StackRadar

CVE-2025-9230

High

Advisory

Published 30 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,735
of 17,792 indexed, latest versions
Container images
3,257
deployed by those charts
Fix available
6 of 7
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,735 of 17,792 indexed charts deploy, on 3,257 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm11, 1.0.2g-1ubuntu4.20+esm13, 1.1.1-1ubuntu2.1~18.04.23+esm6, 1.1.1f-1ubuntu2.24+esm1+5 more1,963
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r1, 3.3.5-r0, 3.5.4-r0969
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm215
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+29 more1:1.0.2k-26.el7_9.1, 1:1.1.1k-14.el8_10, 1:3.2.2-7.el9_6.1, 1:3.5.1-4.el9_7322
openssl-3rpm3.2.3-150700.5.18.13.2.3-150700.5.21.13
openssl-1_1rpm1.1.1w-150700.11.3.11.1.1w-150700.11.6.11
OSV records
ALPINE-CVE-2025-9230CGA-c4v2-6rpm-vq95DEBIAN-CVE-2025-9230UBUNTU-CVE-2025-9230RHSA-2025:21174RHSA-2025:21255RHSA-2026:0337RHSA-2026:1720RLSA-2025:21255RLSA-2026:0337DLA-4321-1SUSE-SU-2025:03546-1SUSE-SU-2025:03635-1
Also known as
CGA-qm4c-c7mv-j233, RHSA-2025:21562, RHSA-2026:0602, RHSA-2026:0714, RHSA-2026:0794, RHSA-2026:0887, RHSA-2026:1475, USN-7786-1

Charts affected

2,735 by stars
ChartLatestAffected imagesRadar Score
camunda-bpm-platformcamunda-community-hub7.6.111 of 1See more

camunda-bpm-platform camunda-community-hub 7.6.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
camunda/camunda-bpm-platform:latestbcc5bb0542df
openssl@3.5.1-r0
3.5.4-r0

Open the chart page →

1,156
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/redisdigest-pinned83edc2b8e9ff
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

3,049
metabasedeliveryheroVerified publisher0.14.41 of 1See more

metabase deliveryhero 0.14.4

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
metabase/metabase:v0.45.21fb334ce4820
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

2,574
devtron-operatordevtron0.23.32 of 11See more

devtron-operator devtron 0.23.3

2 of the 11 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

33,219
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6

Open the chart page →

3,722
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6

Open the chart page →

5,415
envoy-gatewayhelmforgeVerified publisher2.1.01 of 3See more

envoy-gateway helmforge 2.1.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mccutchen/go-httpbin:v2.15.024528cf5229d
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

2,434
ilumilumOfficialVerified publisher6.7.37 of 19See more

ilum ilum 6.7.3

7 of the 19 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/os-shell:11-debian-11-r722cb5982dcbf4
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4
bitnamilegacy/postgresql:16.1.0-debian-11-r2504f3b0dfdb15
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
curlimages/curl:8.5.008e466006f08
openssl@3.1.4-r4
3.1.8-r1
gitea/gitea:1.22.376f516a1a8c2
openssl@3.3.2-r0
3.3.5-r0
ilum/mongodb:6.0.542b6d774c37d
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

23,406
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6

Open the chart page →

3,450
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

7,071
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
openssl@3.5.1-1
3.5.1-1+deb13u1

Open the chart page →

5,730
netris-controllernetrisai2.8.21 of 14See more

netris-controller netrisai 2.8.2

1 of the 14 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
netrisai/mariadb:10.11.4-debian-11-r460aa742a0b906
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4

Open the chart page →

30,532
homarroben01Verified publisher1.4.01 of 1See more

homarr oben01 1.4.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:0.16.0737ec361ed24
openssl@1.1.1w-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

2,581
syftopenmined0.9.55 of 6See more

syft openmined 0.9.5

5 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
library/traefik:v2.11.00a5157f742d2
openssl@3.1.4-r5
3.1.8-r1
openmined/syft-backend:0.9.5b72f74a68b32
openssl@3.4.1-r0
3.5.4-r0
openmined/syft-frontend:0.9.5d11524a3854a
openssl@3.4.1-r0
3.5.4-r0
openmined/syft-seaweedfs:0.9.53a4144c0bb82
openssl@3.1.6-r2
3.1.8-r1

