StackRadar

CVE-2026-28389

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,306
of 17,787 indexed, latest versions
Container images
2,569
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-28389 affecting package openssl for versions less than 3.3.5-5

Carried by container images the latest versions of 2,306 of 17,787 indexed charts deploy, on 2,569 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.2g-1ubuntu4.5, 1.0.2g-1ubuntu4.6, 1.0.2g-1ubuntu4.8, 1.0.2g-1ubuntu4.9+94 more1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23+4 more1,662
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0904
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm415
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl33.3.5-53
OSV records
ALPINE-CVE-2026-28389CGA-2r23-9xvx-4prrCGA-c3mq-2w7x-m4x8DEBIAN-CVE-2026-28389UBUNTU-CVE-2026-28389AZL-82067ECHO-ba3d-b3f7-03e8
Also known as
CGA-p78p-49m2-xjvw, CGA-rff8-35jv-r39r, USN-8155-1, USN-8155-2

Charts affected

2,306 by stars
ChartLatestAffected imagesRadar Score
prometheushuangchengwu-helm-chart0.1.02 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23
apache/skywalking-ui:9.2.0295f1dc87d98
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

16,482
skywalking-v1huangchengwu-helm-chart0.1.02 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.9.1b4ec8c18d079
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3
apache/skywalking-ui:8.9.180530f0308a5
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

20,727
sing-boxhuscker-chartsVerified publisher1.0.71 of 1See more

sing-box huscker-charts 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/sagernet/sing-box:v1.12.03c1ee82d450d
openssl@3.5.1-r0
3.5.6-r0

Open the chart page →

1,443
townsquarehuscker-chartsVerified publisher1.0.41 of 2See more

townsquare huscker-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

3,355
jaegerhuseyinbabalVerified publisher0.1.01 of 3See more

jaeger huseyinbabal 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:latestab6f1a1f0fb4
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,478
kubetaghuseyinbabalVerified publisher1.0.21 of 2See more

kubetag huseyinbabal 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/huseyinbabal/kubetag:lateste161eddc59a0
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,277
hydrahydraVerified publisher0.9.51 of 2See more

hydra hydra 0.9.5

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

9,038
isolated-vmhydraVerified publisher0.9.41 of 1See more

isolated-vm hydra 0.9.4

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

7,749
hydrogen-webhydrogen-web0.1.101 of 1See more

hydrogen-web hydrogen-web 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/element-hq/hydrogen-web:v0.5.12d15d14b201a
openssl@3.3.2-r1
3.3.7-r0

Open the chart page →

725
hyperglance-helmhyperglance-helmVerified publisher10.0.54 of 6See more

hyperglance-helm hyperglance-helm 10.0.5

4 of the 6 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
hyperglance/init:wildfly467ad8491bc3
openssl@3.0.2-0ubuntu1.23
no fix listed
hyperglance/init:postgres9fd5faf1fe80
openssl@3.0.2-0ubuntu1.23
no fix listed
hyperglance/init:apacheb2f8c6d52623
openssl@3.0.2-0ubuntu1.23
no fix listed
hyperglance/postgresql-v2:10.0.5eb4d383894b8
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

11,171
mvfi4trustVerified publisher1.1.21 of 1See more

mvf i4trust 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
wistefan/mvf:lateste0887302b2d8
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.23

Open the chart page →

7,184
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.23

Open the chart page →

7,902
iam-eks-user-mapperiam-eks-user-mapper1.6.01 of 1See more

iam-eks-user-mapper iam-eks-user-mapper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
openssl@3.5.1-1+deb13u1
3.5.5-1~deb13u2

Open the chart page →

1,649
ibexaibexaVerified publisher3.11.11 of 10See more

ibexa ibexa 3.11.1

1 of the 10 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
boky/postfix:4.4.0f3f247fd4252
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,770
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ibmcom/microclimate-theia:lateste17bdccc5030
nodejs@4.2.6~dfsg-1ubuntu4.1
openssl@1.0.2g-1ubuntu4.10
no fix listed
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

57,728
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

12,632
ibm-swift-sampleibm-charts1.1.21 of 1See more

ibm-swift-sample ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ibmcom/icp-swift-sample:latestb5d8c6714dbc
openssl@1.0.2g-1ubuntu4.12
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

25,184
ibm-ws-dyn-agent-devibm-charts1.0.01 of 1See more

ibm-ws-dyn-agent-dev ibm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

19,309
ibm-ucv-prodibm-helm5.2.62 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

2 of the 16 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
bitnamilegacy/nginx:1.27.1934d1acd5ca8
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
bitnamilegacy/rabbitmq:4.1.2fac502149c40
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

11,975
tolgeeicoretechVerified publisher0.46.11 of 3See more

tolgee icoretech 0.46.1

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/postgres:18.369e8582b781c
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

