StackRadar

CVE-2026-54872

Low

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
0.003
16th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,935
of 17,985 indexed, latest versions
Container images
2,960
deployed by those charts
Fix available
3 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,935 of 17,985 indexed charts deploy, on 2,960 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+122 more1.0.1f-1ubuntu2.27+esm17, 1.0.2g-1ubuntu4.20+esm19, 1.1.1-1ubuntu2.1~18.04.23+esm11, 1.1.1f-1ubuntu2.24+esm6+4 more2,664
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2296
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm722
OSV records
ALPINE-CVE-2026-54872DEBIAN-CVE-2026-54872UBUNTU-CVE-2026-54872ECHO-1163-5842-15ed
Also known as
USN-8847-1, USN-8847-2
Trending
Rank 3 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,935 by stars
ChartLatestAffected imagesRadar Score
laraveldevops0.10.32 of 4See more

laravel devops 0.10.3

2 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/mariadb:10.9.4fbb8456ebdb1
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.30
ghcr.io/codingducksrl/laravel:8.15be52524664c
nodejs@16.18.0-deb-1nodesource1
openssl@3.0.2-0ubuntu1.6
no fix listed
3.0.2-0ubuntu1.30

Open the chart page →

119,420
wordpressdevops0.12.01 of 4See more

wordpress devops 0.12.0

1 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/mariadb:10.8.30abf60f81588
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30

Open the chart page →

14,136
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

10,282
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.30

Open the chart page →

13,638
calertdevtron0.0.11 of 1See more

calert devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

4,898
devtron-enterprisedevtron48.0.012 of 28See more

devtron-enterprise devtron 48.0.0

12 of the 28 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/git-sensor:94237c18-950-3941803c7bf249aa1
openssl@3.3.2-r4
3.3.7-r2
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
openssl@3.3.2-r4
3.3.7-r2
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm19
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/kubewatch:09867a9c-419-39288d30a7c640c63
openssl@3.3.2-r4
3.3.7-r2
quay.io/devtron/lens:3b3d6d0e-333-39292e886b8d2b54b
openssl@3.3.2-r4
3.3.7-r2
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssl@3.0.17-1~deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

72,366
devtron-logs-dumpdevtron0.1.01 of 1See more

devtron-logs-dump devtron 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.30

Open the chart page →

5,183
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

12,302
migration-incluster-cddevtron0.10.01 of 1See more

migration-incluster-cd devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

4,147
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

10,282
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.30

Open the chart page →

13,638
calertdevtron-labs0.0.11 of 1See more

calert devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

4,898
devtron-enterprisedevtron-labs48.0.012 of 28See more

devtron-enterprise devtron-labs 48.0.0

12 of the 28 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/git-sensor:94237c18-950-3941803c7bf249aa1
openssl@3.3.2-r4
3.3.7-r2
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
openssl@3.3.2-r4
3.3.7-r2
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm19
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/kubewatch:09867a9c-419-39288d30a7c640c63
openssl@3.3.2-r4
3.3.7-r2
quay.io/devtron/lens:3b3d6d0e-333-39292e886b8d2b54b
openssl@3.3.2-r4
3.3.7-r2
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssl@3.0.17-1~deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

72,366
devtron-logs-dumpdevtron-labs0.1.01 of 1See more

devtron-logs-dump devtron-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.30

Open the chart page →

5,183
devtron-operatordevtron-labs0.23.35 of 11See more

devtron-operator devtron-labs 0.23.3

5 of the 11 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

34,366
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

12,302
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

4,147
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.03 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm11
library/rabbitmq:3-managemente582c0bc7766
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.16
oscarsotosanchez/weatherservice:v1.0911ec961d10b
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm11

Open the chart page →

28,815
dial-admindialVerified publisher0.19.01 of 3See more

dial-admin dial 0.19.0

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

4,032
difydify1.0.03 of 4See more

dify dify 1.0.0

3 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
openssl@3.0.15-1~deb12u1
no fix listed
langgenius/dify-plugin-daemon:main-local7d2fb04baf44
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
langgenius/dify-sandbox:0.2.009b7e8705673
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

55,753
diomdiom0.2.01 of 1See more

diom diom 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
svix/diom-operator:0.3.085dba8f1caa8
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,246
pagesdipak1.0.02 of 3See more

pages dipak 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm6
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm11

