StackRadar

CVE-2026-28390

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,549
of 17,805 indexed, latest versions
Container images
2,914
deployed by those charts
Fix available
4 of 5
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,549 of 17,805 indexed charts deploy, on 2,914 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.2g-1ubuntu4.5, 1.0.2g-1ubuntu4.6, 1.0.2g-1ubuntu4.8, 1.0.2g-1ubuntu4.9+94 more1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23+4 more1,679
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0906
opensslrpm1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1, 1:1.1.1c-15.el8, 1:1.1.1c-19.el8_2+31 more1:1.1.1k-17.el8_6, 1:1.1.1k-17.el8_10, 1:3.5.5-3.el9_8, 3.3.5-5329
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+4 more1.0.2n-1ubuntu5.13+esm420
OSV records
ALPINE-CVE-2026-28390CGA-8g7f-wxpv-r4x7DEBIAN-CVE-2026-28390RHSA-2026:22312RHSA-2026:38503RLSA-2026:22312RLSA-2026:38503UBUNTU-CVE-2026-28390AZL-82070ECHO-9d88-691e-4e0f
Also known as
CGA-9w5g-cc3c-h84f, CGA-c8f9-m6q4-pf8c, CGA-r9mm-rw3c-wqh3, RHSA-2026:38804, RHSA-2026:38805, RHSA-2026:43513, USN-8155-1, USN-8155-2

Charts affected

2,549 by stars
ChartLatestAffected imagesRadar Score
extended-ceph-exporterextended-ceph-exporterVerified publisher1.10.01 of 2See more

extended-ceph-exporter extended-ceph-exporter 1.10.0

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
galexrt/extended-ceph-exporter:v1.8.05373078a3a08
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

3,018
external-secrets-reloaderexternal-secrets-reloader0.1.01 of 1See more

external-secrets-reloader external-secrets-reloader 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/bensoer/external-secrets-reloader:v0.1.38e31b5a81853
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,033
perliteextrim-helm-chartsVerified publisher0.1.01 of 1See more

perlite extrim-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
extrim/perlite:1.5.99cb7eb5598b6
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,588
siyuanextrim-helm-chartsVerified publisher0.1.11 of 2See more

siyuan extrim-helm-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
b3log/siyuan:v3.1.2595c0d129bc19
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,393
datadog-apmfairwinds-incubator2.0.11 of 1See more

datadog-apm fairwinds-incubator 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9

Open the chart page →

2,897
kubebenchfairwinds-incubator1.0.51 of 2See more

kubebench fairwinds-incubator 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.15.07a8fa32dce21
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,189
farm-observabilityfarm-observabilityOfficialVerified publisher0.27.24 of 18See more

farm-observability farm-observability 0.27.2

4 of the 18 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
grafana/grafana:13.0.1-security-012d1f9ae67c17
openssl@3.5.5-r0
3.5.6-r0
library/memcached:1.6.39-alpinec8503d4491ed
openssl@3.5.4-r0
3.5.6-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

13,608
quickstartfeatureformVerified publisher0.1.11 of 3See more

quickstart featureform 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
featureformcom/quickstart-loader:latest82396f8fb5e8
openssl@3.3.0-r2
3.3.7-r0

Open the chart page →

3,643
activityrelayfedihost0.1.41 of 2See more

activityrelay fedihost 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

13,540
rospoferama0.4.31 of 1See more

rospo ferama 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

6,234
vipienferama0.2.81 of 1See more

vipien ferama 0.2.8

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

7,544
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

14,728
ferriscompanyferriscompany0.1.01 of 1See more

ferriscompany ferriscompany 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

10,870
data-diode-connector-egressffutopVerified publisher1.0.03 of 3See more

data-diode-connector-egress ffutop 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ffutop/ddc-ph-kafka-egress:latest319d94c8481a
openssl@3.5.4-r0
3.5.6-r0
ffutop/ddc-transport-udp-receive:latest651ca530d787
openssl@3.5.4-r0
3.5.6-r0
timberio/vector:0.51.1-alpine2d16ae87ec39
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

