StackRadar

CVE-2026-54872

Low

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
0.003
16th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,971
of 17,966 indexed, latest versions
Container images
3,013
deployed by those charts
Fix available
3 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,971 of 17,966 indexed charts deploy, on 3,013 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+122 more1.0.1f-1ubuntu2.27+esm17, 1.0.2g-1ubuntu4.20+esm19, 1.1.1-1ubuntu2.1~18.04.23+esm11, 1.1.1f-1ubuntu2.24+esm6+4 more2,713
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2300
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm722
OSV records
ALPINE-CVE-2026-54872DEBIAN-CVE-2026-54872UBUNTU-CVE-2026-54872ECHO-1163-5842-15ed
Also known as
USN-8847-1, USN-8847-2
Trending
Rank 3 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,971 by stars
ChartLatestAffected imagesRadar Score
heimdallheimdallOfficialVerified publisher3.3.31 of 2See more

heimdall heimdall 3.3.3

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/postgres:17f4c66b820c6f
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,359
dolibarrhelmforgeVerified publisher1.2.191 of 3See more

dolibarr helmforge 1.2.19

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dolibarr/dolibarr:24.0.069ec52e3b7ef
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,403
karakeephelmforgeVerified publisher1.2.92 of 3See more

karakeep helmforge 1.2.9

2 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.16
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

11,108
openhabhelmforgeVerified publisher1.2.01 of 1See more

openhab helmforge 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
openhab/openhab:5.2.1bfd4a60e90da
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

4,299
postgresqlhelmforgeVerified publisher2.0.51 of 1See more

postgresql helmforge 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie86c951e05bf5
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,446
umamihelmforgeVerified publisher2.3.41 of 3See more

umami helmforge 2.3.4

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie5a5a84b19854
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,673
openctihelm-openctiVerified publisher3.0.131 of 8See more

opencti helm-opencti 3.0.13

1 of the 8 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

3,437
hertzbeathertzbeatOfficialVerified publisher1.8.13 of 4See more

hertzbeat hertzbeat 1.8.1

3 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
apache/hertzbeat-collector:1.8.0a2bab1be574c
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.16
library/postgres:15dfbbb0ad8cab
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

15,440
infrahubinfrahubVerified publisher4.33.34 of 5See more

infrahub infrahub 4.33.3

4 of the 5 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
no fix listed
library/neo4j:2026.05.06c162e2432f8
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

11,568
jenkinsjenkins-helm-chartVerified publisher0.1.01 of 1See more

jenkins jenkins-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,846
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.16

Open the chart page →

1,896
kamu-api-serverkamuVerified publisher0.90.01 of 1See more

kamu-api-server kamu 0.90.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.90.0e61435d44913
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

6,642
kubeflowkubeflow1.6.24 of 45See more

kubeflow kubeflow 1.6.2

4 of the 45 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm11
istio/proxyv2:1.14.1df69c1a7af7c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm6
library/python:3.7eedf63967cdb
openssl@3.0.9-1
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm19

Open the chart page →

164,427
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

11,301
testkubekubeshop2.13.32 of 5See more

testkube kubeshop 2.13.3

2 of the 5 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
kubeshop/bitnami-mongodb:8.3.8d48b172d99d8
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.16
kubeshop/testkube-minio:2025.10d8e1af6aca99
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

5,706
librechatlibrechat1.8.101 of 3See more

librechat librechat 1.8.10

1 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
openssl@3.3.3-r0
3.3.7-r2

Open the chart page →

3,188
librechatlibrechat-openshiftVerified publisher1.9.02 of 3See more

librechat librechat-openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.16
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

6,276
libredb-studiolibredb-studioOfficialVerified publisher0.1.721 of 1See more

libredb-studio libredb-studio 0.1.72

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.17.0ce4d58724e25
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,237
local-ailocalai3.4.21 of 1See more

local-ai localai 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/go-skynet/local-ai:latest0632c21ddbe4
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16

Open the chart page →

4,078
radarrloeken-at-homeVerified publisher5.27.0-nightly1 of 1See more

radarr loeken-at-home 5.27.0-nightly

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
loeken/radarr:5.27.0-nightlya24409d3846d
openssl@3.3.4-r0
3.3.7-r2

