StackRadar

CVE-2026-28390

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.024
84th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,622
of 17,844 indexed, latest versions
Container images
2,996
deployed by those charts
Fix available
5 of 6
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,622 of 17,844 indexed charts deploy, on 2,996 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.2g-1ubuntu4.5, 1.0.2g-1ubuntu4.6, 1.0.2g-1ubuntu4.8, 1.0.2g-1ubuntu4.9+94 more1.0.2g-1ubuntu4.20+esm15, 1.1.1-1ubuntu2.1~18.04.23+esm8, 1.1.1f-1ubuntu2.24+esm3, 3.0.2-0ubuntu1.23+4 more1,731
opensslapk3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more3.3.7-r0, 3.5.6-r0, 3.6.2-r0932
opensslrpm1:1.1.1-8.el8, 1:1.1.1c-2.el8, 1:1.1.1c-2.el8_1.1, 1:1.1.1c-15.el8+33 more1:1.1.1k-17.el8_6, 1:1.1.1k-17.el8_10, 1:3.5.5-3.el9_8, 1:3.5.5-3.el10_2+1 more331
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm421
openssl-1_1rpm1.1.1l-150500.17.22.11.1.1l-150500.17.54.12
OSV records
ALPINE-CVE-2026-28390CGA-8g7f-wxpv-r4x7DEBIAN-CVE-2026-28390RHSA-2026:22312RHSA-2026:38503RLSA-2026:22312RLSA-2026:22314RLSA-2026:38503UBUNTU-CVE-2026-28390AZL-82070ECHO-9d88-691e-4e0fSUSE-SU-2026:1550-1
Also known as
CGA-9w5g-cc3c-h84f, CGA-c8f9-m6q4-pf8c, CGA-r9mm-rw3c-wqh3, RHSA-2026:38804, RHSA-2026:38805, RHSA-2026:43513, USN-8155-1, USN-8155-2

Charts affected

2,622 by stars
ChartLatestAffected imagesRadar Score
endpoint-auth-servicefiware0.1.41 of 4See more

endpoint-auth-service fiware 0.1.4

1 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

11,960
mintakafiware0.4.71 of 1See more

mintaka fiware 0.4.7

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fiware/mintaka:latestefc6793388cc
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

7,136
orionfiware1.6.112 of 2See more

orion fiware 1.6.11

2 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-17.el8_6

Open the chart page →

10,789
tm-forum-apifiware0.17.1619 of 19See more

tm-forum-api fiware 0.17.16

19 of the 19 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/tmforum-account:1.18.54247ff50b13a
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-agreement:1.18.5eb9b85e05fc6
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-customer-bill-management:1.18.57f0ad9351c2f
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-customer-management:1.18.5a70c75785836
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-party-catalog:1.18.56acbb5945ac5
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-party-role:1.18.5b2ae1f7b77f0
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-product-catalog:1.18.5a8dbeea7073b
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-product-inventory:1.18.515189a82bf23
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-product-ordering-management:1.18.5e75f63676642
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-quote:1.18.565960ad2c3b3
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-resource-catalog:1.18.51fbcaaa6972d
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-resource-function-activation:1.18.55072ef59d7df
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-resource-inventory:1.18.5e2957fa1b94a
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-resource-order-management:1.18.53f515b828c56
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-service-catalog:1.18.56b975bc9f784
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-service-inventory:1.18.5077eecf0b0cb
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-service-order-management:1.18.50c238f8a5c57
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-software-management:1.18.56b206242c03b
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8
quay.io/fiware/tmforum-usage-management:1.18.52c10674a4e7f
openssl@1:3.5.1-4.el9_7
1:3.5.5-3.el9_8

Open the chart page →

18,734
trusted-issuers-listfiware0.18.71 of 1See more

trusted-issuers-list fiware 0.18.7

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-list:0.9.13c886ce5c056
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8

Open the chart page →

1,837
trusted-issuers-registryfiware0.13.01 of 1See more

trusted-issuers-registry fiware 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6

Open the chart page →

7,213
apm-hubflanksourceVerified publisher0.0.471 of 2See more

apm-hub flanksource 0.0.47

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
flanksource/apm-hub:v0.0.471dacc3195bf9
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

