StackRadar

CVE-2026-42766

Medium

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.011
63rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,210
of 17,787 indexed, latest versions
Container images
2,418
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-42766 affecting package openssl for versions less than 3.3.7-3

Carried by container images the latest versions of 2,210 of 17,787 indexed charts deploy, on 2,418 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+103 more1.0.1f-1ubuntu2.27+esm14, 1.0.2g-1ubuntu4.20+esm16, 1.1.1-1ubuntu2.1~18.04.23+esm9, 1.1.1f-1ubuntu2.24+esm4+6 more1,781
opensslapk3.2.0-r0, 3.3.1-r4, 3.3.2-r0, 3.3.2-r2+13 more3.5.7-r0, 3.6.3-r0632
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm515
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-35
OSV records
ALPINE-CVE-2026-42766CGA-9fv6-c4c7-7xwrDEBIAN-CVE-2026-42766UBUNTU-CVE-2026-42766AZL-89943
Also known as
CGA-9mqf-xpvc-p77x, CGA-gf26-66cr-92gv, CGA-x9j4-77f9-qvfv, USN-8414-1, USN-8414-2

Charts affected

2,210 by stars
ChartLatestAffected imagesRadar Score
iceberg-resticeberg-rest-fixture0.0.11 of 2See more

iceberg-rest iceberg-rest-fixture 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25

Open the chart page →

3,470
backendikusi-bk-chart1.0.32 of 3See more

backend ikusi-bk-chart 1.0.3

2 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
kyovint/kyoimgtransactions:1.0.048c19e3ae9a3
openssl@3.5.1-1
3.5.6-1~deb13u2
kyovint/kyoimgusers:1.0.080084149156e
openssl@3.5.1-1
3.5.6-1~deb13u2

Open the chart page →

5,940
ilum-coreilumOfficialVerified publisher6.7.31 of 5See more

ilum-core ilum 6.7.3

1 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

3,556
odooimioVerified publisher3.0.21 of 3See more

odoo imio 3.0.2

1 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/nginx:1.29.8-alpine5616878291a2
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

3,068
immichimmich-helm0.3.04 of 4See more

immich immich-helm 0.3.0

4 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
valkey/valkey:8.1.481db6d39e1bb
openssl@3.5.1-1+deb13u1
3.5.6-1~deb13u2
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
openssl@3.5.1-1+deb13u1
3.5.6-1~deb13u2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

15,712
valkey-clusterinnagoVerified publisher1.1.01 of 2See more

valkey-cluster innago 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
valkey/valkey:8.0.1c5d4f082b76d
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

2,622
elasticinseefrlab2.2.02 of 2See more

elastic inseefrlab 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.35e6ac15bf6a5
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm4
library/kibana:7.17.3e2e2031c15be
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

17,284
interlinkinterlink0.6.11 of 2See more

interlink interlink 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,416
iris-webappiris-webapp0.2.41 of 2See more

iris-webapp iris-webapp 0.2.4

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
openssl@3.5.1-1+deb13u1
3.5.6-1~deb13u2

Open the chart page →

11,764
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

10,400
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

10,475
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

10,421
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

10,421
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

10,701
jellyfinjellyfinVerified publisher0.3.301 of 1See more

jellyfin jellyfin 0.3.30

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

2,604
chronoreaperjfwenischVerified publisher1.1.101 of 1See more

chronoreaper jfwenisch 1.1.10

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/wenisch-tech/chronoreaper:1.1.10447726cec07b
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,021
ipfix-generatorjfwenischVerified publisher0.3.16-feature-helm-package.01 of 1See more

ipfix-generator jfwenisch 0.3.16-feature-helm-package.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/ipfix-generator:latesta1b05567dbf6
openssl@3.6.2-r5
3.6.3-r0

Open the chart page →

697
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

7,387
bentopdfk8s-chartsVerified publisher2.0.01 of 1See more

bentopdf k8s-charts 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/alam00000/bentopdf-simple:2.8.5268f3e4a1aee
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

350
qbittorrentk8s-chartsVerified publisher3.1.01 of 2See more

qbittorrent k8s-charts 3.1.0

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/hotio/qbittorrent:release-5.2.007198d49e5b4
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,270
k8s-grafana-stackk8s-grafana-stackVerified publisher0.2.324 of 17See more

k8s-grafana-stack k8s-grafana-stack 0.2.32

4 of the 17 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
grafana/alloy:v1.14.0f50931848bd8
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
grafana/grafana:12.3.12175aaa91c96
openssl@3.5.4-r0
3.5.7-r0
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
openssl@3.5.6-r0
3.5.7-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

