StackRadar

CVE-2025-15468

Medium

Advisory

Published 27 Jan 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
768
of 17,787 indexed, latest versions
Container images
811
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2025-15468 affecting package openssl for versions less than 3.3.5-3

Carried by container images the latest versions of 768 of 17,787 indexed charts deploy, on 811 images.

Affected packageAffected versionsFixed inImages
opensslapk3.2.0-r0, 3.3.0-r2, 3.3.1-r0, 3.3.1-r1+18 more3.3.6-r0, 3.5.5-r0, 3.6.1-r0731
openssldeb3.5.1-1, 3.5.1-1+deb13u1, 3.5.3-1ubuntu2, 3.5.4-1~deb13u13.5.3-1ubuntu3, 3.5.4-1~deb13u263
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
opensslrpm3.3.5-1.azl33.3.5-31
OSV records
ALPINE-CVE-2025-15468CGA-cfrp-4x8p-ghrrDEBIAN-CVE-2025-15468UBUNTU-CVE-2025-15468AZL-75278
Also known as
CGA-vmpm-7qr6-cwvf, USN-7980-1

Charts affected

768 by stars
ChartLatestAffected imagesRadar Score
ubooquityvhdirkVerified publisher0.1.31 of 1See more

ubooquity vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
linuxserver/ubooquity:2.1.2-ls369932d6759112
openssl@3.3.1-r3
3.3.6-r0

Open the chart page →

4,302
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
nodejs@20.11.1-1nodesource1
no fix listed

Open the chart page →

9,396
mosquittovicsuferVerified publisher0.1.11 of 1See more

mosquitto vicsufer 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
library/eclipse-mosquitto:2.0.2021421af7b32b
openssl@3.3.3-r0
3.3.6-r0

Open the chart page →

364
colanodevictorlane0.3.31 of 3See more

colanode victorlane 0.3.3

1 of the 3 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
ghcr.io/colanode/web:latestbcad696f03ee
openssl@3.3.3-r0
3.3.6-r0

Open the chart page →

2,077
n8nvictorlane1.0.181 of 1See more

n8n victorlane 1.0.18

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
n8nio/n8n:1.115.1ed16e560c40e
openssl@3.5.2-r0
3.5.5-r0

Open the chart page →

6,470
vote-appvote-appVerified publisher1.0.72 of 6See more

vote-app vote-app 1.0.7

2 of the 6 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
thecloudspark/app-result:1.09a5302cb8312
openssl@3.3.0-r2
3.3.6-r0
thecloudspark/app-vote:1.0c7da7417a86a
openssl@3.3.0-r2
3.3.6-r0

Open the chart page →

3,030
waldur-site-agentwaldur-site-agentVerified publisher1.0.71 of 1See more

waldur-site-agent waldur-site-agent 1.0.7

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
opennode/waldur-site-agent:1.0.76d2e3b97c8d2
openssl@3.3.2-r1
3.3.6-r0

Open the chart page →

534
wallarm-node-nextwallarmVerified publisher0.5.31 of 2See more

wallarm-node-next wallarm 0.5.3

1 of the 2 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
wallarm/node-next:0.5.24314f3d2b918
openssl@3.3.2-r0
3.3.6-r0

Open the chart page →

2,408
athens-proxywenerme0.5.21 of 2See more

athens-proxy wenerme 0.5.2

1 of the 2 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:latestab6f1a1f0fb4
openssl@3.5.4-r0
3.5.5-r0

Open the chart page →

4,985
hazelcastwenerme5.10.31 of 2See more

hazelcast wenerme 5.10.3

1 of the 2 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
hazelcast/hazelcast:5.5.05dd5d31c7a06
openssl@3.3.1-r3
3.3.6-r0

Open the chart page →

2,623
wexa-studiowexa-studio1.2.03 of 15See more

wexa-studio wexa-studio 1.2.0

3 of the 15 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.29.1-tctl-1.18.4-cli-1.5.0a3a52e6ca122
openssl@3.5.0-r0
3.5.5-r0
temporalio/server:1.29.1c1e3326b2ce1
openssl@3.5.0-r0
3.5.5-r0
temporalio/ui:2.44.00b36e00aad30
openssl@3.5.4-r0
3.5.5-r0

Open the chart page →

14,618
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
dwdraju/alpine-curl-jq:latest83bd9be2b14b
openssl@3.3.1-r3
3.3.6-r0

Open the chart page →

6,323
postgres-operatorwiremindVerified publisher1.14.0-wiremind01 of 1See more

postgres-operator wiremind 1.14.0-wiremind0

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
ghcr.io/zalando/postgres-operator:v1.14.04f40cfc2283b
openssl@3.3.2-r4
3.3.6-r0

Open the chart page →

1,286
registrywiremindVerified publisher0.1.11 of 1See more

registry wiremind 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
ghcr.io/distribution/distribution:3.0.04ba3adf47f5c
openssl@3.3.3-r0
3.3.6-r0

Open the chart page →

1,187
silence-operatorwiremindVerified publisher0.0.81 of 1See more

silence-operator wiremind 0.0.8

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
giantswarm/silence-operator:0.13.0a6cac55aa2d4
openssl@3.3.3-r0
3.3.6-r0

Open the chart page →

789
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
nodejs@20.15.0-1nodesource1
no fix listed

Open the chart page →

14,172
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
hamzaarshad10/queryfrontend:1.1.5.14cd359d9a78c3
openssl@3.3.2-r0
3.3.6-r0

Open the chart page →

13,197
ygdrassil-monitoringygdrassilVerified publisher0.4.01 of 10See more

ygdrassil-monitoring ygdrassil 0.4.0

1 of the 10 container images this version deploys carry CVE-2025-15468.

