StackRadar

CVE-2025-9230

High

Advisory

Published 30 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,731
of 17,792 indexed, latest versions
Container images
3,248
deployed by those charts
Fix available
6 of 7
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,731 of 17,792 indexed charts deploy, on 3,248 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm11, 1.0.2g-1ubuntu4.20+esm13, 1.1.1-1ubuntu2.1~18.04.23+esm6, 1.1.1f-1ubuntu2.24+esm1+5 more1,957
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r1, 3.3.5-r0, 3.5.4-r0966
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm215
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+29 more1:1.0.2k-26.el7_9.1, 1:1.1.1k-14.el8_10, 1:3.2.2-7.el9_6.1, 1:3.5.1-4.el9_7322
openssl-3rpm3.2.3-150700.5.18.13.2.3-150700.5.21.13
openssl-1_1rpm1.1.1w-150700.11.3.11.1.1w-150700.11.6.11
OSV records
ALPINE-CVE-2025-9230CGA-c4v2-6rpm-vq95DEBIAN-CVE-2025-9230UBUNTU-CVE-2025-9230RHSA-2025:21174RHSA-2025:21255RHSA-2026:0337RHSA-2026:1720RLSA-2025:21255RLSA-2026:0337DLA-4321-1SUSE-SU-2025:03546-1SUSE-SU-2025:03635-1
Also known as
CGA-qm4c-c7mv-j233, RHSA-2025:21562, RHSA-2026:0602, RHSA-2026:0714, RHSA-2026:0794, RHSA-2026:0887, RHSA-2026:1475, USN-7786-1

Charts affected

2,731 by stars
ChartLatestAffected imagesRadar Score
mysql-operatorbitpokeVerified publisher0.6.32 of 2See more

mysql-operator bitpoke 0.6.3

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

3,354
celestia-appcelestia-labsVerified publisher0.5.01 of 3See more

celestia-app celestia-labs 0.5.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-app:v3.7.0-arabica23a9ec9b1879
openssl@3.1.8-r0
3.1.8-r1

Open the chart page →

1,073
fadicetic0.3.13 of 25See more

fadi cetic 0.3.1

3 of the 25 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
openssl@1.1.1f-1ubuntu2
1.1.1f-1ubuntu2.24+esm1
library/adminer:4.8.1-standalone34d37131366c
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

53,052
headwind-mdmchristianhuthVerified publisher5.10.22 of 2See more

headwind-mdm christianhuth 5.10.2

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
headwindmdm/hmdm:0.1.93550b4840840
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

5,929
routercosmo-routerOfficialVerified publisher0.18.01 of 1See more

router cosmo-router 0.18.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

1,686
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
wait4x/wait4x:3.3.14dcd86307de1
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

9,208
daskhubdask2024.1.13 of 9See more

daskhub dask 2024.1.1

3 of the 9 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20
ghcr.io/dask/dask-gateway-server:2024.1.0881e7acfc5a0
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
quay.io/jupyterhub/k8s-hub:3.2.12528c6e57587
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

14,151
seafiledatamateVerified publisher0.6.06 of 6See more

seafile datamate 0.6.0

6 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.1-debian-11-r29cfd2df1294d
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/os-shell:11-debian-11-r968643af4facff
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
datamate/seafile-professional:11.0.202dd66b722464
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.20

Open the chart page →

27,426
homerdjjudas21Verified publisher8.2.41 of 1See more

homer djjudas21 8.2.4

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
b4bz/homer:v24.12.14b44a4a9e329
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

399
k8s-image-swapperestahnVerified publisher1.11.01 of 2See more

k8s-image-swapper estahn 1.11.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/estahn/k8s-image-swapper:1.5.102f5be9cde5f9
openssl@3.1.4-r5
3.1.8-r1

Open the chart page →

1,987
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6

Open the chart page →

2,583
geonode-k8sgeonode-k8sVerified publisher2.0.02 of 10See more

geonode-k8s geonode-k8s 2.0.0

2 of the 10 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
alpine/curl:8.5.0513c4f0d7123
openssl@3.1.4-r5
3.1.8-r1
geonode/geoserver:2.28.4-latest81b1d431b7e9
openssl@3.0.2-0ubuntu1.23
no fix listed

Open the chart page →

14,112
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

12,359
openctihelm-openctiVerified publisher3.0.101See more

opencti helm-opencti 3.0.10

1 container image this version deploys carries CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

infrahubinfrahubVerified publisher4.33.23 of 5See more

infrahub infrahub 4.33.2

3 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

10,522
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

6,350
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10

Open the chart page →

4,663
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-14.el8_10

Open the chart page →

4,956
klusterviewklusterviewVerified publisher0.1.01 of 4See more

klusterview klusterview 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
kyleslugg/klusterview:latestba8c36dfdfbd
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

