StackRadar

CVE-2026-28388

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,307
of 17,797 indexed, latest versions
Container images
2,570
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-28388 affecting package openssl for versions less than 3.3.5-5

Carried by container images the latest versions of 2,307 of 17,797 indexed charts deploy, on 2,570 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm13, 1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3+5 more1,665
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0902
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm415
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl33.3.5-53
OSV records
ALPINE-CVE-2026-28388CGA-2c5c-rx22-cxxfCGA-92mm-ffw5-fq49DEBIAN-CVE-2026-28388UBUNTU-CVE-2026-28388AZL-81953ECHO-4471-00bd-faf3
Also known as
CGA-j9vv-xrrm-g5v2, CGA-xx8c-47rc-27jj, USN-8155-1, USN-8155-2

Charts affected

2,307 by stars
ChartLatestAffected imagesRadar Score
oesopsmxVerified publisher4.0.324 of 25See more

oes opsmx 4.0.32

4 of the 25 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/opa:opa-sidecar-v1.03dcbf3caa454
openssl@3.5.4-r0
3.5.6-r0
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm15
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

108,354
redispascaliskeVerified publisher2.1.01 of 1See more

redis pascaliske 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
library/redis:8.0.3be0a135f1955
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

1,876
platzioplatz-ioVerified publisher0.6.52 of 2See more

platzio platz-io 0.6.5

2 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
platzio/backend:v0.6.5d5e5972f344b
openssl@3.5.1-r0
3.5.6-r0
platzio/frontend:v0.6.073083749b46a
openssl@3.5.1-r0
3.5.6-r0

Open the chart page →

2,879
overseerrpree-helm-chartsVerified publisher1.2.01 of 1See more

overseerr pree-helm-charts 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/sct/overseerr:1.35.06197516c9d7b
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

2,706
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,483
repoflowrepoflow-helm-public0.9.13 of 8See more

repoflow repoflow-helm-public 0.9.1

3 of the 8 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
library/elasticsearch:8.15.0310b9fc03b06
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm3
library/postgres:16.24aea012537ed
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

13,692
nominatimrobjuz6.4.21 of 4See more

nominatim robjuz 6.4.2

1 of the 4 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

8,826
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9

Open the chart page →

6,410
rqliterqliteOfficialVerified publisher2.0.01 of 1See more

rqlite rqlite 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
rqlite/rqlite:9.1.37b992a526eee
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,319
qbittorrent-vpnrtomik-helm-chartsVerified publisher0.0.21 of 2See more

qbittorrent-vpn rtomik-helm-charts 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
qmcgaw/gluetun:v3.40.02b42bfa04675
openssl@3.3.2-r1
3.3.7-r0

Open the chart page →

1,219
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

24,546
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23

Open the chart page →

3,476
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

3,441
skypilotskypilotOfficialVerified publisher0.13.01 of 3See more

skypilot skypilot 0.13.0

1 of the 3 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
openssl@3.5.0-r0
3.5.6-r0

Open the chart page →

5,943
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23

Open the chart page →

5,839
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

15,620
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

7,093
pocketbasetechwolf12Verified publisher0.29.31 of 1See more

pocketbase techwolf12 0.29.3

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/techwolf12/pocketbase:0.29.3106099641679
openssl@3.5.1-r0
3.5.6-r0

Open the chart page →

1,448
mealieth-chartsVerified publisher0.5.11 of 1See more

mealie th-charts 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
openssl@3.5.1-1
3.5.5-1~deb13u2

Open the chart page →

3,834
feedbacksystemthm-mni-iiVerified publisher0.47.14 of 10See more

feedbacksystem thm-mni-ii 0.47.1

4 of the 10 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
thmmniii/fbs-collab:v1.27.15d389e3c5ce6
openssl@3.5.1-r0
3.5.6-r0
thmmniii/fbs-core:v1.27.15438517d9fc2
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23
thmmniii/fbs-qcm-backend:v1.27.1afbe511e5c24
openssl@3.5.1-r0
3.5.6-r0
thmmniii/fbs-qcm-frontend:v1.27.1a347f7f4d144
openssl@3.5.1-r0
3.5.6-r0

Open the chart page →

28,692
topaztopaz0.2.51 of 1See more

topaz topaz 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/aserto-dev/topaz:0.32.594c708ecf7dc4
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,503
argocdtwomartensVerified publisher0.1.11 of 3See more

argocd twomartens 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.8.6acaf37352569
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