5,971
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.9

Open the chart page →

5,785
mission-controlflanksourceVerified publisher0.1.3382 of 8See more

mission-control flanksource 0.1.338

2 of the 8 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2
public.ecr.aws/k4y9r6y5/kratos:v25.4.0e8014c6c58b6
openssl@3.3.5-r0
3.3.7-r0

Open the chart page →

9,447
flask-contactsflask-contacts-generic1.0.11 of 3See more

flask-contacts flask-contacts-generic 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

5,612
flask-appflask-mysqlVerified publisher1.0.11 of 2See more

flask-app flask-mysql 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

4,236
flinkflink0.5.11 of 1See more

flink flink 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/flink:1.14.6-scala_2.122461f02672b3
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.23

Open the chart page →

5,865
floating-serverfloating-server1.6.31 of 2See more

floating-server floating-server 1.6.3

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
censedata/floating-server:v1.6.3ebfffb9dd4c0
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,615
floriapp-mongodbfloriapp1.0.01 of 1See more

floriapp-mongodb floriapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/mongo:4.4.66efa05203990
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

8,185
fluxer-helmfluxer-helm0.3.02 of 18See more

fluxer-helm fluxer-helm 0.3.0

2 of the 18 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
getmeili/meilisearch:v1.12c9fac23131cc
openssl@3.3.2-r1
3.3.7-r0
ghcr.io/fluxerapp/fluxer-static:2026.812.125337cfe98ae544df
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

29,071
gobackupfmjstudios0.2.21 of 1See more

gobackup fmjstudios 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
huacnlee/gobackup:v2.11.2d9c693e99576
openssl@3.3.0-r2
3.3.7-r0

Open the chart page →

2,951
gotenbergfmjstudios0.2.21 of 1See more

gotenberg fmjstudios 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.7.0437b9cd3c351
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

9,974
dump1090fnzv0.2.81 of 1See more

dump1090 fnzv 0.2.8

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
fnzv/dump1090:latestb3079b95c336
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.23

Open the chart page →

4,143
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

1,902
mod-authtokenfolio-org0.1.351 of 1See more

mod-authtoken folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-authtoken:latest995a25a33133
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,567
mod-coursesfolio-org0.1.341 of 1See more

mod-courses folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-courses:latest68ca414f5596
openssl@3.5.5-r0
3.5.6-r0

Open the chart page →

1,541
mod-ldpfolio-org0.1.331 of 1See more

mod-ldp folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-ldp:latestb55696fd9065
openssl@3.3.3-r0
3.3.7-r0

Open the chart page →

1,929
mod-licensesfolio-org0.1.321 of 1See more

mod-licenses folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-licenses:latestcfd6109bf477
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

1,787
mod-oafolio-org0.1.21 of 1See more

mod-oa folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-oa:latestae3b069d4ba5
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

1,735
mod-searchfolio-org0.1.351 of 1See more

mod-search folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-search:latest44d7ee9acdf6
openssl@3.5.1-r0
3.5.6-r0

Open the chart page →

1,561
mod-serials-managementfolio-org0.1.11 of 1See more

mod-serials-management folio-org 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-serials-management:latest571fa1ffe8c9
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

1,735
mod-service-interactionfolio-org0.1.61 of 1See more

mod-service-interaction folio-org 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
folioci/mod-service-interaction:latestf53c327a48e8
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

1,735
ledgerformance1.2.01 of 1See more

ledger formance 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.23

Open the chart page →

4,805
maxscalefour-allportalVerified publisher4.1.161 of 3See more

maxscale four-allportal 4.1.16

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
mariadb/maxscale:23.02.256c5e0908148
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_10

Open the chart page →

6,665
demo-workflowsfrinx-helm-charts2.0.01 of 3See more

demo-workflows frinx-helm-charts 2.0.0

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
frinx/frinx-demo-workflows:6.1.0ee29588bd238
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

2,625
frinx-frontendfrinx-helm-charts4.1.01 of 2See more

frinx-frontend frinx-helm-charts 4.1.0

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
frinx/frinx-graphql-proxy:6.1.05f1368ef47b8
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2

