StackRadar

CVE-2025-9230

High

Advisory

Published 30 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,735
of 17,797 indexed, latest versions
Container images
3,257
deployed by those charts
Fix available
6 of 7
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,735 of 17,797 indexed charts deploy, on 3,257 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm11, 1.0.2g-1ubuntu4.20+esm13, 1.1.1-1ubuntu2.1~18.04.23+esm6, 1.1.1f-1ubuntu2.24+esm1+5 more1,963
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r1, 3.3.5-r0, 3.5.4-r0969
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm215
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+29 more1:1.0.2k-26.el7_9.1, 1:1.1.1k-14.el8_10, 1:3.2.2-7.el9_6.1, 1:3.5.1-4.el9_7322
openssl-3rpm3.2.3-150700.5.18.13.2.3-150700.5.21.13
openssl-1_1rpm1.1.1w-150700.11.3.11.1.1w-150700.11.6.11
OSV records
ALPINE-CVE-2025-9230CGA-c4v2-6rpm-vq95DEBIAN-CVE-2025-9230UBUNTU-CVE-2025-9230RHSA-2025:21174RHSA-2025:21255RHSA-2026:0337RHSA-2026:1720RLSA-2025:21255RLSA-2026:0337DLA-4321-1SUSE-SU-2025:03546-1SUSE-SU-2025:03635-1
Also known as
CGA-qm4c-c7mv-j233, RHSA-2025:21562, RHSA-2026:0602, RHSA-2026:0714, RHSA-2026:0794, RHSA-2026:0887, RHSA-2026:1475, USN-7786-1

Charts affected

2,735 by stars
ChartLatestAffected imagesRadar Score
glancealpineworks0.1.11 of 1See more

glance alpineworks 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
glanceapp/glance:v0.8.46df86a7e8868
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,006
katalogalpineworks0.1.21 of 5See more

katalog alpineworks 0.1.2

1 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/katalog-frontend:v1.0.734b76dcb1c10
openssl@1.1.1w-0+deb11u2
1.1.1w-0+deb11u4

Open the chart page →

4,542
versitygwalpineworks0.1.21 of 1See more

versitygw alpineworks 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
versity/versitygw:v1.0.145192635d0353
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,115
pagesalstom-pages-app1.0.02 of 3See more

pages alstom-pages-app 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm1
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm6

Open the chart page →

20,262
amorphieamorphie0.1.24 of 18See more

amorphie amorphie 0.1.2

4 of the 18 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
burganbank/vault-initializer:v19259c34e4037
openssl@3.3.0-r2
3.3.5-r0
camunda/zeebe:8.4.5ab5abc09e407
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.20
hazelcast/management-center:5.3.2f9d34300d330
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-14.el8_10
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20

Open the chart page →

28,342
sliding-sync-proxyananace-chartsVerified publisher0.2.131 of 2See more

sliding-sync-proxy ananace-charts 0.2.13

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
openssl@3.0.13-r0
3.0.19-r0

Open the chart page →

1,599
anchore-admission-controlleranchore-charts0.9.01 of 2See more

anchore-admission-controller anchore-charts 0.9.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

7,597
openhab-cloudandibraeuVerified publisher1.2.61 of 1See more

openhab-cloud andibraeu 1.2.6

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
openhab/openhab-cloud:a8138a329dd2bac8c4b
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

3,440
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm1
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm6

Open the chart page →

20,262
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm6

Open the chart page →

11,593
wmbusmetersandrenarchyVerified publisher1.2.01 of 1See more

wmbusmeters andrenarchy 1.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
wmbusmeters/wmbusmeters:release-1.18.0d82715d9ae22
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

516
games-on-whalesangelnu2.0.04 of 7See more

games-on-whales angelnu 2.0.0

4 of the 7 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.20
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm1
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm1
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

42,253
ddosifyanteonVerified publisher1.7.56 of 13See more

ddosify anteon 1.7.5

6 of the 13 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
ddosify/selfhosted_hammermanager:1.2.471b8768f49bc
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4
library/influxdb:2.6.1-alpine44a366dd7724
openssl@3.0.8-r3
3.0.19-r0
library/rabbitmq:3.13.0-alpineb4abd8d41c68
openssl@3.1.4-r5
3.1.8-r1
library/redis:7.2.4-alpinec8bb255c3559
openssl@3.1.4-r6
3.1.8-r1

Open the chart page →

26,070
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-14.el8_10

Open the chart page →

2,461
apimap-apiapimapOfficialVerified publisher1.8.111 of 1See more

apimap-api apimap 1.8.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
apimap/api:v1.8.11ae2b3ab00177
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

2,233
apimap-developerapimapOfficialVerified publisher1.4.11 of 1See more

apimap-developer apimap 1.4.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
apimap/developer:v1.3.1406d3858e20c
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

2,356
apimap-portalapimapOfficialVerified publisher2.4.01 of 1See more

apimap-portal apimap 2.4.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
apimap/portal:v2.4.0041a4790c65c
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

