StackRadar

CVE-2026-54874

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,282
of 17,790 indexed, latest versions
Container images
3,536
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-54874 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,282 of 17,790 indexed charts deploy, on 3,536 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,323
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,190
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-54874DEBIAN-CVE-2026-54874UBUNTU-CVE-2026-54874AZL-97953ECHO-66d7-e273-5f0f
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,282 by stars
ChartLatestAffected imagesRadar Score
helmfile-gitops-agenthelmfile-gitops-agentVerified publisher1.1.963 of 3See more

helmfile-gitops-agent helmfile-gitops-agent 1.1.96

3 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
alpine/git:v2.54.06f3b5029566d
openssl@3.5.7-r0
3.5.8-r0
fluxcd/flux-cli:v2.9.5704d55295355
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/helmfile/helmfile:v1.7.4f20e612d5a98
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,613
adguard-homehelmforgeVerified publisher1.5.21 of 2See more

adguard-home helmforge 1.5.2

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.79aba9e3bf0613
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

175
affinehelmforgeVerified publisher1.0.03 of 3See more

affine helmforge 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
pgvector/pgvector:0.8.6-pg16-bookwormccc6e83d6e35
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/toeverything/affine:0.27.4b649f5ce2384
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,081
alfiohelmforgeVerified publisher1.2.121 of 3See more

alfio helmforge 1.2.12

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,114
answerhelmforgeVerified publisher1.5.21 of 1See more

answer helmforge 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
apache/answer:2.0.2a0d71b0e30a5
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

557
apachehelmforgeVerified publisher1.0.61 of 1See more

apache helmforge 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/httpd:2.4.68979c38c2228d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,703
appwritehelmforgeVerified publisher2.0.01 of 5See more

appwrite helmforge 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

4,689
archiveboxhelmforgeVerified publisher1.1.121 of 1See more

archivebox helmforge 1.1.12

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
archivebox/archivebox:0.7.41a5a37331091
openssl@3.0.20-1~deb12u1
no fix listed

Open the chart page →

7,675
automatischhelmforgeVerified publisher1.3.72 of 4See more

automatisch helmforge 1.3.7

2 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,816
bentopdfhelmforgeVerified publisher1.0.01 of 1See more

bentopdf helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/alam00000/bentopdf:2.8.86ef493c8e3bd
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
booklorehelmforgeVerified publisher2.0.12 of 3See more

booklore helmforge 2.0.1

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
ghcr.io/booklore-app/booklore:v2.3.1d3d3af34bc2c
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,329
bytestashhelmforgeVerified publisher1.0.01 of 1See more

bytestash helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/jordan-dalby/bytestash:1.5.12eb4f736b8cd4
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

739
castopodhelmforgeVerified publisher1.2.72 of 3See more

castopod helmforge 1.2.7

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
castopod/castopod:1.15.54e4f0440520f
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
library/mariadb:12.3.3dd9b303aed4f
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

9,485
certimatehelmforgeVerified publisher1.0.71 of 1See more

certimate helmforge 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
certimate/certimate:v0.4.326e481dd3d2cf
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

222
changedetectionhelmforgeVerified publisher1.1.161 of 1See more

changedetection helmforge 1.1.16

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.5f69554198005
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,612
chiefonboardinghelmforgeVerified publisher1.1.152 of 3See more

chiefonboarding helmforge 1.1.15

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.5.0d0964135ea82
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

7,086
ckanhelmforgeVerified publisher1.3.84 of 6See more

ckan helmforge 1.3.8

4 of the 6 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ckan/ckan-base:2.12.087ecf3f27ad6
openssl@3.0.20-1~deb12u2
no fix listed
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.29
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

10,027
clickhousehelmforgeVerified publisher2.0.21 of 1See more

clickhouse helmforge 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.8.3d73903d1b61d
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

1,614
countlyhelmforgeVerified publisher1.2.62 of 3See more

countly helmforge 1.2.6

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm5
library/mongo:8.3.85211c51171f5
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

18,938
dawarichhelmforgeVerified publisher1.0.12 of 4See more

dawarich helmforge 1.0.1

2 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
postgis/postgis:18-3.67e00e8c3539f
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

10,442
discount-bandithelmforgeVerified publisher2.0.81 of 3See more

discount-bandit helmforge 2.0.8

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
cybrarist/discount-bandit:v4.0.4e9e2447ac666
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

