StackRadar

CVE-2026-8924

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,702
of 17,828 indexed, latest versions
Container images
1,512
deployed by those charts
Fix available
3 of 3
affected packages

libpsl-devel-0.23.0-1.1 on GA media

Carried by container images the latest versions of 1,702 of 17,828 indexed charts deploy, on 1,512 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.47.0-1ubuntu2.2, 7.47.0-1ubuntu2.5, 7.47.0-1ubuntu2.6+99 more1:8.22.0-1+e1, 7.47.0-1ubuntu2.19+esm16, 7.58.0-2ubuntu3.24+esm9, 7.68.0-1ubuntu2.25+esm4+4 more1,299
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0207
libpslrpm0.20.1-lp151.2.43, 0.20.1-lp152.3.70.23.0-1.16
OSV records
ALPINE-CVE-2026-8924DEBIAN-CVE-2026-8924UBUNTU-CVE-2026-8924ECHO-4b8f-d51c-29b8openSUSE-SU-2026:11266-1
Also known as
USN-8487-1

Charts affected

1,702 by stars
ChartLatestAffected imagesRadar Score
language-toolzekker6Verified publisher1.12.11 of 2See more

language-tool zekker6 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-8924.

Container imageDigestPackageFixed in
erikvl87/languagetool:6.7-dockerupdate-3e1ea6a975388
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

1,424
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-8924.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
curl@8.14.1-2+deb13u5
no fix listed

Open the chart page →

1,589

Container images carrying it

1,512 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25
1
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
curl@7.88.1-10+deb12u5
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.25+esm4
1
syncthing/syncthing:2.1.07c60eb0ec887
curl@8.17.0-r1
8.22.0-r0
1
sysnet4admin/colosseum-cms:loge74b43c7f492
curl@7.88.1-10+deb12u12
no fix listed
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
curl@7.88.1-10+deb12u12
no fix listed
1
tautulli/tautulli:latest670e68dd9efc
curl@8.14.1-2+deb13u4
no fix listed
1
teknas09/bird-pod:latest12a1fa85c4aa
curl@7.88.1-10+deb12u5
no fix listed
1
temporalio/admin-tools:1.28cfde8170c92f
curl@8.17.0-r1
8.22.0-r0
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
curl@7.47.0-1ubuntu2.6
7.47.0-1ubuntu2.19+esm16
1
tenureai/tenure:v1.0.285f5b222df9a5
curl@8.14.1-2+deb13u3+dhi3
no fix listed
1
theradius/loggia:0.463ba348546ec
curl@7.88.1-10+deb12u5
no fix listed
1
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
curl@8.14.1-2+deb13u2
no fix listed
1
thijsvanloef/palworld-server-docker:v2.5.0b4ac9ee22483
curl@8.14.1-2+deb13u2
no fix listed
1
thingsboard/tbmq-integration-executor:2.4.0b5a9c1addf80
curl@8.14.1-2+deb13u4
no fix listed
1
thingsboard/tbmq-node:2.4.070661025dba5
curl@8.14.1-2+deb13u4
no fix listed
1
thmmniii/fbs-core:v1.27.15438517d9fc2
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25
1
thongngo3301/stakefish:latesta341af5976e3
curl@7.88.1-10+deb12u1
no fix listed
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.25
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.25
1
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
curl@7.81.0-1ubuntu1.2
7.81.0-1ubuntu1.25
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm16
1
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
curl@8.14.1-2+deb13u2
no fix listed
1
tombursch/kitchenowl-backend:v0.7.8b48e4ab727cd
curl@8.14.1-2+deb13u2
no fix listed
1
tombursch/kitchenowl-web:v0.7.8517f808eee66
curl@8.17.0-r1
8.22.0-r0
1
tomsquest/docker-radicale:3.6.1.0a594c624c5a6
curl@8.17.0-r1
8.22.0-r0
1
tpdock/freeradius:2.2.93da600c95a49
curl@7.47.0-1ubuntu2.5
7.47.0-1ubuntu2.19+esm16
1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
curl@7.88.1-10+deb12u8
no fix listed
1
trinodb/trino:405ee80ab5eeab2
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.25
1
trueosiris/vrising:latest9356f98ad561
curl@7.81.0-1ubuntu1.23
7.81.0-1ubuntu1.25
1
twentycrm/twenty:v2.40.06e3b2e68ad78
curl@8.20.0-r0
8.22.0-r0
1
twentycrm/twenty:v2.22.0e7d9948bf284
curl@8.19.0-r0
8.22.0-r0
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25
1
udhos/eks-auto-pod-id-assoc:0.6.0196ef68af380
curl@8.19.0-r0
8.22.0-r0
1
udhos/k8s-mutating-admission-webhook:1.15.1e588db500edf
curl@8.19.0-r0
8.22.0-r0
1
udhos/redis-enforce-expire:1.0.0615b6a7d742e
curl@8.17.0-r1
8.22.0-r0
1
udhos/sqs-to-sns:2.0.15cf7979da82e1
curl@8.19.0-r0
8.22.0-r0
1
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
curl@7.88.1-10+deb12u12
no fix listed
1
vaultwarden/server:1.35.443498a94b22f
curl@8.14.1-2+deb13u2
no fix listed
1
vaultwarden/server:1.34.384fd8a47f58d
curl@7.88.1-10+deb12u12
no fix listed
1
vaultwarden/server:1.35.79a8eec71f4a5
curl@8.14.1-2+deb13u2
no fix listed
1
vaultwarden/server:1.36.0-alpined3531610b486
curl@8.17.0-r1
8.22.0-r0
1
veecode/devportal-admin-ui:0.4.30c69fd286b489
curl@7.88.1-10+deb12u12
no fix listed
1
vinanrra/7dtd-server:v0.4.4f9534490bd2b
curl@7.58.0-2ubuntu3.22
7.58.0-2ubuntu3.24+esm9
1
vlebediantsev/notes-admin-front:latest007c6670ff48
curl@7.88.1-10+deb12u1
no fix listed
1
vlebediantsev/notes-project-front:latest945675fd2636
curl@7.88.1-10+deb12u1
no fix listed
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
curl@7.88.1-10+deb12u1
no fix listed
1
voltha/voltha-onos:5.1.8e038acb950d3
curl@7.58.0-2ubuntu3.19
7.58.0-2ubuntu3.24+esm9
1
voska/hass-mcp:latest7142a431e2c5
curl@7.88.1-10+deb12u8
no fix listed
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.