StackRadar

CVE-2026-28387

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,247
of 17,790 indexed, latest versions
Container images
2,511
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-28387 affecting package openssl for versions less than 3.3.7-2

Carried by container images the latest versions of 2,247 of 17,790 indexed charts deploy, on 2,511 images.

Affected packageAffected versionsFixed inImages
openssldeb1.1.0g-2ubuntu4.1, 1.1.0g-2ubuntu4.3, 1.1.1-1ubuntu2.1~18.04.4, 1.1.1-1ubuntu2.1~18.04.5+81 more1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23, 3.0.13-0ubuntu3.9+3 more1,599
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0902
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-25
OSV records
ALPINE-CVE-2026-28387CGA-2m6v-xf35-w7r6CGA-35qm-vc7p-cgg6DEBIAN-CVE-2026-28387UBUNTU-CVE-2026-28387AZL-81947ECHO-6fc6-4872-7ea8
Also known as
CGA-778p-whh3-f9cv, CGA-w98m-q38h-wxww, USN-8155-1, USN-8155-2

Charts affected

2,247 by stars
ChartLatestAffected imagesRadar Score
Practica_4_helmmy-heml-appVerified publisher0.1.03 of 7See more

Practica_4_helm my-heml-app 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23+esm8
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.23

Open the chart page →

27,822
nginx-chartmy-nginx-chart0.1.01 of 1See more

nginx-chart my-nginx-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
amaraiheanacho/nginx-site:latest5c86fccf5daa
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

840
mystoremystore-chart0.1.02 of 3See more

mystore mystore-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
hazegoodlife/haaze:veggiesite50f02d2d5d4d
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
hazegoodlife/haaze:milksite8d4c63169e14
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

9,556
myweatherhelmmyweather1.3.114 of 7See more

myweatherhelm myweather 1.3.11

4 of the 7 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
hecrom/myweatherangularclient:1.3.11bb0372939c19
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
hecrom/myweatherprocessingreactclient:1.3.115454b54d5b28
openssl@3.3.1-r3
3.3.7-r0
library/rabbitmq:3-managemente582c0bc7766
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

18,042
fargate-sidecar-injectormziyaboVerified publisher0.1.51 of 1See more

fargate-sidecar-injector mziyabo 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
mziyabo/fargate-eks-sidecar-injector:latest3067dce17983
openssl@3.3.0-r2
3.3.7-r0

Open the chart page →

1,393
nacosnacos-yunyeVerified publisher1.0.31 of 1See more

nacos nacos-yunye 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.130a39cb0c54d
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,786
smallandnaj980.0.51 of 1See more

smalland naj98 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

3,026
pagesnarain1.0.02 of 3See more

pages narain 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,242
pagesnarasimha-pages1.0.02 of 3See more

pages narasimha-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,242
akauntingnas-helm-chartsVerified publisher1.0.31 of 2See more

akaunting nas-helm-charts 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
akaunting/akaunting:3.0.1552811b36ec3a
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

12,876
proxy-pynas-helm-chartsVerified publisher1.0.01 of 1See more

proxy-py nas-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
abhinavsingh/proxy.py:latest51adc989fd03
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

593
pagesnavin-brixton1.0.02 of 3See more

pages navin-brixton 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,242
incorencsaVerified publisher1.38.02 of 29See more

incore ncsa 1.38.0

2 of the 29 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
bitnamilegacy/postgresql:16.4.03ba6e6f11388
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

15,429
jupyterhub-metricsncsaVerified publisher1.3.01 of 5See more

jupyterhub-metrics ncsa 1.3.0

1 of the 5 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/ncsa/jupyterhub-metrics/collector:1.3.0dcb8c731bb1b
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

4,148
smilencsaVerified publisher1.1.07 of 23See more

smile ncsa 1.1.0

7 of the 23 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm3
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
openssl@1.1.1-1ubuntu2.1~18.04.22
1.1.1-1ubuntu2.1~18.04.23+esm8
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
openssl@3.0.9-1
3.0.19-1~deb12u2
socialmediamacroscope/image_crawler:0.1.2f508216be63c
openssl@1.1.1-1ubuntu2.1~18.04.22
1.1.1-1ubuntu2.1~18.04.23+esm8
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
openssl@3.0.9-1
3.0.19-1~deb12u2
socialmediamacroscope/preprocessing:0.1.3ca863306314b
openssl@3.0.9-1
3.0.19-1~deb12u2
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

