StackRadar

CVE-2026-63074

Medium

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,790
of 17,813 indexed, latest versions
Container images
3,017
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-63074 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 2,790 of 17,813 indexed charts deploy, on 3,017 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+60 more3.0.2-0ubuntu1.29, 3.0.13-0ubuntu3.15, 3.5.5-1ubuntu3.4, 3.5.7-1~deb13u21,840
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,141
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed17
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-619
OSV records
ALPINE-CVE-2026-63074DEBIAN-CVE-2026-63074UBUNTU-CVE-2026-63074AZL-97944ECHO-8298-2fc4-74d4
Also known as
USN-8678-1

Charts affected

2,790 by stars
ChartLatestAffected imagesRadar Score
dokuopenlit0.1.41 of 3See more

doku openlit 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:latestfa394da808cc
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29

Open the chart page →

1,757
openlit-controlleropenlit0.10.01 of 1See more

openlit-controller openlit 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

1,414
openlit-operatoropenlit0.2.21 of 1See more

openlit-operator openlit 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/openlit/openlit-operator:0.0.2457bb5ada68b
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

862
openobserveopenobserve1.0.14 of 6See more

openobserve openobserve 1.0.1

4 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/nats:2.14.2-alpine952d157e28d5
openssl@3.5.7-r0
3.5.8-r0
natsio/nats-box:0.19.7ffce8bd10338
openssl@3.5.6-r0
3.5.8-r0
natsio/nats-server-config-reloader:0.23.064cb6c858e79
openssl@3.5.5-r0
3.5.8-r0
natsio/prometheus-nats-exporter:0.20.14fbf6dacb847
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

3,083
openpanelopenpanel0.9.01 of 6See more

openpanel openpanel 0.9.0

1 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.29

Open the chart page →

3,486
llm-stackopenproject-helm-chartsVerified publisher1.1.01 of 2See more

llm-stack openproject-helm-charts 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.15

Open the chart page →

2,044
fineractopenshift0.1.11 of 4See more

fineract openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/mariadb:11.4611a2fcc5fa7
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

7,905
kubedb-certifiedopenshift2026.7.107 of 8See more

kubedb-certified openshift 2026.7.10

7 of the 8 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/appscode/petset:v0.1.093fa0daf603c
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/appscode/sidekick:v0.0.15d1036b07e348
openssl@3.5.7-r0
3.5.8-r0
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,502
kubestash-certifiedopenshift2026.7.101 of 2See more

kubestash-certified openshift 2026.7.10

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

1,105
mattermost-team-editionopenshift6.6.831 of 4See more

mattermost-team-edition openshift 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

4,131
n8nopenshift1.18.01 of 1See more

n8n openshift 1.18.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
n8nio/n8n:2.36.714c4285bc303
openssl@3.5.7-r1
3.5.8-r0

Open the chart page →

1,058
voyager-gatewayopenshift2026.1.151 of 2See more

voyager-gateway openshift 2026.1.15

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.1.013fd0cccafe8
openssl@3.0.18-1~deb12u1
no fix listed

Open the chart page →

2,692
sohaopensohaVerified publisher0.1.91 of 2See more

soha opensoha 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

1,820
terminalsopen-webui0.7.02 of 2See more

terminals open-webui 0.7.0

2 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/open-webui/terminals:latest5d2fd44366a4
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

2,102
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
nodejs@8.10.0~dfsg-2ubuntu0.4
no fix listed

Open the chart page →

102,109
kubernetes-syncopslevelVerified publisher0.8.01 of 1See more

kubernetes-sync opslevel 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
public.ecr.aws/opslevel/kubectl-opslevel:v2024.9.571697b5ff713
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

1,756
hiveopstty0.1.92 of 4See more

hive opstty 0.1.9

2 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
no fix listed
library/postgres:17-alpine18cfe3ef5e68
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

4,737
grrosdfir-infrastructureVerified publisher1.0.32 of 5See more

grr osdfir-infrastructure 1.0.3

2 of the 5 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/mariadb:11.3.2e101f9db3191
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

11,062
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.027 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

