StackRadar

CVE-2026-63072

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,279
of 17,792 indexed, latest versions
Container images
3,526
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-63072 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,279 of 17,792 indexed charts deploy, on 3,526 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,313
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,190
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-63072DEBIAN-CVE-2026-63072UBUNTU-CVE-2026-63072AZL-97947ECHO-aa38-89d5-f024
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,279 by stars
ChartLatestAffected imagesRadar Score
opentelemetry-demogpg-dev0.33.88 of 27See more

opentelemetry-demo gpg-dev 0.33.8

8 of the 27 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
openssl@3.0.13-1~deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
openssl@3.0.14-1~deb12u2
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
openssl@3.0.14-1~deb12u2
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
openssl@3.0.14-1~deb12u2
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
openssl@3.0.11-1~deb12u2
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

49,501
traefikgpg-dev39.0.81 of 1See more

traefik gpg-dev 39.0.8

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/traefik:v3.6.1334d5089d0b41
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,280
velerogpg-dev12.0.01 of 1See more

velero gpg-dev 12.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
velero/velero:v1.18.0e4d1e79be2ee
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.29

Open the chart page →

1,569
video-analytics-demogpu-operator0.1.91 of 3See more

video-analytics-demo gpu-operator 0.1.9

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
anguda/ant-media:2.5c435285fc241
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

15,820
grafana-cloud-onboardinggrafana0.4.71 of 5See more

grafana-cloud-onboarding grafana 0.4.7

1 of the 5 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.1c137478627cc
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

4,681
grafana-samplinggrafana1.1.71 of 2See more

grafana-sampling grafana 1.1.7

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
grafana/alloy:v1.11.38c7256f412fe
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15

Open the chart page →

3,381
pyroscope-monitoringgrafana0.1.11 of 6See more

pyroscope-monitoring grafana 0.1.1

1 of the 6 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.1c137478627cc
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

8,281
synthetic-monitoring-agentgrafana-communityVerified publisher1.19.01 of 1See more

synthetic-monitoring-agent grafana-community 1.19.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
grafana/synthetic-monitoring-agent:v0.65.0fe3e095283f0
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

213
grafana-dashboard-convertergrafana-dashboard-converterVerified publisher0.3.101 of 1See more

grafana-dashboard-converter grafana-dashboard-converter 0.3.10

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
kenchrcum/grafana-dashboard-converter:0.3.105310497aea3f
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

909
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.15

Open the chart page →

8,012
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.29

Open the chart page →

4,687
grayloggraylogVerified publisher1.0.22 of 4See more

graylog graylog 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
graylog/graylog:6.1.1019de1aff48c2
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
library/mongo:85211c51171f5
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

5,366
cc-spring-appgridgainVerified publisher1.0.61 of 1See more

cc-spring-app gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gridgain/cloud-connector:2025.5.15ab838d7d3cb
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,692
gridgain9gridgainVerified publisher1.1.101 of 2See more

gridgain9 gridgain 1.1.10

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gridgain/gridgain9:9.1.1895018390077b
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

3,229
routergroundcover1.12.3704 of 7See more

router groundcover 1.12.370

4 of the 7 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
public.ecr.aws/groundcovercom/kong:3.9.3-mini-20260804-107dfd0693fc4
openssl@3.5.6-1~deb13u2+e1
3.5.7-1~deb13u2
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
openssl@3.5.4-1~deb13u2+e1
3.5.7-1~deb13u2
quay.io/groundcover/tools:20260719b705e0cbe171
openssl@3.5.6-1~deb13u2+e1
3.5.7-1~deb13u2

Open the chart page →

5,531
temporalgroundcover1.12.3702 of 2See more

temporal groundcover 1.12.370

2 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
openssl@3.5.6-1~deb13u2+e1
3.5.7-1~deb13u2
public.ecr.aws/groundcovercom/temporalio/server:1.29.6-mini-20260702-170f191d0a80e
openssl@3.5.6-1~deb13u1+e1
3.5.7-1~deb13u2

Open the chart page →

2,033
gtmgtmVerified publisher1.0.21 of 1See more

gtm gtm 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gcr.io/cloud-tagging-10302018/gtm-cloud-image:stable688d35c6c544
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

495
librechat-exporterhajowielandVerified publisher1.0.01 of 1See more

librechat-exporter hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

2,308
rag-apihajowielandVerified publisher1.0.01 of 1See more

rag-api hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,723
web-checkhajowielandVerified publisher1.0.11 of 1See more

web-check hajowieland 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

9,434
octoboxhalkeye0.1.11 of 1See more

octobox halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
octoboxio/octobox:latestd909041c46eb
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

3,254
hatchet-apihatchetOfficialVerified publisher0.19.01 of 4See more

hatchet-api hatchet 0.19.0

1 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,707
hatchet-hahatchetOfficialVerified publisher0.19.03 of 8See more

hatchet-ha hatchet 0.19.0

3 of the 8 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
no fix listed
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

