StackRadar

CVE-2026-54874

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,269
of 17,797 indexed, latest versions
Container images
3,506
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-54874 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,269 of 17,797 indexed charts deploy, on 3,506 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,310
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,173
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-54874DEBIAN-CVE-2026-54874UBUNTU-CVE-2026-54874AZL-97953ECHO-66d7-e273-5f0f
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,269 by stars
ChartLatestAffected imagesRadar Score
rocketchatrocketchat-server7.0.28 of 12See more

rocketchat rocketchat-server 7.0.2

8 of the 12 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/nats:2.12-alpineb270f5e24283
openssl@3.5.7-r0
3.5.8-r0
natsio/nats-box:0.19.28031d190c7ee
openssl@3.5.4-r0
3.5.8-r0
natsio/nats-server-config-reloader:0.21.110ff229eaf52
openssl@3.5.4-r0
3.5.8-r0
natsio/prometheus-nats-exporter:0.18.002469dc907bc
openssl@3.5.4-r0
3.5.8-r0
rocketchat/account-service:8.6.144af8ac4e711
openssl@3.5.6-r0
3.5.8-r0
rocketchat/authorization-service:8.6.16bc18fb5d0e5
openssl@3.5.6-r0
3.5.8-r0
rocketchat/ddp-streamer-service:8.6.1819771c4abe4
openssl@3.5.6-r0
3.5.8-r0
rocketchat/presence-service:8.6.1c1170bdfe797
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

12,289
victoria-metrics-clustervictoriametricsVerified publisher0.50.03 of 3See more

victoria-metrics-cluster victoriametrics 0.50.0

3 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
victoriametrics/vminsert:v1.151.0-cluster5f4b20f691f5
openssl@3.5.7-r0
3.5.8-r0
victoriametrics/vmselect:v1.151.0-clustera629199453da
openssl@3.5.7-r0
3.5.8-r0
victoriametrics/vmstorage:v1.151.0-clusterb23767ff4a4b
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

447
zammadzammadOfficialVerified publisher19.0.04See more

zammad zammad 19.0.0

4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/alpine:3.24.128bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
library/memcached:1.6.4575c93cc91e76
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/postgres:18.4a02db8cac496
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

confluenceatlassian-data-centerVerified publisher2.0.151 of 2See more

confluence atlassian-data-center 2.0.15

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
chaos-meshchaos-meshVerified publisher2.8.42 of 4See more

chaos-mesh chaos-mesh 2.8.4

2 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

6,442
csi-driver-nfscsi-driver-nfsVerified publisher4.13.41 of 6See more

csi-driver-nfs csi-driver-nfs 4.13.4

1 of the 6 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

3,371
podinfopodinfo6.15.01 of 1See more

podinfo podinfo 6.15.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/stefanprodan/podinfo:6.15.0ec73780a8425
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

290
clamavwiremindVerified publisher3.7.31 of 1See more

clamav wiremind 3.7.3

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
clamav/clamav:1.4.3_base629a3050df6a
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,053
atlantisatlantis6.15.11 of 1See more

atlantis atlantis 6.15.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/runatlantis/atlantis:v0.47.1511231955463
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

1,892
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29

Open the chart page →

9,217
reflectoremberstackVerified publisher10.0.651 of 1See more

reflector emberstack 10.0.65

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
emberstack/kubernetes-reflector:10.0.6551dbd5880929
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

711
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm5
milvusdb/milvus:v2.2.13a3a55e1c1497
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

32,523
flaggerflagger1.45.01 of 1See more

flagger flagger 1.45.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/fluxcd/flagger:1.45.015b372d35012
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

230
grafana-agentgrafana0.44.21 of 2See more

grafana-agent grafana 0.44.2

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
grafana/agent:v0.44.23364714a2f64
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15

Open the chart page →

3,537
mesherymesheryOfficialVerified publisher1.0.701 of 1See more

meshery meshery 1.0.70

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
meshery/meshery:stable-latest44b64ee128fb
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,445
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

10,700
signozsignoz0.142.01 of 5See more

signoz signoz 0.142.0

1 of the 5 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.1034ecb436b687
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

7,566
weblateweblateOfficialVerified publisher0.5.362 of 3See more

weblate weblate 0.5.36

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
openssl@3.0.16-1~deb12u1
no fix listed
bitnamilegacy/redis:latest5927ff3702df
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

