StackRadar

CVE-2025-9230

High

Advisory

Published 30 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,731
of 17,792 indexed, latest versions
Container images
3,248
deployed by those charts
Fix available
6 of 7
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,731 of 17,792 indexed charts deploy, on 3,248 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm11, 1.0.2g-1ubuntu4.20+esm13, 1.1.1-1ubuntu2.1~18.04.23+esm6, 1.1.1f-1ubuntu2.24+esm1+5 more1,957
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r1, 3.3.5-r0, 3.5.4-r0966
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm215
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+29 more1:1.0.2k-26.el7_9.1, 1:1.1.1k-14.el8_10, 1:3.2.2-7.el9_6.1, 1:3.5.1-4.el9_7322
openssl-3rpm3.2.3-150700.5.18.13.2.3-150700.5.21.13
openssl-1_1rpm1.1.1w-150700.11.3.11.1.1w-150700.11.6.11
OSV records
ALPINE-CVE-2025-9230CGA-c4v2-6rpm-vq95DEBIAN-CVE-2025-9230UBUNTU-CVE-2025-9230RHSA-2025:21174RHSA-2025:21255RHSA-2026:0337RHSA-2026:1720RLSA-2025:21255RLSA-2026:0337DLA-4321-1SUSE-SU-2025:03546-1SUSE-SU-2025:03635-1
Also known as
CGA-qm4c-c7mv-j233, RHSA-2025:21562, RHSA-2026:0602, RHSA-2026:0714, RHSA-2026:0794, RHSA-2026:0887, RHSA-2026:1475, USN-7786-1

Charts affected

2,731 by stars
ChartLatestAffected imagesRadar Score
mysql-operatorbitpokeVerified publisher0.6.32 of 2See more

mysql-operator bitpoke 0.6.3

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

3,354
celestia-appcelestia-labsVerified publisher0.5.01 of 3See more

celestia-app celestia-labs 0.5.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-app:v3.7.0-arabica23a9ec9b1879
openssl@3.1.8-r0
3.1.8-r1

Open the chart page →

1,073
fadicetic0.3.13 of 25See more

fadi cetic 0.3.1

3 of the 25 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
openssl@1.1.1f-1ubuntu2
1.1.1f-1ubuntu2.24+esm1
library/adminer:4.8.1-standalone34d37131366c
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

53,052
headwind-mdmchristianhuthVerified publisher5.10.22 of 2See more

headwind-mdm christianhuth 5.10.2

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
headwindmdm/hmdm:0.1.93550b4840840
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

5,929
routercosmo-routerOfficialVerified publisher0.18.01 of 1See more

router cosmo-router 0.18.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

1,686
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
wait4x/wait4x:3.3.14dcd86307de1
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

9,208
daskhubdask2024.1.13 of 9See more

daskhub dask 2024.1.1

3 of the 9 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20
ghcr.io/dask/dask-gateway-server:2024.1.0881e7acfc5a0
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
quay.io/jupyterhub/k8s-hub:3.2.12528c6e57587
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

14,151
seafiledatamateVerified publisher0.6.06 of 6See more

seafile datamate 0.6.0

6 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.1-debian-11-r29cfd2df1294d
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/os-shell:11-debian-11-r968643af4facff
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
datamate/seafile-professional:11.0.202dd66b722464
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.20

Open the chart page →

27,426
homerdjjudas21Verified publisher8.2.41 of 1See more

homer djjudas21 8.2.4

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
b4bz/homer:v24.12.14b44a4a9e329
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

399
k8s-image-swapperestahnVerified publisher1.11.01 of 2See more

k8s-image-swapper estahn 1.11.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/estahn/k8s-image-swapper:1.5.102f5be9cde5f9
openssl@3.1.4-r5
3.1.8-r1

Open the chart page →

1,987
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6

Open the chart page →

2,583
geonode-k8sgeonode-k8sVerified publisher2.0.02 of 10See more

geonode-k8s geonode-k8s 2.0.0

2 of the 10 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
alpine/curl:8.5.0513c4f0d7123
openssl@3.1.4-r5
3.1.8-r1
geonode/geoserver:2.28.4-latest81b1d431b7e9
openssl@3.0.2-0ubuntu1.23
no fix listed

Open the chart page →

14,112
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

12,359
openctihelm-openctiVerified publisher3.0.101See more

opencti helm-opencti 3.0.10

1 container image this version deploys carries CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

infrahubinfrahubVerified publisher4.33.23 of 5See more

infrahub infrahub 4.33.2

3 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

10,522
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

6,350
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10

Open the chart page →

4,663
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-14.el8_10

Open the chart page →

4,956
klusterviewklusterviewVerified publisher0.1.01 of 4See more

klusterview klusterview 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
kyleslugg/klusterview:latestba8c36dfdfbd
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