Open the chart page →

17,394
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

8,591
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6
platform9community/api-gateway:latest40a4970de568
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6
platform9community/customers-service:latest2089811e5cc6
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6
platform9community/vets-service:latestd1165c94dfb3
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6
platform9community/visits-service:latest8d11b50368c6
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6

Open the chart page →

41,967
solrpreferred-aiVerified publisher3.2.01 of 3See more

solr preferred-ai 3.2.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/solr:8.7.0d124efd81fbb
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

6,048
puppetserverpuppetserver9.5.23 of 5See more

puppetserver puppetserver 9.5.2

3 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
curlimages/curl:8.7.125d29daeb9b1
openssl@3.1.4-r5
3.1.8-r1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.20
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.20

Open the chart page →

14,283
pyrrarlex0.15.01 of 1See more

pyrra rlex 0.15.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/pyrra-dev/pyrra:v0.8.10e02ef538ef0
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

953
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

11,848
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

7,407
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

6,397
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.20

Open the chart page →

5,686
barmanadfinisVerified publisher0.10.01 of 1See more

barman adfinis 0.10.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ubcctlt/barman:v2.19cbbbbc8ae16b
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

1,553
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

30,852
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

6,533
awx-operatorawx-operator-helm3.2.11 of 2See more

awx-operator awx-operator-helm 3.2.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-14.el8_10

Open the chart page →

9,882
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

12,176
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

3,057
passboltcnieg1.1.171 of 2See more

passbolt cnieg 1.1.17

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

3,544
codercoderOfficialVerified publisher1.44.62 of 2See more

coder coder 1.44.6

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
coderenvs/coder-service:1.44.61deffc4670e6
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-14.el8_10
coderenvs/timescale:1.44.676fd37fe6830
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-14.el8_10

Open the chart page →

7,183
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

5,969
emqx-operatoremqx-operator2.3.21 of 2See more

emqx-operator emqx-operator 2.3.2

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
alpine/k8s:1.31.49c4976d47656
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

4,550
kube-routerenixVerified publisher1.10.01 of 1See more

kube-router enix 1.10.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
cloudnativelabs/kube-router:v1.6.00ec7cd73f43f
openssl@3.0.9-r1
3.0.19-r0

Open the chart page →

2,351
bookstackgabe565Verified publisher0.20.01 of 1See more

bookstack gabe565 0.20.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/bookstack:version-v24.12.1cc795b254b73
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

2,814
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.20

Open the chart page →

4,973
redisinsightheywood8-helm-chartsVerified publisher0.4.51 of 1See more

redisinsight heywood8-helm-charts 0.4.5

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
heywood8/redisinsight:2.28.00bc9ab313d37
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4

Open the chart page →

2,831
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6

Open the chart page →

8,712
tailscale-relaymvisonneau0.2.71 of 1See more

tailscale-relay mvisonneau 0.2.7

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mvisonneau/tailscale:v1.68.1fc45ad8abf10
openssl@3.3.1-r0
3.3.5-r0

Open the chart page →

1,357
passboltpassbolt2.1.13 of 6See more

passbolt passbolt 2.1.1

3 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

13,588
redisinsight-secureredisinsight-secureVerified publisher1.0.21 of 1See more

redisinsight-secure redisinsight-secure 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
redis/redisinsight:2.68019fcf774631
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,723
servarrservarr1.0.28 of 10See more

servarr servarr 1.0.2

8 of the 10 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
dinutac/jinja2docker:2.1.89340dde8a8a4
openssl@3.1.4-r2
3.1.8-r1
jellyfin/jellyfin:10.8.1305a9734d7e83
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
rapidfort/curl:8.7.18483c9f4490f
openssl@3.1.4-r5
3.1.8-r1
ghcr.io/flaresolverr/flaresolverr:v3.3.16088412db1051
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
ghcr.io/onedr0p/prowlarr-develop:1.14.0.4286c77d84ebf7a6
openssl@3.1.4-r5
3.1.8-r1
ghcr.io/onedr0p/qbittorrent:4.6.3a4ad890e8c4a
openssl@3.1.4-r2
3.1.8-r1
ghcr.io/onedr0p/radarr:5.3.6.86128d299e59fce7
openssl@3.1.4-r5
3.1.8-r1
ghcr.io/onedr0p/sonarr:4.0.2.118327ffdcc8a937
openssl@3.1.4-r5
3.1.8-r1

