StackRadar

CVE-2026-6276

High

Advisory

Published 29 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.003
22nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
924
of 17,781 indexed, latest versions
Container images
909
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 924 of 17,781 indexed charts deploy, on 909 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.81.0-1ubuntu1.2, 7.81.0-1ubuntu1.3, 7.81.0-1ubuntu1.4+37 more1:8.14.1-2+deb13u3+e2, 7.81.0-1ubuntu1.24, 8.5.0-2ubuntu10.9, 8.14.1-2+deb13u4+1 more753
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r08.20.0-r0156
OSV records
ALPINE-CVE-2026-6276DEBIAN-CVE-2026-6276UBUNTU-CVE-2026-6276ECHO-78b1-43ab-d59f
Also known as
USN-8227-1

Charts affected

924 by stars
ChartLatestAffected imagesRadar Score
daveit-at-mOfficialVerified publisher0.2.151 of 11See more

dave it-at-m 0.2.15

1 of the 11 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

15,089
opencloudjacobcolvinVerified publisher0.2.37 of 13See more

opencloud jacobcolvin 0.2.3

7 of the 13 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
curl@7.88.1-10+deb12u8
no fix listed
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

45,239
deconzjanip81-helm-chartsVerified publisher0.1.11 of 1See more

deconz janip81-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
deconzcommunity/deconz:2.29.2062de2362641
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

10,780
jasperjasperVerified publisher1.0.2021 of 2See more

jasper jasper 1.0.202

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

5,998
esphomejeffrescVerified publisher0.2.21 of 1See more

esphome jeffresc 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/esphome/esphome:2026.4.078a82d810709
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,040
manyfoldjeffrescVerified publisher1.0.31 of 1See more

manyfold jeffresc 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/manyfold3d/manyfold:0.136.0d14ca4d82475
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,960
jellyfinjellyfin-helm10.9.101 of 1See more

jellyfin jellyfin-helm 10.9.10

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.9.1079fb3d73a3e9
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

4,489
jellyfinjellyfin--jellyfin-helm3.0.01 of 1See more

jellyfin jellyfin--jellyfin-helm 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.717285f9cce63
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

3,001
dayz-dedicated-server-razorbladex401jespernohrVerified publisher1.0.31 of 1See more

dayz-dedicated-server-razorbladex401 jespernohr 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
razorbladex401/dayz:latest6a4d79248e7d
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24

Open the chart page →

5,208
steamcmd-managerjfwenischVerified publisher0.4.51 of 1See more

steamcmd-manager jfwenisch 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

6,586
webtoolsjfwenischVerified publisher0.1.41 of 1See more

webtools jfwenisch 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

6,568
image-storage-servicejtektVerified publisher0.4.33 of 4See more

image-storage-service jtekt 0.4.3

3 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
curl@7.88.1-10+deb12u7
no fix listed
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

22,589
shinsei-managerjtektVerified publisher0.2.07 of 8See more

shinsei-manager jtekt 0.2.0

7 of the 8 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
moreillon/api-proxy:latestd7d4a5463525
curl@7.88.1-10+deb12u12
no fix listed
moreillon/group-manager:latest3caa8f710ee0
curl@7.88.1-10+deb12u14
no fix listed
moreillon/group-manager-front:latest5f0a38498271
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
moreillon/user-manager:v5.0.2e1c9bfab5c16
curl@7.88.1-10+deb12u4
no fix listed
moreillon/user-manager-front:v5.0.3b067dbbbb6af
curl@7.88.1-10+deb12u4
no fix listed
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
curl@7.88.1-10+deb12u5
no fix listed
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

63,461
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

16,600
docker-hub-rssjuniorjpdj0.1.311 of 1See more

docker-hub-rss juniorjpdj 0.1.31

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/theconnman/docker-hub-rss:0.6.238eba84b2be8
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,966
jupyter-hub-customizationsjupyter-jscVerified publisher0.27.171 of 4See more

jupyter-hub-customizations jupyter-jsc 0.27.17

1 of the 4 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/nginx:1.291881968aff6f
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

