StackRadar

CVE-2026-54874

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,294
of 17,787 indexed, latest versions
Container images
3,545
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-54874 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,294 of 17,787 indexed charts deploy, on 3,545 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,327
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,195
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-54874DEBIAN-CVE-2026-54874UBUNTU-CVE-2026-54874AZL-97953ECHO-66d7-e273-5f0f
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,294 by stars
ChartLatestAffected imagesRadar Score
frontend-servicedev-krishan-dhaka-charts1.0.21 of 1See more

frontend-service dev-krishan-dhaka-charts 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
devkrishan001/frontend:latesta0ad60836e6b
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,037
postgresdev-krishan-dhaka-charts1.0.21 of 1See more

postgres dev-krishan-dhaka-charts 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:15-alpinefe0737ba566a
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

494
devnopesdevnopes0.1.81 of 1See more

devnopes devnopes 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
sokushinbutsu/devnopes:latest0bbd90448671
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

462
apachedevops0.1.03 of 4See more

apache devops 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/alpine:328bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
library/mariadb:10.8.30abf60f81588
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29
ghcr.io/codingducksrl/laravel:8.15be52524664c
nodejs@16.18.0-deb-1nodesource1
openssl@3.0.2-0ubuntu1.6
no fix listed
3.0.2-0ubuntu1.29

Open the chart page →

30,150
laraveldevops0.10.33 of 4See more

laravel devops 0.10.3

3 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/alpine:328bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
library/mariadb:10.9.4fbb8456ebdb1
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29
ghcr.io/codingducksrl/laravel:8.15be52524664c
nodejs@16.18.0-deb-1nodesource1
openssl@3.0.2-0ubuntu1.6
no fix listed
3.0.2-0ubuntu1.29

Open the chart page →

29,151
wordpressdevops0.12.02 of 4See more

wordpress devops 0.12.0

2 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/alpine:328bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
library/mariadb:10.8.30abf60f81588
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29

Open the chart page →

13,036
devops-diplomdevops-diplom-chartVerified publisher0.8.01 of 2See more

devops-diplom devops-diplom-chart 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:13-alpinefb9065b6e3e2
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

2,549
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

9,152
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

12,999
caddy-reverse-proxydevtron0.10.11 of 1See more

caddy-reverse-proxy devtron 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/caddy:latest13ba145cba2f
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

846
calertdevtron0.0.11 of 1See more

calert devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

4,688
devtron-enterprisedevtron48.0.09 of 28See more

devtron-enterprise devtron 48.0.0

9 of the 28 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/dashboard:0d8f6cf4-60e17132-931-39393aa61fffb8ae8
openssl@3.5.7-r0
3.5.8-r0
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm18
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssl@3.0.17-1~deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

66,542
devtron-logs-dumpdevtron0.1.01 of 1See more

devtron-logs-dump devtron 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29

Open the chart page →

4,969
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

11,957
migration-incluster-cddevtron0.10.01 of 1See more

migration-incluster-cd devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,699
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

9,152
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

12,999
caddy-reverse-proxydevtron-labs0.10.11 of 1See more

caddy-reverse-proxy devtron-labs 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/caddy:latestdf7f1c2fb114
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

846
calertdevtron-labs0.0.11 of 1See more

calert devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

4,688
devtron-enterprisedevtron-labs48.0.09 of 28See more

devtron-enterprise devtron-labs 48.0.0

9 of the 28 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/dashboard:0d8f6cf4-60e17132-931-39393aa61fffb8ae8
openssl@3.5.7-r0
3.5.8-r0
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm18
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssl@3.0.17-1~deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

66,542
devtron-logs-dumpdevtron-labs0.1.01 of 1See more

devtron-logs-dump devtron-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29

Open the chart page →

4,969
devtron-operatordevtron-labs0.23.36 of 11See more

devtron-operator devtron-labs 0.23.3

6 of the 11 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/dashboard:c7b89667-690-39290c63823af3835
openssl@3.5.7-r0
3.5.8-r0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

31,447
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

11,957
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,699
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.03 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm10
library/rabbitmq:3-managemente582c0bc7766
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
oscarsotosanchez/weatherservice:v1.0911ec961d10b
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