Open the chart page →

14,235
rekorsigstoreVerified publisher1.8.62 of 9See more

rekor sigstore 1.8.6

2 of the 9 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/redisdigest-pinned148bb5411c18
openssl@3.3.3-r0
3.3.5-r0
gcr.io/trillian-opensource-ci/db_serverdigest-pinned2a685a38dd01
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

5,373
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
openssl@3.0.2-0ubuntu1.25
no fix listed

Open the chart page →

2,970
thehivestrangebee-helmOfficialVerified publisher1.0.73 of 7See more

thehive strangebee-helm 1.0.7

3 of the 7 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

16,242
uffizzi-controlleruffizzi-controller2.4.62 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

2 of the 11 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
registry.k8s.io/ingress-nginx/controller:v1.10.1e24f39d3eed6
openssl@3.1.4-r6
3.1.8-r1

Open the chart page →

14,320
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
curlimages/curl:8.5.008e466006f08
openssl@3.1.4-r4
3.1.8-r1

Open the chart page →

7,957
zipkinygqygq2Verified publisher2.1.41 of 4See more

zipkin ygqygq2 2.1.4

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
openzipkin/zipkin:2.24197a9692f6a9
openssl@3.1.4-r2
3.1.8-r1

Open the chart page →

2,764
zigbee2mqttzigbee2mqtt2.14.11 of 2See more

zigbee2mqtt zigbee2mqtt 2.14.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mikefarah/yq:4.45.12c100efaca06
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

1,032
aad-pod-identityaad-pod-identity4.1.181 of 2See more

aad-pod-identity aad-pod-identity 4.1.18

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/azure/aad-pod-identity/nmi:v1.8.1777788bf38938
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4

Open the chart page →

2,859

Container images carrying it

3,257 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/sergelogvinov/tabix:22.05.17a6e3e996a4ae
openssl@3.5.0-r0
3.5.4-r0
1
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/spidernet-io/egressgateway-agent:v0.6.9a8ec2f74c9d0
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/spidernet-io/egressgateway-controller:v0.6.99deda7b68c34
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/spiffe/spire-controller-manager:0.2.25e90b2d092df
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/streamingfast/blockmeta-service:2f971e04f0a86e490b6
openssl@3.1.4-r2
3.3.5-r0
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
openssl@3.1.7-r0
3.1.8-r1
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/substratusai/lingo:v0.2.12c807cd41ed4
openssl@3.3.1-r0
3.3.5-r0
1
ghcr.io/szpadel/languagetool-server:6.568fdab22b2a9
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/tale/headplane:0.5.50dbc52cffc19
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
openssl@3.1.7-r1
3.1.8-r1
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/techno-tim/littlelink-server:latest735a1fcd078b
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/techwolf12/pocketbase:0.29.3106099641679
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
openssl@3.0.15-r0
3.0.19-r0
1
ghcr.io/themesama/kubernetes-kustomize-patcher:latestb1bf0669e3a0
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/tjm/vault-gcp-secrets:v1.19.59f157fe035f1
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/topolvm/pie:0.18.0aa467443e407
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/topolvm/topolvm-with-sidecar:0.35.0b354978c440d
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.20
1
ghcr.io/traefik/traefik-hub:v2.11.0322f5f8cc105
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/trieb-work/saleor-apps/saleor-app-products-feed:1.23.11d435b4ab372
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/trieb-work/saleor-apps/saleor-app-search:1.24.328edefb6c92d
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/trieb-work/saleor-apps/saleor-app-smtp:1.4.357a06bfba327
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/usememos/memos:0.24.04723d86e6797
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/volosoft/eshoponabp/app-authserver:1.0.022ce496c67d7
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/app-publicweb:1.0.07e53010dda55
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/gateway-web:1.0.026465a2bf671
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/gateway-web-public:1.0.050cab15c80d9
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-administration:1.0.0206a9bee17a8
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-basket:1.0.0dd5ce454072e
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-catalog:1.0.07ecb00f53d99
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-identity:1.0.0e53bf47b62d0
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-ordering:1.0.15e836b17337f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.