StackRadar

CVE-2026-14456

High

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,781
of 17,797 indexed, latest versions
Container images
1,661
deployed by those charts
Fix available
2 of 3
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,781 of 17,797 indexed charts deploy, on 1,661 images.

Affected packageAffected versionsFixed inImages
opensslapk3.2.0-r0, 3.3.1-r4, 3.3.2-r0, 3.3.2-r2+19 more3.5.8-r0, 3.6.3-r51,202
openssldeb3.5.1-1, 3.5.1-1+deb13u1, 3.5.4-1~deb13u1, 3.5.4-1~deb13u2+13 more3.5.5-1ubuntu3.4, 3.5.7-1~deb13u2448
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+3 moreno fix listed11
OSV records
ALPINE-CVE-2026-14456CGA-35mx-c7ph-5wqgDEBIAN-CVE-2026-14456UBUNTU-CVE-2026-14456ECHO-67da-49b3-07ec
Also known as
CGA-93ch-6vxx-3pjv, CGA-fq88-94gm-g9r9, CGA-gc6w-2x98-r76w, CGA-qchw-xc4v-23mf, CGA-x4jp-5c7q-v482, USN-8678-1

Charts affected

1,781 by stars
ChartLatestAffected imagesRadar Score
memosmt1905027.3.21 of 3See more

memos mt190502 7.3.2

1 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,491
minifluxmt1905021.1.62 of 3See more

miniflux mt190502 1.1.6

2 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
miniflux/miniflux:2.2.18a3ca6bbc1f74
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

2,710
open-webuimt1905022.3.101 of 3See more

open-webui mt190502 2.3.10

1 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,667
paperless-ngxmt1905027.6.142 of 4See more

paperless-ngx mt190502 7.6.14

2 of the 4 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

12,072
radicalemt1905024.1.11 of 1See more

radicale mt190502 4.1.1

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
tomsquest/docker-radicale:3.6.1.0a594c624c5a6
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,541
umamimt1905028.1.42 of 3See more

umami mt190502 8.1.4

2 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/umami-software/umami:3.0.328f263fe06f7
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

4,054
vaultwardenmt1905027.3.42 of 3See more

vaultwarden mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
vaultwarden/server:1.35.443498a94b22f
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

4,774
vikunjamt1905027.1.21 of 3See more

vikunja mt190502 7.1.2

1 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,009
devops-demomungari-development-charts1.0.41 of 4See more

devops-demo mungari-development-charts 1.0.4

1 of the 4 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

9,004
ingress-nginxmxytest4.15.11 of 2See more

ingress-nginx mxytest 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,541
szurubooru-clientmy0nVerified publisher0.3.11 of 1See more

szurubooru-client my0n 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
szurubooru/client:2.5880a53ca446d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

371
szurubooru-servermy0nVerified publisher0.2.51 of 3See more

szurubooru-server my0n 0.2.5

1 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
szurubooru/server:2.5accf2ad9fbc3
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

1,044
apachemy-chart-repo0.1.01See more

apache my-chart-repo 0.1.0

1 container image this version deploys carries CVE-2026-14456.

Container imageDigestPackageFixed in
library/httpd:2.4979c38c2228d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

grafana-chartmy-personal-grafana0.1.01 of 1See more

grafana-chart my-personal-grafana 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

728
haproxy-ingressn42-gateway0.16.11 of 1See more

haproxy-ingress n42-gateway 0.16.1

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
quay.io/jcmoraisjr/haproxy-ingress:v0.16.16fd744191ef6
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

794
n8nn8n-openshiftVerified publisher1.18.01 of 1See more

n8n n8n-openshift 1.18.0

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
n8nio/n8n:2.36.714c4285bc303
openssl@3.5.7-r1
3.5.8-r0

Open the chart page →

1,039
dependency-tracknaj980.0.92 of 3See more

dependency-track naj98 0.0.9

2 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
dependencytrack/apiserver:latestf1da63ed610a
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
dependencytrack/frontend:latest8854a8320475
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,482
jupyterhub-metricsncsaVerified publisher1.3.04 of 5See more

jupyterhub-metrics ncsa 1.3.0

4 of the 5 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
openssl@3.5.7-r0
3.5.8-r0
library/postgres:15-alpinefe0737ba566a
openssl@3.5.7-r0
3.5.8-r0
timescale/timescaledb:latest-pg156343bdc87ca1
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/ncsa/jupyterhub-metrics/collector:1.3.0dcb8c731bb1b
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

4,148
ixyneoskop2.1.11 of 1See more

ixy neoskop 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
neoskop/ixy:2.1.125152b474f54
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,167
neosyncneosyncVerified publisher0.5.411 of 3See more

neosync neosync 0.5.41

1 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/app:0.5.41ca31ec35b829
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

7,260
appneosync-appVerified publisher0.5.411 of 1See more

app neosync-app 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/app:0.5.41ca31ec35b829
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

1,571
bluesky-pdsnerkho-helm-charts0.4.21 of 1See more

bluesky-pds nerkho-helm-charts 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

2,386
core-keeper-dedicatednerkho-helm-charts0.1.11 of 1See more

core-keeper-dedicated nerkho-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
escaping/core-keeper-dedicated:latest87fa79255962
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,927
agent-controlnewrelic0.0.921 of 1See more

agent-control newrelic 0.0.92

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
newrelic/newrelic-agent-control-cli:0.48.01a448492b55a
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

3,874
nexus-tasksnexus-tasks2.0.02 of 5See more

nexus-tasks nexus-tasks 2.0.0

2 of the 5 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
ghcr.io/ashvinbambhaniya/nexus-tasks-backend:2.0.0f80349eb018b
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/ashvinbambhaniya/nexus-tasks-frontend:2.0.0fcbab3a24880
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

