StackRadar

CVE-2026-28387

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,246
of 17,792 indexed, latest versions
Container images
2,506
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-28387 affecting package openssl for versions less than 3.3.7-2

Carried by container images the latest versions of 2,246 of 17,792 indexed charts deploy, on 2,506 images.

Affected packageAffected versionsFixed inImages
openssldeb1.1.0g-2ubuntu4.1, 1.1.0g-2ubuntu4.3, 1.1.1-1ubuntu2.1~18.04.4, 1.1.1-1ubuntu2.1~18.04.5+81 more1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23, 3.0.13-0ubuntu3.9+3 more1,594
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0902
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-25
OSV records
ALPINE-CVE-2026-28387CGA-2m6v-xf35-w7r6CGA-35qm-vc7p-cgg6DEBIAN-CVE-2026-28387UBUNTU-CVE-2026-28387AZL-81947ECHO-6fc6-4872-7ea8
Also known as
CGA-778p-whh3-f9cv, CGA-w98m-q38h-wxww, USN-8155-1, USN-8155-2

Charts affected

2,246 by stars
ChartLatestAffected imagesRadar Score
discount-bandithelmforgeVerified publisher2.0.81 of 3See more

discount-bandit helmforge 2.0.8

1 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
cybrarist/discount-bandit:v4.0.4e9e2447ac666
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

30,281
druidhelmforgeVerified publisher1.3.61 of 4See more

druid helmforge 1.3.6

1 of the 4 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5f258365d4882
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

8,660
immichhelmforgeVerified publisher1.2.81 of 5See more

immich helmforge 1.2.8

1 of the 5 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

11,180
mcp-serverhelmforgeVerified publisher1.0.01 of 1See more

mcp-server helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
helmforge/fastmcp-server:0.2.061f759a1421f
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

3,455
middlewarehelmforgeVerified publisher1.2.61 of 4See more

middleware helmforge 1.2.6

1 of the 4 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
middlewareeng/middleware:0.3.1747d880812f1
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

9,801
phpmyadminhelmforgeVerified publisher2.0.11 of 1See more

phpmyadmin helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.342a200db07b4
openssl@3.5.1-1
3.5.5-1~deb13u2

Open the chart page →

4,848
supersethelmforgeVerified publisher1.3.61 of 5See more

superset helmforge 1.3.6

1 of the 5 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
helmforge/kubectl:1.35.3c3f97e954c47
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

5,813
text-embeddings-inferencehelmforgeVerified publisher1.0.01 of 2See more

text-embeddings-inference helmforge 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

2,579
zookeeperhelmforgeVerified publisher1.0.21 of 1See more

zookeeper helmforge 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5f258365d4882
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

3,154
myapphelmingapp0.1.01 of 1See more

myapp helmingapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
muhammedgamal/fp23:latest74b4cd69b6fa
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

12,694
openaevhelm-openbasVerified publisher2.0.52 of 7See more

openaev helm-openbas 2.0.5

2 of the 7 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

7,564
openbashelm-openbasVerified publisher1.8.144 of 7See more

openbas helm-openbas 1.8.14

4 of the 7 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2
openbas/caldera-server:5.1.0a277796d9724
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
openbas/platform:2.0.5d986d80b0a75
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9

Open the chart page →

25,217
release-cleanerhelm-release-cleanerVerified publisher1.0.01 of 1See more

release-cleaner helm-release-cleaner 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
alpine/helm:4.1.0905a068da431
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,997
pageshelm-repo1.0.02 of 3See more

pages helm-repo 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,262
self-learning-platformhelm-self-learning-platformVerified publisher1.1.01 of 1See more

self-learning-platform helm-self-learning-platform 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
devopsiaci/self-learning-platform:1.1.3d9441c931f75
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,469
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23

Open the chart page →

6,105
samplehelmapphelmtraining3.0.01 of 1See more

samplehelmapp helmtraining 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
praravind1801/helmimages:3.0.0f29d637b9ce1
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

6,013
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.23

Open the chart page →

14,421
printserverhmediadeVerified publisher1.0.22 of 4See more

printserver hmediade 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
hmediade/printserver:latest481a552c8e1c
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.23
hmediade/printserver-init:latest7f005eb6c718
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.23

Open the chart page →

11,002
home-ha-mockhome-ha-mockVerified publisher2.0.51 of 1See more

home-ha-mock home-ha-mock 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

3,069
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

16,444
home-security-demohome-security-demoVerified publisher2.0.121 of 3See more

home-security-demo home-security-demo 2.0.12

1 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

3,152
httpbin2022httpbin2022Verified publisher0.1.11 of 1See more

httpbin2022 httpbin2022 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
mshanley80/httpbin2022:latest5b189a70c0fb
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

8,807
eoloplanthttpd-eoloplant0.1.04 of 7See more

eoloplant httpd-eoloplant 0.1.0

4 of the 7 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.23
codeurjc/toposervice:v1.09fb4c11e6a49
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23+esm8
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.23

