StackRadar

CVE-2025-9230

High

Advisory

Published 30 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,736
of 17,803 indexed, latest versions
Container images
3,257
deployed by those charts
Fix available
6 of 7
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,736 of 17,803 indexed charts deploy, on 3,257 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm11, 1.0.2g-1ubuntu4.20+esm13, 1.1.1-1ubuntu2.1~18.04.23+esm6, 1.1.1f-1ubuntu2.24+esm1+5 more1,963
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r1, 3.3.5-r0, 3.5.4-r0969
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm215
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+29 more1:1.0.2k-26.el7_9.1, 1:1.1.1k-14.el8_10, 1:3.2.2-7.el9_6.1, 1:3.5.1-4.el9_7322
openssl-3rpm3.2.3-150700.5.18.13.2.3-150700.5.21.13
openssl-1_1rpm1.1.1w-150700.11.3.11.1.1w-150700.11.6.11
OSV records
ALPINE-CVE-2025-9230CGA-c4v2-6rpm-vq95DEBIAN-CVE-2025-9230UBUNTU-CVE-2025-9230RHSA-2025:21174RHSA-2025:21255RHSA-2026:0337RHSA-2026:1720RLSA-2025:21255RLSA-2026:0337DLA-4321-1SUSE-SU-2025:03546-1SUSE-SU-2025:03635-1
Also known as
CGA-qm4c-c7mv-j233, RHSA-2025:21562, RHSA-2026:0602, RHSA-2026:0714, RHSA-2026:0794, RHSA-2026:0887, RHSA-2026:1475, USN-7786-1

Charts affected

2,736 by stars
ChartLatestAffected imagesRadar Score
otlp-gatewayloafoe0.0.21 of 2See more

otlp-gateway loafoe 0.0.2

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/loafoe/caddy-token:v0.3.0528f2174fa2f
openssl@3.3.1-r3
3.3.5-r0

Open the chart page →

2,170
patch-operatorloafoe0.11.31 of 2See more

patch-operator loafoe 0.11.3

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
openssl@1:1.1.1k-4.el8
1:1.1.1k-14.el8_10

Open the chart page →

4,912
tempo-distributedloafoe1.20.12 of 2See more

tempo-distributed loafoe 1.20.1

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
grafana/tempo:2.6.0f55a8a1937ff
openssl@3.3.1-r3
3.3.5-r0
library/memcached:1.6.29-alpine462ae4a35c26
openssl@3.3.1-r3
3.3.5-r0

Open the chart page →

2,037
weather-app-chartlocal-weatherapp0.1.02 of 4See more

weather-app-chart local-weatherapp 0.1.0

2 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:8.0.36-debian-11-r38aad73aa0c6d
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
youssef11gaber10/deployment-ui-react:latestba6853e35c60
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u4

Open the chart page →

5,913
locust-pluginslocust-pluginsVerified publisher0.0.42 of 3See more

locust-plugins locust-plugins 0.0.4

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
sky5367/locust-plugins-grafana:latestd51bf68d4b26
openssl@3.1.4-r5
3.1.8-r1

Open the chart page →

7,570
vnode-runtimeloftVerified publisher0.3.31 of 1See more

vnode-runtime loft 0.3.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,536
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20

Open the chart page →

6,680
lm-logslogicmonitorVerified publisher0.3.51 of 1See more

lm-logs logicmonitor 0.3.5

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
logicmonitor/lm-logs-k8s-fluentd:1.0.55ac21b3f1572
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4

Open the chart page →

1,030
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

6,591
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

23,727
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6

Open the chart page →

5,924
loxilbloxilbVerified publisher0.1.02 of 2See more

loxilb loxilb 0.1.0

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
openssl@3.0.2-0ubuntu1.26
no fix listed
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

4,537
exposureloglsst-sqre0.2.11 of 1See more

exposurelog lsst-sqre 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lsstsqre/exposurelog:0.8.079b00fb67a65
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

2,079
fireflylsst-sqre0.3.71 of 2See more

firefly lsst-sqre 0.3.7

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/redis:5fc5ecd863862
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

1,731
influxdblsst-sqre3.1.11 of 2See more

influxdb lsst-sqre 3.1.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/influxdb:1.8.10-alpine2601e27d6b7e
openssl@3.0.15-r0
3.0.19-r0

Open the chart page →

759
narrativeloglsst-sqre0.1.01 of 1See more

narrativelog lsst-sqre 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lsstsqre/narrativelog:0.1.0ce01de04ce21
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

1,639
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

86,968
sasquatchlsst-sqre0.1.132 of 6See more

sasquatch lsst-sqre 0.1.13

2 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/influxdb:1.8.10299ebda2c7e3
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
lsstsqre/strimzi-registry-operator:0.4.1e139fde946d7
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

9,351
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6
elastictranscoder/media-storage:f6d861a026208b8c2359
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6
elastictranscoder/transcoder:627e21dcb4a0327029e6
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm6

