StackRadar

CVE-2026-35189

Low

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Low
worst across findings
CVSS
2.0
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,971
of 17,966 indexed, latest versions
Container images
3,013
deployed by those charts
Fix available
3 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,971 of 17,966 indexed charts deploy, on 3,013 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+122 more1.0.1f-1ubuntu2.27+esm17, 1.0.2g-1ubuntu4.20+esm19, 1.1.1-1ubuntu2.1~18.04.23+esm11, 1.1.1f-1ubuntu2.24+esm6+4 more2,713
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2300
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm722
OSV records
UBUNTU-CVE-2026-35189ALPINE-CVE-2026-35189DEBIAN-CVE-2026-35189ECHO-312d-f531-8c85
Also known as
USN-8847-1, USN-8847-2
Trending
Rank 5 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,971 by stars
ChartLatestAffected imagesRadar Score
validatorchronicleVerified publisher0.8.21 of 1See more

validator chronicle 0.8.2

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/chronicleprotocol/ghost:0.81.0417b664eee72
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

469
claude-code-hubclaude-code-hub0.1.02 of 4See more

claude-code-hub claude-code-hub 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/redis:7-alpine520775a41a63
openssl@3.3.7-r1
3.3.7-r2
ghcr.io/ding113/claude-code-hub:latest87f9e8a92bd7
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,336
clickhouseclickhouse-alerthawkVerified publisher26.5.01 of 1See more

clickhouse clickhouse-alerthawk 26.5.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.584d05b9c205e
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30

Open the chart page →

2,001
cloudflared-ingress-operatorcloudflared-ingress-operatorVerified publisher0.3.21 of 1See more

cloudflared-ingress-operator cloudflared-ingress-operator 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/livepeer/cloudflared-ingress-operator:latestc179cdcaa050
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u3

Open the chart page →

2,057
cloudflare-tunnelcloudflare-tunnelVerified publisher0.16.71 of 1See more

cloudflare-tunnel cloudflare-tunnel 0.16.7

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.9.3072c067d25cc
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

396
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
openssl@1.0.2g-1ubuntu4.10
1.0.2g-1ubuntu4.20+esm19

Open the chart page →

96,019
bastioncloudposse0.2.01 of 2See more

bastion cloudposse 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
cloudposse/bastion:latest0d9507e8a760
openssl@3.3.6-r0
3.3.7-r2

Open the chart page →

1,835
cloudttycloudtty0.8.101 of 2See more

cloudtty cloudtty 0.8.10

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/cloudtty/cloudshell-operator:v0.8.1014f036e33ef1
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

3,380
clustereye-stackclustereyeVerified publisher0.1.12 of 5See more

clustereye-stack clustereye 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
openssl@3.0.2-0ubuntu1.16
3.0.2-0ubuntu1.30
johnblack77/clustereye-api:latest16c25fd2128c
openssl@3.3.7-r1
3.3.7-r2

Open the chart page →

4,905
clusternet-hubclusternet1.0.01 of 1See more

clusternet-hub clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
openssl@3.3.2-r4
3.3.7-r2

Open the chart page →

1,668
clusternet-schedulerclusternet1.0.01 of 1See more

clusternet-scheduler clusternet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
openssl@3.3.2-r4
3.3.7-r2

Open the chart page →

1,668
cluster-setupcluster-setup1.5.03 of 8See more

cluster-setup cluster-setup 1.5.0

3 of the 8 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.43.10881d3c9359b
openssl@3.3.3-r0
3.3.7-r2
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
openssl@3.3.3-r0
3.3.7-r2
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16

Open the chart page →

10,933
dawarichcogitriVerified publisher2.9.21 of 3See more

dawarich cogitri 2.9.2

1 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
freikin/dawarich:1.15.2e58334ca5697
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

6,600
commonground-gatewaycommonground-gateway1.5.41 of 7See more

commonground-gateway commonground-gateway 1.5.4

1 of the 7 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
openssl@3.0.9-1
no fix listed

Open the chart page →

10,108
cosmotech-copilot-apicosmotech-apiVerified publisher0.1.11 of 1See more

cosmotech-copilot-api cosmotech-api 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

12,501
oci-registrycronce0.4.51 of 1See more

oci-registry cronce 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
mcronce/oci-registry:v0.4.509519cd7bd2f
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

1,444
cryptlex-enterprisecryptlex3.21.281 of 8See more

cryptlex-enterprise cryptlex 3.21.28

1 of the 8 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/redis:7-alpine520775a41a63
openssl@3.3.7-r1
3.3.7-r2

