CVE-2026-80255
HighAdvisory
Published 2 Sept 2026In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.007
- 51st percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 828
- of 17,787 indexed, latest versions
- Container images
- 630
- deployed by those charts
- Fix available
- 1 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 828 of 17,787 indexed charts deploy, on 630 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| curlapk | 8.17.0-r1, 8.18.0-r0, 8.19.0-r0, 8.20.0-r0+2 more | 8.22.0-r0 | 345 |
| curldeb | 8.14.1-2, 8.14.1-2+deb13u2, 8.14.1-2+deb13u3, 8.14.1-2+deb13u3+dhi3+12 more | no fix listed | 285 |
Charts affected
828 by stars
Container images carrying it
630 by charts deploying them
A fixed version is listed for 1 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| kubevirtmanager/ | 1b98f1b5977a | curl | 8.22.0-r0 | 1 |
| langgenius/ | 750e1111426e | curl | no fix listed | 1 |
| lbenicio/ | 732f9003de33 | curl | 8.22.0-r0 | 1 |
| library/ | 1596436ca855 | curl | 8.22.0-r0 | 1 |
| library/ | 983261ecc40a | curl | 8.22.0-r0 | 1 |
| library/ | ac978b783657 | curl | no fix listed | 1 |
| library/ | 13ba145cba2f | curl | 8.22.0-r0 | 1 |
| library/ | 834468128c76 | curl | 8.22.0-r0 | 1 |
| library/ | 3ef33f2e220b | curl | 8.22.0-r0 | 1 |
| library/ | 1f79c73404fb | curl | no fix listed | 1 |
| library/ | 85f00967bcc6 | curl | no fix listed | 1 |
| library/ | 512690a56605 | curl | no fix listed | 1 |
| library/ | 8e6bdd396496 | curl | no fix listed | 1 |
| library/ | 6d1b2bd0947e | curl | 8.22.0-r0 | 1 |
| library/ | b7faa1653c39 | curl | no fix listed | 1 |
| library/ | de4ad9389386 | curl | no fix listed | 1 |
| library/ | 1881968aff6f | curl | no fix listed | 1 |
| library/ | 2f07d83bf561 | curl | 8.22.0-r0 | 1 |
| library/ | 4a73073bd557 | curl | 8.22.0-r0 | 1 |
| library/ | 5616878291a2 | curl | 8.22.0-r0 | 1 |
| library/ | a8b39bd9cf0f | curl | 8.22.0-r0 | 1 |
| library/ | f5d1cc40abc1 | curl | no fix listed | 1 |
| library/ | 22a4c414bb8e | curl | 8.22.0-r0 | 1 |
| library/ | 59fa733c9af6 | curl | no fix listed | 1 |
| library/ | 54451ecb8ab3 | curl | 8.22.0-r0 | 1 |
| library/ | 9a8afca54e78 | curl | 8.22.0-r0 | 1 |
| library/ | 70c9cc675605 | curl | no fix listed | 1 |
| library/ | da5aee29682d | curl | no fix listed | 1 |
| library/ | 04ac44a2595b | curl | no fix listed | 1 |
| library/ | ad4a8bae2eb4 | curl | no fix listed | 1 |
| library/ | f73396626d2f | curl | no fix listed | 1 |
| librenms/ | 8194a4a9ff49 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | a20fb11a440d | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 2ebf97852661 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 9505c64720af | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 287e48152967 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | c74c32408fdf | curl | 8.22.0-r0 | 1 |
| linuxserver/ | cb61ec331e80 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 4477fb1ce3ca | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 1f6f97d76e7b | curl | no fix listed | 1 |
| linuxserver/ | 4fd7a166c8f4 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 91844fa2c927 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | a46d0ce0a823 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | a00b6a597a38 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | dd24a5f3db32 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 549c4a075496 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 02bc962946fe | curl | 8.22.0-r0 | 1 |
| linuxserver/ | 5ce8c5f82f91 | curl | 8.22.0-r0 | 1 |
| linuxserver/ | b6ce6968ee45 | curl | no fix listed | 1 |
| linuxserver/ | bf03578ef731 | curl | 8.22.0-r0 | 1 |