StackRadar

CVE-2026-42767

Medium

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,905
of 17,787 indexed, latest versions
Container images
2,126
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-42767 affecting package openssl for versions less than 3.3.7-3

Carried by container images the latest versions of 1,905 of 17,787 indexed charts deploy, on 2,126 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+53 more3.0.2-0ubuntu1.25, 3.0.13-0ubuntu3.11, 3.5.3-1ubuntu3.4, 3.5.5-1ubuntu3.2+1 more1,490
opensslapk3.2.0-r0, 3.3.1-r4, 3.3.2-r0, 3.3.2-r2+13 more3.5.7-r0, 3.6.3-r0631
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-35
OSV records
ALPINE-CVE-2026-42767CGA-6x2v-fqjw-hp38DEBIAN-CVE-2026-42767UBUNTU-CVE-2026-42767AZL-89922ECHO-86de-f803-ef79
Also known as
CGA-72qw-77pm-grmj, CGA-963c-vm8f-q6wx, CGA-fccf-f32f-qfjm, USN-8414-1

Charts affected

1,905 by stars
ChartLatestAffected imagesRadar Score
argo-cdargoOfficialVerified publisher10.9.11See more

argo-cd argo 10.9.1

1 container image this version deploys carries CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.45.18499afd690c4
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

ingress-nginxingress-nginx4.15.11 of 2See more

ingress-nginx ingress-nginx 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,547
airflowapache-airflowOfficialVerified publisher1.22.01 of 4See more

airflow apache-airflow 1.22.0

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
library/redis:7.2-bookworm74566c6910d1
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

3,195
velerovmware-tanzu12.1.01 of 1See more

velero vmware-tanzu 12.1.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
velero/velero:v1.18.111459094b1b2
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.25

Open the chart page →

1,331
metallbmetallbVerified publisher0.16.12 of 4See more

metallb metallb 0.16.1

2 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
quay.io/frrouting/frr:10.4.38745af1f9bbb
openssl@3.5.5-r0
3.5.7-r0
quay.io/metallb/frr-k8s:v0.0.251cb06fb2d553
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

2,127
giteagiteaOfficialVerified publisher12.7.03 of 4See more

gitea gitea 12.7.0

3 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
openssl@3.0.17-1~deb12u1
no fix listed

Open the chart page →

8,811
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25

Open the chart page →

6,556
artifact-hubartifact-hubVerified publisher1.23.02 of 7See more

artifact-hub artifact-hub 1.23.0

2 of the 7 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
aquasec/trivy:0.69.3bcc376de8d77
openssl@3.5.5-r0
3.5.7-r0
artifacthub/postgres:latest4fd34fa635cc
openssl@3.5.1-1
3.5.6-1~deb13u2

Open the chart page →

10,755
jupyterhubjupyterhubOfficialVerified publisher4.4.23 of 7See more

jupyterhub jupyterhub 4.4.2

3 of the 7 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
openssl@3.5.5-r0
3.5.7-r0
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
openssl@3.0.20-1~deb12u2
no fix listed
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

7,894
argo-cdargo-cd-oci10.9.11See more

argo-cd argo-cd-oci 10.9.1

1 container image this version deploys carries CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.45.18499afd690c4
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

mimir-distributedgrafana6.2.02 of 6See more

mimir-distributed grafana 6.2.0

2 of the 6 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
apache/kafka-native:4.1.09a9d16e60894
openssl@3.5.1-r0
3.5.7-r0
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

4,517
natsnatsVerified publisher2.14.62 of 3See more

nats nats 2.14.6

2 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
openssl@3.5.6-r0
3.5.7-r0
natsio/nats-server-config-reloader:0.23.064cb6c858e79
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

2,313
metabasepmint932.27.61 of 1See more

metabase pmint93 2.27.6

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
metabase/metabase:v0.61.1.x9491ed11c901
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,639
dexdexVerified publisher0.24.11 of 1See more

dex dex 0.24.1

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/dexidp/dex:v2.44.05d0656fce7d4
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