2,038
data-diode-connector-ingressffutopVerified publisher1.0.03 of 3See more

data-diode-connector-ingress ffutop 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ffutop/ddc-ph-kafka-ingress:latest15832d4f19be
openssl@3.5.4-r0
3.5.6-r0
ffutop/ddc-transport-udp-send:latest4222eb5ee847
openssl@3.5.4-r0
3.5.6-r0
timberio/vector:0.51.1-alpine2d16ae87ec39
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

2,038
fibfibonacci-cluster-appsVerified publisher1.0.03 of 5See more

fib fibonacci-cluster-apps 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
golenski/fibonacci-msg-relay:1.0.0c863dcb0c513
openssl@3.0.9-1
3.0.19-1~deb12u2
golenski/fibonacci-task-manager:2.0.03a2b36df247b
openssl@3.0.9-1
3.0.19-1~deb12u2
golenski/fibonacci-worker:2.0.0954caf4aaf6a
openssl@3.0.9-1
3.0.19-1~deb12u2

Open the chart page →

17,132
infrafibonacci-cluster-infraVerified publisher1.0.03 of 4See more

infra fibonacci-cluster-infra 1.0.0

3 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.37.0bae523439ee3
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.9
library/postgres:16.4e62fbf9d3e2b
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
library/redis:7.4.1bb142a9c18ac
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

12,660
findery-marketfindery-market0.1.01 of 7See more

findery-market findery-market 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
chandanteekinavar/findery-market-frontend:1.06de5bd44a325
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

7,850
fineractfineract-openshift0.1.11 of 4See more

fineract fineract-openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
openssl@3.3.4-r0
3.3.7-r0

Open the chart page →

7,905
firefly-iiifirefly-iii1.10.11 of 1See more

firefly-iii firefly-iii 1.10.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

5,246
firefly-iii-stackfirefly-iii0.10.22 of 4See more

firefly-iii-stack firefly-iii 0.10.2

2 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2
fireflyiii/data-importer:version-2.2.3ab52bf932546
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

10,674
importerfirefly-iii1.6.01 of 1See more

importer firefly-iii 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fireflyiii/data-importer:version-2.2.3ab52bf932546
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2

Open the chart page →

5,036
firefox-browserfirefox-browserVerified publisher1.1.01 of 1See more

firefox-browser firefox-browser 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jlesage/firefox:v25.03.1055c28defe31
openssl@3.3.2-r5
3.3.7-r0

Open the chart page →

1,544
flask-contactsfirst-idror-chart1.0.11 of 3See more

flask-contacts first-idror-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,884
apollofiware0.1.41 of 1See more

apollo fiware 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/apollo:0.0.1055330b1b60c1
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

6,938
business-api-ecosystemfiware1.1.02 of 4See more

business-api-ecosystem fiware 1.1.0

2 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

112,968
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
openssl@1:1.1.1k-4.el8
1:1.1.1k-17.el8_6

Open the chart page →

8,530
consent-facadefiware0.1.11 of 1See more

consent-facade fiware 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/seamware/consent-facade:0.0.14be844c750c7e
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

2,501
contract-managementfiware3.5.361 of 1See more

contract-management fiware 3.5.36

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/contract-management:3.3.122bcfcf874451
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

2,438
credentials-config-servicefiware2.6.41 of 1See more

credentials-config-service fiware 2.6.4

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

2,294
dss-validation-servicefiware0.0.191 of 1See more

dss-validation-service fiware 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6

Open the chart page →

4,563
endpoint-auth-servicefiware0.1.41 of 4See more

endpoint-auth-service fiware 0.1.4

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

11,840
mintakafiware0.4.71 of 1See more

mintaka fiware 0.4.7

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fiware/mintaka:latestefc6793388cc
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

7,021
orionfiware1.6.112 of 2See more

orion fiware 1.6.11

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-17.el8_6

Open the chart page →

10,639
tm-forum-apifiware0.17.1519 of 19See more

tm-forum-api fiware 0.17.15

19 of the 19 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/tmforum-account:1.18.06b25aac03414
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

