StackRadar

CVE-2026-28390

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,507
of 17,792 indexed, latest versions
Container images
2,876
deployed by those charts
Fix available
4 of 5
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,507 of 17,792 indexed charts deploy, on 2,876 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.2g-1ubuntu4.5, 1.0.2g-1ubuntu4.6, 1.0.2g-1ubuntu4.8, 1.0.2g-1ubuntu4.9+94 more1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23+4 more1,650
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0897
opensslrpm1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1, 1:1.1.1c-15.el8, 1:1.1.1c-19.el8_2+31 more1:1.1.1k-17.el8_6, 1:1.1.1k-17.el8_10, 1:3.5.5-3.el9_8, 3.3.5-5329
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm415
OSV records
ALPINE-CVE-2026-28390CGA-8g7f-wxpv-r4x7DEBIAN-CVE-2026-28390RHSA-2026:22312RHSA-2026:38503RLSA-2026:22312RLSA-2026:38503UBUNTU-CVE-2026-28390AZL-82070ECHO-9d88-691e-4e0f
Also known as
CGA-9w5g-cc3c-h84f, CGA-c8f9-m6q4-pf8c, CGA-r9mm-rw3c-wqh3, RHSA-2026:38804, RHSA-2026:38805, RHSA-2026:43513, USN-8155-1, USN-8155-2

Charts affected

2,507 by stars
ChartLatestAffected imagesRadar Score
redisinsight-secureredisinsight-secureVerified publisher1.0.21 of 1See more

redisinsight-secure redisinsight-secure 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
redis/redisinsight:2.68019fcf774631
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,721
rekorsigstoreVerified publisher1.8.62 of 9See more

rekor sigstore 1.8.6

2 of the 9 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
curlimages/curldigest-pinned935d9100e9ba
openssl@3.5.4-r0
3.5.6-r0
library/redisdigest-pinned148bb5411c18
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

5,373
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
openssl@3.0.2-0ubuntu1.25
no fix listed

Open the chart page →

2,955
thehivestrangebee-helmOfficialVerified publisher1.0.74 of 7See more

thehive strangebee-helm 1.0.7

4 of the 7 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
curlimages/curl:8.17.0935d9100e9ba
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

16,220
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

14,327
zigbee2mqttzigbee2mqtt2.14.11 of 2See more

zigbee2mqtt zigbee2mqtt 2.14.1

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
mikefarah/yq:4.45.12c100efaca06
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

1,032
cloudflaredartur9010Verified publisher1.0.92 of 3See more

cloudflared artur9010 1.0.9

2 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

3,008
baserowbaserow-chartVerified publisher1.0.563 of 6See more

baserow baserow-chart 1.0.56

3 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

17,413
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
openssl@1.1.1f-1ubuntu2
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

53,052
headwind-mdmchristianhuthVerified publisher5.10.22 of 2See more

headwind-mdm christianhuth 5.10.2

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
headwindmdm/hmdm:0.1.93550b4840840
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

5,929
routercosmo-routerOfficialVerified publisher0.18.01 of 1See more

router cosmo-router 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

1,686
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
wait4x/wait4x:3.3.14dcd86307de1
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

9,208
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

14,151
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
datamate/seafile-professional:11.0.202dd66b722464
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23

Open the chart page →

27,426
dialdialOfficialVerified publisher7.2.01 of 4See more

dial dial 7.2.0

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2

Open the chart page →

2,186
homerdjjudas21Verified publisher8.2.41 of 1See more

homer djjudas21 8.2.4

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
b4bz/homer:v24.12.14b44a4a9e329
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

399
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

2,583
geonode-k8sgeonode-k8sVerified publisher2.0.04 of 10See more

geonode-k8s geonode-k8s 2.0.0

4 of the 10 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
openssl@3.0.2-0ubuntu1.23
no fix listed
geopython/pycsw:3.0.0-beta284662ea6b78b
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2
library/memcached:1.6.40cc523a19da58
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
library/redis:8.4.03906b477e4b6
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2

Open the chart page →

14,112
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

12,359
openctihelm-openctiVerified publisher3.0.101See more

opencti helm-opencti 3.0.10

1 container image this version deploys carries CVE-2026-28390.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

hertzbeathertzbeatOfficialVerified publisher1.8.12 of 4See more

hertzbeat hertzbeat 1.8.1

2 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
apache/hertzbeat-collector:1.8.0a2bab1be574c
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9

Open the chart page →

14,181
infrahubinfrahubVerified publisher4.33.23 of 5See more

infrahub infrahub 4.33.2

3 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
3.0.19-1~deb12u2
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

10,522
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

6,350
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

4,663
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6

Open the chart page →

4,956
kubeflowkubeflow1.6.24 of 45See more

kubeflow kubeflow 1.6.2

4 of the 45 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8
istio/proxyv2:1.14.1df69c1a7af7c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm3
library/python:3.7eedf63967cdb
openssl@3.0.9-1
3.0.19-1~deb12u2
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

97,217
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

10,573
sbomscannerkubewardenVerified publisher0.12.11 of 5See more

sbomscanner kubewarden 0.12.1

1 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
natsio/nats-server-config-reloader:0.23.064cb6c858e79
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,012
venti-stackkuossOfficialVerified publisher0.5.02 of 9See more

venti-stack kuoss 0.5.0

2 of the 9 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/kuoss/lethe:v0.3.3ebdf55fd5705
openssl@3.5.4-r0
3.5.6-r0
ghcr.io/kuoss/venti:v0.3.38ee3e70d77f1
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

