StackRadar

CVE-2026-8927

Critical

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.005
41st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,656
of 17,781 indexed, latest versions
Container images
1,460
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: curl security update

Carried by container images the latest versions of 1,656 of 17,781 indexed charts deploy, on 1,460 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16+103 more7.35.0-1ubuntu2.20+esm20, 7.47.0-1ubuntu2.19+esm16, 7.58.0-2ubuntu3.24+esm9, 7.68.0-1ubuntu2.25+esm4+5 more1,236
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0217
curlrpm8.12.1-4.el100:8.12.1-4.el10_2.47
OSV records
ALPINE-CVE-2026-8927DEBIAN-CVE-2026-8927UBUNTU-CVE-2026-8927RHSA-2026:55432RLSA-2026:55432ECHO-5c3c-57c5-8fb2
Also known as
USN-8487-1

Charts affected

1,656 by stars
ChartLatestAffected imagesRadar Score
vaultwardenandrenarchyVerified publisher6.27.01 of 1See more

vaultwarden andrenarchy 6.27.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,744
limesurveyarea-42Verified publisher0.3.931 of 2See more

limesurvey area-42 0.3.93

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
adamzammit/limesurvey:7.0.15e75e2f455c8d
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,668
athens-proxyathens-chartsOfficialVerified publisher0.17.11 of 1See more

athens-proxy athens-charts 0.17.1

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
gomods/athens:v0.18.197cc113b34b0
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

1,298
auto-deploy-appav1o-chartsVerified publisher0.15.41 of 1See more

auto-deploy-app av1o-charts 0.15.4

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
curl@7.47.0-1ubuntu2.2
7.47.0-1ubuntu2.19+esm16

Open the chart page →

11,007
bookstackbookstack-mgVerified publisher0.3.11 of 2See more

bookstack bookstack-mg 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
linuxserver/bookstack:26.05.202605282ebf97852661
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

1,896
backup-zenbzen0.1.41 of 1See more

backup-zen bzen 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
rezachalak/bzen-mongo:1.0.034f694325191
curl@7.68.0-1ubuntu2.19
7.68.0-1ubuntu2.25+esm4

Open the chart page →

7,960
collabora-codechrisingenhaag2.6.01 of 1See more

collabora-code chrisingenhaag 2.6.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
collabora/code:23.05.10.1.105299b452f7f
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

4,180
dumpscriptcloudscriptVerified publisher1.8.31 of 1See more

dumpscript cloudscript 1.8.3

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/cloudscript-technology/dumpscript:v0.0.42-alpine-edgefce5b6fd161c
curl@8.19.0-r0
8.21.0-r0

Open the chart page →

2,125
convertigoconvertigoOfficialVerified publisher8.4.32 of 5See more

convertigo convertigo 8.4.3

2 of the 5 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
baserow/baserow:1.30.1df0c42eb67e8
curl@7.88.1-10+deb12u8
no fix listed
library/couchdb:3.4.22817ad50b5c5
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

17,404
cosmocosmo-platformOfficialVerified publisher0.20.02 of 10See more

cosmo cosmo-platform 0.20.0

2 of the 10 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r56dabb4a2088c
curl@7.88.1-10+deb12u12
no fix listed
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

28,839
dask-kubernetes-operatordask2026.3.01 of 1See more

dask-kubernetes-operator dask 2026.3.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

9,316
defectdojodefectdojo1.9.511 of 4See more

defectdojo defectdojo 1.9.51

1 of the 4 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
defectdojo/defectdojo-django:3.3.1b140a89a34e2
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,408
zabbix-kubernetes-discoverydjerfyVerified publisher1.4.201 of 1See more

zabbix-kubernetes-discovery djerfy 1.4.20

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
curl@8.5.0-2ubuntu10.5
8.5.0-2ubuntu10.10

Open the chart page →

4,147
duplistatusduplistatusVerified publisher1.2.01 of 2See more

duplistatus duplistatus 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
wsjbr/duplistatus:1.4.25e594f5f09f6
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

