StackRadar

CVE-2026-4873

Medium

Advisory

Published 29 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,310
of 17,787 indexed, latest versions
Container images
1,228
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,310 of 17,787 indexed charts deploy, on 1,228 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+92 more1:8.14.1-2+deb13u3+e2, 7.81.0-1ubuntu1.24, 8.5.0-2ubuntu10.9, 8.14.1-2+deb13u4+1 more1,073
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r08.20.0-r0155
OSV records
ALPINE-CVE-2026-4873DEBIAN-CVE-2026-4873UBUNTU-CVE-2026-4873ECHO-597f-0d7c-a9e6
Also known as
USN-8227-1

Charts affected

1,310 by stars
ChartLatestAffected imagesRadar Score
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.42 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

2 of the 9 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
curl@8.14.1-2
8.14.1-2+deb13u4
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

20,204
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

6,824
fstyr-ddp-keycloak-application-platform-configkvalitetsitVerified publisher0.1.131 of 1See more

fstyr-ddp-keycloak-application-platform-config kvalitetsit 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

3,104
keycloak-application-platform-configkvalitetsitVerified publisher0.0.291 of 1See more

keycloak-application-platform-config kvalitetsit 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9

Open the chart page →

3,334
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
curl@7.58.0-2ubuntu3.13
no fix listed

Open the chart page →

16,520
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24

Open the chart page →

7,802
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

26,356
pageslatif-pages1.0.02 of 3See more

pages latif-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

20,190
pageslavanya-pages1.0.02 of 3See more

pages lavanya-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

20,190
stremiolbenicio-communityVerified publisher0.1.11 of 2See more

stremio lbenicio-community 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
lbenicio/stremio-web:latest732f9003de33
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

2,600
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

33,242
kinesaliteleprechaun-charts0.1.21 of 1See more

kinesalite leprechaun-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
instructure/kinesalite:latest34400d82f28f
curl@7.68.0-1ubuntu2.25
no fix listed

Open the chart page →

4,232
jackettlib42Verified publisher1.1.01 of 1See more

jackett lib42 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
lib42/jackett:latesta55596cda383
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

4,620
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

37,942
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.24

Open the chart page →

10,716
pagesliviu884422-pages1.0.02 of 3See more

pages liviu884422-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
curl@7.68.0-1ubuntu2.4
no fix listed
flyway/flyway:6.4.422d97ceb0c47
curl@7.58.0-2ubuntu3.8
no fix listed

Open the chart page →

20,190
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

2,604
node-redlmatfyVerified publisher0.1.61 of 1See more

node-red lmatfy 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
nodered/node-red:4.1.10-minimald73ae167cb9b
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,809
sonarrloeken-at-homeVerified publisher4.0.171 of 1See more

sonarr loeken-at-home 4.0.17

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
loeken/sonarr:4.0.17b940520a2236
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

866
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

33,242
elasticvuelogic3579Verified publisher1.15.01 of 1See more

elasticvue logic3579 1.15.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
cars10/elasticvue:1.15.0efddf4fa0fd8
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,085
nightingalelogic3579Verified publisher0.3.11 of 6See more

nightingale logic3579 0.3.1

1 of the 6 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

8,938
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24

Open the chart page →

6,634
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

6,506
nubladolsst-sqre0.9.231 of 5See more

nublado lsst-sqre 0.9.23

1 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
jupyterhub/configurable-http-proxy:latest69a7170eeeda
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

5,786
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

17,779
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
curl@7.58.0-2ubuntu3.10
no fix listed
elastictranscoder/media-storage:f6d861a026208b8c2359
curl@7.58.0-2ubuntu3.10
no fix listed
elastictranscoder/transcoder:627e21dcb4a0327029e6
curl@7.58.0-2ubuntu3.9
no fix listed
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
curl@7.58.0-2ubuntu3.9
no fix listed

Open the chart page →

58,160
flaresolverrluiscajl0.0.31 of 1See more

flaresolverr luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:latest139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

27,274
jellyfinm0nsterrr-jellyfinVerified publisher2.3.51 of 1See more

jellyfin m0nsterrr-jellyfin 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

2,604
decap-cmsm11sVerified publisher0.3.151 of 1See more

decap-cms m11s 0.3.15

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
m11s/decap-cms:0.2.11-s30cd6810c9885
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

1,151
magistralamagistrala-devopsVerified publisher0.16.21 of 42See more

magistrala magistrala-devops 0.16.2

1 of the 42 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24

Open the chart page →

24,400
novosgamarcusrepo0.1.11 of 2See more

novosga marcusrepo 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
novosga/novosga:latest34b9acbe6e51
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

3,706
marge-botmarge-bot-helm1.3.51 of 1See more

marge-bot marge-bot-helm 1.3.5

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.16.0b59f01bc0418
curl@8.14.1-2
8.14.1-2+deb13u4

Open the chart page →

3,574
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
curl@7.68.0-1ubuntu2.24
no fix listed

Open the chart page →

4,112
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
mautic/mautic:7-apacheeb8cc73d97e1
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

8,303
eoloplantmca-eoloplaner0.1.02 of 7See more

eoloplant mca-eoloplaner 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
hugohg34/toposervice:0.0.2812a03b3f274
curl@7.68.0-1ubuntu2.7
no fix listed
library/mongo:5.0.6-focal8e70544b6c76
curl@7.68.0-1ubuntu2.7
no fix listed

Open the chart page →

29,588
backstagemcwarmanVerified publisher0.10.101 of 2See more

backstage mcwarman 0.10.10

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

9,668
dependency-trackmediamarktsaturn1.9.22 of 2See more

dependency-track mediamarktsaturn 1.9.2

2 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
dependencytrack/apiserver:4.14.21ba4f004e1ec
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
dependencytrack/frontend:4.14.200560b57a6cf
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