Open the chart page →

1,218
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

14,832
nifid4nVerified publisher2.0.01 of 5See more

nifi d4n 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.30

Open the chart page →

5,889
dagrondagron-workflowVerified publisher0.9.32 of 3See more

dagron dagron-workflow 0.9.3

2 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
mancube/dagron-api:0.9.3420cca8d5687
openssl@3.0.20-1~deb12u2
no fix listed
mancube/dagron-engine:0.9.324b3d2ab6980
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,206
dagster-cloud-agentdagster-cloudVerified publisher1.13.241 of 1See more

dagster-cloud-agent dagster-cloud 1.13.24

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
dagster/dagster-cloud-agent:1.13.24e29285673c2c
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,165
aibrixdanchevVerified publisher0.7.03 of 5See more

aibrix danchev 0.7.0

3 of the 5 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
aibrix/gateway-plugins:v0.7.05b93ea4c753a
openssl@3.0.20-1~deb12u2
no fix listed
aibrix/metadata-service:v0.7.063fb81a64377
openssl@3.0.15-1~deb12u1
no fix listed
library/redis:7.4c6eabf748fc7
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

6,029
data-fairdata354-helmVerified publisher1.1.23 of 12See more

data-fair data354-helm 1.1.2

3 of the 12 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm6
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm6
ghcr.io/data-fair/notify:3c739b74dabb0
openssl@3.3.3-r0
3.3.7-r2

Open the chart page →

40,598
datacube-explorerdatacube-charts0.5.341 of 1See more

datacube-explorer datacube-charts 0.5.34

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/opendatacube/explorer:latest7c25578068cd
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

1,723
dbrepodbrepo1.13.315 of 25See more

dbrepo dbrepo 1.13.3

15 of the 25 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/openldap:2.6.8-debian-12-r16e412c178ef9
openssl@3.0.11-1~deb12u2
no fix listed
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/valkey:latest0384ca2eec63
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

56,801
defguarddefguard2.1.01 of 2See more

defguard defguard 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/defguard/defguard:2.1.0df2e31d3b4f5
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,061
mealiedeimosfr-charts1.0.161 of 1See more

mealie deimosfr-charts 1.0.16

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.28.08b02290f4d18
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

3,386
kubedashdevopstalesOfficialVerified publisher4.0.02 of 8See more

kubedash devopstales 4.0.0

2 of the 8 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/postgres:18.3a9abf4275f9e
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u3
library/redis:8.6.2009cc37796fb
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u3

Open the chart page →

10,177
dial-coredialOfficialVerified publisher6.0.01 of 2See more

dial-core dial 6.0.0

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,790
powershelluniversaldigitalhubVerified publisher0.1.21 of 1See more

powershelluniversal digitalhub 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

78,744
directusdirectus-io2.1.02 of 3See more

directus directus-io 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
openssl@3.0.17-1~deb12u1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

8,491
dokudokuOfficialVerified publisher0.1.41 of 3See more

doku doku 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:latesta73b5c0fb6f8
openssl@3.0.2-0ubuntu1.29
3.0.2-0ubuntu1.30

Open the chart page →

1,869
dominodominoVerified publisher0.1.112 of 3See more

domino domino 0.1.11

2 of the 3 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u3
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

9,590
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
openssl@3.0.2-0ubuntu1.17
3.0.2-0ubuntu1.30

Open the chart page →

77,112
dragonfly-stackdragonflyVerified publisher0.1.21 of 7See more

dragonfly-stack dragonfly 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

19,521
craftycontrollerdrewburr-labs-helm-chartsVerified publisher0.3.01 of 1See more

craftycontroller drewburr-labs-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
registry.gitlab.com/crafty-controller/crafty-4:latest7b6e87514259
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16

Open the chart page →

38,724
nginx-phpfpmdrpsychickVerified publisher0.1.11 of 2See more

nginx-phpfpm drpsychick 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,822
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16

Open the chart page →

74,893
dyff-orchestratordyff-orchestratorVerified publisher0.22.191 of 1See more

dyff-orchestrator dyff-orchestrator 0.22.19

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,598
jenkinsedu2.7.11 of 2See more

jenkins edu 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

4,831
glpieftechcombr-glpiVerified publisher2.12.13 of 5See more

glpi eftechcombr-glpi 2.12.1

3 of the 5 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
eftechcombr/glpi:nginx-12.0.0-rc2e5db0c32f930
openssl@3.3.3-r0
3.3.7-r2
library/mariadb:12.3.2a02fe89cb597
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.16
valkey/valkey:9.1.08e8d64b405ce
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

5,203
elastalert2elastalert22.31.01 of 1See more

elastalert2 elastalert2 2.31.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
jertel/elastalert2:2.31.03cbf63f9b7dc
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,182
elchi-stackelchi2.0.04 of 10See more

elchi-stack elchi 2.0.0

4 of the 10 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.81ffa82edee00
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm6
envoyproxy/envoy:v1.39.0d59f7f5fa10c
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.30
jhonbrownn/elchi-backend:v1.6.15-v0.14.0-envoy1.39.017b1391be4a8
openssl@3.3.7-r1
3.3.7-r2
library/mongo:6.0.12646902910d6a
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30

