StackRadar

CVE-2026-8927

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.005
41st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,656
of 17,781 indexed, latest versions
Container images
1,460
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 1,656 of 17,781 indexed charts deploy, on 1,460 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+103 more7.35.0-1ubuntu2.20+esm20, 7.47.0-1ubuntu2.19+esm16, 7.58.0-2ubuntu3.24+esm9, 7.68.0-1ubuntu2.25+esm4+5 more1,236
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
curlrpm8.12.1-4.el100:8.12.1-4.el10_2.47
OSV records
ALPINE-CVE-2026-8927DEBIAN-CVE-2026-8927UBUNTU-CVE-2026-8927RHSA-2026:55432RLSA-2026:55432ECHO-5c3c-57c5-8fb2
Also known as
USN-8487-1

Charts affected

1,656 by stars
ChartLatestAffected imagesRadar Score
localstacklocalstack0.7.01 of 1See more

localstack localstack 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
localstack/localstack-pro:latest4aef81c53168
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,156
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
curl@8.21.0-2~bpo13+1
no fix listed

Open the chart page →

9,683
oneuptimeoneuptimeOfficialVerified publisher13.0.42 of 7See more

oneuptime oneuptime 13.0.4

2 of the 7 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
oneuptime/probe:release6b2d98713711
curl@7.88.1-10+deb12u15
no fix listed
oneuptime/runner:release4accc516d800
curl@8.14.1-2+deb13u5
no fix listed

Open the chart page →

11,192
openclawopenclaw-helmVerified publisher1.5.401 of 2See more

openclaw openclaw-helm 1.5.40

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,660
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.10

Open the chart page →

3,382
stalwart-mailstalwart-mailVerified publisher2.0.101 of 1See more

stalwart-mail stalwart-mail 2.0.10

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,403
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
curl@7.58.0-2ubuntu3.10
7.58.0-2ubuntu3.24+esm9

Open the chart page →

15,592
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
curl@7.68.0-1ubuntu2.11
7.68.0-1ubuntu2.25+esm4

Open the chart page →

7,880
milvusmilvus-helm5.0.271 of 4See more

milvus milvus-helm 5.0.27

1 of the 4 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.25

Open the chart page →

10,670
prefect-serverprefectVerified publisher2026.9.32126051 of 2See more

prefect-server prefect 2026.9.3212605

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
prefecthq/prefect:3.8.5-python3.110018d02259bc
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

5,786
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

6,328
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.25+esm4

Open the chart page →

18,509
rustfscloudpirates-rustfsVerified publisher0.11.41 of 1See more

rustfs cloudpirates-rustfs 0.11.4

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
rustfs/rustfs:1.0.0-beta.13c2d55977829
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

885
codefreshcodefresh-onpremOfficialVerified publisher2.12.132 of 42See more

codefresh codefresh-onprem 2.12.13

2 of the 42 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
curl@7.88.1-10+deb12u7
no fix listed
bitnamilegacy/rabbitmq:4.1.39e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

14,956
apim3graviteeioVerified publisher4.12.192 of 4See more

apim3 graviteeio 4.12.19

2 of the 4 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
curl@8.14.1-2+deb13u4
no fix listed
graviteeio/apim-management-api:4.12.19-debian27374522cd04
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,806
wordpressgroundhog2k0.16.41 of 1See more

wordpress groundhog2k 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,685
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2api:3.86f56d239d280
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2auth:3.833ecfda16608
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2notifier:3.8f190a6212195
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2rulesengine:3.8259503496ff9
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2scheduler:3.8b1de2055c362
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2sensorcontainer:3.8b1a338f64773
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2stream:3.81c8904a3bf67
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2timersengine:3.81bf35bfaf00c
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2web:3.809989a26c8b7
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4
stackstorm/st2workflowengine:3.819fdfffdbba8
curl@7.68.0-1ubuntu2.21
7.68.0-1ubuntu2.25+esm4

Open the chart page →

96,419
supabasetokens-studioVerified publisher1.0.02 of 14See more

supabase tokens-studio 1.0.0

2 of the 14 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
supabase/realtime:v2.33.8d207e6e23ad3
curl@7.88.1-10+deb12u7
no fix listed
supabase/studio:20241021-9f9b08326d8070c55e9
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

23,123
renterdartur9010Verified publisher1.4.41 of 2See more

renterd artur9010 1.4.4

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

8,493
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
curl@8.5.0-2ubuntu10.9
8.5.0-2ubuntu10.10

Open the chart page →

1,710
budibasebudibase0.0.0-master2 of 7See more

budibase budibase 0.0.0-master

2 of the 7 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
curl@7.88.1-10+deb12u14
no fix listed
budibase/proxy:3.41.38d780b6ee602
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

10,775
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.25

Open the chart page →

7,857
quickwitquickwit0.8.161 of 1See more

quickwit quickwit 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

3,480
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
curl@7.68.0-1ubuntu2.6
7.68.0-1ubuntu2.25+esm4

Open the chart page →

11,405
caddyalekcVerified publisher0.9.01 of 1See more

caddy alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
library/caddy:2.11.4-alpine5f5c8640aae0
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