15,418
ombik8s-home-lab-repo12.2.11 of 1See more

ombi k8s-home-lab-repo 12.2.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11

Open the chart page →

1,421
readarrk8s-home-lab-repo7.2.11 of 1See more

readarr k8s-home-lab-repo 7.2.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/home-operations/readarr:0.4.188f7551205fbd
openssl@3.5.0-r0
3.5.7-r0

Open the chart page →

1,099
tautullik8s-home-lab-repo12.3.01 of 1See more

tautulli k8s-home-lab-repo 12.3.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,129
kafka-kraft-on-k8skafka-kraft-on-k8sVerified publisher1.1.03 of 3See more

kafka-kraft-on-k8s kafka-kraft-on-k8s 1.1.0

3 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
kafkakraft/kafka-connect:3.7.0062d697db7e5
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
kafkakraft/kafka-controller:3.7.0f261ad288fce
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
kafkakraft/kafkakraft:3.7.02e4b593b878b
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25

Open the chart page →

14,130
kdiffkdiff-snapshotsVerified publisher0.0.2031 of 2See more

kdiff kdiff-snapshots 0.0.203

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2

Open the chart page →

5,508
kdiff-snapshotskdiff-snapshotsVerified publisher0.0.551 of 1See more

kdiff-snapshots kdiff-snapshots 0.0.55

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

5,789
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
openssl@3.0.17-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

5,228
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

5,264
nginx-php-fpmkokuwa0.1.42 of 2See more

nginx-php-fpm kokuwa 0.1.4

2 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/php:8.5.2-fpm-alpine3.22a2482c398d60
openssl@3.5.5-r0
3.5.7-r0
nginxinc/nginx-unprivileged:1.29.0-alpine3.2282dcf28da5a8
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

1,838
difykubeblocksVerified publisher0.5.12 of 5See more

dify kubeblocks 0.5.1

2 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
langgenius/dify-sandbox:0.2.009b7e8705673
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

20,403
kubebrowsekubebrowse1.7.01 of 5See more

kubebrowse kubebrowse 1.7.0

1 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/browsersec/kubebrowse-frontend:chore-improve-backbd6bea5e487c
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

4,141
kube-ingress-dash-chartkube-ingress-dashVerified publisher0.3.11 of 1See more

kube-ingress-dash-chart kube-ingress-dash 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/wasilak/kube-ingress-dash:0.3.1ff55992f905c
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,505
pgbouncerkubernetes-helm-chart-pgbouncer1.0.151 of 1See more

pgbouncer kubernetes-helm-chart-pgbouncer 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
cradlepoint/pgbouncer:1.0.18f5720b0cd03
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

5,802
feishinkubernetes-homelab-helm-chartsVerified publisher0.1.01 of 1See more

feishin kubernetes-homelab-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/jeffvli/feishin:1.11.01eed97d6272d
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

487
owncloudkubernetes-homelab-helm-chartsVerified publisher0.1.02 of 3See more

owncloud kubernetes-homelab-helm-charts 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/mariadb:10.11ce66c7be32a0
openssl@3.0.2-0ubuntu1.26
no fix listed
owncloud/server:10.16.274c53d341076
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.25

Open the chart page →

9,858
tailscalekubernetes-homelab-helm-chartsVerified publisher0.1.21 of 2See more

tailscale kubernetes-homelab-helm-charts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
tailscale/tailscale:v1.96.5dbeff02d2337
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,037
kubeseal-webguikubeseal-webgui6.0.41 of 2See more

kubeseal-webgui kubeseal-webgui 6.0.4

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

4,095
hertzbeatkubesphere-testVerified publisher1.4.11 of 4See more

hertzbeat kubesphere-test 1.4.1

1 of the 4 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
apache/iotdb:0.13.3-nodeafa47bf1692a
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

7,710
kuma-ingress-watcherkuma-ingress-watcherVerified publisher1.4.01 of 1See more

kuma-ingress-watcher kuma-ingress-watcher 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

2,662
kubefarmkvaps0.13.41 of 6See more

kubefarm kvaps 0.13.4

1 of the 6 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

12,422
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

113,791
file-mirrorkyokugirl0.1.31 of 3See more

file-mirror kyokugirl 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
instrumentisto/rsync-ssh:alpine6cbad37c2fbd
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

961
bulwark-maill4gVerified publisher0.2.21 of 1See more

bulwark-mail l4g 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/bulwarkmail/webmail:1.6.0f0a266506fcf
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

