StackRadar

CVE-2026-28389

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,306
of 17,787 indexed, latest versions
Container images
2,569
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-28389 affecting package openssl for versions less than 3.3.5-5

Carried by container images the latest versions of 2,306 of 17,787 indexed charts deploy, on 2,569 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.2g-1ubuntu4.5, 1.0.2g-1ubuntu4.6, 1.0.2g-1ubuntu4.8, 1.0.2g-1ubuntu4.9+94 more1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23+4 more1,662
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0904
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm415
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl33.3.5-53
OSV records
ALPINE-CVE-2026-28389CGA-2r23-9xvx-4prrCGA-c3mq-2w7x-m4x8DEBIAN-CVE-2026-28389UBUNTU-CVE-2026-28389AZL-82067ECHO-ba3d-b3f7-03e8
Also known as
CGA-p78p-49m2-xjvw, CGA-rff8-35jv-r39r, USN-8155-1, USN-8155-2

Charts affected

2,306 by stars
ChartLatestAffected imagesRadar Score
mqtt-loggermoreillonVerified publisher0.3.11 of 5See more

mqtt-logger moreillon 0.3.1

1 of the 5 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23

Open the chart page →

10,998
user-manager-mongodbmoreillonVerified publisher0.6.23 of 4See more

user-manager-mongodb moreillon 0.6.2

3 of the 4 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
moreillon/user-manager-front:v5.0.3b067dbbbb6af
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

23,263
user-manager-neo4jmoreillonVerified publisher0.9.74 of 6See more

user-manager-neo4j moreillon 0.9.7

4 of the 6 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
moreillon/group-manager-front:v3.3.1c9f85db3baa5
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
moreillon/user-manager:v5.0.2e1c9bfab5c16
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
moreillon/user-manager-front:v5.1.06597e6b98d21
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

30,195
genericmorremeyer8.0.01 of 1See more

generic morremeyer 8.0.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/nginx:1.25.167f9a4f10d14
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

5,602
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

25,989
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

15,731
tianjimsgbyte0.1.171 of 2See more

tianji msgbyte 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
moonrailgun/tianji:1.11.2b528c8f8fcc4
openssl@3.3.0-r2
3.3.7-r0

Open the chart page →

4,560
adguard-homemt1905024.0.121 of 2See more

adguard-home mt190502 4.0.12

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.737fbf01d73ecb
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,167
commafeedmt1905028.2.01 of 3See more

commafeed mt190502 8.2.0

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
athou/commafeed:6.2.0-postgresql5e388351df1a
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

3,697
copilot-apimt1905022.3.01 of 1See more

copilot-api mt190502 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/bouquet2/copilot-api-docker:v0.7.06b0507a20602
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

487
maddymt1905024.1.21 of 1See more

maddy mt190502 4.1.2

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
foxcpp/maddy:0.9.2a4b839985b9b
openssl@3.3.6-r0
3.3.7-r0

Open the chart page →

893
memosmt1905027.3.21 of 3See more

memos mt190502 7.3.2

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
neosmemo/memos:0.26.23eefcc231141
openssl@3.3.6-r0
3.3.7-r0

Open the chart page →

2,455
minifluxmt1905021.1.61 of 3See more

miniflux mt190502 1.1.6

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
miniflux/miniflux:2.2.18a3ca6bbc1f74
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

2,681
nightscoutmt1905021.1.01 of 3See more

nightscout mt190502 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

6,646
paperless-ngxmt1905027.6.141 of 4See more

paperless-ngx mt190502 7.6.14

1 of the 4 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

11,860
radicalemt1905024.1.11 of 1See more

radicale mt190502 4.1.1

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
tomsquest/docker-radicale:3.6.1.0a594c624c5a6
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,546
umamimt1905028.1.41 of 3See more

umami mt190502 8.1.4

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/umami-software/umami:3.0.328f263fe06f7
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

4,030
vaultwardenmt1905027.3.41 of 3See more

vaultwarden mt190502 7.3.4

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
vaultwarden/server:1.35.443498a94b22f
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

4,701
mongodbmulti-chart-app0.1.01 of 1See more

mongodb multi-chart-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/mongo:7b096b4cb9269
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

1,984
my-multi-chart-appmulti-chart-app0.1.01 of 2See more

my-multi-chart-app multi-chart-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/mongo:7b096b4cb9269
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

3,823
mum-discord-botmum-discord-botVerified publisher0.3.71 of 1See more

mum-discord-bot mum-discord-bot 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

