CVE-2025-15468
MediumAdvisory
Published 27 Jan 2026In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.9
- base score, highest
- EPSS
- 0.008
- 54th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 759
- of 17,787 indexed, latest versions
- Container images
- 802
- deployed by those charts
- Fix available
- 3 of 4
- affected packages
CVE-2025-15468 affecting package openssl for versions less than 3.3.5-3
Carried by container images the latest versions of 759 of 17,787 indexed charts deploy, on 802 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| opensslapk | 3.2.0-r0, 3.3.0-r2, 3.3.1-r0, 3.3.1-r1+18 more | 3.3.6-r0, 3.5.5-r0, 3.6.1-r0 | 722 |
| openssldeb | 3.5.1-1, 3.5.1-1+deb13u1, 3.5.3-1ubuntu2, 3.5.4-1~deb13u1 | 3.5.3-1ubuntu3, 3.5.4-1~deb13u2 | 63 |
| nodejsdeb | 4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 more | no fix listed | 16 |
| opensslrpm | 3.3.5-1.azl3 | 3.3.5-3 | 1 |
- OSV records
- ALPINE-CVE-2025-15468CGA-cfrp-4x8p-ghrrDEBIAN-CVE-2025-15468UBUNTU-CVE-2025-15468AZL-75278
- Also known as
- CGA-vmpm-7qr6-cwvf, USN-7980-1
Charts affected
759 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| hazelcastwenerme | 5.10.3 | 1See more | — |
| wexa-studiowexa-studio | 1.2.0 | 3 of 15See more | 14,983 |
| kibanawiremindVerified publisher | 8.5.23 | 1 of 2See more | 6,285 |
| postgres-operatorwiremindVerified publisher | 1.14.0-wiremind0 | 1 of 1See more | 1,286 |
| registrywiremindVerified publisher | 0.1.1 | 1 of 1See more | 1,187 |
| silence-operatorwiremindVerified publisher | 0.0.8 | 1 of 1See more | 789 |
| playwright-synthetic-monitoringwork-adventure | 1.0.1 | 1 of 1See more | 14,100 |
| xkopsxkops | 0.1.0 | 1 of 5See more | 13,677 |
| ygdrassil-monitoringygdrassilVerified publisher | 0.4.0 | 1 of 10See more | 9,381 |
Container images carrying it
802 by charts deploying them
A fixed version is listed for 3 of the 4 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| alpine/ | 905a068da431 | openssl | 3.5.5-r0 | 1 |
| alpine/ | 6dbe6f391eda | openssl | 3.5.5-r0 | 1 |
| alpine/ | 7a319b15cfc9 | openssl | 3.5.5-r0 | 1 |
| alpine/ | 7e1e7d5b7a96 | openssl | 3.3.6-r0 | 1 |
| alpine/ | 9c4976d47656 | openssl | 3.3.6-r0 | 1 |
| alpine/ | cd560fce90f7 | openssl | 3.3.6-r0 | 1 |
| alpine/ | e5c0b053fed7 | openssl | 3.3.6-r0 | 1 |
| alpine/ | eec354133193 | openssl | 3.3.6-r0 | 1 |
| alpine/ | 2c59a3f0726c | openssl | 3.5.5-r0 | 1 |
| anamskenneth/ | 9b7d2cd389b7 | openssl | 3.3.6-r0 | 1 |
| anamskenneth/ | 9ecf04f42cc3 | openssl | 3.3.6-r0 | 1 |
| apache/ | bff074a5d005 | openssl | 3.5.5-r0 | 1 |
| apache/ | fbc7d7c428e3 | openssl | 3.3.6-r0 | 1 |
| apache/ | 9a9d16e60894 | openssl | 3.5.5-r0 | 1 |
| apecloud/ | 8ac9947a2c84 | openssl | 3.5.4-1~deb13u2 | 1 |
| apecloud/ | b3ae37840ace | openssl | 3.3.6-r0 | 1 |
| apecloud/ | 5832d1a9097a | openssl | 3.3.6-r0 | 1 |
| appwrite/ | aaa11ceab999 | openssl | 3.3.6-r0 | 1 |
| aquasec/ | cfbbfee972e6 | openssl | 3.3.6-r0 | 1 |
| artifacthub/ | 2a746b289fcd | openssl | 3.3.6-r0 | 1 |
| artifacthub/ | 111918d8c399 | openssl | 3.3.6-r0 | 1 |
| artifacthub/ | 323d026e78c3 | openssl | 3.3.6-r0 | 1 |
| automatischio/ | 3bace7a12d5f | openssl | 3.3.6-r0 | 1 |
| b3log/ | 95c0d129bc19 | openssl | 3.3.6-r0 | 1 |
| b4bz/ | 4b44a4a9e329 | openssl | 3.3.6-r0 | 1 |
| b4bz/ | c367265313f9 | openssl | 3.3.6-r0 | 1 |
| behnambm/ | bd3ad88afff9 | openssl | 3.3.6-r0 | 1 |
| berkeleyskypilot/ | 8da2f3cda472 | openssl | 3.5.4-1~deb13u2 | 1 |
| beyzkaya/ | bf412d75c510 | openssl | 3.5.5-r0 | 1 |
| boky/ | aafc77238423 | openssl | 3.5.4-1~deb13u2 | 1 |
| buddyspencer/ | 6b656f19b0c1 | openssl | 3.3.6-r0 | 1 |
| burganbank/ | 9259c34e4037 | openssl | 3.3.6-r0 | 1 |
| byrnedo/ | 7f0599d553e2 | openssl | 3.5.5-r0 | 1 |
| camunda/ | bcc5bb0542df | openssl | 3.5.5-r0 | 1 |
| carlosmz87/ | 79f4b528f42a | openssl | 3.3.6-r0 | 1 |
| casbin/ | 770ad9ec3190 | openssl | 3.3.6-r0 | 1 |
| censedata/ | ebfffb9dd4c0 | openssl | 3.3.6-r0 | 1 |
| cesanta/ | 98e0307e0d2d | openssl | 3.5.5-r0 | 1 |
| chainflag/ | ac642796bcb6 | openssl | 3.5.5-r0 | 1 |
| chandanteekinavar/ | 6de5bd44a325 | openssl | 3.3.6-r0 | 1 |
| chibisafe/ | 836467a50792 | openssl | 3.5.5-r0 | 1 |
| chibisafe/ | 3da4fcbc1a18 | openssl | 3.5.5-r0 | 1 |
| christianhuth/ | c07f414a3e4b | openssl | 3.3.6-r0 | 1 |
| ciuse99/ | d72768245ef5 | openssl | 3.3.6-r0 | 1 |
| clickhouse/ | cd450891db46 | openssl | 3.3.6-r0 | 1 |
| clowder/ | fe97882672ca | openssl | 3.5.5-r0 | 1 |
| clsen2024/ | 1156cd87c8fb | openssl | 3.3.6-r0 | 1 |
| clsen2024/ | 0ba9eff852c5 | openssl | 3.3.6-r0 | 1 |
| clsen2024/ | 51b1d45961cd | openssl | 3.3.6-r0 | 1 |
| clsen2024/ | efb1586c8299 | openssl | 3.3.6-r0 | 1 |