StackRadar

CVE-2026-28390

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.024
84th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,622
of 17,844 indexed, latest versions
Container images
2,996
deployed by those charts
Fix available
5 of 6
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,622 of 17,844 indexed charts deploy, on 2,996 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.2g-1ubuntu4.5, 1.0.2g-1ubuntu4.6, 1.0.2g-1ubuntu4.8, 1.0.2g-1ubuntu4.9+94 more1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23+4 more1,731
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0932
opensslrpm1:1.1.1-8.el8, 1:1.1.1c-2.el8, 1:1.1.1c-2.el8_1.1, 1:1.1.1c-15.el8+33 more1:1.1.1k-17.el8_6, 1:1.1.1k-17.el8_10, 1:3.5.5-3.el9_8, 1:3.5.5-3.el10_2+1 more331
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm421
openssl-1_1rpm1.1.1l-150500.17.22.11.1.1l-150500.17.54.12
OSV records
ALPINE-CVE-2026-28390CGA-8g7f-wxpv-r4x7DEBIAN-CVE-2026-28390RHSA-2026:22312RHSA-2026:38503RLSA-2026:22312RLSA-2026:22314RLSA-2026:38503UBUNTU-CVE-2026-28390AZL-82070ECHO-9d88-691e-4e0fSUSE-SU-2026:1550-1
Also known as
CGA-9w5g-cc3c-h84f, CGA-c8f9-m6q4-pf8c, CGA-r9mm-rw3c-wqh3, RHSA-2026:38804, RHSA-2026:38805, RHSA-2026:43513, USN-8155-1, USN-8155-2

Charts affected

2,622 by stars
ChartLatestAffected imagesRadar Score
geo-checkergeo-checkerVerified publisher5.0.01 of 1See more

geo-checker geo-checker 5.0.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ymuski/geo-checker:5.0.05ba7fd8c7bdc
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

1,503
leantimegissilabs1.3.02 of 2See more

leantime gissilabs 1.3.0

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
leantime/leantime:3.3.3ad4bfb0699d3
openssl@3.3.2-r1
3.3.7-r0
library/mariadb:10.6.218a16204dc96c
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

6,736
gitea-sonarqube-botgitea-sonarqube-botOfficialVerified publisher0.4.01 of 1See more

gitea-sonarqube-bot gitea-sonarqube-bot 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
justusbunsi/gitea-sonarqube-bot:v0.4.018dd43b470d9
openssl@3.3.2-r1
3.3.7-r0

Open the chart page →

1,163
meta-monitoringgrafana1.3.01 of 2See more

meta-monitoring grafana 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
grafana/alloy:v1.4.306bdcbb51fc2
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9

Open the chart page →

3,710
gridgaingridgainOfficialVerified publisher1.0.61 of 1See more

gridgain gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
gridgain/community:8.9.11d32d182a0e6a
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

4,692
IMgrycapOfficialVerified publisher1.8.01 of 3See more

IM grycap 1.8.0

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/grycap/im:latest06a16d4f279f
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

4,481
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

10,628
haproxy-redis-sentinelhaproxy-redis-sentinelVerified publisher0.1.32 of 2See more

haproxy-redis-sentinel haproxy-redis-sentinel 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/haproxy:3.1-bookworm49a0a0d6f0b8
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

4,587
harp-proxyharp0.8.11 of 1See more

harp-proxy harp 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
makersquad/harp-proxy:0.8.1a40dd258c527
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

6,805
hawkhawk1.1.52 of 4See more

hawk hawk 1.1.5

2 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

14,052
clickstackhdx-oss-v21.1.12 of 5See more

clickstack hdx-oss-v2 1.1.1

2 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.7-alpine258d43821508
openssl@3.5.4-r0
3.5.6-r0
library/mongo:5.0.32-focal3b6c281e1c08
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

4,928
headscale-uiheadscale-uiVerified publisher0.2.91 of 1See more

headscale-ui headscale-ui 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/gurucomputing/headscale-ui:2026.03.17015f5ba04bcb
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,542
app-blueprinthelm-app-blueprintVerified publisher0.2.11 of 1See more

app-blueprint helm-app-blueprint 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.27-alpine65e3e85dbaed
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,003
guacamolehelmforgeVerified publisher1.5.22 of 5See more

guacamole helmforge 1.5.2

2 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9
library/postgres:17.5-bookwormfbcea1bd13b6
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

8,968
velerohelmforgeVerified publisher1.4.101 of 2See more

velero helmforge 1.4.10

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
velero/velero:v1.18.237396519f399
openssl@3.0.2-0ubuntu1.25
no fix listed

Open the chart page →

1,534
helm-operatorhelm-operatorVerified publisher0.0.21 of 1See more

helm-operator helm-operator 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
bsgrigorov/helm-operator:latest45ab095f09c8
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-17.el8_6

Open the chart page →

7,035
helmuphelmupVerified publisher0.1.03 of 3See more

helmup helmup 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
sirrend/helmup-engine:0.1.13699e79e3d4e2
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
sirrend/helmup-notifications-service:0.1.3997866417011
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