Open the chart page →

20,785
direktivdirektivVerified publisher0.10.02 of 6See more

direktiv direktiv 0.10.0

2 of the 6 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
victoriametrics/victoria-logs:v1.15.0-victorialogsd7435244eb19
openssl@3.3.3-r0
3.3.7-r2
registry.k8s.io/ingress-nginx/controller:v1.12.0e6b8de175acd
openssl@3.3.2-r4
3.3.7-r2

Open the chart page →

4,034
emqxdjdl-charts1.1.21 of 1See more

emqx djdl-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
emqx/emqx:5.8.0b37886391e1f
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

2,674
adventurelogdjjudas21Verified publisher0.1.11 of 3See more

adventurelog djjudas21 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

8,224
alertifydjjudas21Verified publisher0.1.01 of 1See more

alertify djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
djjudas21/alertify:0.1.0ba22be670c37
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

2,633
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
openssl@3.0.9-1
no fix listed

Open the chart page →

7,703
ownclouddjjudas21Verified publisher0.3.233 of 3See more

owncloud djjudas21 0.3.23

3 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.3.2-debian-12-r9320c70dfd914
openssl@3.0.13-1~deb12u1
no fix listed
owncloud/server:10.16.3b3f9efdcd7f7
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.30
valkey/valkey:8.1.481db6d39e1bb
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u3

Open the chart page →

11,206
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.16

Open the chart page →

98,578
spoolmandjjudas21Verified publisher0.1.81 of 1See more

spoolman djjudas21 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.24.042135965c42d
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,051
truecommanddjjudas21Verified publisher0.1.01 of 1See more

truecommand djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ixsystems/truecommand:3.2.019c218455cd2
openssl@3.5.1-1
3.5.7-1~deb13u3

Open the chart page →

5,697
webtreesdjjudas21Verified publisher3.0.01 of 1See more

webtrees djjudas21 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u3

Open the chart page →

6,654
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

15,370
netbirddmdhrumilmistryVerified publisher0.1.04 of 6See more

netbird dmdhrumilmistry 0.1.0

4 of the 6 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
coturn/coturn:latestbbefd3e1fdfd
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
netbirdio/management:latest3c3bed2a982c
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
netbirdio/relay:latest0ef3133050c7
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
netbirdio/signal:latest04c401eb167e
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

3,920
dnation-kubernetes-jsonnet-translatordnationcloud2.0.11 of 1See more

dnation-kubernetes-jsonnet-translator dnationcloud 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

4,092
dnation-kubernetes-monitoringdnationcloud3.0.21 of 1See more

dnation-kubernetes-monitoring dnationcloud 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

4,092
dnation-kubernetes-monitoring-stackdnationcloud5.0.03 of 18See more

dnation-kubernetes-monitoring-stack dnationcloud 5.0.0

3 of the 18 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed
grafana/alloy:v1.19.2b8ec653c4423
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
nginxinc/nginx-unprivileged:1.27-alpine65e3e85dbaed
openssl@3.3.3-r0
3.3.7-r2

Open the chart page →

24,155
api-postsdniel0.9.11 of 1See more

api-posts dniel 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dniel/api-posts:master45a667852f2a
openssl@1.1.1-1ubuntu2.1~18.04.4
1.1.1-1ubuntu2.1~18.04.23+esm11

Open the chart page →

9,231
dnsmasq-k8sdnsmasq-k8s1.4.11 of 1See more

dnsmasq-k8s dnsmasq-k8s 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u3

Open the chart page →

3,355
dominodomino-iisasVerified publisher0.3.13 of 3See more

domino domino-iisas 0.3.1

3 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u3
ghcr.io/iisas/domino-frontend:k8s8e53861be292
openssl@3.0.17-1~deb12u2
no fix listed
ghcr.io/iisas/domino-rest:latest3009350bfc11
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

11,430
exim4dossif0.2.01 of 1See more

exim4 dossif 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
tianon/exim4:latestaa8ddf38e160
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,243
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.30

