StackRadar

CVE-2026-4873

Medium

Advisory

Published 29 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,316
of 17,787 indexed, latest versions
Container images
1,238
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,316 of 17,787 indexed charts deploy, on 1,238 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+92 more1:8.14.1-2+deb13u3+e2, 7.81.0-1ubuntu1.24, 8.5.0-2ubuntu10.9, 8.14.1-2+deb13u4+1 more1,081
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r08.20.0-r0157
OSV records
ALPINE-CVE-2026-4873DEBIAN-CVE-2026-4873UBUNTU-CVE-2026-4873ECHO-597f-0d7c-a9e6
Also known as
USN-8227-1

Charts affected

1,316 by stars
ChartLatestAffected imagesRadar Score
kyoorubxkubeVerified publisher0.1.103 of 9See more

kyoo rubxkube 0.1.10

3 of the 9 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
curl@7.88.1-10+deb12u8
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
curl@7.88.1-10+deb12u8
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

30,310
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

38,115
sentry-k8ssentry-k8sVerified publisher1.4.11 of 11See more

sentry-k8s sentry-k8s 1.4.1

1 of the 11 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/nginx:1.31.0-alpine2f07d83bf561
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

16,194
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
curl@7.88.1-10+deb12u12
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

11,545
querysiakhooiVerified publisher1.0.01 of 1See more

query siakhooi 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
siakhooi/query:1.0.0f1f4b5b1b870
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,792
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,185
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,185
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

4,250
postgresql-singlesinextraVerified publisher1.15.11 of 1See more

postgresql-single sinextra 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

4,920
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
curl@7.68.0-1ubuntu2.14
no fix listed
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
curl@7.68.0-1ubuntu2.14
no fix listed
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
curl@7.68.0-1ubuntu2.14
no fix listed

Open the chart page →

46,028
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

7,157
postgresql-ha-chartsoldevelo-postgresql-ha-chart16.3.41 of 2See more

postgresql-ha-chart soldevelo-postgresql-ha-chart 16.3.4

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
soldevelo/postgresql-repmgr:17.6.0-debian-12-r03eaab21e40e5
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,390
nginx-chartsomnath-chartVerified publisher0.1.91 of 1See more

nginx-chart somnath-chart 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
somnathmore/custom-nginx:v2bdfc06cad4ec
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

5,688
speckle-serverspeckleVerified publisher2.26.31 of 4See more

speckle-server speckle 2.26.3

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.26.3092384dba45d
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

10,405
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
curl@7.68.0-1ubuntu2.5
no fix listed

Open the chart page →

24,984
stornxstornxVerified publisher1.1.12 of 9See more

stornx stornx 1.1.1

2 of the 9 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
alazidis/stornx:1.1.1602d4f7f090c
curl@7.88.1-10+deb12u14
no fix listed
istio/pilot:1.29.1f8b0e412ac4a
curl@8.5.0-2ubuntu10.7
8.5.0-2ubuntu10.9

Open the chart page →

11,683
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

2,874
supabasesupabse0.8.03 of 11See more

supabase supabse 0.8.0

3 of the 11 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
supabase/postgres:17.6.1.136f371b5f3f2ac
curl@8.19.0-r0
8.20.0-r0
supabase/realtime:v2.102.3aa1c92c0cf32
curl@7.88.1-10+deb12u14
no fix listed
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

18,213
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

3,253
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
curl@8.14.1-2+deb13u3+dhi3
8.14.1-2+deb13u4

Open the chart page →

2,553
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

9,108
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

9,108
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
curl@8.5.0-2ubuntu10.5
8.5.0-2ubuntu10.9

Open the chart page →

4,061
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

3,804
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

3,804
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

12,137
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

4,058
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,239
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
curl@7.68.0-1ubuntu2.19
no fix listed
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
curl@7.68.0-1ubuntu2.11
no fix listed

Open the chart page →

26,843
vite-react-app-helm-chartsvite-react-app-helm-charts1.0.01 of 1See more

vite-react-app-helm-charts vite-react-app-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/marcuwynu23/vite-app-sample:latest21247f2b97c4
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,086
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
curl@7.58.0-2ubuntu3.9
no fix listed