Open the chart page →

846
headplanenbcloudVerified publisher0.1.23 of 4See more

headplane nbcloud 0.1.2

3 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
openssl@3.0.16-1~deb12u1
no fix listed
headscale/headscale:0.25.1a7a8ae9616bb
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/tale/headplane:0.5.50dbc52cffc19
openssl@3.3.3-r0
3.3.7-r2

Open the chart page →

8,793
node-local-dnsnode-local-dns2.4.01 of 1See more

node-local-dns node-local-dns 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
no fix listed

Open the chart page →

2,804
open5gsopen5gsVerified publisher2.3.51 of 5See more

open5gs open5gs 2.3.5

1 of the 5 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16

Open the chart page →

9,542
ubuntuopen-charts1.2.11 of 1See more

ubuntu open-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/ubuntu:22.04b8b6ee6aa931
openssl@3.0.2-0ubuntu1.29
3.0.2-0ubuntu1.30

Open the chart page →

1,646
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30

Open the chart page →

9,164
prometheus-smartctl-exporterprometheus-communityVerified publisher0.17.11 of 1See more

prometheus-smartctl-exporter prometheus-community 0.17.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/prometheuscommunity/smartctl-exporter:v0.14.0cfe22c36d7d2
openssl@3.3.3-r0
3.3.7-r2

Open the chart page →

1,313
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

11,078
popeyeself-hosters-by-nightVerified publisher0.6.11 of 1See more

popeye self-hosters-by-night 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
derailed/popeye:v0.22.18e68e22c7663
openssl@3.3.2-r4
3.3.7-r2

Open the chart page →

1,453
sops-secrets-operatorsops-secrets-operatorVerified publisher0.28.11 of 1See more

sops-secrets-operator sops-secrets-operator 0.28.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
quay.io/isindir/sops-secrets-operator:0.21.27bba7083dfa0
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6

Open the chart page →

1,045
steampipe-powerpipe-kubernetessteampipe-powerpipe-kubernetesVerified publisher0.13.12 of 2See more

steampipe-powerpipe-kubernetes steampipe-powerpipe-kubernetes 0.13.1

2 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--powerpipe:latesta16ab5ca10a7
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--steampipe:latestc0c8d53df9f3
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

5,945
superstreamsuperstreamOfficialVerified publisher0.9.623 of 3See more

superstream superstream 0.9.62

3 of the 3 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/nats:2.10.25-alpine3290c829aa05
openssl@3.3.3-r0
3.3.7-r2
natsio/nats-server-config-reloader:0.16.1bf97e5e9b9d2
openssl@3.3.2-r4
3.3.7-r2
natsio/prometheus-nats-exporter:0.16.054b0d7ff058e
openssl@3.3.2-r4
3.3.7-r2

Open the chart page →

3,956
topolvmtopolvmVerified publisher17.2.01 of 1See more

topolvm topolvm 17.2.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30

Open the chart page →

2,664
uffizzi-appuffizzi-app1.3.01 of 14See more

uffizzi-app uffizzi-app 1.3.0

1 of the 14 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

20,358
reposilitevolker-raschekVerified publisher1.0.11 of 1See more

reposilite volker-raschek 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.6.390de4c8e6c0e
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.16

Open the chart page →

1,208
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm19

Open the chart page →

13,762
grafana-pdf-exporterwiremindVerified publisher2.1.11 of 1See more

grafana-pdf-exporter wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

10,353
matrixzekker6Verified publisher3.32.02 of 4See more

matrix zekker6 3.32.0

2 of the 4 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
devture/exim-relay:4.98-r0-47ba30080c7a6
openssl@3.3.2-r4
3.3.7-r2
matrixdotorg/synapse:v1.162.06b84a7bbac36
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

5,722
zenmlzenml0.97.01 of 1See more

zenml zenml 0.97.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
zenmldocker/zenml-server:0.97.0aaa74934d606
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,555
eshoponabpabp-charts1.0.01 of 15See more

eshoponabp abp-charts 1.0.0

1 of the 15 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
library/mongo:4.2699d652ed674
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm11

Open the chart page →

19,777
changedetectionalekcVerified publisher0.14.61 of 1See more

changedetection alekc 0.14.6

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,896
code-serveralekcVerified publisher0.1.11 of 1See more

code-server alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
linuxserver/code-server:4.10.1a5e43a05ae79
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.30

