StackRadar

CVE-2026-9547

High

Advisory

Published 24 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,250
of 17,787 indexed, latest versions
Container images
1,110
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,250 of 17,787 indexed charts deploy, on 1,110 images.

Affected packageAffected versionsFixed inImages
curldeb1:8.14.1-2+deb13u3+e1, 7.81.0-1ubuntu1.2, 7.81.0-1ubuntu1.3, 7.81.0-1ubuntu1.4+48 more7.81.0-1ubuntu1.25, 8.5.0-2ubuntu10.10, 8.14.1-2+e15, 8.14.1-2ubuntu1.4+1 more895
curlapk8.12.1-r0, 8.17.0-r1, 8.18.0-r0, 8.19.0-r0+2 more8.21.0-r0, 8.22.0-r0215
OSV records
ALPINE-CVE-2026-9547DEBIAN-CVE-2026-9547UBUNTU-CVE-2026-9547ECHO-07b2-9e60-e1ba
Also known as
USN-8487-1

Charts affected

1,250 by stars
ChartLatestAffected imagesRadar Score
accounts-uiappscodeVerified publisher2026.9.111 of 1See more

accounts-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
aceappscodeVerified publisher2026.9.111 of 2See more

ace appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,894
ace-installerappscodeVerified publisher2026.9.111 of 2See more

ace-installer appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,225
ace-installer-certifiedappscodeVerified publisher2026.9.111 of 2See more

ace-installer-certified appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

3,225
billingappscodeVerified publisher2026.9.111 of 1See more

billing appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.25

Open the chart page →

3,963
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25
ghcr.io/appscode/inbox-server:latest536358d7b17e
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.25

Open the chart page →

15,573
james-komposeappscodeVerified publisher0.1.02 of 4See more

james-kompose appscode 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25

Open the chart page →

16,975
marketplace-apiappscodeVerified publisher2026.9.111 of 1See more

marketplace-api appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

2,592
platform-apiappscodeVerified publisher2026.9.112 of 3See more

platform-api appscode 2026.9.11

2 of the 3 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
curl@7.88.1-10+deb12u15
no fix listed
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
curl@8.16.0-4~bpo13+1
no fix listed

Open the chart page →

37,268
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
curl@7.81.0-1ubuntu1.16
7.81.0-1ubuntu1.25

Open the chart page →

3,270
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

5,657
appwriteappwrite-helmVerified publisher1.3.22 of 8See more

appwrite appwrite-helm 1.3.2

2 of the 8 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
curl@8.17.0-r1
8.22.0-r0
clamav/clamav:1.0dd0d9cc746af
curl@8.20.0-r1
8.21.0-r0

Open the chart page →

9,847
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
curl@8.14.1-2
no fix listed

Open the chart page →

7,489
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

7,300
arlas-aiasarlas-stackVerified publisher28.8.011 of 22See more

arlas-aias arlas-stack 28.8.0

11 of the 22 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
curl@7.88.1-10+deb12u8
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
curl@7.88.1-10+deb12u12
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
curl@7.88.1-10+deb12u12
no fix listed
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

40,238
arlas-uisarlas-stackVerified publisher28.8.04 of 4See more

arlas-uis arlas-stack 28.8.0

4 of the 4 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
gisaia/arlas-fam-wui:0.18.13700dcaf7a75
curl@8.20.0-r0
8.22.0-r0
gisaia/arlas-wui:28.0.3b83b3e067173
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
curl@8.19.0-r0
8.22.0-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

2,985
titilerarlas-stackVerified publisher28.8.01 of 1See more

titiler arlas-stack 28.8.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,445
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.25

Open the chart page →

10,061
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25

Open the chart page →

18,277
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

8,032
smartorchestratorassist-iot-smart-orchestrator4.0.01 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

1 of the 14 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
curl@7.88.1-10+deb12u1
no fix listed

Open the chart page →

45,363
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

13,913
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.25
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
curl@7.88.1-10+deb12u7
no fix listed

Open the chart page →

32,501
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

9,412
istio-discoveryaveshaVerified publisher1.16.01 of 1See more

istio-discovery avesha 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
istio/pilot:1.16.0ac0284d75ec9
curl@7.81.0-1ubuntu1.6
7.81.0-1ubuntu1.25

Open the chart page →

6,908
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,297
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

7,152
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:news3e8880fbbb96
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:blog4a7707410bf1
curl@7.88.1-10+deb12u12
no fix listed
kuzwolka/aws9:shop84a9d9766345
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

