StackRadar

CVE-2025-9230

High

Advisory

Published 30 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,736
of 17,803 indexed, latest versions
Container images
3,257
deployed by those charts
Fix available
6 of 7
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,736 of 17,803 indexed charts deploy, on 3,257 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm11, 1.0.2g-1ubuntu4.20+esm13, 1.1.1-1ubuntu2.1~18.04.23+esm6, 1.1.1f-1ubuntu2.24+esm1+5 more1,963
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r1, 3.3.5-r0, 3.5.4-r0969
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm215
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+29 more1:1.0.2k-26.el7_9.1, 1:1.1.1k-14.el8_10, 1:3.2.2-7.el9_6.1, 1:3.5.1-4.el9_7322
openssl-3rpm3.2.3-150700.5.18.13.2.3-150700.5.21.13
openssl-1_1rpm1.1.1w-150700.11.3.11.1.1w-150700.11.6.11
OSV records
ALPINE-CVE-2025-9230CGA-c4v2-6rpm-vq95DEBIAN-CVE-2025-9230UBUNTU-CVE-2025-9230RHSA-2025:21174RHSA-2025:21255RHSA-2026:0337RHSA-2026:1720RLSA-2025:21255RLSA-2026:0337DLA-4321-1SUSE-SU-2025:03546-1SUSE-SU-2025:03635-1
Also known as
CGA-qm4c-c7mv-j233, RHSA-2025:21562, RHSA-2026:0602, RHSA-2026:0714, RHSA-2026:0794, RHSA-2026:0887, RHSA-2026:1475, USN-7786-1

Charts affected

2,736 by stars
ChartLatestAffected imagesRadar Score
otlp-gatewayloafoe0.0.21 of 2See more

otlp-gateway loafoe 0.0.2

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
openssl@3.3.1-r3
3.3.5-r0

Open the chart page →

2,170
patch-operatorloafoe0.11.31 of 2See more

patch-operator loafoe 0.11.3

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
openssl@1:1.1.1k-4.el8
1:1.1.1k-14.el8_10

Open the chart page →

4,912
tempo-distributedloafoe1.20.12 of 2See more

tempo-distributed loafoe 1.20.1

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
grafana/tempo:2.6.0f55a8a1937ff
openssl@3.3.1-r3
3.3.5-r0
library/memcached:1.6.29-alpine462ae4a35c26
openssl@3.3.1-r3
3.3.5-r0

Open the chart page →

2,037
weather-app-chartlocal-weatherapp0.1.02 of 4See more

weather-app-chart local-weatherapp 0.1.0

2 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:8.0.36-debian-11-r38aad73aa0c6d
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
youssef11gaber10/deployment-ui-react:latestba6853e35c60
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u4

Open the chart page →

5,913
locust-pluginslocust-pluginsVerified publisher0.0.42 of 3See more

locust-plugins locust-plugins 0.0.4

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
sky5367/locust-plugins-grafana:latestd51bf68d4b26
openssl@3.1.4-r5
3.1.8-r1

Open the chart page →

7,570
vnode-runtimeloftVerified publisher0.3.31 of 1See more

vnode-runtime loft 0.3.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,536
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20

Open the chart page →

6,680
lm-logslogicmonitorVerified publisher0.3.51 of 1See more

lm-logs logicmonitor 0.3.5

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
logicmonitor/lm-logs-k8s-fluentd:1.0.55ac21b3f1572
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4

Open the chart page →

1,030
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

6,591
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

23,727
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6

Open the chart page →

5,924
loxilbloxilbVerified publisher0.1.02 of 2See more

loxilb loxilb 0.1.0

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
openssl@3.0.2-0ubuntu1.26
no fix listed
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

4,537
exposureloglsst-sqre0.2.11 of 1See more

exposurelog lsst-sqre 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lsstsqre/exposurelog:0.8.079b00fb67a65
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

2,079
fireflylsst-sqre0.3.71 of 2See more

firefly lsst-sqre 0.3.7

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/redis:5fc5ecd863862
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

1,731
influxdblsst-sqre3.1.11 of 2See more

influxdb lsst-sqre 3.1.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/influxdb:1.8.10-alpine2601e27d6b7e
openssl@3.0.15-r0
3.0.19-r0

Open the chart page →

759
narrativeloglsst-sqre0.1.01 of 1See more

narrativelog lsst-sqre 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lsstsqre/narrativelog:0.1.0ce01de04ce21
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

1,639
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

86,968
sasquatchlsst-sqre0.1.132 of 6See more

sasquatch lsst-sqre 0.1.13

2 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/influxdb:1.8.10299ebda2c7e3
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
lsstsqre/strimzi-registry-operator:0.4.1e139fde946d7
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

9,351
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6
elastictranscoder/media-storage:f6d861a026208b8c2359
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6
elastictranscoder/transcoder:627e21dcb4a0327029e6
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6