13,711
devops-demomungari-development-charts1.0.41 of 4See more

devops-demo mungari-development-charts 1.0.4

1 of the 4 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

8,946
pagesmuthu-pages1.0.02 of 3See more

pages muthu-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,233
ingress-nginxmxytest4.15.11 of 2See more

ingress-nginx mxytest 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,548
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

12,861
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

12,861
clickhousemyaVerified publisher0.2403.11 of 1See more

clickhouse mya 0.2403.1

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.2ed9640bfff07
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

3,597
cognativemyaVerified publisher0.2403.31 of 3See more

cognative mya 0.2403.3

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.2ed9640bfff07
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

7,348
elasticsearch-chartmy-elasticsearch0.1.01 of 2See more

elasticsearch-chart my-elasticsearch 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.35e6ac15bf6a5
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

9,341
my-helm-chartmy-helm-charts-2024Verified publisher0.1.01 of 1See more

my-helm-chart my-helm-charts-2024 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
shamimkuet/nginx:1.0.2b82902a76a04
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,383
Practica_4_helmmy-heml-appVerified publisher0.1.03 of 7See more

Practica_4_helm my-heml-app 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23+esm8
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.23

Open the chart page →

27,812
nginx-chartmy-nginx-chart0.1.01 of 1See more

nginx-chart my-nginx-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
amaraiheanacho/nginx-site:latest5c86fccf5daa
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

840
mystoremystore-chart0.1.02 of 3See more

mystore mystore-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
hazegoodlife/haaze:veggiesite50f02d2d5d4d
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
hazegoodlife/haaze:milksite8d4c63169e14
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

8,776
myweatherhelmmyweather1.3.114 of 7See more

myweatherhelm myweather 1.3.11

4 of the 7 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
hecrom/myweatherangularclient:1.3.11bb0372939c19
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
hecrom/myweatherprocessingreactclient:1.3.115454b54d5b28
openssl@3.3.1-r3
3.3.7-r0
library/rabbitmq:3-managemente582c0bc7766
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
openssl@1.1.1-1ubuntu2.1~18.04.23
openssl1.0@1.0.2n-1ubuntu5.13
1.1.1-1ubuntu2.1~18.04.23+esm8
1.0.2n-1ubuntu5.13+esm4

Open the chart page →

17,411
fargate-sidecar-injectormziyaboVerified publisher0.1.51 of 1See more

fargate-sidecar-injector mziyabo 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
mziyabo/fargate-eks-sidecar-injector:latest3067dce17983
openssl@3.3.0-r2
3.3.7-r0

Open the chart page →

1,393
nacosnacos-yunyeVerified publisher1.0.31 of 1See more

nacos nacos-yunye 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.130a39cb0c54d
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,783
smallandnaj980.0.51 of 1See more

smalland naj98 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

3,024
pagesnarain1.0.02 of 3See more

pages narain 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,233
pagesnarasimha-pages1.0.02 of 3See more

pages narasimha-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,233
akauntingnas-helm-chartsVerified publisher1.0.31 of 2See more

akaunting nas-helm-charts 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
akaunting/akaunting:3.0.1552811b36ec3a
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

12,839
proxy-pynas-helm-chartsVerified publisher1.0.01 of 1See more

proxy-py nas-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
abhinavsingh/proxy.py:latest51adc989fd03
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

593
pagesnavin-brixton1.0.02 of 3See more

pages navin-brixton 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,233
incorencsaVerified publisher1.38.02 of 29See more

incore ncsa 1.38.0

2 of the 29 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
bitnamilegacy/postgresql:16.4.03ba6e6f11388
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

15,408
jupyterhub-metricsncsaVerified publisher1.3.01 of 5See more

jupyterhub-metrics ncsa 1.3.0

1 of the 5 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/ncsa/jupyterhub-metrics/collector:1.3.0dcb8c731bb1b
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

4,135
smilencsaVerified publisher1.1.07 of 23See more

smile ncsa 1.1.0

7 of the 23 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm3
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
openssl@1.1.1-1ubuntu2.1~18.04.22
1.1.1-1ubuntu2.1~18.04.23+esm8
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
openssl@3.0.9-1
3.0.19-1~deb12u2
socialmediamacroscope/image_crawler:0.1.2f508216be63c
openssl@1.1.1-1ubuntu2.1~18.04.22
1.1.1-1ubuntu2.1~18.04.23+esm8
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
openssl@3.0.9-1
3.0.19-1~deb12u2
socialmediamacroscope/preprocessing:0.1.3ca863306314b
openssl@3.0.9-1
3.0.19-1~deb12u2
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