3,811
kubeflowkubeflow1.6.29 of 45See more

kubeflow kubeflow 1.6.2

9 of the 45 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6
istio/proxyv2:1.14.1df69c1a7af7c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm1
kubeflownotebookswg/kfam:v1.6.1f226fb44db57
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
kubeflownotebookswg/notebook-controller:v1.6.185e2e685abd6
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
kubeflownotebookswg/profile-controller:v1.6.19f01767a460f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
library/python:3.7eedf63967cdb
openssl@3.0.9-1
3.0.17-1~deb12u3
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm13
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

97,217
kubernetes-loggingkubernetes-logging4.8.02 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

2 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
fluent/fluent-bit:2.1.96a1d0c693dfa
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

10,573
librechatlibrechat1.8.101 of 3See more

librechat librechat 1.8.10

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

2,654
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

5,849
radarrloeken-at-homeVerified publisher5.27.0-nightly1 of 1See more

radarr loeken-at-home 5.27.0-nightly

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
loeken/radarr:5.27.0-nightlya24409d3846d
openssl@3.3.4-r0
3.3.5-r0

Open the chart page →

586
vclustermainVerified publisher0.17.01 of 10See more

vcluster main 0.17.0

1 of the 10 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/kubermatic/machine-controller:v1.57.0476ae867ae56
openssl@3.0.9-r1
3.0.19-r0

Open the chart page →

11,598
musicocielmusicocielVerified publisher0.0.02 of 3See more

musicociel musicociel 0.0.0

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
davdiv/musicociel:deva85f99be882c
openssl@3.1.4-r2
3.1.8-r1
library/postgres:15.2-alpined9c304353c03
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

4,406
headplanenbcloudVerified publisher0.1.23 of 4See more

headplane nbcloud 0.1.2

3 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3
headscale/headscale:0.25.1a7a8ae9616bb
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
ghcr.io/tale/headplane:0.5.50dbc52cffc19
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

7,997
node-local-dnsnode-local-dns2.4.01 of 1See more

node-local-dns node-local-dns 2.4.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

2,619
open5gsopen5gsVerified publisher2.3.43 of 5See more

open5gs open5gs 2.3.4

3 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
openssl@1.1.1w-0+deb11u2
1.1.1w-0+deb11u4
gradiant/open5gs-dbctl:0.10.3332031245fce
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
gradiant/open5gs-webui:2.7.5fbd10c017541
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

9,305
ubuntuopen-charts1.2.11 of 1See more

ubuntu open-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/ubuntu:22.042edbbc5dc405
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

1,579
clustersecretpatrungel0.2.01 of 1See more

clustersecret patrungel 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
flag5/clustersecret:0.0.94ad5748bfcc6
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

1,841
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20

Open the chart page →

8,777
prometheus-smartctl-exporterprometheus-communityVerified publisher0.17.11 of 1See more

prometheus-smartctl-exporter prometheus-community 0.17.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,064
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

10,563
taigarc-helm-charts0.1.01 of 7See more

taiga rc-helm-charts 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
taigaio/taiga-back:6.4.29f97323cc150
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

7,256
rke2-multusrke2-charts3.7.1-build20210416012 of 2See more

rke2-multus rke2-charts 3.7.1-build2021041601

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
rancher/hardened-cni-plugins:v0.9.1-build20210414be3c1d469bf7
openssl@1:1.0.2k-21.el7_9
1:1.0.2k-26.el7_9.1
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
openssl@1:1.0.2k-21.el7_9
1:1.0.2k-26.el7_9.1

Open the chart page →

4,526
piholesavepointsamVerified publisher0.2.01 of 1See more

pihole savepointsam 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
pihole/pihole:2023.05.0b83258064f54
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4

Open the chart page →

1,048
popeyeself-hosters-by-nightVerified publisher0.6.11 of 1See more

popeye self-hosters-by-night 0.6.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

1,196
openspeedtestspeedtestVerified publisher0.1.21 of 1See more

openspeedtest speedtest 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
openspeedtest/latest:v2.0.0d4d62f4b7d85
openssl@3.0.9-r1
3.0.19-r0

Open the chart page →

2,040
k8s-telegram-sendertelegram-senderVerified publisher0.0.11 of 1See more

k8s-telegram-sender telegram-sender 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
danuk/telegram-sender:0.0.1026560388070
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

3,048
topolvmtopolvmVerified publisher17.2.01 of 1See more

topolvm topolvm 17.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,374
uffizzi-appuffizzi-app1.3.02 of 14See more

uffizzi-app uffizzi-app 1.3.0

2 of the 14 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
uffizzi/app:latest66e9e3937c60
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4
uffizzi/controller:latest0344805f267b
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

19,434
reposilitevolker-raschekVerified publisher1.0.01 of 1See more

reposilite volker-raschek 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.5.264128c2d7a6ba
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6

