StackRadar

CVE-2025-9230

High

Advisory

Published 30 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,832
of 17,828 indexed, latest versions
Container images
3,341
deployed by those charts
Fix available
6 of 7
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,832 of 17,828 indexed charts deploy, on 3,341 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm11, 1.0.2g-1ubuntu4.20+esm13, 1.1.1-1ubuntu2.1~18.04.23+esm6, 1.1.1f-1ubuntu2.24+esm1+5 more2,030
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r1, 3.3.5-r0, 3.5.4-r0999
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm220
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+30 more1:1.0.2k-26.el7_9.1, 1:1.1.1k-14.el8_10, 1:3.2.2-7.el9_6.1, 1:3.5.1-4.el9_7309
openssl-3rpm3.2.3-150700.5.18.13.2.3-150700.5.21.13
openssl-1_1rpm1.1.1w-150700.11.3.11.1.1w-150700.11.6.11
OSV records
ALPINE-CVE-2025-9230CGA-c4v2-6rpm-vq95DEBIAN-CVE-2025-9230UBUNTU-CVE-2025-9230RHSA-2025:21174RHSA-2025:21255RHSA-2026:0337RHSA-2026:1720RLSA-2025:21255RLSA-2026:0337DLA-4321-1SUSE-SU-2025:03546-1SUSE-SU-2025:03635-1
Also known as
CGA-qm4c-c7mv-j233, RHSA-2025:21562, RHSA-2026:0602, RHSA-2026:0714, RHSA-2026:0794, RHSA-2026:0887, RHSA-2026:1475, USN-7786-1

Charts affected

2,832 by stars
ChartLatestAffected imagesRadar Score
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latest4402d880dd4c
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

2,700
thehivestrangebee-helmOfficialVerified publisher1.1.03 of 7See more

thehive strangebee-helm 1.1.0

3 of the 7 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

16,513
uffizzi-controlleruffizzi-controller2.4.62 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

2 of the 11 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
registry.k8s.io/ingress-nginx/controller:v1.10.1e24f39d3eed6
openssl@3.1.4-r6
3.1.8-r1

Open the chart page →

14,373
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
curlimages/curl:8.5.008e466006f08
openssl@3.1.4-r4
3.1.8-r1

Open the chart page →

8,051
zipkinygqygq2Verified publisher2.1.41 of 4See more

zipkin ygqygq2 2.1.4

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
openzipkin/zipkin:2.24197a9692f6a9
openssl@3.1.4-r2
3.1.8-r1

Open the chart page →

2,788
aad-pod-identityaad-pod-identity4.1.181 of 2See more

aad-pod-identity aad-pod-identity 4.1.18

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/azure/aad-pod-identity/nmi:v1.8.1777788bf38938
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4

Open the chart page →

2,860
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
mide/minecraft-overviewer:latest4eee0dcb715f
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4

Open the chart page →

3,142
baserowbaserow-chartVerified publisher1.0.563 of 6See more

baserow baserow-chart 1.0.56

3 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
openssl@3.0.14-1~deb12u2
3.0.17-1~deb12u3
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

17,768
mysql-operatorbitpokeVerified publisher0.6.32 of 2See more

mysql-operator bitpoke 0.6.3

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitpoke/mysql-operator:v0.6.3f44fa86ab27e
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
bitpoke/mysql-operator-orchestrator:v0.6.3d86560c75bed
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

3,356
celestia-appcelestia-labsVerified publisher0.5.01 of 3See more

celestia-app celestia-labs 0.5.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-app:v3.7.0-arabica23a9ec9b1879
openssl@3.1.8-r0
3.1.8-r1

Open the chart page →

1,077
fadicetic0.3.13 of 25See more

fadi cetic 0.3.1

3 of the 25 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
openssl@1.1.1f-1ubuntu2
1.1.1f-1ubuntu2.24+esm1
library/adminer:4.8.1-standalone34d37131366c
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

129,761
headwind-mdmchristianhuthVerified publisher5.10.52 of 2See more

headwind-mdm christianhuth 5.10.5

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3
headwindmdm/hmdm:0.1.93550b4840840
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

