StackRadar

CVE-2026-63074

Medium

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,867
of 17,805 indexed, latest versions
Container images
3,074
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-63074 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 2,867 of 17,805 indexed charts deploy, on 3,074 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+60 more3.0.2-0ubuntu1.29, 3.0.13-0ubuntu3.15, 3.5.5-1ubuntu3.4, 3.5.7-1~deb13u21,866
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,171
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed17
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-620
OSV records
ALPINE-CVE-2026-63074DEBIAN-CVE-2026-63074UBUNTU-CVE-2026-63074AZL-97944ECHO-8298-2fc4-74d4
Also known as
USN-8678-1

Charts affected

2,867 by stars
ChartLatestAffected imagesRadar Score
octant-uioctant-ui0.0.1-testing1 of 1See more

octant-ui octant-ui 0.0.1-testing

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/mydecisive/octant-ui:0.0.1-testing61e4066b22fb
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,106
mockoidcoidcmockVerified publisher0.0.11 of 1See more

mockoidc oidcmock 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
marcoimme/oidcmock:latestb6035c0721a8
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,367
ojp-serverojp0.1.51 of 1See more

ojp-server ojp 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
rrobetti/ojp:0.1.0-beta1141bd88232b
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15

Open the chart page →

2,662
automx2oleds-helm-chartsVerified publisher1.0.51 of 1See more

automx2 oleds-helm-charts 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
oled01/automx2:2025.1.105d3e398e675
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

5,391
cmsmsoleds-helm-chartsVerified publisher0.1.61 of 1See more

cmsms oleds-helm-charts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.7-debian-12-r290dc6acb7b2e
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

2,903
db-backupoleds-helm-chartsVerified publisher0.1.01 of 1See more

db-backup oleds-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
oled01/db-backup:0.1.06302fd2b5333
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

8,156
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.29

Open the chart page →

9,312
mailpitoli-the-devVerified publisher1.0.11 of 1See more

mailpit oli-the-dev 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
axllent/mailpit:v1.31.0c96991d9bef7
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

165
nocodbone-acre-fundVerified publisher0.4.61 of 3See more

nocodb one-acre-fund 0.4.6

1 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,242
oafpassone-acre-fundVerified publisher0.1.32 of 2See more

oafpass one-acre-fund 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
jhaals/yopass:14.9.0934e4f2c016f
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
library/memcached:1.6-alpinec29847751abb
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

602
cron-jobonechart-slVerified publisher0.73.71 of 1See more

cron-job onechart-sl 0.73.7

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/debian:stable-slim04634311a8d5
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,006
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

6,190
ontoserverontoserverVerified publisher0.5.21 of 2See more

ontoserver ontoserver 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,688
onyx-stackonyx0.3.11 of 12See more

onyx-stack onyx 0.3.1

1 of the 12 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
onyxdotapp/onyx-backend:latest473fdffe4e67
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

6,751
oom-traceroom-tracerVerified publisher0.1.01 of 1See more

oom-tracer oom-tracer 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/eminaktas/oom-tracer:v0.1.0c90ca8389c87
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

1,126
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
openssl@3.0.9-1
no fix listed

Open the chart page →

9,730
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

5,681
jobopen-charts2.0.01 of 1See more

job open-charts 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4

Open the chart page →

761
comacopencord1.0.01 of 9See more

comac opencord 1.0.0

1 of the 9 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
omecproject/onos-progran:1.0.05715e5648aa0
nodejs@8.9.4-1nodesource1
no fix listed

Open the chart page →

264,064
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
nodejs@8.9.4-1nodesource1
no fix listed

Open the chart page →

98,727
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

11,118
opencost-lensopencost-lens1.0.01 of 2See more

opencost-lens opencost-lens 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-ui:1.118.0571f87e528ea
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,114
kafka-connectoropenfaas0.7.151 of 1See more

kafka-connector openfaas 0.7.15

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/kafka-connector:0.7.160e58eac0e2f7
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,165
pro-builderopenfaas0.6.132 of 2See more

pro-builder openfaas 0.6.13

2 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
moby/buildkit:v0.32.2-rootless504731e577c2
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/openfaasltd/pro-builder:0.6.06c17297f9098
openssl@3.5.0-r0
3.5.8-r0