3,811
kubeflowkubeflow1.6.29 of 45See more

kubeflow kubeflow 1.6.2

9 of the 45 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6
istio/proxyv2:1.14.1df69c1a7af7c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm1
kubeflownotebookswg/kfam:v1.6.1f226fb44db57
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
kubeflownotebookswg/notebook-controller:v1.6.185e2e685abd6
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
kubeflownotebookswg/profile-controller:v1.6.19f01767a460f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
library/python:3.7eedf63967cdb
openssl@3.0.9-1
3.0.17-1~deb12u3
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm13
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

97,217
kubernetes-loggingkubernetes-logging4.8.02 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

2 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
fluent/fluent-bit:2.1.96a1d0c693dfa
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

10,573
librechatlibrechat1.8.101 of 3See more

librechat librechat 1.8.10

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

2,654
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

5,849
radarrloeken-at-homeVerified publisher5.27.0-nightly1 of 1See more

radarr loeken-at-home 5.27.0-nightly

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
loeken/radarr:5.27.0-nightlya24409d3846d
openssl@3.3.4-r0
3.3.5-r0

Open the chart page →

586
vclustermainVerified publisher0.17.01 of 10See more

vcluster main 0.17.0

1 of the 10 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/kubermatic/machine-controller:v1.57.0476ae867ae56
openssl@3.0.9-r1
3.0.19-r0

Open the chart page →

11,598
musicocielmusicocielVerified publisher0.0.02 of 3See more

musicociel musicociel 0.0.0

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
davdiv/musicociel:deva85f99be882c
openssl@3.1.4-r2
3.1.8-r1
library/postgres:15.2-alpined9c304353c03
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

4,406
headplanenbcloudVerified publisher0.1.23 of 4See more

headplane nbcloud 0.1.2

3 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3
headscale/headscale:0.25.1a7a8ae9616bb
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
ghcr.io/tale/headplane:0.5.50dbc52cffc19
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

7,997
node-local-dnsnode-local-dns2.4.01 of 1See more

node-local-dns node-local-dns 2.4.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

2,619
open5gsopen5gsVerified publisher2.3.43 of 5See more

open5gs open5gs 2.3.4

3 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
openssl@1.1.1w-0+deb11u2
1.1.1w-0+deb11u4
gradiant/open5gs-dbctl:0.10.3332031245fce
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
gradiant/open5gs-webui:2.7.5fbd10c017541
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

9,305
ubuntuopen-charts1.2.11 of 1See more

ubuntu open-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/ubuntu:22.042edbbc5dc405
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

1,579
clustersecretpatrungel0.2.01 of 1See more

clustersecret patrungel 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
flag5/clustersecret:0.0.94ad5748bfcc6
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

1,841
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20

Open the chart page →

8,777
prometheus-smartctl-exporterprometheus-communityVerified publisher0.17.11 of 1See more

prometheus-smartctl-exporter prometheus-community 0.17.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,064
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

10,563
taigarc-helm-charts0.1.01 of 7See more

taiga rc-helm-charts 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
taigaio/taiga-back:6.4.29f97323cc150
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

7,256
rke2-multusrke2-charts3.7.1-build20210416012 of 2See more

rke2-multus rke2-charts 3.7.1-build2021041601

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
rancher/hardened-cni-plugins:v0.9.1-build20210414be3c1d469bf7
openssl@1:1.0.2k-21.el7_9
1:1.0.2k-26.el7_9.1
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
openssl@1:1.0.2k-21.el7_9
1:1.0.2k-26.el7_9.1

Open the chart page →

4,526
piholesavepointsamVerified publisher0.2.01 of 1See more

pihole savepointsam 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
pihole/pihole:2023.05.0b83258064f54
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4

Open the chart page →

1,048
popeyeself-hosters-by-nightVerified publisher0.6.11 of 1See more

popeye self-hosters-by-night 0.6.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

1,196
openspeedtestspeedtestVerified publisher0.1.21 of 1See more

openspeedtest speedtest 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
openspeedtest/latest:v2.0.0d4d62f4b7d85
openssl@3.0.9-r1
3.0.19-r0

Open the chart page →

2,040
k8s-telegram-sendertelegram-senderVerified publisher0.0.11 of 1See more

k8s-telegram-sender telegram-sender 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
danuk/telegram-sender:0.0.1026560388070
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

3,048
topolvmtopolvmVerified publisher17.2.01 of 1See more

topolvm topolvm 17.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,374
uffizzi-appuffizzi-app1.3.02 of 14See more

uffizzi-app uffizzi-app 1.3.0

2 of the 14 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
uffizzi/app:latest66e9e3937c60
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4
uffizzi/controller:latest0344805f267b
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