6,046
routercosmo-routerOfficialVerified publisher0.18.01 of 1See more

router cosmo-router 0.18.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

1,710
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
wait4x/wait4x:3.3.14dcd86307de1
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

9,592
daskhubdask2024.1.13 of 9See more

daskhub dask 2024.1.1

3 of the 9 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20
ghcr.io/dask/dask-gateway-server:2024.1.0881e7acfc5a0
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
quay.io/jupyterhub/k8s-hub:3.2.12528c6e57587
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

14,303
seafiledatamateVerified publisher0.6.06 of 6See more

seafile datamate 0.6.0

6 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.1-debian-11-r29cfd2df1294d
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/os-shell:11-debian-11-r968643af4facff
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
datamate/seafile-professional:11.0.202dd66b722464
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.20

Open the chart page →

76,125
homerdjjudas21Verified publisher8.2.41 of 1See more

homer djjudas21 8.2.4

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
b4bz/homer:v24.12.14b44a4a9e329
openssl@3.3.2-r0
3.3.5-r0

Open the chart page →

399
k8s-image-swapperestahnVerified publisher1.11.01 of 2See more

k8s-image-swapper estahn 1.11.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/estahn/k8s-image-swapper:1.5.102f5be9cde5f9
openssl@3.1.4-r5
3.1.8-r1

Open the chart page →

1,988
vaultwardenfmjstudios0.2.31 of 1See more

vaultwarden fmjstudios 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
vaultwarden/server:1.30.5-alpine6f6ec220ed30
openssl@3.1.4-r5
3.1.8-r1

Open the chart page →

589
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6

Open the chart page →

2,628
geonode-k8sgeonode-k8sVerified publisher2.0.02 of 10See more

geonode-k8s geonode-k8s 2.0.0

2 of the 10 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
alpine/curl:8.5.0513c4f0d7123
openssl@3.1.4-r5
3.1.8-r1
geonode/geoserver:2.28.4-latest81b1d431b7e9
openssl@3.0.2-0ubuntu1.23
no fix listed

Open the chart page →

55,539
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

11,494
openctihelm-openctiVerified publisher3.0.111 of 8See more

opencti helm-opencti 3.0.11

1 of the 8 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

3,431
infrahubinfrahubVerified publisher4.33.23 of 5See more

infrahub infrahub 4.33.2

3 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
3.0.17-1~deb12u3
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
3.0.17-1~deb12u3

Open the chart page →

10,651
kamu-api-serverkamuVerified publisher0.90.01 of 1See more

kamu-api-server kamu 0.90.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.90.0e61435d44913
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

6,426
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10

Open the chart page →

4,668
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-14.el8_10

Open the chart page →

4,962
klusterviewklusterviewVerified publisher0.1.01 of 4See more

klusterview klusterview 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
kyleslugg/klusterview:latestba8c36dfdfbd
openssl@3.0.7-r2
3.0.19-r0

Open the chart page →

3,695
kubeflowkubeflow1.6.29 of 45See more

kubeflow kubeflow 1.6.2

9 of the 45 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6
istio/proxyv2:1.14.1df69c1a7af7c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm1
kubeflownotebookswg/kfam:v1.6.1f226fb44db57
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
kubeflownotebookswg/notebook-controller:v1.6.185e2e685abd6
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
kubeflownotebookswg/profile-controller:v1.6.19f01767a460f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
library/python:3.7eedf63967cdb
openssl@3.0.9-1
3.0.17-1~deb12u3
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm13
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

158,913
kubernetes-loggingkubernetes-logging4.8.02 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

2 of the 6 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
fluent/fluent-bit:2.1.96a1d0c693dfa
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

10,732
librechatlibrechat1.8.101 of 3See more

librechat librechat 1.8.10

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

2,816
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

5,943
radarrloeken-at-homeVerified publisher5.27.0-nightly1 of 1See more

radarr loeken-at-home 5.27.0-nightly

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
loeken/radarr:5.27.0-nightlya24409d3846d
openssl@3.3.4-r0
3.3.5-r0

