StackRadar

CVE-2026-54874

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,245
of 17,803 indexed, latest versions
Container images
3,486
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-54874 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,245 of 17,803 indexed charts deploy, on 3,486 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,300
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,163
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-54874DEBIAN-CVE-2026-54874UBUNTU-CVE-2026-54874AZL-97953ECHO-66d7-e273-5f0f
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,245 by stars
ChartLatestAffected imagesRadar Score
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,721
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
openssl@3.0.19-1~deb12u2
no fix listed

Open the chart page →

5,562
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

6,097
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

7,909
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

6,932
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

2,691
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

7,579
postgresromanow-helm-chartsVerified publisher1.7.11 of 1See more

postgres romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,667
routehub-client-hubroutehub-helm1.0.02 of 3See more

routehub-client-hub routehub-helm 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5
timescale/timescaledb-ha:pg16d7db8f1085a3
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

13,046
rstmdbrstmdb0.2.01 of 1See more

rstmdb rstmdb 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
rstmdb/rstmdb:lateste5187f2aaace
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,079
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

3,959
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

5,350
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

13,590
kyoorubxkubeVerified publisher0.1.104 of 9See more

kyoo rubxkube 0.1.10

4 of the 9 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

30,468
s3-encryption-gateways3-encryption-gatewayVerified publisher0.11.101 of 1See more

s3-encryption-gateway s3-encryption-gateway 0.11.10

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
cloud37io/s3-encryption-gateway:0.11.10f8ff2092b8af
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

265
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29

Open the chart page →

11,052
devpisb-helm-charts0.3.01 of 1See more

devpi sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

924
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

38,479
teamcityscalified-teamcityVerified publisher2026.2.01 of 3See more

teamcity scalified-teamcity 2026.2.0

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,667
sceptresceptreai0.1.125 of 5See more

sceptre sceptreai 0.1.12

5 of the 5 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
maponyacharles/sceptreai:mlflow-0.1.1242d418654ebd
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
maponyacharles/sceptreai:postgresql-0.1.1258881351f309
openssl@3.5.7-r0
3.5.8-r0
maponyacharles/sceptreai:api-0.1.127b37b092130a
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
maponyacharles/sceptreai:seaweedfs-0.1.127c8a525f08e9
openssl@3.5.7-r0
3.5.8-r0
maponyacharles/sceptreai:ui-0.1.127cd0f11c5e55
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,424
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

2,194
seatsurfingseatsurfing0.1.21 of 1See more

seatsurfing seatsurfing 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
seatsurfing/backend:1.119.39952e80048b0
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

544
secrets-store-csi-driver-provider-infisicalsecrets-store-csi-driver-provider-infisicalVerified publisher1.1.41 of 1See more

secrets-store-csi-driver-provider-infisical secrets-store-csi-driver-provider-infisical 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
gidoichi/secrets-store-csi-driver-provider-infisical:v1.1.42dd5322a0610
openssl@3.5.7-r1
3.5.8-r0

Open the chart page →

278
securosecuroVerified publisher0.16.02See more

securo securo 0.16.0

2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/redis:8-alpinebecdda6c7f4b
openssl@3.5.7-r0
3.5.8-r0
pgvector/pgvector:pg16ccc6e83d6e35
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

karakeepself-hosters-by-nightVerified publisher2.5.11 of 1See more

karakeep self-hosters-by-night 2.5.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

5,222
mosquittoself-hosters-by-nightVerified publisher0.5.21 of 1See more

mosquitto self-hosters-by-night 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/eclipse-mosquitto:2.0.22212f89e1eaeb
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
templateself-hosters-by-nightVerified publisher0.7.11 of 2See more

template self-hosters-by-night 0.7.1

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
sentry-k8ssentry-k8sVerified publisher1.4.17 of 11See more

sentry-k8s sentry-k8s 1.4.1

7 of the 11 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
library/nginx:1.31.0-alpine2f07d83bf561
openssl@3.5.6-r0
3.5.8-r0
library/postgres:16f1c3376c26f2
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/getsentry/relay:26.7.2cd29b88c1d72
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/getsentry/snuba:26.7.210f8d164109b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

16,646
seq-input-gelfseq-input-gelfVerified publisher0.3.12 of 2See more

seq-input-gelf seq-input-gelf 0.3.1

2 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
datalust/seq-input-gelf:3.0.441-x643de34aed5642
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

3,563
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
openssl@3.0.16-1~deb12u1
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

11,564
querysiakhooiVerified publisher1.0.01 of 1See more

query siakhooi 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
siakhooi/query:1.0.0f1f4b5b1b870
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,790
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,301
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,301
scaffoldsigstoreVerified publisher0.6.1151 of 15See more

scaffold sigstore 0.6.115

1 of the 15 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
curlimages/curldigest-pinned:8.17.0935d9100e9ba
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

7,688
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

6,903
clickhousesinextraVerified publisher0.22.01 of 1See more

clickhouse sinextra 0.22.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.3.1092098d3b31dd
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.29

Open the chart page →

2,022
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

4,282
postgresql-singlesinextraVerified publisher1.15.11 of 1See more

postgresql-single sinextra 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,952
skippersinextraVerified publisher0.8.131 of 1See more

skipper sinextra 0.8.13

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/zalando/skipper:v0.27.883a357a2a4bef
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

