StackRadar

CVE-2024-13176

Medium

Advisory

Published 20 Jan 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.1
base score, highest
EPSS
0.006
48th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,343
of 17,803 indexed, latest versions
Container images
2,670
deployed by those charts
Fix available
2 of 5
affected packages

openssl - security update

Carried by container images the latest versions of 2,343 of 17,803 indexed charts deploy, on 2,670 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+92 more1.1.1f-1ubuntu2.24, 1.1.1f-1ubuntu2.fips.24, 1.1.1w-0+deb11u3, 3.0.2-0ubuntu1.19+2 more1,757
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r0, 3.3.2-r2, 3.3.2-r5+1 more912
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 moreno fix listed15
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
edk2deb2022.11-6+deb12u2no fix listed1
OSV records
ALPINE-CVE-2024-13176CGA-82rc-p89h-xq36DEBIAN-CVE-2024-13176UBUNTU-CVE-2024-13176DLA-4176-1
Also known as
CGA-qxwv-h54f-gwqm, USN-7278-1

Charts affected

2,343 by stars
ChartLatestAffected imagesRadar Score
kubedb-provider-gcpappscodeVerified publisher2026.7.101 of 2See more

kubedb-provider-gcp appscode 2026.7.10

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/kubedb/provider-gcp:v0.27.0a1d4cf8b8fe1
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

3,041
kubeform-provider-awsappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-aws appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-aws:v0.0.1e3d1f1302e49
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,803
kubeform-provider-azureappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-azure appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-azure:v0.0.1ac8459f70f85
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,724
kubeform-provider-gcpappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-gcp appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-gcp:v0.0.1af77073c184f
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,750
license-proxyserver-addon-managerappscodeVerified publisher2024.2.251 of 1See more

license-proxyserver-addon-manager appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/appscode/license-proxyserver:v0.0.8d6c2532ea386
openssl@3.1.4-r5
3.1.8-r0

Open the chart page →

1,391
marketplace-uiappscodeVerified publisher2026.9.111 of 1See more

marketplace-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/appscode/marketplace-ui:0.3.1d52177072013
openssl@3.3.2-r1
3.3.2-r2

Open the chart page →

721
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.19

Open the chart page →

3,322
cloud-portalappuio0.4.11 of 1See more

cloud-portal appuio 0.4.1

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/appuio/cloud-portal:v0.2.18c7e08d32d70
openssl@1.1.1k-1+deb11u2
1.1.1w-0+deb11u3

Open the chart page →

1,287
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
openssl@3.0.9-1
3.0.16-1~deb12u1

Open the chart page →

5,685
stardog-userrole-operatorappuio0.4.01 of 1See more

stardog-userrole-operator appuio 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/vshn/stardog-userrole-operator:v0.3.04774237c9e86
openssl@3.0.12-r4
3.0.19-r0

Open the chart page →

1,205
appwriteappwrite-helmVerified publisher1.3.24 of 8See more

appwrite appwrite-helm 1.3.2

4 of the 8 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:10.6.12-debian-11-r1315edb5643b73
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u3
bitnamilegacy/redis:7.0.10-debian-11-r059293f5206b7
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u3
kubegems/bitnami-shell:12-debian-12-r24e42e3aaacdd3
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u3
openruntimes/executor:0.11.42228f186dcbb
openssl@3.1.7-r0
3.1.8-r0

Open the chart page →

9,843
arcadearcadeVerified publisher1.10.11 of 10See more

arcade arcade 1.10.1

1 of the 10 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
curlimages/curl:8.5.008e466006f08
openssl@3.1.4-r4
3.1.8-r0

Open the chart page →

991
arlas-aiasarlas-stackVerified publisher28.8.04 of 22See more

arlas-aias arlas-stack 28.8.0

4 of the 22 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1

Open the chart page →

40,651
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24

Open the chart page →

23,435
bind9artem-shestakov1.0.11 of 1See more

bind9 artem-shestakov 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.24

Open the chart page →

3,579
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
openssl@1.1.1-1ubuntu2.1~18.04.6
no fix listed
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24

