StackRadar

CVE-2026-42770

Low

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,998
of 17,813 indexed, latest versions
Container images
2,250
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-42770 affecting package openssl for versions less than 3.3.7-4

Carried by container images the latest versions of 1,998 of 17,813 indexed charts deploy, on 2,250 images.

Affected packageAffected versionsFixed inImages
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-45
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+49 more3.0.2-0ubuntu1.25, 3.0.13-0ubuntu3.11, 3.0.20-1~deb12u2, 3.5.3-1ubuntu3.4+2 more1,339
opensslapk3.2.0-r0, 3.3.1-r3, 3.3.1-r4, 3.3.2-r0+21 more3.3.7-r1, 3.5.7-r0, 3.6.3-r0906
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
OSV records
ALPINE-CVE-2026-42770CGA-48p6-q29j-wfgrDEBIAN-CVE-2026-42770UBUNTU-CVE-2026-42770AZL-92843
Also known as
CGA-76q6-x77g-f8w6, CGA-8f4j-7345-7rgx, CGA-m98w-7xrq-cqw4, USN-8414-1

Charts affected

1,998 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,250 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
library/docker:27-dindaa3df78ecf32
openssl@3.3.3-r0
3.3.7-r1
1
library/flink:1.14.6-scala_2.122461f02672b3
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.25
1
library/ghost:6.39.0-alpine77196da4b0df
openssl@3.5.6-r0
3.5.7-r0
1
library/ghost:6.22.0-alpine3.23ac533a6988ee
openssl@3.5.5-r0
3.5.7-r0
1
library/haproxy:3.1-alpine475863a372c9
openssl@3.5.6-r0
3.5.7-r0
1
library/haproxy:3.1-bookworm49a0a0d6f0b8
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2
1
library/haproxy:2.9.6fc5748ff7c72
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
library/httpd:2.4.631ae8051591a5
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
1
library/influxdb:1.12.3-meta8812029260b5
openssl@3.0.18-1~deb12u2
3.0.20-1~deb12u2
1
library/influxdb:1.12.3-datab0f9fc41ed79
openssl@3.0.18-1~deb12u2
3.0.20-1~deb12u2
1
library/mariadb:10.11.21c33370a599c
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.25
1
library/mariadb:12.0.25b6a1eac15b8
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
1
library/mariadb:12.2.2b1cb255a9939
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
1
library/mariadb:10.10.2bfc25a68e113
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.25
1
library/mariadb:10.9.4fbb8456ebdb1
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.25
1
library/mariadb:11.7.2fcc7fcd7114a
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
library/matomo:5.1.2-apache2415789e1602
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1
library/memcached:1.6.4226983a43c918
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2
1
library/memcached:1.6.41-alpine65c80b311a96
openssl@3.5.6-r0
3.5.7-r0
1
library/memcached:1.6.39-alpine3.227b45203a99eb
openssl@3.5.4-r0
3.5.7-r0
1
library/memcached:1.6.409ae868852d0b
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
1
library/memcached:1.6.40cc523a19da58
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
1
library/memcached:1.6.38-alpinee93269864a7d
openssl@3.5.1-r0
3.5.7-r0
1
library/mongo:7.0.140032d2ca20db
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25
1
library/mongo:7.0-jammy:7-jammy406a4fdca9fc
openssl@3.0.2-0ubuntu1.26
no fix listed
1
library/mongo:6.0.12646902910d6a
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.25
1
library/mongo:7.0-jammy84c4a18b60a0
openssl@3.0.2-0ubuntu1.29
no fix listed
1
library/mongo:7.0.28-jammy88785f6f665a
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25
1
library/mongo:7.0.12ae1cf99fa7bf
openssl@3.0.2-0ubuntu1.17
3.0.2-0ubuntu1.25
1
library/mongo:7.0b6421fd6d1c5
openssl@3.0.2-0ubuntu1.26
no fix listed
1
library/mongo:8.0.11dca8d11fe467
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
library/mysql:8.0-debian9382e4f6f7f0
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
1
library/nats:2.12.2-alpine2d5fce3229ae
openssl@3.5.4-r0
3.5.7-r0
1
library/nats:2.11.9-alpine777787bbb4c7
openssl@3.5.1-r0
3.5.7-r0
1
library/nats:2.12.3-alpine88fe8e0e09d6
openssl@3.5.4-r0
3.5.7-r0
1
library/neo4j:2026.02.25ab4ab0358cf
openssl@3.5.5-1~deb13u1
3.5.6-1~deb13u2
1
library/nextcloud:31.0.6-apache588609d76b21
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
1
library/nextcloud:31.0.10-apacheb7faa1653c39
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
1
library/nginx:1.27.409369da6b103
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1
library/nginx:1.291881968aff6f
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2
1
library/nginx:1.31.0-alpine2f07d83bf561
openssl@3.5.6-r0
3.5.7-r0
1
library/nginx:1.30.0-alpine3.23-slim2fb5d772cea6
openssl@3.5.6-r0
3.5.7-r0
1
library/nginx:1.29.8-alpine5616878291a2
openssl@3.5.6-r0
3.5.7-r0
1
library/nginx:1.27-alpine65645c7bb6a0
openssl@3.3.3-r0
3.3.7-r1
1
library/nginx:1.276784fb0834aa
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2
1
library/nginx:1.25.167f9a4f10d14
openssl@3.0.9-1
3.0.20-1~deb12u2
1
library/nginx:1.25.49ff236ed47fe
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
library/nginx:1.28-alpinea8b39bd9cf0f
openssl@3.5.5-r0
3.5.7-r0
1
library/nginx:1.29.3-alpineb3c656d55d7a
openssl@3.5.4-r0
3.5.7-r0
1
library/nginx:1.27.3fb197595ebe7
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.