17,358
hiverhiverVerified publisher0.1.451 of 10See more

hiver hiver 0.1.45

1 of the 10 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
hiversh/gateway:0.1.45839226cc6e41
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.23

Open the chart page →

23,157
holoinsightholoinsight0.2.52 of 6See more

holoinsight holoinsight 0.2.5

2 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ceresdb/ceresdb-server:v1.0.053b2d0dbba1f
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm3
library/elasticsearch:7.16.18d5fd89230d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

28,402
hpe-greenlake-file-csi-driverhpe-storageVerified publisher2.6.42 of 7See more

hpe-greenlake-file-csi-driver hpe-storage 2.6.4

2 of the 7 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/hpestorage/filex-csi-driver:2.6.4b7f960bbf472
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/hpestorage/filex-csi-init:2.6.42d867eefb233
openssl@1:3.2.2-6.el9_5
1:3.5.5-3.el9_8

Open the chart page →

6,421
htnn-controllerhtnnVerified publisher0.5.01 of 1See more

htnn-controller htnn 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23

Open the chart page →

4,504
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
nodejs@24.13.1-1nodesource1
openssl@3.0.2-0ubuntu1.19
no fix listed
3.0.2-0ubuntu1.23

Open the chart page →

65,931
iceberg-resticeberg-rest-fixture0.0.11 of 2See more

iceberg-rest iceberg-rest-fixture 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.23

Open the chart page →

3,725
backendikusi-bk-chart1.0.32 of 3See more

backend ikusi-bk-chart 1.0.3

2 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
kyovint/kyoimgtransactions:1.0.048c19e3ae9a3
openssl@3.5.1-1
3.5.5-1~deb13u2
kyovint/kyoimgusers:1.0.080084149156e
openssl@3.5.1-1
3.5.5-1~deb13u2

Open the chart page →

6,009
ilum-coreilumOfficialVerified publisher6.7.31 of 5See more

ilum-core ilum 6.7.3

1 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

3,581
immichimmich-helm0.3.04 of 4See more

immich immich-helm 0.3.0

4 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
valkey/valkey:8.1.481db6d39e1bb
openssl@3.5.1-1+deb13u1
3.5.5-1~deb13u2
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
openssl@3.5.1-1+deb13u1
3.5.5-1~deb13u2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
openssl@3.0.17-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

16,737
webhook-broker-chartimytech0.2.41 of 1See more

webhook-broker-chart imytech 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
public.ecr.aws/optimizely/webhook-broker:v0.2.3cfc92cc2de65
openssl@3.3.4-r0
3.3.7-r0

Open the chart page →

1,281
ingress-nginx-validate-jwtingress-nginx-validate-jwtVerified publisher1.13.991 of 1See more

ingress-nginx-validate-jwt ingress-nginx-validate-jwt 1.13.99

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ivanjosipovic/ingress-nginx-validate-jwt:1.13.995089339a68ae
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

504
valkey-clusterinnagoVerified publisher1.1.01 of 2See more

valkey-cluster innago 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
valkey/valkey:8.0.1c5d4f082b76d
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

2,780
elasticinseefrlab2.2.02 of 2See more

elastic inseefrlab 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.35e6ac15bf6a5
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3
library/kibana:7.17.3e2e2031c15be
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

17,851
interlinkinterlink0.6.11 of 2See more

interlink interlink 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,591
iris-webappiris-webapp0.2.42 of 2See more

iris-webapp iris-webapp 0.2.4

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/rabbitmq:3.12-management-alpine0b44fbcc3a4b
openssl@3.3.2-r0
3.3.7-r0
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
openssl@3.5.1-1+deb13u1
3.5.5-1~deb13u2

Open the chart page →

12,717
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

74,639
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

74,714
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

74,660
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

74,660
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

74,940
jdownloader2jdownloader2Verified publisher1.10.01 of 1See more

jdownloader2 jdownloader2 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jlesage/jdownloader-2:v26.03.13d6cb102bd9b
openssl@3.3.6-r0
3.3.7-r0

Open the chart page →

563
traccarjeffrescVerified publisher0.2.01 of 2See more

traccar jeffresc 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
traccar/traccar:6.7-alpine621c8d6d46fd
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,591
jetic-operatorjetic-operatorVerified publisher2.0.21 of 1See more

jetic-operator jetic-operator 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
apache/camel-k:1.10.43bb13d14f64a
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-17.el8_6

Open the chart page →

9,607
jenkinsjkimVerified publisher5.5.142 of 2See more

jenkins jkim 5.5.14

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
kiwigrid/k8s-sidecar:1.27.6db85bd553253
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

7,584
k8s-grafana-stackk8s-grafana-stackVerified publisher0.2.324 of 17See more

k8s-grafana-stack k8s-grafana-stack 0.2.32

4 of the 17 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
curlimages/curl:8.9.18addc281f0ea
openssl@3.3.1-r3
3.3.7-r0
grafana/alloy:v1.14.0f50931848bd8
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.9
grafana/grafana:12.3.12175aaa91c96
openssl@3.5.4-r0
3.5.6-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.6-r0