6,826
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

2,824
postgresgroundhog2k1.6.81 of 1See more

postgres groundhog2k 1.6.8

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,667
mailpitjouveVerified publisher0.36.01 of 1See more

mailpit jouve 0.36.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
axllent/mailpit:v1.31.0c96991d9bef7
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

165
node-local-dnsdeliveryheroVerified publisher2.9.21 of 1See more

node-local-dns deliveryhero 2.9.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

1,715
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

2,728
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

4,823
node-rednode-redVerified publisher0.40.21 of 1See more

node-red node-red 0.40.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
nodered/node-red:4.1.2216e7403aab9
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

2,176
nacosygqygq2Verified publisher2.1.101 of 4See more

nacos ygqygq2 2.1.10

1 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.20e951a1d07bb
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

4,987
difydoubanVerified publisher0.10.03 of 6See more

dify douban 0.10.0

3 of the 6 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
openssl@3.0.11-1~deb12u2
no fix listed
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
openssl@3.0.11-1~deb12u2
no fix listed
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15

Open the chart page →

19,654
dragonflydragonflyVerified publisher1.8.52 of 3See more

dragonfly dragonfly 1.8.5

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.59fe2a1d6206f
openssl@3.0.20-1~deb12u2
no fix listed
dragonflyoss/scheduler:v2.5.2d5dea9e662cd
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

4,083
kubesharkkubeshark-helm-chartsOfficialVerified publisher53.4.01 of 3See more

kubeshark kubeshark-helm-charts 53.4.0

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
kubeshark/front:v53.4cc7f07b99fac
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

839
secrets-store-csi-driversecret-store-csi-driver1.6.11 of 4See more

secrets-store-csi-driver secret-store-csi-driver 1.6.1

1 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,810
mattermost-team-editionmattermostVerified publisher6.6.1071 of 4See more

mattermost-team-edition mattermost 6.6.107

1 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:11.11.0335db2833330
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,505
akhqakhq0.28.01 of 1See more

akhq akhq 0.28.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
tchiotludo/akhq:0.28.0c2824dc2ae44
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4

Open the chart page →

1,605
pulsarapache4.7.04 of 10See more

pulsar apache 4.7.0

4 of the 10 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
openssl@3.5.5-r0
3.5.8-r0
curlimages/curl:8.18.0d94d07ba9e7d
openssl@3.5.4-r0
3.5.8-r0
grafana/grafana:12.4.1e932bd6ed0e0
openssl@3.5.5-r0
3.5.8-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

9,885
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

3,722
tetragonciliumOfficialVerified publisher1.7.11 of 3See more

tetragon cilium 1.7.1

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/cilium/tetragon:v1.7.1afc9458ba4bc
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

232
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

6,978
difydify-helmVerified publisher0.38.07 of 11See more

dify dify-helm 0.38.0

7 of the 11 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
openssl@3.0.20-1~deb12u2
no fix listed
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
openssl@3.0.20-1~deb12u2
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
openssl@3.0.20-1~deb12u2
no fix listed
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
langgenius/dify-sandbox:0.2.15750e1111426e
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
langgenius/dify-web:1.16.187dd47e4e28f
openssl@3.5.5-r0
3.5.8-r0
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

22,306
pyroscopegrafana2.3.11 of 3See more

pyroscope grafana 2.3.1

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15

Open the chart page →

3,225
meilisearchmeilisearch-kubernetesOfficialVerified publisher0.39.01 of 1See more

meilisearch meilisearch-kubernetes 0.39.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
getmeili/meilisearch:v1.53.2c94e58ca0966
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
plantumlstevehipwellVerified publisher3.49.01 of 1See more

plantuml stevehipwell 3.49.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
plantuml/plantuml-server:jetty-v1.2026.85f6f99ec2fc1
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15

Open the chart page →

1,975
unleashunleash5.6.82 of 2See more

unleash unleash 5.6.8

2 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
openssl@3.5.7-r0
3.5.8-r0
unleashorg/unleash-server:7.5.09adb37e399ba
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

2,061
valkeycloudpirates-valkeyVerified publisher0.25.111 of 1See more

valkey cloudpirates-valkey 0.25.11

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
valkey/valkey:9.1.0-alpine3.23c9b77919daeb
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

168
telegrafinfluxdata1.8.761 of 1See more

telegraf influxdata 1.8.76

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/telegraf:1.40-alpinee2f55b0afaa3
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