3,802
f5-waf-policy-controllernginxVerified publisher5.15.01 of 4See more

f5-waf-policy-controller nginx 5.15.0

1 of the 4 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
curlimages/curl:8.20.0b3f1fb2a51d9
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

419
ciliumnicklasfrahm-ciliumVerified publisher0.7.41 of 6See more

cilium nicklasfrahm-cilium 0.7.4

1 of the 6 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
quay.io/cilium/hubble-ui:v0.13.3661d5de70501
openssl@3.5.2-r0
3.5.8-r0

Open the chart page →

7,237
wireguardnicklasfrahm-wireguard0.2.01 of 1See more

wireguard nicklasfrahm-wireguard 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
ghcr.io/wg-easy/wg-easy:145f26407fd2ed
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

1,160
terraform-backendnimbolus0.3.21 of 2See more

terraform-backend nimbolus 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
ghcr.io/nimbolus/terraform-backend:0.2.2bf876252fbe1
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,492
base-jobnn-coVerified publisher0.1.01 of 4See more

base-job nn-co 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4

Open the chart page →

749
akash-nodenodeifyVerified publisher1.0.01 of 2See more

akash-node nodeify 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/alpine:3.2214358309a308
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
cosmoshub-rpcnodeifyVerified publisher1.0.72 of 2See more

cosmoshub-rpc nodeify 1.0.7

2 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/cosmos/gaia:v25.1.0f115777d1112
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

2,015
cosmos-nodenodeifyVerified publisher2.6.02 of 2See more

cosmos-node nodeify 2.6.0

2 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/alpine:3.2214358309a308
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/cosmos/gaia:v25.1.0f115777d1112
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

2,015
nostreamnostream0.1.01 of 1See more

nostream nostream 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
ghcr.io/cameri/nostream:main8726533b9e69
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

597
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,919
keycloak-helm-chartnotesprojectchart0.1.01 of 2See more

keycloak-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,667
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

6,896
registration-ms-helm-chartnotesprojectchart0.1.01 of 2See more

registration-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,960
user-data-ms-helm-chartnotesprojectchart0.1.01 of 2See more

user-data-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,917
fluentd-kubernetes-daemonsetnovum-rgi-charts0.1.01 of 1See more

fluentd-kubernetes-daemonset novum-rgi-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1-debian-graylogfda93f768f98
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,029
example-dev-toolsnoygal0.2.81 of 3See more

example-dev-tools noygal 0.2.8

1 of the 3 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
linuxserver/codimd:latestb801bbcf6386
nodejs@10.23.0-1nodesource1
no fix listed

Open the chart page →

27,548
nai-corenutanix-helm-releasesVerified publisher2.8.01 of 14See more

nai-core nutanix-helm-releases 2.8.0

1 of the 14 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
nutanix/nai-jobs:v2.8.09c373718e1b1
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

833
nai-operatorsnutanix-helm-releasesVerified publisher2.8.01 of 5See more

nai-operators nutanix-helm-releases 2.8.0

1 of the 5 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
nutanix/nai-jobs:v2.8.09c373718e1b1
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

833
nutanix-flow-cninutanix-helm-releasesVerified publisher1.1.01 of 7See more

nutanix-flow-cni nutanix-helm-releases 1.1.0

1 of the 7 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/nats:2.10-alpineb83efabe3e7d
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

4,997
firecrawlobeoneVerified publisher3.0.62See more

firecrawl obeone 3.0.6

2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/rabbitmq:3.13-management-alpine606d8c0d6b3c
openssl@3.5.4-r0
3.5.8-r0
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

mktxpobeoneVerified publisher1.1.102 of 2See more

mktxp obeone 1.1.10

2 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/akpw/mktxp:latest2b3ccb1c2bd9
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

332
ollamaobeoneVerified publisher0.3.11 of 2See more

ollama obeone 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,101
ocellusaiocellusaiVerified publisher0.1.121 of 2See more

ocellusai ocellusai 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,192
lensoci-ai-incubations0.1.144 of 16See more

lens oci-ai-incubations 0.1.14

4 of the 16 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
openssl@3.5.0-r0
3.5.8-r0
grafana/grafana:12.1.1a1701c218024
openssl@3.5.1-r0
3.5.8-r0
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u2
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
openssl@3.5.2-r0
3.5.8-r0

Open the chart page →

17,161
ocisocis-community0.1.01 of 1See more

ocis ocis-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-14456.

Container imageDigestPackageFixed in
owncloud/ocis:8.0.1b38fd8fdd58f
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

2,349

Container images carrying it

1,661 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/gitlab-ci-utils/curl-jq:latestb564745b6cb0
openssl@3.5.7-r1
3.5.8-r0
1
registry.gitlab.com/gitlab-org/ci-cd/gitlab-runner-pod-cleanup:latest4369f3ba1d9a
openssl@3.5.6-r0
3.5.8-r0
1
registry.gitlab.com/shortlink-org/shortlink/bff:latestf2194e526915
openssl@3.5.5-r0
3.5.8-r0
1
registry.gitlab.com/shortlink-org/shortlink/link:latest86d87291ffd4
openssl@3.5.5-r0
3.5.8-r0
1
registry.gitlab.com/technostructures/posca/posca:latesta693021686ca
openssl@3.5.6-r0
3.5.8-r0
1
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
openssl@3.5.7-r0
3.5.8-r0
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssl@3.5.1-1
3.5.7-1~deb13u2
1
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
openssl@3.5.2-r0
3.5.8-r0
1
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
openssl@3.5.1-r0
3.5.8-r0
1
registry.k8s.io/kwok/kwok:v0.8.06d25aa8fbdfe
openssl@3.5.7-r0
3.5.8-r0
1
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
openssl@3.5.4-r0
3.5.8-r0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.