1,870
bscdysnixVerified publisher0.6.591 of 4See more

bsc dysnix 0.6.59

1 of the 4 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
gcr.io/google.com/cloudsdktool/google-cloud-cli:alpine6d35276c2562
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

2,012
edgelessdbedgelesssysVerified publisher0.3.21 of 1See more

edgelessdb edgelesssys 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
curl@7.68.0-1ubuntu2.14
7.68.0-1ubuntu2.25+esm4

Open the chart page →

4,830
zabbix-agentfermosit0.0.51 of 1See more

zabbix-agent fermosit 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

2,369
keydbfinkinfridomVerified publisher0.48.31 of 1See more

keydb finkinfridom 0.48.3

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm4

Open the chart page →

5,264
rsshubgabe565Verified publisher0.8.01 of 3See more

rsshub gabe565 0.8.0

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
diygod/rsshub:latest1d4b508b6357
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,717
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
curl@7.58.0-2ubuntu3.13
7.58.0-2ubuntu3.24+esm9

Open the chart page →

22,773
network-ups-toolsgeek-cookbookVerified publisher6.4.21 of 1See more

network-ups-tools geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm4

Open the chart page →

13,950
plexgeek-cookbookVerified publisher6.4.31 of 1See more

plex geek-cookbook 6.4.3

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm4

Open the chart page →

9,627
signal-cli-rest-apigeek-cookbookVerified publisher1.2.21 of 1See more

signal-cli-rest-api geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4

Open the chart page →

10,154
tautulligeek-cookbookVerified publisher11.4.21 of 1See more

tautulli geek-cookbook 11.4.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4

Open the chart page →

10,628
unifigeek-cookbookVerified publisher5.1.31 of 1See more

unifi geek-cookbook 5.1.3

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.4.162b3edc809a3ff
curl@7.58.0-2ubuntu3.24
7.58.0-2ubuntu3.24+esm9

Open the chart page →

11,839
aegraviteeioVerified publisher3.0.21 of 1See more

ae graviteeio 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
graviteeio/ae-engine:3.0.24140932887e0
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

1,380
apimgraviteeioVerified publisher4.12.192 of 4See more

apim graviteeio 4.12.19

2 of the 4 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
curl@8.14.1-2+deb13u4
no fix listed
graviteeio/apim-management-api:4.12.19-debian27374522cd04
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,806
haproxyhaproxytechVerified publisher1.30.11 of 1See more

haproxy haproxytech 1.30.1

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
haproxytech/haproxy-alpine:3.4.37a3ef2dd8b5b
curl@8.20.0-r0
8.22.0-r0

Open the chart page →

817
headscaleheadscaleVerified publisher1.0.191 of 3See more

headscale headscale 1.0.19

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
alpine/k8s:1.36.244ef4942e171
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

3,383
simple-krr-dashboardhelm-simple-krr-dashboardVerified publisher1.6.21 of 3See more

simple-krr-dashboard helm-simple-krr-dashboard 1.6.2

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.2ec8f734b0a10
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

2,234
home-assistanthome-assistantVerified publisher0.5.101 of 3See more

home-assistant home-assistant 0.5.10

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

2,331
infrahub-enterpriseinfrahub-enterpriseVerified publisher4.19.21 of 5See more

infrahub-enterprise infrahub-enterprise 4.19.2

1 of the 5 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

10,530
coreinstill-aiOfficialVerified publisher0.1.754 of 15See more

core instill-ai 0.1.75

4 of the 15 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
instill/artifact-backend:b28766ac4a393e601ed
curl@8.14.1-2+deb13u2
no fix listed
instill/mgmt-backend:d0933d4ebe12f77a3f9
curl@8.14.1-2+deb13u2
no fix listed
instill/model-backend:611f0f2e980125e5ba5
curl@8.14.1-2+deb13u2
no fix listed
temporalio/admin-tools:1.28cfde8170c92f
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

