StackRadar

CVE-2026-63072

High

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,482
of 17,813 indexed, latest versions
Container images
3,812
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-63072 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 3,482 of 17,813 indexed charts deploy, on 3,812 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+114 more1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.24+esm5+4 more2,335
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+12 more3.3.7-r1, 3.5.8-r01,458
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+4 more1.0.2n-1ubuntu5.13+esm620
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-619
OSV records
ALPINE-CVE-2026-63072DEBIAN-CVE-2026-63072UBUNTU-CVE-2026-63072AZL-97947ECHO-aa38-89d5-f024
Also known as
USN-8678-1, USN-8678-2

Charts affected

3,482 by stars
ChartLatestAffected imagesRadar Score
frontend-servicedev-krishan-dhaka-charts1.0.21 of 1See more

frontend-service dev-krishan-dhaka-charts 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
devkrishan001/frontend:latesta0ad60836e6b
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,034
postgresdev-krishan-dhaka-charts1.0.21 of 1See more

postgres dev-krishan-dhaka-charts 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:15-alpinefe0737ba566a
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

494
devnopesdevnopes0.1.81 of 1See more

devnopes devnopes 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
sokushinbutsu/devnopes:latest0bbd90448671
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

463
apachedevops0.1.03 of 4See more

apache devops 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/alpine:328bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
library/mariadb:10.8.30abf60f81588
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29
ghcr.io/codingducksrl/laravel:8.15be52524664c
nodejs@16.18.0-deb-1nodesource1
openssl@3.0.2-0ubuntu1.6
no fix listed
3.0.2-0ubuntu1.29

Open the chart page →

116,089
laraveldevops0.10.33 of 4See more

laravel devops 0.10.3

3 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/alpine:328bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
library/mariadb:10.9.4fbb8456ebdb1
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29
ghcr.io/codingducksrl/laravel:8.15be52524664c
nodejs@16.18.0-deb-1nodesource1
openssl@3.0.2-0ubuntu1.6
no fix listed
3.0.2-0ubuntu1.29

Open the chart page →

115,089
wordpressdevops0.12.02 of 4See more

wordpress devops 0.12.0

2 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/alpine:328bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
library/mariadb:10.8.30abf60f81588
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.29

Open the chart page →

13,066
devops-diplomdevops-diplom-chartVerified publisher0.8.01 of 2See more

devops-diplom devops-diplom-chart 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:13-alpinefb9065b6e3e2
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

2,551
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

9,782
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

13,205
caddy-reverse-proxydevtron0.10.11 of 1See more

caddy-reverse-proxy devtron 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/caddy:latest13ba145cba2f
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

863
calertdevtron0.0.11 of 1See more

calert devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

4,712
devtron-enterprisedevtron48.0.013 of 28See more

devtron-enterprise devtron 48.0.0

13 of the 28 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/dashboard:0d8f6cf4-60e17132-931-39393aa61fffb8ae8
openssl@3.5.7-r0
3.5.8-r0
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/git-sensor:94237c18-950-3941803c7bf249aa1
openssl@3.3.2-r4
3.3.7-r1
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
openssl@3.3.2-r4
3.3.7-r1
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm18
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/kubewatch:09867a9c-419-39288d30a7c640c63
openssl@3.3.2-r4
3.3.7-r1
quay.io/devtron/lens:3b3d6d0e-333-39292e886b8d2b54b
openssl@3.3.2-r4
3.3.7-r1
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssl@3.0.17-1~deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

69,760
devtron-logs-dumpdevtron0.1.01 of 1See more

devtron-logs-dump devtron 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29

Open the chart page →

4,993
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

12,000
migration-incluster-cddevtron0.10.01 of 1See more

migration-incluster-cd devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,961
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

9,782
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

13,205
caddy-reverse-proxydevtron-labs0.10.11 of 1See more

caddy-reverse-proxy devtron-labs 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/caddy:latestdf7f1c2fb114
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

863
calertdevtron-labs0.0.11 of 1See more

calert devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

4,712
devtron-enterprisedevtron-labs48.0.013 of 28See more

devtron-enterprise devtron-labs 48.0.0

13 of the 28 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/dashboard:0d8f6cf4-60e17132-931-39393aa61fffb8ae8
openssl@3.5.7-r0
3.5.8-r0
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/git-sensor:94237c18-950-3941803c7bf249aa1
openssl@3.3.2-r4
3.3.7-r1
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
openssl@3.3.2-r4
3.3.7-r1
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm18
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/kubewatch:09867a9c-419-39288d30a7c640c63
openssl@3.3.2-r4
3.3.7-r1
quay.io/devtron/lens:3b3d6d0e-333-39292e886b8d2b54b
openssl@3.3.2-r4
3.3.7-r1
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssl@3.0.17-1~deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

