StackRadar

CVE-2026-4873

Medium

Advisory

Published 29 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,310
of 17,787 indexed, latest versions
Container images
1,228
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,310 of 17,787 indexed charts deploy, on 1,228 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+92 more1:8.14.1-2+deb13u3+e2, 7.81.0-1ubuntu1.24, 8.5.0-2ubuntu10.9, 8.14.1-2+deb13u4+1 more1,073
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r08.20.0-r0155
OSV records
ALPINE-CVE-2026-4873DEBIAN-CVE-2026-4873UBUNTU-CVE-2026-4873ECHO-597f-0d7c-a9e6
Also known as
USN-8227-1

Charts affected

1,310 by stars
ChartLatestAffected imagesRadar Score
ingress-nginxingress-nginx4.15.11 of 2See more

ingress-nginx ingress-nginx 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,547
giteagiteaOfficialVerified publisher12.7.01 of 4See more

gitea gitea 12.7.0

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

8,811
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.24

Open the chart page →

6,556
artifact-hubartifact-hubVerified publisher1.23.01 of 7See more

artifact-hub artifact-hub 1.23.0

1 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
aquasec/trivy:0.69.3bcc376de8d77
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

10,755
jupyterhubjupyterhubOfficialVerified publisher4.4.23 of 7See more

jupyterhub jupyterhub 4.4.2

3 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.20.0-r0
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
curl@7.88.1-10+deb12u15
no fix listed
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

7,894
mimir-distributedgrafana6.2.01 of 6See more

mimir-distributed grafana 6.2.0

1 of the 6 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

4,517
natsnatsVerified publisher2.14.61 of 3See more

nats nats 2.14.6

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

2,313
metabasepmint932.27.61 of 1See more

metabase pmint93 2.27.6

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
metabase/metabase:v0.61.1.x9491ed11c901
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

1,639
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

30,159
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

11,367
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,227
zabbixzabbix-communityVerified publisher7.1.04 of 5See more

zabbix zabbix-community 7.1.0

4 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

13,664
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

5,366
flux2fluxcd-community2.19.01 of 7See more

flux2 fluxcd-community 2.19.0

1 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/kustomize-controller:v1.9.23aecec8bafdb
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

2,951
keydbenapter0.48.01 of 1See more

keydb enapter 0.48.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
curl@7.58.0-2ubuntu3.22
no fix listed

Open the chart page →

5,552
clamavwiremindVerified publisher3.7.31 of 1See more

clamav wiremind 3.7.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,060
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24

Open the chart page →

9,145
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
curl@7.68.0-1ubuntu2.7
no fix listed
milvusdb/milvus:v2.2.13a3a55e1c1497
curl@7.68.0-1ubuntu2.14
no fix listed

Open the chart page →

32,259
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

10,622
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

2,705
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

4,802
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

19,391
dragonflydragonflyVerified publisher1.8.41 of 3See more

dragonfly dragonfly 1.8.4

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.4a1b52779c4dd
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,787
pulsarapache4.7.02 of 10See more

pulsar apache 4.7.0

2 of the 10 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.20.0-r0
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

9,864
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

3,606
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

6,927
difydify-helmVerified publisher0.38.02 of 11See more

dify dify-helm 0.38.0

2 of the 11 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
curl@7.88.1-10+deb12u15
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

22,002
oktetooktetoOfficialVerified publisher0.0.0-2026-08-171See more

okteto okteto 0.0.0-2026-08-17

1 container image this version deploys carries CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-173e56bdd1b90d
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

istiocloudposse1.1.02 of 8See more

istio cloudposse 1.1.0

2 of the 8 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
curl@7.47.0-1ubuntu2.13
no fix listed
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
curl@7.47.0-1ubuntu2.13
no fix listed

Open the chart page →

23,964
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.01 of 5See more

openproject openproject-helm-charts 13.11.0

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
openproject/hocuspocus:release-338001b288dc1359dfb5
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

19,926
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

11,384
lemmyananace-chartsVerified publisher0.6.151 of 5See more

lemmy ananace-charts 0.6.15

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dessalines/lemmy:0.19.2079e9f02c286c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

7,210
zabbixcetic3.1.33 of 5See more

zabbix cetic 3.1.3

3 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24

Open the chart page →

33,725
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

6,543
stacks-blockchain-apihirosystemsVerified publisher6.5.11 of 5See more

stacks-blockchain-api hirosystems 6.5.1

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

8,364
argocdnicklasfrahm-argocdVerified publisher0.3.01 of 2See more

argocd nicklasfrahm-argocd 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

5,240
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,987
daskdask2024.1.12 of 2See more

dask dask 2024.1.1

2 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
curl@7.68.0-1ubuntu2.21
no fix listed
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24

