StackRadar

CVE-2025-27587

Medium

Advisory

Published 16 Jun 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
794
of 17,790 indexed, latest versions
Container images
870
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 794 of 17,790 indexed charts deploy, on 870 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.9-1, 3.0.11-1~deb12u1, 3.0.11-1~deb12u2, 3.0.13-1~deb12u1+12 moreno fix listed870
OSV records
DEBIAN-CVE-2025-27587

Charts affected

794 by stars
ChartLatestAffected imagesRadar Score
helm-redchefredchef0.1.01 of 3See more

helm-redchef redchef 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
sharanalwar/redchef-backend:latest8d3cab80df49
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

4,658
relfinder-reformedrelfinderreformed2.0.01 of 2See more

relfinder-reformed relfinderreformed 2.0.0

1 of the 2 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

5,928
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

6,562
juicepassproxyretsamedocVerified publisher2026.2.41 of 1See more

juicepassproxy retsamedoc 2026.2.4

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,753
retromretsamedocVerified publisher2026.2.51 of 1See more

retrom retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

6,794
spoolmanretsamedocVerified publisher26.9.01 of 1See more

spoolman retsamedoc 26.9.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,786
claude-relayrevolution10.1.371 of 4See more

claude-relay revolution1 0.1.37

1 of the 4 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
library/redis:8.2.2f0957bcaa75f
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

4,546
revwallet-apirevwallet0.7.121 of 1See more

revwallet-api revwallet 0.7.12

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
arthurjguerra18/revwallet:v0.7.12f540af20b307
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

5,341
istio-helloworldrgnu1.0.12 of 2See more

istio-helloworld rgnu 1.0.1

2 of the 2 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
istio/examples-helloworld-v1:latest328b237e4fb1
openssl@3.0.11-1~deb12u2
no fix listed
istio/examples-helloworld-v2:latest0a7f02b2c7c9
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

8,298
kube-web-viewrlex0.5.01 of 1See more

kube-web-view rlex 0.5.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
hjacobs/kube-web-view:23.8.0431f1bf013d0
openssl@3.0.9-1
no fix listed

Open the chart page →

4,315
runtimeclass-controllerrlex0.1.01 of 1See more

runtimeclass-controller rlex 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/jlclx/runtimeclass-controller:latestb3a87f92a963
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

2,141
kresusrm3lVerified publisher0.2.12 of 3See more

kresus rm3l 0.2.1

2 of the 3 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r16687034f33da6
openssl@3.0.16-1~deb12u1
no fix listed
bnjbvr/kresus:0.22.137e216b182c8
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

15,623
web-checkrm3lVerified publisher0.1.01 of 1See more

web-check rm3l 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

8,798
matrix-stackrock8sVerified publisher0.8.12 of 7See more

matrix-stack rock8s 0.8.1

2 of the 7 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/element-hq/matrix-authentication-service:0.14.0834ea54370f0
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

9,275
rocketchat-voiprocketchat-server0.1.01 of 1See more

rocketchat-voip rocketchat-server 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
rocketchat/freeswitch:stablecfba5c20a5cc
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

5,329
ai-agentromholdings0.0.11 of 1See more

ai-agent romholdings 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

9,152
devtron-enterpriseromholdings48.0.03 of 28See more

devtron-enterprise romholdings 48.0.0

3 of the 28 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssl@3.0.17-1~deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

66,542
devtron-operatorromholdings0.23.32 of 11See more

devtron-operator romholdings 0.23.3

2 of the 11 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

31,447
migration-incluster-cdromholdings0.10.01 of 1See more

migration-incluster-cd romholdings 0.10.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,699
endeavorrotationalVerified publisher1.3.12 of 2See more

endeavor rotational 1.3.1

2 of the 2 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
rotationalio/endeavor:1.3.0ac566baddc06
openssl@3.0.20-1~deb12u2
no fix listed
rotationalio/quarterdeck:0.16.00e7ad3a031dc
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,092
honurotationalVerified publisher0.5.31 of 1See more

honu rotational 0.5.3

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
rotationalio/honu:0.5.069fd30c2e31c
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

2,169
imgtagrotationalVerified publisher0.2.01 of 1See more

imgtag rotational 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,318
quarterdeckrotationalVerified publisher0.16.01 of 1See more

quarterdeck rotational 0.16.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
rotationalio/quarterdeck:0.16.00e7ad3a031dc
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,087
agentdatarss30.1.01 of 1See more

agentdata rss3 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,406
noderss30.7.21 of 3See more

node rss3 0.7.2

1 of the 3 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

4,612
flaresolverrrubxkubeVerified publisher0.1.11 of 1See more

flaresolverr rubxkube 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
openssl@3.0.20-1~deb12u1
no fix listed

Open the chart page →

27,282
joplinrubxkubeVerified publisher1.3.11 of 2See more

joplin rubxkube 1.3.1

1 of the 2 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.2.0-debian-12-r2e6fa49bb0347
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

7,429
uptime-kumarubxkubeVerified publisher1.2.11 of 1See more

uptime-kuma rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.4.091e963bfda56
openssl@3.0.20-1~deb12u1
no fix listed

Open the chart page →

29,870
your-spotifyrubxkubeVerified publisher1.0.11 of 3See more

your-spotify rubxkube 1.0.1

1 of the 3 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:latestb0652af9c8d0
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