1,765
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
openssl@3.0.20-1~deb12u1
no fix listed

Open the chart page →

30,159
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

11,367
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

5,227
victoria-metrics-k8s-stackvictoriametricsVerified publisher0.92.11 of 7See more

victoria-metrics-k8s-stack victoriametrics 0.92.1

1 of the 7 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.8.1abb55b2165c6
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,889
openebsopenebsOfficialVerified publisher4.6.12 of 35See more

openebs openebs 4.6.1

2 of the 35 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
openebs/lvm-driver:1.10.141f73aba7f31
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

23,894
vectorvectorVerified publisher0.58.01 of 1See more

vector vector 0.58.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
timberio/vector:0.58.0-distroless-libc6c93dfe2554c
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

333
zabbixzabbix-communityVerified publisher7.1.04 of 5See more

zabbix zabbix-community 7.1.0

4 of the 5 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11

Open the chart page →

13,664
keycloakcloudpirates-keycloakVerified publisher0.21.371 of 3See more

keycloak cloudpirates-keycloak 0.21.37

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
library/postgres:18.0073e7c8b84e2
openssl@3.5.1-1
3.5.6-1~deb13u2

Open the chart page →

4,382
connectonepassword-connect2.4.12 of 2See more

connect onepassword-connect 2.4.1

2 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
1password/connect-api:1.8.2e915c0c84397
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
1password/connect-sync:1.8.26297ca6136c0
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

2,550
openfaasopenfaas15.0.132 of 6See more

openfaas openfaas 15.0.13

2 of the 6 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/openfaas/faas-netes:0.18.176cfe35401d25
openssl@3.5.6-r0
3.5.7-r0
ghcr.io/openfaas/gateway:0.27.14ee0eaecc490c
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

3,543
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

5,366
gatekeepergatekeeperVerified publisher3.23.11 of 3See more

gatekeeper gatekeeper 3.23.1

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
curlimages/curl:8.20.0b3f1fb2a51d9
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

495
openldap-stack-hahelm-openldapVerified publisher4.3.31 of 5See more

openldap-stack-ha helm-openldap 4.3.3

1 of the 5 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

5,919
rocketchatrocketchat-server7.0.27 of 12See more

rocketchat rocketchat-server 7.0.2

7 of the 12 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.28031d190c7ee
openssl@3.5.4-r0
3.5.7-r0
natsio/nats-server-config-reloader:0.21.110ff229eaf52
openssl@3.5.4-r0
3.5.7-r0
natsio/prometheus-nats-exporter:0.18.002469dc907bc
openssl@3.5.4-r0
3.5.7-r0
rocketchat/account-service:8.6.144af8ac4e711
openssl@3.5.6-r0
3.5.7-r0
rocketchat/authorization-service:8.6.16bc18fb5d0e5
openssl@3.5.6-r0
3.5.7-r0
rocketchat/ddp-streamer-service:8.6.1819771c4abe4
openssl@3.5.6-r0
3.5.7-r0
rocketchat/presence-service:8.6.1c1170bdfe797
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

12,279
chaos-meshchaos-meshVerified publisher2.8.42 of 4See more

chaos-mesh chaos-mesh 2.8.4

2 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

6,342
csi-driver-nfscsi-driver-nfsVerified publisher4.13.41 of 6See more

csi-driver-nfs csi-driver-nfs 4.13.4

1 of the 6 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

3,324
clamavwiremindVerified publisher3.7.31 of 1See more

clamav wiremind 3.7.3

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
clamav/clamav:1.4.3_base629a3050df6a
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,060
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.25

Open the chart page →

9,145
grafana-agentgrafana0.44.21 of 2See more

grafana-agent grafana 0.44.2

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
grafana/agent:v0.44.23364714a2f64
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11