Open the chart page →

12,746
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

2,993
oneuptimeoneuptimeOfficialVerified publisher13.0.41 of 7See more

oneuptime oneuptime 13.0.4

1 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
oneuptime/probe:release6b2d98713711
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

11,192
openclawopenclaw-helmVerified publisher1.5.401 of 2See more

openclaw openclaw-helm 1.5.40

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,660
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.9

Open the chart page →

3,382
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
curl@7.58.0-2ubuntu3.10
no fix listed

Open the chart page →

15,592
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
curl@7.68.0-1ubuntu2.11
no fix listed

Open the chart page →

7,880
milvusmilvus-helm5.0.281See more

milvus milvus-helm 5.0.28

1 container image this version deploys carries CVE-2026-4873.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.24

Open the chart page →

rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

6,328
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
curl@7.68.0-1ubuntu2.14
no fix listed

Open the chart page →

18,509
rustfscloudpirates-rustfsVerified publisher0.11.41 of 1See more

rustfs cloudpirates-rustfs 0.11.4

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
rustfs/rustfs:1.0.0-beta.13c2d55977829
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

885
codefreshcodefresh-onpremOfficialVerified publisher2.12.132 of 42See more

codefresh codefresh-onprem 2.12.13

2 of the 42 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
curl@7.88.1-10+deb12u7
no fix listed
bitnamilegacy/rabbitmq:4.1.39e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

14,956
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2api:3.86f56d239d280
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2auth:3.833ecfda16608
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2notifier:3.8f190a6212195
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2rulesengine:3.8259503496ff9
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2scheduler:3.8b1de2055c362
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2sensorcontainer:3.8b1a338f64773
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2stream:3.81c8904a3bf67
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2timersengine:3.81bf35bfaf00c
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2web:3.809989a26c8b7
curl@7.68.0-1ubuntu2.21
no fix listed
stackstorm/st2workflowengine:3.819fdfffdbba8
curl@7.68.0-1ubuntu2.21
no fix listed

Open the chart page →

96,419

Container images carrying it

1,228 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
curl@7.68.0-1ubuntu2.5
no fix listed
1
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
curl@7.68.0-1ubuntu2.12
no fix listed
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
curl@7.68.0-1ubuntu2.7
no fix listed
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
curl@7.68.0-1ubuntu2.10
no fix listed
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
curl@7.68.0-1ubuntu2.5
no fix listed
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
curl@7.68.0-1ubuntu2.5
no fix listed
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
curl@7.68.0-1ubuntu2.7
no fix listed
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
curl@7.68.0-1ubuntu2.12
no fix listed
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
curl@7.68.0-1ubuntu2.5
no fix listed
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
curl@7.68.0-1ubuntu2.11
no fix listed
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
curl@7.68.0-1ubuntu2.18
no fix listed
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
curl@7.68.0-1ubuntu2.25
no fix listed
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
curl@7.58.0-2ubuntu3.21
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
curl@7.68.0-1ubuntu2.25
no fix listed
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
curl@8.14.1-2
8.14.1-2+deb13u4
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
curl@7.68.0-1ubuntu2.7
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
curl@7.68.0-1ubuntu2.6
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
curl@7.68.0-1ubuntu2.5
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
curl@7.68.0-1ubuntu2.6
no fix listed
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
curl@7.68.0-1ubuntu2.6
no fix listed
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
curl@7.68.0-1ubuntu2.6
no fix listed
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
curl@7.88.1-10+deb12u7
no fix listed
1
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
curl@7.58.0-2ubuntu3.16
no fix listed
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
1
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/linuxserver/radarr:6.0.4c8a55bd83672
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
curl@7.58.0-2ubuntu3.14
no fix listed
1
ghcr.io/linuxserver/syslog-ng:4.10.247fae7f540f9
curl@8.19.0-r0
8.20.0-r0
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/manyfold3d/manyfold:0.136.0d14ca4d82475
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/marcuwynu23/vite-app-sample:latest21247f2b97c4
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/mattn/picoclaw:latest517556c8b144
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
ghcr.io/mkutlak/alluredeck-ui:0.41.0c19509b1b336
curl@8.19.0-r0
8.20.0-r0
1
ghcr.io/monicahq/monica-next:main8be69156acbb
curl@8.14.1-2
8.14.1-2+deb13u4
1
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/mydecisive/octant-ui:0.0.1-testing61e4066b22fb
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
curl@7.88.1-10+deb12u6
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.