StackRadar

CVE-2026-6276

High

Advisory

Published 29 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.003
22nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
924
of 17,781 indexed, latest versions
Container images
909
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 924 of 17,781 indexed charts deploy, on 909 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.81.0-1ubuntu1.2, 7.81.0-1ubuntu1.3, 7.81.0-1ubuntu1.4+37 more1:8.14.1-2+deb13u3+e2, 7.81.0-1ubuntu1.24, 8.5.0-2ubuntu10.9, 8.14.1-2+deb13u4+1 more753
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r08.20.0-r0156
OSV records
ALPINE-CVE-2026-6276DEBIAN-CVE-2026-6276UBUNTU-CVE-2026-6276ECHO-78b1-43ab-d59f
Also known as
USN-8227-1

Charts affected

924 by stars
ChartLatestAffected imagesRadar Score
firefly-iii-stackfirefly-iii0.10.22 of 4See more

firefly-iii-stack firefly-iii 0.10.2

2 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

10,260
importerfirefly-iii1.6.01 of 1See more

importer firefly-iii 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

4,829
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

64,489
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

5,292
mission-controlflanksourceVerified publisher0.1.3361 of 8See more

mission-control flanksource 0.1.336

1 of the 8 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

8,902
flinkflink0.5.11 of 1See more

flink flink 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/flink:1.14.6-scala_2.122461f02672b3
curl@7.81.0-1ubuntu1.4
7.81.0-1ubuntu1.24

Open the chart page →

5,651
fluxcd-helm-upgraderfluxcd-helm-upgraderVerified publisher0.7.71 of 1See more

fluxcd-helm-upgrader fluxcd-helm-upgrader 0.7.7

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
kenchrcum/fluxcd-helm-upgrader:0.7.7c326e28a8f5f
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

2,420
flyte-devboxflyte0.1.01 of 13See more

flyte-devbox flyte 0.1.0

1 of the 13 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
rustfs/rustfs:1.0.0-alpha.947d49faa88c04
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

4,628
esphomegabe565Verified publisher0.15.01 of 1See more

esphome gabe565 0.15.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/esphome/esphome:latest000c5ee5ee96
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

3,112
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

13,241
accumulogaffer2.2.11 of 4See more

accumulo gaffer 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

16,892
gaffer-road-trafficgaffer2.2.11 of 8See more

gaffer-road-traffic gaffer 2.2.1

1 of the 8 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

9,342
icinga2geek-cookbookVerified publisher4.2.01 of 1See more

icinga2 geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jordan/icinga2:latestf75025fe8ea8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

9,077
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

12,958
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24

Open the chart page →

12,076
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24

Open the chart page →

19,503
radarrgeek-cookbookVerified publisher16.3.21 of 1See more

radarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.24

Open the chart page →

10,379
satisfactorygeek-cookbookVerified publisher1.2.21 of 1See more

satisfactory geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:lateste103700ae6ae
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

3,427
sdtdgeek-cookbookVerified publisher0.3.21 of 1See more

sdtd geek-cookbook 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/reitermarkus/7d2d:main39953b387b61
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

2,511
skypilotgeek-cookbookVerified publisher0.0.11 of 3See more

skypilot geek-cookbook 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
curl@8.14.1-2
8.14.1-2+deb13u4

Open the chart page →

8,923
chproxygeneral-helm-chartsVerified publisher0.0.21 of 1See more

chproxy general-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
contentsquareplatform/chproxy:v1.26.524555f22d4be
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

3,712
dispatchoor-uigeneral-helm-chartsVerified publisher0.1.01 of 1See more

dispatchoor-ui general-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,338
rocketmqgengxiankun-charts0.3.01 of 1See more

rocketmq gengxiankun-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
apache/rocketmq:5.3.0434d8398f996
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9

Open the chart page →

4,921
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

4,259
glpiglpi-chart0.1.11 of 3See more

glpi glpi-chart 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

12,170
jaegergpg-dev3.3.31 of 5See more

jaeger gpg-dev 3.3.3

1 of the 5 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24

Open the chart page →

19,229
kube-prometheus-stackgpg-dev84.0.01 of 6See more

kube-prometheus-stack gpg-dev 84.0.0

1 of the 6 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
grafana/grafana:13.0.10f86bada30d6
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

4,288
kubernetes-dashboardgpg-dev7.5.01 of 5See more

kubernetes-dashboard gpg-dev 7.5.0

1 of the 5 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

6,036
opentelemetry-demogpg-dev0.33.83 of 27See more

opentelemetry-demo gpg-dev 0.33.8

3 of the 27 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
curl@7.88.1-10+deb12u6
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
curl@7.88.1-10+deb12u7
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.9

Open the chart page →

49,025
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.24

Open the chart page →

4,556
grayloggraylogVerified publisher1.0.21 of 4See more

graylog graylog 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
graylog/graylog:6.1.1019de1aff48c2
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

