StackRadar

CVE-2026-63074

Medium

Advisory

Published 25 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
41st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,867
of 17,787 indexed, latest versions
Container images
3,109
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-63074 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 2,867 of 17,787 indexed charts deploy, on 3,109 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+60 more3.0.2-0ubuntu1.29, 3.0.13-0ubuntu3.15, 3.5.5-1ubuntu3.4, 3.5.7-1~deb13u21,880
opensslapk3.5.0-r0, 3.5.1-r0, 3.5.2-r0, 3.5.4-r0+4 more3.5.8-r01,195
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+3 moreno fix listed11
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-623
OSV records
ALPINE-CVE-2026-63074DEBIAN-CVE-2026-63074UBUNTU-CVE-2026-63074AZL-97944ECHO-8298-2fc4-74d4
Also known as
USN-8678-1

Charts affected

2,867 by stars
ChartLatestAffected imagesRadar Score
appwriteappwrite-helmVerified publisher1.3.22 of 8See more

appwrite appwrite-helm 1.3.2

2 of the 8 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
openssl@3.5.5-r0
3.5.8-r0
clamav/clamav:1.0dd0d9cc746af
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

9,847
arcadearcadeVerified publisher1.10.12 of 10See more

arcade arcade 1.10.1

2 of the 10 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/postgres:17-alpine18cfe3ef5e68
openssl@3.5.7-r0
3.5.8-r0
library/redis:8-alpinebecdda6c7f4b
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

991
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
openssl@3.5.1-1
3.5.7-1~deb13u2

Open the chart page →

7,521
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

7,338
argonix-apiargonix0.2.31 of 4See more

argonix-api argonix 0.2.3

1 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/argonix-io/argonix-api-frontend:1.0.0d041bbf2814f
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

4,819
arlas-aiasarlas-stackVerified publisher28.8.012 of 22See more

arlas-aias arlas-stack 28.8.0

12 of the 22 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
openssl@3.0.15-1~deb12u1
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
openssl@3.0.17-1~deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
openssl@3.0.16-1~deb12u1
no fix listed
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
openssl@3.0.16-1~deb12u1
no fix listed
gisaia/arlas-wui:28.0.3b83b3e067173
openssl@3.5.7-r0
3.5.8-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
openssl@3.5.7-r0
3.5.8-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
openssl@3.5.6-r0
3.5.8-r0
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
openssl@3.0.16-1~deb12u1
no fix listed

Open the chart page →

40,411
arlas-uisarlas-stackVerified publisher28.8.03 of 4See more

arlas-uis arlas-stack 28.8.0

3 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
gisaia/arlas-wui:28.0.3b83b3e067173
openssl@3.5.7-r0
3.5.8-r0
gisaia/arlas-wui-builder:28.0.1a35977a5bb7d
openssl@3.5.7-r0
3.5.8-r0
gisaia/arlas-wui-hub:28.0.21a3cc43d822f
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

2,987
assemblylineassemblylineVerified publisher7.4.196 of 12See more

assemblyline assemblyline 7.4.19

6 of the 12 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
cccs/assemblyline-core:4.7.4.stable19c914f21a41d7
openssl@3.0.20-1~deb12u2
no fix listed
cccs/assemblyline-rust:4.7.4.stable19c2f9619d9bcd
openssl@3.0.20-1~deb12u2
no fix listed
cccs/assemblyline-socketio:4.7.4.stable19caf40394bd17
openssl@3.0.20-1~deb12u2
no fix listed
cccs/assemblyline-ui:4.7.4.stable190426ed7884a2
openssl@3.0.20-1~deb12u2
no fix listed
cccs/assemblyline-ui-frontend:4.7.4.stable198e345e3cc4a3
openssl@3.5.7-r0
3.5.8-r0
library/redis:latest298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

12,092
dltkvassist-iot-data-integrity-verification0.2.01 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

1 of the 9 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.29

Open the chart page →

77,821
dltflassist-iot-dlt-based-fl0.2.01 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

1 of the 9 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.29

Open the chart page →

77,821
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

12,799
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

10,101
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29

Open the chart page →

18,331
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

8,042
smartorchestratorassist-iot-smart-orchestrator4.0.04 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

4 of the 14 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
openssl@3.0.11-1~deb12u2
no fix listed
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
openssl@3.0.11-1~deb12u2
no fix listed
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
openssl@3.0.9-1
no fix listed
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

42,460
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
bluenviron/mediamtx:latest-ffmpeg9d148b5f2990
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

13,986
account-monitorastria0.0.11 of 1See more

account-monitor astria 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/account-monitor:latest4c8b42890035
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

1,870
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.29
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

