StackRadar

CVE-2026-28390

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,515
of 17,790 indexed, latest versions
Container images
2,895
deployed by those charts
Fix available
4 of 5
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,515 of 17,790 indexed charts deploy, on 2,895 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.2g-1ubuntu4.5, 1.0.2g-1ubuntu4.6, 1.0.2g-1ubuntu4.8, 1.0.2g-1ubuntu4.9+94 more1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23+4 more1,663
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0902
opensslrpm1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1, 1:1.1.1c-15.el8, 1:1.1.1c-19.el8_2+31 more1:1.1.1k-17.el8_6, 1:1.1.1k-17.el8_10, 1:3.5.5-3.el9_8, 3.3.5-5330
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm415
OSV records
ALPINE-CVE-2026-28390CGA-8g7f-wxpv-r4x7DEBIAN-CVE-2026-28390RHSA-2026:22312RHSA-2026:38503RLSA-2026:22312RLSA-2026:38503UBUNTU-CVE-2026-28390AZL-82070ECHO-9d88-691e-4e0f
Also known as
CGA-9w5g-cc3c-h84f, CGA-c8f9-m6q4-pf8c, CGA-r9mm-rw3c-wqh3, RHSA-2026:38804, RHSA-2026:38805, RHSA-2026:43513, USN-8155-1, USN-8155-2

Charts affected

2,515 by stars
ChartLatestAffected imagesRadar Score
express-ts-app-helm-chartsexpress-ts-app-helm-chartsVerified publisher1.0.01 of 4See more

express-ts-app-helm-charts express-ts-app-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
grafana/promtail:3.5.165bfae480b57
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

5,813
extended-ceph-exporterextended-ceph-exporterVerified publisher1.10.01 of 2See more

extended-ceph-exporter extended-ceph-exporter 1.10.0

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
galexrt/extended-ceph-exporter:v1.8.05373078a3a08
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

2,926
external-secrets-reloaderexternal-secrets-reloader0.1.01 of 1See more

external-secrets-reloader external-secrets-reloader 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/bensoer/external-secrets-reloader:v0.1.38e31b5a81853
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,032
perliteextrim-helm-chartsVerified publisher0.1.01 of 1See more

perlite extrim-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
extrim/perlite:1.5.99cb7eb5598b6
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,439
siyuanextrim-helm-chartsVerified publisher0.1.11 of 2See more

siyuan extrim-helm-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
b3log/siyuan:v3.1.2595c0d129bc19
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,247
datadog-apmfairwinds-incubator2.0.01 of 1See more

datadog-apm fairwinds-incubator 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9

Open the chart page →

2,838
kubebenchfairwinds-incubator1.0.51 of 2See more

kubebench fairwinds-incubator 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.15.07a8fa32dce21
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,188
farm-observabilityfarm-observabilityOfficialVerified publisher0.27.24 of 18See more

farm-observability farm-observability 0.27.2

4 of the 18 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
grafana/grafana:13.0.1-security-012d1f9ae67c17
openssl@3.5.5-r0
3.5.6-r0
library/memcached:1.6.39-alpinec8503d4491ed
openssl@3.5.4-r0
3.5.6-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

13,409
quickstartfeatureformVerified publisher0.1.11 of 3See more

quickstart featureform 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
featureformcom/quickstart-loader:latest82396f8fb5e8
openssl@3.3.0-r2
3.3.7-r0

Open the chart page →

3,575
activityrelayfedihost0.1.41 of 2See more

activityrelay fedihost 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

13,502
rospoferama0.4.31 of 1See more

rospo ferama 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

6,049
vipienferama0.2.81 of 1See more

vipien ferama 0.2.8

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

7,523
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

14,692
ferriscompanyferriscompany0.1.01 of 1See more

ferriscompany ferriscompany 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

10,814
data-diode-connector-egressffutopVerified publisher1.0.03 of 3See more

data-diode-connector-egress ffutop 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ffutop/ddc-ph-kafka-egress:latest319d94c8481a
openssl@3.5.4-r0
3.5.6-r0
ffutop/ddc-transport-udp-receive:latest651ca530d787
openssl@3.5.4-r0
3.5.6-r0
timberio/vector:0.51.1-alpine2d16ae87ec39
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

2,035
data-diode-connector-ingressffutopVerified publisher1.0.03 of 3See more

data-diode-connector-ingress ffutop 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ffutop/ddc-ph-kafka-ingress:latest15832d4f19be
openssl@3.5.4-r0
3.5.6-r0
ffutop/ddc-transport-udp-send:latest4222eb5ee847
openssl@3.5.4-r0
3.5.6-r0
timberio/vector:0.51.1-alpine2d16ae87ec39
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

