StackRadar

CVE-2026-54874

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,257
of 17,792 indexed, latest versions
Container images
3,480
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-54874 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,257 of 17,792 indexed charts deploy, on 3,480 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,286
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,171
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-54874DEBIAN-CVE-2026-54874UBUNTU-CVE-2026-54874AZL-97953ECHO-66d7-e273-5f0f
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,257 by stars
ChartLatestAffected imagesRadar Score
offline-license-serverappscodeVerified publisher2026.9.112 of 2See more

offline-license-server appscode 2026.9.11

2 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/maxmind-geoip:city-mmdb-latesta3236324c4e2
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/appscode/offline-license-server:v0.0.76e4b66308d8f6
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,690
operator-shard-managerappscodeVerified publisher2026.6.221 of 1See more

operator-shard-manager appscode 2026.6.22

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/operator-shard-manager:v0.0.64a16c6ccecb8
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

418
outbox-syncerappscodeVerified publisher2026.9.111 of 1See more

outbox-syncer appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/outboxsyncer:v0.5.0150baab6115d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

346
petsetappscodeVerified publisher2026.5.221 of 1See more

petset appscode 2026.5.22

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/petset:v0.1.093fa0daf603c
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

860
pgadminappscodeVerified publisher2026.3.301 of 1See more

pgadmin appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dpage/pgadmin4:9.11.050700ac17936
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,566
pgoutboxappscodeVerified publisher2026.7.101 of 1See more

pgoutbox appscode 2026.7.10

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/pgoutbox:v0.0.4a96e06ec5e9f
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

727
platform-apiappscodeVerified publisher2026.9.113 of 3See more

platform-api appscode 2026.9.11

3 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2
ghcr.io/appscode/maxmind-geoip:city-mmdb-latesta3236324c4e2
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

37,629
platform-uiappscodeVerified publisher2026.9.111 of 1See more

platform-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/platform-ui:2.4.0668ee2682eaf
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

691
regcacheappscodeVerified publisher2026.9.111 of 1See more

regcache appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/registry:3.1.11be55279f18a
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

641
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29

Open the chart page →

3,313
secrets-store-csi-driver-provider-virtual-secretsappscodeVerified publisher2026.8.141 of 1See more

secrets-store-csi-driver-provider-virtual-secrets appscode 2026.8.14

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/secrets-store-csi-driver-provider-virtual-secrets:v0.2.07afb394f9f97
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

553
service-backendappscodeVerified publisher2026.9.111 of 1See more

service-backend appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,337
service-gatewayappscodeVerified publisher2026.9.111 of 3See more

service-gateway appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,155
service-providerappscodeVerified publisher2026.9.111 of 2See more

service-provider appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/service-provider:v0.0.2f6e481386d70
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

2,238
sidekickappscodeVerified publisher2026.7.101 of 1See more

sidekick appscode 2026.7.10

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/sidekick:v0.0.16d8d2a3c22ee7
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

278
storage-metrics-serverappscodeVerified publisher2026.7.81 of 1See more

storage-metrics-server appscode 2026.7.8

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/storage-metrics-server:v0.1.09cb4acb742a9
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

552
taskqueueappscodeVerified publisher2026.2.161 of 1See more

taskqueue appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/taskqueue:v0.0.36877c958a3c6
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,083
tricksterappscodeVerified publisher2026.1.151 of 1See more

trickster appscode 2026.1.15

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/trickster:v2.0.0cdbbed831f28
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,221
voyager-gatewayappscodeVerified publisher2026.7.211 of 2See more

voyager-gateway appscode 2026.7.21

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,331
websiteappscodeVerified publisher2026.9.111 of 1See more

website appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/appscode/website:v2026.9.1170d9d1b78d39
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

371
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
openssl@3.0.9-1
no fix listed

Open the chart page →

5,680
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

8,913
appwriteappwrite-helmVerified publisher1.3.22 of 8See more

appwrite appwrite-helm 1.3.2

2 of the 8 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
openssl@3.5.5-r0
3.5.8-r0
clamav/clamav:1.0dd0d9cc746af
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

