StackRadar

CVE-2026-35189

Low

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Low
worst across findings
CVSS
2.0
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,971
of 17,966 indexed, latest versions
Container images
3,013
deployed by those charts
Fix available
3 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,971 of 17,966 indexed charts deploy, on 3,013 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+122 more1.0.1f-1ubuntu2.27+esm17, 1.0.2g-1ubuntu4.20+esm19, 1.1.1-1ubuntu2.1~18.04.23+esm11, 1.1.1f-1ubuntu2.24+esm6+4 more2,713
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2300
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm722
OSV records
UBUNTU-CVE-2026-35189ALPINE-CVE-2026-35189DEBIAN-CVE-2026-35189ECHO-312d-f531-8c85
Also known as
USN-8847-1, USN-8847-2
Trending
Rank 5 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,971 by stars
ChartLatestAffected imagesRadar Score
validatorchronicleVerified publisher0.8.21 of 1See more

validator chronicle 0.8.2

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/ghost:0.81.0417b664eee72
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

469
claude-code-hubclaude-code-hub0.1.02 of 4See more

claude-code-hub claude-code-hub 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/redis:7-alpine520775a41a63
openssl@3.3.7-r1
3.3.7-r2
ghcr.io/ding113/claude-code-hub:latest87f9e8a92bd7
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,336
clickhouseclickhouse-alerthawkVerified publisher26.5.01 of 1See more

clickhouse clickhouse-alerthawk 26.5.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.584d05b9c205e
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30

Open the chart page →

2,001
cloudflared-ingress-operatorcloudflared-ingress-operatorVerified publisher0.3.21 of 1See more

cloudflared-ingress-operator cloudflared-ingress-operator 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/livepeer/cloudflared-ingress-operator:latestc179cdcaa050
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u3

Open the chart page →

2,057
cloudflare-tunnelcloudflare-tunnelVerified publisher0.16.71 of 1See more

cloudflare-tunnel cloudflare-tunnel 0.16.7

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.9.3072c067d25cc
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

396
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
openssl@1.0.2g-1ubuntu4.10
1.0.2g-1ubuntu4.20+esm19

Open the chart page →

96,019
bastioncloudposse0.2.01 of 2See more

bastion cloudposse 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
cloudposse/bastion:latest0d9507e8a760
openssl@3.3.6-r0
3.3.7-r2

Open the chart page →

1,835
cloudttycloudtty0.8.101 of 2See more

cloudtty cloudtty 0.8.10

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/cloudtty/cloudshell-operator:v0.8.1014f036e33ef1
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

3,380
clustereye-stackclustereyeVerified publisher0.1.12 of 5See more

clustereye-stack clustereye 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
openssl@3.0.2-0ubuntu1.16
3.0.2-0ubuntu1.30
johnblack77/clustereye-api:latest16c25fd2128c
openssl@3.3.7-r1
3.3.7-r2

Open the chart page →

4,905
clusternet-hubclusternet1.0.01 of 1See more

clusternet-hub clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
openssl@3.3.2-r4
3.3.7-r2

Open the chart page →

1,668
clusternet-schedulerclusternet1.0.01 of 1See more

clusternet-scheduler clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
openssl@3.3.2-r4
3.3.7-r2

Open the chart page →

1,668
cluster-setupcluster-setup1.5.03 of 8See more

cluster-setup cluster-setup 1.5.0

3 of the 8 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
openssl@3.3.3-r0
3.3.7-r2
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
openssl@3.3.3-r0
3.3.7-r2
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16

Open the chart page →

10,933
dawarichcogitriVerified publisher2.9.21 of 3See more

dawarich cogitri 2.9.2

1 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
freikin/dawarich:1.15.2e58334ca5697
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

6,600
commonground-gatewaycommonground-gateway1.5.41 of 7See more

commonground-gateway commonground-gateway 1.5.4

1 of the 7 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
openssl@3.0.9-1
no fix listed