Open the chart page →

58,289
filebot-botluiscajl0.0.111 of 1See more

filebot-bot luiscajl 0.0.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lavandadelpatio/filebot-bot:0.0.1-SNAPSHOTd2cba20aa4d8
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

3,685
torznab-atomohdluiscajl0.0.31 of 1See more

torznab-atomohd luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lavandadelpatio/torznab-atomohd:latest214eaef5444c
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

3,266
xteveluiscajl0.1.61 of 1See more

xteve luiscajl 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
dnsforge/xteve:latest4d9a685c8c28
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

4,315
ratelimitlumiumcoVerified publisher0.0.41 of 2See more

ratelimit lumiumco 0.0.4

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:a90e0e5d5966cbc14d5d
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,163
hyperglassm0nsterrr-hyperglassVerified publisher4.2.11 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
openssl@3.3.0-r2
3.3.5-r0

Open the chart page →

4,699
m9sweeperm9sweeperVerified publisher1.6.03 of 6See more

m9sweeper m9sweeper 1.6.0

3 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
kubesec/kubesec:v2.13.0c0f3b0673578
openssl@3.0.8-r0
3.0.19-r0
ghcr.io/m9sweeper/dash:1.6.02e27cdff8344
openssl@3.1.4-r2
3.1.8-r1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

9,848
magistralamagistrala-devopsVerified publisher0.16.27 of 42See more

magistrala magistrala-devops 0.16.2

7 of the 42 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31-latestcaa5b411be16
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.20
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20
library/nats:2.10.17-alpineb7752304692b
openssl@3.3.1-r0
3.3.5-r0
natsio/nats-box:0.14.31cc420186664
openssl@3.1.4-r5
3.1.8-r1
natsio/nats-server-config-reloader:0.15.05b21830a9e9d
openssl@3.3.0-r2
3.3.5-r0
supermq/vernemq:latest944a0be3563e
openssl@3.1.4-r4
3.1.8-r1
ghcr.io/absmach/magistrala/ui-smq:latestea7e7f0e293e
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

24,748
docker-mailservermailserverVerified publisher0.2.657 of 9See more

docker-mailserver mailserver 0.2.65

7 of the 9 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
jeboehm/mailserver-filter:5.0.92e756949e537d
openssl@3.3.4-r0
3.3.5-r0
jeboehm/mailserver-mda:5.0.92d03fb7bae0a2
openssl@3.3.4-r0
3.3.5-r0
jeboehm/mailserver-mta:5.0.925fb2f31c940d
openssl@3.3.4-r0
3.3.5-r0
jeboehm/mailserver-virus:5.0.92eb5c1c260d11
openssl@3.3.4-r0
3.3.5-r0
jeboehm/mailserver-web:5.0.929da13edf5aa8
openssl@3.5.2-r0
3.5.4-r0
mvance/unbound:1.22.076906da36d18
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
openssl@3.5.1-r0
3.5.4-r0

Open the chart page →

11,536
prometheus-exportermakaira1.2.21 of 2See more

prometheus-exporter makaira 1.2.2

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/nginx:1.24-alpine77e5d4a6ad90
openssl@3.0.12-r4
3.0.19-r0

Open the chart page →

653
mangadev-hello-worldmangadev0.3.01 of 1See more

mangadev-hello-world mangadev 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
wagnermanganelli164/webserver-hello-world:0.3.0d4ef27a4f180
openssl@3.3.1-r3
3.3.5-r0

Open the chart page →

863
nodecg-chartmarathon-charts0.1.52 of 2See more

nodecg-chart marathon-charts 0.1.5

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/rodg/nodecg-base:latest31be4bf87070
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
openssl@3.0.9-1
3.0.17-1~deb12u3

Open the chart page →

7,366
consumermarthydavidVerified publisher0.1.61 of 1See more

consumer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-consumer:0.0.4e07644865dd1
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

806
producermarthydavidVerified publisher0.1.61 of 1See more

producer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-producer:0.0.454b242c7bf2b
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

806
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

4,163
kruisematrixone-operatorVerified publisher1.8.31 of 2See more

kruise matrixone-operator 1.8.3

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
openkruise/kruise-helm-hook:v0.1.0edc7cf9428fd
openssl@3.1.7-r1
3.1.8-r1

Open the chart page →

1,927
matrix-sliding-syncmatrix-sliding-sync0.2.31 of 1See more

matrix-sliding-sync matrix-sliding-sync 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
openssl@3.0.13-r0
3.0.19-r0

Open the chart page →

1,607
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

4,127
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

8,475
mayastormayastorVerified publisher2.12.14 of 31See more

mayastor mayastor 2.12.1

4 of the 31 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
openssl@3.3.3-r0
3.3.5-r0
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
openssl@3.0.7-r2
3.0.19-r0
natsio/prometheus-nats-exporter:0.11.031c02aac089a
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