Open the chart page →

32,456
prometheushuangchengwu-helm-chart0.1.02 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23
apache/skywalking-ui:9.2.0295f1dc87d98
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

16,516
skywalking-v1huangchengwu-helm-chart0.1.02 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.9.1b4ec8c18d079
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3
apache/skywalking-ui:8.9.180530f0308a5
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

20,763
sing-boxhuscker-chartsVerified publisher1.0.71 of 1See more

sing-box huscker-charts 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/sagernet/sing-box:v1.12.03c1ee82d450d
openssl@3.5.1-r0
3.5.6-r0

Open the chart page →

1,444
townsquarehuscker-chartsVerified publisher1.0.41 of 2See more

townsquare huscker-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

3,439
jaegerhuseyinbabalVerified publisher0.1.01 of 3See more

jaeger huseyinbabal 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:latestab6f1a1f0fb4
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,492
kubetaghuseyinbabalVerified publisher1.0.21 of 2See more

kubetag huseyinbabal 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/huseyinbabal/kubetag:lateste161eddc59a0
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,277
hydrahydraVerified publisher0.9.51 of 2See more

hydra hydra 0.9.5

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

9,061
isolated-vmhydraVerified publisher0.9.41 of 1See more

isolated-vm hydra 0.9.4

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

7,754
hydrogen-webhydrogen-web0.1.101 of 1See more

hydrogen-web hydrogen-web 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/element-hq/hydrogen-web:v0.5.12d15d14b201a
openssl@3.3.2-r1
3.3.7-r0

Open the chart page →

726
hyperglance-helmhyperglance-helmVerified publisher10.0.64 of 6See more

hyperglance-helm hyperglance-helm 10.0.6

4 of the 6 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
hyperglance/init:wildfly467ad8491bc3
openssl@3.0.2-0ubuntu1.23
no fix listed
hyperglance/init:postgres9fd5faf1fe80
openssl@3.0.2-0ubuntu1.23
no fix listed
hyperglance/init:apacheb2f8c6d52623
openssl@3.0.2-0ubuntu1.23
no fix listed
hyperglance/postgresql-v2:10.0.6dadc39b2f786
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

11,209
mvfi4trustVerified publisher1.1.21 of 1See more

mvf i4trust 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
wistefan/mvf:lateste0887302b2d8
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.23

Open the chart page →

7,257
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.23

Open the chart page →

7,984
iam-eks-user-mapperiam-eks-user-mapper1.6.01 of 1See more

iam-eks-user-mapper iam-eks-user-mapper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
openssl@3.5.1-1+deb13u1
3.5.5-1~deb13u2

Open the chart page →

1,681
ibexaibexaVerified publisher3.11.11 of 10See more

ibexa ibexa 3.11.1

1 of the 10 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
boky/postfix:4.4.0f3f247fd4252
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

6,050
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ibmcom/microclimate-theia:lateste17bdccc5030
nodejs@4.2.6~dfsg-1ubuntu4.1
no fix listed

Open the chart page →

57,842
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

12,650
ibm-ucv-prodibm-helm5.2.62 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

2 of the 16 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
bitnamilegacy/nginx:1.27.1934d1acd5ca8
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
bitnamilegacy/rabbitmq:4.1.2fac502149c40
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

12,184
tolgeeicoretechVerified publisher0.49.01 of 3See more

tolgee icoretech 0.49.0

1 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/postgres:18.369e8582b781c
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

2,769
monitoring-stackict-platformVerified publisher0.4.03 of 13See more

monitoring-stack ict-platform 0.4.0

3 of the 13 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/memcached:1.6.39-alpinec8503d4491ed
openssl@3.5.4-r0
3.5.6-r0
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
openssl@3.5.4-r0
3.5.6-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

9,629
ingress-nginxifmethod-helm-charts4.12.11 of 2See more

ingress-nginx ifmethod-helm-charts 4.12.1

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,477
eoloserverihuertas2021-vmartinp2021-helm0.1.03 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23+esm8
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.23

Open the chart page →

27,861
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

9,062
ikigaiikigai-chartVerified publisher0.0.94 of 58See more

ikigai ikigai-chart 0.0.9

4 of the 58 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
dremio/dremio-oss:24.1.080ed2e3b7c43
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.23
jupyterhub/k8s-hub:1.2.0e4770285aaf7
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
library/zookeeper:3.8-temurin55d1e5b2e601
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.23
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

37,983
ilum-hive-metastoreilumVerified publisher1.2.01 of 2See more

ilum-hive-metastore ilum 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

3,616
ilum-jupyterhubilumVerified publisher4.3.11 of 6See more

ilum-jupyterhub ilum 4.3.1

1 of the 6 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
quay.io/jupyterhub/configurable-http-proxy:5.1.0eb10d5bf045c
openssl@3.3.4-r0
3.3.7-r0