Open the chart page →

10,108
cosmotech-copilot-apicosmotech-apiVerified publisher0.1.11 of 1See more

cosmotech-copilot-api cosmotech-api 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

12,501
oci-registrycronce0.4.51 of 1See more

oci-registry cronce 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
mcronce/oci-registry:v0.4.509519cd7bd2f
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

1,444
cryptlex-enterprisecryptlex3.21.281 of 8See more

cryptlex-enterprise cryptlex 3.21.28

1 of the 8 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/redis:7-alpine520775a41a63
openssl@3.3.7-r1
3.3.7-r2

Open the chart page →

1,218
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

14,832
nifid4nVerified publisher2.0.01 of 5See more

nifi d4n 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.30

Open the chart page →

5,889
dagrondagron-workflowVerified publisher0.9.32 of 3See more

dagron dagron-workflow 0.9.3

2 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
mancube/dagron-api:0.9.3420cca8d5687
openssl@3.0.20-1~deb12u2
no fix listed
mancube/dagron-engine:0.9.324b3d2ab6980
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,206
dagster-cloud-agentdagster-cloudVerified publisher1.13.241 of 1See more

dagster-cloud-agent dagster-cloud 1.13.24

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
dagster/dagster-cloud-agent:1.13.24e29285673c2c
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,165
aibrixdanchevVerified publisher0.7.03 of 5See more

aibrix danchev 0.7.0

3 of the 5 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
aibrix/gateway-plugins:v0.7.05b93ea4c753a
openssl@3.0.20-1~deb12u2
no fix listed
aibrix/metadata-service:v0.7.063fb81a64377
openssl@3.0.15-1~deb12u1
no fix listed
library/redis:7.4c6eabf748fc7
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

6,029
data-fairdata354-helmVerified publisher1.1.23 of 12See more

data-fair data354-helm 1.1.2

3 of the 12 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm6
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm6
ghcr.io/data-fair/notify:3c739b74dabb0
openssl@3.3.3-r0
3.3.7-r2

Open the chart page →

40,598
datacube-explorerdatacube-charts0.5.341 of 1See more

datacube-explorer datacube-charts 0.5.34

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/opendatacube/explorer:latest7c25578068cd
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

1,723
dbrepodbrepo1.13.315 of 25See more

dbrepo dbrepo 1.13.3

15 of the 25 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/openldap:2.6.8-debian-12-r16e412c178ef9
openssl@3.0.11-1~deb12u2
no fix listed
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/valkey:latest0384ca2eec63
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

56,801
defguarddefguard2.1.01 of 2See more

defguard defguard 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/defguard/defguard:2.1.0df2e31d3b4f5
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,061
mealiedeimosfr-charts1.0.161 of 1See more

mealie deimosfr-charts 1.0.16

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.28.08b02290f4d18
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

3,386
kubedashdevopstalesOfficialVerified publisher4.0.02 of 8See more

kubedash devopstales 4.0.0

2 of the 8 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/postgres:18.3a9abf4275f9e
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u3
library/redis:8.6.2009cc37796fb
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u3

Open the chart page →

10,177
dial-coredialOfficialVerified publisher6.0.01 of 2See more

dial-core dial 6.0.0

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,790
powershelluniversaldigitalhubVerified publisher0.1.21 of 1See more

powershelluniversal digitalhub 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

78,744
directusdirectus-io2.1.02 of 3See more

directus directus-io 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
openssl@3.0.17-1~deb12u1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

8,491
dokudokuOfficialVerified publisher0.1.41 of 3See more

doku doku 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:latesta73b5c0fb6f8
openssl@3.0.2-0ubuntu1.29
3.0.2-0ubuntu1.30

Open the chart page →

1,869
dominodominoVerified publisher0.1.112 of 3See more

domino domino 0.1.11

2 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u3
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

9,590
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
openssl@3.0.2-0ubuntu1.17
3.0.2-0ubuntu1.30

