StackRadar

CVE-2026-42767

Medium

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,921
of 17,781 indexed, latest versions
Container images
2,147
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-42767 affecting package openssl for versions less than 3.3.7-3

Carried by container images the latest versions of 1,921 of 17,781 indexed charts deploy, on 2,147 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+53 more3.0.2-0ubuntu1.25, 3.0.13-0ubuntu3.11, 3.5.3-1ubuntu3.4, 3.5.5-1ubuntu3.2+1 more1,505
opensslapk3.2.0-r0, 3.3.1-r4, 3.3.2-r0, 3.3.2-r2+13 more3.5.7-r0, 3.6.3-r0637
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-35
OSV records
ALPINE-CVE-2026-42767CGA-6x2v-fqjw-hp38DEBIAN-CVE-2026-42767UBUNTU-CVE-2026-42767AZL-89922ECHO-86de-f803-ef79
Also known as
CGA-72qw-77pm-grmj, CGA-963c-vm8f-q6wx, CGA-fccf-f32f-qfjm, USN-8414-1

Charts affected

1,921 by stars
ChartLatestAffected imagesRadar Score
cert-manager-csi-driver-cacertsappscodeVerified publisher2026.1.151 of 3See more

cert-manager-csi-driver-cacerts appscode 2026.1.15

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/csi-driver-cacerts:v0.5.0b6bf1888f9d5
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

3,417
cert-manager-webhook-aceappscodeVerified publisher2026.9.111 of 1See more

cert-manager-webhook-ace appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/cert-manager-webhook-ace:v0.0.2dc6b5fdcec06
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,308
cluster-auth-agentappscodeVerified publisher2026.2.161 of 1See more

cluster-auth-agent appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/cluster-auth:v0.5.1fba6fb872281
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

984
cluster-auth-managerappscodeVerified publisher2026.2.161 of 1See more

cluster-auth-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/cluster-auth:v0.5.1fba6fb872281
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

984
cluster-importerappscodeVerified publisher2026.9.111 of 1See more

cluster-importer appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/ace:v0.2.0b8e03da90e70
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

999
crd-managerappscodeVerified publisher2026.7.211 of 1See more

crd-manager appscode 2026.7.21

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

767
falco-ui-serverappscodeVerified publisher2026.1.151 of 2See more

falco-ui-server appscode 2026.1.15

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/falco-ui-server:v0.0.66ec488d89b56
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

2,872
fluxcd-managerappscodeVerified publisher2026.2.161 of 1See more

fluxcd-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/fluxcd-addon:v0.0.103475404bef5c
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,093
gcp-credential-managerappscodeVerified publisher2026.3.111 of 1See more

gcp-credential-manager appscode 2026.3.11

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/gcp-credential-manager:v0.1.0b58345fe8209
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,060
inbox-agentappscodeVerified publisher2026.6.21 of 2See more

inbox-agent appscode 2026.6.2

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-agent:v0.0.66b99ee9feece
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

2,114
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25

Open the chart page →

3,963
inbox-server-distributedappscodeVerified publisher2025.12.253 of 4See more

inbox-server-distributed appscode 2025.12.25

3 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.25
library/rabbitmq:3.12.1-managementf020c06da226
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25
ghcr.io/appscode/inbox-server:latest536358d7b17e
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25

Open the chart page →

15,573
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.25
library/rabbitmq:3.12.1-managementf020c06da226
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25

Open the chart page →

16,975
kubedb-autoscalerappscodeVerified publisher0.51.01 of 1See more

kubedb-autoscaler appscode 0.51.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

496
kubedb-certifiedappscodeVerified publisher2026.7.106 of 8See more

kubedb-certified appscode 2026.7.10

6 of the 8 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/petset:v0.1.093fa0daf603c
openssl@3.5.6-r0
3.5.7-r0
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,016
kubedb-crd-managerappscodeVerified publisher0.21.01 of 1See more

kubedb-crd-manager appscode 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

480
kubedb-gitopsappscodeVerified publisher0.14.01 of 1See more

kubedb-gitops appscode 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-gitops:v0.14.0c743f8d7a199
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

444
kubedb-oneappscodeVerified publisher2023.12.281 of 10See more

kubedb-one appscode 2023.12.28

1 of the 10 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-autoscaler:v0.25.0df6b11907d33
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

15,200
kubedb-ops-managerappscodeVerified publisher0.53.01 of 1See more

kubedb-ops-manager appscode 0.53.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