2,035
fibfibonacci-cluster-appsVerified publisher1.0.03 of 5See more

fib fibonacci-cluster-apps 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
golenski/fibonacci-msg-relay:1.0.0c863dcb0c513
openssl@3.0.9-1
3.0.19-1~deb12u2
golenski/fibonacci-task-manager:2.0.03a2b36df247b
openssl@3.0.9-1
3.0.19-1~deb12u2
golenski/fibonacci-worker:2.0.0954caf4aaf6a
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

17,003
infrafibonacci-cluster-infraVerified publisher1.0.03 of 4See more

infra fibonacci-cluster-infra 1.0.0

3 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.37.0bae523439ee3
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.9
library/postgres:16.4e62fbf9d3e2b
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
library/redis:7.4.1bb142a9c18ac
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

12,538
findery-marketfindery-market0.1.01 of 7See more

findery-market findery-market 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
chandanteekinavar/findery-market-frontend:1.06de5bd44a325
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

7,696
fineractfineract-openshift0.1.11 of 4See more

fineract fineract-openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
openssl@3.3.4-r0
3.3.7-r0

Open the chart page →

7,866
firefly-iiifirefly-iii1.10.11 of 1See more

firefly-iii firefly-iii 1.10.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

5,107
firefly-iii-stackfirefly-iii0.10.22 of 4See more

firefly-iii-stack firefly-iii 0.10.2

2 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2
fireflyiii/data-importer:version-2.2.3ab52bf932546
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

10,396
importerfirefly-iii1.6.01 of 1See more

importer firefly-iii 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fireflyiii/data-importer:version-2.2.3ab52bf932546
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

4,897
firefox-browserfirefox-browserVerified publisher1.1.01 of 1See more

firefox-browser firefox-browser 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jlesage/firefox:v25.03.1055c28defe31
openssl@3.3.2-r5
3.3.7-r0

Open the chart page →

1,395
flask-contactsfirst-idror-chart1.0.11 of 3See more

flask-contacts first-idror-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,789
apollofiware0.1.41 of 1See more

apollo fiware 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/apollo:0.0.1055330b1b60c1
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

6,936
business-api-ecosystemfiware1.1.02 of 4See more

business-api-ecosystem fiware 1.1.0

2 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

64,668
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
openssl@1:1.1.1k-4.el8
1:1.1.1k-17.el8_6

Open the chart page →

8,528
consent-facadefiware0.1.11 of 1See more

consent-facade fiware 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/seamware/consent-facade:0.0.14be844c750c7e
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

2,474
contract-managementfiware3.5.361 of 1See more

contract-management fiware 3.5.36

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/contract-management:3.3.122bcfcf874451
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

2,411
credentials-config-servicefiware2.6.41 of 1See more

credentials-config-service fiware 2.6.4

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

2,293
dss-validation-servicefiware0.0.191 of 1See more

dss-validation-service fiware 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6

Open the chart page →

4,536
endpoint-auth-servicefiware0.1.41 of 4See more

endpoint-auth-service fiware 0.1.4

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

11,836
mintakafiware0.4.71 of 1See more

mintaka fiware 0.4.7

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fiware/mintaka:latestefc6793388cc
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

7,019
orionfiware1.6.112 of 2See more

orion fiware 1.6.11

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-17.el8_6

Open the chart page →

10,638
tm-forum-apifiware0.17.1519 of 19See more

tm-forum-api fiware 0.17.15

19 of the 19 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/tmforum-account:1.18.06b25aac03414
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

35,131
trusted-issuers-listfiware0.18.71 of 1See more

trusted-issuers-list fiware 0.18.7

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-list:0.9.13c886ce5c056
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8

Open the chart page →

1,727
trusted-issuers-registryfiware0.13.01 of 1See more

trusted-issuers-registry fiware 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

7,087
apm-hubflanksourceVerified publisher0.0.471 of 2See more

apm-hub flanksource 0.0.47

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
flanksource/apm-hub:v0.0.471dacc3195bf9
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

6,150
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

5,355
mission-controlflanksourceVerified publisher0.1.3362 of 8See more

mission-control flanksource 0.1.336

2 of the 8 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2
public.ecr.aws/k4y9r6y5/kratos:v25.4.0e8014c6c58b6
openssl@3.3.5-r0
3.3.7-r0

Open the chart page →

8,959
flask-contactsflask-contacts-generic1.0.11 of 3See more

flask-contacts flask-contacts-generic 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,789
flask-appflask-mysqlVerified publisher1.0.11 of 2See more

flask-app flask-mysql 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

4,089
flinkflink0.5.11 of 1See more

flink flink 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/flink:1.14.6-scala_2.122461f02672b3
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