Open the chart page →

22,725
agenthttpmqttassist-iot-composite-services1.0.01 of 1See more

agenthttpmqtt assist-iot-composite-services 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/composite-services-manager_agent-http-mqtt:latest16d21bc5e42e
openssl@3.1.2-r0
3.1.8-r0

Open the chart page →

1,159
agentmqtthttpassist-iot-composite-services1.0.01 of 1See more

agentmqtthttp assist-iot-composite-services 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/composite-services-manager_agent-mqtt-http:latest27d58b8911cd
openssl@3.1.2-r0
3.1.8-r0

Open the chart page →

1,159
dltkvassist-iot-data-integrity-verification0.2.03 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

3 of the 9 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
no fix listed
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openssl@1.0.2g-1ubuntu4.13
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openssl@1.0.2g-1ubuntu4.15
no fix listed

Open the chart page →

78,035
dltflassist-iot-dlt-based-fl0.2.03 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

3 of the 9 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
no fix listed
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openssl@1.0.2g-1ubuntu4.13
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openssl@1.0.2g-1ubuntu4.15
no fix listed

Open the chart page →

78,035
fllocaloperationsassist-iot-fl-local-operations1.1.01 of 3See more

fllocaloperations assist-iot-fl-local-operations 1.1.0

1 of the 3 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/fl_repository_db:latestad8f72108636
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u3

Open the chart page →

3,789
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24

Open the chart page →

9,422
flrepositorydbassist-iot-fl-repository1.1.01 of 2See more

flrepositorydb assist-iot-fl-repository 1.1.0

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/fl_repository_db:latestad8f72108636
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u3

Open the chart page →

4,369
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
openssl@3.0.11-1~deb12u2
3.0.16-1~deb12u1

Open the chart page →

13,389
locationprocessingassist-iot-location-processing1.0.02 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.19
postgis/postgis:15-3.3a2fc46b52819
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u3

Open the chart page →

10,173
monitoring-notifyingassist-iot-monitoring-notifying0.1.01 of 1See more

monitoring-notifying assist-iot-monitoring-notifying 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/monitoring_notifying:2.0.068324d0fa5bb
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

1,679
multilink-clientassist-iot-multi-link-client-app1.0.01 of 2See more

multilink-client assist-iot-multi-link-client-app 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
curlimages/curl:8.4.04a3396ae573c
openssl@3.1.3-r0
3.1.8-r0

Open the chart page →

1,448
multilink-serverassist-iot-multi-link-server-app1.0.01 of 2See more

multilink-server assist-iot-multi-link-server-app 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
curlimages/curl:8.4.04a3396ae573c
openssl@3.1.3-r0
3.1.8-r0

Open the chart page →

975
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.19

Open the chart page →

18,426
resource-provisioningassist-iot-resource-provisioning1.0.03 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

3 of the 7 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/resource-provisioning_api:1.0.044a37b00d4f8
openssl@3.1.3-r0
3.1.8-r0
assistiot/resource-provisioning_im:1.0.0a942dc14030a
openssl@3.1.4-r2
3.1.8-r0
assistiot/resource-provisioning_prc:1.0.08b5d118bdf0e
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u3

Open the chart page →

8,052
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24

Open the chart page →

7,995
sd-wanassist-iot-sd-wan1.0.01 of 2See more

sd-wan assist-iot-sd-wan 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
library/mongo:4.2.21-bionic9cb28f7291d9
openssl@1.1.1-1ubuntu2.1~18.04.20
no fix listed

Open the chart page →

5,379
semantic-translationassist-iot-semantic-translation1.0.11 of 1See more

semantic-translation assist-iot-semantic-translation 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/semantic_translation:latest2a2587804717
openssl@3.1.3-r0
3.1.8-r0

Open the chart page →

505
smartorchestratorassist-iot-smart-orchestrator4.0.08 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