162
slo-reportingslo-reportingVerified publisher0.3.341 of 2See more

slo-reporting slo-reporting 0.3.34

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

2,952
wg-easyslybase-wg-easyVerified publisher1.2.01 of 1See more

wg-easy slybase-wg-easy 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/wg-easy/wg-easy:15.4.00e7bc9d34e86
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

727
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

46,080
snappasssnappassVerified publisher0.4.32 of 3See more

snappass snappass 0.4.3

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
lmacka/snappass:2.1.293f5c048b7d4
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
valkey/valkey:8.1.61f84517eca8e
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

3,054
artifact-hubsoftonic1.19.01 of 8See more

artifact-hub softonic 1.19.0

1 of the 8 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

14,569
redis-shardedsoftonic0.5.01 of 2See more

redis-sharded softonic 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,337
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

7,319
postgresql-ha-chartsoldevelo-postgresql-ha-chart16.3.42 of 2See more

postgresql-ha-chart soldevelo-postgresql-ha-chart 16.3.4

2 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
soldevelo/pgpool:4.6.3-debian-12-r0044d16a65129
openssl@3.0.19-1~deb12u2
no fix listed
soldevelo/postgresql-repmgr:17.6.0-debian-12-r03eaab21e40e5
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,637
nginx-chartsomnath-chartVerified publisher0.1.91 of 1See more

nginx-chart somnath-chart 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
somnathmore/custom-nginx:v2bdfc06cad4ec
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

5,716
speckle-serverspeckleVerified publisher2.26.34 of 4See more

speckle-server speckle 2.26.3

4 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
speckle/speckle-monitor-deployment:2.26.3d51e1b0cf231
openssl@3.0.11-1~deb12u2
no fix listed
speckle/speckle-preview-service:2.26.3092384dba45d
openssl@3.0.17-1~deb12u3
no fix listed
speckle/speckle-server:2.26.379f14a2bf931
openssl@3.0.16-1~deb12u1
no fix listed
speckle/speckle-webhook-service:2.26.3c58eb372c488
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

10,494
ocean-metric-exporterspot1.1.11 of 1See more

ocean-metric-exporter spot 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
gcr.io/spotinst-artifacts/spot-ocean-metric-exporter:1.0.5ae57b62291aa
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

1,486

Container images carrying it

3,486 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29
1
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
1
gcr.io/datadoghq/csi-driver:1.4.086c713de81d9
openssl@3.5.7-r0
3.5.8-r0
1
gcr.io/datadoghq/observability-pipelines-worker:2.21.1de6ff0f1a854
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
openssl@1.1.1-1ubuntu2.1~18.04.5
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.23+esm10
1.0.2n-1ubuntu5.13+esm6
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm18
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm18
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm18
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm5
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm18
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm5
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.15
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29
1
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
openssl@3.0.14-1~deb12u2
no fix listed
1
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm18
1
gcr.io/ml-pipeline/metadata-envoy:2.3.0e8e263a919ff
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm5
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
openssl@3.0.14-1~deb12u2
no fix listed
1
gcr.io/press-labs-public/dashboard:1.8.19b88f88070fb0
openssl@3.0.15-1~deb12u1
no fix listed
1
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
openssl@3.0.15-1~deb12u1
no fix listed
1
gcr.io/spotinst-artifacts/spot-ocean-metric-exporter:1.0.5ae57b62291aa
openssl@3.5.1-r0
3.5.8-r0
1
ghcr.io/291-group/lan-orangutan:3.3.886b55c80eeb1
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm10
1
ghcr.io/aardbol/opencode-server:v1.18.23-alpine7930061993f7
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/absmach/magistrala/ui-backend:latest4adf360dbf1e
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/advplyr/audiobookshelf:2.32.1a52dc5db694a
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.15
1
ghcr.io/aetrius/msockperf-server/msockperf-server:main46ae4ea003e0
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.15
1
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/aklivity/zilla:2.4.3e33d59dbb606
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.29
1
ghcr.io/akpw/mktxp:latest2b3ccb1c2bd9
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/akpw/mktxp:1.2.17bd6f22f7db0a
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/akpw/mktxp:1.2.20f894f2457670
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/alam00000/bentopdf-simple:2.8.5268f3e4a1aee
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/alam00000/bentopdf-simple:2.8.42bae644d2735
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/alekc/samba-docker:v1.1.0cc9a028d9c43
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/alethic/auth0-operator-image:1.4.122468990a8521
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
ghcr.io/alexmorbo/dell_idrac_fan_controller:v0.1.6-1d110504d551d
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
1
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
openssl@3.0.18-1~deb12u1
no fix listed
1
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
openssl@3.0.18-1~deb12u2
no fix listed
1
ghcr.io/analogj/scrutiny:v0.9.2-web71be54e99608
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
openssl@3.0.14-1~deb12u2
no fix listed
1
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
1
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29
1
ghcr.io/appscode/ace:v0.2.0b8e03da90e70
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/appscode/acerproxy:v0.2.021de3771fdd5
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/appscode/aceshifter:v0.0.3e5f5c254a55a
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/appscode/aws-credential-manager:v0.1.00511bbe501c3
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/appscode/azure-credential-manager:v0.1.0f5c797f7fbe7
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/appscode/catalog-manager:v0.13.0fc336c5b9655
openssl@3.5.7-r0
3.5.8-r0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.