29,930
druidhelmforgeVerified publisher1.3.62 of 4See more

druid helmforge 1.3.6

2 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/zookeeper:3.9.5f258365d4882
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29

Open the chart page →

8,623
drupalhelmforgeVerified publisher1.2.131 of 2See more

drupal helmforge 1.2.13

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/drupal:11.4.6-php8.5-apache-bookworm28f7931ecbcb
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

3,884
entehelmforgeVerified publisher1.0.23 of 4See more

ente helmforge 1.0.2

3 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/ente/server:0472c929b6070e61fecaf2013d47efce2dcda462f646b68a1b8d
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

4,254
fastmcp-serverhelmforgeVerified publisher1.7.41 of 1See more

fastmcp-server helmforge 1.7.4

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
helmforge/fastmcp-server:0.11.2fcb7017327d6
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,304
giteahelmforgeVerified publisher1.1.201 of 1See more

gitea helmforge 1.1.20

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
gitea/gitea:1.27.3-rootless1c17ecaead42
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

543
github-mcp-serverhelmforgeVerified publisher1.0.31 of 1See more

github-mcp-server helmforge 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/github/github-mcp-server:v1.9.0881b53d6f75f
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

400
glancehelmforgeVerified publisher1.0.01 of 1See more

glance helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
glanceapp/glance:v0.8.69dfb09470b20
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

153
hoppscotchhelmforgeVerified publisher1.1.111 of 2See more

hoppscotch helmforge 1.1.11

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,076
immichhelmforgeVerified publisher1.2.84 of 5See more

immich helmforge 1.2.8

4 of the 5 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

11,122
jupyterhubhelmforgeVerified publisher1.0.63 of 3See more

jupyterhub helmforge 1.0.6

3 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
curlimages/curl:8.21.07c12af72ceb3
openssl@3.5.7-r0
3.5.8-r0
jupyterhub/configurable-http-proxy:5.3.069a7170eeeda
openssl@3.5.7-r0
3.5.8-r0
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
openssl@3.0.19-1~deb12u2
no fix listed

Open the chart page →

5,361
komgahelmforgeVerified publisher1.4.151 of 1See more

komga helmforge 1.4.15

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
gotson/komga:1.26.36c2a967bbe9a
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4

Open the chart page →

2,288
listmonkhelmforgeVerified publisher1.1.143 of 3See more

listmonk helmforge 1.1.14

3 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
openssl@3.5.7-r0
3.5.8-r0
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
listmonk/listmonk:v6.2.0f535d59e1499
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,863
mcp-serverhelmforgeVerified publisher1.0.01 of 1See more

mcp-server helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
helmforge/fastmcp-server:0.2.061f759a1421f
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

3,453
medikeephelmforgeVerified publisher2.0.12 of 3See more

medikeep helmforge 2.0.1

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

5,430
memcachedhelmforgeVerified publisher1.0.81 of 1See more

memcached helmforge 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,074
memoshelmforgeVerified publisher2.0.01 of 2See more

memos helmforge 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/node:24.21.0-alpine3.23159fe6464903
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

799
metabasehelmforgeVerified publisher1.2.291 of 3See more

metabase helmforge 1.2.29

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,676
middlewarehelmforgeVerified publisher1.2.63 of 4See more

middleware helmforge 1.2.6

3 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
middlewareeng/middleware:0.3.1747d880812f1
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

9,771
moodlehelmforgeVerified publisher1.1.02 of 2See more

moodle helmforge 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

6,206
mosquittohelmforgeVerified publisher1.5.01 of 1See more

mosquitto helmforge 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/eclipse-mosquitto:2.0.22212f89e1eaeb
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
netboxhelmforgeVerified publisher2.0.13 of 4See more

netbox helmforge 2.0.1

3 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
netboxcommunity/netbox:v4.6.10-5.0.291b823a05cb5
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4

Open the chart page →

4,347
nextcloudhelmforgeVerified publisher1.0.02 of 3See more

nextcloud helmforge 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

7,211
ntfyhelmforgeVerified publisher1.2.21 of 1See more

ntfy helmforge 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
binwiederhier/ntfy:v2.28.06ef4b819f722
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

165
opencloudhelmforgeVerified publisher1.0.01 of 1See more

opencloud helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
opencloudeu/opencloud:7.2.46d992ccc5f1c
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