30,816
dayz-dedicated-serverjespernohrVerified publisher0.1.21 of 3See more

dayz-dedicated-server jespernohr 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.10

Open the chart page →

4,309
home-assistantk8s-home-lab-repo16.3.11 of 1See more

home-assistant k8s-home-lab-repo 16.3.1

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

4,634
wireguardk8s-home-lab-repo1.6.01 of 1See more

wireguard k8s-home-lab-repo 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.25+esm4

Open the chart page →

7,337
webdavk8s-webdavVerified publisher0.0.71 of 1See more

webdav k8s-webdav 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
library/httpd:2.4979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,681
radondb-mysqlkubesphere-testVerified publisher1.0.11 of 3See more

radondb-mysql kubesphere-test 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
xenondb/percona:5.7.330e26872a2b67
curl@7.68.0-1ubuntu2.5
7.68.0-1ubuntu2.25+esm4

Open the chart page →

7,342
kubeservice-lxcfs-webhookkubservice-chartsVerified publisher1.6.01 of 6See more

kubeservice-lxcfs-webhook kubservice-charts 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
dongjiang1989/lxcfs:v6.0.34bf9ae391948
curl@7.68.0-1ubuntu2.25
7.68.0-1ubuntu2.25+esm4

Open the chart page →

11,582
lightsteplightstepsatellite1.2.41 of 1See more

lightstep lightstepsatellite 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
curl@7.47.0-1ubuntu2.12
7.47.0-1ubuntu2.19+esm16

Open the chart page →

15,330
kafdroplsst-sqre0.1.31 of 1See more

kafdrop lsst-sqre 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4

Open the chart page →

7,901
kubecostmesosphere-stable0.37.51 of 9See more

kubecost mesosphere-stable 0.37.5

1 of the 9 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.30.5744f84cf7493
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

17,693
observalobservalVerified publisher1.13.11 of 8See more

observal observal 1.13.1

1 of the 8 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/observal/observal-api:1.13.1153b8b893232
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

5,828
openclaw-with-brainopenclaw-with-brainVerified publisher0.1.671 of 3See more

openclaw-with-brain openclaw-with-brain 0.1.67

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

5,218
oesopsmxVerified publisher4.0.322 of 25See more

oes opsmx 4.0.32

2 of the 25 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
curl@7.47.0-1ubuntu2.18
7.47.0-1ubuntu2.19+esm16
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

107,811
part-dbpart-dbVerified publisher0.1.21 of 1See more

part-db part-db 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
jbtronics/part-db1:latest5db71f6db59d
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,327
psmdb-operatorpercona1.23.11 of 1See more

psmdb-operator percona 1.23.1

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.23.0feaff989e253
curl@8.12.1-4.el10
0:8.12.1-4.el10_2.4

Open the chart page →

246
phpmyadminphpmyadminVerified publisher1.0.31 of 1See more

phpmyadmin phpmyadmin 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

2,582
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

5,435
repoflowrepoflow-helm-public0.9.12 of 8See more

repoflow repoflow-helm-public 0.9.1

2 of the 8 container images this version deploys carry CVE-2026-8927.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25
library/elasticsearch:8.15.0310b9fc03b06
curl@7.68.0-1ubuntu2.23
7.68.0-1ubuntu2.25+esm4