21,596
eoloplantmca-eoloplaner0.1.06 of 7See more

eoloplant mca-eoloplaner 0.1.0

6 of the 7 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
codeurjc/weatherservice:v1.0b9e2f7234349
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10
hugohg34/planner:0.0.2171f61e8d7e2
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4
hugohg34/server:0.0.2503e5d8960ff
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4
hugohg34/toposervice:0.0.2812a03b3f274
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm1
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm1
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.20

Open the chart page →

29,857
cloud-native-javamcouliba0.1.01 of 1See more

cloud-native-java mcouliba 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
openssl@1:1.1.1c-2.el8_1.1
1:1.1.1k-14.el8_10

Open the chart page →

4,980
medewerkercatalogusmedewerkercatalogus1.0.01 of 3See more

medewerkercatalogus medewerkercatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/medewerkercatalogus-nginx:latest06c3b27462e6
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

7,338
cameramedia-streaming-meshVerified publisher0.2.52 of 3See more

camera media-streaming-mesh 0.2.5

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

18,682
crdsmedia-streaming-meshVerified publisher0.0.11 of 2See more

crds media-streaming-mesh 0.0.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ciscolabs/msm-nc:0710202336d02faad958
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.20

Open the chart page →

3,728
ingressmedia-streaming-meshVerified publisher0.1.81 of 2See more

ingress media-streaming-mesh 0.1.8

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.7.07612338342a1
openssl@3.0.8-r1
3.0.19-r0

Open the chart page →

3,302
msmmedia-streaming-meshVerified publisher0.1.175 of 6See more

msm media-streaming-mesh 0.1.17

5 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.6
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.6
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.6

Open the chart page →

11,603
msm-rtspmedia-streaming-meshVerified publisher0.0.22 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

18,682
rtspmedia-streaming-meshVerified publisher0.0.142 of 2See more

rtsp media-streaming-mesh 0.0.14

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

18,682
meerschaummeerschaumVerified publisher0.2.01 of 1See more

meerschaum meerschaum 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bmeares/meerschaum:2.8.48e9c5bacaa82
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

5,933
memgptmemgptVerified publisher0.3.191 of 2See more

memgpt memgpt 0.3.19

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ankane/pgvector:v0.5.1d3a9d8ac27bb
openssl@3.0.11-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

5,921
istiomesosphere1.25.11 of 2See more

istio mesosphere 1.25.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

5,480

Container images carrying it

3,257 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/dexidp/dex:v2.44.05d0656fce7d4
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/dexidp/dex:v2.42.18186d6dd81f4
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
1
ghcr.io/distribution/distribution:3.0.04ba3adf47f5c
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.23+esm6
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/dodevops/azure-app-exporter/azure-app-exporter:0.1.38b472877847f5
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
1
ghcr.io/dploeger/cloudflare-ddns-update:v0.1.0ec06685b9ff4
openssl@3.3.0-r2
3.3.5-r0
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
openssl@1:1.1.1k-5.el8_5
1:1.1.1k-14.el8_10
1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
openssl@1:1.1.1k-5.el8_5
1:1.1.1k-14.el8_10
1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
openssl@1:3.0.1-43.el9_0
1:3.5.1-4.el9_7
1
ghcr.io/ducksify/pgdump-to-s3:latestc42c0946bd0f
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u4
1
ghcr.io/dysnix/docker-bitcoind:0.29.0490ca8e3dd21
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/dysnix/docker-tiny:0.0.16b8e02430649
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
openssl@1.1.1-1ubuntu2.1~18.04.13
1.1.1-1ubuntu2.1~18.04.23+esm6
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/edgelesssys/marblerun/coordinator:v1.9.2e589db0d0a2c
openssl@3.0.2-0ubuntu1.29
no fix listed
1
ghcr.io/einstack/glide:0.0.1-alpineab3f7d0a1d50
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/element-hq/hydrogen-web:v0.5.12d15d14b201a
openssl@3.3.2-r1
3.3.5-r0
1
ghcr.io/element-hq/matrix-authentication-service:0.14.0834ea54370f0
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/ellite/wallos:2.46.09ce55520e7bd
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/eminaktas/oom-tracer:v0.1.0c90ca8389c87
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/erlkoenig91/prompt-db-frontend:1.0.7121dc29eb14d
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/eshepelyuk/dckr/cmak-3.0.0.6:1.2.090a34412c6b5
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/esomore/bitcoin-prometheus-exporter:masterded173632986
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/estahn/k8s-image-swapper:1.5.102f5be9cde5f9
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/estaid-app/pgbouncer-docker:1.22.07e5630757299
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/eugenmayer/nist-data-mirror:0.1.1a2162df94729
openssl@3.0.8-r0
3.0.19-r0
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.