Open the chart page →

77,112
dragonfly-stackdragonflyVerified publisher0.1.21 of 7See more

dragonfly-stack dragonfly 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

19,521
craftycontrollerdrewburr-labs-helm-chartsVerified publisher0.3.01 of 1See more

craftycontroller drewburr-labs-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
registry.gitlab.com/crafty-controller/crafty-4:latest7b6e87514259
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16

Open the chart page →

38,724
nginx-phpfpmdrpsychickVerified publisher0.1.11 of 2See more

nginx-phpfpm drpsychick 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,822
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16

Open the chart page →

74,893
dyff-orchestratordyff-orchestratorVerified publisher0.22.191 of 1See more

dyff-orchestrator dyff-orchestrator 0.22.19

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,598
jenkinsedu2.7.11 of 2See more

jenkins edu 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

4,831
glpieftechcombr-glpiVerified publisher2.12.13 of 5See more

glpi eftechcombr-glpi 2.12.1

3 of the 5 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
eftechcombr/glpi:nginx-12.0.0-rc2e5db0c32f930
openssl@3.3.3-r0
3.3.7-r2
library/mariadb:12.3.2a02fe89cb597
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.16
valkey/valkey:9.1.08e8d64b405ce
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

5,203
elastalert2elastalert22.31.01 of 1See more

elastalert2 elastalert2 2.31.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
jertel/elastalert2:2.31.03cbf63f9b7dc
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,182
elchi-stackelchi2.0.04 of 10See more

elchi-stack elchi 2.0.0

4 of the 10 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.81ffa82edee00
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm6
envoyproxy/envoy:v1.39.0d59f7f5fa10c
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.30
jhonbrownn/elchi-backend:v1.6.15-v0.14.0-envoy1.39.017b1391be4a8
openssl@3.3.7-r1
3.3.7-r2
library/mongo:6.0.12646902910d6a
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30

Open the chart page →

15,480
emqx-eeemqx-operator4.4.381 of 2See more

emqx-ee emqx-operator 4.4.38

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
emqx/emqx-ee:4.4.38d48360ed86f4
openssl@3.3.7-r0
3.3.7-r2

Open the chart page →

273
emqx-enterpriseemqx-operator6.3.11 of 1See more

emqx-enterprise emqx-operator 6.3.1

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
emqx/emqx-enterprise:6.3.15ecbf93d04e3
openssl@3.5.7-1~deb13u2+dhi1
3.5.7-1~deb13u3

Open the chart page →

650
enbuildenbuildVerified publisher0.0.505 of 6See more

enbuild enbuild 0.0.50

5 of the 6 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
openssl@3.5.6-1~deb13u2
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u3
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
openssl@3.0.20-1~deb12u1
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-user:1.0.31d8a9cd4e1ae3
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

34,052
kubevirtencircle360-ossVerified publisher0.2.11 of 1See more

kubevirt encircle360-oss 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
quay.io/kubevirt/virt-operator:v1.7.037d2ef21e3e5
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

986
roundcubeencircle360-ossVerified publisher0.8.31 of 1See more

roundcube encircle360-oss 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

6,278
eoapieoapiOfficialVerified publisher0.16.32 of 7See more

eoapi eoapi 0.16.3

2 of the 7 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.27.4-alpine62a904036bfc
openssl@3.3.3-r0
3.3.7-r2
ghcr.io/stac-utils/stac-fastapi-pgstac:7.0.08b026c47cc1b
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

3,375
paraerudikaVerified publisher0.3.01 of 1See more

para erudika 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
erudikaltd/para:latest_stable235e0bc53da2
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6

