StackRadar

CVE-2026-63072

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,476
of 17,805 indexed, latest versions
Container images
3,751
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-63072 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,476 of 17,805 indexed charts deploy, on 3,751 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,292
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+12 more3.3.7-r1, 3.5.8-r01,439
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm615
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-620
OSV records
ALPINE-CVE-2026-63072DEBIAN-CVE-2026-63072UBUNTU-CVE-2026-63072AZL-97947ECHO-aa38-89d5-f024
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,476 by stars
ChartLatestAffected imagesRadar Score
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,259
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15

Open the chart page →

51,893
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

6,919
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

2,844
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29

Open the chart page →

63,299
redis-chartredis-ha-chartVerified publisher0.1.51 of 2See more

redis-chart redis-ha-chart 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
truebyteinnovationllp/redis:7.4.2-alpine3.21fae12abbc74c
openssl@3.3.7-r0
3.3.7-r1

Open the chart page →

230
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

2,702
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

4,304
kminionredpanda-dataOfficialVerified publisher0.15.21 of 1See more

kminion redpanda-data 0.15.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
redpandadata/kminion:v2.3.0c05fa976428e
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

923
reportportalreportportal-ioOfficialVerified publisher26.8.128 of 15See more

reportportal reportportal-io 26.8.12

8 of the 15 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
openssl@3.0.16-1~deb12u1
no fix listed
library/postgres:18.4a02db8cac496
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/rabbitmq:4.3.4-managementeb5295d08332
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
reportportal/k8s-wait-for:latest06cdf299b397
openssl@3.5.7-r0
3.5.8-r0
reportportal/migrations:5.15.4464468240d7b
openssl@3.5.7-r1
3.5.8-r0
reportportal/service-auto-analyzer:5.15.5c449b93629a5
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
reportportal/service-index:5.15.1b1860ed33071
openssl@3.5.7-r1
3.5.8-r0
reportportal/service-ui:5.15.5aea8747cb639
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

12,236
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
zbalogh/reservation-angular-ui:1.0.95eb19e460b3c
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

6,645
resurfaceresurfaceioVerified publisher3.9.02 of 3See more

resurface resurfaceio 3.9.0

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
jitesoft/kubectl:latest9996dd28914f
openssl@3.5.7-r0
3.5.8-r0
resurfaceio/resurface:3.7.84d5cda2f64109
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29

Open the chart page →

7,516
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
openssl@3.0.11-1~deb12u2
no fix listed
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
openssl@3.0.18-1~deb12u2
no fix listed

Open the chart page →

6,633
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

9,956
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

10,167
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,741
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
openssl@3.0.19-1~deb12u2
no fix listed

Open the chart page →

5,595
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

6,101
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

7,983
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

6,947
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

2,718
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

7,599
postgresromanow-helm-chartsVerified publisher1.7.11 of 1See more

postgres romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,686
routehub-client-hubroutehub-helm1.0.02 of 3See more

routehub-client-hub routehub-helm 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24+esm5
timescale/timescaledb-ha:pg16d7db8f1085a3
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

13,063
rstmdbrstmdb0.2.01 of 1See more

rstmdb rstmdb 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
rstmdb/rstmdb:lateste5187f2aaace
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,097
jellyseerrrtomik-helm-chartsVerified publisher0.0.11 of 1See more

jellyseerr rtomik-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
openssl@3.3.3-r0
3.3.7-r1

Open the chart page →

2,982
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

3,989
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

5,307
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

13,586
kyoorubxkubeVerified publisher0.1.105 of 9See more

kyoo rubxkube 0.1.10

5 of the 9 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/zoriya/kyoo_front:4.7.1d7f76c9c65d9
openssl@3.3.2-r4
3.3.7-r1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

30,698
s3-encryption-gateways3-encryption-gatewayVerified publisher0.11.101 of 1See more

s3-encryption-gateway s3-encryption-gateway 0.11.10

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
cloud37io/s3-encryption-gateway:0.11.10f8ff2092b8af
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

265
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29

Open the chart page →

11,064
devpisb-helm-charts0.3.01 of 1See more

devpi sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

935
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
openssl@3.0.17-1~deb12u3
no fix listed

Open the chart page →

38,628
teamcityscalified-teamcityVerified publisher2026.2.01 of 3See more

teamcity scalified-teamcity 2026.2.0

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,686
sceptresceptreai0.1.125 of 5See more

sceptre sceptreai 0.1.12

5 of the 5 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
maponyacharles/sceptreai:mlflow-0.1.1242d418654ebd
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
maponyacharles/sceptreai:postgresql-0.1.1258881351f309
openssl@3.5.7-r0
3.5.8-r0
maponyacharles/sceptreai:api-0.1.127b37b092130a
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
maponyacharles/sceptreai:seaweedfs-0.1.127c8a525f08e9
openssl@3.5.7-r0
3.5.8-r0
maponyacharles/sceptreai:ui-0.1.127cd0f11c5e55
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,531
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

2,199
seatsurfingseatsurfing0.1.21 of 1See more

seatsurfing seatsurfing 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
seatsurfing/backend:1.119.39952e80048b0
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

550
secrets-store-csi-driver-provider-infisicalsecrets-store-csi-driver-provider-infisicalVerified publisher1.1.41 of 1See more

secrets-store-csi-driver-provider-infisical secrets-store-csi-driver-provider-infisical 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
gidoichi/secrets-store-csi-driver-provider-infisical:v1.1.42dd5322a0610
openssl@3.5.7-r1
3.5.8-r0