19,434
reposilitevolker-raschekVerified publisher1.0.01 of 1See more

reposilite volker-raschek 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.5.264128c2d7a6ba
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6

Open the chart page →

3,002
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm13

Open the chart page →

13,578
grafana-pdf-exporterwiremindVerified publisher2.1.11 of 1See more

grafana-pdf-exporter wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

9,775
matrixzekker6Verified publisher3.30.01 of 4See more

matrix zekker6 3.30.0

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
devture/exim-relay:4.98-r0-47ba30080c7a6
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

5,579
eshoponabpabp-charts1.0.012 of 15See more

eshoponabp abp-charts 1.0.0

12 of the 15 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/mongo:4.2699d652ed674
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm6
library/postgres:14.13162a6ead070
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/app-authserver:1.0.022ce496c67d7
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/app-publicweb:1.0.07e53010dda55
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/gateway-web:1.0.026465a2bf671
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/gateway-web-public:1.0.050cab15c80d9
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-administration:1.0.0206a9bee17a8
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-basket:1.0.0dd5ce454072e
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-catalog:1.0.07ecb00f53d99
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-identity:1.0.0e53bf47b62d0
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-ordering:1.0.15e836b17337f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-payment:1.0.02ca91145099c
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

19,812
code-serveralekcVerified publisher0.1.11 of 1See more

code-server alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
linuxserver/code-server:4.10.1a5e43a05ae79
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.20

Open the chart page →

8,254
alerta-webalerta-webVerified publisher0.1.121 of 2See more

alerta-web alerta-web 0.1.12

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.2.0-debian-11-r113e65a6b89e38
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4

Open the chart page →

3,569
pod-gatewayangelnu7.1.11 of 2See more

pod-gateway angelnu 7.1.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/angelnu/pod-gateway:v1.13.0a5b032e15f75
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,134

Container images carrying it

3,248 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/flaresolverr/flaresolverr:v3.3.21f104ee51e512
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
1
ghcr.io/flatcar/nebraska:4.0.05c9e99ff7167
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/flohansen/dasher-server:latest7cde8c3fa2d1
openssl@3.3.1-r3
3.3.5-r0
1
ghcr.io/fluxcd/flux-cli:v2.5.1274a179fd402
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/fluxcd/helm-controller:v1.2.062eaa9c9a929
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.20
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.20
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/fpetr/readium-lcp-server-docker-helm/lcpserver:1.9.0324f9b7b689c
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/fpetr/readium-lcp-server-docker-helm/lsdserver:1.9.0cdba39e3f3d0
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u4
1
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/gabe565/ascii-movie:1.9.627f85bb98da3
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/gabe565/domain-watch:latest34c5a1e351d6
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/gabe565/limo:latest6dfdbc9853bb
openssl@3.1.4-r2
3.1.8-r1
1
ghcr.io/gabe565/matrimony:latestd39a9d7c3e1b
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/gabe565/mnemonic-ninja:latest1fd90a9e4d04
openssl@3.1.4-r6
3.1.8-r1
1
ghcr.io/gearbox-protocol/safe-watcher:1.2.14e92a4508bee
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/gochain/rpc-proxy/rpc-proxy:latestca01f5ab95f7
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/grafana/alloy-operator:1.3.02088dcb22aaa
openssl@1:3.2.2-6.el9_5.1
1:3.2.2-7.el9_6.1
1
ghcr.io/grafana/alloy-operator:1.7.02ce23f948e02
openssl@1:3.2.2-6.el9_5.1
1:3.2.2-7.el9_6.1
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/grycap/im:latest06a16d4f279f
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/helm/chartmuseum:v0.16.3c81f105c3682
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/hemslo/chat-search:latest39d48995a5bd
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/hiteshnayak305/cors-proxy:1.2.0e6ff0a131556
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/home-operations/beets:2.3.1cc4975f1a0be
openssl@3.5.0-r0
3.5.4-r0
1
ghcr.io/hoverkraft-tech/ovh-snapshoter/app:0.4.1010d271f08ab3
openssl@1.1.1w-0+deb11u2
1.1.1w-0+deb11u4
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/interplex-ai/interplex:v1.1.041b0dd0d55b2
openssl@3.5.0-r0
3.5.4-r0
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.20
1
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
openssl@1:3.2.2-6.el9_5.1
1:3.2.2-7.el9_6.1
1
ghcr.io/it-at-m/wjh-rechner:1.0.0bc70cdb5a01a
openssl@1:3.0.7-25.el9_3
1:3.5.1-4.el9_7
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/jaydee94/kubeseal-webgui/ui:4.5.34447636e8102
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
openssl@3.5.1-r0
3.5.4-r0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.