Open the chart page →

4,936
frinx-machinefrinx-helm-charts11.0.08 of 26See more

frinx-machine frinx-helm-charts 11.0.0

8 of the 26 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
frinx/conductor-server:6.1.159aa36c359f2
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm3
frinx/device-induction:1.2.2a8fbdce554ad
openssl@3.3.2-r0
3.3.7-r0
frinx/frinx-graphql-proxy:7.0.017a139608024
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
frinx/frinx-inventory-server:7.0.16b1992c79e78
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
frinx/resource-manager:6.1.09cd0147a09bd
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
frinx/schellar:6.1.04693dc627d32
openssl@3.3.1-r0
3.3.7-r0
frinx/topology-discovery:7.0.37832e3589dba
openssl@3.0.14-1~deb12u2
3.0.19-1~deb12u2
frinx/utilities-alpine:1.29dbad9988e0a
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

44,170
inventoryfrinx-helm-charts6.0.22 of 4See more

inventory frinx-helm-charts 6.0.2

2 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
frinx/frinx-inventory-server:6.1.086c9ce1f5e31
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
frinx/utilities-alpine:1.29dbad9988e0a
openssl@3.3.1-r3
3.3.7-r0

Open the chart page →

4,821
plexfydrah-charts2.2.01 of 1See more

plex fydrah-charts 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
openssl@1.0.2g-1ubuntu4.16
1.0.2g-1ubuntu4.20+esm15

Open the chart page →

9,164
passboltg0dscookie0.5.21 of 2See more

passbolt g0dscookie 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/mariadb:10.79a48ac9f196f
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

8,205
borgmaticgabe565Verified publisher0.10.11 of 1See more

borgmatic gabe565 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

2,630
castsponsorskipgabe565Verified publisher0.8.11 of 1See more

castsponsorskip gabe565 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/gabe565/castsponsorskip:0.8.15f7b4c6dd299
openssl@3.3.2-r4
3.3.7-r0

Open the chart page →

1,398
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2

Open the chart page →

13,849
guacamolegabibbo970.3.01 of 3See more

guacamole gabibbo97 0.3.0

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.5-1~deb13u2

Open the chart page →

6,617
accumulogaffer2.2.12 of 4See more

accumulo gaffer 2.2.1

2 of the 4 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
gchq/accumulo:2.0.1c460bb587d6d
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9
gchq/hdfs:3.3.35ec58edbb2db
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9

Open the chart page →

17,483
gaffer-road-trafficgaffer2.2.11 of 8See more

gaffer-road-traffic gaffer 2.2.1

1 of the 8 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.9

Open the chart page →

9,612
galoy-depsgaloymoney0.10.201 of 9See more

galoy-deps galoymoney 0.10.20

1 of the 9 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.39.002f6f143fc6d
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-17.el8_6

Open the chart page →

12,123
lndgaloymoney0.10.61 of 3See more

lnd galoymoney 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

2,191
monitoringgaloymoney0.12.211 of 6See more

monitoring galoymoney 0.12.21

1 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

5,366
galoy-depsgaloymoney20.10.201 of 9See more

galoy-deps galoymoney2 0.10.20

1 of the 9 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.39.002f6f143fc6d
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-17.el8_6

Open the chart page →

12,123
lndgaloymoney20.10.61 of 3See more

lnd galoymoney2 0.10.6

1 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

2,191
monitoringgaloymoney20.12.211 of 6See more

monitoring galoymoney2 0.12.21

1 of the 6 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
grafana/grafana:11.3.0a0f881232a6f
openssl@3.3.2-r0
3.3.7-r0

Open the chart page →

5,366
pagesgary-pages1.0.02 of 3See more

pages gary-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm3
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm8

Open the chart page →

20,585
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

18,517
apache-musicindexgeek-cookbookVerified publisher2.4.21 of 1See more

apache-musicindex geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-28390.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm3

