StackRadar

CVE-2026-34180

High

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.010
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,220
of 17,790 indexed, latest versions
Container images
2,434
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-34180 affecting package openssl for versions less than 3.3.7-3

Carried by container images the latest versions of 2,220 of 17,790 indexed charts deploy, on 2,434 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+103 more1.0.1f-1ubuntu2.27+esm14, 1.0.2g-1ubuntu4.20+esm16, 1.1.1-1ubuntu2.1~18.04.23+esm9, 1.1.1f-1ubuntu2.24+esm4+6 more1,792
opensslapk3.2.0-r0, 3.3.1-r4, 3.3.2-r0, 3.3.2-r2+13 more3.5.7-r0, 3.6.3-r0637
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm515
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-35
OSV records
ALPINE-CVE-2026-34180CGA-g378-45wh-93f6DEBIAN-CVE-2026-34180UBUNTU-CVE-2026-34180AZL-89940
Also known as
CGA-h7j3-2x99-6xrj, CGA-r88x-fhmc-m5p6, CGA-whc6-cxvw-gq2h, USN-8414-1, USN-8414-2

Charts affected

2,220 by stars
ChartLatestAffected imagesRadar Score
squidsquid-helmVerified publisher0.1.01 of 1See more

squid squid-helm 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ubuntu/squid:5.2-22.04_beta723891b5bc74
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25

Open the chart page →

2,624
graph-nodestakewise3.1.01 of 3See more

graph-node stakewise 3.1.0

1 of the 3 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
graphprotocol/graph-node:v0.37.0f4452cdedd68
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

4,694
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

13,536
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

25,005
stornxstornxVerified publisher1.1.13 of 9See more

stornx stornx 1.1.1

3 of the 9 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
alazidis/stornx:1.1.1602d4f7f090c
openssl@3.0.18-1~deb12u2
3.0.20-1~deb12u2
istio/pilot:1.29.1f8b0e412ac4a
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11

Open the chart page →

11,735
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11

Open the chart page →

2,881
supabasesupabse0.8.08 of 11See more

supabase supabse 0.8.0

8 of the 11 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
kong/kong:3.9.16addf50e6bd8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
supabase/edge-runtime:v1.74.02781daf92394
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
supabase/gotrue:v2.189.0385184459f57
openssl@3.5.6-r0
3.5.7-r0
supabase/postgres:17.6.1.136f371b5f3f2ac
openssl@3.5.6-r0
3.5.7-r0
supabase/postgres-meta:v0.96.6a84cc713585e
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
supabase/realtime:v2.102.3aa1c92c0cf32
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2
supabase/storage-api:v1.60.4c8eb9858eafe
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

18,327
supersonicsupersonicVerified publisher0.3.11 of 2See more

supersonic supersonic 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.30.92956bd9de830
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25

Open the chart page →

2,142
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

3,263
headscaleszpadel-chartsVerified publisher0.30.21 of 3See more

headscale szpadel-charts 0.30.2

1 of the 3 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/tale/headplane:0.6.39476cc5adb12
openssl@3.0.18-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

1,880
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

9,119
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

9,119
tocktock0.6.37 of 9See more

tock tock 0.6.3

7 of the 9 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
tock/bot_admin:25.10.7df3e38c77a38
openssl@3.5.5-r0
3.5.7-r0
tock/bot_api:25.10.7dd5d5c70e333
openssl@3.5.5-r0
3.5.7-r0
tock/build_worker:25.10.7080cb6b08d5b
openssl@3.5.5-r0
3.5.7-r0
tock/duckling:25.10.7ac1f3f1a1e9c
openssl@3.5.5-r0
3.5.7-r0
tock/gen-ai-orchestrator-server:25.10.7abf7880e0449
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
tock/kotlin_compiler:25.10.7c9c0fb40089a
openssl@3.5.5-r0
3.5.7-r0
tock/nlp_api:25.10.7c04ffe67b977
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

13,017
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11

Open the chart page →

4,075
typesensetypesenseVerified publisher1.1.41 of 1See more

typesense typesense 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
typesense/typesense:30.191604dc128e2
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25

Open the chart page →

1,911
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25

Open the chart page →

3,806
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25

Open the chart page →

3,806
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

12,672
universaluniversal4.0.11 of 1See more

universal universal 4.0.1

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
providus/undefined:lateste0b9f03bcd98
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