2,399
apishiftapishiftVerified publisher0.3.01 of 4See more

apishift apishift 0.3.0

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
openssl@1:3.2.2-6.el9_5.1
1:3.5.1-4.el9_7

Open the chart page →

2,962
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20

Open the chart page →

6,302
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-worker:1.0.10d221e834a21
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

19,799
app-mobilityappmo0.1.02 of 5See more

app-mobility appmo 0.1.0

2 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10

Open the chart page →

12,542
app-movies-seriesapp-movies-seriesVerified publisher0.1.02 of 2See more

app-movies-series app-movies-series 0.1.0

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
felipecs8/app-movies-series:v14e51693fcdf5
openssl@3.0.8-r3
3.0.19-r0
library/postgres:14.32d1e636f0778
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u4

Open the chart page →

3,168
capa-vpc-peering-operatorappscodeVerified publisher2023.12.111 of 1See more

capa-vpc-peering-operator appscode 2023.12.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/capa-vpc-peering-operator:v0.0.4b1557553a2b3
openssl@3.1.4-r2
3.1.8-r1

Open the chart page →

1,433
capi-ops-managerappscodeVerified publisher2024.8.141 of 2See more

capi-ops-manager appscode 2024.8.14

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/capi-ops-manager:v0.0.57465f35b684c
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

3,430
deploy-uiappscodeVerified publisher2026.9.111 of 1See more

deploy-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/deploy-ui:0.3.6f3e07eff3997
openssl@3.3.2-r1
3.3.5-r0

Open the chart page →

721
docker-machine-operatorappscodeVerified publisher2024.7.91 of 1See more

docker-machine-operator appscode 2024.7.9

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/docker-machine-operator:v0.0.481f6007abb4e
openssl@3.3.1-r1
3.3.5-r0

Open the chart page →

2,227
fluxcd-addon-managerappscodeVerified publisher2024.2.251 of 1See more

fluxcd-addon-manager appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/fluxcd-addon:v0.0.23acba3df8827
openssl@3.1.4-r6
3.1.8-r1

Open the chart page →

1,311
gateway-converterappscodeVerified publisher2024.8.301 of 1See more

gateway-converter appscode 2024.8.30

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/gateway-converter:v0.0.1b92123805584
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

1,275
gh-ci-webhookappscodeVerified publisher2026.9.111 of 1See more

gh-ci-webhook appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/gh-ci-webhook:v0.0.2036ce246d884e
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,248
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
openssl@3.0.2-0ubuntu1.20
no fix listed

Open the chart page →

4,013
inbox-server-distributedappscodeVerified publisher2025.12.253 of 4See more

inbox-server-distributed appscode 2025.12.25

3 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.20
library/rabbitmq:3.12.1-managementf020c06da226
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.20
ghcr.io/appscode/inbox-server:latest536358d7b17e
openssl@3.0.2-0ubuntu1.20
no fix listed

Open the chart page →

15,764
inbox-uiappscodeVerified publisher2026.9.111 of 1See more

inbox-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-ui:0.0.5ae3b0e29daaa
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

843
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.20
library/rabbitmq:3.12.1-managementf020c06da226
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.20
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.20

Open the chart page →

17,169
kube-auth-managerappscodeVerified publisher2023.11.141 of 1See more

kube-auth-manager appscode 2023.11.14

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-auth-manager:v0.0.1789692ab9193
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

1,946
kube-auth-proxyappscodeVerified publisher2023.11.141 of 1See more

kube-auth-proxy appscode 2023.11.14

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/kube-auth-manager:v0.0.1789692ab9193
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

1,946
kubedb-communityappscodeVerified publisher0.24.21 of 2See more

kubedb-community appscode 0.24.2

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
kubedb/operator:v0.24.01a06ff0bda52
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

2,557
kubedb-enterpriseappscodeVerified publisher0.11.21 of 2See more

kubedb-enterprise appscode 0.11.2

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
kubedb/kubedb-enterprise:v0.11.05829bcedcb0d
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

2,582
kubedb-oneappscodeVerified publisher2023.12.284 of 10See more

kubedb-one appscode 2023.12.28

4 of the 10 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-autoscaler:v0.25.0df6b11907d33
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
ghcr.io/kubedb/kubedb-ops-manager:v0.27.1ec36422b09af
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
ghcr.io/kubedb/kubedb-provisioner:v0.40.242574f512837
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
ghcr.io/kubedb/kubedb-webhook-server:v0.16.2e24894e32cbc
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

15,273
kubedb-provider-awsappscodeVerified publisher2026.7.101 of 1See more

kubedb-provider-aws appscode 2026.7.10

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kubedb/provider-aws:v0.27.049b1c312e342
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,534
kubedb-provider-azureappscodeVerified publisher2026.7.101 of 1See more

kubedb-provider-azure appscode 2026.7.10

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kubedb/provider-azure:v0.27.0aa0c8526ae5e
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,712
kubedb-provider-gcpappscodeVerified publisher2026.7.101 of 2See more

kubedb-provider-gcp appscode 2026.7.10

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kubedb/provider-gcp:v0.27.0a1d4cf8b8fe1
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