549
kubedb-webhook-serverappscodeVerified publisher0.42.01 of 1See more

kubedb-webhook-server appscode 0.42.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

453
kubevaultappscodeVerified publisher2026.8.71 of 2See more

kubevault appscode 2026.8.7

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubevault/vault-operator:v0.25.0c8e042b5cee8
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

783
kubevault-certifiedappscodeVerified publisher2026.2.271 of 1See more

kubevault-certified appscode 2026.2.27

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubevault/vault-operator:v0.24.00087cb49616f
openssl@3.0.19-1~deb12u2
no fix listed

Open the chart page →

1,106
kubevault-operatorappscodeVerified publisher0.25.01 of 1See more

kubevault-operator appscode 0.25.0

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubevault/vault-operator:v0.25.0c8e042b5cee8
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

481
kubevault-webhook-serverappscodeVerified publisher0.25.01 of 2See more

kubevault-webhook-server appscode 0.25.0

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/kubevault/vault-operator:v0.25.0c8e042b5cee8
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

783
license-proxyserverappscodeVerified publisher2026.2.161 of 1See more

license-proxyserver appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/license-proxyserver:v0.1.1e192ad567e0b
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,106
license-proxyserver-managerappscodeVerified publisher2026.2.161 of 1See more

license-proxyserver-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/license-proxyserver:v0.1.1e192ad567e0b
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,106
marketplace-apiappscodeVerified publisher2026.9.111 of 1See more

marketplace-api appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,592
offline-license-serverappscodeVerified publisher2026.9.112 of 2See more

offline-license-server appscode 2026.9.11

2 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/maxmind-geoip:city-mmdb-latesta3236324c4e2
openssl@3.5.6-r0
3.5.7-r0
ghcr.io/appscode/offline-license-server:v0.0.76e4b66308d8f6
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,681
petsetappscodeVerified publisher2026.5.221 of 1See more

petset appscode 2026.5.22

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/petset:v0.1.093fa0daf603c
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

853
pgadminappscodeVerified publisher2026.3.301 of 1See more

pgadmin appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
dpage/pgadmin4:9.11.050700ac17936
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,565
platform-apiappscodeVerified publisher2026.9.113 of 3See more

platform-api appscode 2026.9.11

3 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
ghcr.io/appscode/maxmind-geoip:city-mmdb-latesta3236324c4e2
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

37,268
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25

Open the chart page →

3,270
service-backendappscodeVerified publisher2026.9.111 of 1See more

service-backend appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,329
service-gatewayappscodeVerified publisher2026.9.111 of 3See more

service-gateway appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,076
service-providerappscodeVerified publisher2026.9.111 of 2See more

service-provider appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

2,223
taskqueueappscodeVerified publisher2026.2.161 of 1See more

taskqueue appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/taskqueue:v0.0.36877c958a3c6
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,076
tricksterappscodeVerified publisher2026.1.151 of 1See more

trickster appscode 2026.1.15

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/appscode/trickster:v2.0.0cdbbed831f28
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,220
voyager-gatewayappscodeVerified publisher2026.7.211 of 2See more

voyager-gateway appscode 2026.7.21

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,253
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
openssl@3.0.9-1
no fix listed

Open the chart page →

5,657
appwriteappwrite-helmVerified publisher1.3.21 of 8See more

appwrite appwrite-helm 1.3.2

1 of the 8 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

9,847
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
openssl@3.5.1-1
3.5.6-1~deb13u2

Open the chart page →

7,489
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11

Open the chart page →

7,300
argonix-apiargonix0.2.01 of 4See more

argonix-api argonix 0.2.0

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
ghcr.io/argonix-io/argonix-api-frontend:1.0.0b6a67099e4c5
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

4,923
arlas-aiasarlas-stackVerified publisher28.8.010 of 22See more

arlas-aias arlas-stack 28.8.0

10 of the 22 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
openssl@3.0.16-1~deb12u1
no fix listed
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
openssl@3.0.16-1~deb12u1
no fix listed
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
openssl@3.5.6-r0
3.5.7-r0
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

