StackRadar

CVE-2026-8286

High

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.003
24th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,816
of 17,781 indexed, latest versions
Container images
1,678
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security, bug fix, and enhancement update

Carried by container images the latest versions of 1,816 of 17,781 indexed charts deploy, on 1,678 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+103 more7.35.0-1ubuntu2.20+esm20, 7.47.0-1ubuntu2.19+esm16, 7.58.0-2ubuntu3.24+esm9, 7.68.0-1ubuntu2.25+esm4+5 more1,236
curlrpm7.61.1-8.el8, 7.61.1-11.el8, 7.61.1-12.el8, 7.61.1-12.el8_2.4+23 more0:7.61.1-34.el8_10.13225
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
OSV records
ALPINE-CVE-2026-8286DEBIAN-CVE-2026-8286RHSA-2026:57462RLSA-2026:57462UBUNTU-CVE-2026-8286ECHO-6486-9a91-3077
Also known as
USN-8487-1

Charts affected

1,816 by stars
ChartLatestAffected imagesRadar Score
argocdnicklasfrahm-argocdVerified publisher0.3.01 of 2See more

argocd nicklasfrahm-argocd 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

5,240
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,987
daskdask2024.1.12 of 2See more

dask dask 2024.1.1

2 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25

Open the chart page →

12,746
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

2,993
factorio-server-chartsfactorio-server-chartsVerified publisher2.5.21 of 1See more

factorio-server-charts factorio-server-charts 2.5.2

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
factoriotools/factorio:lateste9227748c507
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,437
netbirdjaconiVerified publisher0.15.11 of 4See more

netbird jaconi 0.15.1

1 of the 4 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
library/golang:latest512690a56605
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,390
localstacklocalstack0.7.01 of 1See more

localstack localstack 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
localstack/localstack-pro:latest4aef81c53168
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,156
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
curl@8.21.0-2~bpo13+1
no fix listed

Open the chart page →

9,683
oneuptimeoneuptimeOfficialVerified publisher13.0.42 of 7See more

oneuptime oneuptime 13.0.4

2 of the 7 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
oneuptime/probe:release6b2d98713711
curl@7.88.1-10+deb12u15
no fix listed
oneuptime/runner:release4accc516d800
curl@8.14.1-2+deb13u5
no fix listed

Open the chart page →

11,192
openclawopenclaw-helmVerified publisher1.5.401 of 2See more

openclaw openclaw-helm 1.5.40

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,660
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.10

Open the chart page →

3,382
stalwart-mailstalwart-mailVerified publisher2.0.101 of 1See more

stalwart-mail stalwart-mail 2.0.10

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,403
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm9

Open the chart page →

15,592
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm4

Open the chart page →

7,880
scribebackube-helm-chartsVerified publisher0.2.01 of 2See more

scribe backube-helm-charts 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/backube/scribe:0.2.0cdefc81c6b2e
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.13

Open the chart page →

6,854
glasskube-operatorglasskubeOfficialVerified publisher0.12.22 of 3See more

glasskube-operator glasskube 0.12.2

2 of the 3 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.13
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.13

Open the chart page →

11,933
milvusmilvus-helm5.0.271 of 4See more

milvus milvus-helm 5.0.27

1 of the 4 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.25

Open the chart page →

10,670
prefect-serverprefectVerified publisher2026.9.32126051 of 2See more

prefect-server prefect 2026.9.3212605

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
prefecthq/prefect:3.8.5-python3.110018d02259bc
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

5,786
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

6,328
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.25+esm4

Open the chart page →

18,509
apicurio-registryapicurio-registry-helmVerified publisher3.8.01 of 2See more

apicurio-registry apicurio-registry-helm 3.8.0

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.13

Open the chart page →

6,675
rustfscloudpirates-rustfsVerified publisher0.11.41 of 1See more

rustfs cloudpirates-rustfs 0.11.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
rustfs/rustfs:1.0.0-beta.13c2d55977829
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

885
codefreshcodefresh-onpremOfficialVerified publisher2.12.132 of 42See more

codefresh codefresh-onprem 2.12.13

2 of the 42 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
curl@7.88.1-10+deb12u7
no fix listed
bitnamilegacy/rabbitmq:4.1.39e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

14,956
apim3graviteeioVerified publisher4.12.192 of 4See more

apim3 graviteeio 4.12.19

2 of the 4 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
curl@8.14.1-2+deb13u4
no fix listed
graviteeio/apim-management-api:4.12.19-debian27374522cd04
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,806
wordpressgroundhog2k0.16.41 of 1See more

wordpress groundhog2k 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,685
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2api:3.86f56d239d280
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2auth:3.833ecfda16608
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2notifier:3.8f190a6212195
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2rulesengine:3.8259503496ff9
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2scheduler:3.8b1de2055c362
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2sensorcontainer:3.8b1a338f64773
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2stream:3.81c8904a3bf67
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2timersengine:3.81bf35bfaf00c
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2web:3.809989a26c8b7
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2workflowengine:3.819fdfffdbba8
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4

