StackRadar

CVE-2026-42766

Medium

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.011
63rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,476
of 17,805 indexed, latest versions
Container images
2,730
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-42766 affecting package openssl for versions less than 3.3.7-3

Carried by container images the latest versions of 2,476 of 17,805 indexed charts deploy, on 2,730 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+103 more1.0.1f-1ubuntu2.27+esm14, 1.0.2g-1ubuntu4.20+esm16, 1.1.1-1ubuntu2.1~18.04.23+esm9, 1.1.1f-1ubuntu2.24+esm4+6 more1,808
opensslapk3.2.0-r0, 3.3.1-r3, 3.3.1-r4, 3.3.2-r0+21 more3.3.7-r1, 3.5.7-r0, 3.6.3-r0917
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+4 more1.0.2n-1ubuntu5.13+esm520
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-35
OSV records
ALPINE-CVE-2026-42766CGA-9fv6-c4c7-7xwrDEBIAN-CVE-2026-42766UBUNTU-CVE-2026-42766AZL-89943
Also known as
CGA-9mqf-xpvc-p77x, CGA-gf26-66cr-92gv, CGA-x9j4-77f9-qvfv, USN-8414-1, USN-8414-2

Charts affected

2,476 by stars
ChartLatestAffected imagesRadar Score
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
openssl@3.0.9-1
3.0.20-1~deb12u2

Open the chart page →

9,730
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

5,681
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm9
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16

Open the chart page →

63,773
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16
omecproject/onos-progran:1.0.05715e5648aa0
nodejs@8.9.4-1nodesource1
openssl@1.0.2g-1ubuntu4.10
no fix listed
1.0.2g-1ubuntu4.20+esm16
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16

Open the chart page →

264,064
comac-cuopencord0.1.11 of 4See more

comac-cu opencord 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

8,232
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16

Open the chart page →

84,039
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

15,754
mcord-cdn-remoteopencord0.1.62 of 2See more

mcord-cdn-remote opencord 0.1.6

2 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16
woojoong/wowza:latestec230db19652
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

43,092
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16

Open the chart page →

29,558
mcord-control-planeopencord0.2.22 of 5See more

mcord-control-plane opencord 0.2.2

2 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mme:mwca-mme-debug8dd6dea45be4
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm16
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

16,017
oaisimopencord0.1.72 of 3See more

oaisim opencord 0.1.7

2 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
omecproject/lte-softmodem:1.1.0b5ddd36ec20c
openssl@1.1.1-1ubuntu2.1~18.04.6
openssl1.0@1.0.2n-1ubuntu5.4
1.1.1-1ubuntu2.1~18.04.23+esm9
1.0.2n-1ubuntu5.13+esm5
omecproject/lte-uesoftmodem:1.1.0686f8bc37d8c
openssl@1.1.1-1ubuntu2.1~18.04.9
openssl1.0@1.0.2n-1ubuntu5.6
1.1.1-1ubuntu2.1~18.04.23+esm9
1.0.2n-1ubuntu5.13+esm5

Open the chart page →

14,908
omec-control-planeopencord0.1.314 of 8See more

omec-control-plane opencord 0.1.31

4 of the 8 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
omecproject/c3po-hss:master-latest638671ef4842
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm16
omecproject/c3po-hssdb:master-latest28a90cc26716
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4
omecproject/mme-exporter:paging-latestbcc5f19fd676
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm9
omecproject/openmme:master-latest64776cb9edb3
openssl@1.0.2g-1ubuntu4.17
1.0.2g-1ubuntu4.20+esm16

Open the chart page →

108,522
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

12,950
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
nodejs@8.9.4-1nodesource1
openssl@1.0.2g-1ubuntu4.10
no fix listed
1.0.2g-1ubuntu4.20+esm16

Open the chart page →

98,727
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm16

Open the chart page →

69,436
sebaopencord1.0.06 of 17See more

seba opencord 1.0.0

6 of the 17 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
openssl@1.0.2g-1ubuntu4.9
1.0.2g-1ubuntu4.20+esm16
voltha/voltha-cli:1.6.0c4e41e92f046
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm16
voltha/voltha-envoy:1.6.059ab2a00f712
openssl@1.0.1f-1ubuntu2.27
1.0.1f-1ubuntu2.27+esm14
voltha/voltha-netconf:1.6.037f80524c207
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm16
voltha/voltha-ofagent:1.6.09ee8c1f4428c
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm16
voltha/voltha-voltha:1.6.0ff596b62de59
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm16

Open the chart page →

377,706
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm9
voltha/voltha-onos:5.1.8e038acb950d3
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

41,185
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

11,118
opencost-lensopencost-lens1.0.01 of 2See more

opencost-lens opencost-lens 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-ui:1.118.0571f87e528ea
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,114
cron-connectoropenfaas0.6.161 of 1See more

cron-connector openfaas 0.6.16

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/openfaas/cron-connector:0.7.0982498e8a41e
openssl@3.3.2-r4
3.3.7-r1