3,818
flaresolverrmedia-servarrVerified publisher0.18.11 of 1See more

flaresolverr media-servarr 0.18.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

6,136
tinymediamanagermedia-servarrVerified publisher1.6.21 of 2See more

tinymediamanager media-servarr 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

7,944
meerschaummeerschaumVerified publisher0.2.01 of 1See more

meerschaum meerschaum 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bmeares/meerschaum:2.8.48e9c5bacaa82
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

5,823
istiomesosphere1.25.11 of 2See more

istio mesosphere 1.25.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

5,422
istio-helm-cnimesosphere1.25.11 of 1See more

istio-helm-cni mesosphere 1.25.1

1 of the 1 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
istio/install-cni:1.29.0ce27c9ce43c8
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

2,533
istio-helm-istiodmesosphere1.25.11 of 2See more

istio-helm-istiod mesosphere 1.25.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
istio/pilot:1.29.0325156535773
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

3,777
kubeaddons-catalogmesosphere0.1.161 of 2See more

kubeaddons-catalog mesosphere 0.1.16

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
curl@7.68.0-1ubuntu2.2
no fix listed

Open the chart page →

12,010
kube-prometheus-stackmesosphere87.16.01 of 7See more

kube-prometheus-stack mesosphere 87.16.0

1 of the 7 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

7,398
nvidiamesosphere0.4.41 of 2See more

nvidia mesosphere 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
nvidia/k8s-device-plugin:v0.9.0964847cc3fd8
curl@7.47.0-1ubuntu2.18
no fix listed

Open the chart page →

10,436
prometheus-operatormesosphere12.11.131 of 8See more

prometheus-operator mesosphere 12.11.13

1 of the 8 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
grafana/grafana:12.3.39e1e77ade304
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

11,689
dexmesosphere-stable2.14.12 of 5See more

dex mesosphere-stable 2.14.1

2 of the 5 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
curl@7.47.0-1ubuntu2.2
no fix listed

Open the chart page →

19,214
istiomesosphere-stable1.25.11 of 2See more

istio mesosphere-stable 1.25.1

1 of the 2 container images this version deploys carry CVE-2026-4873.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

5,422

Container images carrying it

1,228 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
curl@8.17.0-r1
8.20.0-r0
2
registry.gitlab.com/shortlink-org/shortlink/ui:main9bdb1062d960
curl@8.17.0-r1
8.20.0-r0
2
1dev/server:11.9.0cd5b12fe5471
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
curl@7.88.1-10+deb12u14
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
curl@7.68.0-1ubuntu2.21
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
aboogie/login_test_backend:new9c41a4483ac8
curl@7.88.1-10+deb12u6
no fix listed
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
curl@7.68.0-1ubuntu2.4
no fix listed
1
agentarea/agentarea-mcp-runner:latestd3c209a5d531
curl@7.88.1-10+deb12u15
no fix listed
1
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
airbyte/manifest-server:7.23.73b3a670af168
curl@7.88.1-10+deb12u15
no fix listed
1
airbyte/pod-sweeper:1.5.198d2c39d512e
curl@7.88.1-10+deb12u8
no fix listed
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
curl@7.68.0-1ubuntu2.4
no fix listed
1
akaunting/akaunting:3.0.1552811b36ec3a
curl@7.88.1-10
no fix listed
1
aktosecurity/data-ingestion-service213aded7adc5
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
alazidis/stornx:1.1.1602d4f7f090c
curl@7.88.1-10+deb12u14
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
curl@7.88.1-10+deb12u8
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
curl@7.58.0-2ubuntu3.19
no fix listed
1
alpine/helm:4.1.0905a068da431
curl@8.18.0-r0
8.20.0-r0
1
alpine/kubectl:1.36.01ee9df6316d4
curl@8.17.0-r1
8.20.0-r0
1
alpine/kubectl:1.35.0862d86046bbc
curl@8.17.0-r1
8.20.0-r0
1
alpine/kubectl:1.35.3c4a11ae9a1cb
curl@8.17.0-r1
8.20.0-r0
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.9
1
anguda/ant-media:2.5c435285fc241
curl@7.68.0-1ubuntu2.18
no fix listed
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
anujdatar/cups:25.07.01685df04a643b
curl@7.88.1-10+deb12u12
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
apache/activemq-artemis:2.37.0bae523439ee3
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.9
1
apache/airflow:2.8.4-python3.964e58748b6b9
curl@7.88.1-10+deb12u5
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
curl@7.88.1-10+deb12u7
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
curl@7.88.1-10+deb12u5
no fix listed
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.24
1
apache/hertzbeat:1.8.075d48a62748f
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
apache/iotdb:0.13.3-nodeafa47bf1692a
curl@7.68.0-1ubuntu2.13
no fix listed
1
apache/nifi-registry:1.27.063b8e3e40742
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.24
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
curl@7.68.0-1ubuntu2.7
no fix listed
1
apachepulsar/pulsar:3.0.79c9947de139d
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.24
1
apachepulsar/pulsar:2.9.0d056c89b7131
curl@7.68.0-1ubuntu2.7
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
curl@7.68.0-1ubuntu2.7
no fix listed
1
apache/ranger:2.7.076c176e8a0e4
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
apache/rocketmq:5.3.0434d8398f996
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9
1
apache/rocketmq-exporter:0.0.2c8fb51195444
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24
1
apache/skywalking-oap-server:9.2.0133d35d2c263
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
curl@7.68.0-1ubuntu2.7
no fix listed
1
apache/skywalking-ui:9.2.0295f1dc87d98
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
1
apache/skywalking-ui:8.9.180530f0308a5
curl@7.68.0-1ubuntu2.7
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.