StackRadar

CVE-2026-6276

High

Advisory

Published 29 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.003
22nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
924
of 17,781 indexed, latest versions
Container images
909
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 924 of 17,781 indexed charts deploy, on 909 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.81.0-1ubuntu1.2, 7.81.0-1ubuntu1.3, 7.81.0-1ubuntu1.4+37 more1:8.14.1-2+deb13u3+e2, 7.81.0-1ubuntu1.24, 8.5.0-2ubuntu10.9, 8.14.1-2+deb13u4+1 more753
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r08.20.0-r0156
OSV records
ALPINE-CVE-2026-6276DEBIAN-CVE-2026-6276UBUNTU-CVE-2026-6276ECHO-78b1-43ab-d59f
Also known as
USN-8227-1

Charts affected

924 by stars
ChartLatestAffected imagesRadar Score
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
curl@7.88.1-10+deb12u5
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

37,373
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

5,039
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

14,838
librechatopenshift1.9.01 of 3See more

librechat openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

5,779
opentelemetry-demoopentelemetry-helmVerified publisher0.41.11 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

1 of the 34 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-telemetry-docs3519858704e7
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

22,420
opikopikOfficialVerified publisher2.2.594 of 13See more

opik opik 2.2.59

4 of the 13 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.0862d86046bbc
curl@8.17.0-r1
8.20.0-r0
library/zookeeper:3.9.4dfa9ba46d14b
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.24
ghcr.io/comet-ml/opik/opik-frontend:2.2.59bc2f49e9bb3e
curl@8.19.0-r0
8.20.0-r0
ghcr.io/comet-ml/opik/opik-python-backend:2.2.59269d0e55ea97
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

14,334
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

8,939
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

3,681
prowlarrpanzer1119Verified publisher0.4.181 of 2See more

prowlarr panzer1119 0.4.18

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
linuxserver/prowlarr:2.4.0.5397-ls149a46d0ce0a823
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

1,001
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

6,883
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

7,035
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
curl@7.81.0-1ubuntu1.4
7.81.0-1ubuntu1.24

Open the chart page →

7,576
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

31,844
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
prowlercloud/prowler-api:5.31.14f252d579be2
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

8,158
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

3,201
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.24

Open the chart page →

6,796
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.24

Open the chart page →

7,405
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
curl@7.88.1-10+deb12u12
no fix listed
reportportal/k8s-wait-for:latest06cdf299b397
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

11,869
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

7,432
kimai2robjuz5.0.131 of 2See more

kimai2 robjuz 5.0.13

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
kimai/kimai2:2.65.06dfc63199654
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

4,693
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,740
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,315
kyoorubxkubeVerified publisher0.1.103 of 9See more

kyoo rubxkube 0.1.10

3 of the 9 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
curl@7.88.1-10+deb12u8
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
curl@7.88.1-10+deb12u8
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

30,234
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

38,107
sentry-k8ssentry-k8sVerified publisher1.4.11 of 11See more

sentry-k8s sentry-k8s 1.4.1

1 of the 11 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/nginx:1.31.0-alpine2f07d83bf561
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

16,449
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
curl@7.88.1-10+deb12u12
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

11,532
querysiakhooiVerified publisher1.0.01 of 1See more

query siakhooi 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
siakhooi/query:1.0.0f1f4b5b1b870
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,792
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,280
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,280
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

4,238
postgresql-singlesinextraVerified publisher1.15.11 of 1See more

postgresql-single sinextra 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

4,913
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

7,126
postgresql-ha-chartsoldevelo-postgresql-ha-chart16.3.41 of 2See more

postgresql-ha-chart soldevelo-postgresql-ha-chart 16.3.4

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
soldevelo/postgresql-repmgr:17.6.0-debian-12-r03eaab21e40e5
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,563
nginx-chartsomnath-chartVerified publisher0.1.91 of 1See more

nginx-chart somnath-chart 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
somnathmore/custom-nginx:v2bdfc06cad4ec
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

5,676
speckle-serverspeckleVerified publisher2.26.31 of 4See more

speckle-server speckle 2.26.3

1 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.26.3092384dba45d
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

10,380
stornxstornxVerified publisher1.1.12 of 9See more

stornx stornx 1.1.1

2 of the 9 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
alazidis/stornx:1.1.1602d4f7f090c
curl@7.88.1-10+deb12u14
no fix listed
istio/pilot:1.29.1f8b0e412ac4a
curl@8.5.0-2ubuntu10.7
8.5.0-2ubuntu10.9

