StackRadar

CVE-2026-4873

Medium

Advisory

Published 29 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,316
of 17,787 indexed, latest versions
Container images
1,238
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,316 of 17,787 indexed charts deploy, on 1,238 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+92 more1:8.14.1-2+deb13u3+e2, 7.81.0-1ubuntu1.24, 8.5.0-2ubuntu10.9, 8.14.1-2+deb13u4+1 more1,081
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r08.20.0-r0157
OSV records
ALPINE-CVE-2026-4873DEBIAN-CVE-2026-4873UBUNTU-CVE-2026-4873ECHO-597f-0d7c-a9e6
Also known as
USN-8227-1

Charts affected

1,316 by stars
ChartLatestAffected imagesRadar Score
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,234
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
curl@7.68.0-1ubuntu2.20
no fix listed

Open the chart page →

5,302
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

20,424
hertzbeatkubesphere-testVerified publisher1.4.11 of 4See more

hertzbeat kubesphere-test 1.4.1

1 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
apache/iotdb:0.13.3-nodeafa47bf1692a
curl@7.68.0-1ubuntu2.13
no fix listed

Open the chart page →

7,749
kubefarmkvaps0.13.41 of 6See more

kubefarm kvaps 0.13.4

1 of the 6 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

12,477
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
curl@7.68.0-1ubuntu2.6
no fix listed
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
curl@7.68.0-1ubuntu2.5
no fix listed
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
curl@7.68.0-1ubuntu2.6
no fix listed
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
curl@7.68.0-1ubuntu2.6
no fix listed
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
curl@7.68.0-1ubuntu2.6
no fix listed

Open the chart page →

114,025
chibisafel4gVerified publisher0.1.11 of 3See more

chibisafe l4g 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/caddy:2-alpine5f5c8640aae0
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

5,657
overpass-apil4gVerified publisher0.1.21 of 1See more

overpass-api l4g 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
wiktorn/overpass-api:latest9bb5f4a9b54c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,551
langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,011
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

35,058
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

7,915
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,216
voice-biometricslumenvox2.0.11 of 26See more

voice-biometrics lumenvox 2.0.1

1 of the 26 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
lumenvox/cloud-binary-storage:2.0.053decadc102d
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

71,216
flaresolverrm0nsterrr-flaresolverrVerified publisher2.4.11 of 1See more

flaresolverr m0nsterrr-flaresolverr 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

5,747
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

19,192
jellyfinmedia-servarrVerified publisher0.16.01 of 2See more

jellyfin media-servarr 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

2,764
metrics-server-exportermetrics-server-exporterVerified publisher2.4.01 of 1See more

metrics-server-exporter metrics-server-exporter 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
mrnim94/metrics-server-exporter:v2.4.086c4807a4bca
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

1,273
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
curl@8.14.1-2ubuntu1
8.14.1-2ubuntu1.3

Open the chart page →

11,108
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

13,763
redminemt1905027.3.41 of 3See more

redmine mt190502 7.3.4

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/redmine:6.1.204ac44a2595b
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

7,552
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

1,896
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
curl@7.81.0-1ubuntu1.19
7.81.0-1ubuntu1.24

Open the chart page →

3,729
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
curl@7.88.1-10+deb12u5
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

37,441
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

5,051
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

14,862
librechatopenshift1.9.01 of 3See more

librechat openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

5,833
opentelemetry-demoopentelemetry-helmVerified publisher0.41.11 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

1 of the 34 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-telemetry-docs3519858704e7
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

22,678
opikopikOfficialVerified publisher2.2.614 of 13See more

opik opik 2.2.61

4 of the 13 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.0862d86046bbc
curl@8.17.0-r1
8.20.0-r0
library/zookeeper:3.9.4dfa9ba46d14b
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.24
ghcr.io/comet-ml/opik/opik-frontend:2.2.6182af3818731e
curl@8.19.0-r0
8.20.0-r0
ghcr.io/comet-ml/opik/opik-python-backend:2.2.61df70104803cb
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

14,422
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

9,049
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

3,694
prowlarrpanzer1119Verified publisher0.4.181 of 2See more

prowlarr panzer1119 0.4.18

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
linuxserver/prowlarr:2.4.0.5397-ls149a46d0ce0a823
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

1,001
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

6,890
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

7,075
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
curl@7.81.0-1ubuntu1.4
7.81.0-1ubuntu1.24

Open the chart page →

7,616
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
curl@7.68.0-1ubuntu2.7
no fix listed
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

31,949
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
prowlercloud/prowler-api:5.31.14f252d579be2
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

8,203
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

3,022
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.24

Open the chart page →

6,835
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.24

Open the chart page →

7,466
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
curl@7.88.1-10+deb12u12
no fix listed
reportportal/k8s-wait-for:latest06cdf299b397
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

11,943
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

7,487
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

10,159
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

4,508
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
curl@7.68.0-1ubuntu2.14
no fix listed

Open the chart page →

6,085
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,767
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
curl@7.68.0-1ubuntu2.14
no fix listed

Open the chart page →

6,918
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
curl@7.68.0-1ubuntu2.14
no fix listed

Open the chart page →

7,567
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
curl@7.68.0-1ubuntu2.20
no fix listed

Open the chart page →

13,028
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,321
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
curl@7.58.0-2ubuntu3.16
no fix listed

Open the chart page →

13,562

Container images carrying it

1,238 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
curl@7.68.0-1ubuntu2.14
no fix listed
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
curl@7.68.0-1ubuntu2.14
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
curl@7.68.0-1ubuntu2.14
no fix listed
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9
1
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
curl@7.68.0-1ubuntu2.24
no fix listed
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
curl@7.68.0-1ubuntu2.24
no fix listed
1
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9
1
ghcr.io/sudo-kraken/3d-printing-cost-calculators:v1.1.1220c5e4e1a3d
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/theconnman/docker-hub-rss:0.6.238eba84b2be8
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/thoroslives/zilean:v3.10.1bce6aca0f6ca
curl@8.12.1-r0
8.20.0-r0
1
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
curl@8.5.0-2ubuntu10.5
8.5.0-2ubuntu10.9
1
ghcr.io/umami-software/umami:3.0.328f263fe06f7
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/umami-software/umami:postgresql-v2.20.173ca19b41745
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/umami-software/umami:3.1.0e3f80c0625aa
curl@8.17.0-r1
8.20.0-r0
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24
1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
curl@7.88.1-10+deb12u1
no fix listed
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/wiremind/bitnami/keycloak:26.5.0-debian-12-r38622ea9e43c0
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/wiremind/bitnami/rabbitmq:4.2.2-debian-12-r11572e12bc93c
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
curl@7.88.1-10+deb12u4
no fix listed
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
curl@7.58.0-2ubuntu3.18
no fix listed
1
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
curl@7.88.1-10+deb12u8
no fix listed
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
curl@7.88.1-10+deb12u8
no fix listed
1
public.ecr.aws/aktosecurity/akto-ai-automated-testing:latest5a5d32281374
curl@7.88.1-10+deb12u15
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
curl@1:8.14.1-2+deb13u3+e1
1:8.14.1-2+deb13u3+e2
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
curl@7.88.1-10+deb12u7
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
curl@7.88.1-10+deb12u7
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.