10,382
uptraceuptrace2.0.21 of 2See more

uptrace uptrace 2.0.2

1 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
uptrace/uptrace:2.0.234a02c3b2d12
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,627
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

18,218
vaultvaultVerified publisher1.22.01 of 4See more

vault vault 1.22.0

1 of the 4 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
alpine/k8s:1.35.5d870622d0040
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

4,261
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

4,429
api-firewallwallarmVerified publisher0.9.61 of 1See more

api-firewall wallarm 0.9.6

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
wallarm/api-firewall:v0.9.64d45db0ff240
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,000
wallarm-ingresswallarmVerified publisher5.3.10-11 of 2See more

wallarm-ingress wallarm 5.3.10-1

1 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
wallarm/ingress-controller:5.3.10.1a1fecfdf987e
openssl@3.3.5-r0
3.3.7-r0

Open the chart page →

1,301
wallarm-sidecarwallarmOfficialVerified publisher6.13.11 of 3See more

wallarm-sidecar wallarm 6.13.1

1 of the 3 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
wallarm/sidecar-controller:1.8.0524f7e6e8c35
openssl@3.3.4-r0
3.3.7-r0

Open the chart page →

965
argo-cdwenerme10.9.21See more

argo-cd wenerme 10.9.2

1 container image this version deploys carries CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.45.18499afd690c4
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

yet-another-cloudwatch-exporteryet-another-cloudwatch-exporter0.38.01 of 1See more

yet-another-cloudwatch-exporter yet-another-cloudwatch-exporter 0.38.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/nerdswords/yet-another-cloudwatch-exporter:v0.61.2f04925fe1fa6
openssl@3.3.1-r0
3.3.7-r0

Open the chart page →

923
nocodbzekker6Verified publisher1.10.01 of 1See more

nocodb zekker6 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
nocodb/nocodb:0.301.5d9516f0bf546
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

4,019
zeroclawzeroclawVerified publisher0.2.11 of 2See more

zeroclaw zeroclaw 0.2.1

1 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/zeroclaw-labs/zeroclaw:v0.1.7497893753e16
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

802
paperless-ngxadnoctemVerified publisher0.4.21 of 5See more

paperless-ngx adnoctem 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.23

Open the chart page →

20,185
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

13,644
agentareaagentareaVerified publisher0.0.184 of 16See more

agentarea agentarea 0.0.18

4 of the 16 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
oryd/kratos:v1.3.1fe2428f103a6
openssl@3.3.2-r1
3.3.7-r0
temporalio/auto-setup:1.29.15b3502a3b685
openssl@3.5.0-r0
3.5.6-r0
temporalio/ui:2.39.0b768f87f18b5
openssl@3.3.3-r0
3.3.7-r0
valkey/valkey:9.0.1546304417fea
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

15,048
icat-k8salba-helm-chartsVerified publisher1.1.03 of 4See more

icat-k8s alba-helm-charts 1.1.0

3 of the 4 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
curlimages/curl:8.18.0d94d07ba9e7d
openssl@3.5.4-r0
3.5.6-r0
payara/micro:7.2026.2-jdk25fb44b8ce1cb2
openssl@3.3.6-r0
3.3.7-r0
payara/server-full:7.2026.2-jdk2531f1253f0cf8
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.23

Open the chart page →

3,755
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.02 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

12,119
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
openssl@1.1.1-1ubuntu2.1~18.04.19
openssl1.0@1.0.2n-1ubuntu5.10
1.1.1-1ubuntu2.1~18.04.23+esm8
1.0.2n-1ubuntu5.13+esm4

Open the chart page →

12,148
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.23

Open the chart page →

8,395
psonoankra-chartsVerified publisher1.2.01 of 2See more

psono ankra-charts 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
psono/psono-server:5.0.03b974b43ea03
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

2,387
upcloud-csiankra-chartsVerified publisher0.4.01 of 8See more

upcloud-csi ankra-charts 0.4.0

1 of the 8 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
alpine/k8s:1.31.137a319b15cfc9
openssl@3.5.1-r0
3.5.6-r0

