StackRadar

CVE-2026-63072

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,470
of 17,803 indexed, latest versions
Container images
3,788
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-63072 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,470 of 17,803 indexed charts deploy, on 3,788 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,308
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+12 more3.3.7-r1, 3.5.8-r01,457
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-63072DEBIAN-CVE-2026-63072UBUNTU-CVE-2026-63072AZL-97947ECHO-aa38-89d5-f024
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,470 by stars
ChartLatestAffected imagesRadar Score
ttstest-opea1.0.01 of 1See more

tts test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
opea/tts:1.0257ae94709e9
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

4,423
web-retrievertest-opea1.0.01 of 1See more

web-retriever test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
opea/web-retriever-chroma:1.0fe08165d7770
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

5,418
vehicle-dashboardtest-vehi-dash0.1.03 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
library/mongo:5.0.217c81758cb295
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm5
library/redis:latest298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

20,436
node-redth0ths-helm-charts0.2.11 of 2See more

node-red th0ths-helm-charts 0.2.1

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,410
thanhvt27-lab-k8sthanh-vtVerified publisher0.1.41 of 5See more

thanhvt27-lab-k8s thanh-vt 0.1.4

1 of the 5 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
redis/redisinsight:latestb5e19ee240ab
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,668
codeth-chartsVerified publisher0.1.01 of 1See more

code th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
collabora/code:24.04.13.2.101dc4ab83977
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,301
jellyfinth-chartsVerified publisher0.1.01 of 1See more

jellyfin th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.77ae36aab93ef
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

4,017
nextcloudth-chartsVerified publisher0.4.01 of 1See more

nextcloud th-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/nextcloud:31.0.6-apache588609d76b21
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

10,186
openmeteo-exporterth-chartsVerified publisher0.1.61 of 1See more

openmeteo-exporter th-charts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
thelande/openmeteo_exporter:v1.0.77e9072ace15f
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

1,381
owncloudth-chartsVerified publisher0.2.11 of 1See more

owncloud th-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
owncloud/server:10.15.051d9b74fc2a8
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

10,115
prusa-exporterth-chartsVerified publisher0.3.01 of 1See more

prusa-exporter th-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
pubeldev/prusa_exporter:2.0.01091665a020a
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

907
the0the0Verified publisher0.9.83 of 9See more

the0 the0 0.9.8

3 of the 9 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/mongo:7-jammy406a4fdca9fc
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29
library/nats:2.10-alpineb83efabe3e7d
openssl@3.5.5-r0
3.5.8-r0
library/postgres:15-alpinefe0737ba566a
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

7,503
standard-applicationthebitgram1.0.121 of 1See more

standard-application thebitgram 1.0.12

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
openssl@1.0.2g-1ubuntu4.8
1.0.2g-1ubuntu4.20+esm18

Open the chart page →

11,028
thingsboardthingsboardVerified publisher0.1.31 of 12See more

thingsboard thingsboard 0.1.3

1 of the 12 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

25,531
pagesthiru-pages1.0.02 of 3See more

pages thiru-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm5
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

20,261
pagesthuy-pages1.0.02 of 3See more

pages thuy-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm5
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

20,261
tiktikVerified publisher2026.8.262043231 of 1See more

tik tik 2026.8.26204323

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/metio/tik:2026.8.2618070677f9ee7821d7
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

350
tikatikaVerified publisher0.3.01 of 1See more

tika tika 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,821
joplintobiassackmann0.1.71 of 2See more

joplin tobiassackmann 0.1.7

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

5,650
todoapitodoapi-appVerified publisher0.1.01 of 2See more

todoapi todoapi-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
openssl@1.1.1-1ubuntu2.1~18.04.23
openssl1.0@1.0.2n-1ubuntu5.13
1.1.1-1ubuntu2.1~18.04.23+esm10
1.0.2n-1ubuntu5.13+esm6

Open the chart page →

6,861
todolist-charttodolist-chart0.1.74 of 10See more

todolist-chart todolist-chart 0.1.7

4 of the 10 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
erenozcan17/flask_analytics:v3.1c9b6f0dfbffc
openssl@3.5.1-1
3.5.7-1~deb13u2
erenozcan17/go_backend:v4.250b4f23422b6
openssl@3.5.1-r0
3.5.8-r0
erenozcan17/react_frontend:v4.56e1b14973f9b
openssl@3.5.1-r0
3.5.8-r0
grafana/grafana:latestf772d434e8fa
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

7,076
togglr-backendtogglrVerified publisher1.0.01 of 1See more

togglr-backend togglr 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gdrocha/togglr-backend:1.0.0d5ae64e83d4c
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

3,215
togglr-frontendtogglrVerified publisher1.0.01 of 1See more

togglr-frontend togglr 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gdrocha/togglr-frontend:1.0.0ffbc1571c234
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,113
token-servertoken-server1.0.91 of 1See more

token-server token-server 1.0.9

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
udhos/token-server:1.0.9728013f2fac1
openssl@3.5.2-r0
3.5.8-r0