5,693
floating-serverfloating-server1.6.31 of 2See more

floating-server floating-server 1.6.3

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
censedata/floating-server:v1.6.3ebfffb9dd4c0
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,452
floriapp-mongodbfloriapp1.0.01 of 1See more

floriapp-mongodb floriapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

8,049
dump1090fnzv0.2.81 of 1See more

dump1090 fnzv 0.2.8

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fnzv/dump1090:latestb3079b95c336
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

4,126
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

1,876
mod-authtokenfolio-org0.1.351 of 1See more

mod-authtoken folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-authtoken:latest995a25a33133
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,559
mod-coursesfolio-org0.1.341 of 1See more

mod-courses folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-courses:latest68ca414f5596
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,533

Container images carrying it

2,895 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
langgenius/dify-api:0.6.11fca918260dd6
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
1
langgenius/dify-web:1.16.187dd47e4e28f
openssl@3.5.5-r0
3.5.6-r0
1
langgenius/dify-web:1.10.1-fix.1c306ac577912
openssl@3.3.5-r0
3.3.7-r0
1
langgenius/dify-web:1.0.0d64914ff0d6d
openssl@3.3.3-r0
3.3.7-r0
1
layer5/meshery:stable-latest78a8be21bef3
openssl@3.3.3-r0
3.3.7-r0
1
leantime/leantime:3.3.3ad4bfb0699d3
openssl@3.3.2-r1
3.3.7-r0
1
leonardomulticloud/svc-vault-frontend:v1.0.0e42a341e0299
openssl@3.3.2-r1
3.3.7-r0
1
lib42/jackett:latesta55596cda383
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
library/alpine:3.23.325109184c71b
openssl@3.5.5-r0
3.5.6-r0
1
library/caddy:2.9-alpineb4e3952384eb
openssl@3.3.3-r0
3.3.7-r0
1
library/cassandra:3.11.10b095ff3248c6
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm3
1
library/couchdb:3.4.22817ad50b5c5
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
library/docker:28.5.2-dind2a232a42256f
openssl@3.5.4-r0
3.5.6-r0
1
library/docker:27-cli851f91d24121
openssl@3.3.3-r0
3.3.7-r0
1
library/docker:27-dindaa3df78ecf32
openssl@3.3.3-r0
3.3.7-r0
1
library/docker:26.1-dinddd43b430341a
openssl@3.3.1-r3
3.3.7-r0
1
library/eclipse-mosquitto:2.0.2021421af7b32b
openssl@3.3.3-r0
3.3.7-r0
1
library/elasticsearch:8.17.32cc40b15dff8
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3
1
library/elasticsearch:8.15.0310b9fc03b06
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm3
1
library/elasticsearch:7.17.0332c6d416808
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3
1
library/elasticsearch:7.17.1588c2ec10c7f2
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
1
library/elasticsearch:7.17.8fdc73b3249c1
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3
1
library/flink:1.14.6-scala_2.122461f02672b3
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23
1
library/ghost:6.22.0-alpine3.23ac533a6988ee
openssl@3.5.5-r0
3.5.6-r0
1
library/haproxy:3.1-bookworm49a0a0d6f0b8
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
1
library/haproxy:2.9.6fc5748ff7c72
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
library/httpd:2.4.631ae8051591a5
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2
1
library/influxdb:1.12.3-meta8812029260b5
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
1
library/influxdb:1.12.3-datab0f9fc41ed79
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
1
library/kibana:7.17.150172f1c538e7
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
1
library/kibana:8.18.004c0fc150f3a
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3
1
library/kibana:7.17.8c5781ba340ef
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3
1
library/kibana:7.17.3e2e2031c15be
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
1
library/kong:3.8.0712e407b20ea
openssl@3.0.2-0ubuntu1.26
no fix listed
1
library/logstash:7.17.817a4f64e9cf5
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3
1
library/logstash:9.1.233eae14f0867
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8
1
library/mariadb:10.7.307e06f2e7ae9
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
1
library/mariadb:10.11.21c33370a599c
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.23
1
library/mariadb:10.422edfe1c7834
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm3
1
library/mariadb:10.8.2-focal490f01279be1
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3
1
library/mariadb:12.0.25b6a1eac15b8
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
1
library/mariadb:10.6.218a16204dc96c
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3
1
library/mariadb:10.79a48ac9f196f
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm3
1
library/mariadb:12.2.2b1cb255a9939
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
1
library/mariadb:10.10.2bfc25a68e113
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.23
1
library/mariadb:10.6.15e22328f4d714
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm3
1
library/mariadb:10.9.4fbb8456ebdb1
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.23
1
library/mariadb:11.7.2fcc7fcd7114a
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
library/matomo:5.1.2-apache2415789e1602
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.