3,389
jupyter-nginxjupyter-jscVerified publisher0.1.31 of 1See more

jupyter-nginx jupyter-jsc 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/nginx:1.29.49dd288848f44
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

3,508
jellyfink8s-chartsVerified publisher0.2.41 of 1See more

jellyfin k8s-charts 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.696b09723b22f
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

4,105
palworld-serverk8s-chartsVerified publisher1.2.11 of 1See more

palworld-server k8s-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.5.0b4ac9ee22483
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

3,460
valheim-serverk8s-chartsVerified publisher1.3.01 of 1See more

valheim-server k8s-charts 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
mbround18/valheim:3.1.070bd4da591cd
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

6,075
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9

Open the chart page →

8,811
flaresolverrk8s-home-lab-repo6.2.01 of 1See more

flaresolverr k8s-home-lab-repo 6.2.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

27,274
giteak8s-home-lab-repo2.6.01 of 1See more

gitea k8s-home-lab-repo 2.6.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
gitea/gitea:1.26.27d13848af126
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

2,139
lidarrk8s-home-lab-repo15.3.11 of 1See more

lidarr k8s-home-lab-repo 15.3.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,568
paperlessk8s-home-lab-repo11.0.11 of 1See more

paperless k8s-home-lab-repo 11.0.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

9,103
syslog-ngk8s-home-lab-repo3.1.11 of 1See more

syslog-ng k8s-home-lab-repo 3.1.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/syslog-ng:4.10.247fae7f540f9
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

1,298
vaultwardenk8s-home-lab-repo6.2.31 of 1See more

vaultwarden k8s-home-lab-repo 6.2.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
vaultwarden/server:1.35.79a8eec71f4a5
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

2,854
youtubedl-materialk8s-home-lab-repo5.1.11 of 1See more

youtubedl-material k8s-home-lab-repo 5.1.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.3.22f943d584711
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.24

Open the chart page →

9,783
zileank8s-home-lab-repo1.0.11 of 1See more

zilean k8s-home-lab-repo 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/thoroslives/zilean:v3.10.1bce6aca0f6ca
curl@8.12.1-r0
8.20.0-r0

Open the chart page →

2,025
k8s-mutating-admission-webhookk8s-mutating-admission-webhook1.15.11 of 1See more

k8s-mutating-admission-webhook k8s-mutating-admission-webhook 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
udhos/k8s-mutating-admission-webhook:1.15.1e588db500edf
curl@8.19.0-r0
8.20.0-r0

Open the chart page →

945
librephotosk8sonlabVerified publisher1.1.61 of 7See more

librephotos k8sonlab 1.1.6

1 of the 7 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
reallibrephotos/librephotos-proxy:1.0.398a13dabbadc
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4

Open the chart page →

14,801
kadeck-teamskadeck1.1.211 of 1See more

kadeck-teams kadeck 1.1.21

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
xeotek/kadeck:6.3.439a3b37a17c5
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.24

Open the chart page →

3,576
authentikkagiso-me0.1.11 of 1See more

authentik kagiso-me 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

4,568
vaultwardenkagiso-me0.1.11 of 1See more

vaultwarden kagiso-me 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
vaultwarden/server:1.36.0-alpined3531610b486
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

885
music-assistantkarljorgensen0.1.31 of 1See more

music-assistant karljorgensen 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

7,081
kbot-self-hostedkbot-self-hostedVerified publisher0.1.81 of 7See more

kbot-self-hosted kbot-self-hosted 0.1.8

1 of the 7 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

32,509
kc-chartkc-chart1.0.01 of 3See more

kc-chart kc-chart 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
jhoncytech/bookworm-apache-wordpress:latest18c3ca1f411e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

8,860
kenerkener-chart0.0.71 of 1See more

kener kener-chart 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,228
quickwitkfirfer0.7.21 of 1See more

quickwit kfirfer 0.7.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

3,480
kiaekiae0.1.61 of 9See more

kiae kiae 0.1.6

1 of the 9 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
istio/pilot:1.15.2db08d6963975
curl@7.81.0-1ubuntu1.4
7.81.0-1ubuntu1.24