Open the chart page →

3,475
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

10,622
signozsignoz0.141.11 of 5See more

signoz signoz 0.141.1

1 of the 5 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

7,568
weblateweblateOfficialVerified publisher0.5.362 of 3See more

weblate weblate 0.5.36

2 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
openssl@3.0.16-1~deb12u1
no fix listed
bitnamilegacy/redis:latest5927ff3702df
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

6,699
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

2,800
node-rednode-redVerified publisher0.40.21 of 1See more

node-red node-red 0.40.2

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
nodered/node-red:4.1.2216e7403aab9
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

2,172
node-local-dnsdeliveryheroVerified publisher2.9.21 of 1See more

node-local-dns deliveryhero 2.9.2

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

1,685
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

2,705
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

4,802
nacosygqygq2Verified publisher2.1.101 of 4See more

nacos ygqygq2 2.1.10

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.20e951a1d07bb
openssl@3.5.0-r0
3.5.7-r0

Open the chart page →

4,983
difydoubanVerified publisher0.10.03 of 6See more

dify douban 0.10.0

3 of the 6 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
openssl@3.0.11-1~deb12u2
no fix listed
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
openssl@3.0.11-1~deb12u2
no fix listed
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11

Open the chart page →

19,391
dragonflydragonflyVerified publisher1.8.42 of 3See more

dragonfly dragonfly 1.8.4

2 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.4a1b52779c4dd
openssl@3.0.20-1~deb12u2
no fix listed
dragonflyoss/scheduler:v2.5.2-rc.06d710dc2bae0
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

3,787
mattermost-team-editionmattermostVerified publisher6.6.1061 of 4See more

mattermost-team-edition mattermost 6.6.106

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:11.10.18285b96eb412
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,475
secrets-store-csi-driversecret-store-csi-driver1.6.11 of 4See more

secrets-store-csi-driver secret-store-csi-driver 1.6.1

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,766
pulsarapache4.7.04 of 10See more

pulsar apache 4.7.0

4 of the 10 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
openssl@3.5.5-r0
3.5.7-r0
curlimages/curl:8.18.0d94d07ba9e7d
openssl@3.5.4-r0
3.5.7-r0
grafana/grafana:12.4.1e932bd6ed0e0
openssl@3.5.5-r0
3.5.7-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

9,864
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11

Open the chart page →

3,606
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

6,927
difydify-helmVerified publisher0.38.05 of 11See more

dify dify-helm 0.38.0

5 of the 11 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
openssl@3.0.20-1~deb12u2
no fix listed
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
openssl@3.0.20-1~deb12u2
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
openssl@3.0.20-1~deb12u2
no fix listed
langgenius/dify-sandbox:0.2.15750e1111426e
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2
langgenius/dify-web:1.16.187dd47e4e28f
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

