StackRadar

CVE-2026-63072

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,442
of 17,813 indexed, latest versions
Container images
3,742
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-63072 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,442 of 17,813 indexed charts deploy, on 3,742 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,299
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+12 more3.3.7-r1, 3.5.8-r01,424
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+4 more1.0.2n-1ubuntu5.13+esm620
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-619
OSV records
ALPINE-CVE-2026-63072DEBIAN-CVE-2026-63072UBUNTU-CVE-2026-63072AZL-97947ECHO-aa38-89d5-f024
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,442 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

3,742 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
library/couchdb:3.4.22817ad50b5c5
openssl@3.0.15-1~deb12u1
no fix listed
1
library/docker:28.5.2-dind2a232a42256f
openssl@3.5.4-r0
3.5.8-r0
1
library/docker:27-cli851f91d24121
openssl@3.3.3-r0
3.3.7-r1
1
library/docker:27-dindaa3df78ecf32
openssl@3.3.3-r0
3.3.7-r1
1
library/drupal:11.4.6-php8.5-apache-bookworm28f7931ecbcb
openssl@3.0.20-1~deb12u2
no fix listed
1
library/eclipse-mosquitto:2:2.1.2-alpine6f8d8a947c50
openssl@3.5.7-r0
3.5.8-r0
1
library/eclipse-temurin:25.0.3_9-jre-alpine-3.2328db6fdf60e3
openssl@3.5.7-r0
3.5.8-r0
1
library/eclipse-temurin:2185f00967bcc6
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
library/elasticsearch:8.17.32cc40b15dff8
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm5
1
library/elasticsearch:8.15.0310b9fc03b06
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm5
1
library/elasticsearch:7.17.0332c6d416808
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm5
1
library/elasticsearch:7.17.1588c2ec10c7f2
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5
1
library/elasticsearch:7.17.8fdc73b3249c1
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
1
library/flink:1.14.6-scala_2.122461f02672b3
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29
1
library/ghost:6.39.0-alpine77196da4b0df
openssl@3.5.6-r0
3.5.8-r0
1
library/ghost:6.22.0-alpine3.23ac533a6988ee
openssl@3.5.5-r0
3.5.8-r0
1
library/haproxy:3.4.10f597665a2a6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
library/haproxy:3.1-alpine475863a372c9
openssl@3.5.6-r0
3.5.8-r0
1
library/haproxy:3.1-bookworm49a0a0d6f0b8
openssl@3.0.17-1~deb12u2
no fix listed
1
library/haproxy:2.9.6fc5748ff7c72
openssl@3.0.11-1~deb12u2
no fix listed
1
library/httpd:2.4.631ae8051591a5
openssl@3.0.16-1~deb12u1
no fix listed
1
library/influxdb:2.8571eb4514977
openssl@3.0.20-1~deb12u2
no fix listed
1
library/influxdb:3.10.5-core695a8063ff10
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
library/influxdb:3.11.2-enterprise6ce2bf22499b
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
library/influxdb:1.12.3-meta8812029260b5
openssl@3.0.18-1~deb12u2
no fix listed
1
library/influxdb:1.12.3-datab0f9fc41ed79
openssl@3.0.18-1~deb12u2
no fix listed
1
library/influxdb:latestf75e48af0598
openssl@3.0.20-1~deb12u2
no fix listed
1
library/kibana:7.17.150172f1c538e7
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5
1
library/kibana:8.18.004c0fc150f3a
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm5
1
library/kibana:7.17.8c5781ba340ef
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
1
library/kibana:7.17.3e2e2031c15be
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm5
1
library/logstash:7.17.817a4f64e9cf5
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
1
library/mariadb:10.7.307e06f2e7ae9
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm5
1
library/mariadb:10.11.21c33370a599c
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.29
1
library/mariadb:10.422edfe1c7834
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm5
1
library/mariadb:112439dcd7d140
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
library/mariadb:10.8.2-focal490f01279be1
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm5
1
library/mariadb:12.0.25b6a1eac15b8
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
1
library/mariadb:12.3.2628f228f0fd5
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
1
library/mariadb:10.6.218a16204dc96c
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm5
1
library/mariadb:10.79a48ac9f196f
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm5
1
library/mariadb:12.3.2a02fe89cb597
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
library/mariadb:12.2.2b1cb255a9939
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
library/mariadb:10.10.2bfc25a68e113
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29
1
library/mariadb:10.6.15e22328f4d714
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm5
1
library/mariadb:10.9.4fbb8456ebdb1
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29
1
library/mariadb:11.7.2fcc7fcd7114a
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15
1
library/matomo:5.1.2-apache2415789e1602
openssl@3.0.15-1~deb12u1
no fix listed
1
library/memcached:1.6.4226983a43c918
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u2
1
library/memcached:1.6.41-alpine65c80b311a96
openssl@3.5.6-r0
3.5.8-r0
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.