9,855
arcadearcadeVerified publisher1.10.12 of 10See more

arcade arcade 1.10.1

2 of the 10 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
openssl@3.5.7-r0
3.5.8-r0
library/redis:8-alpinebecdda6c7f4b
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

991
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

7,558
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

7,359
arlas-aiasarlas-stackVerified publisher28.8.012 of 22See more

arlas-aias arlas-stack 28.8.0

12 of the 22 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
openssl@3.0.16-1~deb12u1
no fix listed
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
openssl@3.0.16-1~deb12u1
no fix listed
gisaia/arlas-wui:28.0.3b83b3e067173
openssl@3.5.7-r0
3.5.8-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
openssl@3.5.7-r0
3.5.8-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

40,580
arlas-uisarlas-stackVerified publisher28.8.03 of 4See more

arlas-uis arlas-stack 28.8.0

3 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
gisaia/arlas-wui:28.0.3b83b3e067173
openssl@3.5.7-r0
3.5.8-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
openssl@3.5.7-r0
3.5.8-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

2,987
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

23,425
bind9artem-shestakov1.0.11 of 1See more

bind9 artem-shestakov 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

3,571
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm10
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

22,663
assemblylineassemblylineVerified publisher7.4.201See more

assemblyline assemblyline 7.4.20

1 container image this version deploys carries CVE-2026-54874.

Container imageDigestPackageFixed in
library/redis:latest298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

dltkvassist-iot-data-integrity-verification0.2.03 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.29
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm18
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm18

Open the chart page →

77,883
dltflassist-iot-dlt-based-fl0.2.03 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.29
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm18
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm18

Open the chart page →

77,883
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

9,411
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

13,369
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

10,127
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29

Open the chart page →

18,357
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

8,052
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

7,985
sd-wanassist-iot-sd-wan1.0.01 of 2See more

sd-wan assist-iot-sd-wan 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/mongo:4.2.21-bionic9cb28f7291d9
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

5,371
smartorchestratorassist-iot-smart-orchestrator4.0.05 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

5 of the 14 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
openssl@3.0.11-1~deb12u2
no fix listed
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
openssl@3.0.11-1~deb12u2
no fix listed
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
openssl@3.0.9-1
no fix listed
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
library/mongo:4.4.66efa05203990
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

45,656
videoaugmentationassist-iot-video-augmentation0.1.02 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm5
bluenviron/mediamtx:latest-ffmpeg9d148b5f2990
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

14,013
account-monitorastria0.0.11 of 1See more

account-monitor astria 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/account-monitor:latest4c8b42890035
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

1,952
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.29
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

32,638
auctioneerastria0.0.21 of 1See more

auctioneer astria 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

2,201
celestia-localastria9.0.01 of 2See more

celestia-local astria 9.0.0

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-app:v6.1.0-rc0a604aefa3fae
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

3,299
evm-bridge-withdrawerastria1.0.61 of 1See more

evm-bridge-withdrawer astria 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

2,177
evm-rollupastria4.1.02 of 2See more

evm-rollup astria 4.1.0

2 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
openssl@3.5.0-r0
3.5.8-r0
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

4,010
evm-stackastria5.0.32 of 2See more

evm-stack astria 5.0.3

2 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
openssl@3.5.0-r0
3.5.8-r0
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

