StackRadar

CVE-2026-42766

Medium

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.011
63rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,436
of 17,803 indexed, latest versions
Container images
2,706
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-42766 affecting package openssl for versions less than 3.3.7-3

Carried by container images the latest versions of 2,436 of 17,803 indexed charts deploy, on 2,706 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+103 more1.0.1f-1ubuntu2.27+esm14, 1.0.2g-1ubuntu4.20+esm16, 1.1.1-1ubuntu2.1~18.04.23+esm9, 1.1.1f-1ubuntu2.24+esm4+6 more1,786
opensslapk3.2.0-r0, 3.3.1-r3, 3.3.1-r4, 3.3.2-r0+21 more3.3.7-r1, 3.5.7-r0, 3.6.3-r0915
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm515
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-35
OSV records
ALPINE-CVE-2026-42766CGA-9fv6-c4c7-7xwrDEBIAN-CVE-2026-42766UBUNTU-CVE-2026-42766AZL-89943
Also known as
CGA-9mqf-xpvc-p77x, CGA-gf26-66cr-92gv, CGA-x9j4-77f9-qvfv, USN-8414-1, USN-8414-2

Charts affected

2,436 by stars
ChartLatestAffected imagesRadar Score
atlas-cmmsf3k-techVerified publisher0.151.51 of 4See more

atlas-cmms f3k-tech 0.151.5

1 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
intelloop/atlas-cmms-backend:v1.5.14c61bc3dd3f8
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

5,285
cap-captcha-serverf3k-techVerified publisher0.21.01 of 1See more

cap-captcha-server f3k-tech 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
tiago2/cap:2.159f5ae4e261e
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

1,713
recaptcha-v3-verifierf3k-techVerified publisher1.110.01 of 1See more

recaptcha-v3-verifier f3k-tech 1.110.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
f3ktech/recaptcha-v3-verifier:1.1.048e78987cf91
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2

Open the chart page →

1,238
fastapi-microservice-appfast-api-microservice-app1.3.04 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

4 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
openssl@3.0.2-0ubuntu1.26
no fix listed
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
omkara25/simple-microservice-app-user-service:v2d62cba548580
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

9,744
featurehubfeaturehub4.1.63 of 7See more

featurehub featurehub 4.1.6

3 of the 7 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
featurehub/dacha2:1.9.1c8d5551b5e40
openssl@3.3.3-r0
3.3.7-r1
featurehub/edge:1.9.198ad426737f6
openssl@3.3.3-r0
3.3.7-r1
featurehub/mr:1.9.1477d8bf771a9
openssl@3.3.3-r0
3.3.7-r1

Open the chart page →

8,684
taigafermosit0.0.111 of 7See more

taiga fermosit 0.0.11

1 of the 7 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
taigaio/taiga-protected:latestfd4568a97a59
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

8,596
zabbix-server-mysqlfermosit3.0.23 of 4See more

zabbix-server-mysql fermosit 3.0.2

3 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11

Open the chart page →

13,046
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
openssl@1.1.1-1ubuntu2.1~18.04.5
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.23+esm9
1.0.2n-1ubuntu5.13+esm5

Open the chart page →

75,837
function-mesh-operatorfunction-mesh0.2.431 of 1See more

function-mesh-operator function-mesh 0.2.43

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
streamnative/function-mesh:v0.28.077939c8aa269
openssl@3.3.7-r0
3.3.7-r1

Open the chart page →

336
memosgabe565Verified publisher0.17.01 of 1See more

memos gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/usememos/memos:0.24.04723d86e6797
openssl@3.3.2-r4
3.3.7-r1

Open the chart page →

1,475
garage-uigarage-uiVerified publisher0.12.11 of 1See more

garage-ui garage-ui 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
noooste/garage-ui:v0.12.10b68a9237da6
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

764
gateboardgateboard1.12.51 of 1See more

gateboard gateboard 1.12.5

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
udhos/gateboard:1.12.53acc0e7599bf
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,481
gateboard-discoverygateboard1.9.51 of 1See more

gateboard-discovery gateboard 1.9.5

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
udhos/gateboard-discovery:1.9.55567c9363c4c
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,207
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

17,548
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
nodejs@14.17.0-1nodesource1
openssl@1.1.1-1ubuntu2.1~18.04.9
openssl1.0@1.0.2n-1ubuntu5.6
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm9
1.0.2n-1ubuntu5.13+esm5