Open the chart page →

1,843
ilum-marquezilumVerified publisher6.7.03 of 3See more

ilum-marquez ilum 6.7.0

3 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
ilum/marquez:0.54.06e1d709d41f8
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
ilum/marquez-web:0.53.2716437a51a6c
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

6,332

Container images carrying it

2,506 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
opea/web-retriever-chroma:1.0fe08165d7770
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
openbas/caldera-server:5.1.0a277796d9724
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
openbas/platform:2.0.5d986d80b0a75
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
1
opencsghq/agenticflow:ee-v0.6.5-241cba9c366f1
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
1
opencsghq/csghub-server:v2.5.0-ee587046575c2c
openssl@3.0.18-1~deb12u1
3.0.19-1~deb12u2
1
opencsghq/csghub-xnet:v2.5.0-ee86ea22f495c7
openssl@3.0.18-1~deb12u1
3.0.19-1~deb12u2
1
opencsghq/csgship-portal:v1.2.1865814dc87a1
openssl@3.3.3-r0
3.3.7-r0
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
opendatacube/explorer:latest120457ffcd69
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
opendatacube/pipelines:wofs-1.225d810e8504b8
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm8
1
opendatacube/restcube:latest91870111837c
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm8
1
opendatacube/wms:latest1b90cdf68831
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm8
1
opendatacube/wps:latest80df355a660b
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
1
openebs/lvm-driver:1.10.141f73aba7f31
openssl@3.5.1-r0
3.5.6-r0
1
openelevation/open-elevation:latest82fb21612e86
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm3
1
openkm/openkm-ce:6.3.113bc465a7461b
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3
1
openkruise/kruise-game-manager:v1.1.0d3c6d69d2c39
openssl@3.3.3-r0
3.3.7-r0
1
openkruise/kruise-manager:v1.8.30482722b4e56
openssl@3.3.6-r0
3.3.7-r0
1
openmined/syft-backend:0.9.5b72f74a68b32
openssl@3.4.1-r0
3.6.2-r0
1
openmined/syft-frontend:0.9.5d11524a3854a
openssl@3.4.1-r0
3.6.2-r0
1
opennode/waldur-site-agent:1.0.76d2e3b97c8d2
openssl@3.3.2-r1
3.3.7-r0
1
openproject/hocuspocus:release-338001b288dc1359dfb5
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm3
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
1
openthread/otbr:latestf307f59f6432
nodejs@8.10.0~dfsg-2ubuntu0.4
openssl@1.1.1-1ubuntu2.1~18.04.23
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm8
1
openvino/model_server:2025.2.11e7cd1d70cc1
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
nodejs@8.10.0~dfsg-2ubuntu0.4
openssl@1.1.1-1ubuntu2.1~18.04.6
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm8
1
openzipkin/zipkin-slim:3.6.0a69e1057df36
openssl@3.5.5-r0
3.5.6-r0
1
operaton/operaton:1.0.0-beta-4b35867ffe4d8
openssl@3.3.3-r0
3.3.7-r0
1
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
openssl@3.3.3-r0
3.3.7-r0
1
oryd/hydra:v2.3.0b94007e19a1f
openssl@3.3.2-r1
3.3.7-r0
1
oryd/hydra:v26.2.0ff67c7fb5f95
openssl@3.3.6-r0
3.3.7-r0
1
oryd/hydra-login-consent-node:v26.2.06465e95993b5
openssl@3.3.3-r0
3.3.7-r0
1
oryd/keto:v26.2.0bfdb8b9e283a
openssl@3.3.6-r0
3.3.7-r0
1
oryd/kratos:v26.2.02a13bb8d362c
openssl@3.3.6-r0
3.3.7-r0
1
oryd/oathkeeper:v26.2.0467329abde34
openssl@3.3.6-r0
3.3.7-r0
1
outlinewiki/outline:0.82.0494dfb9249a6
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
owncloud/ocis:7.1.388e7c854517d
openssl@3.3.3-r0
3.3.7-r0
1
owncloud/ocis:8.0.1b38fd8fdd58f
openssl@3.5.5-r0
3.5.6-r0
1
owncloud/server:10.15.051d9b74fc2a8
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm3
1
owncloud/server:10.16.274c53d341076
openssl@3.0.2-0ubuntu1.23
no fix listed
1
owncloud/server:10.16.3b3f9efdcd7f7
openssl@3.0.2-0ubuntu1.25
no fix listed
1
oxfordsemantic/rdfox:5.6db17910eb855
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
1
oxfordsemantic/rdfox-init:5.6baf570ff968d
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
1
pangeo/base-notebook:2024.01.155fbe688a4f80
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23
1
payara/micro:7.2026.2-jdk25fb44b8ce1cb2
openssl@3.3.6-r0
3.3.7-r0
1
payara/server-full:7.2026.2-jdk2531f1253f0cf8
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.23
1
penpotapp/backend:2.2.147853d9bb9dd
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.23
1
penpotapp/exporter:2.2.15c835ffd87ab
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.23
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.