27 of the 40 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
bitnamilegacy/git:latest4b08d0c5af8d
openssl@3.0.16-1~deb12u1
no fix listed
chromadb/chroma:1.5.7fc8dc8e11fb2
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2
library/mariadb:11.3.2e101f9db3191
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.29
library/postgres:17.5-alpine6567bca8d7bc
openssl@3.5.1-r0
3.5.8-r0
yetiplatform/yeti:2.9.09bcbe2650a14
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
yetiplatform/yeti-frontend:2.9.0873ef15d267b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
openssl@3.0.13-1~deb12u1
no fix listed
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
openssl@3.0.18-1~deb12u2
no fix listed
ghcr.io/openrelik/openrelik-server:latestce1132261523
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/openrelik/openrelik-ui:latest7f91594d5eb3
openssl@3.5.5-r0
3.5.8-r0
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15

Open the chart page →

203,308
timesketchosdfir-infrastructureVerified publisher1.0.81 of 6See more

timesketch osdfir-infrastructure 1.0.8

1 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
alpine/git:latest6f3b5029566d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

1,843
turbiniaosdfir-infrastructureVerified publisher1.2.01 of 5See more

turbinia osdfir-infrastructure 1.2.0

1 of the 5 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
yetiosdfir-infrastructureVerified publisher1.0.51 of 4See more

yeti osdfir-infrastructure 1.0.5

1 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
yetiplatform/yeti-frontend:latest709064278c7e
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

6,789
fluent-bitot-container-kit0.0.31 of 2See more

fluent-bit ot-container-kit 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

929
loki-standaloneot-container-kit1.0.23 of 5See more

loki-standalone ot-container-kit 1.0.2

3 of the 5 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
openssl@3.5.6-r0
3.5.8-r0
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,667
vm-standaloneot-container-kit0.0.42 of 6See more

vm-standalone ot-container-kit 0.0.4

2 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
quay.io/opstree/grafana:12.4.3b61c1ed2f015
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,506
outscale-s3-exploreroutscale-s3-explorer0.1.41 of 1See more

outscale-s3-explorer outscale-s3-explorer 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/solucteam/outscale-s3-explorer:v1.0.09665c3e71889
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

1,816
automatap2p-avs0.1.01 of 2See more

automata p2p-avs 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.29

Open the chart page →

3,695
avap2p-avs0.1.01 of 1See more

ava p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
avaprotocol/ap-avs:1.2.0c430ea5c37d6
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

3,358
k3p2p-avs0.1.51 of 2See more

k3 p2p-avs 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.29

Open the chart page →

2,364
mishtip2p-avs0.1.01 of 2See more

mishti p2p-avs 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.29

Open the chart page →

4,078
radiusp2p-avs0.1.01 of 1See more

radius p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
theradius/loggia:0.463ba348546ec
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

12,479
ungatep2p-avs0.1.03 of 3See more

ungate p2p-avs 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
openssl@3.0.13-1~deb12u1
no fix listed
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
openssl@3.0.13-1~deb12u1
no fix listed
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.29

Open the chart page →

27,713
p4p40.1.02 of 7See more

p4 p4 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/rabbitmq:3.11-managementc3f70098e01d
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.29
mastercloudapps/planner:v1.2340a950b311b2
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.29

Open the chart page →

27,870
pacmanpacman-mhVerified publisher0.1.282 of 2See more

pacman pacman-mh 0.1.28

2 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/mongo:7.0.28-jammy88785f6f665a
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.29
ghcr.io/michaelhaigh/pacman:latestb0931b1f085d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

3,626
radarr-testpanzer1119Verified publisher0.1.21 of 2See more

radarr-test panzer1119 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/radarr:6.0.4c8a55bd83672
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,283
paperclippaperclip-helmVerified publisher0.1.01 of 3See more

paperclip paperclip-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

494
parcaparca-rr0.1.01 of 2See more

parca parca-rr 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.24.23776500fde82
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

2,405
parcial-1parcial-1-chart1.0.03 of 5See more

parcial-1 parcial-1-chart 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
esteban1930/backend-1:1.31.01ebe075675de
openssl@3.0.17-1~deb12u2
no fix listed
esteban1930/frontend-1:1.8.0f9078279632c
openssl@3.5.1-r0
3.5.8-r0
registry.k8s.io/ingress-nginx/controller:v1.13.137e489b22ac7
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

3,887
istio-operatorparticuleio1.7.01 of 1See more

istio-operator particuleio 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
gcr.io/istio-testing/operator:latest8d4576f7b98f
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.15

Open the chart page →

4,196
cloudflaredpascaliskeVerified publisher3.0.01 of 1See more

cloudflared pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/crazy-max/cloudflared:2025.9.19b4e856d18f6
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

2,071
ctfdpascaliskeVerified publisher2.0.01 of 1See more

ctfd pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
openssl@3.0.18-1~deb12u2
no fix listed