27,608
rateldgraph25.0.31 of 1See more

ratel dgraph 25.0.3

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dgraph/ratel:v25.0.34cae1ff95027
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,002
dial-admindialVerified publisher0.18.02 of 3See more

dial-admin dial 0.18.0

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
openssl@3.0.16-1~deb12u1
no fix listed
epam/ai-dial-admin-frontend:0.20.021d91ad74755
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,053
difydify1.0.02 of 4See more

dify dify 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
openssl@3.0.15-1~deb12u1
no fix listed
langgenius/dify-sandbox:0.2.009b7e8705673
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

19,063
pagesdipak1.0.02 of 3See more

pages dipak 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm5
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

20,233
adventurelogdjjudas21Verified publisher0.1.11 of 3See more

adventurelog djjudas21 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

7,480
alertifydjjudas21Verified publisher0.1.01 of 1See more

alertify djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
djjudas21/alertify:0.1.0ba22be670c37
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

2,384
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
openssl@3.0.9-1
no fix listed

Open the chart page →

7,167
ecowitt-exporterdjjudas21Verified publisher2.2.21 of 1See more

ecowitt-exporter djjudas21 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
djjudas21/ecowitt-exporter:2.2.073aab45ef10d
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

1,005
liturgical-colourdjjudas21Verified publisher99.99.991 of 1See more

liturgical-colour djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
djjudas21/liturgical-colour-app:0.7.2954935971d42
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

873
nova-exporterdjjudas21Verified publisher0.1.161 of 1See more

nova-exporter djjudas21 0.1.16

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
djjudas21/nova-exporter:0.0.10e9094580885c
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

1,411
ownclouddjjudas21Verified publisher0.3.233 of 3See more

owncloud djjudas21 0.3.23

3 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.3.2-debian-12-r9320c70dfd914
openssl@3.0.13-1~deb12u1
no fix listed
owncloud/server:10.16.3b3f9efdcd7f7
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.29
valkey/valkey:8.1.481db6d39e1bb
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u2

Open the chart page →

10,129
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.15

Open the chart page →

17,053
spoolmandjjudas21Verified publisher0.1.81 of 1See more

spoolman djjudas21 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.24.042135965c42d
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,777
truecommanddjjudas21Verified publisher0.1.01 of 1See more

truecommand djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ixsystems/truecommand:3.2.019c218455cd2
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

5,144
webtreesdjjudas21Verified publisher3.0.01 of 1See more

webtrees djjudas21 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

5,885
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

13,031
dnation-kubernetes-jsonnet-translatordnationcloud2.0.11 of 1See more

dnation-kubernetes-jsonnet-translator dnationcloud 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

3,626
dnation-kubernetes-monitoringdnationcloud3.0.21 of 1See more

dnation-kubernetes-monitoring dnationcloud 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

3,626
dnation-kubernetes-monitoring-stackdnationcloud4.0.23 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

3 of the 17 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed
grafana/grafana:13.1.0121a7a9ece6d
openssl@3.5.7-r0
3.5.8-r0
quay.io/kiwigrid/k8s-sidecar:2.8.1abb55b2165c6
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

21,455
api-postsdniel0.9.11 of 1See more

api-posts dniel 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
dniel/api-posts:master45a667852f2a
openssl@1.1.1-1ubuntu2.1~18.04.4
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

8,991
dnsmasq-k8sdnsmasq-k8s1.4.11 of 1See more

dnsmasq-k8s dnsmasq-k8s 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

3,030
docker-authdocker-auth1.14.01 of 1See more

docker-auth docker-auth 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
cesanta/docker_auth:1.14.098e0307e0d2d
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

1,506
documensodocumensoVerified publisher0.0.61 of 2See more

documenso documenso 0.0.6

1 of the 2 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,862
dominodomino-iisasVerified publisher0.3.13 of 3See more

domino domino-iisas 0.3.1

3 of the 3 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u2
ghcr.io/iisas/domino-frontend:k8s8e53861be292
openssl@3.0.17-1~deb12u2
no fix listed
ghcr.io/iisas/domino-rest:latest3009350bfc11
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

10,307
exim4dossif0.2.01 of 1See more

exim4 dossif 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-54874.

