StackRadar

CVE-2026-34073

Medium

Advisory

Published 27 Mar 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.002
5th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
603
of 17,787 indexed, latest versions
Container images
491
deployed by those charts
Fix available
2 of 3
affected packages

cryptography has incomplete DNS name constraint enforcement on peer names

Carried by container images the latest versions of 603 of 17,787 indexed charts deploy, on 491 images.

Affected packageAffected versionsFixed inImages
cryptographypypi1.7.2, 1.9, 2.1.4, 2.2.2+69 more46.0.6491
python-cryptographydeb38.0.4-3, 38.0.4-3+deb12u1, 43.0.0-3+deb13u1no fix listed14
py3-cryptographyapk46.0.5-r046.0.7-r01
OSV records
ALPINE-CVE-2026-34073DEBIAN-CVE-2026-34073GHSA-m959-cc7f-wv43
Also known as
PYSEC-2026-35

Charts affected

603 by stars
ChartLatestAffected imagesRadar Score
flask-appflask-mysqlVerified publisher1.0.11 of 2See more

flask-app flask-mysql 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
46.0.6

Open the chart page →

4,073
kube-ops-viewfluent-operatorVerified publisher0.1.21 of 1See more

kube-ops-view fluent-operator 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
hjacobs/kube-ops-view:20.4.058221b57d4d2
cryptography@2.9.2
46.0.6

Open the chart page →

1,848
uptime-kumafluent-operatorVerified publisher0.1.01 of 1See more

uptime-kuma fluent-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
louislam/uptime-kuma:13d632903e6af
cryptography@2.6.1
46.0.6

Open the chart page →

3,474
forms-catalogueforms-catalogue0.1.01 of 2See more

forms-catalogue forms-catalogue 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
registry.gitlab.com/open-forms/forms-catalogue:latest4eaf9c911f33
cryptography@3.4.8
46.0.6

Open the chart page →

2,188
powerdnsfsdrw080.1.31 of 4See more

powerdns fsdrw08 0.1.3

1 of the 4 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:latest9898a7cf37d2
cryptography@36.0.2
46.0.6

Open the chart page →

1,958
changedetection-iogabe565Verified publisher0.12.01 of 2See more

changedetection-io gabe565 0.12.0

1 of the 2 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:latestecacd9fd0c66
cryptography@44.0.0
46.0.6

Open the chart page →

2,595
tandoorgabe565Verified publisher0.9.91 of 2See more

tandoor gabe565 0.9.9

1 of the 2 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
cryptography@44.0.0
46.0.6

Open the chart page →

2,183
spectergaloymoney0.3.11 of 1See more

specter galoymoney 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
lncm/specter-desktop:v1.10.536eaa06f99f4
cryptography@3.4.7
46.0.6

Open the chart page →

1,691
spectergaloymoney20.3.11 of 1See more

specter galoymoney2 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
lncm/specter-desktop:v1.10.536eaa06f99f4
cryptography@3.4.7
46.0.6

Open the chart page →

1,691
pagesgary-pages1.0.01 of 3See more

pages gary-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
cryptography@46.0.5
46.0.6

Open the chart page →

20,190
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
cryptography@3.4.8
46.0.6

Open the chart page →

16,123
changedetection-iogeek-cookbookVerified publisher1.5.21 of 1See more

changedetection-io geek-cookbook 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
cryptography@3.4.8
46.0.6

Open the chart page →

1,950
delugegeek-cookbookVerified publisher5.4.21 of 1See more

deluge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
cryptography@2.1.4
46.0.6

Open the chart page →

13,551
openemrgeek-cookbookVerified publisher5.2.01 of 1See more

openemr geek-cookbook 5.2.0

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
openemr/openemr:6.1.089eaa6d9a4e3
cryptography@36.0.2
46.0.6

Open the chart page →

8,392
powerdns-admingeek-cookbookVerified publisher1.2.21 of 1See more

powerdns-admin geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
cryptography@35.0.0
46.0.6

Open the chart page →

2,643
pyloadgeek-cookbookVerified publisher6.4.21 of 1See more

pyload geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/pyload:version-5de90278d3c87933a5fd
cryptography@3.3.2
46.0.6

Open the chart page →

1,236
skypilotgeek-cookbookVerified publisher0.0.11 of 3See more

skypilot geek-cookbook 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
cryptography@43.0.3
46.0.6

Open the chart page →

8,923
wallabaggeek-cookbookVerified publisher7.2.01 of 1See more

wallabag geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
wallabag/wallabag:2.4.25e4c26a7fb4a
cryptography@2.9.2
46.0.6

Open the chart page →

4,358
whooglegeek-cookbookVerified publisher3.4.21 of 1See more

whoogle geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
benbusby/whoogle-search:0.5.4f77f7e6e4ad2
cryptography@3.3.2
46.0.6