69,760
devtron-logs-dumpdevtron-labs0.1.01 of 1See more

devtron-logs-dump devtron-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29

Open the chart page →

4,993
devtron-operatordevtron-labs0.23.36 of 11See more

devtron-operator devtron-labs 0.23.3

6 of the 11 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/dashboard:c7b89667-690-39290c63823af3835
openssl@3.5.7-r0
3.5.8-r0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

33,411
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.24+esm5

Open the chart page →

12,000
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,961
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.03 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm10
library/rabbitmq:3-managemente582c0bc7766
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
oscarsotosanchez/weatherservice:v1.0911ec961d10b
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

27,736
rateldgraph25.0.31 of 1See more

ratel dgraph 25.0.3

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dgraph/ratel:v25.0.34cae1ff95027
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,004
dial-admindialVerified publisher0.18.02 of 3See more

dial-admin dial 0.18.0

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
openssl@3.0.16-1~deb12u1
no fix listed
epam/ai-dial-admin-frontend:0.20.021d91ad74755
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,145
difydify1.0.02 of 4See more

dify dify 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
openssl@3.0.15-1~deb12u1
no fix listed
langgenius/dify-sandbox:0.2.009b7e8705673
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

51,732
pagesdipak1.0.02 of 3See more

pages dipak 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.24+esm5
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

20,285
direktivdirektivVerified publisher0.10.02 of 6See more

direktiv direktiv 0.10.0

2 of the 6 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
victoriametrics/victoria-logs:v1.15.0-victorialogsd7435244eb19
openssl@3.3.3-r0
3.3.7-r1
registry.k8s.io/ingress-nginx/controller:v1.12.0e6b8de175acd
openssl@3.3.2-r4
3.3.7-r1

Open the chart page →

3,791
adventurelogdjjudas21Verified publisher0.1.11 of 3See more

adventurelog djjudas21 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

7,692
alertifydjjudas21Verified publisher0.1.01 of 1See more

alertify djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
djjudas21/alertify:0.1.0ba22be670c37
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

2,429
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
openssl@3.0.9-1
no fix listed

Open the chart page →

7,367
ecowitt-exporterdjjudas21Verified publisher2.2.21 of 1See more

ecowitt-exporter djjudas21 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
djjudas21/ecowitt-exporter:2.2.073aab45ef10d
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

1,007
liturgical-colourdjjudas21Verified publisher99.99.991 of 1See more

liturgical-colour djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
djjudas21/liturgical-colour-app:0.7.2954935971d42
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

875
nova-exporterdjjudas21Verified publisher0.1.161 of 1See more

nova-exporter djjudas21 0.1.16

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
djjudas21/nova-exporter:0.0.10e9094580885c
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

1,413
ownclouddjjudas21Verified publisher0.3.233 of 3See more

owncloud djjudas21 0.3.23

3 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.3.2-debian-12-r9320c70dfd914
openssl@3.0.13-1~deb12u1
no fix listed
owncloud/server:10.16.3b3f9efdcd7f7
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.29
valkey/valkey:8.1.481db6d39e1bb
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u2

Open the chart page →

10,292
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.15

Open the chart page →

92,708
spoolmandjjudas21Verified publisher0.1.81 of 1See more

spoolman djjudas21 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.24.042135965c42d
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,907
truecommanddjjudas21Verified publisher0.1.01 of 1See more

truecommand djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ixsystems/truecommand:3.2.019c218455cd2
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

5,389
webtreesdjjudas21Verified publisher3.0.01 of 1See more

webtrees djjudas21 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

6,137
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

14,860
dnation-kubernetes-jsonnet-translatordnationcloud2.0.11 of 1See more

dnation-kubernetes-jsonnet-translator dnationcloud 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

3,872
dnation-kubernetes-monitoringdnationcloud3.0.21 of 1See more

dnation-kubernetes-monitoring dnationcloud 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

3,872
dnation-kubernetes-monitoring-stackdnationcloud4.0.34 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.3

4 of the 17 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
openssl@3.0.14-1~deb12u2
no fix listed
grafana/grafana:13.1.0121a7a9ece6d
openssl@3.5.7-r0
3.5.8-r0
nginxinc/nginx-unprivileged:1.27-alpine65e3e85dbaed
openssl@3.3.3-r0
3.3.7-r1
quay.io/kiwigrid/k8s-sidecar:2.8.1abb55b2165c6
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

23,543
api-postsdniel0.9.11 of 1See more

api-posts dniel 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
dniel/api-posts:master45a667852f2a
openssl@1.1.1-1ubuntu2.1~18.04.4
1.1.1-1ubuntu2.1~18.04.23+esm10

