StackRadar

CVE-2026-8286

High

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.003
24th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,819
of 17,790 indexed, latest versions
Container images
1,684
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security, bug fix, and enhancement update

Carried by container images the latest versions of 1,819 of 17,790 indexed charts deploy, on 1,684 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+103 more7.35.0-1ubuntu2.20+esm20, 7.47.0-1ubuntu2.19+esm16, 7.58.0-2ubuntu3.24+esm9, 7.68.0-1ubuntu2.25+esm4+5 more1,241
curlrpm7.61.1-8.el8, 7.61.1-11.el8, 7.61.1-12.el8, 7.61.1-12.el8_2.4+23 more0:7.61.1-34.el8_10.13226
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
OSV records
ALPINE-CVE-2026-8286DEBIAN-CVE-2026-8286RHSA-2026:57462RLSA-2026:57462UBUNTU-CVE-2026-8286ECHO-6486-9a91-3077
Also known as
USN-8487-1

Charts affected

1,819 by stars
ChartLatestAffected imagesRadar Score
octant-uioctant-ui0.0.1-testing1 of 1See more

octant-ui octant-ui 0.0.1-testing

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/mydecisive/octant-ui:0.0.1-testing61e4066b22fb
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,110
web-chartoje-ktcloudlab0.1.01 of 1See more

web-chart oje-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,849
automx2oleds-helm-chartsVerified publisher1.0.51 of 1See more

automx2 oleds-helm-charts 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
oled01/automx2:2025.1.105d3e398e675
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,360
db-backupoleds-helm-chartsVerified publisher0.1.01 of 1See more

db-backup oleds-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
oled01/db-backup:0.1.06302fd2b5333
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.25

Open the chart page →

8,133
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.25

Open the chart page →

9,062
laravel-appoli-the-devVerified publisher2.0.171 of 1See more

laravel-app oli-the-dev 2.0.17

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,728
paperless-ngxoli-the-devVerified publisher1.1.11 of 1See more

paperless-ngx oli-the-dev 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,651
apicurioone-acre-fundVerified publisher2.3.03 of 5See more

apicurio one-acre-fund 2.3.0

3 of the 5 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.13
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.13
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
curl@7.61.1-30.el8_8.3
0:7.61.1-34.el8_10.13

Open the chart page →

18,667
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

6,096
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed

Open the chart page →

9,747
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

5,699
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.13

Open the chart page →

18,032
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.24+esm9

Open the chart page →

63,280
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm16
omecproject/onos-progran:1.0.05715e5648aa0
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm16
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm16

Open the chart page →

88,653
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm16

Open the chart page →

26,246
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm9

Open the chart page →

15,718
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
omecproject/c3po-hssdb:master-latest28a90cc26716
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm4

Open the chart page →

40,825
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm9

Open the chart page →

12,942
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm16

Open the chart page →

38,902
sebaopencord1.0.02 of 17See more

seba opencord 1.0.0

2 of the 17 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm16
voltha/voltha-envoy:1.6.059ab2a00f712
curl@7.35.0-1ubuntu2.19
7.35.0-1ubuntu2.20+esm20

Open the chart page →

93,946
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm9
voltha/voltha-onos:5.1.8e038acb950d3
curl@7.58.0-2ubuntu3.19
7.58.0-2ubuntu3.24+esm9

Open the chart page →

41,101
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

11,051
pro-builderopenfaas0.6.131 of 2See more

pro-builder openfaas 0.6.13

1 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
moby/buildkit:v0.32.2-rootless504731e577c2
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

2,745
minioopenobserve5.0.72 of 2See more

minio openobserve 5.0.7

2 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.13
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.13

Open the chart page →

7,471
openobserveopenobserve0.92.21 of 6See more

openobserve openobserve 0.92.2

1 of the 6 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

3,166
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.13

Open the chart page →

12,185
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.13

Open the chart page →

35,116
canvas-oamportalopenshift4.0.01 of 1See more

canvas-oamportal openshift 4.0.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gurolakman/oam:4.0.0ed8fd2062548
curl@7.61.1-34.el8_10.2
0:7.61.1-34.el8_10.13

Open the chart page →

7,519
exporteropenshift1.0.471 of 3See more

exporter openshift 1.0.47

1 of the 3 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
curl@7.61.1-34.el8_10.2
0:7.61.1-34.el8_10.13

Open the chart page →

13,041
fineractopenshift0.1.11 of 4See more

fineract openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

7,866
flomesh-consoleopenshift0.70.0-30-ubi82 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

2 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.13
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.13

Open the chart page →

9,968
fsmopenshift0.1.8-ubi.66 of 6See more

fsm openshift 0.1.8-ubi.6

6 of the 6 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.13
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.13
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.13
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.13
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.13
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.13

Open the chart page →

16,563
kite-agentopenshift1.0.01 of 1See more

kite-agent openshift 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
curl@7.61.1-34.el8_10.11
0:7.61.1-34.el8_10.13

Open the chart page →

5,863
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
curl@7.61.1-18.el8_4.2
0:7.61.1-34.el8_10.13
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
curl@7.61.1-18.el8
0:7.61.1-34.el8_10.13

