StackRadar

CVE-2026-28390

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,515
of 17,790 indexed, latest versions
Container images
2,895
deployed by those charts
Fix available
4 of 5
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,515 of 17,790 indexed charts deploy, on 2,895 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.2g-1ubuntu4.5, 1.0.2g-1ubuntu4.6, 1.0.2g-1ubuntu4.8, 1.0.2g-1ubuntu4.9+94 more1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23+4 more1,663
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0902
opensslrpm1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1, 1:1.1.1c-15.el8, 1:1.1.1c-19.el8_2+31 more1:1.1.1k-17.el8_6, 1:1.1.1k-17.el8_10, 1:3.5.5-3.el9_8, 3.3.5-5330
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm415
OSV records
ALPINE-CVE-2026-28390CGA-8g7f-wxpv-r4x7DEBIAN-CVE-2026-28390RHSA-2026:22312RHSA-2026:38503RLSA-2026:22312RLSA-2026:38503UBUNTU-CVE-2026-28390AZL-82070ECHO-9d88-691e-4e0f
Also known as
CGA-9w5g-cc3c-h84f, CGA-c8f9-m6q4-pf8c, CGA-r9mm-rw3c-wqh3, RHSA-2026:38804, RHSA-2026:38805, RHSA-2026:43513, USN-8155-1, USN-8155-2

Charts affected

2,515 by stars
ChartLatestAffected imagesRadar Score
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

11,582
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

4,063
wmbusmetersandrenarchyVerified publisher1.2.01 of 1See more

wmbusmeters andrenarchy 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
wmbusmeters/wmbusmeters:release-1.18.0d82715d9ae22
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

516
games-on-whalesangelnu2.0.04 of 7See more

games-on-whales angelnu 2.0.0

4 of the 7 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

42,325
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

5,591
ddosifyanteonVerified publisher1.7.52 of 13See more

ddosify anteon 1.7.5

2 of the 13 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

25,816
antigenic-docuseal-helm-chartantigenic-docuseal-helm-chartVerified publisher0.2.01 of 1See more

antigenic-docuseal-helm-chart antigenic-docuseal-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
docuseal/docuseal:2.4.17493fd7f6728
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

2,766
antigenic-stalwart-helm-chartantigenic-stalwart-helm-chartVerified publisher1.0.51 of 2See more

antigenic-stalwart-helm-chart antigenic-stalwart-helm-chart 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.15.5dcf575db2d53
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

1,454
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

2,461
apipingapiping1.5.01 of 1See more

apiping apiping 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
udhos/apiping:1.5.041ab9bae6f3b
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,139
apishiftapishiftVerified publisher0.3.01 of 4See more

apishift apishift 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8

Open the chart page →

2,961
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

6,256
d.vazquezm.2021_helmapphelmVerified publisher1.0.01 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

19,788
app-mobilityappmo0.1.02 of 5See more

app-mobility appmo 0.1.0

2 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-17.el8_6
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

12,541
acerproxyappscodeVerified publisher2026.9.111 of 1See more

acerproxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/acerproxy:v0.2.021de3771fdd5
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,323
aceshifterappscodeVerified publisher2026.9.111 of 1See more

aceshifter appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/aceshifter:v0.0.3e5f5c254a55a
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,038
capi-ops-managerappscodeVerified publisher2024.8.141 of 2See more

capi-ops-manager appscode 2024.8.14

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/capi-ops-manager:v0.0.57465f35b684c
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

3,430
cert-manager-csi-driver-cacertsappscodeVerified publisher2026.1.151 of 3See more

cert-manager-csi-driver-cacerts appscode 2026.1.15

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/csi-driver-cacerts:v0.5.0b6bf1888f9d5
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2

Open the chart page →

3,461
cert-manager-webhook-aceappscodeVerified publisher2026.9.111 of 1See more

cert-manager-webhook-ace appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/cert-manager-webhook-ace:v0.0.2dc6b5fdcec06
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,316
cluster-auth-agentappscodeVerified publisher2026.2.161 of 1See more

cluster-auth-agent appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/cluster-auth:v0.5.1fba6fb872281
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

985
cluster-auth-managerappscodeVerified publisher2026.2.161 of 1See more

cluster-auth-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/cluster-auth:v0.5.1fba6fb872281
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

985
cluster-manager-hubappscodeVerified publisher2026.2.161 of 1See more

cluster-manager-hub appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/registration-operator:v1.2.00cbced8e6240
openssl@1:3.5.1-7.el9_7
1:3.5.5-3.el9_8