Open the chart page →

1,246
netbirdtotmicro1.8.23 of 4See more

netbird totmicro 1.8.2

3 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
netbirdio/management:0.60.252682e5f48f9
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
netbirdio/relay:0.60.2a10762533793
openssl@3.0.17-1~deb12u3
no fix listed
netbirdio/signal:0.60.267176bcbf6ab
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

6,064
hub-managertraefikVerified publisher1.0.01 of 1See more

hub-manager traefik 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/traefik/hub-manager:v0.45.1d1cff2560c67
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

649
traefik-external-dns-operatortraefik-external-dns-operator1.0.11 of 1See more

traefik-external-dns-operator traefik-external-dns-operator 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ybucci/traefik-external-dns-operator:1.0.0f1fcc7c8d9fd
openssl@3.3.3-r0
3.3.7-r1

Open the chart page →

1,227
traefik-secrets-exportertraefik-secrets-exporter0.0.21 of 1See more

traefik-secrets-exporter traefik-secrets-exporter 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/reiche-world/traefik-secrets-exporter:0.0.21485ff93cbf9
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,669
apptreenityVerified publisher0.1.532 of 2See more

app treenity 0.1.53

2 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:alpinebecdda6c7f4b
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

1,854
treenitytreenityVerified publisher0.1.32 of 4See more

treenity treenity 0.1.3

2 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:alpinebecdda6c7f4b
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

3,402
orchestratremolo3.1.561 of 5See more

orchestra tremolo 3.1.56

1 of the 5 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/headlamp-k8s/headlamp:v0.45.0db3f0e0fc58d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,974
orchestra-login-portaltremolo2.3.981 of 1See more

orchestra-login-portal tremolo 2.3.98

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29

Open the chart page →

3,019
trident-protecttrident-protect100.2606.01 of 2See more

trident-protect trident-protect 100.2606.0

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
netapp/trident-protect-utils:v2.0.0cd0c18d8f9ec
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,378
trident-protect-bxp-previewtrident-protect100.2511.0-bxp-preview1 of 3See more

trident-protect-bxp-preview trident-protect 100.2511.0-bxp-preview

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
netapp/trident-protect-utils:v1.0.058b9fac358bd
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

2,199
trident-protect-consoletrident-protect100.2608.0-console1 of 3See more

trident-protect-console trident-protect 100.2608.0-console

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
netapp/trident-protect-utils:v2.0.0cd0c18d8f9ec
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,369
gtm-server-container-clustertrieb-work0.1.81 of 1See more

gtm-server-container-cluster trieb-work 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gcr.io/cloud-tagging-10302018/gtm-cloud-image:stable688d35c6c544
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

500
saleor-appstrieb-work0.6.04 of 5See more

saleor-apps trieb-work 0.6.0

4 of the 5 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/redis:8.2.2f0957bcaa75f
openssl@3.0.17-1~deb12u3
no fix listed
ghcr.io/trieb-work/saleor-apps/saleor-app-products-feed:1.23.11d435b4ab372
openssl@3.3.3-r0
3.3.7-r1
ghcr.io/trieb-work/saleor-apps/saleor-app-search:1.24.328edefb6c92d
openssl@3.3.3-r0
3.3.7-r1
ghcr.io/trieb-work/saleor-apps/saleor-app-smtp:1.4.357a06bfba327
openssl@3.3.3-r0
3.3.7-r1

Open the chart page →

7,487
traceetrivy-operator0.24.11 of 1See more

tracee trivy-operator 0.24.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
aquasec/tracee:0.24.1cfbbfee972e6
openssl@3.3.5-r0
3.3.7-r1

Open the chart page →

1,227
trivy-webhook-aws-security-hubtrivy-webhook-aws-security-hubVerified publisher0.1.201 of 1See more

trivy-webhook-aws-security-hub trivy-webhook-aws-security-hub 0.1.20

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/csepulveda/trivy-webhook-aws-security-hub:v0.1.206836b779b060
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

617
trowtrow0.13.01 of 1See more

trow trow 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/trow-registry/trow:0.10.075b7d2dcdb91
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,317
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

17,427
tfy-grafanatruefoundryVerified publisher0.1.211 of 3See more

tfy-grafana truefoundry 0.1.21

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.1.2716b0b33ff2d
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,064
tfy-logstruefoundryVerified publisher0.1.212 of 3See more

tfy-logs truefoundry 0.1.21

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/timberio/vector:v0.50.05833723de9e4
openssl@3.5.4-r0
3.5.8-r0
public.ecr.aws/truefoundrycloud/timberio/vector:v0.52.088b8dc80ae74
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,034
truefoundry-monitoringtruefoundryVerified publisher0.1.63 of 8See more

truefoundry-monitoring truefoundry 0.1.6

3 of the 8 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
grafana/grafana:12.3.070d9599b186c
openssl@3.5.4-r0
3.5.8-r0
public.ecr.aws/truefoundrycloud/timberio/vector:v0.52.088b8dc80ae74
openssl@3.5.6-r0
3.5.8-r0
quay.io/kiwigrid/k8s-sidecar:2.1.2716b0b33ff2d
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