5,261
routergroundcover1.12.3572 of 7See more

router groundcover 1.12.357

2 of the 7 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
quay.io/groundcover/tools:20260719b705e0cbe171
curl@1:8.14.1-2+deb13u3+e1
1:8.14.1-2+deb13u3+e2

Open the chart page →

6,009
temporalgroundcover1.12.3571 of 2See more

temporal groundcover 1.12.357

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
curl@1:8.14.1-2+deb13u3+e1
1:8.14.1-2+deb13u3+e2

Open the chart page →

2,013
octoboxhalkeye0.1.11 of 1See more

octobox halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
octoboxio/octobox:latestd909041c46eb
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

3,255
hatchet-hahatchetOfficialVerified publisher0.18.01 of 8See more

hatchet-ha hatchet 0.18.0

1 of the 8 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

7,344
hatchet-stackhatchetOfficialVerified publisher0.18.01 of 8See more

hatchet-stack hatchet 0.18.0

1 of the 8 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

7,344
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

9,096
heliconehelicone0.1.421 of 14See more

helicone helicone 0.1.42

1 of the 14 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

24,995
helixhelix1.4.32 of 2See more

helix helix 1.4.3

2 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.20.0-r0
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,568
hello-worldhello-world-pponyVerified publisher0.3.01 of 1See more

hello-world hello-world-ppony 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/nginx:1.25.49ff236ed47fe
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

5,839
esphomehelm-chart-roeiVerified publisher2025.3.01 of 1See more

esphome helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
esphome/esphome:2025.3.0def8b6e4f517
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

6,008
home-assistant-matter-hubhelm-chart-roeiVerified publisher3.0.21 of 1See more

home-assistant-matter-hub helm-chart-roei 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
luligu/matterbridge:3.0.28f97884bebc2
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

3,806
supersethelm-charts-nr1.1.31 of 1See more

superset helm-charts-nr 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
apache/superset:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,305
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
dannielkil/book-frontend:latest937993927694
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

9,122
appwritehelmforgeVerified publisher1.3.42 of 5See more

appwrite helmforge 1.3.4

2 of the 5 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.6adc7d0e7ec23
curl@8.19.0-r0
8.20.0-r0
appwrite/console:8.7.383dcdc8492ac6
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

6,952
archiveboxhelmforgeVerified publisher1.1.121 of 1See more

archivebox helmforge 1.1.12

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
archivebox/archivebox:0.7.41a5a37331091
curl@8.14.1-2+deb13u2~bpo13+1
no fix listed

Open the chart page →

7,633
castopodhelmforgeVerified publisher1.2.71 of 3See more

castopod helmforge 1.2.7

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
castopod/castopod:1.15.54e4f0440520f
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

9,342
chiefonboardinghelmforgeVerified publisher1.1.141 of 3See more

chiefonboarding helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

10,849
ckanhelmforgeVerified publisher1.3.82 of 6See more

ckan helmforge 1.3.8

2 of the 6 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ckan/ckan-base:2.12.087ecf3f27ad6
curl@7.88.1-10+deb12u15
no fix listed
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
curl@7.81.0-1ubuntu1.23
7.81.0-1ubuntu1.24

Open the chart page →

9,920
discount-bandithelmforgeVerified publisher2.0.81 of 3See more

discount-bandit helmforge 2.0.8

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
cybrarist/discount-bandit:v4.0.4e9e2447ac666
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

29,817

Container images carrying it

909 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
7
library/kong:3.6a42d2b4503e7
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.20.0-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.20.0-r0
5
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
curl@7.88.1-10+deb12u12
no fix listed
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24
4
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
4
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.24
4
apache/superset:6.1.0:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
3
codeurjc/planner:v1.0800cf520c245
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.24
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
curl@7.88.1-10+deb12u15
no fix listed
3
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
3
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
3
library/nginx:1.25:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
no fix listed
3
library/node:ltsbe23f54a88d3
curl@7.88.1-10+deb12u15
no fix listed
3
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.20.0-r0
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.24
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.24
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
curl@7.88.1-10+deb12u14
no fix listed
3
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.20.0-r0
3
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.20.0-r0
2
alpine/kubectl:1.35.49ccd82364762
curl@8.17.0-r1
8.20.0-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
curl@8.17.0-r1
8.20.0-r0
2
apache/nifi-registry:1.26.07cdfd8deec92
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24
2
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed
2
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.20.0-r0
2
dunglas/mercure:v0:v0.24.2916834e49961
curl@8.17.0-r1
8.20.0-r0
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
2
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.20.0-r0
2
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.20.0-r0
2
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.20.0-r0
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
no fix listed
2
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
2
grafana/grafana:12.3.12175aaa91c96
curl@8.17.0-r1
8.20.0-r0
2
grafana/grafana:12.3.39e1e77ade304
curl@8.17.0-r1
8.20.0-r0
2
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.20.0-r0
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.