Open the chart page →

15,480
emqx-eeemqx-operator4.4.381 of 2See more

emqx-ee emqx-operator 4.4.38

1 of the 2 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
emqx/emqx-ee:4.4.38d48360ed86f4
openssl@3.3.7-r0
3.3.7-r2

Open the chart page →

273
emqx-enterpriseemqx-operator6.3.11 of 1See more

emqx-enterprise emqx-operator 6.3.1

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
emqx/emqx-enterprise:6.3.15ecbf93d04e3
openssl@3.5.7-1~deb13u2+dhi1
3.5.7-1~deb13u3

Open the chart page →

650
enbuildenbuildVerified publisher0.0.505 of 6See more

enbuild enbuild 0.0.50

5 of the 6 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
openssl@3.5.6-1~deb13u2
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u3
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
openssl@3.0.20-1~deb12u1
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-user:1.0.31d8a9cd4e1ae3
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

34,052
kubevirtencircle360-ossVerified publisher0.2.11 of 1See more

kubevirt encircle360-oss 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
quay.io/kubevirt/virt-operator:v1.7.037d2ef21e3e5
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

986
roundcubeencircle360-ossVerified publisher0.8.31 of 1See more

roundcube encircle360-oss 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

6,278
eoapieoapiOfficialVerified publisher0.16.32 of 7See more

eoapi eoapi 0.16.3

2 of the 7 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.27.4-alpine62a904036bfc
openssl@3.3.3-r0
3.3.7-r2
ghcr.io/stac-utils/stac-fastapi-pgstac:7.0.08b026c47cc1b
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

3,375
paraerudikaVerified publisher0.3.01 of 1See more

para erudika 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-35189.

Container imageDigestPackageFixed in
erudikaltd/para:latest_stable235e0bc53da2
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6

Open the chart page →

1,488

Container images carrying it

3,013 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
yandex/clickhouse-server:19.14ccf9c2b5e3f2
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm11
1
yandex/clickhouse-server:19.16d210dc69321e
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm11
1
yanickxia/recho:latest117516fc2e46
openssl@3.0.14-1~deb12u2
no fix listed
1
ybucci/traefik-external-dns-controller:2.3.0cc22a16fac81
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ybucci/traefik-external-dns-operator:1.0.0f1fcc7c8d9fd
openssl@3.3.3-r0
3.3.7-r2
1
yetiplatform/bloomcheck:dev85683ddfccbb
openssl@3.3.3-r0
3.3.7-r2
1
yetiplatform/yeti:2.9.09bcbe2650a14
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
yetiplatform/yeti:latest9c3006cedcca
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
yetiplatform/yeti-frontend:latest709064278c7e
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
yetiplatform/yeti-frontend:2.9.0873ef15d267b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
yidadaa/chatgpt-next-web:latesteaaa469ddeeb
openssl@3.3.3-r0
3.3.7-r2
1
youkadev/api-snap:0.1.14db0f9428e67
openssl@3.0.11-1~deb12u2
no fix listed
1
youssef11gaber10/flask-service:latest9c727fcfde76
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u3
1
yuzutech/kroki-bpmn:0.29.1444805c4b917
openssl@3.3.5-r0
3.3.7-r2
1
yuzutech/kroki-diagramsnet:0.29.1b810edbf9c62
openssl@3.3.5-r0
3.3.7-r2
1
yuzutech/kroki-excalidraw:0.29.157917319ea70
openssl@3.3.5-r0
3.3.7-r2
1
yuzutech/kroki-mermaid:0.29.1963b4acfde6e
openssl@3.3.5-r0
3.3.7-r2
1
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm6
1
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm6
1
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm6
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm11
1
zenmldocker/kitaru-server:0.27.1f1c4675a188b
openssl@3.0.20-1~deb12u2
no fix listed
1
zenmldocker/zenml-server:0.97.0aaa74934d606
openssl@3.0.20-1~deb12u2
no fix listed
1
zepai/knowledge-graph-mcp:v0.2.16ab0ee79926b
openssl@3.0.16-1~deb12u1
no fix listed
1
zer0tonin/mikochi:1.12.0f7ee3fe7ee6b
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6
1
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30
1
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30
1
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
gcr.io/datadoghq/observability-pipelines-worker:2.23.0cf56b011dfff
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
openssl@1.1.1-1ubuntu2.1~18.04.5
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.23+esm11
1.0.2n-1ubuntu5.13+esm7
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm6
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm6
1
gcr.io/istio-testing/install-cni:latestec6f9ea5757b
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.16
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30
1

syft 1.42.1 · advisories as of 1 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.