Open the chart page →

13,521

Container images carrying it

1,460 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
akeyless/base:latest759e4289fae8
curl@8.5.0-2ubuntu10.9
8.5.0-2ubuntu10.10
1
aktosecurity/data-ingestion-service213aded7adc5
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
1
alazidis/stornx:1.1.1602d4f7f090c
curl@7.88.1-10+deb12u14
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
curl@7.88.1-10+deb12u8
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
curl@7.58.0-2ubuntu3.19
7.58.0-2ubuntu3.24+esm9
1
alpine/helm:4.1.0905a068da431
curl@8.18.0-r0
8.21.0-r0
1
alpine/k8s:1.36.244ef4942e171
curl@8.20.0-r1
8.21.0-r0
1
alpine/k8s:1.35.6b7a12c5ddf26
curl@8.20.0-r1
8.21.0-r0
1
alpine/k8s:1.35.5d870622d0040
curl@8.20.0-r1
8.21.0-r0
1
alpine/kubectl:1.36.01ee9df6316d4
curl@8.17.0-r1
8.22.0-r0
1
alpine/kubectl:1.35.0862d86046bbc
curl@8.17.0-r1
8.22.0-r0
1
alpine/kubectl:1.35.3c4a11ae9a1cb
curl@8.17.0-r1
8.22.0-r0
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
curl@8.5.0-2ubuntu10.4
8.5.0-2ubuntu10.10
1
anguda/ant-media:2.5c435285fc241
curl@7.68.0-1ubuntu2.18
7.68.0-1ubuntu2.25+esm4
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
curl@8.14.1-2+deb13u2
no fix listed
1
anujdatar/cups:25.07.01685df04a643b
curl@7.88.1-10+deb12u12
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
1
apache/activemq-artemis:2.37.0bae523439ee3
curl@8.5.0-2ubuntu10.2
8.5.0-2ubuntu10.10
1
apache/airflow:2.8.4-python3.964e58748b6b9
curl@7.88.1-10+deb12u5
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
curl@7.88.1-10+deb12u7
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
curl@7.88.1-10+deb12u5
no fix listed
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.25
1
apache/hertzbeat:1.8.075d48a62748f
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
1
apache/iotdb:0.13.3-nodeafa47bf1692a
curl@7.68.0-1ubuntu2.13
7.68.0-1ubuntu2.25+esm4
1
apache/nifi-registry:1.27.063b8e3e40742
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.25
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
curl@7.81.0-1ubuntu1.13
7.81.0-1ubuntu1.25
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
1
apachepulsar/pulsar:3.0.79c9947de139d
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.25
1
apachepulsar/pulsar:2.9.0d056c89b7131
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
1
apachepulsar/pulsar:2.8.2d538416d5afe
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
1
apache/ranger:2.7.076c176e8a0e4
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25
1
apache/rocketmq:5.3.0434d8398f996
curl@8.5.0-2ubuntu10.1
8.5.0-2ubuntu10.10
1
apache/rocketmq-exporter:0.0.2c8fb51195444
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25
1
apache/skywalking-oap-server:9.2.0133d35d2c263
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.25
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
1
apache/skywalking-ui:9.2.0295f1dc87d98
curl@7.81.0-1ubuntu1.3
7.81.0-1ubuntu1.25
1
apache/skywalking-ui:8.9.180530f0308a5
curl@7.68.0-1ubuntu2.7
7.68.0-1ubuntu2.25+esm4
1
apache/superset:4.0.1ab9467fd712c
curl@7.88.1-10+deb12u5
no fix listed
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
curl@8.14.1-2+deb13u2
no fix listed
1
appwrite/appwrite:1.9.01aaa70127114
curl@8.17.0-r1
8.22.0-r0
1
appwrite/appwrite:1.9.6adc7d0e7ec23
curl@8.19.0-r0
8.22.0-r0
1
appwrite/console:8.7.383dcdc8492ac6
curl@8.17.0-r1
8.22.0-r0
1
aquasec/trivy:0.69.3bcc376de8d77
curl@8.17.0-r1
8.22.0-r0
1
archivebox/archivebox:0.7.41a5a37331091
curl@8.14.1-2+deb13u2~bpo13+1
no fix listed
1
aristidetm/basic-notebook:3.6.5469dbc951224
curl@7.88.1-10+deb12u6
no fix listed
1
artur9010/wait-for:v1.0.06b4de3ce8b0e
curl@7.88.1-10+deb12u5
no fix listed
1
arunvelsriram/utils:latest655ad18fd8d6
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
curl@7.68.0-1ubuntu2.20
7.68.0-1ubuntu2.25+esm4
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
curl@7.68.0-1ubuntu2.12
7.68.0-1ubuntu2.25+esm4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.