CVE-2026-31790
HighAdvisory
Published 7 Apr 2026In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.010
- 62nd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,919
- of 17,803 indexed, latest versions
- Container images
- 2,228
- deployed by those charts
- Fix available
- 4 of 4
- affected packages
Red Hat Security Advisory: openssl security update
Carried by container images the latest versions of 1,919 of 17,803 indexed charts deploy, on 2,228 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openssldeb | 3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+44 more | 3.0.2-0ubuntu1.23, 3.0.13-0ubuntu3.9, 3.0.19-1~deb12u2, 3.5.3-1ubuntu3.3+1 more | 1,217 |
| opensslapk | 3.1.4-r2, 3.2.0-r0, 3.3.0-r2, 3.3.1-r0+22 more | 3.3.7-r0, 3.5.6-r0, 3.6.2-r0 | 900 |
| opensslrpm | 1:3.0.1-43.el9_0, 1:3.0.7-6.el9_2, 1:3.0.7-17.el9_2, 1:3.0.7-25.el9_3+10 more | 1:3.5.5-2.el9_8, 3.3.5-5 | 99 |
| openssl-fips-providerrpm | 3.0.7-2.el9, 3.0.7-6.el9_5, 3.0.7-8.el9, 3.0.7-8.el10 | 0:3.0.7-11.el9_8, 0:3.0.7-11.el10_2 | 79 |
- OSV records
- ALPINE-CVE-2026-31790CGA-82jc-g66m-rp8rCGA-chx3-v6gr-x6h2DEBIAN-CVE-2026-31790UBUNTU-CVE-2026-31790RHSA-2026:19218RHSA-2026:27744RHSA-2026:27746RLSA-2026:19218AZL-81950ECHO-cd1b-a137-2e06
- Also known as
- CGA-85p3-36wg-c582, CGA-hvhw-vf7c-7ccv, RHSA-2026:28832, USN-8155-1
Charts affected
1,919 by stars
Container images carrying it
2,228 by charts deploying them
A fixed version is listed for 4 of the 4 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| quay.io/ | 59fe607dfdf2 | openssl openssl-fips-provider | 1:3.5.5-2.el9_8 0:3.0.7-11.el9_8 | 1 |
| quay.io/ | 7b4202c25b67 | openssl | 1:3.5.5-2.el9_8 | 1 |
| quay.io/ | 030ade9b9428 | openssl openssl-fips-provider | 1:3.5.5-2.el9_8 0:3.0.7-11.el9_8 | 1 |
| quay.io/ | 80ffa9d2044a | openssl | 3.3.7-r0 | 1 |
| quay.io/ | 4599ada9aa06 | openssl | 3.3.7-r0 | 1 |
| quay.io/ | b7e9cba72f8a | openssl openssl-fips-provider | 1:3.5.5-2.el9_8 0:3.0.7-11.el9_8 | 1 |
| quay.io/ | 58c727cd2e68 | openssl openssl-fips-provider | 1:3.5.5-2.el9_8 0:3.0.7-11.el9_8 | 1 |
| quay.io/ | cca801de9fa5 | openssl | 3.3.7-r0 | 1 |
| quay.io/ | f1bbbd5e9bb9 | openssl | 3.5.6-r0 | 1 |
| quay.io/ | e0d9b93dbf2b | openssl | 3.0.19-1~deb12u2 | 1 |
| registry.gitlab.com/ | 481be0beaafe | openssl | 3.3.7-r0 | 1 |
| registry.gitlab.com/ | 66353ce9bf98 | openssl | 3.5.5-1~deb13u2 | 1 |
| registry.gitlab.com/ | 5a9334f371f3 | openssl | 3.0.19-1~deb12u2 | 1 |
| registry.gitlab.com/ | f2194e526915 | openssl | 3.5.6-r0 | 1 |
| registry.gitlab.com/ | 86d87291ffd4 | openssl | 3.5.6-r0 | 1 |
| registry.gitlab.com/ | 301847adfe16 | openssl openssl-fips-provider | 1:3.5.5-2.el9_8 0:3.0.7-11.el9_8 | 1 |
| registry.gitlab.com/ | fcf07d5ff7e2 | openssl openssl-fips-provider | 1:3.5.5-2.el9_8 0:3.0.7-11.el9_8 | 1 |
| registry.k8s.io/ | 81a13703d6b8 | openssl | 3.0.19-1~deb12u2 | 1 |
| registry.k8s.io/ | 8b9a78d101a1 | openssl | 3.0.19-1~deb12u2 | 1 |
| registry.k8s.io/ | e3dccb1a21d1 | openssl | 3.0.19-1~deb12u2 | 1 |
| registry.k8s.io/ | 0e64aedb0d0a | openssl | 3.5.5-1~deb13u2 | 1 |
| registry.k8s.io/ | fd9722fd02e3 | openssl | 3.0.19-1~deb12u2 | 1 |
| registry.k8s.io/ | 1f7eaeb01933 | openssl | 3.5.6-r0 | 1 |
| registry.k8s.io/ | 37e489b22ac7 | openssl | 3.5.6-r0 | 1 |
| registry.k8s.io/ | d56f135b6462 | openssl | 3.3.7-r0 | 1 |
| registry.k8s.io/ | e6b8de175acd | openssl | 3.3.7-r0 | 1 |
| registry.k8s.io/ | 190976e2e2fe | openssl | 3.5.6-r0 | 1 |
| registry.k8s.io/ | ce5b5ccd5eb0 | openssl | 3.0.19-1~deb12u2 | 1 |