StackRadar

CVE-2026-54875

Low

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
—
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
929
of 17,957 indexed, latest versions
Container images
672
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 929 of 17,957 indexed charts deploy, on 672 images.

Affected packageAffected versionsFixed inImages
openssldeb3.5.1-1, 3.5.1-1+deb13u1, 3.5.4-1~deb13u1, 3.5.4-1~deb13u2+15 more3.5.5-1ubuntu3.6667
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
OSV records
DEBIAN-CVE-2026-54875UBUNTU-CVE-2026-54875
Also known as
USN-8847-1
Trending
Rank 42 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

929 by stars
ChartLatestAffected imagesRadar Score
charon-relaycharonOfficialVerified publisher0.8.01 of 2See more

charon-relay charon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
openssl@3.5.5-1~deb13u2
no fix listed

Open the chart page →

4,765
dv-podcharonOfficialVerified publisher0.19.11 of 5See more

dv-pod charon 0.19.1

1 of the 5 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
openssl@3.5.5-1~deb13u2
no fix listed

Open the chart page →

8,135
kitchenowlchart-kitchenowl0.1.131 of 2See more

kitchenowl chart-kitchenowl 0.1.13

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
tombursch/kitchenowl-backend:v0.7.104a7ed693531b
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

2,862
home-assistant-otbrcharts-derwitt-devVerified publisher2.1.41 of 1See more

home-assistant-otbr charts-derwitt-dev 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/homeassistant-otbr:4.2.5282f840612d9
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

2,514
paperless-ngxcharts-derwitt-devVerified publisher2.1.51 of 1See more

paperless-ngx charts-derwitt-dev 2.1.5

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.2.15fa76604a81d
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

4,370
fhir-server-exporterchglVerified publisher1.2.411 of 1See more

fhir-server-exporter chgl 1.2.41

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/chgl/fhir-server-exporter:v3.0.1926f8963a44d4
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

129
mysqld-exporterchoerodon0.1.01 of 1See more

mysqld-exporter choerodon 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:stable0aa2d81d65bc
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,765
netbird-reverse-proxychristianhuthVerified publisher0.1.01 of 1See more

netbird-reverse-proxy christianhuth 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
netbirdio/reverse-proxy:0.72.43104d5ca3a76
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

1,061
proxysqlchristianhuthVerified publisher3.1.11 of 1See more

proxysql christianhuth 3.1.1

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
proxysql/proxysql:3.0.110e95d1b7cc32
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,492
zksyncchronicleVerified publisher0.1.21 of 2See more

zksync chronicle 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/postgres:143e7dd0bfd7bf
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

6,543
ciliumcilium21.20.21 of 3See more

cilium cilium2 1.20.2

1 of the 3 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.20.22939231d0d3e
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

1,183
cronjobclouddrove1.0.11 of 1See more

cronjob clouddrove 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/ubuntu:latestda6fc2be5478
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

423
helmchartclouddrove1.4.11 of 1See more

helmchart clouddrove 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,765
postgresqlcloudnativeapp5.0.01 of 2See more

postgresql cloudnativeapp 5.0.0

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
bitnami/minideb:latest19c66a8a5a98
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

692
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:stableb972f831f200
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

23,976
phpmyadmincloudpirates-phpmyadmin0.1.01 of 1See more

phpmyadmin cloudpirates-phpmyadmin 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apacheadc486045303
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

2,409
cloudlaunch-servercloudve0.2.01 of 5See more

cloudlaunch-server cloudve 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
bitnami/minideb:latest3e8d78d6682d
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

12,444
galaxycloudve6.8.81 of 3See more

galaxy cloudve 6.8.8

1 of the 3 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

6,006
postgresqlcloudve4.0.01 of 2See more

postgresql cloudve 4.0.0

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
bitnami/minideb:latest3e8d78d6682d
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

692
argo-cdcluster-deploy0.3.21 of 3See more

argo-cd cluster-deploy 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6

Open the chart page →

4,159
authentikcluster-deploy0.2.01 of 1See more

authentik cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

2,886
chowdacluster-deploy0.2.01 of 1See more

chowda cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/chowda:maina63dadf119be
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,697
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
openssl@3.5.5-1~deb13u1
no fix listed

Open the chart page →

7,603
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
openssl@3.5.5-1~deb13u1
no fix listed

Open the chart page →

7,377
clusterplexclusterplexVerified publisher1.1.101 of 3See more

clusterplex clusterplex 1.1.10

1 of the 3 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
linuxserver/plex:latest1f6f97d76e7b
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

4,028
web-chartcms-ktcloudlab0.1.01 of 1See more

web-chart cms-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,765
appcnapVerified publisher1.2.01 of 1See more

app cnap 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,765
cohdicohdi0.2.21 of 3See more

cohdi cohdi 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

4,067
genericcolearendt0.2.71 of 1See more

generic colearendt 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,765
opencloudcommunity-opencloud3.1.01 of 13See more

opencloud community-opencloud 3.1.0

1 of the 13 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6

Open the chart page →

10,169
ConvertServiceWeb-Helm-Buildconvertserviceweb-helm-build0.1.11 of 7See more