109,730
neo4j-reverse-proxyneo4j-helm-chartsVerified publisher2026.8.11 of 1See more

neo4j-reverse-proxy neo4j-helm-charts 2026.8.1

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
neo4j/helm-charts-reverse-proxy:2026.08.1ea1b8444808d
openssl@3.3.6-r0
3.3.7-r0

Open the chart page →

321
redisneomanexlabsVerified publisher1.1.01 of 1See more

redis neomanexlabs 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/redis:7.4.2-alpine02419de7eddf
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,288
ixyneoskop2.1.11 of 1See more

ixy neoskop 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
neoskop/ixy:2.1.125152b474f54
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,166
neosyncneosyncVerified publisher0.5.413 of 3See more

neosync neosync 0.5.41

3 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2
ghcr.io/nucleuscloud/neosync/app:0.5.41ca31ec35b829
openssl@3.5.0-r0
3.5.6-r0
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

7,245
apineosync-apiVerified publisher0.5.411 of 1See more

api neosync-api 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

2,849
appneosync-appVerified publisher0.5.411 of 1See more

app neosync-app 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/app:0.5.41ca31ec35b829
openssl@3.5.0-r0
3.5.6-r0

Open the chart page →

1,570
workerneosync-workerVerified publisher0.5.411 of 1See more

worker neosync-worker 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

2,826
bluesky-pdsnerkho-helm-charts0.4.21 of 1See more

bluesky-pds nerkho-helm-charts 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

2,384
core-keeper-dedicatednerkho-helm-charts0.1.11 of 1See more

core-keeper-dedicated nerkho-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
escaping/core-keeper-dedicated:latest87fa79255962
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

3,914
netbirdnetbird1.9.03 of 4See more

netbird netbird 1.9.0

3 of the 4 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
netbirdio/management:0.46.0b0adc4ad4ec6
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
netbirdio/relay:0.46.0d32f82514a24
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2
netbirdio/signal:0.46.0e8f392611152
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

6,415
netris-dpu-agentnetrisai0.1.01 of 1See more

netris-dpu-agent netrisai 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
netrisai/bare-metal-dpu-agent:4.7.0.003c271efe749d0
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9

Open the chart page →

1,574
neurofaceneurofaceVerified publisher1.4.21 of 3See more

neuroface neuroface 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
openvino/model_server:2025.2.11e7cd1d70cc1
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

7,464
agent-controlnewrelic0.0.921 of 1See more

agent-control newrelic 0.0.92

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
newrelic/newrelic-agent-control-cli:0.48.01a448492b55a
openssl@3.5.1-1
3.5.5-1~deb13u2

Open the chart page →

3,874
agent-control-cdnewrelic1.0.03 of 3See more

agent-control-cd newrelic 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flux-cli:v2.5.1274a179fd402
openssl@3.3.3-r0
3.3.7-r0
ghcr.io/fluxcd/helm-controller:v1.2.062eaa9c9a929
openssl@3.3.3-r0
3.3.7-r0
ghcr.io/fluxcd/source-controller:v1.5.000cd9316a379
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

5,054
nginx-samplenginx-sample0.5.01 of 1See more

nginx-sample nginx-sample 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/nginx:1.27.098f8ec75657d
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,344
nginx-sample-dependentnginx-sample-dependent0.2.01 of 1See more

nginx-sample-dependent nginx-sample-dependent 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/nginx:1.27.098f8ec75657d
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,344
nginx-sitenginx-site0.1.01 of 1See more

nginx-site nginx-site 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
amaraiheanacho/nginx-site:latest5c86fccf5daa
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