845
umamichristianhuthVerified publisher7.13.01 of 2See more

umami christianhuth 7.13.0

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/umami-software/umami:postgresql-v2.20.173ca19b41745
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,367
devtron-operatordevtron0.23.31 of 11See more

devtron-operator devtron 0.23.3

1 of the 11 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

32,902
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

3,606
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

5,357
nextcloudgroundhog2k0.22.51 of 3See more

nextcloud groundhog2k 0.22.5

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3:34.0.3-apacheb97df9e0e1ee
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,507
ilumilumOfficialVerified publisher6.7.31 of 19See more

ilum ilum 6.7.3

1 of the 19 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

23,228
syncthingk8s-home-lab-repo5.2.01 of 1See more

syncthing k8s-home-lab-repo 5.2.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
syncthing/syncthing:2.1.1775c4aac4862
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,230
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.10

Open the chart page →

3,395
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

7,007
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
curl@8.14.1-2
no fix listed

Open the chart page →

5,634
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

4,332
netris-controllernetrisai2.8.21 of 14See more

netris-controller netrisai 2.8.2

1 of the 14 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
netrisai/controller-web-service-frontend:4.6.0-0138c5074f55ae5
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

30,326
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,489
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.25
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.25

Open the chart page →

14,184
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4

Open the chart page →

11,782
tbmq-clustertbmq-helm-chartOfficialVerified publisher2.1.02 of 3See more

tbmq-cluster tbmq-helm-chart 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
thingsboard/tbmq-integration-executor:2.4.0b5a9c1addf80
curl@8.14.1-2+deb13u4
no fix listed
thingsboard/tbmq-node:2.4.070661025dba5
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,534
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
curl@7.68.0-1ubuntu2.25
7.68.0-1ubuntu2.25+esm4

Open the chart page →

7,268
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4

Open the chart page →

6,348
elasticsearch-clusterwiremindVerified publisher4.5.21 of 2See more

elasticsearch-cluster wiremind 4.5.2

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
curl@8.5.0-2ubuntu10.8
8.5.0-2ubuntu10.10

Open the chart page →

2,283
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.25

Open the chart page →

5,630
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4

Open the chart page →

30,668
home-assistantalekcVerified publisher2.11.21 of 1See more

home-assistant alekc 2.11.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

2,133
phpmyadminalekcVerified publisher0.3.11 of 1See more

phpmyadmin alekc 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,582
home-assistantandrenarchyVerified publisher14.103.01 of 1See more

home-assistant andrenarchy 14.103.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.1612d76760b54
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

2,133
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

6,457

Container images carrying it

1,460 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
selenium/hub:3.141.5902f251d48d5f
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
3
vaultwarden/server:1.37.1ebdfe70701c6
curl@8.14.1-2+deb13u4
no fix listed
3
xenondb/percona:5.7.330e26872a2b67
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm4
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
curl@7.88.1-10
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
curl@7.88.1-10+deb12u7
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
curl@7.81.0-1ubuntu1.7
7.81.0-1ubuntu1.25
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
curl@7.47.0-1ubuntu2.19
7.47.0-1ubuntu2.19+esm16
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.25
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
curl@7.88.1-10+deb12u14
no fix listed
3
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
curl@8.17.0-r1
8.22.0-r0
3
alpine/k8s:1.32.12048f8d9c8cc7
curl@8.18.0-r0
8.21.0-r0
2
alpine/kubectl:1.35.49ccd82364762
curl@8.17.0-r1
8.22.0-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
curl@8.17.0-r1
8.22.0-r0
2
apache/nifi-registry:1.26.07cdfd8deec92
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.25
2
apache/rocketmq:5.4.0319cd8a81ed1
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.10
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
curl@7.88.1-10+deb12u12
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
curl@7.88.1-10+deb12u12
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
curl@8.14.1-2+deb13u4
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
curl@7.88.1-10+deb12u5
no fix listed
2
clamav/clamav:1.4.3_base629a3050df6a
curl@8.17.0-r1
8.22.0-r0
2
dunglas/mercure:v0:v0.24.2916834e49961
curl@8.17.0-r1
8.22.0-r0
2
eqalpha/keydb:latest6537505c4235
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm4
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm4
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
curl@8.14.1-2+deb13u2
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
curl@8.14.1-2+deb13u2
no fix listed
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
curl@7.58.0-2ubuntu3.8
7.58.0-2ubuntu3.24+esm9
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
2
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
2
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
2
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
curl@7.88.1-10
no fix listed
2
gotenberg/gotenberg:8.36.087c16b9f3642
curl@8.21.0-2~bpo13+1
no fix listed
2
gotenberg/gotenberg:8:8.37.0f29984bd1e22
curl@8.21.0-2~bpo13+1
no fix listed
2
gradiant/ueransim:3.2.6015b30d5fa0f
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25
2
grafana/grafana:12.3.12175aaa91c96
curl@8.17.0-r1
8.22.0-r0
2
grafana/grafana:12.3.39e1e77ade304
curl@8.17.0-r1
8.22.0-r0
2
grafana/grafana:12.4.1e932bd6ed0e0
curl@8.17.0-r1
8.22.0-r0
2
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
curl@8.14.1-2+deb13u4
no fix listed
2
graviteeio/apim-management-api:4.12.19-debian27374522cd04
curl@8.14.1-2+deb13u4
no fix listed
2
infisical/infisical:latest:v0.165.602082bf13163
curl@8.14.1-2+deb13u4
no fix listed
2
interlayhq/interbtc:latesta66d0e35e70f
curl@7.68.0-1ubuntu2.25
7.68.0-1ubuntu2.25+esm4
2
istio/kubectl:1.5.10dbb7726d1bf0
curl@7.58.0-2ubuntu3.9
7.58.0-2ubuntu3.24+esm9
2
istio/proxyv2:1.18.0757d28c24100
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.25
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.