CVE-2026-8927
CriticalAdvisory
Published 24 Jun 2026In the index since 5 Sept 2026
- Severity
- Critical
- worst across findings
- CVSS
- 9.1
- base score, highest
- EPSS
- 0.005
- 42nd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,658
- of 17,792 indexed, latest versions
- Container images
- 1,461
- deployed by those charts
- Fix available
- 3 of 3
- affected packages
Red Hat Security Advisory: curl security update
Carried by container images the latest versions of 1,658 of 17,792 indexed charts deploy, on 1,461 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| curldeb | 1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+103 more | 7.35.0-1ubuntu2.20+esm20, 7.47.0-1ubuntu2.19+esm16, 7.58.0-2ubuntu3.24+esm9, 7.68.0-1ubuntu2.25+esm4+5 more | 1,239 |
| curlapk | 8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more | 8.21.0-r0, 8.22.0-r0 | 215 |
| curlrpm | 8.12.1-4.el10 | 0:8.12.1-4.el10_2.4 | 7 |
- OSV records
- ALPINE-CVE-2026-8927DEBIAN-CVE-2026-8927UBUNTU-CVE-2026-8927RHSA-2026:55432RLSA-2026:55432ECHO-5c3c-57c5-8fb2
- Also known as
- USN-8487-1
Charts affected
1,658 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| playwright-synthetic-monitoringwork-adventure | 1.0.1 | 1 of 1See more | 14,218 |
| xboardxboard | 0.2.0 | 1 of 1See more | 1,042 |
| tabbyxdVerified publisher | 1.0.6 | 1 of 2See more | 7,714 |
| xkopsxkops | 0.1.0 | 1 of 5See more | 13,813 |
| nginx-chartxxoznge-nginx | 0.1.0 | 1 of 1See more | 1,861 |
| my-nginx-appyasser-nginx-app | 0.1.0 | 1 of 1See more | 1,861 |
| language-toolzekker6Verified publisher | 1.12.1 | 1 of 2See more | 1,565 |
| NEW_APPzekker6Verified publisher | 0.0.0 | 1 of 1See more | 1,861 |
Container images carrying it
1,461 by charts deploying them
A fixed version is listed for 3 of the 3 affected packages.