Open the chart page →

23,070
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm4
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm4
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

106,894
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

82,293
lazylibrariangeek-cookbookVerified publisher7.4.21 of 1See more

lazylibrarian geek-cookbook 7.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
linuxserver/lazylibrarian:version-1152df82f93d2560e233
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

11,722
network-ups-toolsgeek-cookbookVerified publisher6.4.21 of 1See more

network-ups-tools geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

14,020
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

11,614
ombigeek-cookbookVerified publisher11.5.21 of 1See more

ombi geek-cookbook 11.5.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.25

Open the chart page →

5,190
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

8,051
prowlarrgeek-cookbookVerified publisher4.5.21 of 1See more

prowlarr geek-cookbook 4.5.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

11,751
sabnzbdgeek-cookbookVerified publisher9.4.21 of 1See more

sabnzbd geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

10,302
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.25

Open the chart page →

13,285
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

15,907
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm4
haveagitgat/tdarr_node:2.00.101e3f9328327d
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

99,240
valheimgeek-cookbookVerified publisher4.4.21 of 1See more

valheim geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/lloesche/valheim-server:latest20fde516ce31
openssl@3.5.5-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

4,949
wireguardgeek-cookbookVerified publisher1.4.21 of 1See more

wireguard geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

7,714
gentrace-self-hostedgentrace-self-hostedVerified publisher0.1.32 of 9See more

gentrace-self-hosted gentrace-self-hosted 0.1.3

2 of the 9 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.8512bb8a21483
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm4
library/postgres:15.38775adb39f0d
openssl@3.0.9-1
3.0.20-1~deb12u2

Open the chart page →

15,819
geo-checkergeo-checkerVerified publisher5.0.01 of 1See more

geo-checker geo-checker 5.0.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ymuski/geo-checker:5.0.05ba7fd8c7bdc
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,459
ghostfolioghostfolioVerified publisher0.5.41 of 3See more

ghostfolio ghostfolio 0.5.4

1 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

3,169
gigapipegigapipeVerified publisher0.3.01 of 1See more

gigapipe gigapipe 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/metrico/gigapipe:v4.1.6caeb2652ce5e
openssl@3.3.7-r0
3.3.7-r1

Open the chart page →

657
leantimegissilabs1.3.01 of 2See more

leantime gissilabs 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/mariadb:10.6.218a16204dc96c
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

6,474
gotosocialgotosocialVerified publisher0.2.321 of 1See more

gotosocial gotosocial 0.2.32

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
superseriousbusiness/gotosocial:0.22.10078ca451dda
openssl@3.3.7-r0
3.3.7-r1

Open the chart page →

302
meta-monitoringgrafana1.3.01 of 2See more

meta-monitoring grafana 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
grafana/alloy:v1.4.306bdcbb51fc2
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11

Open the chart page →

3,594
IMgrycapOfficialVerified publisher1.8.01 of 3See more

IM grycap 1.8.0

1 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/grycap/im:latest06a16d4f279f
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11

Open the chart page →

4,217
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

10,200
haproxy-redis-sentinelhaproxy-redis-sentinelVerified publisher0.1.32 of 2See more

haproxy-redis-sentinel haproxy-redis-sentinel 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/haproxy:3.1-bookworm49a0a0d6f0b8
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

4,369
harp-proxyharp0.8.11 of 1See more

harp-proxy harp 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
makersquad/harp-proxy:0.8.1a40dd258c527
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

6,460
boundary-controllerhashicorpVerified publisher0.1.11 of 1See more

boundary-controller hashicorp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
hashicorp/boundary-enterprise:1.0.1-ent38d2f9bdee0d
openssl@3.3.7-r0
3.3.7-r1

Open the chart page →

303
boundary-workerhashicorpVerified publisher0.1.11 of 1See more

boundary-worker hashicorp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
hashicorp/boundary-enterprise:1.0.1-ent38d2f9bdee0d
openssl@3.3.7-r0
3.3.7-r1

Open the chart page →

303
hawkhawk1.1.52 of 4See more

hawk hawk 1.1.5

2 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.25

Open the chart page →

13,728
clickstackhdx-oss-v21.1.12 of 5See more

clickstack hdx-oss-v2 1.1.1

2 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.7-alpine258d43821508
openssl@3.5.4-r0
3.5.7-r0
library/mongo:5.0.32-focal3b6c281e1c08
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

