StackRadar

CVE-2026-63072

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
50th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,268
of 17,787 indexed, latest versions
Container images
3,501
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-63072 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,268 of 17,787 indexed charts deploy, on 3,501 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,302
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,176
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-63072DEBIAN-CVE-2026-63072UBUNTU-CVE-2026-63072AZL-97947ECHO-aa38-89d5-f024
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,268 by stars
ChartLatestAffected imagesRadar Score
datacube-explorerdatacube-charts0.5.321 of 1See more

datacube-explorer datacube-charts 0.5.32

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
opendatacube/explorer:latest120457ffcd69
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

4,854
dbrepodbrepo1.13.315 of 25See more

dbrepo dbrepo 1.13.3

15 of the 25 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/openldap:2.6.8-debian-12-r16e412c178ef9
openssl@3.0.11-1~deb12u2
no fix listed
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
openssl@3.0.14-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
openssl@3.0.13-1~deb12u1
no fix listed
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/valkey:latest0384ca2eec63
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

52,635
dcachedcache0.1.01 of 4See more

dcache dcache 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
kroniak/ssh-client:latest3aef87e1a00b
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

487
mealiedeimosfr-charts1.0.151 of 1See more

mealie deimosfr-charts 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

4,028
kubedashdevopstalesOfficialVerified publisher4.0.03 of 8See more

kubedash devopstales 4.0.0

3 of the 8 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:18.3a9abf4275f9e
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2
library/redis:8.6.2009cc37796fb
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2
oliver006/redis_exporter:v1.82.0-alpineda9e89ee4e75
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

9,205
dial-coredialOfficialVerified publisher6.0.01 of 2See more

dial-core dial 6.0.0

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,521
powershelluniversaldigitalhubVerified publisher0.1.21 of 1See more

powershelluniversal digitalhub 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

6,940
matomodigitalist-open-cloud-matomo12.0.201 of 3See more

matomo digitalist-open-cloud-matomo 12.0.20

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
digitalist/matomo:5.12.0bc4aeeaea769
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

3,539
directusdirectus-io2.1.03 of 3See more

directus directus-io 2.1.0

3 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
openssl@3.0.17-1~deb12u1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
no fix listed
directus/directus:12.0.29c8470ea465c
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

7,473
smtp-relaydjjudas21Verified publisher0.8.01 of 1See more

smtp-relay djjudas21 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
djjudas21/smtp-relay:0.11.0ffd8143952f6
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

674
docker-registrydocker-repository0.1.01 of 1See more

docker-registry docker-repository 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/registry:latest1be55279f18a
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

633
domain-lockerdomain-locker0.2.82 of 3See more

domain-locker domain-locker 0.2.8

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:15-alpinefe0737ba566a
openssl@3.5.7-r0
3.5.8-r0
lissy93/domain-locker:latestd3c95edc0a8b
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,882
dominodominoVerified publisher0.1.112 of 3See more

domino domino 0.1.11

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u2
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

8,823
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
openssl@3.0.2-0ubuntu1.17
3.0.2-0ubuntu1.29

Open the chart page →

10,858
dragonfly-stackdragonflyVerified publisher0.1.21 of 7See more

dragonfly-stack dragonfly 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

18,376
craftycontrollerdrewburr-labs-helm-chartsVerified publisher0.3.01 of 1See more

craftycontroller drewburr-labs-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15

Open the chart page →

3,671
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

5,670
dyff-orchestratordyff-orchestratorVerified publisher0.22.191 of 1See more

dyff-orchestrator dyff-orchestrator 0.22.19

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,354
glpieftechcombr-glpiVerified publisher2.12.03 of 5See more

glpi eftechcombr-glpi 2.12.0

3 of the 5 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
eftechcombr/glpi:php-fpm-12.0.0-rc1f3d0ed01709e
openssl@3.5.4-r0
3.5.8-r0
library/mariadb:12.3.2a02fe89cb597
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
valkey/valkey:9.1.08e8d64b405ce
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

4,341
elastalert2elastalert22.31.01 of 1See more

elastalert2 elastalert2 2.31.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
jertel/elastalert2:2.31.03cbf63f9b7dc
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,801
elchi-stackelchi1.13.05 of 10See more

elchi-stack elchi 1.13.0

5 of the 10 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.81ffa82edee00
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm5
envoyproxy/envoy:v1.33.056da5afd7df3
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29
grafana/grafana:12.2.074144189b384
openssl@3.5.1-r0
3.5.8-r0
jhonbrownn/elchi:v1.5.146936e4f1caeb
openssl@3.5.7-r0
3.5.8-r0
library/mongo:6.0.12646902910d6a
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29

Open the chart page →

15,383
enavenav-service-architectureVerified publisher0.0.78 of 10See more

enav enav-service-architecture 0.0.7

8 of the 10 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/enav-api-gateway:latest8f4345c77dda
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/gla-rad/enav-aton-admin-service:latestcf85570b1324
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/gla-rad/enav-aton-service:latest3be878690629
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/gla-rad/enav-aton-service-client:latestf1629ac5f9ec
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/gla-rad/enav-ckeeper:latest415323ef112b
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/gla-rad/enav-eureka:latest05002092c621
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/gla-rad/enav-msg-broker:latest6fe372e4e481
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/gla-rad/enav-vdes-controller:latestc4c52955814f
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