Open the chart page →

19,168
graphiti-mcpkiberonlabs0.1.21 of 1See more

graphiti-mcp kiberonlabs 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
zepai/knowledge-graph-mcp:v0.2.16ab0ee79926b
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

3,393
cdashkitwareVerified publisher0.19.01 of 3See more

cdash kitware 0.19.0

1 of the 3 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.12.18-debian-12-r0cce234b4381a
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

12,062
kollectkollectVerified publisher0.20.01 of 1See more

kollect kollect 0.20.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

1,930
kpingkpingOfficialVerified publisher0.3.51 of 1See more

kping kping 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
kayrosuno/kping:latestf3bd44b29b0d
curl@8.5.0-2ubuntu10.7
8.5.0-2ubuntu10.9

Open the chart page →

2,190
sweeperkrateo0.2.11 of 2See more

sweeper krateo 0.2.1

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
alpine/kubectl:1.36.01ee9df6316d4
curl@8.17.0-r1
8.20.0-r0

Open the chart page →

1,504
kubeflowkromanow94-kubeflow0.5.12 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

2 of the 30 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
library/python:3.7eedf63967cdb
curl@7.88.1-10+deb12u1
no fix listed
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

70,530
adventureworkskronkltdVerified publisher0.1.01 of 1See more

adventureworks kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
chriseaton/adventureworks:latest54c3384ce701
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24

Open the chart page →

4,414
fileserverkronkltdVerified publisher0.3.101 of 1See more

fileserver kronkltd 0.3.10

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
duck1123/lnd-fileserver:latest9d6fb247b714
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.24

Open the chart page →

3,729
mindsdbkronkltdVerified publisher0.1.01 of 1See more

mindsdb kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
mindsdb/mindsdb:latest163011c09299
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4

Open the chart page →

9,620
rtlkronkltdVerified publisher0.1.01 of 2See more

rtl kronkltd 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-6276.

Container imageDigestPackageFixed in
duck1123/cert-downloader:latest0e29f19fa67c
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.24

Open the chart page →

5,604

Container images carrying it

909 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
curl@8.14.1-2+deb13u3
8.14.1-2+deb13u4
7
library/kong:3.6a42d2b4503e7
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.20.0-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
curl@7.88.1-10+deb12u5
no fix listed
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
curl@8.17.0-r1
8.20.0-r0
5
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
curl@7.88.1-10+deb12u12
no fix listed
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.24
4
library/nginx:1.27.1287ff321f9e3
curl@7.88.1-10+deb12u7
no fix listed
4
mastercloudapps/planner:v1.2340a950b311b2
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.24
4
apache/superset:6.1.0:latest16b50bbef664
curl@7.88.1-10+deb12u15
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
curl@7.88.1-10+deb12u12
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed
3
codeurjc/planner:v1.0800cf520c245
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.24
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
curl@7.88.1-10+deb12u15
no fix listed
3
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
3
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
3
library/nginx:1.25:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
no fix listed
3
library/node:ltsbe23f54a88d3
curl@7.88.1-10+deb12u15
no fix listed
3
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.20.0-r0
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.24
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.24
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
curl@7.88.1-10+deb12u14
no fix listed
3
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.20.0-r0
3
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.20.0-r0
2
alpine/kubectl:1.35.49ccd82364762
curl@8.17.0-r1
8.20.0-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
curl@8.17.0-r1
8.20.0-r0
2
apache/nifi-registry:1.26.07cdfd8deec92
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.24
2
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.9
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.9
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed
2
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.20.0-r0
2
dunglas/mercure:v0:v0.24.2916834e49961
curl@8.17.0-r1
8.20.0-r0
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
8.14.1-2+deb13u4
2
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.20.0-r0
2
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.20.0-r0
2
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.20.0-r0
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
no fix listed
2
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.24
2
grafana/grafana:12.3.12175aaa91c96
curl@8.17.0-r1
8.20.0-r0
2
grafana/grafana:12.3.39e1e77ade304
curl@8.17.0-r1
8.20.0-r0
2
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.20.0-r0
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.