StackRadar

CVE-2026-54872

Low

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
0.003
16th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,971
of 17,966 indexed, latest versions
Container images
3,013
deployed by those charts
Fix available
3 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,971 of 17,966 indexed charts deploy, on 3,013 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+122 more1.0.1f-1ubuntu2.27+esm17, 1.0.2g-1ubuntu4.20+esm19, 1.1.1-1ubuntu2.1~18.04.23+esm11, 1.1.1f-1ubuntu2.24+esm6+4 more2,713
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2300
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm722
OSV records
ALPINE-CVE-2026-54872DEBIAN-CVE-2026-54872UBUNTU-CVE-2026-54872ECHO-1163-5842-15ed
Also known as
USN-8847-1, USN-8847-2
Trending
Rank 3 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,971 by stars
ChartLatestAffected imagesRadar Score
cloudflaredkubitodevVerified publisher1.7.91 of 1See more

cloudflared kubitodev 1.7.9

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,631
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.16

Open the chart page →

3,669
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
openssl@3.0.17-1~deb12u1
no fix listed

Open the chart page →

6,585
daskdask2024.1.12 of 2See more

dask dask 2024.1.1

2 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30

Open the chart page →

13,637
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16

Open the chart page →

3,226
factorio-server-chartsfactorio-server-chartsVerified publisher2.5.21 of 1See more

factorio-server-charts factorio-server-charts 2.5.2

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
factoriotools/factorio:latest18c07a80cacc
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,586
netbirdjaconiVerified publisher0.15.14 of 4See more

netbird jaconi 0.15.1

4 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/golang:latest3680233e3204
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
netbirdio/management:0.45.10c9994b393ea
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16
netbirdio/relay:0.45.1872e3add0e1e
openssl@3.0.16-1~deb12u1
no fix listed
netbirdio/signal:0.45.146ce5a45538f
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

8,781
litellm-helmlitellm1.103.11 of 2See more

litellm-helm litellm 1.103.1

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

5,520
localstacklocalstack0.7.11 of 1See more

localstack localstack 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
localstack/localstack:latest4abc29e923e5
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,532
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

12,376
argocdnicklasfrahm-argocdVerified publisher0.3.02 of 2See more

argocd nicklasfrahm-argocd 0.3.0

2 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
public.ecr.aws/docker/library/redis:7.2.8-alpinec88ea2979a49
openssl@3.3.3-r0
3.3.7-r2
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16

Open the chart page →

5,842
oneuptimeoneuptimeOfficialVerified publisher14.0.104 of 7See more

oneuptime oneuptime 14.0.10

4 of the 7 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.72f63f517462f
openssl@3.0.2-0ubuntu1.29
3.0.2-0ubuntu1.30
library/postgres:latest5a5a84b19854
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
oneuptime/probe:release2a29fe29ddc8
openssl@3.0.22-1~deb12u1
no fix listed
oneuptime/runner:release65ffc551c71d
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

9,051
openclawopenclaw-helmVerified publisher1.5.402 of 2See more

openclaw openclaw-helm 1.5.40

2 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u3
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
openssl@3.0.20-1~deb12u1
no fix listed

Open the chart page →

6,458
stalwart-mailstalwart-mailVerified publisher2.0.111 of 1See more

stalwart-mail stalwart-mail 2.0.11

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.23be2156787966
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,251
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm11

Open the chart page →

82,164
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

8,199
amd-gpuamd-gpu-helmOfficialVerified publisher0.22.01 of 1See more

amd-gpu amd-gpu-helm 0.22.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
rocm/k8s-device-plugin:1.31.0.926212c665aab
openssl@3.3.3-r0
3.3.7-r2

Open the chart page →

1,295
camel-kcamel-kVerified publisher2.11.01 of 1See more

camel-k camel-k 2.11.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
apache/camel-k:2.11.0d173e7efe258
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6

Open the chart page →

1,539
glasskube-operatorglasskubeOfficialVerified publisher0.12.21 of 3See more

glasskube-operator glasskube 0.12.2

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
glasskube/operator:0.12.2be5133100d63
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.30

Open the chart page →

12,693
outlinekubitodevVerified publisher1.2.21 of 4See more

outline kubitodev 1.2.2

1 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
outlinewiki/outline:0.82.0494dfb9249a6
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

5,901
milvusmilvus-helm5.0.302 of 4See more

milvus milvus-helm 5.0.30

2 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.30
milvusdb/etcd:3.5.25-r1fededb2f2d63
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.30

Open the chart page →

12,012
prefect-serverprefectVerified publisher2026.9.262342032 of 2See more

prefect-server prefect 2026.9.26234203

2 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
openssl@3.0.15-1~deb12u1
no fix listed
prefecthq/prefect:3.8.7-python3.11b3cdfebebff0
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