Open the chart page →

2,061
mysqlgengxiankun-charts0.2.01 of 1See more

mysql gengxiankun-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
cryptography@46.0.5
46.0.6

Open the chart page →

463
ldap-backupgluuVerified publisher1.6.111 of 1See more

ldap-backup gluu 1.6.11

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
gluufederation/opendj:4.3.0_011a1128b28b95
cryptography@3.3.2
46.0.6

Open the chart page →

3,064
opentelemetry-demogpg-dev0.33.81 of 27See more

opentelemetry-demo gpg-dev 0.33.8

1 of the 27 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
cryptography@43.0.3
46.0.6

Open the chart page →

49,025
mysqlgroundhog2k3.1.41 of 1See more

mysql groundhog2k 3.1.4

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
cryptography@46.0.5
46.0.6

Open the chart page →

463
pgadminhalkeye1.0.01 of 1See more

pgadmin halkeye 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
chorss/docker-pgadmin4:4.115c549cacb8ab
cryptography@2.7
46.0.6

Open the chart page →

2,555
tautullihalkeye1.1.41 of 2See more

tautulli halkeye 1.1.4

1 of the 2 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
tautulli/tautulli:v2.7.7c4da15f058ea
cryptography@3.4.8
46.0.6

Open the chart page →

1,473
pageshelm-chart-repos-camden1.0.01 of 3See more

pages helm-chart-repos-camden 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
cryptography@46.0.5
46.0.6

Open the chart page →

20,190
esphomehelm-chart-roeiVerified publisher2025.3.01 of 1See more

esphome helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
esphome/esphome:2025.3.0def8b6e4f517
cryptography@44.0.2
46.0.6

Open the chart page →

6,008
home-assistanthelm-chart-roeiVerified publisher2025.3.01 of 1See more

home-assistant helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
cryptography@44.0.1
46.0.6

Open the chart page →

4,647
kube-downscalerhelm-charts-nr0.7.61 of 1See more

kube-downscaler helm-charts-nr 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
cryptography@41.0.1
46.0.6

Open the chart page →

4,293
mlflowhelm-charts-nr1.0.101 of 1See more

mlflow helm-charts-nr 1.0.10

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
larribas/mlflow:1.9.105ccb0b46bfb
cryptography@2.9.2
46.0.6

Open the chart page →

4,422
supersethelm-charts-nr1.1.31 of 1See more

superset helm-charts-nr 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
apache/superset:latest16b50bbef664
cryptography@46.0.5
46.0.6

Open the chart page →

2,305
weblatehelm-charts-nr0.3.21 of 3See more

weblate helm-charts-nr 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
cryptography@3.1
46.0.6

Open the chart page →

7,984
dbapphelmcourseVerified publisher0.3.31 of 2See more

dbapp helmcourse 0.3.3

1 of the 2 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
46.0.6

Open the chart page →

3,971
mysqlhelmcourseVerified publisher0.2.41 of 1See more

mysql helmcourse 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
46.0.6

Open the chart page →

1,518
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
dannielkil/book-db:latest433290c5c1db
cryptography@42.0.7
46.0.6

Open the chart page →

9,122
changedetectionhelmforgeVerified publisher1.1.151 of 1See more

changedetection helmforge 1.1.15

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.3ecacd9fd0c66
cryptography@44.0.0
46.0.6

Open the chart page →

2,595
chiefonboardinghelmforgeVerified publisher1.1.141 of 3See more

chiefonboarding helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
cryptography@46.0.5
46.0.6

Open the chart page →

10,849
discount-bandithelmforgeVerified publisher2.0.81 of 3See more

discount-bandit helmforge 2.0.8

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
cryptography@46.0.5
46.0.6

Open the chart page →

29,817
drupalhelmforgeVerified publisher1.2.131 of 2See more

drupal helmforge 1.2.13

1 of the 2 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:9.7.2b2cf29815e62
cryptography@46.0.5
46.0.6

Open the chart page →

3,802
ghosthelmforgeVerified publisher1.2.61 of 3See more

ghost helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:8.4.113466ba4a4828
cryptography@46.0.5
46.0.6

Open the chart page →

2,463
mysqlhelmforgeVerified publisher2.0.31 of 1See more

mysql helmforge 2.0.3

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
cryptography@46.0.5
46.0.6

Open the chart page →

463
notediscoveryhelmforgeVerified publisher2.0.11 of 1See more

notediscovery helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/gamosoft/notediscovery:0.31.5c06aa0fa9a85
cryptography@41.0.7
46.0.6

Open the chart page →

1,241
supersethelmforgeVerified publisher1.3.61 of 5See more

superset helmforge 1.3.6

1 of the 5 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
apache/superset:6.1.016b50bbef664
cryptography@46.0.5
46.0.6