35,150
trusted-issuers-listfiware0.18.71 of 1See more

trusted-issuers-list fiware 0.18.7

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-list:0.9.13c886ce5c056
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8

Open the chart page →

1,743
trusted-issuers-registryfiware0.13.01 of 1See more

trusted-issuers-registry fiware 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

7,089
apm-hubflanksourceVerified publisher0.0.471 of 2See more

apm-hub flanksource 0.0.47

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
flanksource/apm-hub:v0.0.471dacc3195bf9
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

6,210
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

5,544
mission-controlflanksourceVerified publisher0.1.3382 of 8See more

mission-control flanksource 0.1.338

2 of the 8 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2
public.ecr.aws/k4y9r6y5/kratos:v25.4.0e8014c6c58b6
openssl@3.3.5-r0
3.3.7-r0

Open the chart page →

9,013
flask-contactsflask-contacts-generic1.0.11 of 3See more

flask-contacts flask-contacts-generic 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,884
flask-appflask-mysqlVerified publisher1.0.11 of 2See more

flask-app flask-mysql 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

4,119
flinkflink0.5.11 of 1See more

flink flink 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/flink:1.14.6-scala_2.122461f02672b3
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

5,716
floating-serverfloating-server1.6.31 of 2See more

floating-server floating-server 1.6.3

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
censedata/floating-server:v1.6.3ebfffb9dd4c0
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,598
floriapp-mongodbfloriapp1.0.01 of 1See more

floriapp-mongodb floriapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

8,069
dump1090fnzv0.2.81 of 1See more

dump1090 fnzv 0.2.8

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fnzv/dump1090:latestb3079b95c336
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

4,157
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

1,902
mod-authtokenfolio-org0.1.351 of 1See more

mod-authtoken folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-authtoken:latest995a25a33133
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,562
mod-coursesfolio-org0.1.341 of 1See more

mod-courses folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-courses:latest68ca414f5596
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,537
mod-ldpfolio-org0.1.331 of 1See more

mod-ldp folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-ldp:latestb55696fd9065
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,929

Container images carrying it

2,914 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/buildkite/agent-metrics:v5.11.016e7f5c7161e
openssl@3.5.1-r0
3.5.6-r0
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.9
1
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
openssl@3.5.4-1~deb13u1
3.5.5-1~deb13u2
1
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
openssl@1:3.0.7-28.el9_4
1:3.5.5-3.el9_8
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23
1
public.ecr.aws/groundcovercom/kong/kubernetes-ingress-controller:3.5.3-20260205bf9db911deed
openssl@3.5.4-1~deb13u2+e1
3.5.5-1~deb13u2
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
openssl@3.5.4-1~deb13u2+e1
3.5.5-1~deb13u2
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
public.ecr.aws/k4y9r6y5/kratos:v25.4.0e8014c6c58b6
openssl@3.3.5-r0
3.3.7-r0
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
public.ecr.aws/opslevel/kubectl-opslevel:v2024.9.571697b5ff713
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
1
public.ecr.aws/optimizely/webhook-broker:v0.2.3cfc92cc2de65
openssl@3.3.4-r0
3.3.7-r0
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
openssl@1:3.2.2-6.el9_5
1:3.5.5-3.el9_8
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
openssl@1:3.2.2-6.el9_5
1:3.5.5-3.el9_8
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm8
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.24+esm3
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
public.ecr.aws/truefoundrycloud/timberio/vector:v0.50.05833723de9e4
openssl@3.5.4-r0
3.5.6-r0
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
openssl@1:3.0.7-27.el9
1:3.5.5-3.el9_8
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8
1
public.ecr.aws/zinclabs/openobserve:v0.8.127f8de509169
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23
1
quay.io/aerokube/keygen:1.0.1578934444f04
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
openssl@1:3.0.7-27.el9
1:3.5.5-3.el9_8
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-17.el8_6
1
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-17.el8_6
1
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
openssl@1:1.1.1k-15.el8_6
1:1.1.1k-17.el8_6
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.23
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
1
quay.io/cilium/hubble-ui:v0.13.3661d5de70501
openssl@3.5.2-r0
3.5.6-r0
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-17.el8_6
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.