4,010

Container images carrying it

3,480 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
rhasspy/wyoming-piper:2.3.169b7f797ae3a
openssl@3.0.20-1~deb12u2
no fix listed
1
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
openssl@3.0.18-1~deb12u2
no fix listed
1
rhasspy/wyoming-whisper:3.5.0308b7959a925
openssl@3.0.20-1~deb12u2
no fix listed
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
rnwood/smtp4dev:3.6.1912304153668
openssl@3.0.11-1~deb12u2
no fix listed
1
robiningelbrecht/strava-statistics:v5.0.040842cdfd616
openssl@3.5.7-r0
3.5.8-r0
1
robotshop/rs-mongodb:latest119b545823cd
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
robustadev/krr:v1.30.0b8d782e568c7
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
rocketadmin/rocketadmin:1.17.710955ef540b9
openssl@3.0.19-1~deb12u2
no fix listed
1
rocketchat/account-service:8.6.144af8ac4e711
openssl@3.5.6-r0
3.5.8-r0
1
rocketchat/authorization-service:8.6.16bc18fb5d0e5
openssl@3.5.6-r0
3.5.8-r0
1
rocketchat/ddp-streamer-service:8.6.1819771c4abe4
openssl@3.5.6-r0
3.5.8-r0
1
rocketchat/freeswitch:stablecfba5c20a5cc
openssl@3.0.16-1~deb12u1
no fix listed
1
rocketchat/presence-service:8.6.1c1170bdfe797
openssl@3.5.6-r0
3.5.8-r0
1
rommapp/romm:5.2.03512f2ca4557
openssl@3.5.5-r0
3.5.8-r0
1
rommapp/romm:4.4.1b909e95d1aab
openssl@3.5.4-r0
3.5.8-r0
1
rotationalio/beacon:0.2.0f8d8b694515a
openssl@3.5.6-1~deb13u2+dhi1
3.5.7-1~deb13u2
1
rotationalio/endeavor:1.3.0ac566baddc06
openssl@3.0.20-1~deb12u2
no fix listed
1
rotationalio/geoping:1.3.034bcb6fc3cb7
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
rotationalio/honu:0.5.069fd30c2e31c
openssl@3.0.17-1~deb12u2
no fix listed
1
rotationalio/linode-acme-webhook:1.0.0cc7bb030a20f
openssl@3.5.4-r0
3.5.8-r0
1
rotationalio/rotational-api:1.3.0f1a2d05d8fff
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
rotationalio/vanity:1.2.0d77350f69b45
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
rqlite/rqlite:9.1.37b992a526eee
openssl@3.5.4-r0
3.5.8-r0
1
rraahul/test:latestbfe2c1183bc0
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
1
rrobetti/ojp:0.1.0-beta1141bd88232b
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
1
rspamd/rspamd:4.1.4e870599c970d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
rstmdb/rstmdb:lateste5187f2aaace
openssl@3.0.20-1~deb12u2
no fix listed
1
rtlabsio/clamav-rest:1.0.7be3e45ab4edd
openssl@3.5.7-r0
3.5.8-r0
1
rtuszik/photon-docker:2.4.021549c60f9e6
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
1
rundeck/rundeck:3.2.74d64fe56f767
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm18
1
rundeck/rundeck:3.0.16b13e8059ad72
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm18
1
rustfs/rustfs:1.0.0-beta.13c2d55977829
openssl@3.5.6-r0
3.5.8-r0
1
rustfs/rustfs:1.0.0-alpha.947d49faa88c04
openssl@3.5.6-r0
3.5.8-r0
1
rustfs/rustfs:1.0.0-rc.3800cf3f352a0
openssl@3.5.7-r0
3.5.8-r0
1
rustfs/rustfs:1.0.0-alpha.738e467b32af3f
openssl@3.5.4-r0
3.5.8-r0
1
rustrial/k8s-object-syncer:0.1.19aca1614eee2f
openssl@3.5.7-r0
3.5.8-r0
1
ryshe/terraria:latestb1c89f7f359a
openssl@3.0.18-1~deb12u2
no fix listed
1
ryuunosukeds3/nadeko-bot-docker:latestc0398f13e8a9
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
1
saidsef/aws-kinesis-local:v2026.0667025e3a163e
openssl@3.5.7-r0
3.5.8-r0
1
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3ce9ce8293e4e
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
1
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9bb64bf14467d
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
1
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525799c35f9f306
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
1
santisbon/evwatcher:latestc4e994ca4540
openssl@3.0.9-1
no fix listed
1
santisbon/evworker:lateste807283f8d69
openssl@3.0.9-1
no fix listed
1
santisbon/speedtest:latest8ee3a1697227
openssl@3.0.9-1
no fix listed
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
openssl@3.0.14-1~deb12u2
no fix listed
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
openssl@3.0.11-1~deb12u2
no fix listed
1
scaleway/scaleway-secrets-store-csi:v0.1.19acc53a69962
openssl@3.5.7-r0
3.5.8-r0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.