Open the chart page →

16,065
kafka-kraft-on-k8skafka-kraft-on-k8sVerified publisher1.1.03 of 3See more

kafka-kraft-on-k8s kafka-kraft-on-k8s 1.1.0

3 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
kafkakraft/kafka-connect:3.7.0062d697db7e5
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23
kafkakraft/kafka-controller:3.7.0f261ad288fce
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23
kafkakraft/kafkakraft:3.7.02e4b593b878b
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.23

Open the chart page →

15,137
kdiffkdiff-snapshotsVerified publisher0.0.2031 of 2See more

kdiff kdiff-snapshots 0.0.203

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2

Open the chart page →

8,551
kdiff-snapshotskdiff-snapshotsVerified publisher0.0.551 of 1See more

kdiff-snapshots kdiff-snapshots 0.0.55

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
openssl@3.0.16-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

6,064
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
openssl@3.0.17-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,460
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

5,461
kokukokuVerified publisher1.0.02 of 7See more

koku koku 1.0.0

2 of the 7 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
openssl@1:3.0.7-27.el9
1:3.5.5-3.el9_8
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8

Open the chart page →

11,697
nginx-php-fpmkokuwa0.1.42 of 2See more

nginx-php-fpm kokuwa 0.1.4

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/php:8.5.2-fpm-alpine3.22a2482c398d60
openssl@3.5.5-r0
3.5.6-r0
nginxinc/nginx-unprivileged:1.29.0-alpine3.2282dcf28da5a8
openssl@3.5.1-r0
3.5.6-r0

Open the chart page →

1,897
difykubeblocksVerified publisher0.5.12 of 5See more

dify kubeblocks 0.5.1

2 of the 5 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
langgenius/dify-sandbox:0.2.009b7e8705673
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

21,281

Container images carrying it

2,996 by charts deploying them

A fixed version is listed for 5 of the 6 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
openssl@3.6.0-r6
3.6.2-r0
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
openssl@3.6.0-r6
3.6.2-r0
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
openssl@3.6.0-r6
3.6.2-r0
1
quay.io/projectquay/clair:4.9.023329c3368e4
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
1
quay.io/projectquay/clair:4.7.28d38ffa8fad7
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6
1
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
openssl@3.3.3-r0
3.3.7-r0
1
quay.io/reactiveops/rbac-manager:v1.9.587e3f461446f
openssl@3.5.4-r0
3.5.6-r0
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
openssl@1:3.0.7-27.el9
1:3.5.5-3.el9_8
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
openssl@1:3.0.7-17.el9_2
1:3.5.5-3.el9_8
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-17.el8_6
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
openssl@1:3.0.7-27.el9
1:3.5.5-3.el9_8
1
quay.io/reiml/smtp-gotify:latest80ffa9d2044a
openssl@3.3.6-r0
3.3.7-r0
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
openssl@1:1.1.1k-4.el8
1:1.1.1k-17.el8_6
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
1
quay.io/shivering-isles/dovecot:2.3.214599ada9aa06
openssl@3.3.1-r3
3.3.7-r0
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
openssl@1:3.2.2-6.el9_5
1:3.5.5-3.el9_8
1
quay.io/strimzi/operator:0.45.158c727cd2e68
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8
1
quay.io/strimzi/operator:0.32.0c5e0e5dca750
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-17.el8_6
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
openssl@3.3.3-r0
3.3.7-r0
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6
1
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
openssl@3.5.1-r0
3.5.6-r0
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssl@3.0.9-1
3.0.19-1~deb12u2
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
openssl@1.1.1-1ubuntu2.1~18.04.17
1.1.1-1ubuntu2.1~18.04.23+esm8
1
registry.gitlab.com/dyff/dyff-frontend:0.20.2481be0beaafe
openssl@3.3.3-r0
3.3.7-r0
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-17.el8_6
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
openssl@1:1.1.1k-5.el8_5
1:1.1.1k-17.el8_6
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.24+esm3
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6
1
registry.gitlab.com/shortlink-org/shortlink/bff:latestf2194e526915
openssl@3.5.5-r0
3.5.6-r0
1
registry.gitlab.com/shortlink-org/shortlink/link:latest86d87291ffd4
openssl@3.5.5-r0
3.5.6-r0
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
openssl@1:3.5.1-7.el9_7
1:3.5.5-3.el9_8
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
3.0.19-1~deb12u2
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssl@3.5.1-1
3.5.5-1~deb13u2
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssl@3.0.11-1~deb12u1
3.0.19-1~deb12u2
1
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
openssl@3.5.2-r0
3.5.6-r0
1
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
openssl@3.5.1-r0
3.5.6-r0
1
registry.k8s.io/ingress-nginx/controller:v1.11.3d56f135b6462
openssl@3.3.2-r0
3.3.7-r0
1
registry.k8s.io/ingress-nginx/controller:v1.12.0e6b8de175acd
openssl@3.3.2-r4
3.3.7-r0
1
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
openssl@3.5.4-r0
3.5.6-r0
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1

syft 1.42.1 · advisories as of 25 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.