Open the chart page →

3,002
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm13

Open the chart page →

13,578
grafana-pdf-exporterwiremindVerified publisher2.1.11 of 1See more

grafana-pdf-exporter wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

9,775
matrixzekker6Verified publisher3.30.01 of 4See more

matrix zekker6 3.30.0

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
devture/exim-relay:4.98-r0-47ba30080c7a6
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

5,579
eshoponabpabp-charts1.0.012 of 15See more

eshoponabp abp-charts 1.0.0

12 of the 15 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/mongo:4.2699d652ed674
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm6
library/postgres:14.13162a6ead070
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/app-authserver:1.0.022ce496c67d7
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/app-publicweb:1.0.07e53010dda55
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/gateway-web:1.0.026465a2bf671
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/gateway-web-public:1.0.050cab15c80d9
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-administration:1.0.0206a9bee17a8
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-basket:1.0.0dd5ce454072e
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-catalog:1.0.07ecb00f53d99
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-identity:1.0.0e53bf47b62d0
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-ordering:1.0.15e836b17337f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
ghcr.io/volosoft/eshoponabp/service-payment:1.0.02ca91145099c
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

19,812
code-serveralekcVerified publisher0.1.11 of 1See more

code-server alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
linuxserver/code-server:4.10.1a5e43a05ae79
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.20

Open the chart page →

8,254
alerta-webalerta-webVerified publisher0.1.121 of 2See more

alerta-web alerta-web 0.1.12

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.2.0-debian-11-r113e65a6b89e38
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4

Open the chart page →

3,569
pod-gatewayangelnu7.1.11 of 2See more

pod-gateway angelnu 7.1.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/angelnu/pod-gateway:v1.13.0a5b032e15f75
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,134

Container images carrying it

3,248 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/lldap/lldap:2025-05-193de697c3ba57
openssl@3.1.8-r0
3.1.8-r1
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
openssl@1:3.2.2-6.el9_5.1
1:3.2.2-7.el9_6.1
1
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
openssl@3.3.1-r3
3.3.5-r0
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
openssl@3.0.2-0ubuntu1.29
no fix listed
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/luzifer/cert-manager-desec-webhook:v1.0.1fa1f6b2e9a6e
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/luzilla/unbound:v0.7.0-rc3252613692e5e
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
openssl@3.3.0-r2
3.3.5-r0
1
ghcr.io/m9sweeper/dash:1.6.02e27cdff8344
openssl@3.1.4-r2
3.1.8-r1
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/mailu/clamav:1.9.5001d30483e4a8
openssl@3.0.8-r0
3.0.19-r0
1
ghcr.io/manzil-infinity180/backend-dumpstore:226f28ca3efa6d3691044813cd09085e28d4a7b496c90cf82fdd
openssl@3.5.0-r0
3.5.4-r0
1
ghcr.io/manzil-infinity180/deploydefender:ea3ab0bb646cdbeddd1aca483ecf650f9ac0d0847fbc6855c8b3
openssl@3.3.4-r0
3.3.5-r0
1
ghcr.io/manzil-infinity180/frontend-dumpstore:226f28ca3efa6d3691044813cd09085e28d4a7b44e6394b715d9
openssl@3.5.0-r0
3.5.4-r0
1
ghcr.io/marthydavid/kafka-keda-golang-consumer:0.0.4e07644865dd1
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/marthydavid/kafka-keda-golang-producer:0.0.454b242c7bf2b
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4
1
ghcr.io/matanbaruch/cursor-admin-api-exporter:0.1.8ba3a29fc479a
openssl@3.3.4-r0
3.3.5-r0
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
openssl@3.5.1-1
3.5.1-1+deb13u1
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
openssl@3.5.1-1
3.5.1-1+deb13u1
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.6
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.6
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.6
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/mglants/kea-dhcp:2.5.8e1b6eb9e37f9
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/middleware-labs/mw-lang-aggregator:0.1.0ae6e13970ec2
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/middleware-labs/odigos-ui:middleware-test-0.0.787120a4561a9
openssl@3.0.8-r0
3.0.19-r0
1
ghcr.io/middleware-labs/vision-ui:middleware-test-0.0.853772b7b42c7
openssl@3.0.8-r0
3.0.19-r0
1
ghcr.io/miniflux/miniflux:2.2.83a11ac10969e
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/miniflux/miniflux:2.2.5bacc9b78ec61
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
openssl@3.1.4-r6
3.1.8-r1
1
ghcr.io/mollyim/mollysocket:1.1.12a687393f8c8
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/monicahq/monica-next:main8be69156acbb
openssl@3.5.1-1
3.5.1-1+deb13u1
1
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.20
1
ghcr.io/mroxso/pollstr:latest0b4f97faa3d0
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4
1
ghcr.io/mruoss/kompost:0.3.2292d9a8d67c5
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/mt190502/docker-anki-sync-server:25.09.2824245fd5a57
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/nabokihms/events_exporter:latest68d44646e8b2
openssl@3.0.7-r2
3.0.19-r0
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.6
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.