2,715
monitoring-stackict-platformVerified publisher0.4.03 of 13See more

monitoring-stack ict-platform 0.4.0

3 of the 13 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/memcached:1.6.39-alpinec8503d4491ed
openssl@3.5.4-r0
3.5.6-r0
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
openssl@3.5.4-r0
3.5.6-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

9,597
ingress-nginxifmethod-helm-charts4.12.11 of 2See more

ingress-nginx ifmethod-helm-charts 4.12.1

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,476
eoloserverihuertas2021-vmartinp2021-helm0.1.03 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23+esm8
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.23

Open the chart page →

27,812
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

9,032
ikigaiikigai-chartVerified publisher0.0.94 of 58See more

ikigai ikigai-chart 0.0.9

4 of the 58 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
dremio/dremio-oss:24.1.080ed2e3b7c43
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.23
jupyterhub/k8s-hub:1.2.0e4770285aaf7
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
library/zookeeper:3.8-temurin55d1e5b2e601
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.23
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

37,844
ilum-hive-metastoreilumVerified publisher1.2.01 of 2See more

ilum-hive-metastore ilum 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

3,586
ilum-jupyterhubilumVerified publisher4.3.11 of 6See more

ilum-jupyterhub ilum 4.3.1

1 of the 6 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
quay.io/jupyterhub/configurable-http-proxy:5.1.0eb10d5bf045c
openssl@3.3.4-r0
3.3.7-r0

Open the chart page →

1,836
ilum-marquezilumVerified publisher6.7.03 of 3See more

ilum-marquez ilum 6.7.0

3 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
ilum/marquez:0.54.06e1d709d41f8
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
ilum/marquez-web:0.53.2716437a51a6c
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

6,282
ilum-streamlitilumVerified publisher0.1.01 of 1See more

ilum-streamlit ilum 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ilum/streamlit-example:1.0.0ce5dcdeb22ba
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

2,748
ilum-uiilumOfficialVerified publisher6.7.31 of 2See more

ilum-ui ilum 6.7.3

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ilum/ui:6.7.3998937726679
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,236
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

11,838
plausible-analyticsimioVerified publisher0.4.25 of 5See more

plausible-analytics imio 0.4.2

5 of the 5 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
bitnamilegacy/clickhouse:24.12.3-debian-12-r13cf6544f6c6c
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
bitnamilegacy/clickhouse:24.12.4c7e70bf1d3fb
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
library/postgres:17.6-alpineef257d85f76e
openssl@3.5.4-r0
3.5.6-r0
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

10,152
smtp4devimioVerified publisher0.1.11 of 1See more

smtp4dev imio 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
rnwood/smtp4dev:3.6.1912304153668
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

3,205
apexkube-agentimprowisedVerified publisher1.4.01 of 2See more

apexkube-agent improwised 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
openssl@3.0.2-0ubuntu1.16
3.0.2-0ubuntu1.23

Open the chart page →

3,350
kore-boardimprowisedVerified publisher0.5.81 of 4See more

kore-board improwised 0.5.8

1 of the 4 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

16,226
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
openssl@3.0.2-0ubuntu1.16
3.0.2-0ubuntu1.23

Open the chart page →

5,360
pgcatimprowisedVerified publisher0.1.01 of 1See more

pgcat improwised 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

3,316
proxysqlimprowisedVerified publisher1.0.01 of 1See more

proxysql improwised 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
improwised/proxysql:master-6b26e59-171765063828940522e8b7
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

3,183
infisical-agent-injectorinfisical-charts0.1.121 of 1See more

infisical-agent-injector infisical-charts 0.1.12

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
infisical/infisical-agent-injector:v0.1.12718dd5bee7cb
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

761
influxdb-enterpriseinfluxdata0.2.12 of 2See more

influxdb-enterprise influxdata 0.2.1

2 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
library/influxdb:1.12.3-meta8812029260b5
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
library/influxdb:1.12.3-datab0f9fc41ed79
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

5,736
guardrails-usvcinfracloud-chartsVerified publisher1.0.11 of 1See more

guardrails-usvc infracloud-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
opea/guardrails-tgi:latestf68bec6a1271
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,069
erigoninfradao0.0.51 of 2See more

erigon infradao 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
testinprod/op-erigon:latest0a125bd77a2d
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2

Open the chart page →

2,784
innago-vault-k8s-role-operatorinnagoVerified publisher2.0.51 of 1See more

innago-vault-k8s-role-operator innago 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
ghcr.io/innago-property-management/innago-vault-k8s-role-operator:2.0.0ed1c3fd04057
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,053
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