Open the chart page →

14,973
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

3,403
anteonanteonVerified publisher2.6.42 of 13See more

anteon anteon 2.6.4

2 of the 13 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

22,442
apache-rangerapache-ranger0.1.01 of 2See more

apache-ranger apache-ranger 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
apache/ranger:2.7.076c176e8a0e4
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23

Open the chart page →

7,815
scannerappscodeVerified publisher2026.1.152 of 3See more

scanner appscode 2026.1.15

2 of the 3 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/appscode/scanner:v0.0.2116907aae5de1
openssl@3.5.4-r0
3.5.6-r0
ghcr.io/appscode/trivydb:0.0.367ffb0309acb
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

5,308
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2

Open the chart page →

5,253
arvancloud-webhookarvancloud-webhookVerified publisher1.0.01 of 1See more

arvancloud-webhook arvancloud-webhook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

2,334
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

17,984
dltbrokerassist-iot-distributed-broker0.2.03 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-28388.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
no fix listed
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm15
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

78,035

Container images carrying it

2,570 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/opencost/opencost-ui:1.118.0571f87e528ea
openssl@3.5.4-r0
3.5.6-r0
1
ghcr.io/openfaas/cron-connector:0.7.0982498e8a41e
openssl@3.3.2-r4
3.3.7-r0
1
ghcr.io/openfaas/faas-netes:0.18.1224431adc8e2d
openssl@3.3.2-r4
3.3.7-r0
1
ghcr.io/openfaas/gateway:0.27.1382b15393116e
openssl@3.5.1-r0
3.5.6-r0
1
ghcr.io/openfaas/gateway:0.27.14ee0eaecc490c
openssl@3.5.1-r0
3.5.6-r0
1
ghcr.io/openfaasltd/gcp-pubsub-connector:0.0.18df071f5b719
openssl@3.3.2-r0
3.3.7-r0
1
ghcr.io/openfaasltd/kafka-connector:0.7.160e58eac0e2f7
openssl@3.5.4-r0
3.5.6-r0
1
ghcr.io/openfaasltd/postgres-connector:0.2.3379e583a0a75
openssl@3.3.2-r4
3.3.7-r0
1
ghcr.io/openfaasltd/pro-builder:0.6.06c17297f9098
openssl@3.5.0-r0
3.5.6-r0
1
ghcr.io/openfaasltd/rabbitmq-connector:0.1.2349f7dca95ec
openssl@3.3.2-r4
3.3.7-r0
1
ghcr.io/openfaasltd/sqs-connector:0.3.4d44ed3b3128c
openssl@3.3.2-r4
3.3.7-r0
1
ghcr.io/openlit/openlit-operator:0.0.2457bb5ada68b
openssl@3.5.5-r0
3.5.6-r0
1
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/openrelik/openrelik-ui:latest7f91594d5eb3
openssl@3.5.5-r0
3.5.6-r0
1
ghcr.io/open-telemetry/demo:1.12.0-productcatalogservice008b9b662289
openssl@3.3.2-r0
3.3.7-r0
1
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
openssl@3.0.2-0ubuntu1.25
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-checkoutservice380eccdc29e9
openssl@3.3.2-r0
3.3.7-r0
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/open-telemetry/demo:1.12.0-cartservice89730afa0b5d
openssl@3.3.2-r0
3.3.7-r0
1
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
openssl@3.3.2-r0
3.3.7-r0
1
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
openssl@3.5.4-r0
3.5.6-r0
1
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.23
1
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9
1
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
openssl@3.3.0-r2
3.3.7-r0
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/open-telemetry/demo:3.0.0-paymentd498c7434d22
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
ghcr.io/open-telemetry/demo:1.12.0-flagduif6bdafaa9075
openssl@3.3.2-r0
3.3.7-r0
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3
1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
1
ghcr.io/parca-dev/parca:v0.24.23776500fde82
openssl@3.5.1-r0
3.5.6-r0
1
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/pbufio/registry:v0.4.177a36c035b4b
openssl@3.5.4-r0
3.5.6-r0
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm8
1
ghcr.io/pixelfederation/unbound:1.24.2_0fce820a03964
openssl@3.5.5-r0
3.5.6-r0
1
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
openssl@3.3.3-r0
3.3.7-r0
1
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
openssl@3.3.2-r1
3.3.7-r0
1
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
openssl@3.3.2-r0
3.3.7-r0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.