Container imageDigestPackageFixed in
grafana/grafana:11.5.15781759b3d27
openssl@3.3.2-r0
3.3.6-r0

Open the chart page →

9,381

Container images carrying it

811 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/chaos-mesh/chaos-mesh:v2.8.0091b906a0b13
openssl@3.3.4-r0
3.3.6-r0
1
ghcr.io/chaos-mesh/chaos-mesh:v2.7.28bc853c7414c
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/chronicleprotocol/challenger-go:0.1.2c8d5a3c0e966
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/chronicleprotocol/oracles-updates-exporter:0.0.4992d0e793af6
openssl@3.3.2-r0
3.3.6-r0
1
ghcr.io/cloudscript-technology/k8s-monitoring-app:v0.0.25cab66a6b3574
openssl@3.5.4-r0
3.5.5-r0
1
ghcr.io/cloudtty/cloudshell:v0.8.900984ba0f0eb
openssl@3.5.4-r0
3.5.5-r0
1
ghcr.io/clusternet/clusternet-controller-manager:v1.0.02ce077d3d02d
openssl@3.3.2-r4
3.3.6-r0
1
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
openssl@3.3.2-r4
3.3.6-r0
1
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
openssl@3.3.2-r4
3.3.6-r0
1
ghcr.io/cncf/clowarden/dbmigrator:v0.2.3c022fd42de45
openssl@3.5.4-r0
3.5.5-r0
1
ghcr.io/cncf/clowarden/server:v0.2.3f9379427b917
openssl@3.5.4-r0
3.5.5-r0
1
ghcr.io/cncf/gitvote/dbmigrator:v1.5.0f1e7efe440da
openssl@3.5.4-r0
3.5.5-r0
1
ghcr.io/cncf/gitvote/server:v1.5.026167f01c898
openssl@3.5.4-r0
3.5.5-r0
1
ghcr.io/cndoit18/lxcfs-agent:latest9853bb613cd0
openssl@3.5.0-r0
3.5.5-r0
1
ghcr.io/cndoit18/lxcfs-manager:latest6bb61ded2625
openssl@3.5.0-r0
3.5.5-r0
1
ghcr.io/colanode/web:latestbcad696f03ee
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
openssl@3.5.1-1
3.5.4-1~deb13u2
1
ghcr.io/cosmicrocks/knots:29.2.knots20251010d7db5cd4079b
openssl@3.3.5-r0
3.3.6-r0
1
ghcr.io/crazygit/cert-manager-alidns-webhook:0.1.4976be6506eb6
openssl@3.5.4-r0
3.5.5-r0
1
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
openssl@3.5.4-r0
3.5.5-r0
1
ghcr.io/dani-garcia/vaultwarden:1.33.2-alpine63cce7624f65
openssl@3.3.2-r5
3.3.6-r0
1
ghcr.io/dani-garcia/vaultwarden:1.35.2d89a6d21e361
openssl@3.5.4-1~deb13u1
3.5.4-1~deb13u2
1
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/daocloud/crproxy/crproxy:v0.8.0ee1eb3c9c9a1
openssl@3.3.1-r0
3.3.6-r0
1
ghcr.io/data-fair/notify:3c739b74dabb0
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/debridmediamanager/zurg-testing:v0.9.3-final5c47ef99443a
openssl@3.3.1-r0
3.3.6-r0
1
ghcr.io/devhatro/clamav-api:1.0.2ff0cd9db78d3
openssl@3.3.2-r4
3.3.6-r0
1
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/dexidp/dex:v2.44.05d0656fce7d4
openssl@3.5.1-r0
3.5.5-r0
1
ghcr.io/dexidp/dex:v2.42.18186d6dd81f4
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
openssl@3.5.1-1+deb13u1
3.5.4-1~deb13u2
1
ghcr.io/distribution/distribution:3.0.04ba3adf47f5c
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/dmunozv04/isponsorblocktv:v2.9.05b8cfa805cb6
openssl@3.3.5-r0
3.3.6-r0
1
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
openssl@3.3.0-r2
3.3.6-r0
1
ghcr.io/dysnix/docker-tiny:0.0.16b8e02430649
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/element-hq/hydrogen-web:v0.5.12d15d14b201a
openssl@3.3.2-r1
3.3.6-r0
1
ghcr.io/ellite/wallos:2.46.09ce55520e7bd
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/eminaktas/oom-tracer:v0.1.0c90ca8389c87
openssl@3.5.1-r0
3.5.5-r0
1
ghcr.io/erlkoenig91/prompt-db-frontend:1.0.7121dc29eb14d
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/esomore/bitcoin-prometheus-exporter:masterded173632986
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/flatcar/nebraska:4.0.05c9e99ff7167
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/flohansen/dasher-server:latest7cde8c3fa2d1
openssl@3.3.1-r3
3.3.6-r0
1
ghcr.io/fluxcd/flux-cli:v2.5.1274a179fd402
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/fluxcd/helm-controller:v1.2.062eaa9c9a929
openssl@3.3.3-r0
3.3.6-r0
1
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
openssl@3.3.2-r4
3.3.6-r0
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
openssl@3.5.1-r0
3.5.5-r0
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
openssl@3.5.1-r0
3.5.5-r0
1
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
openssl@3.3.3-r0
3.3.6-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.