0-r0
8.22.0-r0
library/postgres:alpined3e1620b530c
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

5,141
strapi-devcoderstudio-strapi-devVerified publisher0.0.12 of 3See more

strapi-dev coderstudio-strapi-dev 0.0.1

2 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/adminer:latestf742dcf1b6ca
curl@8.21.0-r0
8.22.0-r0
library/postgres:alpined3e1620b530c
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

5,141
cohdicohdi0.2.21 of 3See more

cohdi cohdi 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

3,694
genericcolearendt0.2.71 of 1See more

generic colearendt 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
loki-stackcommon-chartsVerified publisher1.0.31 of 12See more

loki-stack common-charts 1.0.3

1 of the 12 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
grafana/grafana:13.1.17cb8c64c4d57
curl@8.21.0-r0
8.22.0-r0

Open the chart page →

5,329
opencloudcommunity-opencloud3.0.01 of 11See more

opencloud community-opencloud 3.0.0

1 of the 11 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
curl@8.18.0-1ubuntu2.4
no fix listed

Open the chart page →

3,773
cortezacorteza1.1.02See more

corteza corteza 1.1.0

2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.4cb9f200de5d2
curl@7.81.0-1ubuntu1.20
no fix listed
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

corteza-all-in-onecorteza0.1.01 of 2See more

corteza-all-in-one corteza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.08eb7a26605c9
curl@7.68.0-1ubuntu2.24
no fix listed

Open the chart page →

4,644
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
curl@8.5.0-2ubuntu10.6
no fix listed

Open the chart page →

2,944
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

14,559
mongodbcowboysysopVerified publisher15.1.51 of 1See more

mongodb cowboysysop 15.1.5

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

6,161
logstream-leadercriblio4.19.21 of 1See more

logstream-leader criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
curl@8.5.0-2ubuntu10.12
no fix listed

Open the chart page →

1,230
logstream-workergroupcriblio4.19.21 of 1See more

logstream-workergroup criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
curl@8.5.0-2ubuntu10.12
no fix listed

Open the chart page →

1,230
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

3,860
pagescrypticcode-helmchart1.0.01 of 3See more

pages crypticcode-helmchart 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed

Open the chart page →

20,190
csghubcsghubVerified publisher2.4.310 of 34See more

csghub csghub 2.4.3

10 of the 34 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
casbin/casdoor:3.62.0e08231f16c00
curl@8.19.0-r0
8.22.0-r0
opencsghq/agenticflow:ee-v0.6-52f03fead54db
curl@7.88.1-10+deb12u14
no fix listed
opencsghq/csgbot:v0.6.7-eeaf7191a9cf8a
curl@8.14.1-2+deb13u4
no fix listed
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
curl@7.88.1-10+deb12u14
no fix listed
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
curl@7.88.1-10+deb12u14
no fix listed
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
curl@7.88.1-10+deb12u7
no fix listed
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
curl@7.88.1-10+deb12u7
no fix listed
opencsghq/kubectl:latestb6d87e1048c2
curl@7.88.1-10+deb12u12
no fix listed
opencsghq/label-studio:v2.4.0b4e849fcf94a
curl@8.14.1-2+deb13u4
no fix listed
temporalio/auto-setup:1.29.7f14912b699cf
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

58,897
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-19931.

Container imageDigestPackageFixed in
casbin/casdoor:3.62.17729da148c61
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

11,335

Container images carrying it

1,596 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.31:1.31.5:latest:trixie05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed
106
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
79
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed
23
library/postgres:18.6-alpine:18-alpine:alpined3e1620b530c
curl@8.21.0-r0
8.22.0-r0
17
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
curl@8.14.1-2+deb13u4
no fix listed
13
grafana/grafana:latestf772d434e8fa
curl@8.21.0-r0
8.22.0-r0
12
library/mongo:8:8.3.8:latest5211c51171f5
curl@8.5.0-2ubuntu10.11
no fix listed
12
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
no fix listed
10
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
curl@8.14.1-2+deb13u3
no fix listed
7
library/kong:3.6a42d2b4503e7
curl@7.81.0-1ubuntu1.20
no fix listed
7
library/phpmyadmin:5.2.3-apache:latest3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed
7
vaultwarden/server:1.37.2:latest094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
7
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed
6
library/wordpress:7.1.0-apache:latest5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
5
dpage/pgadmin4:9.17:latest2f4ce946ddf8
curl@8.21.0-r0
8.22.0-r0
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed
5
library/adminer:6.0.1:latestf742dcf1b6ca
curl@8.21.0-r0
8.22.0-r0
5
library/httpd:2.4:2.4.68:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed
5
library/kong:3.9:latest2a8cf3b110cd
curl@8.5.0-2ubuntu10.11
no fix listed
5
library/mongo:4.44be76f674fc4
curl@7.68.0-1ubuntu2.25
no fix listed
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.22.0-r0
5
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
curl@7.88.1-10+deb12u12
no fix listed
4
decisionrules/server:latestf38d8571fa06
curl@8.21.0-r0
8.22.0-r0
4
grafana/grafana:13.1.0121a7a9ece6d
curl@8.20.0-r1
8.22.0-r0
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
no fix listed
4
library/httpd:2.4-alpine:alpine1b766f17b840
curl@8.20.0-r1
8.22.0-r0
4
library/mongo:5.0-focal5e15a3f014ed
curl@7.68.0-1ubuntu2.25
no fix listed
4
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
4
linuxserver/sonarr:4.0.19:latest4d9df314875e
curl@8.21.0-r0
8.22.0-r0
4
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
no fix listed
4
pihole/pihole:2026.07.2:latestf7d1be836e3b
curl@8.21.0-r0
8.22.0-r0
4
rustfs/rustfs:1.0.0-beta.12:latest41fe89380f41
curl@8.21.0-r0
8.22.0-r0
4
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
curl@7.81.0-1ubuntu1.27
no fix listed
4
ghcr.io/linuxserver/plex:latest7f9a1d574958
curl@8.18.0-1ubuntu2.4
no fix listed
4
alpine/git:latest:v2.54.06f3b5029566d
curl@8.21.0-r0
8.22.0-r0
3
apache/superset:6.1.0:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
curl@7.68.0-1ubuntu2.7
no fix listed
3
codeurjc/planner:v1.0800cf520c245
curl@7.81.0-1ubuntu1.8
no fix listed
3
decisionrules/client:latest92e459f2c673
curl@8.21.0-r0
8.22.0-r0
3
dgraph/dgraph:v21.12.03b55ea83fffe
curl@7.68.0-1ubuntu2.6
no fix listed
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
curl@7.88.1-10+deb12u15
no fix listed
3
fluent/fluent-bit:5.1.2:latestd792375ca8e5
curl@8.14.1-2+deb13u4
no fix listed
3
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
no fix listed
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.