Open the chart page →

5,714
uptime-kumahelmforgeVerified publisher1.5.121 of 1See more

uptime-kuma helmforge 1.5.12

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.33e24e96c89ef
cryptography@38.0.4
python-cryptography@38.0.4-3+deb12u1
46.0.6
no fix listed

Open the chart page →

30,099
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
openbas/caldera-server:5.1.0a277796d9724
cryptography@44.0.1
46.0.6

Open the chart page →

25,017
pageshelm-repo1.0.01 of 3See more

pages helm-repo 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
cryptography@46.0.5
46.0.6

Open the chart page →

20,190
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
cryptography@41.0.7
46.0.6

Open the chart page →

16,384
activation-servicei4trustVerified publisher2.3.11 of 1See more

activation-service i4trust 2.3.1

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
i4trust/activation-service:2.2.09f3719176893
cryptography@41.0.1
46.0.6

Open the chart page →

2,058
ibexaibexaVerified publisher3.11.11 of 10See more

ibexa ibexa 3.11.1

1 of the 10 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
library/mysql:8.0.41bf577825b52a
cryptography@42.0.8
46.0.6

Open the chart page →

5,959
browserlessicoretechVerified publisher0.16.61 of 1See more

browserless icoretech 0.16.6

1 of the 1 container images this version deploys carry CVE-2026-34073.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
cryptography@41.0.7
46.0.6

Open the chart page →

1,948

Container images carrying it

491 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
cryptography@44.0.0
46.0.6
1
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
cryptography@42.0.7
46.0.6
1
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
cryptography@42.0.7
46.0.6
1
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
cryptography@43.0.1
46.0.6
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
cryptography@46.0.0
46.0.6
1
ghcr.io/shadrus/srebot:0.14.09b4415e937b2
cryptography@46.0.5
46.0.6
1
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
cryptography@46.0.3
46.0.6
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
cryptography@44.0.0
46.0.6
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
cryptography@43.0.1
46.0.6
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
cryptography@44.0.0
46.0.6
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
cryptography@39.0.1
46.0.6
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
cryptography@38.0.4
python-cryptography@38.0.4-3
46.0.6
no fix listed
1
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
cryptography@43.0.3
46.0.6
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
cryptography@42.0.4
46.0.6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/azurefile-csi:v1.35.76e43ba0bd009
cryptography@42.0.5
46.0.6
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
cryptography@45.0.6
46.0.6
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
cryptography@43.0.3
46.0.6
1
public.ecr.aws/r3m4q3r9/pleco:0.24.0651739583336
cryptography@43.0.1
46.0.6
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
cryptography@41.0.7
46.0.6
1
quay.io/ceph/ceph:v21.1.05ff3692d2f3f
cryptography@43.0.0
46.0.6
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
cryptography@37.0.2
46.0.6
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
cryptography@41.0.3
46.0.6
1
quay.io/freeipa/freeipa-server:fedora-39-4.11.1d422ee50c2c3
cryptography@41.0.7
46.0.6
1
quay.io/hewlettpackardenterprise/squest:2.8.465694109877e
cryptography@45.0.2
46.0.6
1
quay.io/hpestorage/filex-csi-driver:2.6.4b7f960bbf472
cryptography@46.0.3
46.0.6
1
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
cryptography@36.0.2
46.0.6
1
quay.io/jupyterhub/k8s-hub:3.2.12528c6e57587
cryptography@41.0.5
46.0.6
1
quay.io/netscaler/netscaler-k8s-ingress-controller:4.1.1755b12c2a8440
cryptography@43.0.1
46.0.6
1
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
cryptography@38.0.1
46.0.6
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
cryptography@46.0.3
46.0.6
1
quay.io/ortelius/ms-dep-pkg-cud:main-v10.0.1670-g9abe110c0c881b509a
cryptography@46.0.3
46.0.6
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
cryptography@46.0.3
46.0.6
1
quay.io/ortelius/ms-sbom-export:main-v10.0.933-g2e222ef43bdaa51598
cryptography@46.0.3
46.0.6
1
quay.io/ortelius/ms-scorecard:main-v10.0.1276-g966a8a43337e52fdd4
cryptography@46.0.3
46.0.6
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
cryptography@46.0.3
46.0.6
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
cryptography@46.0.3
46.0.6
1
quay.io/stackgres/operator:1.19.1f241b0b20326
cryptography@43.0.1
46.0.6
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
cryptography@46.0.5
46.0.6
1
registry.gitlab.com/open-forms/forms-catalogue:latest4eaf9c911f33
cryptography@3.4.8
46.0.6
1
registry.gitlab.com/open-forms/request-registry:latest0886cbbc5f95
cryptography@3.4.8
46.0.6
1
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
cryptography@46.0.3
46.0.6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.