Open the chart page →

1,063
deploy-uiappscodeVerified publisher2026.9.111 of 1See more

deploy-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/deploy-ui:0.3.6f3e07eff3997
openssl@3.3.2-r1
3.3.7-r0

Open the chart page →

721
docker-machine-operatorappscodeVerified publisher2024.7.91 of 1See more

docker-machine-operator appscode 2024.7.9

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/docker-machine-operator:v0.0.481f6007abb4e
openssl@3.3.1-r1
3.3.7-r0

Open the chart page →

2,227
falco-ui-serverappscodeVerified publisher2026.1.151 of 2See more

falco-ui-server appscode 2026.1.15

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/falco-ui-server:v0.0.66ec488d89b56
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

2,887
fluxcd-managerappscodeVerified publisher2026.2.161 of 1See more

fluxcd-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/fluxcd-addon:v0.0.103475404bef5c
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,101
gateway-converterappscodeVerified publisher2024.8.301 of 1See more

gateway-converter appscode 2024.8.30

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/gateway-converter:v0.0.1b92123805584
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

1,275
gcp-credential-managerappscodeVerified publisher2026.3.111 of 1See more

gcp-credential-manager appscode 2026.3.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/gcp-credential-manager:v0.1.0b58345fe8209
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,067
gh-ci-webhookappscodeVerified publisher2026.9.111 of 1See more

gh-ci-webhook appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/gh-ci-webhook:v0.0.2036ce246d884e
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,248
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.23

Open the chart page →

4,005
inbox-server-distributedappscodeVerified publisher2025.12.253 of 4See more

inbox-server-distributed appscode 2025.12.25

3 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.23
library/rabbitmq:3.12.1-managementf020c06da226
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.23
ghcr.io/appscode/inbox-server:latest536358d7b17e
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.23

Open the chart page →

15,718
inbox-uiappscodeVerified publisher2026.9.111 of 1See more

inbox-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-ui:0.0.5ae3b0e29daaa
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

840
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.23
library/rabbitmq:3.12.1-managementf020c06da226
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.23
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23

Open the chart page →

17,122
kubedb-oneappscodeVerified publisher2023.12.281 of 10See more

kubedb-one appscode 2023.12.28

1 of the 10 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-autoscaler:v0.25.0df6b11907d33
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

15,265
license-proxyserverappscodeVerified publisher2026.2.161 of 1See more

license-proxyserver appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/license-proxyserver:v0.1.1e192ad567e0b
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,113
license-proxyserver-managerappscodeVerified publisher2026.2.161 of 1See more

license-proxyserver-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/license-proxyserver:v0.1.1e192ad567e0b
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,113
managed-serviceaccountappscodeVerified publisher2024.2.251 of 1See more

managed-serviceaccount appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-17.el8_6

Open the chart page →

2,404
managed-serviceaccount-managerappscodeVerified publisher2026.2.161 of 1See more

managed-serviceaccount-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:v0.10.0fc256885915b
openssl@1:3.5.1-7.el9_7
1:3.5.5-3.el9_8

Open the chart page →

912
marketplace-uiappscodeVerified publisher2026.9.111 of 1See more

marketplace-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/marketplace-ui:0.3.1d52177072013
openssl@3.3.2-r1
3.3.7-r0

Open the chart page →

721
minioappscodeVerified publisher2026.9.111 of 1See more

minio appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

4,050
multicluster-controlplaneappscodeVerified publisher2025.4.301 of 1See more

multicluster-controlplane appscode 2025.4.30

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-17.el8_6

Open the chart page →

2,575
offline-license-serverappscodeVerified publisher2026.9.111 of 2See more

offline-license-server appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/offline-license-server:v0.0.76e4b66308d8f6
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,690
pgadminappscodeVerified publisher2026.3.301 of 1See more

pgadmin appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
dpage/pgadmin4:9.11.050700ac17936
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,566
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

37,629
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23

Open the chart page →

3,313
service-backendappscodeVerified publisher2026.9.111 of 1See more

service-backend appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,337
service-providerappscodeVerified publisher2026.9.111 of 2See more

service-provider appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

2,238
taskqueueappscodeVerified publisher2026.2.161 of 1See more

taskqueue appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/taskqueue:v0.0.36877c958a3c6
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,083
tricksterappscodeVerified publisher2026.1.151 of 1See more

trickster appscode 2026.1.15

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/appscode/trickster:v2.0.0cdbbed831f28
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,221
voyagerappscodeVerified publisher2026.3.231 of 1See more

voyager appscode 2026.3.23

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/voyager:v17.5.04964ceaf9d35
openssl@3.3.6-r0
3.3.7-r0