Open the chart page →

11,574
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.9

Open the chart page →

2,826
supabasesupabse0.8.03 of 11See more

supabase supabse 0.8.0

3 of the 11 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
supabase/postgres:17.6.1.136f371b5f3f2ac
curl@8.19.0-r0
8.20.0-r0
supabase/realtime:v2.102.3aa1c92c0cf32
curl@7.88.1-10+deb12u14
no fix listed
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

18,075
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

3,240
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
curl@8.14.1-2+deb13u3+dhi3
8.14.1-2+deb13u4

Open the chart page →

2,522
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

9,102
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

9,102
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
curl@8.5.0-2ubuntu10.5
8.5.0-2ubuntu10.9

Open the chart page →

4,020
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

3,764
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

3,764
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

12,581
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

4,010
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,225
vite-react-app-helm-chartsvite-react-app-helm-charts1.0.01 of 1See more

vite-react-app-helm-charts vite-react-app-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/marcuwynu23/vite-app-sample:latest21247f2b97c4
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,085
ingress-nginxwenerme4.15.11 of 2See more

ingress-nginx wenerme 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,547

Container images carrying it

909 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
curl@7.88.1-10+deb12u6
no fix listed
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
curl@7.88.1-10+deb12u7
no fix listed
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
curl@7.81.0-1ubuntu1.2
7.81.0-1ubuntu1.24
2
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
curl@7.88.1-10+deb12u12
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
curl@7.88.1-10+deb12u14
no fix listed
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
2
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
curl@8.17.0-r1
8.20.0-r0
2
registry.gitlab.com/shortlink-org/shortlink/ui:main9bdb1062d960
curl@8.17.0-r1
8.20.0-r0
2
1dev/server:11.9.0cd5b12fe5471
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
curl@7.88.1-10+deb12u14
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
1
aboogie/login_test_backend:new9c41a4483ac8
curl@7.88.1-10+deb12u6
no fix listed
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9
1
agentarea/agentarea-mcp-runner:latestd3c209a5d531
curl@7.88.1-10+deb12u15
no fix listed
1
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
airbyte/manifest-server:7.23.73b3a670af168
curl@7.88.1-10+deb12u15
no fix listed
1
airbyte/pod-sweeper:1.5.198d2c39d512e
curl@7.88.1-10+deb12u8
no fix listed
1
akaunting/akaunting:3.0.1552811b36ec3a
curl@7.88.1-10
no fix listed
1
aktosecurity/data-ingestion-service213aded7adc5
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
alazidis/stornx:1.1.1602d4f7f090c
curl@7.88.1-10+deb12u14
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
curl@7.88.1-10+deb12u8
no fix listed
1
alpine/helm:4.1.0905a068da431
curl@8.18.0-r0
8.20.0-r0
1
alpine/kubectl:1.36.01ee9df6316d4
curl@8.17.0-r1
8.20.0-r0
1
alpine/kubectl:1.35.0862d86046bbc
curl@8.17.0-r1
8.20.0-r0
1
alpine/kubectl:1.35.3c4a11ae9a1cb
curl@8.17.0-r1
8.20.0-r0
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.9
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
anujdatar/cups:25.07.01685df04a643b
curl@7.88.1-10+deb12u12
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
apache/activemq-artemis:2.37.0bae523439ee3
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.9
1
apache/airflow:2.8.4-python3.964e58748b6b9
curl@7.88.1-10+deb12u5
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
curl@7.88.1-10+deb12u7
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
curl@7.88.1-10+deb12u5
no fix listed
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.24
1
apache/hertzbeat:1.8.075d48a62748f
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
1
apache/nifi-registry:1.27.063b8e3e40742
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.24
1
apachepulsar/pulsar:3.0.79c9947de139d
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.24
1
apache/ranger:2.7.076c176e8a0e4
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
1
apache/rocketmq:5.3.0434d8398f996
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9
1
apache/rocketmq-exporter:0.0.2c8fb51195444
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24
1
apache/skywalking-oap-server:9.2.0133d35d2c263
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
1
apache/skywalking-ui:9.2.0295f1dc87d98
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24
1
apache/superset:4.0.1ab9467fd712c
curl@7.88.1-10+deb12u5
no fix listed
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
1
appwrite/appwrite:1.9.01aaa70127114
curl@8.17.0-r1
8.20.0-r0
1
appwrite/appwrite:1.9.6adc7d0e7ec23
curl@8.19.0-r0
8.20.0-r0
1
appwrite/console:8.7.383dcdc8492ac6
curl@8.17.0-r1
8.20.0-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.