Open the chart page →

887
kafka-connectoropenfaas0.7.151 of 1See more

kafka-connector openfaas 0.7.15

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/kafka-connector:0.7.160e58eac0e2f7
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,165
postgres-connectoropenfaas0.1.21 of 1See more

postgres-connector openfaas 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/postgres-connector:0.2.3379e583a0a75
openssl@3.3.2-r4
3.3.7-r1

Open the chart page →

1,217
pro-builderopenfaas0.6.131 of 2See more

pro-builder openfaas 0.6.13

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/pro-builder:0.6.06c17297f9098
openssl@3.5.0-r0
3.5.7-r0

Open the chart page →

2,755
queue-workeropenfaas0.2.341 of 1See more

queue-worker openfaas 0.2.34

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/jetstream-queue-worker:0.5.10e9245a0bca88
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

573
rabbitmq-connectoropenfaas0.0.41 of 1See more

rabbitmq-connector openfaas 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/rabbitmq-connector:0.1.2349f7dca95ec
openssl@3.3.2-r4
3.3.7-r1

Open the chart page →

1,037
sqs-connectoropenfaas0.2.71 of 1See more

sqs-connector openfaas 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/sqs-connector:0.3.4d44ed3b3128c
openssl@3.3.2-r4
3.3.7-r1

Open the chart page →

912
dokuopenlit0.1.41 of 3See more

doku openlit 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:latestfa394da808cc
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

1,757
openlitopenlit1.24.01 of 3See more

openlit openlit 1.24.0

1 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.4.12e6587b81a26
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

5,228
openlit-operatoropenlit0.2.21 of 1See more

openlit-operator openlit 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-operator:0.0.2457bb5ada68b
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

862
openobserveopenobserve1.0.13 of 6See more

openobserve openobserve 1.0.1

3 of the 6 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
openssl@3.5.6-r0
3.5.7-r0
natsio/nats-server-config-reloader:0.23.064cb6c858e79
openssl@3.5.5-r0
3.5.7-r0
natsio/prometheus-nats-exporter:0.20.14fbf6dacb847
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

3,083
openpanelopenpanel0.9.01 of 6See more

openpanel openpanel 0.9.0

1 of the 6 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25

Open the chart page →

3,486
llm-stackopenproject-helm-chartsVerified publisher1.1.01 of 2See more

llm-stack openproject-helm-charts 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11

Open the chart page →

2,044
kubedb-certifiedopenshift2026.7.101 of 8See more

kubedb-certified openshift 2026.7.10

1 of the 8 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/appscode/petset:v0.1.093fa0daf603c
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

4,502
mattermost-team-editionopenshift6.6.831 of 4See more

mattermost-team-edition openshift 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

4,131
voyager-gatewayopenshift2026.1.151 of 2See more

voyager-gateway openshift 2026.1.15

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.1.013fd0cccafe8
openssl@3.0.18-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

2,692
open-vpnopenvpn0.0.11 of 1See more

open-vpn openvpn 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

81,408
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
nodejs@8.10.0~dfsg-2ubuntu0.4
openssl@1.1.1-1ubuntu2.1~18.04.6
openssl1.0@1.0.2n-1ubuntu5.4
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm9
1.0.2n-1ubuntu5.13+esm5

Open the chart page →

102,109
operatonoperatonVerified publisher1.0.51 of 1See more

operaton operaton 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
operaton/operaton:1.0.0-beta-4b35867ffe4d8
openssl@3.3.3-r0
3.3.7-r1

Open the chart page →

2,125
kubernetes-syncopslevelVerified publisher0.8.01 of 1See more

kubernetes-sync opslevel 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
public.ecr.aws/opslevel/kubectl-opslevel:v2024.9.571697b5ff713
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

1,756
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
replicated/replicated-sdk:1.0.0-beta.318751b4963250
openssl@3.3.2-r2
3.6.3-r0

Open the chart page →

5,661
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
openssl@1.0.1f-1ubuntu2.25
1.0.1f-1ubuntu2.27+esm14

Open the chart page →

26,383
hiveopstty0.1.92 of 4See more

hive opstty 0.1.9

2 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
alpine/curl:8.12.08943e8c7e8e4
openssl@3.3.2-r4
3.3.7-r1
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

4,737
example-idpory0.64.01 of 1See more

example-idp ory 0.64.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
oryd/hydra-login-consent-node:v26.2.06465e95993b5
openssl@3.3.3-r0
3.3.7-r1

Open the chart page →

986
grrosdfir-infrastructureVerified publisher1.0.32 of 5See more

grr osdfir-infrastructure 1.0.3

2 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/mariadb:11.3.2e101f9db3191
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

11,062
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.010 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

10 of the 40 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
bitnamilegacy/git:latest4b08d0c5af8d
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
chromadb/chroma:1.5.7fc8dc8e11fb2
openssl@3.5.5-1~deb13u1
3.5.6-1~deb13u2
library/mariadb:11.3.2e101f9db3191
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
library/postgres:17.5-alpine6567bca8d7bc
openssl@3.5.1-r0
3.5.7-r0
library/postgres:17.2-alpine7e5df973a748
openssl@3.3.2-r4
3.3.7-r1
library/redis:7.4.2-alpine02419de7eddf
openssl@3.3.3-r0
3.3.7-r1
yetiplatform/bloomcheck:dev85683ddfccbb
openssl@3.3.3-r0
3.3.7-r1
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
openssl@3.0.18-1~deb12u2
3.0.20-1~deb12u2
ghcr.io/openrelik/openrelik-ui:latest7f91594d5eb3
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