18,344
aws-web-service-proxifiedaws-web-service-proxified1.8.01 of 2See more

aws-web-service-proxified aws-web-service-proxified 1.8.0

1 of the 2 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

3,009
azp-agentazp-agent1.2.01 of 1See more

azp-agent azp-agent 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
cheveo/azp-agent:1.0.282240f890884
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25

Open the chart page →

3,268
ragflowbaboulinet0.1.11 of 5See more

ragflow baboulinet 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
infiniflow/infinity:v0.7.0992c87a68612
curl@7.81.0-1ubuntu1.23
7.81.0-1ubuntu1.25

Open the chart page →

5,823
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
curl@8.14.1-2+deb13u2
no fix listed

Open the chart page →

2,738
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
curl@7.88.1-10+deb12u4
no fix listed

Open the chart page →

6,297
my-nginx-appbassant-nginx-app0.1.01 of 1See more

my-nginx-app bassant-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

4,028
pangolinbdcode0.14.11 of 1See more

pangolin bdcode 0.14.1

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
fosrl/pangolin:latest83a55f933b4d
curl@7.88.1-10+deb12u15
no fix listed

Open the chart page →

1,901
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
curl@7.81.0-1ubuntu1.18
7.81.0-1ubuntu1.25

Open the chart page →

7,190
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10

Open the chart page →

5,059
tenzu-frontbiru-scop3.1.01 of 1See more

tenzu-front biru-scop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

845
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
curl@7.88.1-10+deb12u8
no fix listed

Open the chart page →

10,145
bdbablackduck2026.6.31 of 9See more

bdba blackduck 2026.6.3

1 of the 9 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.2.6a52221a2a3eb
curl@8.14.1-2+deb13u3
no fix listed

Open the chart page →

9,521
blackduck-alertblackduck8.4.02 of 4See more

blackduck-alert blackduck 8.4.0

2 of the 4 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
curl@8.17.0-r1
8.22.0-r0
blackducksoftware/blackduck-alert-rabbitmq:8.4.08f422b18d171
curl@8.17.0-r1
8.22.0-r0

Open the chart page →

4,292
bluespacebluespace0.3.01 of 1See more

bluespace bluespace 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
curl@8.14.1-2+deb13u4
no fix listed

Open the chart page →

1,827
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
curl@7.88.1-10+deb12u12
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
curl@7.88.1-10+deb12u12
no fix listed

Open the chart page →

26,996
jaegerbook-k8sinfra-v23.4.01 of 5See more

jaeger book-k8sinfra-v2 3.4.0

1 of the 5 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25

Open the chart page →

19,229
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
curl@7.88.1-10+deb12u5
no fix listed

Open the chart page →

8,323
Filebrowserbrandan-schmitz-helm-chartsVerified publisher1.3.11 of 1See more

Filebrowser brandan-schmitz-helm-charts 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
filebrowser/filebrowser:v2.63.15-s6dbac07403040
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

995
flaresolverrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

flaresolverr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
curl@7.88.1-10+deb12u14
no fix listed

Open the chart page →

27,274
qbittorrentbrandan-schmitz-helm-chartsVerified publisher2.2.01 of 1See more

qbittorrent brandan-schmitz-helm-charts 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-9547.

Container imageDigestPackageFixed in
linuxserver/qbittorrent:5.2.2dd24a5f3db32
curl@8.19.0-r0
8.22.0-r0