4,765
headscale-uiheadscale-uiVerified publisher0.2.91 of 1See more

headscale-ui headscale-ui 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/gurucomputing/headscale-ui:2026.03.17015f5ba04bcb
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,491
app-blueprinthelm-app-blueprintVerified publisher0.2.11 of 1See more

app-blueprint helm-app-blueprint 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.27-alpine65e3e85dbaed
openssl@3.3.3-r0
3.3.7-r1

Open the chart page →

988
guacamolehelmforgeVerified publisher1.5.22 of 5See more

guacamole helmforge 1.5.2

2 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
library/postgres:17.5-bookwormfbcea1bd13b6
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

8,953
uptime-kumahelmforgeVerified publisher1.5.131 of 1See more

uptime-kuma helmforge 1.5.13

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

30,514
velerohelmforgeVerified publisher1.4.101 of 2See more

velero helmforge 1.4.10

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
velero/velero:v1.18.237396519f399
openssl@3.0.2-0ubuntu1.25
no fix listed

Open the chart page →

1,452
helmuphelmupVerified publisher0.1.03 of 3See more

helmup helmup 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
sirrend/helmup-engine:0.1.13699e79e3d4e2
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
sirrend/helmup-notifications-service:0.1.3997866417011
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

16,721

Container images carrying it

2,706 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
1
ghcr.io/paradigmxyz/reth:v2.2.0505fca5e87d6
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11
1
ghcr.io/parca-dev/parca:v0.24.23776500fde82
openssl@3.5.1-r0
3.5.7-r0
1
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/pbufio/registry:v0.4.177a36c035b4b
openssl@3.5.4-r0
3.5.7-r0
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm9
1
ghcr.io/pixelfederation/unbound:1.24.2_0fce820a03964
openssl@3.5.5-r0
3.5.7-r0
1
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/pocket-id/pocket-id:v2.7.045bdeaf3fcd6
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.25
1
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
openssl@3.5.1-1+deb13u1
3.5.6-1~deb13u2
1
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
openssl@3.5.5-1ubuntu3
3.5.5-1ubuntu3.2
1
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
ghcr.io/radar-base/radar-self-enrolment-ui:0.1.0b9a7cd3cc099
openssl@3.5.4-r0
3.5.7-r0
1
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
1
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-frontend:0.6.47e27863545fc
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/reiche-world/traefik-secrets-exporter:0.0.21485ff93cbf9
openssl@3.5.4-r0
3.5.7-r0
1
ghcr.io/reitermarkus/7d2d:main39953b387b61
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
1
ghcr.io/robbeverhelst/preparr:latest9acc172942f3
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
openssl@3.0.9-1
3.0.20-1~deb12u2
1
ghcr.io/sagernet/sing-box:v1.12.03c1ee82d450d
openssl@3.5.1-r0
3.5.7-r0
1
ghcr.io/salaboy/fmtok8s-email-service:v0.2.0-nativeb52d5dbac2ca
openssl@1.1.1-1ubuntu2.1~18.04.19
1.1.1-1ubuntu2.1~18.04.23+esm9
1
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
openssl@1.1.1-1ubuntu2.1~18.04.19
1.1.1-1ubuntu2.1~18.04.23+esm9
1
ghcr.io/schaka/janitorr:native-stable7cfe1e0c41da
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
ghcr.io/sct/overseerr:1.35.06197516c9d7b
openssl@3.5.5-r0
3.5.7-r0
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/sebadob/rauthy:0.35.2a73dbf58359f
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/seerr-team/seerr:v3.2.0c4cbd5121236
openssl@3.5.5-r0
3.5.7-r0
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/sergelogvinov/mongosqld:2.14.230b826375ed42
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
1
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
ghcr.io/sergelogvinov/tabix:22.05.17a6e3e996a4ae
openssl@3.5.0-r0
3.5.7-r0
1
ghcr.io/shuguet/pacman:latesta0ec71732c3c
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
1
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
1
ghcr.io/solucteam/outscale-s3-explorer:v1.0.09665c3e71889
openssl@3.5.4-r0
3.5.7-r0
1
ghcr.io/spidernet-io/egressgateway-agent:v0.6.9a8ec2f74c9d0
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
ghcr.io/spidernet-io/egressgateway-controller:v0.6.99deda7b68c34
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm4
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.