203,308
fluent-bitot-container-kit0.0.31 of 2See more

fluent-bit ot-container-kit 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

929
loki-standaloneot-container-kit1.0.23 of 5See more

loki-standalone ot-container-kit 1.0.2

3 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
openssl@3.5.6-r0
3.5.7-r0
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

3,667
vm-standaloneot-container-kit0.0.42 of 6See more

vm-standalone ot-container-kit 0.0.4

2 of the 6 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
quay.io/opstree/grafana:12.4.3b61c1ed2f015
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

3,506
outscale-s3-exploreroutscale-s3-explorer0.1.41 of 1See more

outscale-s3-explorer outscale-s3-explorer 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/solucteam/outscale-s3-explorer:v1.0.09665c3e71889
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,816
automatap2p-avs0.1.01 of 2See more

automata p2p-avs 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.25

Open the chart page →

3,695

Container images carrying it

2,730 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/themesama/kubernetes-kustomize-patcher:latestb1bf0669e3a0
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2
1
ghcr.io/thoroslives/zilean:v3.10.1bce6aca0f6ca
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/tjm/vault-gcp-secrets:v1.19.59f157fe035f1
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/topolvm/pie:0.18.0aa467443e407
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
openssl@3.0.2-0ubuntu1.26
no fix listed
1
ghcr.io/topolvm/topolvm-with-sidecar:0.35.0b354978c440d
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25
1
ghcr.io/trieb-work/saleor-apps/saleor-app-products-feed:1.23.11d435b4ab372
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/trieb-work/saleor-apps/saleor-app-search:1.24.328edefb6c92d
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/trieb-work/saleor-apps/saleor-app-smtp:1.4.357a06bfba327
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/trow-registry/trow:0.10.075b7d2dcdb91
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2
1
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11
1
ghcr.io/twigex/cospace:lateste5ecfd607e42
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/umami-software/umami:3.0.328f263fe06f7
openssl@3.5.4-r0
3.5.7-r0
1
ghcr.io/umami-software/umami:postgresql-v2.20.173ca19b41745
openssl@3.5.4-r0
3.5.7-r0
1
ghcr.io/umami-software/umami:3.1.0e3f80c0625aa
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/upcloudltd/upcloud-csi5af91c663788
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/usememos/memos:0.24.04723d86e6797
openssl@3.3.2-r4
3.3.7-r1
1
ghcr.io/vinny1892/octantis:latest45459c0910fc
openssl@3.5.5-1~deb13u1
3.5.6-1~deb13u2
1
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/vojtechpastyrik/squawk:0.1.104005df5f7229
openssl@3.3.6-r0
3.3.7-r1
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25
1
ghcr.io/voyagermesh/crd-manager:v0.1.013fd0cccafe8
openssl@3.0.18-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
openssl@3.0.9-1
3.0.20-1~deb12u2
1
ghcr.io/vvanouytsel/jetspotter:1.48.1ec0e17a94f61
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/wachd/wachd:0.4.1805b05c56da94
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/wasilak/kube-ingress-dash:0.3.1ff55992f905c
openssl@3.5.4-r0
3.5.7-r0
1
ghcr.io/wearefrank/frank-gateway:1.0.05ccf797ccdf1
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11
1
ghcr.io/wei-shaw/claude-relay-service:v1.1.292398c34934453
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/wenisch-tech/chronoreaper:1.1.10447726cec07b
openssl@3.5.6-r0
3.5.7-r0
1
ghcr.io/wez/govee2mqtt:2026.03.25-ab9deb66a9d9fe330574
openssl@3.0.18-1~deb12u2
3.0.20-1~deb12u2
1
ghcr.io/wgbh-mla/ov-frontend:v1.1.0bfc3118f6565
openssl@3.5.0-r0
3.5.7-r0
1
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
openssl@3.0.18-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/wiremind/bitnami/keycloak:26.5.0-debian-12-r38622ea9e43c0
openssl@3.0.18-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/wiremind/bitnami/rabbitmq:4.2.2-debian-12-r11572e12bc93c
openssl@3.0.18-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/wiremind/bitnami/redis:8.4.0-debian-12-r31f0f7ddc4370
openssl@3.0.18-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
ghcr.io/wjentner/k8s-db-backup-retention:v1.1.08027bb46d1f4
openssl@3.3.2-r4
3.3.7-r1
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
openssl@1.1.1-1ubuntu2.1~18.04.17
1.1.1-1ubuntu2.1~18.04.23+esm9
1
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
1
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
ghcr.io/wundergraph/cosmo/controlplane:0.133.149800ff775f3
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/wundergraph/cosmo/graphqlmetrics:0.33.0efb69ec3330c
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2
1
ghcr.io/wundergraph/cosmo/studio:0.111.0454f4384713a
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/yahoon/helm-demo:1.0.02930290a758c
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.