6,057
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16

Open the chart page →

6,860
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

88,954
bitbucketatlassian-data-centerVerified publisher2.0.151 of 1See more

bitbucket atlassian-data-center 2.0.15

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
atlassian/bitbucket:10.2.705933f2b1cfd
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16

Open the chart page →

37,035
ansible-semaphorecloudhippieVerified publisher15.2.121 of 1See more

ansible-semaphore cloudhippie 15.2.12

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
semaphoreui/semaphore:v2.19.1498ad9bc7a2a0
openssl@3.3.7-r0
3.3.7-r2

Open the chart page →

1,565
zookeepercloudpirates-zookeeperVerified publisher0.15.01 of 1See more

zookeeper cloudpirates-zookeeper 0.15.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/zookeeper:3.9.57d0f24ebb67b
openssl@3.0.2-0ubuntu1.29
3.0.2-0ubuntu1.30

Open the chart page →

3,280
codefreshcodefresh-onpremOfficialVerified publisher2.12.184 of 42See more

codefresh codefresh-onprem 2.12.18

4 of the 42 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.39e635efba431
openssl@3.0.17-1~deb12u1
no fix listed
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

16,563
contourcontour0.8.01 of 2See more

contour contour 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.38.4447f857a0146
openssl@3.0.2-0ubuntu1.29
3.0.2-0ubuntu1.30

Open the chart page →

1,717
apim3graviteeioVerified publisher4.12.202 of 4See more

apim3 graviteeio 4.12.20

2 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.20-debian8f1a14449381
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
graviteeio/apim-management-api:4.12.20-debiand30d085395ca
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

5,183
redisgroundhog2k2.4.81 of 1See more

redis groundhog2k 2.4.8

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/redis:8.10.2d5ac52db24d4
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

747
wordpressgroundhog2k0.16.61 of 1See more

wordpress groundhog2k 0.16.6

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/wordpress:7.1.2-apachebb209c8ab111
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

3,282
memcachedkubelauncherVerified publisher0.1.331 of 1See more

memcached kubelauncher 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/memcacheddigest-pinned91f2066d2aa4
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

539
mysqlkubelauncherVerified publisher0.4.61 of 1See more

mysql kubelauncher 0.4.6

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/mysqldigest-pinnedb25f98e6a86f
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

521
postgresqlkubelauncherVerified publisher0.4.31 of 1See more

postgresql kubelauncher 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/postgresqldigest-pinned1a27e11e5925
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6

Open the chart page →

1,383
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2api:3.86f56d239d280
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2auth:3.833ecfda16608
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2notifier:3.8f190a6212195
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2rulesengine:3.8259503496ff9
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2scheduler:3.8b1de2055c362
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2sensorcontainer:3.8b1a338f64773
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2stream:3.81c8904a3bf67
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2timersengine:3.81bf35bfaf00c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2web:3.809989a26c8b7
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6
stackstorm/st2workflowengine:3.819fdfffdbba8
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

758,272
supabasetokens-studioVerified publisher1.0.06 of 14See more

supabase tokens-studio 1.0.0

6 of the 14 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.26476cb08c816a
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
library/kong:3.8.0fd78090e9e77
openssl@3.0.2-0ubuntu1.29
3.0.2-0ubuntu1.30
supabase/edge-runtime:v1.59.0eff9c554d649
openssl@3.0.14-1~deb12u2
no fix listed
supabase/postgres-meta:v0.84.2d0a96973e9f1
openssl@3.0.14-1~deb12u2
no fix listed
supabase/realtime:v2.33.8d207e6e23ad3
openssl@3.0.14-1~deb12u2
no fix listed
supabase/studio:20241021-9f9b08326d8070c55e9
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

24,811
wekanwekanVerified publisher12.12.01 of 3See more

wekan wekan 12.12.0

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/wekan/ferretdb:latest90cd15fa7982
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,678
renterdartur9010Verified publisher1.4.41 of 2See more

renterd artur9010 1.4.4

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

9,022
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16

Open the chart page →

2,069
budibasebudibase0.0.0-master3 of 7See more

budibase budibase 0.0.0-master

3 of the 7 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
openssl@3.0.18-1~deb12u2
no fix listed
budibase/proxy:3.41.38d780b6ee602
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
library/redis:latest8a1efc5f4795
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

11,464
krokicowboysysopVerified publisher6.1.04 of 5See more

kroki cowboysysop 6.1.0

4 of the 5 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
yuzutech/kroki-bpmn:0.29.1444805c4b917
openssl@3.3.5-r0
3.3.7-r2
yuzutech/kroki-diagramsnet:0.29.1b810edbf9c62
openssl@3.3.5-r0
3.3.7-r2
yuzutech/kroki-excalidraw:0.29.157917319ea70
openssl@3.3.5-r0
3.3.7-r2
yuzutech/kroki-mermaid:0.29.1963b4acfde6e
openssl@3.3.5-r0
3.3.7-r2