Open the chart page →

733
vclustermainVerified publisher0.17.01 of 10See more

vcluster main 0.17.0

1 of the 10 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/kubermatic/machine-controller:v1.57.0476ae867ae56
openssl@3.0.9-r1
3.0.19-r0

Open the chart page →

11,613
musicocielmusicocielVerified publisher0.0.02 of 3See more

musicociel musicociel 0.0.0

2 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
davdiv/musicociel:deva85f99be882c
openssl@3.1.4-r2
3.1.8-r1
library/postgres:15.2-alpined9c304353c03
openssl@3.0.8-r3
3.0.19-r0

Open the chart page →

4,444
headplanenbcloudVerified publisher0.1.23 of 4See more

headplane nbcloud 0.1.2

3 of the 4 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3
headscale/headscale:0.25.1a7a8ae9616bb
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
ghcr.io/tale/headplane:0.5.50dbc52cffc19
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

8,216
node-local-dnsnode-local-dns2.4.01 of 1See more

node-local-dns node-local-dns 2.4.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
3.0.17-1~deb12u3

Open the chart page →

2,664
open5gsopen5gsVerified publisher2.3.43 of 5See more

open5gs open5gs 2.3.4

3 of the 5 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
gradiant/open5gs:2.7.575277742fc8a
openssl@1.1.1w-0+deb11u2
1.1.1w-0+deb11u4
gradiant/open5gs-dbctl:0.10.3332031245fce
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
gradiant/open5gs-webui:2.7.5fbd10c017541
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

9,360
ubuntuopen-charts1.2.11 of 1See more

ubuntu open-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/ubuntu:22.04b8b6ee6aa931
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

1,498
clustersecretpatrungel0.2.01 of 1See more

clustersecret patrungel 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
flag5/clustersecret:0.0.94ad5748bfcc6
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

1,842
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20

Open the chart page →

8,873
prometheus-smartctl-exporterprometheus-communityVerified publisher0.17.11 of 1See more

prometheus-smartctl-exporter prometheus-community 0.17.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
openssl@3.3.3-r0
3.3.5-r0

Open the chart page →

1,211
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm1

Open the chart page →

10,686
taigarc-helm-charts0.1.01 of 7See more

taiga rc-helm-charts 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
taigaio/taiga-back:6.4.29f97323cc150
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4

Open the chart page →

7,260
rke2-multusrke2-charts3.7.1-build20210416012 of 2See more

rke2-multus rke2-charts 3.7.1-build2021041601

2 of the 2 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
rancher/hardened-cni-plugins:v0.9.1-build20210414be3c1d469bf7
openssl@1:1.0.2k-21.el7_9
1:1.0.2k-26.el7_9.1
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
openssl@1:1.0.2k-21.el7_9
1:1.0.2k-26.el7_9.1

Open the chart page →

4,527
piholesavepointsamVerified publisher0.2.01 of 1See more

pihole savepointsam 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
pihole/pihole:2023.05.0b83258064f54
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4

Open the chart page →

1,049
popeyeself-hosters-by-nightVerified publisher0.6.11 of 1See more

popeye self-hosters-by-night 0.6.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

1,343
openspeedtestspeedtestVerified publisher0.1.21 of 1See more

openspeedtest speedtest 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
openspeedtest/latest:v2.0.0d4d62f4b7d85
openssl@3.0.9-r1
3.0.19-r0

Open the chart page →

2,041
superstreamsuperstreamOfficialVerified publisher0.9.623 of 3See more

superstream superstream 0.9.62

3 of the 3 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
library/nats:2.10.25-alpine3290c829aa05
openssl@3.3.3-r0
3.3.5-r0
natsio/nats-server-config-reloader:0.16.1bf97e5e9b9d2
openssl@3.3.2-r4
3.3.5-r0
natsio/prometheus-nats-exporter:0.16.054b0d7ff058e
openssl@3.3.2-r4
3.3.5-r0

Open the chart page →

3,615
k8s-telegram-sendertelegram-senderVerified publisher0.0.11 of 1See more

k8s-telegram-sender telegram-sender 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-9230.