4,966
test-helm-app1saam-helm-test0.1.01 of 1See more

test-helm-app1 saam-helm-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
hamidyousefi93/saam-test:latestc34f071f6ed0
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

3,374
safe-stacksafe-global0.1.01 of 9See more

safe-stack safe-global 0.1.0

1 of the 9 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssl@3.0.9-1
no fix listed

Open the chart page →

17,736
safe-transaction-servicesafe-global0.1.01 of 6See more

safe-transaction-service safe-global 0.1.0

1 of the 6 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssl@3.0.9-1
no fix listed

Open the chart page →

14,792
sagawisesagawiseVerified publisher0.1.01 of 3See more

sagawise sagawise 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
venturenox/redis:latest83b471c193ba
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

4,104
evsantisbon0.2.02 of 5See more

ev santisbon 0.2.0

2 of the 5 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
santisbon/evwatcher:latestc4e994ca4540
openssl@3.0.9-1
no fix listed
santisbon/evworker:lateste807283f8d69
openssl@3.0.9-1
no fix listed

Open the chart page →

12,090
speedtestsantisbon0.1.02 of 3See more

speedtest santisbon 0.1.0

2 of the 3 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
openssl@3.0.19-1~deb12u2
no fix listed
santisbon/speedtest:latest8ee3a1697227
openssl@3.0.9-1
no fix listed

Open the chart page →

11,314
airflowsb-helm-charts0.3.01 of 1See more

airflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
apache/airflow:2.8.1e5560ad0b86e
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

9,340
jellyfinsb-helm-charts0.4.01 of 1See more

jellyfin sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.317c3a8d9dddb
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,864
phpmyadminsb-helm-charts0.3.01 of 1See more

phpmyadmin sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

5,065
rsshubsb-helm-charts0.3.01 of 1See more

rsshub sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
diygod/rsshub:2025-11-097a6312cac0d5
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

4,559
vaultwardensb-helm-charts0.4.01 of 1See more

vaultwarden sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
vaultwarden/server:1.34.384fd8a47f58d
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

3,210
wordpresssb-helm-charts0.4.02 of 2See more

wordpress sb-helm-charts 0.4.0

2 of the 2 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
library/mysql:8.0-debian9382e4f6f7f0
openssl@3.0.19-1~deb12u2
no fix listed
library/wordpress:6.4.3-apache8ae66efb09a2
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

12,009
otterwikischmitzis0.1.01 of 1See more

otterwiki schmitzis 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
redimp/otterwiki:2778bf30da3da
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

3,019
typo3schoolguys-helmcharts0.4.21 of 1See more

typo3 schoolguys-helmcharts 0.4.2

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
openssl@3.0.20-1~deb12u1
no fix listed

Open the chart page →

4,630
unboundschoolguys-helmcharts0.1.11 of 1See more

unbound schoolguys-helmcharts 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
mvance/unbound:1.20.04bf67b567f39
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

2,748
wyoming-faster-whisperschoolguys-helmcharts0.1.41 of 1See more

wyoming-faster-whisper schoolguys-helmcharts 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
rhasspy/wyoming-whisper:3.5.0308b7959a925
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,196
wyoming-piperschoolguys-helmcharts0.1.41 of 1See more

wyoming-piper schoolguys-helmcharts 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
rhasspy/wyoming-piper:2.3.169b7f797ae3a
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,770
sealed-secrets-uisealed-secrets-uiVerified publisher0.0.81 of 1See more

sealed-secrets-ui sealed-secrets-ui 0.0.8

1 of the 1 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

4,570
serviceexampleserviceexample-chart0.3.01 of 4See more

serviceexample serviceexample-chart 0.3.0

1 of the 4 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
tibyandocker/serviceexample:latesta4ad592cea84
openssl@3.0.19-1~deb12u2
no fix listed

Open the chart page →

3,929
service-exampleservice-example-jt0.1.11 of 9See more

service-example service-example-jt 0.1.1

1 of the 9 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
janzo83/serviceexample:latestfb3c4ac36f3e
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

7,105
first-chartshashkist-test0.1.01 of 3See more

first-chart shashkist-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-27587.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

2,934

Container images carrying it

870 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/kannika/kannika-console:0.18.0cc024a8ee909
openssl@3.0.20-1~deb12u2
no fix listed
1
quay.io/kuberay/operator:v1.7.04a779237ef1c
openssl@3.0.20-1~deb12u2
no fix listed
1
quay.io/kubevirt/virt-operator:v1.7.037d2ef21e3e5
openssl@3.0.16-1~deb12u1
no fix listed
1
quay.io/kubevirt/virt-operator:v1.8.465d23c9ad917
openssl@3.0.18-1~deb12u2
no fix listed
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
openssl@3.0.16-1~deb12u1
no fix listed
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssl@3.0.9-1
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
openssl@3.0.20-1~deb12u2
no fix listed
1
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
openssl@3.0.20-1~deb12u1
no fix listed
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
openssl@3.0.20-1~deb12u2
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
openssl@3.5.6-1~deb13u2
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
openssl@3.0.20-1~deb12u1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
openssl@3.0.13-1~deb12u1
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
openssl@3.0.20-1~deb12u1
no fix listed
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
openssl@3.0.20-1~deb12u2
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
openssl@3.0.17-1~deb12u3
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
openssl@3.0.11-1~deb12u2
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssl@3.0.11-1~deb12u1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
openssl@3.0.20-1~deb12u2
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
openssl@3.0.15-1~deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.