109,485
neo4j-reverse-proxyneo4j-helm-chartsVerified publisher2026.8.11 of 1See more

neo4j-reverse-proxy neo4j-helm-charts 2026.8.1

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
neo4j/helm-charts-reverse-proxy:2026.08.1ea1b8444808d
openssl@3.3.6-r0
3.3.7-r0

Open the chart page →

321
redisneomanexlabsVerified publisher1.1.01 of 1See more

redis neomanexlabs 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/redis:7.4.2-alpine02419de7eddf
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,288
ixyneoskop2.1.11 of 1See more

ixy neoskop 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
neoskop/ixy:2.1.125152b474f54
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,166
neosyncneosyncVerified publisher0.5.413 of 3See more

neosync neosync 0.5.41

3 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2
ghcr.io/nucleuscloud/neosync/app:0.5.41ca31ec35b829
openssl@3.5.0-r0
3.5.6-r0
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

7,056
apineosync-apiVerified publisher0.5.411 of 1See more

api neosync-api 0.5.41

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

2,755

Container images carrying it

2,569 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
openssl@3.5.5-r0
3.5.6-r0
3
alazidis/kube-netlag:1.1.00e8c84152201
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
2
alpine/curl:8.7.1f0c1b7ca12f6
openssl@3.3.1-r0
3.3.7-r0
2
alpine/git:2.47.2062a01ad7a0e
openssl@3.3.3-r0
3.3.7-r0
2
alpine/k8s:1.32.12048f8d9c8cc7
openssl@3.5.5-r0
3.5.6-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
openssl@3.5.5-r0
3.5.6-r0
2
amaraiheanacho/nginx-site:latest5c86fccf5daa
openssl@3.3.3-r0
3.3.7-r0
2
apache/fineract:1.12.1a83cf1980609
openssl@3.3.4-r0
3.3.7-r0
2
apache/nifi-registry:1.26.07cdfd8deec92
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23
2
apache/rocketmq:5.4.0319cd8a81ed1
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.9
2
apecloud/apecloud-mcp:0.1.094041b080510
openssl@3.5.0-r0
3.5.6-r0
2
aquasec/kube-bench:v0.8.0ea3e33bc3c4e
openssl@3.3.1-r1
3.3.7-r0
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
2
bitnamilegacy/redis:latest5927ff3702df
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
openssl@3.0.17-1~deb12u1
3.0.19-1~deb12u2
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
2
clamav/clamav:1.4.3_base629a3050df6a
openssl@3.5.5-r0
3.5.6-r0
2
clickhouse/clickhouse-server:25.7-alpine258d43821508
openssl@3.5.4-r0
3.5.6-r0
2
clickhouse/clickhouse-server:24.2ed9640bfff07
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm3
2
clickhouse/clickhouse-server:26.8.2:latestfa394da808cc
openssl@3.0.2-0ubuntu1.29
no fix listed
2
curlimages/curl:8.15.04026b29997dc
openssl@3.5.1-r0
3.5.6-r0
2
datagrok/grok_connect:latestf5876d3aebb8
openssl@3.0.2-0ubuntu1.26
no fix listed
2
devopsfaith/krakend:latestf8bdaa8a1a43
openssl@3.3.3-r0
3.3.7-r0
2
eqalpha/keydb:latest6537505c4235
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
2
excalidraw/excalidraw:latestf7ee194addd6
openssl@3.3.3-r0
3.3.7-r0
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssl@3.0.9-1
3.0.19-1~deb12u2
2
gradiant/ueransim:3.2.6015b30d5fa0f
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.23
2
grafana/alloy:v1.8.17790f6f7fbd8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
2
grafana/alloy:v1.12.2f94b1c82957a
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
2
grafana/grafana:12.3.12175aaa91c96
openssl@3.5.4-r0
3.5.6-r0
2
grafana/grafana:12.3.39e1e77ade304
openssl@3.5.5-r0
3.5.6-r0
2
grafana/grafana:11.4.0d8ea37798ccc
openssl@3.3.2-r0
3.3.7-r0
2
grafana/grafana:12.4.1e932bd6ed0e0
openssl@3.5.5-r0
3.5.6-r0
2
grafana/tempo:2.5.0f0200a9bff6d
openssl@3.3.0-r2
3.3.7-r0
2
hanchuanchuan/goinception:latestb3c0dd26fb50
openssl@3.3.2-r0
3.3.7-r0
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.