Container imageDigestPackageFixed in
danuk/telegram-sender:0.0.1026560388070
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4

Open the chart page →

3,054

Container images carrying it

3,341 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
openssl@1:1.1.1k-4.el8
1:1.1.1k-14.el8_10
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-14.el8_10
1
quay.io/shivering-isles/dovecot:2.3.214599ada9aa06
openssl@3.3.1-r3
3.3.5-r0
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
quay.io/soketi/k8soketi:0.1-18-debian4cd9ea9434c4
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
quay.io/soketi/soketi:1.6-16-debian713223456cf1
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
openssl@1:3.2.2-6.el9_5
1:3.5.1-4.el9_7
1
quay.io/strimzi/operator:0.45.158c727cd2e68
openssl@1:3.2.2-6.el9_5.1
1:3.2.2-7.el9_6.1
1
quay.io/strimzi/operator:0.32.0c5e0e5dca750
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-14.el8_10
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-14.el8_10
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
openssl@3.3.3-r0
3.3.5-r0
1
quay.io/wi_stefan/dsba-db-migrations:0.0.125b986cd14a08
openssl@3.0.7-r0
3.0.19-r0
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-14.el8_10
1
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
openssl@3.5.1-r0
3.5.4-r0
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssl@3.0.9-1
3.0.17-1~deb12u3
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
openssl@1.1.1-1ubuntu2.1~18.04.17
1.1.1-1ubuntu2.1~18.04.23+esm6
1
registry.gitlab.com/dyff/dyff-frontend:0.20.2481be0beaafe
openssl@3.3.3-r0
3.3.5-r0
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-14.el8_10
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
openssl@3.0.13-1~deb12u1
3.0.17-1~deb12u3
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
openssl@1:1.1.1k-5.el8_5
1:1.1.1k-14.el8_10
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.24+esm1
1
registry.gitlab.com/open-forms/forms-catalogue:latest4eaf9c911f33
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
1
registry.gitlab.com/open-forms/request-registry:latest0886cbbc5f95
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u4
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-14.el8_10
1
registry.gitlab.com/vicamo/docker-sshd/sshd:3.0-stable22c33d693fe2
openssl@1.1.1k-1
1.1.1w-0+deb11u4
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
openssl@1:3.2.2-6.el9_5.1
1:3.2.2-7.el9_6.1
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
3.0.17-1~deb12u3
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssl@3.5.1-1
3.5.1-1+deb13u1
1
registry.k8s.io/git-sync/git-sync:v3.6.96fa9042f6128
openssl@1.1.1n-0+deb11u5
1.1.1w-0+deb11u4
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssl@3.0.11-1~deb12u1
3.0.17-1~deb12u3
1
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
openssl@3.0.8-r0
3.0.19-r0
1
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
openssl@3.5.2-r0
3.5.4-r0
1
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
openssl@3.5.1-r0
3.5.4-r0
1
registry.k8s.io/ingress-nginx/controller:v1.10.042b3f0e5d084
openssl@3.1.4-r5
3.1.8-r1
1
registry.k8s.io/ingress-nginx/controller:v1.7.07612338342a1
openssl@3.0.8-r1
3.0.19-r0
1
registry.k8s.io/ingress-nginx/controller:v1.11.3d56f135b6462
openssl@3.3.2-r0
3.3.5-r0
1
registry.k8s.io/ingress-nginx/controller:v1.10.1e24f39d3eed6
openssl@3.1.4-r6
3.1.8-r1
1
registry.k8s.io/ingress-nginx/controller:v1.12.0e6b8de175acd
openssl@3.3.2-r4
3.3.5-r0
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
registry.k8s.io/sig-storage/volume-data-source-validator:v1.0.0d35884236461
openssl@1.1.1k-1+deb11u2
1.1.1w-0+deb11u4
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.