Open the chart page →

1,488

Container images carrying it

3,013 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
polyaxon/polyaxon-api:2.17.0163707082036
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
polyaxon/polyaxon-streams:2.17.0a5fec70e757b
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
pomerium/verify:latest8e07d2f94e69
openssl@3.0.20-1~deb12u2
no fix listed
1
posit/package-manager:2026.09.0-ubuntu-24.0468d47a7a8166
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
postgis/postgis:18-3.67e00e8c3539f
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
powerdns/pdns-recursor-54:5.4.533aadc74a8d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
pozetroninc/keydb:v6.0.1653ae64f29da8
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm11
1
praravind1801/helmimages:3.0.0f29d637b9ce1
openssl@3.0.11-1~deb12u2
no fix listed
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
openssl@3.0.13-1~deb12u1
no fix listed
1
prefecthq/prefect:3.8.7-python3.11b3cdfebebff0
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
prefecthq/prometheus-prefect-exporter:4.1.06e0e79cabdc2
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
pretix/standalone:2026.7.05df3b7aa852e
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
probely/farcaster-onprem-agent:v3741b34e8166f
openssl@3.0.20-1~deb12u2
no fix listed
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
openssl@3.5.1-1
3.5.7-1~deb13u3
1
project2team4/react:latest3ff031a08887
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm6
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.16
1
promzeus/redis-sentinel-gateway:v182f6d56e280b
openssl@3.0.14-1~deb12u2
no fix listed
1
prowlercloud/prowler-api:5.31.14f252d579be2
openssl@3.0.20-1~deb12u2
no fix listed
1
proxysql/proxysql:3.0.8947a7abad45b
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u3
1
proxysql/proxysql:2.7.3a4d6c35c2949
openssl@3.0.15-1~deb12u1
no fix listed
1
pschichtel/mindustry-server:v145.1b543e9c2d371
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.30
1
psorab/elibrary:latest53b68896c4ce
openssl@1.1.1f-1ubuntu2.18
1.1.1f-1ubuntu2.24+esm6
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm6
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
openssl@1.1.1-1ubuntu2.1~18.04.15
1.1.1-1ubuntu2.1~18.04.23+esm11
1
qdrant/qdrant:v1.15.331407c0e8e32
openssl@3.0.17-1~deb12u2
no fix listed
1
qdrant/qdrant:v1.7.45f2a56b95266
openssl@3.0.11-1~deb12u2
no fix listed
1
qdrant/qdrant:v1.4.166ee661d5241
openssl@3.0.9-1
no fix listed
1
qjoly/kubernetes-coffee-image:simple9f0c5ce8b5d7
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
qonstrukt/php:8.4-v8-apache089af7925aa1
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
1
quickwit/quickwit:v0.8.1d29332bdadcc
openssl@3.0.11-1~deb12u2
no fix listed
1
qumine/minecraft-server:v0.1.15c0b650d51132
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.30
1
rabeh/apibootspring:1.0941007b6946e
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm19
1
razorbladex401/dayz:latest6a4d79248e7d
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.30
1
readysettech/sqp:latest588f3507280e
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
readysettech/sqp-duckdb:latest67a83203ce60
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
reallibrephotos/librephotos-proxy:1.0.398a13dabbadc
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
reaper99/recipya:v1.2.27f7ec3aeb88c
openssl@3.3.2-r4
3.3.7-r2
1
redash/redash:25.8.000d813437db5
openssl@3.0.17-1~deb12u1
no fix listed
1
redash/redash:26.3.0c5c9148f5c38
openssl@3.0.18-1~deb12u2
no fix listed
1
redimp/otterwiki:2d87a26b98d1a
openssl@3.0.20-1~deb12u2
no fix listed
1
redis/redisinsight:3.2.055542a762210
openssl@3.3.6-r0
3.3.7-r2
1
redis/redis-stack-server:6.2.6-v251a58f32d412
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm6
1
redis/redis-stack-server:latest798ab84d9f26
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.30
1
redis/redis-stack-server:7.4.0-v0887cf87cc744
openssl@3.0.2-0ubuntu1.16
3.0.2-0ubuntu1.30
1
redpandadata/redpanda:latest9e83cfa99278
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
reportportal/service-auto-analyzer:5.15.5c449b93629a5
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
resouer/redis-slave:v2e2f198b49ba7
openssl@1.0.1f-1ubuntu2.8
1.0.1f-1ubuntu2.27+esm17
1

syft 1.42.1 · advisories as of 1 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.