StackRadar

CVE-2026-4873

Medium

Advisory

Published 29 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,313
of 17,790 indexed, latest versions
Container images
1,233
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,313 of 17,790 indexed charts deploy, on 1,233 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+92 more1:8.14.1-2+deb13u3+e2, 7.81.0-1ubuntu1.24, 8.5.0-2ubuntu10.9, 8.14.1-2+deb13u4+1 more1,078
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r08.20.0-r0155
OSV records
ALPINE-CVE-2026-4873DEBIAN-CVE-2026-4873UBUNTU-CVE-2026-4873ECHO-597f-0d7c-a9e6
Also known as
USN-8227-1

Charts affected

1,313 by stars
ChartLatestAffected imagesRadar Score
picoclawpicoclawVerified publisher0.1.261 of 1See more

picoclaw picoclaw 0.1.26

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/mattn/picoclaw:latest517556c8b144
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,557
pagespighosh-pages1.0.02 of 3See more

pages pighosh-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

20,242
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

7,165
subgraph-oraclepinaxVerified publisher0.0.11 of 1See more

subgraph-oracle pinax 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

11,420
substreams-sink-kvpinaxVerified publisher0.0.41 of 1See more

substreams-sink-kv pinax 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
curl@7.68.0-1ubuntu2.24
no fix listed

Open the chart page →

6,720
substreams-sink-nooppinaxVerified publisher0.0.31 of 1See more

substreams-sink-noop pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
curl@7.68.0-1ubuntu2.24
no fix listed

Open the chart page →

6,665
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

4,950
pingdom-operatorpingdom-operator0.0.201 of 1See more

pingdom-operator pingdom-operator 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

11,996
spring-boot-openshiftpiominVerified publisher0.3.111 of 1See more

spring-boot-openshift piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
curl@7.81.0-1ubuntu1.4
7.81.0-1ubuntu1.24

Open the chart page →

7,622
planectlplanectlVerified publisher0.7.02 of 10See more

planectl planectl 0.7.0

2 of the 10 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/node:208f693eaa7e0a
curl@7.88.1-10+deb12u14
no fix listed
quay.io/argoproj/argocd:v2.14.115fc69e31c755
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

26,118
k8s-oidc-discovery-providerpnnl-miscscripts0.1.21 of 2See more

k8s-oidc-discovery-provider pnnl-miscscripts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/nginx:1.29.49dd288848f44
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

4,284
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

13,002
podnat-state-storepodnat-controller0.3.21 of 1See more

podnat-state-store podnat-controller 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
curl@7.68.0-1ubuntu2.12
no fix listed

Open the chart page →

9,216
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,586
quickwitportefaix-hub0.1.11 of 1See more

quickwit portefaix-hub 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.1d29332bdadcc
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

3,652
port-agentport-labsVerified publisher0.8.161 of 1See more

port-agent port-labs 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
curl@1:8.14.1-2+deb13u3+e1
1:8.14.1-2+deb13u3+e2

Open the chart page →

724
keydbpozetron0.5.31 of 1See more

keydb pozetron 0.5.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
pozetroninc/keydb:v6.0.1653ae64f29da8
curl@7.58.0-2ubuntu3.10
no fix listed

Open the chart page →

7,017
Practica_4_helmpr04helm0.1.01 of 7See more

Practica_4_helm pr04helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

27,659
practica-helmpractica-helm0.1.02 of 7See more

practica-helm practica-helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/mongo:4.4-bionic3d0e6df9fd5b
curl@7.58.0-2ubuntu3.13
no fix listed
slagattollas/weatherservice-practica:latest68e7f56393fc
curl@7.58.0-2ubuntu3.12
no fix listed

Open the chart page →

28,503
pagesprasanthi1.0.02 of 3See more

pages prasanthi 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

20,242
prefect-agentprefectVerified publisher2024.8.301638221 of 1See more

prefect-agent prefect 2024.8.30163822

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

5,513
flink-kubernetes-operatorpresto-loadbalancer1.10.01 of 1See more

flink-kubernetes-operator presto-loadbalancer 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.24

Open the chart page →

3,319
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

8,241
prismeai-appsprismeai0.7.11 of 4See more

prismeai-apps prismeai 0.7.1

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

2,761
prismeai-coreprismeai1.12.11 of 7See more

prismeai-core prismeai 1.12.1

1 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

3,280
pyredispyredis-helm0.1.01 of 2See more

pyredis pyredis-helm 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
avinash263/pyredis263:latestaa2b8727f1a6
curl@7.88.1-10
no fix listed

Open the chart page →

14,628
mychartpythonweb0.1.01 of 1See more

mychart pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

12,639
mypythonpythonweb0.1.01 of 1See more

mypython pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

12,639
qubivaqubiva0.3.21 of 3See more

qubiva qubiva 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

4,302
cupsr2dlan-helm-chartsVerified publisher0.1.01 of 1See more

cups r2dlan-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
anujdatar/cups:25.07.01685df04a643b
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