487
taigaunxwaresVerified publisher2026.3.81 of 6See more

taiga unxwares 2026.3.8

1 of the 6 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
taigaio/taiga-protected:latestfd4568a97a59
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

9,193
varnish-cachevarnishVerified publisher1.1.11 of 1See more

varnish-cache varnish 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
library/varnish:7.5.04d0bb287d87b
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

4,339
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11

Open the chart page →

4,063
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

5,259
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm4
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

26,848
vite-react-app-helm-chartsvite-react-app-helm-charts1.0.01 of 1See more

vite-react-app-helm-charts vite-react-app-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/marcuwynu23/vite-app-sample:latest21247f2b97c4
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,086
phpipamvquieVerified publisher1.0.31 of 3See more

phpipam vquie 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
library/mariadb:10.11.21c33370a599c
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.25

Open the chart page →

7,072
wachdwachdVerified publisher0.4.371 of 1See more

wachd wachd 0.4.37

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/wachd/wachd:0.4.1805b05c56da94
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,270
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

15,986
ingress-nginxwenerme4.15.11 of 2See more

ingress-nginx wenerme 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,548
natswenerme2.14.62 of 3See more

nats wenerme 2.14.6

2 of the 3 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
openssl@3.5.6-r0
3.5.7-r0
natsio/nats-server-config-reloader:0.23.064cb6c858e79
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

2,315
wikiwenerme2.2.01 of 2See more

wiki wenerme 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
requarks/wiki:latest68f0d1848261
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

3,834
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
openssl@1.0.1f-1ubuntu2.5
1.0.1f-1ubuntu2.27+esm14

Open the chart page →

41,444
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

7,903
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
library/wordpress:6.8-apache30bff39330d1
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

7,764
wordpress-helmwordpress-helm0.2.92 of 4See more

wordpress-helm wordpress-helm 0.2.9

2 of the 4 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2
library/varnish:alpinea84e1d4adb58
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

8,320
workflows-informerworkflows-informerVerified publisher0.4.41 of 1See more

workflows-informer workflows-informer 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

1,164
wraftwraft0.1.122 of 9See more

wraft wraft 0.1.12

2 of the 9 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
typesense/typesense:28.0.rc35dea1b62b7b6e
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

10,156
aeneabotygdrassilOfficialVerified publisher0.2.01 of 2See more

aeneabot ygdrassil 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
elautoestopista/aeneabot:4.2.1125ba620d528
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,698
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
nodejs@16.14.2-deb-1nodesource1
openssl@3.0.2-0ubuntu1.9
no fix listed
3.0.2-0ubuntu1.25

Open the chart page →

9,835
yugawareyugabyteVerified publisher2026.1.11 of 3See more

yugaware yugabyte 2026.1.1

1 of the 3 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
library/postgres:14.22eba8ddbdd837
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

2,640
plausible-analyticszekker6Verified publisher1.4.01 of 2See more

plausible-analytics zekker6 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v3.2.133e60bfb40f2
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,170
velero-notificationszokeber-velero-notificationsVerified publisher0.1.101 of 2See more

velero-notifications zokeber-velero-notifications 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
ghcr.io/zokeber/velero-notifications:0.0.176d84f6c4ce20
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

728
backendzymtraceOfficialVerified publisher26.9.14 of 6See more

backend zymtrace 26.9.1

4 of the 6 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.3.14.14b627d7a9bc0e
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.25
library/postgres:17.4304ab8135187
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
ghcr.io/zystem-io/zymtrace-pub-gateway:26.9.1da0b5eb7721a
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25
ghcr.io/zystem-io/zymtrace-pub-ui:26.9.1e951adf792cd
openssl@3.5.0-r0
3.5.7-r0

Open the chart page →

10,432
acos-prometheus-exporter-helm-charta10-prometheus-exporter0.1.01 of 1See more

acos-prometheus-exporter-helm-chart a10-prometheus-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
a10networks/acos-prometheus-exporter:latest8dc58d434d71
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

12,041
aaqaaqVerified publisher0.3.01 of 1See more

aaq aaq 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
quay.io/kubevirt/aaq-operator:v1.7.0d28a2daa5b15
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