Open the chart page →

15,164

Container images carrying it

2,996 by charts deploying them

A fixed version is listed for 5 of the 6 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
openssl@3.6.0-r6
3.6.2-r0
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
openssl@3.6.0-r6
3.6.2-r0
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
openssl@3.6.0-r6
3.6.2-r0
1
quay.io/projectquay/clair:4.9.023329c3368e4
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
1
quay.io/projectquay/clair:4.7.28d38ffa8fad7
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6
1
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
openssl@3.3.3-r0
3.3.7-r0
1
quay.io/reactiveops/rbac-manager:v1.9.587e3f461446f
openssl@3.5.4-r0
3.5.6-r0
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
openssl@1:3.0.7-27.el9
1:3.5.5-3.el9_8
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
openssl@1:3.0.7-17.el9_2
1:3.5.5-3.el9_8
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
openssl@1:1.1.1k-12.el8_9
1:1.1.1k-17.el8_6
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
openssl@1:3.0.7-27.el9
1:3.5.5-3.el9_8
1
quay.io/reiml/smtp-gotify:latest80ffa9d2044a
openssl@3.3.6-r0
3.3.7-r0
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
openssl@1:1.1.1k-4.el8
1:1.1.1k-17.el8_6
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
openssl@1:1.1.1k-14.el8_6
1:1.1.1k-17.el8_6
1
quay.io/shivering-isles/dovecot:2.3.214599ada9aa06
openssl@3.3.1-r3
3.3.7-r0
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
openssl@1:3.2.2-6.el9_5
1:3.5.5-3.el9_8
1
quay.io/strimzi/operator:0.45.158c727cd2e68
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8
1
quay.io/strimzi/operator:0.32.0c5e0e5dca750
openssl@1:1.1.1k-7.el8_6
1:1.1.1k-17.el8_6
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
openssl@3.3.3-r0
3.3.7-r0
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
openssl@1:1.1.1k-9.el8_7
1:1.1.1k-17.el8_6
1
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
openssl@3.5.1-r0
3.5.6-r0
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssl@3.0.9-1
3.0.19-1~deb12u2
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
openssl@1.1.1-1ubuntu2.1~18.04.17
1.1.1-1ubuntu2.1~18.04.23+esm8
1
registry.gitlab.com/dyff/dyff-frontend:0.20.2481be0beaafe
openssl@3.3.3-r0
3.3.7-r0
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
openssl@3.5.5-1~deb13u1
3.5.5-1~deb13u2
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-17.el8_6
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
openssl@3.0.13-1~deb12u1
3.0.19-1~deb12u2
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
openssl@1:1.1.1k-5.el8_5
1:1.1.1k-17.el8_6
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.24+esm3
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
openssl@1:1.1.1k-6.el8_5
1:1.1.1k-17.el8_6
1
registry.gitlab.com/shortlink-org/shortlink/bff:latestf2194e526915
openssl@3.5.5-r0
3.5.6-r0
1
registry.gitlab.com/shortlink-org/shortlink/link:latest86d87291ffd4
openssl@3.5.5-r0
3.5.6-r0
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
openssl@1:3.2.2-6.el9_5.1
1:3.5.5-3.el9_8
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
openssl@1:3.5.1-7.el9_7
1:3.5.5-3.el9_8
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
3.0.19-1~deb12u2
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
openssl@3.0.17-1~deb12u3
3.0.19-1~deb12u2
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
openssl@3.0.11-1~deb12u2
3.0.19-1~deb12u2
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssl@3.5.1-1
3.5.5-1~deb13u2
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssl@3.0.11-1~deb12u1
3.0.19-1~deb12u2
1
registry.k8s.io/ingress-nginx/controller:v1.13.21f7eaeb01933
openssl@3.5.2-r0
3.5.6-r0
1
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
openssl@3.5.1-r0
3.5.6-r0
1
registry.k8s.io/ingress-nginx/controller:v1.11.3d56f135b6462
openssl@3.3.2-r0
3.3.7-r0
1
registry.k8s.io/ingress-nginx/controller:v1.12.0e6b8de175acd
openssl@3.3.2-r4
3.3.7-r0
1
registry.k8s.io/provider-os/manila-csi-plugin:v1.36.0190976e2e2fe
openssl@3.5.4-r0
3.5.6-r0
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
openssl@3.0.15-1~deb12u1
3.0.19-1~deb12u2
1

syft 1.42.1 · advisories as of 25 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.