8 of the 14 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_cluster:latest4f41e1defe99
openssl@3.0.8-r3
3.0.19-r0
assistiot/smart-orchestrator_enabler:latest89f37e88c871
openssl@3.0.8-r3
3.0.19-r0
assistiot/smart-orchestrator_helm:latest9bb46ea14e8e
openssl@3.1.4-r5
3.1.8-r0
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
openssl@3.0.11-1~deb12u2
3.0.16-1~deb12u1
assistiot/smart-orchestrator_repository:latesta8b8dbed04a4
openssl@3.0.8-r3
3.0.19-r0
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
openssl@3.0.11-1~deb12u2
3.0.16-1~deb12u1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
openssl@3.0.9-1
3.0.16-1~deb12u1
library/mongo:4.4.66efa05203990
openssl@1.1.1-1ubuntu2.1~18.04.9
no fix listed

Open the chart page →

45,620
dashboard-pui9assist-iot-tactile-dashboard0.2.01 of 3See more

dashboard-pui9 assist-iot-tactile-dashboard 0.2.0

1 of the 3 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/tacticle_dashboard:api-lateste4414cb72dc4
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u3

Open the chart page →

4,147
traffic-classificationassist-iot-traffic-classification2.0.01 of 2See more

traffic-classification assist-iot-traffic-classification 2.0.0

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/traffic-classification_api:2.0.0e32b87786142
openssl@3.1.4-r5
3.1.8-r0

Open the chart page →

1,165
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24

Open the chart page →

14,001
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.19
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
openssl@3.0.14-1~deb12u2
3.0.16-1~deb12u1

Open the chart page →

32,664
auctioneerastria0.0.21 of 1See more

auctioneer astria 0.0.2

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1

Open the chart page →

2,209
celestia-localastria9.0.01 of 2See more

celestia-local astria 9.0.0

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
openssl@3.3.1-r3
3.3.2-r2

Open the chart page →

3,300
celestia-nodeastria0.7.11 of 1See more

celestia-node astria 0.7.1

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-node:v0.27.5-mocha4768ea1c5fd2
openssl@3.3.1-r3
3.3.2-r2

Open the chart page →

1,513
evm-bridge-withdrawerastria1.0.61 of 1See more

evm-bridge-withdrawer astria 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1

Open the chart page →

2,184
evm-faucetastria0.1.51 of 1See more

evm-faucet astria 0.1.5

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/ria-faucet:0.0.1a06c8ebef427
openssl@3.1.1-r1
3.1.8-r0

Open the chart page →

1,764
flame-rollupastria0.1.31 of 2See more

flame-rollup astria 0.1.3

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/conductor:1.1.01f97d131b1d1
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1

Open the chart page →

3,717
hermesastria0.7.11 of 1See more

hermes astria 0.7.1

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
openssl@1.1.1f-1ubuntu2.24
3.0.13-0ubuntu3.5

Open the chart page →

2,007
hyperlane-agentsastria0.1.41 of 2See more

hyperlane-agents astria 0.1.4

1 of the 2 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.19

Open the chart page →

2,547
sequencerastria4.0.01 of 3See more

sequencer astria 4.0.0

1 of the 3 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
cometbft/cometbft:v0.38.1722c2ac018f40
openssl@3.3.2-r4
3.3.2-r5

Open the chart page →

6,344
sequencer-faucetastria0.9.21 of 1See more

sequencer-faucet astria 0.9.2

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/seq-faucet:0.9.0bf3cb9b505b6
openssl@3.3.2-r0
3.3.2-r2

Open the chart page →

1,320
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
openssl@3.0.11-1~deb12u2
3.0.16-1~deb12u1

Open the chart page →

9,449
istio-discoveryaveshaVerified publisher1.16.01 of 1See more

istio-discovery avesha 1.16.0

1 of the 1 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
istio/pilot:1.16.0ac0284d75ec9
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.19

