StackRadar

CVE-2025-27587

Medium

Advisory

Published 16 Jun 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
794
of 17,790 indexed, latest versions
Container images
870
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 794 of 17,790 indexed charts deploy, on 870 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.9-1, 3.0.11-1~deb12u1, 3.0.11-1~deb12u2, 3.0.13-1~deb12u1+12 moreno fix listed870
OSV records
DEBIAN-CVE-2025-27587

Charts affected

794 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

870 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/kannika/kannika-console:0.18.0cc024a8ee909
openssl@3.0.20-1~deb12u2
no fix listed
1
quay.io/kuberay/operator:v1.7.04a779237ef1c
openssl@3.0.20-1~deb12u2
no fix listed
1
quay.io/kubevirt/virt-operator:v1.7.037d2ef21e3e5
openssl@3.0.16-1~deb12u1
no fix listed
1
quay.io/kubevirt/virt-operator:v1.8.465d23c9ad917
openssl@3.0.18-1~deb12u2
no fix listed
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
openssl@3.0.16-1~deb12u1
no fix listed
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssl@3.0.9-1
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
openssl@3.0.20-1~deb12u2
no fix listed
1
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
openssl@3.0.20-1~deb12u1
no fix listed
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
openssl@3.0.20-1~deb12u2
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
openssl@3.5.6-1~deb13u2
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
openssl@3.0.20-1~deb12u1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
openssl@3.0.13-1~deb12u1
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
openssl@3.0.20-1~deb12u1
no fix listed
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
openssl@3.0.20-1~deb12u2
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
openssl@3.0.17-1~deb12u3
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
openssl@3.0.11-1~deb12u2
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssl@3.0.11-1~deb12u1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
openssl@3.0.20-1~deb12u2
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
openssl@3.0.15-1~deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.