7,447
hatchet-stackhatchetOfficialVerified publisher0.19.03 of 8See more

hatchet-stack hatchet 0.19.0

3 of the 8 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
no fix listed
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

7,447
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29

Open the chart page →

9,233
hdx-oss-v2hdx-oss-v20.8.42 of 5See more

hdx-oss-v2 hdx-oss-v2 0.8.4

2 of the 5 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.7-alpine258d43821508
openssl@3.5.4-r0
3.5.8-r0
library/mongo:5.0.14-focal50cae5081ab4
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

6,758
heliconehelicone0.1.423 of 14See more

helicone helicone 0.1.42

3 of the 14 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.29
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm5
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
openssl@3.0.9-1
no fix listed

Open the chart page →

25,250
helixhelix1.4.32 of 2See more

helix helix 1.4.3

2 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
openssl@3.5.5-r0
3.5.8-r0
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
openssl@3.0.19-1~deb12u2
no fix listed

Open the chart page →

5,696
hello-worldhello-world-pponyVerified publisher0.3.01 of 1See more

hello-world hello-world-ppony 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/nginx:1.25.49ff236ed47fe
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

5,880
7dtdhelm-7dtd0.1.01 of 1See more

7dtd helm-7dtd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
vinanrra/7dtd-server:v0.4.4f9534490bd2b
nodejs@16.19.1-deb-1nodesource1
openssl@1.1.1-1ubuntu2.1~18.04.21
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

10,730
my_web1helm-chart-by-piyush0.1.01 of 1See more

my_web1 helm-chart-by-piyush 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,715
pageshelm-chart-repos-camden1.0.02 of 3See more

pages helm-chart-repos-camden 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm5
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

20,262
esphomehelm-chart-roeiVerified publisher2025.3.01 of 1See more

esphome helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
esphome/esphome:2025.3.0def8b6e4f517
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

6,018
home-assistant-matter-hubhelm-chart-roeiVerified publisher3.0.21 of 1See more

home-assistant-matter-hub helm-chart-roei 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
luligu/matterbridge:3.0.28f97884bebc2
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,835
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
iofog/router:2.0.17260cf861479
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

24,205
streamsheetshelm-chartsVerified publisher0.2.31 of 8See more

streamsheets helm-charts 0.2.3

1 of the 8 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/eclipse-mosquitto:26f8d8a947c50
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

90,014
monitoring-stackhelm-charts-alexis-carbillet0.1.01 of 11See more

monitoring-stack helm-charts-alexis-carbillet 0.1.0

1 of the 11 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

10,649
nginx-charthelm-chart-sample-app0.1.01 of 1See more

nginx-chart helm-chart-sample-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
rraahul/test:latestbfe2c1183bc0
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29

Open the chart page →

4,609
kube-downscalerhelm-charts-nr0.7.61 of 1See more

kube-downscaler helm-charts-nr 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
openssl@3.0.9-1
no fix listed

Open the chart page →

4,319
locusthelm-charts-nr0.32.41 of 1See more

locust helm-charts-nr 0.32.4

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

2,824
node-local-dnshelm-charts-nr2.1.41 of 1See more

node-local-dns helm-charts-nr 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

2,255
supersethelm-charts-nr1.1.31 of 1See more

superset helm-charts-nr 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
apache/superset:latest16b50bbef664
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,332
mywebhelmchartwebapp0.0.51 of 1See more

myweb helmchartwebapp 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,715
helm-controllerhelm-controllerVerified publisher0.1.41 of 1See more

helm-controller helm-controller 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
rancher/helm-controller:v0.17.4946ae0d13229
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

231
crucixhelm-crucix0.2.01 of 1See more

crucix helm-crucix 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/calesthio/crucix:latest67c5244b6acf
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

780
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dannielkil/book-frontend:latest937993927694
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

9,165
helmfile-gitops-agenthelmfile-gitops-agentVerified publisher1.1.963 of 3See more

helmfile-gitops-agent helmfile-gitops-agent 1.1.96

3 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
alpine/git:v2.54.06f3b5029566d
openssl@3.5.7-r0
3.5.8-r0
fluxcd/flux-cli:v2.9.5704d55295355
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/helmfile/helmfile:v1.7.4f20e612d5a98
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,613
adguard-homehelmforgeVerified publisher1.5.21 of 2See more

adguard-home helmforge 1.5.2

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
adguard/adguardhome:v0.107.79aba9e3bf0613
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