Open the chart page →

15,984
ingress-nginxwenerme4.15.11 of 2See more

ingress-nginx wenerme 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,548
natswenerme2.14.61 of 3See more

nats wenerme 2.14.6

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

2,315
wikiwenerme2.2.01 of 2See more

wiki wenerme 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
requarks/wiki:latest68f0d1848261
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

3,834
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
curl@7.35.0-1ubuntu2.1
no fix listed

Open the chart page →

41,455
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
curl@7.68.0-1ubuntu2.25
no fix listed

Open the chart page →

7,883
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/wordpress:6.8-apache30bff39330d1
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

7,728
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

8,139
aeneabotygdrassilOfficialVerified publisher0.2.01 of 2See more

aeneabot ygdrassil 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
elautoestopista/aeneabot:4.2.1125ba620d528
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,698
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.24

Open the chart page →

9,832
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

4,566
active-mqactivemq-helm-chartVerified publisher1.8.21 of 3See more

active-mq activemq-helm-chart 1.8.2

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.44.00305c26f19ed
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

3,226
open5gsadaptivenetlabVerified publisher1.0.32 of 3See more

open5gs adaptivenetlab 1.0.3

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
free5gmano/nextepc-mongodb:latest36f806935519
curl@7.47.0-1ubuntu2.11
no fix listed
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
curl@7.68.0-1ubuntu2.4
no fix listed

Open the chart page →

25,507
linkwardenadnoctemVerified publisher0.5.11 of 2See more

linkwarden adnoctem 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,577
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

29,687
bootaerokube1.0.11 of 4See more

boot aerokube 1.0.1

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
quay.io/aerokube/keygen:1.0.1578934444f04
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24

Open the chart page →

7,915
pod-sweeperairbyteVerified publisher1.5.11 of 1See more

pod-sweeper airbyte 1.5.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
airbyte/pod-sweeper:1.5.198d2c39d512e
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

4,685
airbyteairbyte-v2Verified publisher2.2.01 of 10See more

airbyte airbyte-v2 2.2.0

1 of the 10 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
airbyte/manifest-server:7.23.73b3a670af168
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

12,481
akto-mini-testingakto1.45.71 of 5See more

akto-mini-testing akto 1.45.7

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-ai-automated-testing:latest5a5d32281374
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

6,447
akto-testing-db-layerakto1.42.171 of 2See more

akto-testing-db-layer akto 1.42.17

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

4,856

Container images carrying it

1,238 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/dask/dask:2024.1.0080150de7d86
curl@7.68.0-1ubuntu2.21
no fix listed
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
curl@7.68.0-1ubuntu2.7
no fix listed
1
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
curl@8.14.1-2
8.14.1-2+deb13u4
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
curl@8.5.0-2ubuntu10.5
8.5.0-2ubuntu10.9
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
curl@7.88.1-10+deb12u4
no fix listed
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
curl@7.58.0-2ubuntu3.14
no fix listed
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
curl@7.68.0-1ubuntu2.14
no fix listed
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/ethpandaops/benchmarkoor-ui:latestd090bb2060d9
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
curl@7.88.1-10+deb12u5
no fix listed
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
curl@7.68.0-1ubuntu2.7
no fix listed
1
ghcr.io/firecrawl/firecrawl:2.11.33470453d7102cc
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/fluxcd/kustomize-controller:v1.9.23aecec8bafdb
curl@8.19.0-r0
8.20.0-r0
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
ghcr.io/gchq/cyberchef:11.0.045082a0ac41d
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/gla-rad/enav-eureka:latest05002092c621
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
curl@7.68.0-1ubuntu2.11
no fix listed
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/hotio/qbittorrent:release-5.2.007198d49e5b4
curl@8.19.0-r0
8.20.0-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
curl@8.14.1-2
8.14.1-2+deb13u4
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
ghcr.io/jeremylong/open-vulnerability-data-mirror:v9.0.49a69aa14dc3e
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.9
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
curl@7.58.0-2ubuntu3.24
no fix listed
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
curl@7.68.0-1ubuntu2.7
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.