40,238
arlas-uisarlas-stackVerified publisher28.8.01 of 4See more

arlas-uis arlas-stack 28.8.0

1 of the 4 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

2,985
assemblylineassemblylineVerified publisher7.4.174 of 12See more

assemblyline assemblyline 7.4.17

4 of the 12 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
cccs/assemblyline-core:4.7.4.stable177c3c25d4d6e0
openssl@3.0.20-1~deb12u2
no fix listed
cccs/assemblyline-rust:4.7.4.stable17468326853ec5
openssl@3.0.20-1~deb12u2
no fix listed
cccs/assemblyline-socketio:4.7.4.stable1724646dbfd944
openssl@3.0.20-1~deb12u2
no fix listed
cccs/assemblyline-ui:4.7.4.stable171a7a103668f5
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

12,898
dltkvassist-iot-data-integrity-verification0.2.01 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

1 of the 9 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
no fix listed

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.01 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

1 of the 9 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
no fix listed

Open the chart page →

77,706
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

13,352
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-42767.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.25

Open the chart page →

10,061

Container images carrying it

2,147 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.7-r0
13
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
no fix listed
11
ethpandaops/xatu:latest74d4cf2c436c
openssl@3.0.20-1~deb12u2
no fix listed
10
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.25
10
library/rabbitmq:3.13-management:3-managemente582c0bc7766
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
8
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2
7
library/kong:3.6a42d2b4503e7
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openssl@3.0.20-1~deb12u2
no fix listed
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
no fix listed
6
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
no fix listed
6
curlimages/curl:8.17.0935d9100e9ba
openssl@3.5.4-r0
3.5.7-r0
6
library/mariadb:10:10.11ce66c7be32a0
openssl@3.0.2-0ubuntu1.26
no fix listed
6
library/redis:6:6.2143f7bfc2358
openssl@3.0.20-1~deb12u2
no fix listed
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
openssl@3.5.6-r0
3.5.7-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
6
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed
6
alpine/kubectl:1.34.18413f8890d19
openssl@3.5.4-r0
3.5.7-r0
5
bitnamilegacy/kubectl:1.29.2c74b703deed2
openssl@3.0.11-1~deb12u2
no fix listed
5
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
openssl@3.0.16-1~deb12u1
no fix listed
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
openssl@3.0.20-1~deb12u1
no fix listed
5
library/memcached:1.6.39-alpinec8503d4491ed
openssl@3.5.4-r0
3.5.7-r0
5
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed
5
library/redis:7.2:7.2-bookworm74566c6910d1
openssl@3.0.20-1~deb12u2
no fix listed
5
quay.io/kiwigrid/k8s-sidecar:2.8.1abb55b2165c6
openssl@3.5.6-r0
3.5.7-r0
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
openssl@3.5.5-r0
3.5.7-r0
5
artifacthub/postgres:latest4fd34fa635cc
openssl@3.5.1-1
3.5.6-1~deb13u2
4
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
openssl@3.0.17-1~deb12u2
no fix listed
4
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
openssl@3.0.17-1~deb12u1
no fix listed
4
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
no fix listed
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
openssl@3.0.17-1~deb12u2
no fix listed
4
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
no fix listed
4
cloudflare/cloudflared:2026.3.06b599ca3e974
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
4
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
no fix listed
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.25
4
library/nginx:1.27.1287ff321f9e3
openssl@3.0.14-1~deb12u2
no fix listed
4
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.6-1~deb13u2
4
library/rabbitmq:3.13-management-alpine:3-management-alpine606d8c0d6b3c
openssl@3.5.4-r0
3.5.7-r0
4
library/rabbitmq:3.11-managementc3f70098e01d
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.25
4
library/redis:7:7.4:7.4.1171da9275c5f3
openssl@3.0.20-1~deb12u2
no fix listed
4
mastercloudapps/planner:v1.2340a950b311b2
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.25
4
natsio/nats-server-config-reloader:0.23.064cb6c858e79
openssl@3.5.5-r0
3.5.7-r0
4
opea/llm-tgi:1.00c25aab3f106
openssl@3.0.14-1~deb12u2
no fix listed
4
shashkist/flask-contacts-app:latest581de1fd6084
openssl@3.0.15-1~deb12u1
no fix listed
4
valkey/valkey:9.0.2930b41430fb7
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
4
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
openssl@3.5.6-r0
3.5.7-r0
4
ghcr.io/appscode/petset:v0.1.093fa0daf603c
openssl@3.5.6-r0
3.5.7-r0
4
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.25
4
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
openssl@3.0.20-1~deb12u2
no fix listed
4
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
openssl@3.0.20-1~deb12u2
no fix listed
4
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
openssl@3.0.20-1~deb12u2
no fix listed
4

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.