Container imageDigestPackageFixed in
tianon/exim4:latestb489049cdbca
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,340

Container images carrying it

3,545 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
opea/reranking-tei:1.0e48613afb191
openssl@3.0.14-1~deb12u2
no fix listed
2
opea/retriever-redis:1.0eb746b263705
openssl@3.0.14-1~deb12u2
no fix listed
2
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
openssl@3.0.15-1~deb12u1
no fix listed
2
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
openssl@3.0.15-1~deb12u1
no fix listed
2
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
openssl@3.0.15-1~deb12u1
no fix listed
2
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
openssl@3.0.15-1~deb12u1
no fix listed
2
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
openssl@3.0.15-1~deb12u1
no fix listed
2
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
openssl@3.0.15-1~deb12u1
no fix listed
2
opencsghq/postgres:15.19b98600564e07
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
opendatacube/ows:latest668cbb41473c
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
2
openebs/alpine-bash:4.6.0366d6c5f18c3
openssl@3.5.7-r0
3.5.8-r0
2
openebs/alpine-sh:4.6.0640c187dccda
openssl@3.5.7-r0
3.5.8-r0
2
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29
2
openebs/node-disk-operator:2.1.06afe2123c457
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29
2
openebs/provisioner-localpv:4.6.099f5116f5cb8
openssl@3.5.7-r0
3.5.8-r0
2
pgautoupgrade/pgautoupgrade:18-alpine48b448825656
openssl@3.5.7-r0
3.5.8-r0
2
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
pgvector/pgvector:0.8.6-pg16-bookworm:pg16ccc6e83d6e35
openssl@3.0.20-1~deb12u2
no fix listed
2
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29
2
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssl@3.0.11-1~deb12u2
no fix listed
2
quickwit/quickwit:v0.8.2363ff56ce456
openssl@3.0.11-1~deb12u2
no fix listed
2
rajnandan1/kener:3.2.1930407afca731
openssl@3.0.17-1~deb12u1
no fix listed
2
rancher/local-path-provisioner:v0.0.3534ff0847cc47
openssl@3.5.5-r0
3.5.8-r0
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
2
redis/redis-stack-server:7.4.0:7.4.0-v172035434f455
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29
2
redis/redis-stack-server:7.2.0-v10e44b2b49d059
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
2
requarks/wiki:2:latest68f0d1848261
openssl@3.5.6-r0
3.5.8-r0
2
rotationalio/quarterdeck:0.16.00e7ad3a031dc
openssl@3.0.20-1~deb12u2
no fix listed
2
safeglobal/safe-config-service:latest09a5e495c219
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
safeglobal/safe-transaction-service:latest80db836cc5d5
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
sigp/lighthouse:v8.1.344aa773dcf27
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.29
2
sigp/lighthouse:latest9a62bb870545
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29
2
sikalabs/hello-world-server:latest5f49bf889a64
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
siscc/dotstatsuite-core-transfer:master46b7e3c888c4
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
2
siscc/dotstatsuite-sdmx-faceted-search:master12c5048f7402
openssl@3.5.7-r0
3.5.8-r0
2
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
2
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d469:2.18.12-branch.testing3.88744-f55b3414bd113093583
openssl@3.0.11-1~deb12u2
no fix listed
2
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm5
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
openssl@3.0.2-0ubuntu1.5
3.0.2-0ubuntu1.29
2
swaggerapi/swagger-ui:v5.32.143d9316996884
openssl@3.5.7-r0
3.5.8-r0
2
syncthing/syncthing:2.1.1775c4aac4862
openssl@3.5.6-r0
3.5.8-r0
2
taigaio/taiga-back:latest4beed8f62c9f
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
taigaio/taiga-protected:latestfd4568a97a59
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
2
technitium/dns-server:15.4.0df7d90ef0f7b
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
2
timberio/vector:0.51.1-alpine2d16ae87ec39
openssl@3.5.4-r0
3.5.8-r0
2
timberio/vector:0.58.0-distroless-libc6c93dfe2554c
openssl@3.0.20-1~deb12u2
no fix listed
2
timescale/timescaledb:latest-pg156343bdc87ca1
openssl@3.5.7-r0
3.5.8-r0
2
tzahi12345/youtubedl-material:4.3.2:latest2f943d584711
nodejs@16.14.2-deb-1nodesource1
openssl@3.0.2-0ubuntu1.9
no fix listed
3.0.2-0ubuntu1.29
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.