Open the chart page →

2,755
queue-workeropenfaas0.2.341 of 1See more

queue-worker openfaas 0.2.34

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/openfaasltd/jetstream-queue-worker:0.5.10e9245a0bca88
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

573
dokuopenlit0.1.41 of 3See more

doku openlit 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:latestfa394da808cc
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29

Open the chart page →

1,757
openlit-controlleropenlit0.10.01 of 1See more

openlit-controller openlit 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,414
openlit-operatoropenlit0.2.21 of 1See more

openlit-operator openlit 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-operator:0.0.2457bb5ada68b
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

862
openobserveopenobserve1.0.14 of 6See more

openobserve openobserve 1.0.1

4 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/nats:2.14.2-alpine952d157e28d5
openssl@3.5.7-r0
3.5.8-r0
natsio/nats-box:0.19.7ffce8bd10338
openssl@3.5.6-r0
3.5.8-r0
natsio/nats-server-config-reloader:0.23.064cb6c858e79
openssl@3.5.5-r0
3.5.8-r0
natsio/prometheus-nats-exporter:0.20.14fbf6dacb847
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

3,083
openpanelopenpanel0.9.01 of 6See more

openpanel openpanel 0.9.0

1 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.29

Open the chart page →

3,486
llm-stackopenproject-helm-chartsVerified publisher1.1.01 of 2See more

llm-stack openproject-helm-charts 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.15

Open the chart page →

2,044
fineractopenshift0.1.11 of 4See more

fineract openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/mariadb:11.4611a2fcc5fa7
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

7,905
kubedb-certifiedopenshift2026.7.107 of 8See more

kubedb-certified openshift 2026.7.10

7 of the 8 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/appscode/petset:v0.1.093fa0daf603c
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/appscode/sidekick:v0.0.15d1036b07e348
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,502
kubestash-certifiedopenshift2026.7.101 of 2See more

kubestash-certified openshift 2026.7.10

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

1,105
mattermost-team-editionopenshift6.6.831 of 4See more

mattermost-team-edition openshift 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

4,131
n8nopenshift1.18.01 of 1See more

n8n openshift 1.18.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
n8nio/n8n:2.36.714c4285bc303
openssl@3.5.7-r1
3.5.8-r0

Open the chart page →

1,058
voyager-gatewayopenshift2026.1.151 of 2See more

voyager-gateway openshift 2026.1.15

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.1.013fd0cccafe8
openssl@3.0.18-1~deb12u1
no fix listed

Open the chart page →

2,692
sohaopensohaVerified publisher0.1.91 of 2See more

soha opensoha 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,820
terminalsopen-webui0.7.02 of 2See more

terminals open-webui 0.7.0

2 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/open-webui/terminals:latest5d2fd44366a4
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,102
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
nodejs@8.10.0~dfsg-2ubuntu0.4
no fix listed

Open the chart page →

102,109
kubernetes-syncopslevelVerified publisher0.8.01 of 1See more

kubernetes-sync opslevel 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
public.ecr.aws/opslevel/kubectl-opslevel:v2024.9.571697b5ff713
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

1,756
hiveopstty0.1.92 of 4See more

hive opstty 0.1.9

2 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
no fix listed
library/postgres:17-alpine18cfe3ef5e68
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,737
grrosdfir-infrastructureVerified publisher1.0.32 of 5See more

grr osdfir-infrastructure 1.0.3

2 of the 5 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/mariadb:11.3.2e101f9db3191
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

11,062
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.027 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

27 of the 40 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
bitnamilegacy/git:latest4b08d0c5af8d
openssl@3.0.16-1~deb12u1
no fix listed
chromadb/chroma:1.5.7fc8dc8e11fb2
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2
library/mariadb:11.3.2e101f9db3191
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
library/postgres:17.5-alpine6567bca8d7bc
openssl@3.5.1-r0
3.5.8-r0
yetiplatform/yeti:2.9.09bcbe2650a14
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
yetiplatform/yeti-frontend:2.9.0873ef15d267b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
openssl@3.0.13-1~deb12u1
no fix listed
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
openssl@3.0.18-1~deb12u2
no fix listed
ghcr.io/openrelik/openrelik-server:latestce1132261523
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/openrelik/openrelik-ui:latest7f91594d5eb3
openssl@3.5.5-r0
3.5.8-r0
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15