Open the chart page →

720

Container images carrying it

2,895 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
opea/docsum:1.03eaa91849512
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
opea/docsum-ui:1.07f854e9bffaf
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
opea/guardrails-tgi:1.0262c6048aab8
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
opea/guardrails-tgi:latestf68bec6a1271
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
opea/llm-docsum-tgi:1.002f9e8fa5d71
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
opea/speecht5:1.0249afad3d268
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
opea/tts:1.0257ae94709e9
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
opea/web-retriever-chroma:1.0fe08165d7770
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
openbas/caldera-server:5.1.0a277796d9724
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
openbas/platform:2.0.5d986d80b0a75
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
1
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
openssl@3.0.18-1~deb12u1
3.0.19-1~deb12u2
1
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
openssl@3.0.18-1~deb12u1
3.0.19-1~deb12u2
1
opencsghq/csgship-portal:v1.2.1865814dc87a1
openssl@3.3.3-r0
3.3.7-r0
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
opencsghq/kubectl:latestb6d87e1048c2
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2
1
opendatacube/explorer:latest120457ffcd69
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
opendatacube/pipelines:wofs-1.225d810e8504b8
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm8
1
opendatacube/restcube:latest91870111837c
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm8
1
opendatacube/wms:latest1b90cdf68831
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm8
1
opendatacube/wps:latest80df355a660b
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
1
openebs/lvm-driver:1.10.141f73aba7f31
openssl@3.5.1-r0
3.5.6-r0
1
openelevation/open-elevation:latest82fb21612e86
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm3
1
openkm/openkm-ce:6.3.113bc465a7461b
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3
1
openkruise/kruise-game-manager:v1.1.0d3c6d69d2c39
openssl@3.3.3-r0
3.3.7-r0
1
openkruise/kruise-manager:v1.8.30482722b4e56
openssl@3.3.6-r0
3.3.7-r0
1
openmined/syft-backend:0.9.5b72f74a68b32
openssl@3.4.1-r0
3.6.2-r0
1
openmined/syft-frontend:0.9.5d11524a3854a
openssl@3.4.1-r0
3.6.2-r0
1
opennode/waldur-site-agent:1.0.76d2e3b97c8d2
openssl@3.3.2-r1
3.3.7-r0
1
openproject/hocuspocus:release-338001b288dc1359dfb5
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm3
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3
1
openthread/otbr:latestf307f59f6432
nodejs@8.10.0~dfsg-2ubuntu0.4
openssl@1.1.1-1ubuntu2.1~18.04.23
openssl1.0@1.0.2n-1ubuntu5.13
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm8
1.0.2n-1ubuntu5.13+esm4
1
openvino/model_server:2025.2.11e7cd1d70cc1
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
nodejs@8.10.0~dfsg-2ubuntu0.4
openssl@1.1.1-1ubuntu2.1~18.04.6
openssl1.0@1.0.2n-1ubuntu5.4
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm8
1.0.2n-1ubuntu5.13+esm4
1
openzipkin/zipkin-slim:3.6.0a69e1057df36
openssl@3.5.5-r0
3.5.6-r0
1
operaton/operaton:1.0.0-beta-4b35867ffe4d8
openssl@3.3.3-r0
3.3.7-r0
1
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
openssl@3.3.3-r0
3.3.7-r0
1
oryd/hydra:v2.3.0b94007e19a1f
openssl@3.3.2-r1
3.3.7-r0
1
oryd/hydra:v26.2.0ff67c7fb5f95
openssl@3.3.6-r0
3.3.7-r0
1
oryd/hydra-login-consent-node:v26.2.06465e95993b5
openssl@3.3.3-r0
3.3.7-r0
1
oryd/keto:v26.2.0bfdb8b9e283a
openssl@3.3.6-r0
3.3.7-r0
1
oryd/kratos:v26.2.02a13bb8d362c
openssl@3.3.6-r0
3.3.7-r0
1
oryd/oathkeeper:v26.2.0467329abde34
openssl@3.3.6-r0
3.3.7-r0
1
outlinewiki/outline:0.82.0494dfb9249a6
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
owncloud/ocis:7.1.388e7c854517d
openssl@3.3.3-r0
3.3.7-r0
1
owncloud/ocis:8.0.1b38fd8fdd58f
openssl@3.5.5-r0
3.5.6-r0
1
owncloud/server:10.15.051d9b74fc2a8
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.