Open the chart page →

26,156
healthchecksdoubanVerified publisher1.0.101 of 2See more

healthchecks douban 1.0.10

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
healthchecks/healthchecks:latestaa08a61b0dcf
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,116
seleniumdoubanVerified publisher1.3.21 of 1See more

selenium douban 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

12,293
eoloplannerdreyg-jescribanob-chart-eoloplanner0.1.03 of 7See more

eoloplanner dreyg-jescribanob-chart-eoloplanner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm11
library/rabbitmq:3-managemente582c0bc7766
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.16
oscarsotosanchez/weatherservice:v1.0911ec961d10b
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm11

Open the chart page →

25,790
drogue-cloud-examplesdrogue-iotVerified publisher0.7.111 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

1 of the 6 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
openssl@3.0.2-0ubuntu1.2
3.0.2-0ubuntu1.30

Open the chart page →

31,755
duckdb-uiduckdb-ui0.5.21 of 1See more

duckdb-ui duckdb-ui 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

4,630
cloudflaredduck-helm1.1.31 of 1See more

cloudflared duck-helm 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,631
postgres-backup-localduck-helm0.1.51 of 1See more

postgres-backup-local duck-helm 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
prodrigestivill/postgres-backup-local:latestf70742ebe42b
openssl@3.5.1-1
3.5.7-1~deb13u3

Open the chart page →

3,760
rundeckdwardu-helm-charts0.3.42 of 2See more

rundeck dwardu-helm-charts 0.3.4

2 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/nginx:stableb972f831f200
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
rundeck/rundeck:3.2.74d64fe56f767
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm19

Open the chart page →

20,242

Container images carrying it

2,960 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30
1
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
gcr.io/datadoghq/observability-pipelines-worker:2.23.0cf56b011dfff
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
openssl@1.1.1-1ubuntu2.1~18.04.5
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.23+esm11
1.0.2n-1ubuntu5.13+esm7
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm6
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm6
1
gcr.io/istio-testing/install-cni:latestec6f9ea5757b
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.16
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30
1
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
openssl@3.0.14-1~deb12u2
no fix listed
1
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm19
1
gcr.io/ml-pipeline/metadata-envoy:2.3.0e8e263a919ff
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm6
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
openssl@3.0.14-1~deb12u2
no fix listed
1
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
openssl@3.0.15-1~deb12u1
no fix listed
1
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm11
1
ghcr.io/abcdesktopio/mongo:safe8.09a1f085b0530
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
ghcr.io/absmach/magistrala/ui-smq:latestea7e7f0e293e
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/aeharding/voyager:latest8e9d9ed499e3
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.16
1
ghcr.io/aetrius/msockperf-server/msockperf-server:main46ae4ea003e0
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.16
1
ghcr.io/afairgiant/medikeep:v0.71.0086579173033
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/akash-network/console-api:2.64.0ba359097329d
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/akash-network/deploy-web:2.46.0ac540172c120
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/akash-network/provider-console:1.0.04d4c19a8d3ff
openssl@3.3.2-r4
3.3.7-r2
1
ghcr.io/akash-network/provider-proxy:1.4.353f533d7c6f8
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/aklivity/zilla:2.4.78e375ed29ecd
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.30
1
ghcr.io/alethic/auth0-operator-image:1.4.122468990a8521
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.16
1
ghcr.io/alexmorbo/dell_idrac_fan_controller:v0.1.6-1d110504d551d
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
openssl@3.0.18-1~deb12u1
no fix listed
1
ghcr.io/amoylab/unla/mcp-gateway:latest960cb3cfce77
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30
1
ghcr.io/amoylab/unla/web:latesteac1df1c5e66
openssl@3.0.16-1~deb12u1
no fix listed
1
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
openssl@3.0.18-1~deb12u2
no fix listed
1
ghcr.io/analogj/scrutiny:v0.9.2-web71be54e99608
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/angelnu/pod-gateway:v1.13.0a5b032e15f75
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/angelnu/tt-rss:2.0.100708ba6617f33c9
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
openssl@3.0.14-1~deb12u2
no fix listed
1
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.16
1
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.30
1
ghcr.io/appscode/b3:v2026.9.1178a9fb785ec5
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/appscode/capi-ops-manager:v0.0.57465f35b684c
openssl@3.3.2-r4
3.3.7-r2
1
ghcr.io/appscode/csi-driver-cacerts:v0.6.0ab213b156017
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/appscode/gh-ci-webhook:v0.0.2036ce246d884e
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u3
1
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.30
1

syft 1.42.1 · advisories as of 1 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.