10,542
jenainseefrlab3.1.01 of 1See more

jena inseefrlab 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
stain/jena-fuseki:latestb1d0c96f19ad
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

1,262
label-studioinseefrlab2.3.11 of 3See more

label-studio inseefrlab 2.3.1

1 of the 3 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
heartexlabs/label-studio:latestaa461572e8f9
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

3,157
gmaintelVerified publisher0.1.01 of 1See more

gma intel 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

7,697
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
openssl@1.1.1f-1ubuntu2.15
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

18,137
map5gintelVerified publisher1.0.01 of 1See more

map5g intel 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

7,697
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-28389.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization-streaming:3.01a89327e499b
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

11,123

Container images carrying it

2,569 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
hazelcast/hazelcast:5.5.05dd5d31c7a06
openssl@3.3.1-r3
3.3.7-r0
2
helmforge/kubectl:1.35.3c3f97e954c47
openssl@3.5.5-r0
3.5.6-r0
2
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
openssl@3.0.9-1
3.0.19-1~deb12u2
2
hookiesolutions/webhookie:latest0629694246ba
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3
2
ilum/marquez:0.54.06e1d709d41f8
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
2
ilum/ui:6.7.3998937726679
openssl@3.5.5-r0
3.5.6-r0
2
interlayhq/interbtc:latesta66d0e35e70f
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3
2
interlayhq/interbtc-clients:vault-masterc3e311de67da
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3
2
istio/examples-bookinfo-reviews-v1:1.15.040e8aba77c1b
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm15
2
istio/examples-bookinfo-reviews-v1:1.14.0ee156b8aefd6
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm15
2
istio/examples-bookinfo-reviews-v2:1.15.0e86d247b7ac2
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm15
2
istio/examples-bookinfo-reviews-v2:1.14.0eab80bcd2132
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm15
2
istio/examples-bookinfo-reviews-v3:1.14.01e37fca43550
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm15
2
istio/examples-bookinfo-reviews-v3:1.15.0e454cab754cf
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm15
2
istio/kubectl:1.5.10dbb7726d1bf0
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm8
2
istio/proxyv2:1.18.0757d28c24100
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.23
2
istio/proxyv2:1.10.3a78b7a165744
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
2
jenkins/jenkins:2.541.3-jdk21c4098086090c
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2
2
jlesage/jdownloader-2:v26.03.13d6cb102bd9b
openssl@3.3.6-r0
3.3.7-r0
2
kiwigrid/k8s-sidecar:1.30.98c06e1ba643a
openssl@3.5.1-r0
3.5.6-r0
2
kurento/kurento-media-server:latest03c0d34d0828
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
2
langgenius/dify-sandbox:0.2.009b7e8705673
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
2
library/cassandra:3.11.65aa8400b4b3b
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm8
2
library/cassandra:4.1.37cbcec0086ac
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.23
2
library/elasticsearch:7.17.35e6ac15bf6a5
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
2
library/elasticsearch:8.19.1289729a95066a
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
2
library/mariadb:10.8.30abf60f81588
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23
2
library/mariadb:10.10334b315c10e5
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.23
2
library/mariadb:12.0.2:12.0-noble607835cd628b
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
2
library/mariadb:10.692e50059ea0a
openssl@3.0.2-0ubuntu1.26
no fix listed
2
library/mariadb:11.3.2e101f9db3191
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23
2
library/mongo:7.0-jammy:7-jammy406a4fdca9fc
openssl@3.0.2-0ubuntu1.26
no fix listed
2
library/mongo:5.041108d183e97
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3
2
library/mongo:4.2.358b25d51baa1
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8
2
library/mongo:7b096b4cb9269
openssl@3.0.2-0ubuntu1.29
no fix listed
2
library/mongo:7.0b6421fd6d1c5
openssl@3.0.2-0ubuntu1.26
no fix listed
2
library/nginx:1.27.098f8ec75657d
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
2
library/nginx:1.29.49dd288848f44
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
2
library/phpmyadmin:5.2.16e75aa8f767c
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
2
library/postgres:16.109f23e02d766
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
2
library/postgres:18.11090bc3a8ccf
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
2
library/postgres:16.24aea012537ed
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
2
library/postgres:18.06f3e42ad37de
openssl@3.5.1-1+deb13u1
3.5.5-1~deb13u2
2
library/postgres:16.4e62fbf9d3e2b
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
2
library/postgres:13-alpinefb9065b6e3e2
openssl@3.5.4-r0
3.5.6-r0
2
library/python:3.7eedf63967cdb
openssl@3.0.9-1
3.0.19-1~deb12u2
2
library/rabbitmq:3.13.6-management-alpine611107e29cce
openssl@3.3.1-r3
3.3.7-r0
2
library/rabbitmq:4.1.0-management935b3f84c1e4
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.