840
ciliumnicklasfrahm-ciliumVerified publisher0.7.43 of 6See more

cilium nicklasfrahm-cilium 0.7.4

3 of the 6 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.18.2858f807ea4e2
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
quay.io/cilium/hubble-ui:v0.13.3661d5de70501
openssl@3.5.2-r0
3.5.6-r0

Open the chart page →

7,216
wireguardnicklasfrahm-wireguard0.2.01 of 1See more

wireguard nicklasfrahm-wireguard 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/wg-easy/wg-easy:145f26407fd2ed
openssl@3.5.0-r0
3.5.6-r0

Open the chart page →

1,158
terraform-backendnimbolus0.3.21 of 2See more

terraform-backend nimbolus 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/redis:8.2.24521b581dbdd
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2

Open the chart page →

2,485
yopassnimbolus0.6.11 of 2See more

yopass nimbolus 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
jhaals/yopass:11.17.026873480863b
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

1,824
redisnineinfra-charts0.7.51 of 1See more

redis nineinfra-charts 0.7.5

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
library/redis:7.2.3a7cee7c8178f
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

3,943
node-appnode-app-lili1.0.01 of 1See more

node-app node-app-lili 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
laly9999/node-app:1dd0e503913e1
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

10,290
node-hostnamenode-hostnameVerified publisher1.0.11 of 1See more

node-hostname node-hostname 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
christianhuth/node-hostname:1.0.1c07f414a3e4b
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

885
cosmoshub-rpcnodeifyVerified publisher1.0.71 of 2See more

cosmoshub-rpc nodeify 1.0.7

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/cosmos/gaia:v25.1.0f115777d1112
openssl@3.5.0-r0
3.5.6-r0

Open the chart page →

2,014
cosmos-nodenodeifyVerified publisher2.6.01 of 2See more

cosmos-node nodeify 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/cosmos/gaia:v25.1.0f115777d1112
openssl@3.5.0-r0
3.5.6-r0

Open the chart page →

2,014
firehose-corenodeifyVerified publisher1.2.62 of 2See more

firehose-core nodeify 1.2.6

2 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
sigp/lighthouse:latest-amd6450f66cfebb6d
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.23
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9

Open the chart page →

6,558
firehose-ethereumnodeifyVerified publisher1.7.12 of 2See more

firehose-ethereum nodeify 1.7.1

2 of the 2 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
sigp/lighthouse:v8.1.344aa773dcf27
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.23
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9

Open the chart page →

5,667
substreams-tier-2nodeifyVerified publisher1.1.31 of 1See more

substreams-tier-2 nodeify 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9

Open the chart page →

4,735
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

22,735
notes-admin-front-helm-chartnotesprojectchart0.1.01 of 1See more

notes-admin-front-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
vlebediantsev/notes-admin-front:latest007c6670ff48
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

15,205
notes-project-fromt-helm-chartnotesprojectchart0.1.01 of 1See more

notes-project-fromt-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
vlebediantsev/notes-project-front:latest945675fd2636
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

15,279
registration-ms-front-helm-chartnotesprojectchart0.1.01 of 1See more

registration-ms-front-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

15,278
example-dev-toolsnoygal0.2.82 of 3See more

example-dev-tools noygal 0.2.8

2 of the 3 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
linuxserver/cloud9:latest45c5fe102ff3
openssl@1.1.1-1ubuntu2.1~18.04.19
1.1.1-1ubuntu2.1~18.04.23+esm8
linuxserver/codimd:latestb801bbcf6386
nodejs@10.23.0-1nodesource1
openssl@1.1.1-1ubuntu2.1~18.04.7
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

27,493
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-28387.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