Open the chart page →

9,013
dnsmasq-k8sdnsmasq-k8s1.4.11 of 1See more

dnsmasq-k8s dnsmasq-k8s 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

3,106
docker-authdocker-auth1.14.01 of 1See more

docker-auth docker-auth 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
cesanta/docker_auth:1.14.098e0307e0d2d
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

1,515
documensodocumensoVerified publisher0.0.61 of 2See more

documenso documenso 0.0.6

1 of the 2 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,869
dominodomino-iisasVerified publisher0.3.13 of 3See more

domino domino-iisas 0.3.1

3 of the 3 container images this version deploys carry CVE-2026-63072.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u2
ghcr.io/iisas/domino-frontend:k8s8e53861be292
openssl@3.0.17-1~deb12u2
no fix listed
ghcr.io/iisas/domino-rest:latest3009350bfc11
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

10,511

Container images carrying it

3,812 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15
1
ghcr.io/astriaorg/sequencer:latest44f82ee0b24c
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/astriaorg/sequencer-relayer:latest5f6c74993f08
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/atolat/open-cache:latestd6105dd73eb4
openssl@3.3.6-r0
3.3.7-r1
1
ghcr.io/attestkeep/attestkeep-k8s:1.1.110ce4cac41c4
openssl@3.3.7-r0
3.3.7-r1
1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
openssl@3.0.18-1~deb12u2
no fix listed
1
ghcr.io/autobrr/qui:v1.14.110b7945d4f09
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
openssl@3.0.16-1~deb12u1
no fix listed
1
ghcr.io/babykart/gozone:0.18.08e0b24cf071a
openssl@3.3.7-r0
3.3.7-r1
1
ghcr.io/bank-vaults/bank-vaults:v1.33.198b6ea2ed319
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/bank-vaults/vault-secrets-webhook:v1.23.198baf045a1c9
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/base/node-reth:v1.1.18eb6e492fe3c
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
1
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.29
1
ghcr.io/bastienwirtz/homer:v25.11.15c3a0fb561e0
openssl@3.3.5-r0
3.3.7-r1
1
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29
1
ghcr.io/benc-uk/kubeview:latest45b64d7c7016
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bensoer/external-secrets-reloader:v0.1.38e31b5a81853
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/bensoer/sibyl:v0.2.06dca4455fde3
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/biru-scop/tenzu-front:latest16759fa523f8
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bitmagnet-io/bitmagnet:v0.10b6373349a301
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bitmagnet-io/bitmagnet:v0.10.0cf2c16fac5b5
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/b-it-projects-gmbh/nvme_exporter:lateste70307b193c6
openssl@3.5.0-r0
3.5.8-r0
1
ghcr.io/bitwarden/sm-operator:2.1.0846624161f32
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/bitwarden/web:2026.9.08aa9f4258378
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/blessingnator/keycloak-mcn-backend:2.0.5967470f05472
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/blessingnator/keycloak-mcn-frontend:2.0.1ddd462dbde39
openssl@3.3.6-r0
3.3.7-r1
1
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/bluesky-social/pds:0.4d95725b24dbe
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bnb-chain/bsc:1.6.2fd0e3ec7d960
openssl@3.3.5-r0
3.3.7-r1
1
ghcr.io/booklore-app/booklore:v2.3.1d3d3af34bc2c
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
openssl@3.3.2-r4
3.3.7-r1
1
ghcr.io/bouquet2/copilot-api-docker:v0.7.06b0507a20602
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24+esm5
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
ghcr.io/browsersec/kubebrowse-frontend:chore-improve-backbd6bea5e487c
openssl@3.5.1-r0
3.5.8-r0
1
ghcr.io/bryopsida/openmct:main38b6a50a62b2
openssl@3.3.3-r0
3.3.7-r1
1
ghcr.io/bryopsida/patchwork:mainc01e018bced4
openssl@3.5.0-r0
3.5.8-r0
1
ghcr.io/bryopsida/psa-restricted-patcher:maina53ef16b024a
openssl@3.5.1-r0
3.5.8-r0
1
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
openssl@3.5.0-r0
3.5.8-r0
1
ghcr.io/bryopsida/wireguard:mainab6815bdfe2f
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/bulwarkmail/webmail:1.6.0f0a266506fcf
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/bysamio/casepack-api:0.31.00eb3ad229c2c
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bysamio/casepack-docs:0.8.0443d9850a688
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bysamio/casepack-spa:0.30.0129212faf248
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/caas-team/py-kube-downscaler:26.4.0af05a098b0d2
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/cableship/argocd-source-tracker:0.0.6ff7dd45aa774
openssl@3.3.3-r0
3.3.7-r1
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.