670
opencuthelmforgeVerified publisher1.1.93 of 5See more

opencut helmforge 1.1.9

3 of the 5 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
helmforge/opencut:v0.3.0bf11156e0ab5
openssl@3.5.7-r0
3.5.8-r0
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,772
openreel-videohelmforgeVerified publisher1.0.31 of 1See more

openreel-video helmforge 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
helmforge/openreel-video:v0.5.07ba0d47b943f
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,086
paprahelmforgeVerified publisher1.0.01 of 1See more

papra helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,560
phpmyadminhelmforgeVerified publisher2.0.11 of 1See more

phpmyadmin helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.342a200db07b4
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

4,819
pimcorehelmforgeVerified publisher2.0.13 of 6See more

pimcore helmforge 2.0.1

3 of the 6 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dunglas/mercure:v0.24.2916834e49961
openssl@3.5.6-r0
3.5.8-r0
library/mariadb:12.3.3dd9b303aed4f
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
library/rabbitmq:4.3.5-alpine3486d98205df
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

3,212

Container images carrying it

3,536 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
1
anguda/ant-media:2.5c435285fc241
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm5
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
openssl@3.0.11-1~deb12u1
no fix listed
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
antrea/antrea-controller-ubuntu:v2.7.0f1373d39217c
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
1
antrea/flow-aggregator:v2.7.0065193e7572f
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
anujdatar/cups:25.07.01685df04a643b
openssl@3.0.16-1~deb12u1
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
1
apache/activemq-artemis:2.37.0bae523439ee3
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.15
1
apache/airflow:2.8.4-python3.964e58748b6b9
openssl@3.0.11-1~deb12u2
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
openssl@3.0.14-1~deb12u2
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
openssl@3.0.11-1~deb12u2
no fix listed
1
apache/answer:2.0.2a0d71b0e30a5
openssl@3.5.7-r0
3.5.8-r0
1
apache/apisix:3.16.0-ubuntu5e47692cac00
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.15
1
apache/camel-k:2.11.0d173e7efe258
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.29
1
apache/hertzbeat:1.8.075d48a62748f
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
apache/iotdb:0.13.3-nodeafa47bf1692a
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
1
apache/kafka:4.1.0bff074a5d005
openssl@3.5.2-r0
3.5.8-r0
1
apache/kafka-native:4.1.09a9d16e60894
openssl@3.5.1-r0
3.5.8-r0
1
apache/nifi-registry:1.27.063b8e3e40742
openssl@3.0.2-0ubuntu1.16
3.0.2-0ubuntu1.29
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm5
1
apachepulsar/pulsar:3.0.79c9947de139d
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29
1
apachepulsar/pulsar:2.9.0d056c89b7131
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
apachepulsar/pulsar:2.8.2d538416d5afe
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm5
1
apache/ranger:2.7.076c176e8a0e4
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
1
apache/rocketmq:5.3.0434d8398f996
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.15
1
apache/rocketmq-exporter:0.0.2c8fb51195444
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29
1
apache/skywalking-oap-server:9.2.0133d35d2c263
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm5
1
apache/skywalking-ui:9.2.0295f1dc87d98
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29
1
apache/skywalking-ui:8.9.180530f0308a5
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm5
1
apache/spark-kubernetes-operator:1.0.0349da72f95c2
openssl@3.5.7-r0
3.5.8-r0
1
apache/superset:4.0.1ab9467fd712c
openssl@3.0.11-1~deb12u2
no fix listed
1
apache/tika:latest-full80072bb73dd3
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
apache/tika:3.3.1.090b7fa1dc018
openssl@3.5.5-1ubuntu3
3.5.5-1ubuntu3.4
1
apache/tika:2.9.0.092d055a84e9e
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
openssl@3.5.1-1
3.5.7-1~deb13u2
1
appwrite/appwrite:1.9.01aaa70127114
openssl@3.5.5-r0
3.5.8-r0
1
aquasec/kube-bench:v0.15.07a8fa32dce21
openssl@3.5.5-r0
3.5.8-r0
1
aquasec/trivy:0.69.3bcc376de8d77
openssl@3.5.5-r0
3.5.8-r0
1
archivebox/archivebox:0.7.41a5a37331091
openssl@3.0.20-1~deb12u1
no fix listed
1
arilot/docker-bitcoind:0.17.127a4f7e0f9f1
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm18
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.