Open the chart page →

58,289
filebot-botluiscajl0.0.111 of 1See more

filebot-bot luiscajl 0.0.11

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lavandadelpatio/filebot-bot:0.0.1-SNAPSHOTd2cba20aa4d8
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

3,685
torznab-atomohdluiscajl0.0.31 of 1See more

torznab-atomohd luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
lavandadelpatio/torznab-atomohd:latest214eaef5444c
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

3,266
xteveluiscajl0.1.61 of 1See more

xteve luiscajl 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
dnsforge/xteve:latest4d9a685c8c28
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

4,315
ratelimitlumiumcoVerified publisher0.0.41 of 2See more

ratelimit lumiumco 0.0.4

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:a90e0e5d5966cbc14d5d
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,163
hyperglassm0nsterrr-hyperglassVerified publisher4.2.11 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
openssl@3.3.0-r2
3.3.5-r0

Open the chart page →

4,699
m9sweeperm9sweeperVerified publisher1.6.03 of 6See more

m9sweeper m9sweeper 1.6.0

3 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
kubesec/kubesec:v2.13.0c0f3b0673578
openssl@3.0.8-r0
3.0.19-r0
ghcr.io/m9sweeper/dash:1.6.02e27cdff8344
openssl@3.1.4-r2
3.1.8-r1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

9,848
magistralamagistrala-devopsVerified publisher0.16.27 of 42See more

magistrala magistrala-devops 0.16.2

7 of the 42 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31-latestcaa5b411be16
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.20
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20
library/nats:2.10.17-alpineb7752304692b
openssl@3.3.1-r0
3.3.5-r0
natsio/nats-box:0.14.31cc420186664
openssl@3.1.4-r5
3.1.8-r1
natsio/nats-server-config-reloader:0.15.05b21830a9e9d
openssl@3.3.0-r2
3.3.5-r0
supermq/vernemq:latest944a0be3563e
openssl@3.1.4-r4
3.1.8-r1
ghcr.io/absmach/magistrala/ui-smq:latestea7e7f0e293e
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

24,748
docker-mailservermailserverVerified publisher0.2.657 of 9See more

docker-mailserver mailserver 0.2.65

7 of the 9 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
jeboehm/mailserver-filter:5.0.92e756949e537d
openssl@3.3.4-r0
3.3.5-r0
jeboehm/mailserver-mda:5.0.92d03fb7bae0a2
openssl@3.3.4-r0
3.3.5-r0
jeboehm/mailserver-mta:5.0.925fb2f31c940d
openssl@3.3.4-r0
3.3.5-r0
jeboehm/mailserver-virus:5.0.92eb5c1c260d11
openssl@3.3.4-r0
3.3.5-r0
jeboehm/mailserver-web:5.0.929da13edf5aa8
openssl@3.5.2-r0
3.5.4-r0
mvance/unbound:1.22.076906da36d18
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
openssl@3.5.1-r0
3.5.4-r0

Open the chart page →

11,536
prometheus-exportermakaira1.2.21 of 2See more

prometheus-exporter makaira 1.2.2

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/nginx:1.24-alpine77e5d4a6ad90
openssl@3.0.12-r4
3.0.19-r0

Open the chart page →

653
mangadev-hello-worldmangadev0.3.01 of 1See more

mangadev-hello-world mangadev 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
wagnermanganelli164/webserver-hello-world:0.3.0d4ef27a4f180
openssl@3.3.1-r3
3.3.5-r0

Open the chart page →

863
nodecg-chartmarathon-charts0.1.52 of 2See more

nodecg-chart marathon-charts 0.1.5

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/rodg/nodecg-base:latest31be4bf87070
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
openssl@3.0.9-1
3.0.17-1~deb12u3

Open the chart page →

7,366
consumermarthydavidVerified publisher0.1.61 of 1See more

consumer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-consumer:0.0.4e07644865dd1
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

806
producermarthydavidVerified publisher0.1.61 of 1See more

producer marthydavid 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/marthydavid/kafka-keda-golang-producer:0.0.454b242c7bf2b
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

806
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

4,163
kruisematrixone-operatorVerified publisher1.8.31 of 2See more

kruise matrixone-operator 1.8.3

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
openkruise/kruise-helm-hook:v0.1.0edc7cf9428fd
openssl@3.1.7-r1
3.1.8-r1

Open the chart page →

1,927
matrix-sliding-syncmatrix-sliding-sync0.2.31 of 1See more

matrix-sliding-sync matrix-sliding-sync 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/matrix-org/sliding-sync:v0.99.19b940cab56435
openssl@3.0.13-r0
3.0.19-r0

Open the chart page →

1,607
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

4,127
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

8,475
mayastormayastorVerified publisher2.12.14 of 31See more

mayastor mayastor 2.12.1

4 of the 31 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
openssl@3.3.3-r0
3.3.5-r0
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
openssl@3.0.7-r2
3.0.19-r0
natsio/prometheus-nats-exporter:0.11.031c02aac089a
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