ConvertServiceWeb-Helm-Build convertserviceweb-helm-build 0.1.1

1 of the 7 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/redis:latest718f745deb7d
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

10,540
cosanetcosanet1.0.01 of 1See more

cosanet cosanet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
openssl@3.5.1-1
no fix listed

Open the chart page →

2,434
cospacecospace0.0.341 of 3See more

cospace cospace 0.0.34

1 of the 3 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/mariadb:latestd4fdec0510ad
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6

Open the chart page →

3,961
csghubcsghubVerified publisher2.5.03 of 34See more

csghub csghub 2.5.0

3 of the 34 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
opencsghq/csgbot:v0.6.9-ee7d0271e26521
openssl@3.5.6-1~deb13u2
no fix listed
opencsghq/label-studio:v2.5.047e22aa71870
openssl@3.5.7-1~deb13u2
no fix listed
opencsghq/postgres:15.19b98600564e07
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

52,989
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
opencsghq/postgres:15.19b98600564e07
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

12,572
dataflowcsghubVerified publisher2.5.02 of 7See more

dataflow csghub 2.5.0

2 of the 7 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
openssl@3.5.7-1~deb13u2
no fix listed
opencsghq/postgres:15.19b98600564e07
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

7,586
cloudflaredcyberjakeVerified publisher0.3.201 of 1See more

cloudflared cyberjake 0.3.20

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.6.16d91c121b803
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

750
cypikcypik-app0.1.01 of 2See more

cypik cypik-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

7,747
view-cadvisorcypik-helm-chart0.1.01 of 1See more

view-cadvisor cypik-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,765
nginx-chartdaeho12Verified publisher0.1.01 of 1See more

nginx-chart daeho12 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,765
dakeradakera-helmVerified publisher0.11.1071 of 3See more

dakera dakera-helm 0.11.107

1 of the 3 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/dakera-ai/dakera:0.11.101af610992a416
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

4,316
damap-chartdamapVerified publisher0.3.13 of 5See more

damap-chart damap 0.3.1

3 of the 5 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8f29984bd1e22
openssl@3.5.7-1~deb13u2
no fix listed
library/postgres:161a6ab3f5345e
openssl@3.5.7-1~deb13u2
no fix listed
ghcr.io/damap-org/damap-frontend:5.0.2c9d4f0f8b331
openssl@3.5.6-1~deb13u2
no fix listed

Open the chart page →

15,070
nvidia-gpu-exporterdanchevVerified publisher1.0.31 of 1See more

nvidia-gpu-exporter danchev 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/utkuozdemir/nvidia_gpu_exporter:1.5.0d75967a4dd72
openssl@3.5.5-1ubuntu3.2
3.5.5-1ubuntu3.6

Open the chart page →

1,361
dara-chartsdara-charts0.1.01 of 2See more

dara-charts dara-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/postgres:16a3b7f434b2dc
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

3,482
helm-chart-testdasmeta0.1.41 of 1See more

helm-chart-test dasmeta 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/nginx:stable0aa2d81d65bc
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,765
datacube-dashboarddatacube-charts0.5.101 of 2See more

datacube-dashboard datacube-charts 0.5.10

1 of the 2 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,390
cron-jobdatarepo0.0.31 of 1See more

cron-job datarepo 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
google/cloud-sdk:slimcfca8415b7ce
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

2,509
decisionrules-ocpdecisionrules-ocpVerified publisher0.1.01 of 4See more

decisionrules-ocp decisionrules-ocp 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
decisionrules/ai-engine:latest557dea1373aa
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,881
defguard-gatewaydefguard2.1.01 of 1See more

defguard-gateway defguard 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/defguard/gateway:2.1.0738b2b6f413b
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

1,141
defguard-proxydefguard2.1.01 of 1See more

defguard-proxy defguard 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-54875.

Container imageDigestPackageFixed in
ghcr.io/defguard/defguard-proxy:2.1.08765a28e383e
openssl@3.5.7-1~deb13u2
no fix listed

Open the chart page →

993

Container images carrying it

672 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
openssl@3.5.6-1~deb13u2
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
openssl@3.5.4-1~deb13u1
no fix listed
1
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
openssl@3.5.5-1~deb13u2
no fix listed
1
quay.io/opstree/grafana:12.4.3b61c1ed2f015
openssl@3.5.5-1~deb13u2
no fix listed
1
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
openssl@3.5.5-1~deb13u2
no fix listed
1
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
openssl@3.5.5-1~deb13u2
no fix listed
1
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
openssl@3.5.5-1~deb13u2
no fix listed
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.1126450354eba9
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6
1
registry.gitlab.com/egos-tech/smtp:latestc5faeae6b5d0
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
openssl@3.5.5-1~deb13u1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-user:1.0.31d8a9cd4e1ae3
openssl@3.5.6-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.104019bb2e325
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.198d46dc7e071
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.19df7d5aa03fe
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-exporter:17.0.25b0d50fcd5ea
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-kas:v19.4.14ed6de4d77e1
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.6.2-gitlab1a80159109e74
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3180688274b2c
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.17419aa33eb17
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.1a072f0a41f28
openssl@3.5.7-1~deb13u2
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssl@3.5.1-1
no fix listed
1

syft 1.42.1 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.