22,002

Container images carrying it

2,126 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
iomesh/node-disk-manager:1.8.0-2292ad270082e
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.11
1
iomesh/node-disk-operator:1.8.0-1de4aa40684ad
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.11
1
ispras/svacer:11-2-042aa9fa9f189
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
1
istio/examples-helloworld-v1:latest328b237e4fb1
openssl@3.0.11-1~deb12u2
no fix listed
1
istio/examples-helloworld-v2:latest0a7f02b2c7c9
openssl@3.0.11-1~deb12u2
no fix listed
1
istio/install-cni:1.23.6ab34c4740f44
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
istio/install-cni:1.29.0ce27c9ce43c8
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
istio/operator:1.18.270f9d1fe5fff
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25
1
istio/pilot:1.29.0325156535773
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
istio/pilot:1.23.69c3d6a218181
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
istio/pilot:1.16.0ac0284d75ec9
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.25
1
istio/pilot:1.17.1ce9d87606701
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.25
1
istio/pilot:1.15.2db08d6963975
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.25
1
istio/pilot:1.29.1f8b0e412ac4a
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
istio/ztunnel:1.25.005f3972d80a9
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
ixsystems/truecommand:3.2.019c218455cd2
openssl@3.5.1-1
3.5.6-1~deb13u2
1
jaedb/iris:latest048cfbf58d57
openssl@3.0.15-1~deb12u1
no fix listed
1
jaegertracing/jaeger:2.9.0e128b9adbb29
openssl@3.5.1-r0
3.5.7-r0
1
jaegertracing/jaeger:2.19.0ede4864215be
openssl@3.5.6-r0
3.5.7-r0
1
janzo83/serviceexample:latestfb3c4ac36f3e
openssl@3.0.17-1~deb12u3
no fix listed
1
jbtronics/part-db1:latest5db71f6db59d
openssl@3.0.20-1~deb12u2
no fix listed
1
jeboehm/mailserver-web:5.0.929da13edf5aa8
openssl@3.5.2-r0
3.5.7-r0
1
jellyfin/jellyfin:10.11.81694ff069f0c
openssl@3.5.5-1~deb13u1
3.5.6-1~deb13u2
1
jellyfin/jellyfin:10.11.717285f9cce63
openssl@3.5.5-1~deb13u1
3.5.6-1~deb13u2
1
jellyfin/jellyfin:10.10.317c3a8d9dddb
openssl@3.0.15-1~deb12u1
no fix listed
1
jellyfin/jellyfin:10.11.6333b64771663
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
1
jellyfin/jellyfin:10.9.1079fb3d73a3e9
openssl@3.0.13-1~deb12u1
no fix listed
1
jellyfin/jellyfin:10.10.77ae36aab93ef
openssl@3.0.15-1~deb12u1
no fix listed
1
jellyfin/jellyfin:10.10.696b09723b22f
openssl@3.0.15-1~deb12u1
no fix listed
1
jenkins/jenkins:2.462.2-jdk1795313257a8cd
openssl@3.0.14-1~deb12u2
no fix listed
1
jenkins/jenkins:2.440.3-jdk17de4fea113221
openssl@3.0.11-1~deb12u2
no fix listed
1
jhaals/yopass:11.17.026873480863b
openssl@3.0.14-1~deb12u2
no fix listed
1
jhaals/yopass:12.5.0916a1cf45d36
openssl@3.0.17-1~deb12u3
no fix listed
1
jhoncytech/bookworm-apache-wordpress:latest18c3ca1f411e
openssl@3.0.11-1~deb12u2
no fix listed
1
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
openssl@3.0.15-1~deb12u1
no fix listed
1
jkroepke/github_exporter:1.8.03d850992786d
openssl@3.5.4-r0
3.5.7-r0
1
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
openssl@3.5.4-r0
3.5.7-r0
1
jordan/icinga2:latestf75025fe8ea8
openssl@3.0.20-1~deb12u2
no fix listed
1
josh5/unmanic:0.2.64d49c4816260
nodejs@20.11.1-1nodesource1
openssl@3.0.2-0ubuntu1.15
no fix listed
3.0.2-0ubuntu1.25
1
joxit/docker-registry-ui:2.6.0bb5956a6b378
openssl@3.5.4-r0
3.5.7-r0
1
jpgouin/openldap:2.6.9-fixbfdd0088c776
openssl@3.0.15-1~deb12u1
no fix listed
1
juicedata/juicefs-csi-driver:v0.32.595008ba63318
openssl@3.0.15-1~deb12u1
no fix listed
1
jupyterhub/jupyterhub:5.4.63974ba945e65
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11
1
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11
1
kafkakraft/kafka-connect:3.7.0062d697db7e5
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
1
kafkakraft/kafka-controller:3.7.0f261ad288fce
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
1
kafkakraft/kafkakraft:3.7.02e4b593b878b
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
1
kayrosuno/kping:latestf3bd44b29b0d
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
kenchrcum/ansible-playbook-operator:0.1.712fb213debf1
openssl@3.5.6-r0
3.5.7-r0
1
kenchrcum/fluxcd-helm-upgrader:0.7.7c326e28a8f5f
openssl@3.5.6-r0
3.5.7-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.