3,830
librechatlibrechat1.8.101 of 3See more

librechat librechat 1.8.10

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

2,654
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,849
radarrloeken-at-homeVerified publisher5.27.0-nightly1 of 1See more

radarr loeken-at-home 5.27.0-nightly

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
loeken/radarr:5.27.0-nightlya24409d3846d
openssl@3.3.4-r0
3.3.7-r0

Open the chart page →

586
headplanenbcloudVerified publisher0.1.23 of 4See more

headplane nbcloud 0.1.2

3 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2
headscale/headscale:0.25.1a7a8ae9616bb
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
ghcr.io/tale/headplane:0.5.50dbc52cffc19
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

7,997
node-local-dnsnode-local-dns2.4.01 of 1See more

node-local-dns node-local-dns 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

2,619
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

9,305
ubuntuopen-charts1.2.11 of 1See more

ubuntu open-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/ubuntu:22.042edbbc5dc405
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

1,579
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

8,777
prometheus-smartctl-exporterprometheus-communityVerified publisher0.17.11 of 1See more

prometheus-smartctl-exporter prometheus-community 0.17.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,064
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

10,563
popeyeself-hosters-by-nightVerified publisher0.6.11 of 1See more

popeye self-hosters-by-night 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

1,196
fulciosigstoreVerified publisher2.11.11 of 6See more

fulcio sigstore 2.11.1

1 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
curlimages/curl:8.17.0935d9100e9ba
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

3,516
topolvmtopolvmVerified publisher17.2.01 of 1See more

topolvm topolvm 17.2.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,374
uffizzi-appuffizzi-app1.3.01 of 14See more

uffizzi-app uffizzi-app 1.3.0

1 of the 14 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

19,434
unboundunbound-helmchartVerified publisher0.2.21 of 1See more

unbound unbound-helmchart 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/pixelfederation/unbound:1.24.2_0fce820a03964
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,495
reposilitevolker-raschekVerified publisher1.0.01 of 1See more

reposilite volker-raschek 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.5.264128c2d7a6ba
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

3,002
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

13,578
grafana-pdf-exporterwiremindVerified publisher2.1.11 of 1See more

grafana-pdf-exporter wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

9,775
matrixzekker6Verified publisher3.30.01 of 4See more

matrix zekker6 3.30.0

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
devture/exim-relay:4.98-r0-47ba30080c7a6
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

5,579
eshoponabpabp-charts1.0.01 of 15See more

eshoponabp abp-charts 1.0.0

1 of the 15 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/mongo:4.2699d652ed674
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

19,812
code-serveralekcVerified publisher0.1.11 of 1See more

code-server alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
linuxserver/code-server:4.10.1a5e43a05ae79
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.23

Open the chart page →

8,254

Container images carrying it

2,876 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
openssl@3.5.5-r0
3.5.6-r0
1
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
openssl@3.5.5-r0
3.5.6-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
openssl@3.5.4-r0
3.5.6-r0
1
ghcr.io/home-operations/prowlarr:2.3.01a8a4b11972b
openssl@3.5.4-r0
3.5.6-r0
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
openssl@3.5.5-r0
3.5.6-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
openssl@3.0.18-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
openssl@3.3.3-r0
3.3.7-r0
1
ghcr.io/huseyinbabal/kubetag:lateste161eddc59a0
openssl@3.5.4-r0
3.5.6-r0
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/iisas/domino-rest:latest3009350bfc11
openssl@3.5.4-1~deb13u2
3.5.5-1~deb13u2
1
ghcr.io/imcitius/checker-edge:1.1.1174426c1fe00f
openssl@3.3.6-r0
3.3.7-r0
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
openssl@3.5.1-1+deb13u1
3.5.5-1~deb13u2
1
ghcr.io/imunhatep/kube-node-ready:0.5.07439f6f9f85c
openssl@3.3.6-r0
3.3.7-r0
1
ghcr.io/innago-property-management/innago-vault-k8s-role-operator:2.0.0ed1c3fd04057
openssl@3.5.4-r0
3.5.6-r0
1
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/interplex-ai/interplex:v1.1.041b0dd0d55b2
openssl@3.5.0-r0
3.5.6-r0
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
1
ghcr.io/it-at-m/dave-document-storage/dave-document-storage:10.0.09c7fc07330c9
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
1
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8
1
ghcr.io/it-at-m/wjh-rechner:1.0.0bc70cdb5a01a
openssl@1:3.0.7-25.el9_3
1:3.5.5-3.el9_8
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/jaydee94/kubeseal-webgui/ui:4.5.34447636e8102
openssl@3.3.3-r0
3.3.7-r0
1
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
openssl@3.5.1-r0
3.5.6-r0
1
ghcr.io/jeffvli/feishin:1.11.01eed97d6272d
openssl@3.5.5-r0
3.5.6-r0
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
openssl@1:1.1.1c-15.el8
1:1.1.1k-17.el8_6
1
ghcr.io/jeremylong/open-vulnerability-data-mirror:v9.0.49a69aa14dc3e
openssl@3.5.5-r0
3.5.6-r0
1
ghcr.io/jeremylvln/shulker-operator:0.13.027c55706c126
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm8
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9
1
ghcr.io/jlclx/runtimeclass-controller:latestb3a87f92a963
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/jossware/node-provider-labeler:v0.8.0f80e85291439
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3
1
ghcr.io/juanfont/headscale:v0.25.097febecbe6cb
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
ghcr.io/justwatchcom/sql_exporter:v0.8c4b1d3d0f052
openssl@3.3.3-r0
3.3.7-r0
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.24+esm3
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm3
1
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm3
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
openssl@1.1.1f-1ubuntu2.5
1.1.1f-1ubuntu2.24+esm3
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.