4,578
bobby-apitumogroup1.0.11 of 1See more

bobby-api tumogroup 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
sondresjo/bobby-api:latestfe534731909a
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

2,343
admin-dashboardtwenty20-helm-chartsVerified publisher1.1.01 of 1See more

admin-dashboard twenty20-helm-charts 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29.5-alpine-slim08c2bc93448b
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

387
twentytwenty-crm0.1.113 of 4See more

twenty twenty-crm 0.1.11

3 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:16-alpinecf78e76683b9
openssl@3.5.7-r0
3.5.8-r0
redis/redis-stack-server:7.2.0-v10e44b2b49d059
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
twentycrm/twenty:v2.22.0e7d9948bf284
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

5,634
timetabletwomartensVerified publisher0.2.01 of 1See more

timetable twomartens 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
2martens/timetable:latestbd1ba6ab84c9
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

1,531
wahlrechttwomartensVerified publisher0.3.01 of 1See more

wahlrecht twomartens 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
2martens/wahlrecht:latestba2c3040dab0
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

1,693
simple-mongodbtyk-helm0.1.11 of 1See more

simple-mongodb tyk-helm 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

4,139

Container images carrying it

3,788 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/jupyterhub/configurable-http-proxy:5.2.0522738d5285e
openssl@3.5.5-r0
3.5.8-r0
3
advplyr/audiobookshelf:2.36.13528a93b6442
openssl@3.5.6-r0
3.5.8-r0
2
alazidis/kube-netlag:1.1.00e8c84152201
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
2
alpine/git:2.47.2062a01ad7a0e
openssl@3.3.3-r0
3.3.7-r1
2
alpine/git:latest4f9488b7295b
openssl@3.5.7-r0
3.5.8-r0
2
alpine/k8s:1.32.12048f8d9c8cc7
openssl@3.5.5-r0
3.5.8-r0
2
alpine/kubectl:1.35.49ccd82364762
openssl@3.5.6-r0
3.5.8-r0
2
alpine/kubectl:1.35.2ec8f734b0a10
openssl@3.5.5-r0
3.5.8-r0
2
amaraiheanacho/nginx-site:latest5c86fccf5daa
openssl@3.3.3-r0
3.3.7-r1
2
apache/apisix:3.18.0-ubuntu9ee5df1611f9
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
2
apache/apisix-ingress-controller:2.2.05c5efa4c7f2a
openssl@3.0.20-1~deb12u2
no fix listed
2
apache/kafka:4.3.177e3df905404
openssl@3.5.7-r0
3.5.8-r0
2
apache/nifi-registry:1.26.07cdfd8deec92
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
2
apache/rocketmq:5.4.0319cd8a81ed1
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.15
2
apecloud/apecloud-mcp:0.1.094041b080510
openssl@3.5.0-r0
3.5.8-r0
2
aquasec/trivy:0.74.062b1e65e8869
openssl@3.5.7-r0
3.5.8-r0
2
axllent/mailpit:v1.31.0c96991d9bef7
openssl@3.5.7-r0
3.5.8-r0
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
openssl@3.0.17-1~deb12u2
no fix listed
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
openssl@3.0.15-1~deb12u1
no fix listed
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
openssl@3.0.17-1~deb12u2
no fix listed
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
openssl@3.0.14-1~deb12u2
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
openssl@3.0.17-1~deb12u2
no fix listed
2
bitnamilegacy/redis:latest5927ff3702df
openssl@3.0.16-1~deb12u1
no fix listed
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
openssl@3.0.17-1~deb12u1
no fix listed
2
casbin/casdoor:3.62.17729da148c61
openssl@3.5.6-r0
3.5.8-r0
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
openssl@3.0.11-1~deb12u2
no fix listed
2
chromedp/headless-shell:148.0.7778.97313ed7255ae1
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
2
clamav/clamav:1.4.3_base629a3050df6a
openssl@3.5.5-r0
3.5.8-r0
2
clickhouse/clickhouse-server:25.7-alpine258d43821508
openssl@3.5.4-r0
3.5.8-r0
2
clickhouse/clickhouse-server:24.2ed9640bfff07
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.24+esm5
2
cloudflare/cloudflared:2026.6.16d91c121b803
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
2
curlimages/curl:8.15.04026b29997dc
openssl@3.5.1-r0
3.5.8-r0
2
curlimages/curl:8.20.0b3f1fb2a51d9
openssl@3.5.6-r0
3.5.8-r0
2
datagrok/grok_connect:latestf5876d3aebb8
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29
2
devopsfaith/krakend:latestf8bdaa8a1a43
openssl@3.3.3-r0
3.3.7-r1
2
dunglas/mercure:v0:v0.24.2916834e49961
openssl@3.5.6-r0
3.5.8-r0
2
emberstack/kubernetes-reflector:10.0.6551dbd5880929
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
2
eqalpha/keydb:latest6537505c4235
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5
2
excalidraw/excalidraw:latestf7ee194addd6
openssl@3.3.3-r0
3.3.7-r1
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm10
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5
2

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.