Open the chart page →

6,965

Container images carrying it

2,670 by charts deploying them

A fixed version is listed for 2 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
openssl@3.0.14-1~deb12u2
3.0.16-1~deb12u1
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
openssl@3.0.14-1~deb12u2
3.0.16-1~deb12u1
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
openssl@3.0.14-1~deb12u2
3.0.16-1~deb12u1
1
ghcr.io/open-telemetry/demo:1.12.0-cartservice89730afa0b5d
openssl@3.3.2-r0
3.3.2-r2
1
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
openssl@3.3.2-r0
3.3.2-r2
1
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.19
1
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
openssl@3.0.11-1~deb12u2
3.0.16-1~deb12u1
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.5
1
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
openssl@3.3.0-r2
3.3.2-r2
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
openssl@3.0.14-1~deb12u2
3.0.16-1~deb12u1
1
ghcr.io/open-telemetry/demo:1.12.0-currencyservicedb69fdf22ec5
openssl@3.1.7-r1
3.1.8-r0
1
ghcr.io/open-telemetry/demo:1.12.0-flagduif6bdafaa9075
openssl@3.3.2-r0
3.3.2-r2
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
openssl@3.0.2-0ubuntu1.19
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
openssl@3.0.14-1~deb12u2
3.0.16-1~deb12u1
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u3
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
openssl@3.0.11-1~deb12u2
3.0.16-1~deb12u1
1
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
openssl@3.0.2-0ubuntu1.19
no fix listed
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/pascaliske/traefik-errors:1.1.00cf31753ce57
openssl@3.0.9-r1
3.0.19-r0
1
ghcr.io/pascaliske/unbound:0.1.09009fbd2ef16
openssl@3.0.7-r0
3.0.19-r0
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
openssl@1.1.1-1ubuntu2.1~18.04.20
no fix listed
1
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
openssl@3.3.2-r1
3.3.2-r2
1
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
openssl@3.3.2-r0
3.3.2-r2
1
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
openssl@1.1.1w-0+deb11u2
1.1.1w-0+deb11u3
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
openssl@3.0.13-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/privacyengineering/hawk-monitor:master13309f068a56
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u3
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.19
1
ghcr.io/pschichtel/cert-manager-webhook-cloudns:1.1.01020638bbe23
openssl@3.1.4-r5
3.1.8-r0
1
ghcr.io/pschichtel/keycloak-webhook-router:main285e226fe7f6
openssl@3.3.2-r1
3.3.2-r2
1
ghcr.io/puckpuck/seashell:1.2ef5e31333821
openssl@3.1.3-r0
3.1.8-r0
1
ghcr.io/pyrra-dev/pyrra:v0.8.10e02ef538ef0
openssl@3.3.2-r0
3.3.2-r2
1
ghcr.io/radar-base/radar-app-config/radar-app-config-frontend:0.6.2c5f1e2ca5781
openssl@3.3.2-r1
3.3.2-r2
1
ghcr.io/radar-base/radar-home/radar-home:0.1.71cfe3da9d812
openssl@3.3.2-r1
3.3.2-r2
1
ghcr.io/radar-base/radar-rest-source-auth/radar-rest-source-authorizer:4.4.153e096497f7db
openssl@3.3.2-r1
3.3.2-r2
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
openssl@3.1.4-r1
3.1.8-r0
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u3
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u3
1
ghcr.io/riotkit-org/backup-repository:v4.0.0ab41ffa78f69
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u3
1
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u3
1
ghcr.io/rivals-space/rivals-nginx:1.6.1f376b96b82cc
openssl@3.0.7-r2
3.0.19-r0
1
ghcr.io/riverqueue/riverui:0.5.32dc54179b25a
openssl@3.1.4-r5
3.1.8-r0
1
ghcr.io/rodg/nodecg-base:latest31be4bf87070
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u3
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
openssl@3.0.9-1
3.0.16-1~deb12u1
1
ghcr.io/salaboy/fmtok8s-email-service:v0.2.0-nativeb52d5dbac2ca
openssl@1.1.1-1ubuntu2.1~18.04.19
no fix listed
1
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
openssl@1.1.1-1ubuntu2.1~18.04.19
no fix listed
1
ghcr.io/salesforce/sloop:sha-2ce8bbe119e24f24b1d
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u3
1
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/schildichat/schildichat-web:latesta87f57287805
openssl@3.0.8-r3
3.0.19-r0
1
ghcr.io/schmitzis/cert-manager-webhook-bunny:latest125e31c8e85a
openssl@3.1.5-r0
3.1.8-r0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.