Open the chart page →

203,308
timesketchosdfir-infrastructureVerified publisher1.0.81 of 6See more

timesketch osdfir-infrastructure 1.0.8

1 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
alpine/git:latest6f3b5029566d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

1,843
turbiniaosdfir-infrastructureVerified publisher1.2.01 of 5See more

turbinia osdfir-infrastructure 1.2.0

1 of the 5 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
yetiosdfir-infrastructureVerified publisher1.0.51 of 4See more

yeti osdfir-infrastructure 1.0.5

1 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
yetiplatform/yeti-frontend:latest709064278c7e
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

6,789
fluent-bitot-container-kit0.0.31 of 2See more

fluent-bit ot-container-kit 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

929
loki-standaloneot-container-kit1.0.23 of 5See more

loki-standalone ot-container-kit 1.0.2

3 of the 5 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
openssl@3.5.6-r0
3.5.8-r0
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,667
vm-standaloneot-container-kit0.0.42 of 6See more

vm-standalone ot-container-kit 0.0.4

2 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
quay.io/opstree/grafana:12.4.3b61c1ed2f015
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,506

Container images carrying it

3,074 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/b-it-projects-gmbh/nvme_exporter:lateste70307b193c6
openssl@3.5.0-r0
3.5.8-r0
1
ghcr.io/bitwarden/sm-operator:2.1.0846624161f32
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/bitwarden/web:2026.9.08aa9f4258378
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/blessingnator/keycloak-mcn-backend:2.0.5967470f05472
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/bluesky-social/pds:0.4d95725b24dbe
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/booklore-app/booklore:v2.3.1d3d3af34bc2c
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bouquet2/copilot-api-docker:v0.7.06b0507a20602
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.15
1
ghcr.io/browsersec/kubebrowse-frontend:chore-improve-backbd6bea5e487c
openssl@3.5.1-r0
3.5.8-r0
1
ghcr.io/bryopsida/patchwork:mainc01e018bced4
openssl@3.5.0-r0
3.5.8-r0
1
ghcr.io/bryopsida/psa-restricted-patcher:maina53ef16b024a
openssl@3.5.1-r0
3.5.8-r0
1
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
openssl@3.5.0-r0
3.5.8-r0
1
ghcr.io/bryopsida/wireguard:mainab6815bdfe2f
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/bulwarkmail/webmail:1.6.0f0a266506fcf
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/bysamio/casepack-api:0.31.00eb3ad229c2c
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bysamio/casepack-docs:0.8.0443d9850a688
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/bysamio/casepack-spa:0.30.0129212faf248
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/caas-team/py-kube-downscaler:26.4.0af05a098b0d2
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/calesthio/crucix:latest67c5244b6acf
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/cameri/nostream:main8726533b9e69
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29
1
ghcr.io/caninehq/canine:latesta058034ca006
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/celestiaorg/celestia-app:v6.1.0-rc0a604aefa3fae
openssl@3.5.1-r0
3.5.8-r0
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.0e7f9e8f1d565
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/chgl/fhir-server-exporter:v3.0.18b7d58a342e94
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
1
ghcr.io/chgl/magnifhir:v1.5.213f121613edd
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
1
ghcr.io/chroma-core/chroma:1.5.3cfd193653bd6
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/chronicleprotocol/ghost:0.78.5951d71162065
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/chronicleprotocol/spectre:0.68.34e872bc016e8
openssl@3.0.17-1~deb12u3
no fix listed
1
ghcr.io/chronicleprotocol/spire:0.68.379df4fb20322
openssl@3.0.17-1~deb12u3
no fix listed
1
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/cjmalloy/jasper-ui:v1.3.623246dc2160efe
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/cloudprober/cloudprober:v0.14.540c6d960ae4f
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/cloudquery/cloudquery:6.40.040b804fce7f9
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/cloudscript-technology/dumpscript:v0.0.42-alpine-edgefce5b6fd161c
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/cloudscript-technology/k8s-monitoring-app:v0.0.25cab66a6b3574
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/cloudtty/cloudshell:v0.8.1023e8d178e02c
openssl@3.5.4-r0
3.5.8-r0
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.