Open the chart page →

956

Container images carrying it

1,110 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
curl@7.88.1-10+deb12u12
no fix listed
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
curl@7.81.0-1ubuntu1.24
7.81.0-1ubuntu1.25
1
geonode/geoserver_data:2.28.4-latest435cbc5f3f05
curl@8.20.0-r1
8.21.0-r0
1
gethue/hue:latest7d5c1b9f8a79
curl@7.81.0-1ubuntu1.21
7.81.0-1ubuntu1.25
1
getsentry/relay:24.10.0ba7bf9163219
curl@7.88.1-10+deb12u7
no fix listed
1
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
curl@7.88.1-10+deb12u14
no fix listed
1
gitea/act_runner:nightly7940221bcfc9
curl@8.17.0-r1
8.22.0-r0
1
gitea/act_runner:0.3.1c2a169c5e998
curl@8.17.0-r1
8.22.0-r0
1
gitea/gitea:1.26.27d13848af126
curl@8.19.0-r0
8.22.0-r0
1
glpi/glpi:latest4b681082a79e
curl@8.14.1-2+deb13u4
no fix listed
1
gomods/athens:v0.17.10f61d1e62359
curl@8.17.0-r1
8.22.0-r0
1
gomods/athens:v0.18.197cc113b34b0
curl@8.20.0-r0
8.22.0-r0
1
google/cloud-sdk:alpinef7d3e6d6d4f4
curl@8.20.0-r0
8.22.0-r0
1
gotenberg/gotenberg:8.30206a6c708fc6
curl@8.19.0-1~bpo13+1
no fix listed
1
gotenberg/gotenberg:8.3467097317623a
curl@8.20.0-5~bpo13+1
no fix listed
1
gotenberg/gotenberg:8-chromiuma40f92d7419a
curl@8.14.1-2+deb13u4
no fix listed
1
gradiant/open5gs-dbctl:0.10.3332031245fce
curl@8.5.0-2ubuntu10.6
8.5.0-2ubuntu10.10
1
grafana/grafana:13.0.10f86bada30d6
curl@8.17.0-r1
8.22.0-r0
1
grafana/grafana:13.0.1-security-012d1f9ae67c17
curl@8.17.0-r1
8.22.0-r0
1
grafana/grafana:12.3.2ba93c9d192e5
curl@8.17.0-r1
8.22.0-r0
1
graviteeio/ae-engine:3.0.24140932887e0
curl@8.20.0-r0
8.22.0-r0
1
graylog/graylog:6.1.1019de1aff48c2
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25
1
guacamole/guacamole:1.5.50f62f6d17ab3
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25
1
gulacedia/web-dvwa-new:v367b467d961ca
curl@7.88.1-10
no fix listed
1
haohanyang/compass-web:0.5.054f2112602ee
curl@7.88.1-10+deb12u14
no fix listed
1
haohanyang/compass-web:0.5.1f4f8fe4e21f1
curl@7.88.1-10+deb12u15
no fix listed
1
haproxytech/haproxy-alpine:3.4.37a3ef2dd8b5b
curl@8.20.0-r0
8.22.0-r0
1
haproxytech/haproxy-unified-gateway:1.0.7b9bffe2d0fd1
curl@8.20.0-r0
8.22.0-r0
1
haproxytech/kubernetes-ingress:3.2.14d90f628d659e
curl@8.20.0-r0
8.22.0-r0
1
hasura/graphql-engine:v2.34.0-ce0111b0204136
curl@7.81.0-1ubuntu1.10
7.81.0-1ubuntu1.25
1
hasura/graphql-engine:v2.48.10f6c1c4b957d2
curl@7.81.0-1ubuntu1.20
7.81.0-1ubuntu1.25
1
hazegoodlife/haaze:veggiesite50f02d2d5d4d
curl@7.88.1-10+deb12u8
no fix listed
1
hazegoodlife/haaze:milksite8d4c63169e14
curl@7.88.1-10+deb12u8
no fix listed
1
hazelcast/hazelcast:latestf086bf0ecb23
curl@8.17.0-r1
8.22.0-r0
1
healthchecks/healthchecks:latestaa08a61b0dcf
curl@8.14.1-2+deb13u4
no fix listed
1
heartexlabs/label-studio:latestaa461572e8f9
curl@8.17.0-r1
8.22.0-r0
1
hecrom/myweatherangularclient:1.3.11bb0372939c19
curl@7.88.1-10+deb12u6
no fix listed
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
curl@7.88.1-10+deb12u6
no fix listed
1
helmforge/fastmcp-server:0.2.061f759a1421f
curl@8.14.1-2+deb13u2
no fix listed
1
helmforge/fastmcp-server:0.11.2fcb7017327d6
curl@8.14.1-2+deb13u2
no fix listed
1
helmforge/openreel-video:v0.5.07ba0d47b943f
curl@8.17.0-r1
8.22.0-r0
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
curl@8.14.1-2
no fix listed
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
curl@7.88.1-10+deb12u5
no fix listed
1
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
curl@7.88.1-10+deb12u14
no fix listed
1
hivemq/hivemq-operator:4.7.10241d6a8e1963
curl@7.81.0-1ubuntu1.8
7.81.0-1ubuntu1.25
1
hmediade/printserver:latest481a552c8e1c
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25
1
hmediade/printserver-init:latest7f005eb6c718
curl@7.81.0-1ubuntu1.15
7.81.0-1ubuntu1.25
1
homeassistant/home-assistant:2026.75a531753cea9
curl@8.20.0-r1
8.21.0-r0
1
hwdsl2/ipsec-vpn-server:latest2e939ffe5913
curl@8.20.0-r0
8.22.0-r0
1
hyperglance/init:wildfly467ad8491bc3
curl@7.81.0-1ubuntu1.23
7.81.0-1ubuntu1.25
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.