Open the chart page →

8,631
vaultwardenandrenarchyVerified publisher6.28.01 of 1See more

vaultwarden andrenarchy 6.28.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.31587c45feaa4
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,718
pod-gatewayangelnu7.1.11 of 2See more

pod-gateway angelnu 7.1.1

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/angelnu/pod-gateway:v1.13.0a5b032e15f75
openssl@3.3.3-r0
3.3.7-r2

Open the chart page →

1,400
tt-rssangelnu7.0.01 of 2See more

tt-rss angelnu 7.0.0

1 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
ghcr.io/angelnu/tt-rss:2.0.100708ba6617f33c9
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

1,216
limesurveyarea-42Verified publisher0.3.982 of 2See more

limesurvey area-42 0.3.98

2 of the 2 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
adamzammit/limesurvey:7.4.0e4b8c2da9ac6
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

4,906
auto-deploy-appav1o-chartsVerified publisher0.15.41 of 1See more

auto-deploy-app av1o-charts 0.15.4

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm19

Open the chart page →

11,197
boundaryboundaryVerified publisher0.1.01 of 1See more

boundary boundary 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
hashicorp/boundary:0.21.037bf86488b74
openssl@3.3.5-r0
3.3.7-r2

Open the chart page →

1,701
backup-zenbzen0.1.41 of 1See more

backup-zen bzen 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
rezachalak/bzen-mongo:1.0.034f694325191
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm6

Open the chart page →

70,619
geoservercloudcamptocamp23.0.17 of 7See more

geoservercloud camptocamp2 3.0.1

7 of the 7 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:3.0.1.1de0b20bd2a43
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6
geoservercloud/geoserver-cloud-gwc:3.0.1.1b04ed89b5d2b
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6
geoservercloud/geoserver-cloud-rest:3.0.1.1318254b52f96
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6
geoservercloud/geoserver-cloud-wcs:3.0.1.14f077124f591
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6
geoservercloud/geoserver-cloud-webui:3.0.1.14f91e3048ac8
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6
geoservercloud/geoserver-cloud-wfs:3.0.1.1299f0d6232d1
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6
geoservercloud/geoserver-cloud-wms:3.0.1.15164f687ce4d
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6

Open the chart page →

13,431
certscertsVerified publisher2.1.31 of 1See more

certs certs 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-54872.

Container imageDigestPackageFixed in
mathnao/certs:2.1.3b900e6b64684
openssl@3.3.4-r0
3.3.7-r2

Open the chart page →

961

Container images carrying it

3,013 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/imcitius/checker-edge:1.1.1174426c1fe00f
openssl@3.3.6-r0
3.3.7-r2
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/immich-app/immich-server:v3.2.4d317916b2809
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u3
1
ghcr.io/imunhatep/kube-node-ready:0.5.07439f6f9f85c
openssl@3.3.6-r0
3.3.7-r2
1
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30
1
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
openssl@3.0.20-1~deb12u1
no fix listed
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.30
1
ghcr.io/itobey/playlist-mirror:1.0.0601082677a46
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/itzg/minecraft-server:latest0c09bc50031e
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
openssl@3.0.16-1~deb12u1
no fix listed
1
ghcr.io/jaydee94/kubeseal-webgui/ui:4.5.34447636e8102
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/jellyfin/jellyfin:12.1008ec8024bda
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/jensholdgaard/ourios:latest628d36ef8e3c
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/jeremylvln/shulker-operator:0.13.027c55706c126
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm11
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
ghcr.io/jlclx/runtimeclass-controller:latestb3a87f92a963
openssl@3.0.14-1~deb12u2
no fix listed
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/jossware/node-provider-labeler:v0.8.0f80e85291439
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/juanfont/headscale:0.29.3:v0.29.30e7f1c6e4ce6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/juanfont/headscale:0.29.4-debug2380cdb4951e
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/juanfont/headscale:0.29.18453e47ea6bf
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/juanfont/headscale:0.29.48833f828b414
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/juanfont/headscale:v0.25.097febecbe6cb
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/justarchinet/archisteamfarm:6.3.10.107286b8b41a1
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
ghcr.io/justwatchcom/sql_exporter:v0.8c4b1d3d0f052
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
openssl@1.1.1f-1ubuntu2.5
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm6
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm6
1

syft 1.42.1 · advisories as of 1 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.