270
ingresskongOfficialVerified publisher0.24.01 of 2See more

ingress kong 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

1,199
oktetooktetoOfficialVerified publisher0.0.0-2026-08-176 of 10See more

okteto okteto 0.0.0-2026-08-17

6 of the 10 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/okteto/buildkit:0.0.0-2026-08-1714527ca5d2a9
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/okteto/frontend:0.0.0-2026-08-17c18f4a1bc90a
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/okteto/ingress-nginx-chroot:0.0.0-2026-08-17265eedb3954b
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-173e56bdd1b90d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/okteto/redis:0.0.0-2026-08-1761a0169cf291
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/okteto/registry:0.0.0-2026-08-1769131511501f
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

5,527
proxmox-csi-pluginproxmox-csi0.5.121 of 7See more

proxmox-csi-plugin proxmox-csi 0.5.12

1 of the 7 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/proxmox-csi-node:v0.20.0e0151137a1c5
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,835
victoria-metrics-singlevictoriametricsVerified publisher0.46.01 of 1See more

victoria-metrics-single victoriametrics 0.46.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
victoriametrics/victoria-metrics:v1.151.06d164540a04f
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
apisix-ingress-controllerapisix1.4.01See more

apisix-ingress-controller apisix 1.4.0

1 container image this version deploys carries CVE-2026-54874.

Container imageDigestPackageFixed in
apache/apisix-ingress-controller:2.2.05c5efa4c7f2a
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

istiocloudposse1.1.02 of 8See more

istio cloudposse 1.1.0

2 of the 8 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm18
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm18

Open the chart page →

24,028
concourseconcourseVerified publisher20.3.01 of 2See more

concourse concourse 20.3.0

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,060

Container images carrying it

3,506 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/pbufio/registry:v0.4.177a36c035b4b
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm10
1
ghcr.io/pixelfederation/unbound:1.24.2_0fce820a03964
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/platform-mesh/portal:v0.26.123c937255cac2
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/pocket-id/pocket-id:v2.14.001540977dcf4
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/pocket-id/pocket-id:v2.7.045bdeaf3fcd6
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
openssl@3.5.6-1~deb13u2+e1
3.5.7-1~deb13u2
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29
1
ghcr.io/processone/ejabberd:latest5aeb0faa39cf
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/prophetse7en/clonarr:latest9400d298b37a
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/ptrvsrg/csi-driver-ipfs:latest97d2d9ccd7a5
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/qjoly/spindle:v1.16.1-alphaaab0c99d313f
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u2
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
openssl@3.5.5-1ubuntu3
3.5.5-1ubuntu3.4
1
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
ghcr.io/radar-base/radar-self-enrolment-ui:0.1.0b9a7cd3cc099
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
openssl@3.0.16-1~deb12u1
no fix listed
1
ghcr.io/recyclarr/recyclarr:8.7.26e69e009e1cd
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/reiche-world/traefik-secrets-exporter:0.0.21485ff93cbf9
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/reitermarkus/7d2d:main39953b387b61
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/robbeverhelst/preparr:latest9acc172942f3
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
openssl@3.0.9-1
no fix listed
1
ghcr.io/rss-bridge/rss-bridge:latest606896116558
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/runatlantis/atlantis:v0.47.1511231955463
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/rybbit-io/rybbit-backend:lateste0d1b397e33c
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/rybbit-io/rybbit-client:latest9a3bbb2e837a
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/sagernet/sing-box:v1.12.03c1ee82d450d
openssl@3.5.1-r0
3.5.8-r0
1
ghcr.io/saidsef/faas-reverse-geocoding:latestca510c40aeee
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/sairam0424/ratecap-core:latest2f6c7157fa8e
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/sairam0424/ratecap-sidecar:lateste7feca7ac7cc
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/salaboy/fmtok8s-email-service:v0.2.0-nativeb52d5dbac2ca
openssl@1.1.1-1ubuntu2.1~18.04.19
1.1.1-1ubuntu2.1~18.04.23+esm10
1
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
openssl@1.1.1-1ubuntu2.1~18.04.19
1.1.1-1ubuntu2.1~18.04.23+esm10
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/schaka/janitorr:native-stable7cfe1e0c41da
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15
1
ghcr.io/sct/overseerr:1.35.06197516c9d7b
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/sebadob/rauthy:0.35.2a73dbf58359f
openssl@3.0.20-1~deb12u1
no fix listed
1
ghcr.io/seerr-team/seerr:v3.2.0c4cbd5121236
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
openssl@3.0.13-1~deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.