StackRadar

CVE-2026-63073

Critical

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.009
59th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,759
of 17,792 indexed, latest versions
Container images
1,642
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-63073 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 1,759 of 17,792 indexed charts deploy, on 1,642 images.

Affected packageAffected versionsFixed inImages
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,171
openssldeb3.5.1-1, 3.5.1-1+deb13u1, 3.5.4-1~deb13u1, 3.5.4-1~deb13u2+10 more3.5.5-1ubuntu3.4, 3.5.7-1~deb13u2437
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+3 moreno fix listed11
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-63073DEBIAN-CVE-2026-63073UBUNTU-CVE-2026-63073AZL-97950
Also known as
USN-8678-1

Charts affected

1,759 by stars
ChartLatestAffected imagesRadar Score
rpc-snooperethereum-helm-chartsVerified publisher0.0.21 of 1See more

rpc-snooper ethereum-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ethpandaops/rpc-snooper:latestc0b30fcf64bc
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,499
spamoorethereum-helm-chartsVerified publisher1.0.11 of 1See more

spamoor ethereum-helm-charts 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ethpandaops/spamoor:latest5f731b20ec50
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,138
syncoor-serverethereum-helm-chartsVerified publisher0.0.11 of 1See more

syncoor-server ethereum-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/syncoor:master233aa9808fc7
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

961
syncoor-webethereum-helm-chartsVerified publisher0.0.11 of 1See more

syncoor-web ethereum-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/syncoor-web:master60d7c38d6062
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

371
web3signerethereum-helm-chartsVerified publisher1.0.62 of 4See more

web3signer ethereum-helm-charts 1.0.6

2 of the 4 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
consensys/web3signer:latestf146a51a1ba3
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
library/bash:latesta19c811ee9e9
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,041
xatu-cbt-apiethereum-helm-chartsVerified publisher0.0.131 of 1See more

xatu-cbt-api ethereum-helm-charts 0.0.13

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ethpandaops/xatu-cbt-api:latestf7dec2e07091
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,224
static-siteethersphereVerified publisher0.73.11 of 2See more

static-site ethersphere 0.73.1

1 of the 2 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
library/node:latestf5d1cc40abc1
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

6,951
localpatheugen1.3.21 of 1See more

localpath eugen 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.361eba82e9c386
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

521
evcc-kubernetesevcc-kubernetesVerified publisher1.7.61 of 1See more

evcc-kubernetes evcc-kubernetes 1.7.6

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
evcc/evcc:0.315.0327318279998
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

367
eximeebpmseximeebpms-k8sOfficialVerified publisher0.4.01 of 1See more

eximeebpms eximeebpms-k8s 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ghcr.io/eximeebpms/eximeebpms-bpm-platform:run-1.4.00f4a5c0eea07
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
express-ts-app-helm-chartsexpress-ts-app-helm-chartsVerified publisher1.0.01 of 4See more

express-ts-app-helm-charts express-ts-app-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ghcr.io/marcuwynu23/express-typescript-sample:latest9ef671b78ea8
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

5,813
extended-ceph-exporterextended-ceph-exporterVerified publisher1.10.01 of 2See more

extended-ceph-exporter extended-ceph-exporter 1.10.0

1 of the 2 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
galexrt/extended-ceph-exporter:v1.8.05373078a3a08
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

2,926
external-secrets-reloaderexternal-secrets-reloader0.1.01 of 1See more

external-secrets-reloader external-secrets-reloader 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ghcr.io/bensoer/external-secrets-reloader:v0.1.38e31b5a81853
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,032
reverse-geocodingfaas-reverse-geocoding0.3.31 of 1See more

reverse-geocoding faas-reverse-geocoding 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ghcr.io/saidsef/faas-reverse-geocoding:latestca510c40aeee
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
kubebenchfairwinds-incubator1.0.51 of 2See more

kubebench fairwinds-incubator 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
aquasec/kube-bench:v0.15.07a8fa32dce21
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,188
yelbfairwinds-incubator0.1.11 of 5See more

yelb fairwinds-incubator 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,113
fairwinds-insightsfairwinds-stableVerified publisher10.1.107 of 13See more

fairwinds-insights fairwinds-stable 10.1.10

7 of the 13 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.49ccd82364762
openssl@3.5.6-r0
3.5.8-r0
alpine/psql:18.339824ef2b7fc
openssl@3.5.6-r0
3.5.8-r0
rustfs/rustfs:1.0.0-beta.1241fe89380f41
openssl@3.5.7-r0
3.5.8-r0
swaggerapi/swagger-ui:v5.32.143d9316996884
openssl@3.5.7-r0
3.5.8-r0
temporalio/admin-tools:1.31.2dbc5fcd6ee8f
openssl@3.5.7-r0
3.5.8-r0
temporalio/server:1.31.2b5ecdb8282be
openssl@3.5.7-r0
3.5.8-r0
temporalio/ui:2.52.0fc47cd8202c9
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

3,820
farm-observabilityfarm-observabilityOfficialVerified publisher0.27.24 of 18See more

farm-observability farm-observability 0.27.2

4 of the 18 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
grafana/grafana:13.0.1-security-012d1f9ae67c17
openssl@3.5.5-r0
3.5.8-r0
library/memcached:1.6.39-alpinec8503d4491ed
openssl@3.5.4-r0
3.5.8-r0
quay.io/kiwigrid/k8s-sidecar:2.7.3694950d736c8
openssl@3.5.6-r0
3.5.8-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

13,409
fddb-exporterfddb-exporterVerified publisher2.4.31 of 1See more

fddb-exporter fddb-exporter 2.4.3

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ghcr.io/itobey/fddb-exporter:2.4.1a824933e0f87
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