Open the chart page →

8,245
paperless-ngxfmjstudios0.2.83 of 5See more

paperless-ngx fmjstudios 0.2.8

3 of the 5 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.30
gotenberg/gotenberg:8.0.1cf0b9a7ca3cf
openssl@3.0.11-1~deb12u2
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:2.10.1a132c2ac7c57
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

32,948
bitcoindfold0.3.21 of 2See more

bitcoind fold 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
thesisrobot/bitcoind:v23.016b368e4d52c
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30

Open the chart page →

3,715
minifluxgabe565Verified publisher0.9.21 of 2See more

miniflux gabe565 0.9.2

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/miniflux/miniflux:2.2.5bacc9b78ec61
openssl@3.3.2-r4
3.3.7-r2

Open the chart page →

1,505
cubestoregadsme1.2.01 of 3See more

cubestore gadsme 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
cubejs/cubestore:v1.5.334ac523a9bab
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

3,249
gopaddlegopaddle-liteVerified publisher5.0.01 of 1See more

gopaddle gopaddle-lite 5.0.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
gopaddle/gopaddle:5.0435359250b63
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.30

Open the chart page →

5,265
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.30

Open the chart page →

8,322
cassandrakubelauncherVerified publisher0.1.291 of 1See more

cassandra kubelauncher 0.1.29

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/cassandradigest-pinned4a2625365fc6
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

1,315
etcdkubelauncherVerified publisher0.4.61 of 1See more

etcd kubelauncher 0.4.6

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/etcddigest-pinnedd139ad1e93ea
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

523

Container images carrying it

3,013 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/atolat/open-cache:latestd6105dd73eb4
openssl@3.3.6-r0
3.3.7-r2
1
ghcr.io/attestkeep/attestkeep-k8s:1.2.02a6d6c57edea
openssl@3.3.7-r1
3.3.7-r2
1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
openssl@3.0.18-1~deb12u2
no fix listed
1
ghcr.io/atuinsh/atuin:18.23.0f232feeead54
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
openssl@3.0.16-1~deb12u1
no fix listed
1
ghcr.io/babykart/gozone:0.18.1f590f4c3c51e
openssl@3.3.7-r1
3.3.7-r2
1
ghcr.io/backstage/backstage:lateste2a48bb6ab55
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/base/node-reth:v1.1.18eb6e492fe3c
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
1
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.30
1
ghcr.io/bastienwirtz/homer:v25.11.15c3a0fb561e0
openssl@3.3.5-r0
3.3.7-r2
1
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30
1
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/bitmagnet-io/bitmagnet:v0.10.0cf2c16fac5b5
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/bitwarden/sm-operator:2.1.0846624161f32
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/blessingnator/keycloak-mcn-frontend:2.0.1ddd462dbde39
openssl@3.3.6-r0
3.3.7-r2
1
ghcr.io/blockscout/smart-contract-verifier:main097e82b3468a
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
ghcr.io/bnb-chain/bsc:1.6.2fd0e3ec7d960
openssl@3.3.5-r0
3.3.7-r2
1
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
openssl@3.3.2-r4
3.3.7-r2
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.16
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
1
ghcr.io/bryopsida/openmct:main38b6a50a62b2
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/cableship/argocd-source-tracker:0.0.6ff7dd45aa774
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/cableship/chart-sentinel:0.1.0a037f1042b28
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/camptocamp/pgbouncer:latest757a582f47ca
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30
1
ghcr.io/caninehq/canine:latest68b19aee1c64
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/castai/images/clm:v0.137.040251ebe2ca7
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.0e7f9e8f1d565
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-mesh:v2.8.0091b906a0b13
openssl@3.3.4-r0
3.3.7-r2
1
ghcr.io/chaos-mesh/chaos-mesh:v2.7.28bc853c7414c
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/chaos-mesh/chaos-mesh:v2.8.49e48285bb44c
openssl@3.3.7-r0
3.3.7-r2
1
ghcr.io/chaos-mesh/chaos-mesh:v2.8.3bdb31f3121a2
openssl@3.3.7-r0
3.3.7-r2
1
ghcr.io/chgl/fhir-server-exporter:v3.0.1926f8963a44d4
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6
1
ghcr.io/chgl/magnifhir:v1.5.213f121613edd
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.30
1
ghcr.io/chroma-core/chroma:1.5.3cfd193653bd6
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/chronicleprotocol/ghost:0.81.0417b664eee72
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/chronicleprotocol/spectre:0.68.34e872bc016e8
openssl@3.0.17-1~deb12u3
no fix listed
1
ghcr.io/chronicleprotocol/spire:0.68.379df4fb20322
openssl@3.0.17-1~deb12u3
no fix listed
1
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
openssl@3.0.20-1~deb12u2
no fix listed
1

syft 1.42.1 · advisories as of 1 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.