Open the chart page →

14,727
osm-edgeopenshift1.2.1-ubi87 of 7See more

osm-edge openshift 1.2.1-ubi8

7 of the 7 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
curl@7.61.1-34.el8
0:7.61.1-34.el8_10.13
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.13
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.13
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.13
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.13
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
curl@7.61.1-25.el8_7.1
0:7.61.1-34.el8_10.13
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.13

Open the chart page →

19,471
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.13

Open the chart page →

13,612
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.13

Open the chart page →

11,740
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.13

Open the chart page →

13,573
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.13

Open the chart page →

13,556
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.13

Open the chart page →

13,460
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
curl@7.61.1-33.el8
0:7.61.1-34.el8_10.13

Open the chart page →

13,105
open-vpnopenvpn0.0.11 of 1See more

open-vpn openvpn 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm9

Open the chart page →

15,602
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.24+esm9

Open the chart page →

36,252
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2023-02-28T00-12-59Zc631532a394e
curl@7.61.1-25.el8_7.3
0:7.61.1-34.el8_10.13

Open the chart page →

5,658
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
curl@7.35.0-1ubuntu2.16
7.35.0-1ubuntu2.20+esm20

Open the chart page →

26,364
grrosdfir-infrastructureVerified publisher1.0.31 of 5See more

grr osdfir-infrastructure 1.0.3

1 of the 5 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
curl@7.88.1-10+deb12u6
no fix listed

Open the chart page →

11,021
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.05 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

5 of the 40 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
bitnamilegacy/git:latest4b08d0c5af8d
curl@7.88.1-10+deb12u12
no fix listed
yetiplatform/yeti:2.9.09bcbe2650a14
curl@8.14.1-2+deb13u4
no fix listed
yetiplatform/yeti-frontend:2.9.0873ef15d267b
curl@8.14.1-2+deb13u4
no fix listed
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
curl@7.88.1-10+deb12u6
no fix listed
ghcr.io/openrelik/openrelik-ui:latest7f91594d5eb3
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

72,547
yetiosdfir-infrastructureVerified publisher1.0.52 of 4See more

yeti osdfir-infrastructure 1.0.5

2 of the 4 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
yetiplatform/yeti:latest9c3006cedcca
curl@8.14.1-2+deb13u4
no fix listed
yetiplatform/yeti-frontend:latest709064278c7e
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

6,679
loki-standaloneot-container-kit1.0.21 of 5See more

loki-standalone ot-container-kit 1.0.2

1 of the 5 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

3,620
webot-container-kit0.1.01 of 1See more

web ot-container-kit 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8286.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,849

Container images carrying it

1,684 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
curl@8.14.1-2
no fix listed
1
ghcr.io/ding113/claude-code-hub:latest87f9e8a92bd7
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
curl@8.5.0-2ubuntu10.5
8.5.0-2ubuntu10.10
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
curl@7.88.1-10+deb12u4
no fix listed
1
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.13
1
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
curl@7.61.1-22.el8
0:7.61.1-34.el8_10.13
1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
curl@7.61.1-25.el8
0:7.61.1-34.el8_10.13
1
ghcr.io/duyet/clickhouse-monitoring:latest84edfe8a67a8
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
curl@7.58.0-2ubuntu3.14
7.58.0-2ubuntu3.24+esm9
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.25+esm4
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
curl@8.14.1-2+deb13u3
no fix listed
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/ethpandaops/benchmarkoor-ui:latestd090bb2060d9
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
curl@7.88.1-10+deb12u5
no fix listed
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
1
ghcr.io/feresberbeche/alertigate:1.2.1628d49e0e01b
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/firecrawl/firecrawl:2.11.340529f38bab2c3
curl@7.88.1-10+deb12u15
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
curl@7.88.1-10+deb12u14
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
curl@7.88.1-10+deb12u12
no fix listed
1
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/fluxcd/kustomize-controller:v1.9.23aecec8bafdb
curl@8.19.0-r0
8.22.0-r0
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25
1
ghcr.io/gchq/cyberchef:11.0.045082a0ac41d
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/getsentry/snuba:26.7.210f8d164109b
curl@8.14.1-2+deb13u4
no fix listed
1
ghcr.io/gla-rad/enav-eureka:latest05002092c621
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/gluufederation/flex/persistence-loader:0.0.0-nightlyc26589258dec
curl@8.20.0-r0
8.22.0-r0
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
curl@8.14.1-2+deb13u2
no fix listed
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
curl@7.88.1-10+deb12u6
no fix listed
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm4
1
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-assistant/home-assistant:2026.8.256690a89c79a
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-assistant/home-assistant:2026.9.1:latest612d76760b54
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/bazarr:1.5.680cb090162b4
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.10
1
ghcr.io/home-operations/prowlarr:2.4.0b7da6e9defbe
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/qbittorrent:5.2.224f2d793cb7f
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/home-operations/radarr:6.2.1a566e7d364b9
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/sonarr:4.0.171989718e9fce
curl@8.20.0-r1
8.21.0-r0
1
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
curl@8.17.0-r1
8.22.0-r0
1
ghcr.io/hotio/qbittorrent:release-5.2.007198d49e5b4
curl@8.19.0-r0
8.22.0-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
curl@8.14.1-2+deb13u2
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.