1,016
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

4,577
active-mqactivemq-helm-chartVerified publisher1.8.21 of 3See more

active-mq activemq-helm-chart 1.8.2

1 of the 3 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.44.00305c26f19ed
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11

Open the chart page →

3,232
open5gsadaptivenetlabVerified publisher1.0.32 of 3See more

open5gs adaptivenetlab 1.0.3

2 of the 3 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
free5gmano/nextepc-mongodb:latest36f806935519
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

25,531
linkstackadnoctemVerified publisher0.4.01 of 1See more

linkstack adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
linkstackorg/linkstack:latest1c8b05399ee4
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

2,092
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-34180.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

30,326

Container images carrying it

2,434 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
speckle/speckle-webhook-service:2.17.14-branch.testing.72707.921a5f899913052b72e
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
speckle/speckle-webhook-service:2.26.3c58eb372c488
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
1
speckle/speckle-webhook-service:2.20.6-branch.testing1.154030-9b09114cf1d99bad89a
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
speckle/speckle-webhook-service:2.25.10-branch.testing6.645-b125c1edd9db6cbe9bb
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
1
spy86/rabbitmq-stomp:latestea649101b9fb
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2actionrunner:3.888235ba70cad
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2api:3.86f56d239d280
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2auth:3.833ecfda16608
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2notifier:3.8f190a6212195
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2rulesengine:3.8259503496ff9
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2scheduler:3.8b1de2055c362
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2sensorcontainer:3.8b1a338f64773
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2stream:3.81c8904a3bf67
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2timersengine:3.81bf35bfaf00c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2web:3.809989a26c8b7
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stackstorm/st2workflowengine:3.819fdfffdbba8
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
stalwartlabs/stalwart:v0.15.5dcf575db2d53
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
1
stashapp/stash:latest24dbd7607174
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.24+esm4
1
stashapp/stash:v0.31.1df744af5a0c9
openssl@3.5.5-r0
3.5.7-r0
1
stashapp/stash-box:latesta534c8afdf39
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
statcan/ckan:2.93921305425b8
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4
1
structurizr/onpremises:2025.11.094b5ffb5119c8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
substratusai/verba:v0.4.0-baseURL261695be635eb
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
supabase/edge-runtime:v1.74.02781daf92394
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
1
supabase/edge-runtime:v1.59.0eff9c554d649
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
1
supabase/gotrue:v2.189.0385184459f57
openssl@3.5.6-r0
3.5.7-r0
1
supabase/postgres:17.6.1.136f371b5f3f2ac
openssl@3.5.6-r0
3.5.7-r0
1
supabase/postgres-meta:v0.96.6a84cc713585e
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
1
supabase/postgres-meta:v0.84.2d0a96973e9f1
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
1
supabase/realtime:v2.102.3aa1c92c0cf32
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2
1
supabase/realtime:v2.33.8d207e6e23ad3
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
1
supabase/storage-api:v1.60.4c8eb9858eafe
openssl@3.5.6-r0
3.5.7-r0
1
supabase/studio:20241021-9f9b08326d8070c55e9
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
1
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm4
1
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.25
1
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm4
1
syepes/network_exporter:1.8.000af1691570e
openssl@3.5.1-r0
3.5.7-r0
1
syncthing/syncthing:2.1.07c60eb0ec887
openssl@3.5.6-r0
3.5.7-r0
1
sysadminsmedia/homebox:0.26.056e880b62309
openssl@3.5.6-r0
3.5.7-r0
1
sysnet4admin/colosseum-agg:logbc25b152d88e
openssl@3.0.2-0ubuntu1.25
no fix listed
1
sysnet4admin/colosseum-cms:loge74b43c7f492
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
1
sysnet4admin/colosseum-rwd:log74ded2d92f07
openssl@3.5.1-1+deb13u1
3.5.6-1~deb13u2
1
tailscale/tailscale:v1.96.5dbeff02d2337
openssl@3.5.5-r0
3.5.7-r0
1
teknas09/bird-pod:latest12a1fa85c4aa
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
temporalio/admin-tools:1.29.1-tctl-1.18.4-cli-1.5.0a3a52e6ca122
openssl@3.5.0-r0
3.5.7-r0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.