CVE-2026-31790
HighAdvisory
Published 7 Apr 2026In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.010
- 62nd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,948
- of 17,828 indexed, latest versions
- Container images
- 2,255
- deployed by those charts
- Fix available
- 4 of 4
- affected packages
Red Hat Security Advisory: openssl security update
Carried by container images the latest versions of 1,948 of 17,828 indexed charts deploy, on 2,255 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openssldeb | 3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+44 more | 3.0.2-0ubuntu1.23, 3.0.13-0ubuntu3.9, 3.0.19-1~deb12u2, 3.5.3-1ubuntu3.3+1 more | 1,233 |
| opensslapk | 3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more | 3.3.7-r0, 3.5.6-r0, 3.6.2-r0 | 912 |
| opensslrpm | 1:3.0.1-43.el9_0, 1:3.0.7-6.el9_2, 1:3.0.7-17.el9_2, 1:3.0.7-25.el9_3+10 more | 1:3.5.5-2.el9_8, 3.3.5-5 | 98 |
| openssl-fips-providerrpm | 3.0.7-2.el9, 3.0.7-6.el9_5, 3.0.7-8.el9, 3.0.7-8.el10 | 0:3.0.7-11.el9_8, 0:3.0.7-11.el10_2 | 77 |
- OSV records
- ALPINE-CVE-2026-31790CGA-82jc-g66m-rp8rCGA-chx3-v6gr-x6h2DEBIAN-CVE-2026-31790UBUNTU-CVE-2026-31790RHSA-2026:19218RHSA-2026:27744RHSA-2026:27746RLSA-2026:19218AZL-81950ECHO-cd1b-a137-2e06
- Also known as
- CGA-85p3-36wg-c582, CGA-hvhw-vf7c-7ccv, RHSA-2026:28832, USN-8155-1
Charts affected
1,948 by stars
| Chart | Latest | Affected images | Radar Score |
|---|
Container images carrying it
2,255 by charts deploying them
A fixed version is listed for 4 of the 4 affected packages.