7,713
nginx-chartrabsnginx0.1.01 of 1See more

nginx-chart rabsnginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/nginx:1.276784fb0834aa
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

4,479
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
apache/airflow:2.10.2-python3.9ce90bdc3d2af
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

21,291
app-configradar-baseVerified publisher1.7.21 of 1See more

app-config radar-base 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

2,080
catalog-serverradar-baseVerified publisher0.9.31 of 1See more

catalog-server radar-base 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

2,462
data-dashboard-backendradar-baseVerified publisher0.6.21 of 1See more

data-dashboard-backend radar-base 0.6.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

2,064
radar-gatewayradar-baseVerified publisher1.9.01 of 2See more

radar-gateway radar-base 1.9.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

2,328
radar-integrationradar-baseVerified publisher0.9.01 of 1See more

radar-integration radar-base 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

2,899
radar-outputradar-baseVerified publisher1.2.101 of 1See more

radar-output radar-base 1.2.10

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

2,509
radar-push-endpointradar-baseVerified publisher0.6.81 of 2See more

radar-push-endpoint radar-base 0.6.8

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
radarbase/radar-push-endpoint:0.4.0e1758508e033
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

3,062
radar-upload-connect-backendradar-baseVerified publisher0.9.11 of 1See more

radar-upload-connect-backend radar-base 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

2,577
s3-proxyradar-baseVerified publisher0.6.01 of 1See more

s3-proxy radar-base 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.9

Open the chart page →

2,782
pagesranjinigogga1.0.02 of 3See more

pages ranjinigogga 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

20,242
rdfoxrdfox-helm-chart0.1.22 of 2See more

rdfox rdfox-helm-chart 0.1.2

2 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
oxfordsemantic/rdfox:5.6db17910eb855
curl@7.68.0-1ubuntu2.7
no fix listed
oxfordsemantic/rdfox-init:5.6baf570ff968d
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

12,884
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

15,570
sqpreadyset-sqp-nightly0.1.0-nightly.202604302 of 3See more

sqp readyset-sqp-nightly 0.1.0-nightly.20260430

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
readysettech/sqp:latest588f3507280e
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
readysettech/sqp-duckdb:latest67a83203ce60
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

3,524
pagesrebecca-pages1.0.02 of 3See more

pages rebecca-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

20,242
sonarquberedhat-cop0.1.131 of 1See more

sonarqube redhat-cop 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/sonarqube:10.7.0-community0842dcd4c8f8
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.24

Open the chart page →

4,245
redis-enforce-expireredis-enforce-expire1.0.01 of 1See more

redis-enforce-expire redis-enforce-expire 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
udhos/redis-enforce-expire:1.0.0615b6a7d742e
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,303
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

7,459
juicepassproxyretsamedocVerified publisher2026.2.41 of 1See more

juicepassproxy retsamedoc 2026.2.4

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

3,955

Container images carrying it

1,233 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
curl@8.14.1-2
8.14.1-2+deb13u4
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
curl@8.5.0-2ubuntu10.5
8.5.0-2ubuntu10.9
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
curl@7.88.1-10+deb12u4
no fix listed
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
curl@7.58.0-2ubuntu3.14
no fix listed
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
curl@7.68.0-1ubuntu2.14
no fix listed
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/ethpandaops/benchmarkoor-ui:latestd090bb2060d9
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
curl@7.88.1-10+deb12u5
no fix listed
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
curl@7.68.0-1ubuntu2.7
no fix listed
1
ghcr.io/firecrawl/firecrawl:2.11.340529f38bab2c3
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/fluxcd/kustomize-controller:v1.9.23aecec8bafdb
curl@8.19.0-r0
8.20.0-r0
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
ghcr.io/gchq/cyberchef:11.0.045082a0ac41d
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/gla-rad/enav-eureka:latest05002092c621
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
curl@7.68.0-1ubuntu2.11
no fix listed
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/hotio/qbittorrent:release-5.2.007198d49e5b4
curl@8.19.0-r0
8.20.0-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
curl@8.14.1-2
8.14.1-2+deb13u4
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
ghcr.io/jeremylong/open-vulnerability-data-mirror:v9.0.49a69aa14dc3e
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.9
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
curl@7.58.0-2ubuntu3.24
no fix listed
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
curl@7.68.0-1ubuntu2.7
no fix listed
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
curl@7.68.0-1ubuntu2.12
no fix listed
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
curl@7.68.0-1ubuntu2.7
no fix listed
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
curl@7.68.0-1ubuntu2.5
no fix listed
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
curl@7.68.0-1ubuntu2.6
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.