15,860
enbuildenbuildVerified publisher0.0.505 of 6See more

enbuild enbuild 0.0.50

5 of the 6 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
openssl@3.5.6-1~deb13u2
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
openssl@3.0.20-1~deb12u1
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-user:1.0.31d8a9cd4e1ae3
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

31,510
kubevirtencircle360-ossVerified publisher0.2.11 of 1See more

kubevirt encircle360-oss 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/kubevirt/virt-operator:v1.7.037d2ef21e3e5
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

850
roundcubeencircle360-ossVerified publisher0.8.31 of 1See more

roundcube encircle360-oss 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,584
eoapieoapiOfficialVerified publisher0.16.22 of 7See more

eoapi eoapi 0.16.2

2 of the 7 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
alpine/kubectl:1.34.18413f8890d19
openssl@3.5.4-r0
3.5.8-r0
ghcr.io/stac-utils/titiler-pgstac:3.1.0788173c5876d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

6,250
copypartyernail-copyparty2.0.01 of 1See more

copyparty ernail-copyparty 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
copyparty/ac:1.19.200a0a8605062c
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,685
paraerudikaVerified publisher0.3.01 of 1See more

para erudika 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
erudikaltd/para:latest_stable235e0bc53da2
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4

Open the chart page →

1,086
scoolderudikaVerified publisher0.3.01 of 1See more

scoold erudika 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
erudikaltd/scoold:1.66.0949c56b57e8f
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,605
beaconchain-explorerethereum-helm-chartsVerified publisher0.1.61 of 2See more

beaconchain-explorer ethereum-helm-charts 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29

Open the chart page →

3,048
besuethereum-helm-chartsVerified publisher1.1.41 of 2See more

besu ethereum-helm-charts 1.1.4

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
hyperledger/besu:latest6f3f21ce5333
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15

Open the chart page →

649
erigonethereum-helm-chartsVerified publisher2.0.21 of 2See more

erigon ethereum-helm-charts 2.0.2

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
erigontech/erigon:latest2252efdf9abe
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,100
lighthouseethereum-helm-chartsVerified publisher1.1.91 of 2See more

lighthouse ethereum-helm-charts 1.1.9

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
sigp/lighthouse:latest9a62bb870545
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29

Open the chart page →

1,548
rethethereum-helm-chartsVerified publisher0.1.91 of 2See more

reth ethereum-helm-charts 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/paradigmxyz/reth:latest68e76b32ad9a
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

634
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

11,458
vulnz-nvd-mirroreugen1.0.01 of 1See more

vulnz-nvd-mirror eugen 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/jeremylong/open-vulnerability-data-mirror:v9.0.49a69aa14dc3e
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,675
evccevccVerified publisher1.0.471 of 1See more

evcc evcc 1.0.47

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
evcc/evcc:0.300.8ddf2a25afce5
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,181
mcrouterevryfs-ossVerified publisher0.4.01 of 2See more

mcrouter evryfs-oss 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

6,500
akauntingf3k-techVerified publisher1.3121.02 of 4See more

akaunting f3k-tech 1.3121.0

2 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
openssl@3.0.16-1~deb12u1
no fix listed
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,333
atlas-cmmsf3k-techVerified publisher0.151.51 of 4See more

atlas-cmms f3k-tech 0.151.5

1 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
intelloop/atlas-cmms-backend:v1.5.14c61bc3dd3f8
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

5,291
cap-captcha-serverf3k-techVerified publisher0.21.01 of 1See more

cap-captcha-server f3k-tech 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
tiago2/cap:2.159f5ae4e261e
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,664
recaptcha-v3-verifierf3k-techVerified publisher1.110.01 of 1See more

recaptcha-v3-verifier f3k-tech 1.110.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
f3ktech/recaptcha-v3-verifier:1.1.048e78987cf91
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

1,208
fastapi-microservice-appfast-api-microservice-app1.3.04 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

4 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
openssl@3.0.16-1~deb12u1
no fix listed
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
openssl@3.0.16-1~deb12u1
no fix listed
omkara25/simple-microservice-app-user-service:v2d62cba548580
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

9,562
taigafermosit0.0.112 of 7See more

taiga fermosit 0.0.11

2 of the 7 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
taigaio/taiga-protected:latestfd4568a97a59
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

8,496
zabbix-server-mysqlfermosit3.0.23 of 4See more

zabbix-server-mysql fermosit 3.0.2

3 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15

Open the chart page →

12,840
ferriskeyferriskey0.7.23 of 3See more

ferriskey ferriskey 0.7.2

3 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/ferriskey/ferriskey-api:0.7.228b6adba10f8
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/ferriskey/ferriskey-webapp:0.7.28bee6a3e03cd
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

3,262
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
openssl@1.1.1-1ubuntu2.1~18.04.5
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.23+esm10
1.0.2n-1ubuntu5.13+esm6