3,041
kubeform-provider-awsappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-aws appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-aws:v0.0.1e3d1f1302e49
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,803
kubeform-provider-azureappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-azure appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-azure:v0.0.1ac8459f70f85
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,724
kubeform-provider-gcpappscodeVerified publisher2023.11.11 of 1See more

kubeform-provider-gcp appscode 2023.11.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kubeform/provider-gcp:v0.0.1af77073c184f
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,750
license-proxyserver-addon-managerappscodeVerified publisher2024.2.251 of 1See more

license-proxyserver-addon-manager appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/license-proxyserver:v0.0.8d6c2532ea386
openssl@3.1.4-r5
3.1.8-r1

Open the chart page →

1,391
managed-serviceaccountappscodeVerified publisher2024.2.251 of 1See more

managed-serviceaccount appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-14.el8_10

Open the chart page →

2,404
marketplace-uiappscodeVerified publisher2026.9.111 of 1See more

marketplace-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/marketplace-ui:0.3.1d52177072013
openssl@3.3.2-r1
3.3.5-r0

Open the chart page →

721
minioappscodeVerified publisher2026.9.111 of 1See more

minio appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10

Open the chart page →

4,050
multicluster-controlplaneappscodeVerified publisher2025.4.301 of 1See more

multicluster-controlplane appscode 2025.4.30

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-14.el8_10

Open the chart page →

2,576
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.20

Open the chart page →

3,322

Container images carrying it

3,257 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/mruoss/kompost:0.3.2292d9a8d67c5
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/mt190502/docker-anki-sync-server:25.09.2824245fd5a57
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/nabokihms/events_exporter:latest68d44646e8b2
openssl@3.0.7-r2
3.0.19-r0
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.6
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/nerdswords/yet-another-cloudwatch-exporter:v0.61.2f04925fe1fa6
openssl@3.3.1-r0
3.3.5-r0
1
ghcr.io/nlamirault/bbox_exporter:1.0.0f5dd1f7794c6
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/nlamirault/freebox-exporter:1.0.02d522b664e12
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/nnstd/glauth:2.52e6e09fa77dd
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/onedr0p/prowlarr-develop:1.14.0.4286c77d84ebf7a6
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/onedr0p/qbittorrent:4.6.3a4ad890e8c4a
openssl@3.1.4-r2
3.1.8-r1
1
ghcr.io/onedr0p/radarr:5.3.6.86128d299e59fce7
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/onedr0p/sonarr:4.0.2.118327ffdcc8a937
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/openclarity/grype-server:v0.6.079412399f301
openssl@3.0.10-r0
3.0.19-r0
1
ghcr.io/openclarity/kubeclarity:v2.23.314450f52a708
openssl@3.1.5-r0
3.1.8-r1
1
ghcr.io/openclarity/kubeclarity-sbom-db:v2.23.3cef2b88bfc76
openssl@3.1.5-r0
3.1.8-r1
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/openfaas/cron-connector:0.7.0982498e8a41e
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/openfaas/faas-netes:0.18.1224431adc8e2d
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/openfaas/gateway:0.27.1382b15393116e
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/openfaas/gateway:0.27.14ee0eaecc490c
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/openfaasltd/federated-gateway:0.2.39066d7b3e6a1
openssl@3.1.4-r2
3.1.8-r1
1
ghcr.io/openfaasltd/gcp-pubsub-connector:0.0.18df071f5b719
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/openfaasltd/jetstream-queue-worker:0.3.37d96366e208b1
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/openfaasltd/postgres-connector:0.2.3379e583a0a75
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/openfaasltd/pro-builder:0.6.06c17297f9098
openssl@3.5.0-r0
3.5.4-r0
1
ghcr.io/openfaasltd/rabbitmq-connector:0.1.2349f7dca95ec
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/openfaasltd/sns-connector:0.2.0e9ab76a4ec77
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/openfaasltd/sqs-connector:0.3.4d44ed3b3128c
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/openlit/openlit:1.24.02434560e8f0e
openssl@1.1.1w-0+deb11u2
1.1.1w-0+deb11u4
1
ghcr.io/openstack-exporter/openstack-exporter:1.7.0e5146a7dd515
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
1
ghcr.io/open-telemetry/demo:1.12.0-productcatalogservice008b9b662289
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/open-telemetry/demo:1.12.0-kafka071a788162e8
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
openssl@3.0.2-0ubuntu1.25
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-checkoutservice380eccdc29e9
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/open-telemetry/demo:1.12.0-cartservice89730afa0b5d
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.20
1
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
openssl@3.3.0-r2
3.3.5-r0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.