175
affinehelmforgeVerified publisher1.0.03 of 3See more

affine helmforge 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
pgvector/pgvector:0.8.6-pg16-bookwormccc6e83d6e35
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/toeverything/affine:0.27.4b649f5ce2384
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,115
alfiohelmforgeVerified publisher1.2.121 of 3See more

alfio helmforge 1.2.12

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,132

Container images carrying it

3,526 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
gdrocha/togglr-backend:1.0.0d5ae64e83d4c
openssl@3.5.4-r0
3.5.8-r0
1
gdrocha/togglr-frontend:1.0.0ffbc1571c234
openssl@3.5.4-r0
3.5.8-r0
1
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm10
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.29
1
geonode/geoserver_data:2.28.4-latest435cbc5f3f05
openssl@3.5.6-r0
3.5.8-r0
1
geopython/pycsw:3.0.0-beta284662ea6b78b
openssl@3.0.17-1~deb12u3
no fix listed
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
openssl@1.1.1-1ubuntu2.1~18.04.6
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.23+esm10
1.0.2n-1ubuntu5.13+esm6
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
geoservercloud/geoserver-cloud-gateway:3.0.1.1de0b20bd2a43
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
geoservercloud/geoserver-cloud-gwc:3.0.1.1b04ed89b5d2b
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
geoservercloud/geoserver-cloud-rest:3.0.1.1318254b52f96
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
geoservercloud/geoserver-cloud-wcs:3.0.1.14f077124f591
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
geoservercloud/geoserver-cloud-webui:3.0.1.14f91e3048ac8
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
geoservercloud/geoserver-cloud-wfs:3.0.1.1299f0d6232d1
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
1
geoservercloud/geoserver-cloud-wms:3.0.1.15164f687ce4d
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
gethue/hue:4.11.011b649636e68
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
1
gethue/hue:4.10.05702b2c37ff9
nodejs@14.17.0-1nodesource1
openssl@1.1.1-1ubuntu2.1~18.04.9
openssl1.0@1.0.2n-1ubuntu5.6
no fix listed
1.1.1-1ubuntu2.1~18.04.23+esm10
1.0.2n-1ubuntu5.13+esm6
1
gethue/hue:latest7d5c1b9f8a79
nodejs@24.13.1-1nodesource1
openssl@3.0.2-0ubuntu1.19
no fix listed
3.0.2-0ubuntu1.29
1
getmeili/meilisearch:v1.53.0a59e984fd90b
openssl@3.5.7-r0
3.5.8-r0
1
getmeili/meilisearch:v1.53.2c94e58ca0966
openssl@3.5.7-r0
3.5.8-r0
1
getmeili/meilisearch:v1.30.0f3ecbc8c5bfb
openssl@3.5.4-r0
3.5.8-r0
1
getsentry/relay:24.10.0ba7bf9163219
openssl@3.0.14-1~deb12u2
no fix listed
1
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
openssl@3.0.20-1~deb12u1
no fix listed
1
ghusta/postgres-world-db:latest879d0919fdcc
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
gidoichi/secrets-store-csi-driver-provider-infisical:v1.1.42dd5322a0610
openssl@3.5.7-r1
3.5.8-r0
1
gitea/act_runner:nightly7940221bcfc9
openssl@3.5.6-r0
3.5.8-r0
1
gitea/act_runner:latestb5c35d6bdbb9
openssl@3.5.6-r0
3.5.8-r0
1
gitea/act_runner:0.3.1c2a169c5e998
openssl@3.5.5-r0
3.5.8-r0
1
gitea/gitea:1.27.3-rootless1c17ecaead42
openssl@3.5.7-r0
3.5.8-r0
1
gitea/gitea:1.27.134e3f6b75f5c
openssl@3.5.7-r0
3.5.8-r0
1
gitea/gitea:1.26.27d13848af126
openssl@3.5.6-r0
3.5.8-r0
1
gitea/gitea:1.27.387a67ee09d3a
openssl@3.5.7-r0
3.5.8-r0
1
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
1
glanceapp/glance:v0.8.532ab73d80f2b
openssl@3.5.6-r0
3.5.8-r0
1
glarad/mcp-management-portal-clr:0.6.8807e453354a7
openssl@3.5.7-r0
3.5.8-r0
1
glarad/mc-service-registry:latest7b02b9e7f1ef
openssl@3.5.7-r0
3.5.8-r0
1
glasskube/operator:0.12.2be5133100d63
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
1
glpi/glpi:latest4b681082a79e
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
1
gogost/gost:3.3.0f7a958c45192
openssl@3.5.7-r0
3.5.8-r0
1
golenski/fibonacci-msg-relay:1.0.0c863dcb0c513
openssl@3.0.9-1
no fix listed
1
golenski/fibonacci-task-manager:2.0.03a2b36df247b
openssl@3.0.9-1
no fix listed
1
golenski/fibonacci-worker:2.0.0954caf4aaf6a
openssl@3.0.9-1
no fix listed
1
gomods/athens:v0.17.10f61d1e62359
openssl@3.5.6-r0
3.5.8-r0
1
gomods/athens:v0.18.197cc113b34b0
openssl@3.5.7-r0
3.5.8-r0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.