800
chibisafel4gVerified publisher0.1.12 of 3See more

chibisafe l4g 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
chibisafe/chibisafe:latest836467a50792
openssl@3.5.0-r0
3.5.7-r0
chibisafe/chibisafe-server:latest3da4fcbc1a18
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

5,654
langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
openssl@3.0.18-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

3,980
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

35,050
litellmlitellm-helm0.2.01 of 1See more

litellm litellm-helm 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
openssl@3.5.2-r0
3.6.3-r0

Open the chart page →

4,292
litlyxlitlyx0.2.04 of 5See more

litlyx litlyx 0.2.0

4 of the 5 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
litlyx/litlyx-consumer:latest02225e77d316
openssl@3.5.4-r0
3.5.7-r0
litlyx/litlyx-dashboard:lateste64ff2d52385
openssl@3.5.4-r0
3.5.7-r0
litlyx/litlyx-producer:latest10407f36613f
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

7,874
clickhouseliwenhe1.0.11 of 3See more

clickhouse liwenhe 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-42766.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.14ccf9c2b5e3f2
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

6,761

Container images carrying it

2,418 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
apache/activemq-artemis:2.44.00305c26f19ed
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
1
apache/activemq-artemis:2.37.0bae523439ee3
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.11
1
apache/airflow:2.8.4-python3.964e58748b6b9
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
1
apache/airflow:2.8.1e5560ad0b86e
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
apache/apisix:3.16.0-ubuntu5e47692cac00
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25
1
apache/hertzbeat:1.8.075d48a62748f
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
apache/iotdb:0.13.3-nodeafa47bf1692a
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
1
apache/kafka:4.1.0bff074a5d005
openssl@3.5.2-r0
3.5.7-r0
1
apache/kafka-native:4.1.09a9d16e60894
openssl@3.5.1-r0
3.5.7-r0
1
apache/nifi-registry:1.27.063b8e3e40742
openssl@3.0.2-0ubuntu1.16
3.0.2-0ubuntu1.25
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm4
1
apachepulsar/pulsar:3.0.79c9947de139d
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25
1
apachepulsar/pulsar:2.9.0d056c89b7131
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm4
1
apachepulsar/pulsar:2.8.2d538416d5afe
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm4
1
apache/ranger:2.7.076c176e8a0e4
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
1
apache/rocketmq:5.3.0434d8398f996
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.11
1
apache/rocketmq-exporter:0.0.2c8fb51195444
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.25
1
apache/skywalking-oap-server:9.2.0133d35d2c263
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.25
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm4
1
apache/skywalking-ui:9.2.0295f1dc87d98
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.25
1
apache/skywalking-ui:8.9.180530f0308a5
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm4
1
apache/superset:4.0.1ab9467fd712c
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
apache/tika:3.3.1.090b7fa1dc018
openssl@3.5.5-1ubuntu3
3.5.5-1ubuntu3.2
1
apache/tika:2.9.0.092d055a84e9e
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
openssl@3.5.1-1
3.5.6-1~deb13u2
1
appwrite/appwrite:1.9.01aaa70127114
openssl@3.5.5-r0
3.5.7-r0
1
appwrite/appwrite:1.9.6adc7d0e7ec23
openssl@3.5.6-r0
3.5.7-r0
1
appwrite/console:8.7.383dcdc8492ac6
openssl@3.5.5-r0
3.5.7-r0
1
aquasec/kube-bench:v0.15.07a8fa32dce21
openssl@3.5.5-r0
3.5.7-r0
1
aquasec/trivy:0.69.3bcc376de8d77
openssl@3.5.5-r0
3.5.7-r0
1
archivebox/archivebox:0.7.41a5a37331091
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2
1
arilot/docker-bitcoind:0.17.127a4f7e0f9f1
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16
1
aristidetm/basic-notebook:3.6.5469dbc951224
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
1
arthurjguerra18/revwallet:v0.7.12f540af20b307
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
1
artur9010/wait-for:v1.0.06b4de3ce8b0e
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
arunvelsriram/utils:latest655ad18fd8d6
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm4
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
1
assistiot/identity-manager_db:latest0d3e6d35f168
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
assistiot/location_processing:lateste9bae124095f
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.25
1
assistiot/open_api_backend:1.1.230812ba93555
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.25
1
assistiot/sdn_controller:2.4.0ea254b6d8a31
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
1
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
openssl@3.0.9-1
3.0.20-1~deb12u2
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.