21,596
eoloplantmca-eoloplaner0.1.06 of 7See more

eoloplant mca-eoloplaner 0.1.0

6 of the 7 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
codeurjc/weatherservice:v1.0b9e2f7234349
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10
hugohg34/planner:0.0.2171f61e8d7e2
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4
hugohg34/server:0.0.2503e5d8960ff
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4
hugohg34/toposervice:0.0.2812a03b3f274
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm1
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm1
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.20

Open the chart page →

29,857
cloud-native-javamcouliba0.1.01 of 1See more

cloud-native-java mcouliba 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
openssl@1:1.1.1c-2.el8_1.1
1:1.1.1k-14.el8_10

Open the chart page →

4,980
medewerkercatalogusmedewerkercatalogus1.0.01 of 3See more

medewerkercatalogus medewerkercatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/medewerkercatalogus-nginx:latest06c3b27462e6
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

7,338
cameramedia-streaming-meshVerified publisher0.2.52 of 3See more

camera media-streaming-mesh 0.2.5

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

18,682
crdsmedia-streaming-meshVerified publisher0.0.11 of 2See more

crds media-streaming-mesh 0.0.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ciscolabs/msm-nc:0710202336d02faad958
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.20

Open the chart page →

3,728
ingressmedia-streaming-meshVerified publisher0.1.81 of 2See more

ingress media-streaming-mesh 0.1.8

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.7.07612338342a1
openssl@3.0.8-r1
3.0.19-r0

Open the chart page →

3,302
msmmedia-streaming-meshVerified publisher0.1.175 of 6See more

msm media-streaming-mesh 0.1.17

5 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.6
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.6
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.6

Open the chart page →

11,603
msm-rtspmedia-streaming-meshVerified publisher0.0.22 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

18,682
rtspmedia-streaming-meshVerified publisher0.0.142 of 2See more

rtsp media-streaming-mesh 0.0.14

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

18,682
meerschaummeerschaumVerified publisher0.2.01 of 1See more

meerschaum meerschaum 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bmeares/meerschaum:2.8.48e9c5bacaa82
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

5,933
memgptmemgptVerified publisher0.3.191 of 2See more

memgpt memgpt 0.3.19

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ankane/pgvector:v0.5.1d3a9d8ac27bb
openssl@3.0.11-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

5,921
istiomesosphere1.25.11 of 2See more

istio mesosphere 1.25.1

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

5,480

Container images carrying it

3,257 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/sergelogvinov/tabix:22.05.17a6e3e996a4ae
openssl@3.5.0-r0
3.5.4-r0
1
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/spidernet-io/egressgateway-agent:v0.6.9a8ec2f74c9d0
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/spidernet-io/egressgateway-controller:v0.6.99deda7b68c34
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/spiffe/spire-controller-manager:0.2.25e90b2d092df
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/streamingfast/blockmeta-service:2f971e04f0a86e490b6
openssl@3.1.4-r2
3.3.5-r0
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm1
1
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
openssl@3.1.7-r0
3.1.8-r1
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/substratusai/lingo:v0.2.12c807cd41ed4
openssl@3.3.1-r0
3.3.5-r0
1
ghcr.io/szpadel/languagetool-server:6.568fdab22b2a9
openssl@3.3.2-r0
3.3.5-r0
1
ghcr.io/tale/headplane:0.5.50dbc52cffc19
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
openssl@3.1.7-r1
3.1.8-r1
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/techno-tim/littlelink-server:latest735a1fcd078b
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/techwolf12/pocketbase:0.29.3106099641679
openssl@3.5.1-r0
3.5.4-r0
1
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
openssl@3.0.15-r0
3.0.19-r0
1
ghcr.io/themesama/kubernetes-kustomize-patcher:latestb1bf0669e3a0
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
1
ghcr.io/tjm/vault-gcp-secrets:v1.19.59f157fe035f1
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/topolvm/pie:0.18.0aa467443e407
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/topolvm/topolvm-with-sidecar:0.35.0b354978c440d
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.20
1
ghcr.io/traefik/traefik-hub:v2.11.0322f5f8cc105
openssl@3.1.4-r5
3.1.8-r1
1
ghcr.io/trieb-work/saleor-apps/saleor-app-products-feed:1.23.11d435b4ab372
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/trieb-work/saleor-apps/saleor-app-search:1.24.328edefb6c92d
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/trieb-work/saleor-apps/saleor-app-smtp:1.4.357a06bfba327
openssl@3.3.3-r0
3.3.5-r0
1
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.6
1
ghcr.io/usememos/memos:0.24.04723d86e6797
openssl@3.3.2-r4
3.3.5-r0
1
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
ghcr.io/volosoft/eshoponabp/app-authserver:1.0.022ce496c67d7
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/app-publicweb:1.0.07e53010dda55
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/gateway-web:1.0.026465a2bf671
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/gateway-web-public:1.0.050cab15c80d9
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-administration:1.0.0206a9bee17a8
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-basket:1.0.0dd5ce454072e
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-catalog:1.0.07ecb00f53d99
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-identity:1.0.0e53bf47b62d0
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
ghcr.io/volosoft/eshoponabp/service-ordering:1.0.15e836b17337f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.