Open the chart page →

96,419
supabasetokens-studioVerified publisher1.0.02 of 14See more

supabase tokens-studio 1.0.0

2 of the 14 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
supabase/realtime:v2.33.8d207e6e23ad3
curl@7.88.1-10+deb12u7
no fix listed
supabase/studio:20241021-9f9b08326d8070c55e9
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

23,123
renterdartur9010Verified publisher1.4.41 of 2See more

renterd artur9010 1.4.4

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

8,493
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
curl@8.5.0-2ubuntu10.9
8.5.0-2ubuntu10.10

Open the chart page →

1,710
budibasebudibase0.0.0-master2 of 7See more

budibase budibase 0.0.0-master

2 of the 7 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
curl@7.88.1-10+deb12u14
no fix listed
budibase/proxy:3.41.38d780b6ee602
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

10,775
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.25

Open the chart page →

7,857
purelbpurelb0.0.0-106-ipv6-lbip-052cedab1 of 2See more

purelb purelb 0.0.0-106-ipv6-lbip-052cedab

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.13

Open the chart page →

4,413
quickwitquickwit0.8.161 of 1See more

quickwit quickwit 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

3,480
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm4

Open the chart page →

11,405
caddyalekcVerified publisher0.9.01 of 1See more

caddy alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
library/caddy:2.11.4-alpine5f5c8640aae0
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

845
umamichristianhuthVerified publisher7.13.01 of 2See more

umami christianhuth 7.13.0

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/umami-software/umami:postgresql-v2.20.173ca19b41745
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,367
devtron-operatordevtron0.23.31 of 11See more

devtron-operator devtron 0.23.3

1 of the 11 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

32,902
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

3,606
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

5,357
nextcloudgroundhog2k0.22.51 of 3See more

nextcloud groundhog2k 0.22.5

1 of the 3 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3:34.0.3-apacheb97df9e0e1ee
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,507
ilumilumOfficialVerified publisher6.7.31 of 19See more

ilum ilum 6.7.3

1 of the 19 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

23,228
syncthingk8s-home-lab-repo5.2.01 of 1See more

syncthing k8s-home-lab-repo 5.2.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
syncthing/syncthing:2.1.1775c4aac4862
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,230
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.10

Open the chart page →

3,395
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

7,007
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
curl@8.14.1-2
no fix listed

Open the chart page →

5,634
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

4,332
netris-controllernetrisai2.8.21 of 14See more

netris-controller netrisai 2.8.2

1 of the 14 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
netrisai/controller-web-service-frontend:4.6.0-0138c5074f55ae5
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

30,326
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,489
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.25
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.25

Open the chart page →

14,184
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4

Open the chart page →

11,782

Container images carrying it

1,678 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
3
jacobalberty/unifi:v10.0.162896c0ab82d33
curl@7.68.0-1ubuntu2.25
7.68.0-1ubuntu2.25+esm4
3
library/nginx:1.25:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
no fix listed
3
library/node:ltsbe23f54a88d3
curl@7.88.1-10+deb12u15
no fix listed
3
localstack/localstack-pro:latest4aef81c53168
curl@8.14.1-2+deb13u4
no fix listed
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
curl@7.61.1-14.el8_3.1
0:7.61.1-34.el8_10.13
3
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0
3
selenium/hub:3.141.5902f251d48d5f
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
3
vaultwarden/server:1.37.1ebdfe70701c6
curl@8.14.1-2+deb13u4
no fix listed
3
xenondb/percona:5.7.330e26872a2b67
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm4
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.25
3
quay.io/devtron/clair:4.3.675fb847ac045
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.13
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
curl@7.47.0-1ubuntu2.19
7.47.0-1ubuntu2.19+esm16
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.25
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
curl@7.88.1-10+deb12u14
no fix listed
3
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.22.0-r0
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
curl@7.61.1-22.el8_6.9
0:7.61.1-34.el8_10.13
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.13
3
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.21.0-r0
2
alpine/kubectl:1.35.49ccd82364762
curl@8.17.0-r1
8.22.0-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
curl@8.17.0-r1
8.22.0-r0
2
apache/nifi-registry:1.26.07cdfd8deec92
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.25
2
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.10
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
curl@8.14.1-2+deb13u4
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed
2
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.22.0-r0
2
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
curl@7.61.1-30.el8_8.2
0:7.61.1-34.el8_10.13
2
confluentinc/cp-zookeeper:latest7610a50b13e7
curl@7.61.1-34.el8_10.3
0:7.61.1-34.el8_10.13
2
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
curl@7.61.1-30.el8_8.2
0:7.61.1-34.el8_10.13
2
dunglas/mercure:v0:v0.24.2916834e49961
curl@8.17.0-r1
8.22.0-r0
2
eqalpha/keydb:latest6537505c4235
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm4
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm4
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
curl@8.14.1-2+deb13u2
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
no fix listed
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm9
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
2
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.