Open the chart page →

12,908
contentserverfoomoVerified publisher0.7.01 of 1See more

contentserver foomo 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
foomo/contentserver:1.21.0824f41463e9b
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

264
adguard-homegabe565Verified publisher0.3.251 of 2See more

adguard-home gabe565 0.3.25

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

964
home-assistantgabe565Verified publisher0.17.01 of 1See more

home-assistant gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:latest612d76760b54
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,133

Container images carrying it

3,501 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm10
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
openssl@3.0.20-1~deb12u2
no fix listed
2
ghcr.io/mogenius/mo-backup:latest4f89afef9010
openssl@3.5.7-r0
3.5.8-r0
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
openssl@3.0.14-1~deb12u2
no fix listed
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
openssl@3.0.16-1~deb12u1
no fix listed
2
ghcr.io/nucleuscloud/neosync/app:0.5.41ca31ec35b829
openssl@3.5.0-r0
3.5.8-r0
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
openssl@3.0.16-1~deb12u1
no fix listed
2
ghcr.io/opencost/opencost:1.121.2de2784434527
openssl@3.5.7-r0
3.5.8-r0
2
ghcr.io/plausible/community-edition:v3.2.133e60bfb40f2
openssl@3.5.6-r0
3.5.8-r0
2
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
openssl@3.0.11-1~deb12u2
no fix listed
2
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
openssl@3.0.15-1~deb12u1
no fix listed
2
ghcr.io/salaboy/fmtok8s-agenda-service:v0.0.1-native6c5efe150958
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23+esm10
2
ghcr.io/salaboy/fmtok8s-c4p-service:v0.0.1-native3f7cc45fd20b
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23+esm10
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
openssl@3.0.2-0ubuntu1.2
3.0.2-0ubuntu1.29
2
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
openssl@3.0.15-1~deb12u1
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
openssl@3.0.18-1~deb12u2
no fix listed
2
ghcr.io/wg-easy/wg-easy:15:15.4.00e7bc9d34e86
openssl@3.5.7-r0
3.5.8-r0
2
ghcr.io/wg-easy/wg-easy:145f26407fd2ed
openssl@3.5.0-r0
3.5.8-r0
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm5
2
public.ecr.aws/aktosecurity/akto-api-security-dashboard:1.69.2:latestb53a854bd7c1
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
2
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
openssl@3.5.1-1
3.5.7-1~deb13u2
2
public.ecr.aws/gravitational/tbot-distroless:18.11.04ba5ace31fea
openssl@3.0.20-1~deb12u2
no fix listed
2
public.ecr.aws/truefoundrycloud/timberio/vector:v0.52.088b8dc80ae74
openssl@3.5.6-r0
3.5.8-r0
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15
2
quay.io/argoprojlabs/argocd-image-updater:v1.3.0cb009167015c
openssl@3.5.7-r0
3.5.8-r0
2
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
2
quay.io/cilium/tetragon:v1.7.1afc9458ba4bc
openssl@3.5.7-r0
3.5.8-r0
2
quay.io/curl/curl:8.16.0b17b13321678
openssl@3.5.2-r0
3.5.8-r0
2
quay.io/frrouting/frr:10.4.38745af1f9bbb
openssl@3.5.5-r0
3.5.8-r0
2
quay.io/jcmoraisjr/haproxy-ingress:v0.16.16fd744191ef6
openssl@3.5.6-r0
3.5.8-r0
2
quay.io/kiwigrid/k8s-sidecar:2.1.2716b0b33ff2d
openssl@3.5.4-r0
3.5.8-r0
2
quay.io/metallb/frr-k8s:v0.0.251cb06fb2d553
openssl@3.5.6-r0
3.5.8-r0
2
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
openssl@3.5.4-r0
3.5.8-r0
2
registry.gitlab.com/shortlink-org/shortlink/ui:main9bdb1062d960
openssl@3.5.5-r0
3.5.8-r0
2
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
openssl@3.5.0-r0
3.5.8-r0
2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
openssl@3.0.20-1~deb12u2
no fix listed
2
1dev/server:11.9.0cd5b12fe5471
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15
1
1password/connect-api:1.8.2e915c0c84397
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
1password/connect-sync:1.8.26297ca6136c0
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
2martens/timetable:latestbd1ba6ab84c9
openssl@3.5.1-r0
3.5.8-r0
1
2martens/wahlrecht:latestba2c3040dab0
openssl@3.5.1-r0
3.5.8-r0
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
openssl@3.0.9-1
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm10
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u2
1
aaronshaf/dynamodb-admin:latestac41724cd997
openssl@3.5.6-r0
3.5.8-r0
1
aboogie/login_test_backend:new9c41a4483ac8
openssl@3.0.13-1~deb12u1
no fix listed
1
adguard/adguardhome:v0.107.767157eb1dc3b2
openssl@3.5.6-r0
3.5.8-r0
1
adguard/adguardhome:v0.107.737fbf01d73ecb
openssl@3.5.5-r0
3.5.8-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.