468
quickstartfeatureformVerified publisher0.1.12 of 3See more

quickstart featureform 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/redis:latest298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,575
calckeyfedihost0.1.41 of 4See more

calckey fedihost 0.1.4

1 of the 4 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
data-diode-connector-egressffutopVerified publisher1.0.03 of 3See more

data-diode-connector-egress ffutop 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ffutop/ddc-ph-kafka-egress:latest319d94c8481a
openssl@3.5.4-r0
3.5.8-r0
ffutop/ddc-transport-udp-receive:latest651ca530d787
openssl@3.5.4-r0
3.5.8-r0
timberio/vector:0.51.1-alpine2d16ae87ec39
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

2,035
data-diode-connector-ingressffutopVerified publisher1.0.03 of 3See more

data-diode-connector-ingress ffutop 1.0.0

3 of the 3 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ffutop/ddc-ph-kafka-ingress:latest15832d4f19be
openssl@3.5.4-r0
3.5.8-r0
ffutop/ddc-transport-udp-send:latest4222eb5ee847
openssl@3.5.4-r0
3.5.8-r0
timberio/vector:0.51.1-alpine2d16ae87ec39
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

2,035
firefly-iiifirefly-iii1.10.11 of 1See more

firefly-iii firefly-iii 1.10.1

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

5,107
firefly-iii-stackfirefly-iii0.10.22 of 4See more

firefly-iii-stack firefly-iii 0.10.2

2 of the 4 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2
fireflyiii/data-importer:version-2.2.3ab52bf932546
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

10,396
importerfirefly-iii1.6.01 of 1See more

importer firefly-iii 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
fireflyiii/data-importer:version-2.2.3ab52bf932546
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

4,897
flask-contactsfirst-idror-chart1.0.11 of 3See more

flask-contacts first-idror-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,789
did-helperfiware0.1.221 of 1See more

did-helper fiware 0.1.22

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
quay.io/seamware/did-helper:0.6.0799c5f566952
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

454
fdsc-dashboardfiware0.6.81 of 1See more

fdsc-dashboard fiware 0.6.8

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
quay.io/seamware/fdsc-dashboard:0.6.0f7706c316c5a
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

705
apm-hubflanksourceVerified publisher0.0.471 of 2See more

apm-hub flanksource 0.0.47

1 of the 2 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

6,150
flask-contactsflask-contacts-generic1.0.11 of 3See more

flask-contacts flask-contacts-generic 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,789
fluentd-aggregatorfluentd-aggregatorOfficialVerified publisher1.0.01 of 2See more

fluentd-aggregator fluentd-aggregator 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,765
fluxcd-helm-upgraderfluxcd-helm-upgraderVerified publisher0.7.71 of 1See more

fluxcd-helm-upgrader fluxcd-helm-upgrader 0.7.7

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
kenchrcum/fluxcd-helm-upgrader:0.7.7c326e28a8f5f
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

2,429
flyte-devboxflyte0.1.01 of 13See more

flyte-devbox flyte 0.1.0

1 of the 13 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
rustfs/rustfs:1.0.0-alpha.947d49faa88c04
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

4,678
edge-caiasoftfolio-org0.1.321 of 1See more

edge-caiasoft folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-caiasoft:latestc3cfa89eee2f
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

526
edge-connexionfolio-org0.1.51 of 1See more

edge-connexion folio-org 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-connexion:latestb4863d135524
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,132
edge-dematicfolio-org0.1.331 of 1See more

edge-dematic folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-dematic:latest48c9b1d180d4
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

526
edge-inn-reachfolio-org0.1.41 of 1See more

edge-inn-reach folio-org 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-inn-reach:latestc64e4d9dd3fc
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

526
edge-ncipfolio-org0.1.281 of 1See more

edge-ncip folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-ncip:lateste760dbb81d1a
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

821
edge-oai-pmhfolio-org0.1.311 of 1See more

edge-oai-pmh folio-org 0.1.31

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-oai-pmh:latesteedfcbc29792
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

874
edge-ordersfolio-org0.1.301 of 1See more

edge-orders folio-org 0.1.30

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-orders:latest1ef654ee9f23
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

736
edge-patronfolio-org0.1.281 of 1See more

edge-patron folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-patron:latest682b852e056d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

906
edge-rtacfolio-org0.1.281 of 1See more

edge-rtac folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-rtac:latest15ef73b1abd0
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

1,262
edge-sip2folio-org0.1.281 of 1See more

edge-sip2 folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/edge-sip2:latest86106f20ef51
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

254
mod-authtokenfolio-org0.1.351 of 1See more

mod-authtoken folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/mod-authtoken:latest995a25a33133
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,559
mod-calendarfolio-org0.1.341 of 1See more

mod-calendar folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/mod-calendar:latest22f65982efd7
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

415
mod-circulation-storagefolio-org0.1.351 of 1See more

mod-circulation-storage folio-org 0.1.35

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/mod-circulation-storage:latest6bdddcafbc0f
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

659
mod-configurationfolio-org0.1.341 of 1See more

mod-configuration folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/mod-configuration:latestdd0cdc89670a
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

712
mod-copycatfolio-org0.1.31 of 1See more

mod-copycat folio-org 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/mod-copycat:latest1513fad2b799
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,466
mod-coursesfolio-org0.1.341 of 1See more

mod-courses folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-63073.

Container imageDigestPackageFixed in
folioci/mod-courses:latest68ca414f5596
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,533

Container images carrying it

1,642 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

No deployed image carries CVE-2026-63073.

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.