27,684

Container images carrying it

2,511 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
1dev/server:11.9.0cd5b12fe5471
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
1password/connect-api:1.8.2e915c0c84397
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
1
1password/connect-sync:1.8.26297ca6136c0
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
1
2martens/configserver:latestbf1cdb80239d
openssl@3.3.1-r3
3.3.7-r0
1
2martens/timetable:latestbd1ba6ab84c9
openssl@3.5.1-r0
3.5.6-r0
1
2martens/wahlrecht:latestba2c3040dab0
openssl@3.5.1-r0
3.5.6-r0
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
openssl@3.0.9-1
3.0.19-1~deb12u2
1
5200710/hadoop:3.2.3-java8092d3088a5fb
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8
1
abdullahkhawer/simple-elasticsearch-cleaner:2.1.028a6c3f7e0a9
openssl@3.3.2-r4
3.3.7-r0
1
abhinavsingh/proxy.py:latest51adc989fd03
openssl@3.3.3-r0
3.3.7-r0
1
abiondevelopment/cert-manager-webhook-abion:latestc741988fbd23
openssl@3.3.4-r0
3.3.7-r0
1
aboogie/login_test_backend:new9c41a4483ac8
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
1
adguard/adguardhome:v0.107.737fbf01d73ecb
openssl@3.5.5-r0
3.5.6-r0
1
adguard/adguardhome:v0.107.65d765078d2140
openssl@3.3.4-r0
3.3.7-r0
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.9
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
1
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
1
aibrix/metadata-service:v0.7.063fb81a64377
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
airbyte/db:2.3.000cc017f0393
openssl@3.5.4-r0
3.5.6-r0
1
airbyte/pod-sweeper:1.5.198d2c39d512e
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.24+esm3
1
akaunting/akaunting:3.0.1552811b36ec3a
openssl@3.0.9-1
3.0.19-1~deb12u2
1
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
openssl@3.5.1-r0
3.5.6-r0
1
aktosecurity/data-ingestion-service213aded7adc5
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
1
alakaganaguathoork/local-business:latest7eb27b0f4a5a
openssl@3.5.4-r0
3.5.6-r0
1
alazidis/stornx:1.1.1602d4f7f090c
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
1
allegroai/clearml:2.0.0-613713ae38f7daf
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
openssl@1.1.1-1ubuntu2.1~18.04.19
1.1.1-1ubuntu2.1~18.04.23+esm8
1
alpine/curl:8.12.08943e8c7e8e4
openssl@3.3.2-r4
3.3.7-r0
1
alpine/git:v2.49.1c0280cf95723
openssl@3.5.4-r0
3.5.6-r0
1
alpine/helm105741fa6621
openssl@3.3.1-r3
3.3.7-r0
1
alpine/helm:4.1.0905a068da431
openssl@3.5.4-r0
3.5.6-r0
1
alpine/k8s:1.36.244ef4942e171
openssl@3.5.5-r0
3.5.6-r0
1
alpine/k8s:1.31.106dbe6f391eda
openssl@3.5.0-r0
3.5.6-r0
1
alpine/k8s:1.31.137a319b15cfc9
openssl@3.5.1-r0
3.5.6-r0
1
alpine/k8s:1.32.47e1e7d5b7a96
openssl@3.3.3-r0
3.3.7-r0
1
alpine/k8s:1.31.49c4976d47656
openssl@3.3.2-r4
3.3.7-r0
1
alpine/k8s:1.35.6b7a12c5ddf26
openssl@3.5.5-r0
3.5.6-r0
1
alpine/k8s:1.30.2cd560fce90f7
openssl@3.3.1-r0
3.3.7-r0
1
alpine/k8s:1.35.5d870622d0040
openssl@3.5.5-r0
3.5.6-r0
1
alpine/k8s:1.28.13e5c0b053fed7
openssl@3.3.1-r3
3.3.7-r0
1
alpine/k8s:1.32.3eec354133193
openssl@3.3.3-r0
3.3.7-r0
1
alpine/kubectl:1.33.32c59a3f0726c
openssl@3.5.1-r0
3.5.6-r0
1
alpine/kubectl:1.35.0862d86046bbc
openssl@3.5.5-r0
3.5.6-r0
1
alpine/kubectl:1.35.3c4a11ae9a1cb
openssl@3.5.5-r0
3.5.6-r0
1
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
1
anamskenneth/recipe_backend:2025-06-079b7d2cd389b7
openssl@3.3.3-r0
3.3.7-r0
1
anamskenneth/recipe_frontend:2025-06-079ecf04f42cc3
openssl@3.3.3-r0
3.3.7-r0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.