Open the chart page →

278
securosecuroVerified publisher0.16.02 of 4See more

securo securo 0.16.0

2 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/redis:8-alpinebecdda6c7f4b
openssl@3.5.7-r0
3.5.8-r0
pgvector/pgvector:pg16ccc6e83d6e35
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

3,566
karakeepself-hosters-by-nightVerified publisher2.5.11 of 1See more

karakeep self-hosters-by-night 2.5.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

5,235
mosquittoself-hosters-by-nightVerified publisher0.5.21 of 1See more

mosquitto self-hosters-by-night 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/eclipse-mosquitto:2.0.22212f89e1eaeb
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
templateself-hosters-by-nightVerified publisher0.7.11 of 2See more

template self-hosters-by-night 0.7.1

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
sentry-k8ssentry-k8sVerified publisher1.4.18 of 11See more

sentry-k8s sentry-k8s 1.4.1

8 of the 11 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
library/nginx:1.31.0-alpine2f07d83bf561
openssl@3.5.6-r0
3.5.8-r0
library/postgres:16f1c3376c26f2
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:6.2.20-alpine77697a75da9f
openssl@3.3.5-r0
3.3.7-r1
ghcr.io/getsentry/relay:26.7.2cd29b88c1d72
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
openssl@3.0.15-1~deb12u1
no fix listed
ghcr.io/getsentry/snuba:26.7.210f8d164109b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

16,905
seq-input-gelfseq-input-gelfVerified publisher0.3.12 of 2See more

seq-input-gelf seq-input-gelf 0.3.1

2 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
datalust/seq-input-gelf:3.0.441-x643de34aed5642
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm5
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

3,568
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
openssl@3.0.16-1~deb12u1
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

11,604
querysiakhooiVerified publisher1.0.01 of 1See more

query siakhooi 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
siakhooi/query:1.0.0f1f4b5b1b870
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,794
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,320
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,320
scaffoldsigstoreVerified publisher0.6.1152 of 15See more

scaffold sigstore 0.6.115

2 of the 15 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
curlimages/curldigest-pinned:8.17.0935d9100e9ba
openssl@3.5.4-r0
3.5.8-r0
library/redisdigest-pinned148bb5411c18
openssl@3.3.3-r0
3.3.7-r1

Open the chart page →

7,849

Container images carrying it

3,751 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/appscode/outboxsyncer:v0.5.0150baab6115d
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/appscode/pgoutbox:v0.0.4a96e06ec5e9f
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/appscode/platform-ui:2.4.0668ee2682eaf
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
1
ghcr.io/appscode/scanner:v0.0.2116907aae5de1
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/appscode/secrets-store-csi-driver-provider-virtual-secrets:v0.2.07afb394f9f97
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/appscode/sidekick:v0.0.16d8d2a3c22ee7
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/appscode/storage-metrics-server:v0.1.09cb4acb742a9
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/appscode/taskqueue:v0.0.36877c958a3c6
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/appscode/trickster:v2.0.0cdbbed831f28
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/appscode/trivydb:0.0.367ffb0309acb
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/appscode/virtual-secrets-server:v0.4.0efa03f4c9551
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/appscode/website:v2026.9.1170d9d1b78d39
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/arch-anes/homer-operator:0.3.404e3b7d1bfa6
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/aserto-dev/topaz:0.32.594c708ecf7dc4
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/ashvinbambhaniya/nexus-tasks-backend:2.0.0f80349eb018b
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/ashvinbambhaniya/nexus-tasks-frontend:2.0.0fcbab3a24880
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
openssl@3.0.18-1~deb12u2
no fix listed
1
ghcr.io/astriaorg/account-monitor:latest4c8b42890035
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
openssl@3.0.14-1~deb12u2
no fix listed
1
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/astriaorg/conductor:1.1.01f97d131b1d1
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/astriaorg/flame:0.1.0c8af1c5aae40
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15
1
ghcr.io/astriaorg/sequencer:latest44f82ee0b24c
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/astriaorg/sequencer-relayer:latest5f6c74993f08
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/atolat/open-cache:latestd6105dd73eb4
openssl@3.3.6-r0
3.3.7-r1
1
ghcr.io/attestkeep/attestkeep-k8s:1.1.110ce4cac41c4
openssl@3.3.7-r0
3.3.7-r1
1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
openssl@3.0.18-1~deb12u2
no fix listed
1
ghcr.io/autobrr/qui:v1.14.110b7945d4f09
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
openssl@3.0.16-1~deb12u1
no fix listed
1
ghcr.io/babykart/gozone:0.18.08e0b24cf071a
openssl@3.3.7-r0
3.3.7-r1
1
ghcr.io/bank-vaults/bank-vaults:v1.33.198b6ea2ed319
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/bank-vaults/vault-secrets-webhook:v1.23.198baf045a1c9
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/base/node-reth:v1.1.18eb6e492fe3c
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
1
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29
1
ghcr.io/bastienwirtz/homer:v25.11.15c3a0fb561e0
openssl@3.3.5-r0
3.3.7-r1
1
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29
1
ghcr.io/benc-uk/kubeview:latest45b64d7c7016
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bensoer/external-secrets-reloader:v0.1.38e31b5a81853
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/bensoer/sibyl:v0.2.06dca4455fde3
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bitmagnet-io/bitmagnet:v0.10b6373349a301
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bitmagnet-io/bitmagnet:v0.10.0cf2c16fac5b5
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/b-it-projects-gmbh/nvme_exporter:lateste70307b193c6
openssl@3.5.0-r0
3.5.8-r0
1
ghcr.io/bitwarden/sm-operator:2.1.0846624161f32
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/bitwarden/web:2026.9.08aa9f4258378
openssl@3.5.7-r0
3.5.8-r0
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.