Open the chart page →

2,423
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

4,877
linkdingpascaliskeVerified publisher3.0.01 of 1See more

linkding pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

3,917
pairdroppascaliskeVerified publisher2.0.01 of 1See more

pairdrop pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/pairdrop:version-v1.11.23279d2d986c0
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

666
vaultwardenpascaliskeVerified publisher2.0.01 of 1See more

vaultwarden pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/dani-garcia/vaultwarden:1.35.2d89a6d21e361
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

3,455
minecraftpaul1365972-mc3.0.11 of 1See more

minecraft paul1365972-mc 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
itzg/minecraft-server:latest8672e335dbef
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

4,390
stk-fluent-bit-loki-s3paxtecnologia0.2.13 of 6See more

stk-fluent-bit-loki-s3 paxtecnologia 0.2.1

3 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/memcached:1.6.39-alpinec8503d4491ed
openssl@3.5.4-r0
3.5.8-r0
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
openssl@3.5.6-r0
3.5.8-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.8-r0

Open the chart page →

3,767
matomopetbattle11.0.12 of 2See more

matomo petbattle 11.0.1

2 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

11,208
pet-battle-nsffpetbattle0.0.21 of 4See more

pet-battle-nsff petbattle 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
tensorflow/serving:latest8a208c232297
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.29

Open the chart page →

3,887
clickhousepetersandor14.3.21 of 1See more

clickhouse petersandor 14.3.2

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.3.2.398745843b17f9
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29

Open the chart page →

2,243

Container images carrying it

3,017 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.15
1
ghcr.io/home-operations/prowlarr:2.3.01a8a4b11972b
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/home-operations/prowlarr:2.4.0b7da6e9defbe
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/home-operations/qbittorrent:5.2.224f2d793cb7f
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/home-operations/qbittorrent:5.2.34fcf15b7f265
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/home-operations/radarr:6.2.1a566e7d364b9
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/home-operations/radarr:6.4.4.10685be53998a2d39
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/home-operations/radarr:6.4.4:6.4.4.10684dc66c010c5d9
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/home-operations/sonarr:4.0.171989718e9fce
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/hotio/qbittorrent:release-5.2.007198d49e5b4
openssl@3.5.6-r0
3.5.8-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
openssl@3.0.18-1~deb12u2
no fix listed
1
ghcr.io/huseyinbabal/kubetag:lateste161eddc59a0
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/icegatetech/icegate-ingest:0.1.1bae3c441894a
openssl@3.0.19-1~deb12u2
no fix listed
1
ghcr.io/icegatetech/icegate-maintain:0.1.193e85b2b76ee
openssl@3.0.19-1~deb12u2
no fix listed
1
ghcr.io/icegatetech/icegate-query:0.1.17542b4e7fff2
openssl@3.0.19-1~deb12u2
no fix listed
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/iisas/domino-rest:latest3009350bfc11
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u2
1
ghcr.io/innago-property-management/innago-vault-k8s-role-operator:2.0.0ed1c3fd04057
openssl@3.5.4-r0
3.5.8-r0
1
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29
1
ghcr.io/interplex-ai/interplex:v1.1.041b0dd0d55b2
openssl@3.5.0-r0
3.5.8-r0
1
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
openssl@3.0.20-1~deb12u1
no fix listed
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
1
ghcr.io/itobey/fddb-exporter:2.4.1a824933e0f87
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/itobey/playlist-mirror:1.0.0601082677a46
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/ivanjosipovic/alertmanager-receiver-azdo/alertmanager-receiver-azdo:1.0.108731943808ee7
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
openssl@3.0.16-1~deb12u1
no fix listed
1
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
openssl@3.5.1-r0
3.5.8-r0
1
ghcr.io/jeffvli/feishin:1.11.01eed97d6272d
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u2
1
ghcr.io/jensholdgaard/ourios:latest3d87d932391d
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/jeremylong/open-vulnerability-data-mirror:v9.0.49a69aa14dc3e
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/jeremylvln/shulker-operator:0.13.027c55706c126
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.15
1
ghcr.io/jlclx/runtimeclass-controller:latestb3a87f92a963
openssl@3.0.14-1~deb12u2
no fix listed
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/jordan-dalby/bytestash:1.5.12eb4f736b8cd4
openssl@3.5.7-r0
3.5.8-r0
1
ghcr.io/jossware/node-provider-labeler:v0.8.0f80e85291439
openssl@3.0.13-1~deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.