31,807
auctioneerastria0.0.21 of 1See more

auctioneer astria 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

2,079
celestia-localastria9.0.01 of 2See more

celestia-local astria 9.0.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/celestiaorg/celestia-app:v6.1.0-rc0a604aefa3fae
openssl@3.5.1-r0
3.5.8-r0

Open the chart page →

3,281
evm-bridge-withdrawerastria1.0.61 of 1See more

evm-bridge-withdrawer astria 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

2,061
evm-rollupastria4.1.02 of 2See more

evm-rollup astria 4.1.0

2 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
openssl@3.5.0-r0
3.5.8-r0
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

3,921
evm-stackastria5.0.32 of 2See more

evm-stack astria 5.0.3

2 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astria-geth:latest4249e403225a
openssl@3.5.0-r0
3.5.8-r0
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

3,921
flame-rollupastria0.1.31 of 2See more

flame-rollup astria 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/conductor:1.1.01f97d131b1d1
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

3,587
graph-nodeastria0.2.22 of 3See more

graph-node astria 0.2.2

2 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
graphprotocol/graph-node:latestb0436347fb24
openssl@3.0.20-1~deb12u2
no fix listed
library/postgres:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,394
hermesastria0.7.11 of 1See more

hermes astria 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.15

Open the chart page →

1,991
hyperlane-agentsastria0.1.41 of 2See more

hyperlane-agents astria 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.29

Open the chart page →

2,537
sequencerastria4.0.01 of 3See more

sequencer astria 4.0.0

1 of the 3 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/sequencer:latest44f82ee0b24c
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

6,239
sequencer-relayerastria2.0.01 of 1See more

sequencer-relayer astria 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/sequencer-relayer:latest5f6c74993f08
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

1,870
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

8,555
auth0-operatorauth0-operator1.4.121 of 1See more

auth0-operator auth0-operator 1.4.12

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/alethic/auth0-operator-image:1.4.122468990a8521
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15

Open the chart page →

733
autopushautopushVerified publisher0.0.492 of 4See more

autopush autopush 0.0.49

2 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/wrenix/autopush-rs/autoconnect:1.84.285f93ced88b2
openssl@3.0.20-1~deb12u2
no fix listed
ghcr.io/wrenix/autopush-rs/autoendpoint:1.84.2d95e9a124eed
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,822
istio-discoveryaveshaVerified publisher1.16.01 of 1See more

istio-discovery avesha 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
istio/pilot:1.16.0ac0284d75ec9
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.29

Open the chart page →

6,948
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

5,291
nas-appsawesomeVerified publisher2.0.01 of 8See more

nas-apps awesome 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
wettyoss/wetty:latest7423b3d40ba2
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

7,166
appmesh-prometheusaws1.0.31 of 2See more

appmesh-prometheus aws 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/alpine:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

2,939
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
openssl@3.0.15-1~deb12u1
no fix listed
kuzwolka/aws9:news3e8880fbbb96
openssl@3.0.15-1~deb12u1
no fix listed
kuzwolka/aws9:blog4a7707410bf1
openssl@3.0.15-1~deb12u1
no fix listed
kuzwolka/aws9:shop84a9d9766345
openssl@3.0.15-1~deb12u1
no fix listed

Open the chart page →

16,920
aws-web-service-proxifiedaws-web-service-proxified1.8.01 of 2See more

aws-web-service-proxified aws-web-service-proxified 1.8.0

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/httpd:latest979c38c2228d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

3,021
axosyslogaxosyslogVerified publisher0.21.01 of 1See more

axosyslog axosyslog 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/axoflow/axosyslog:4.27.00379598e9ad2
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

394
azp-agentazp-agent1.2.01 of 1See more

azp-agent azp-agent 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
cheveo/azp-agent:1.0.282240f890884
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29

Open the chart page →

3,308
kubernetes-providerazureappconfiguration-kubernetesprovider2.6.71 of 1See more

kubernetes-provider azureappconfiguration-kubernetesprovider 2.6.7

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-app-configuration/kubernetes-provider:2.6.7da4db80de17e
openssl@3.3.7-4.azl3
3.3.7-6

Open the chart page →

141
azurefile-csi-driverazurefile-csi-driverVerified publisher1.35.76 of 7See more

azurefile-csi-driver azurefile-csi-driver 1.35.7

6 of the 7 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/azurefile-csi:v1.35.76e43ba0bd009
openssl@3.3.7-4.azl3
3.3.7-6
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-node-driver-registrar:v2.17.0b767078c36e0
openssl@3.3.7-4.azl3
3.3.7-6
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v6.3.09915a2058ad6
openssl@3.3.7-4.azl3
3.3.7-6
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v2.2.04bfe19fe8919
openssl@3.3.7-4.azl3
3.3.7-6
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-snapshotter:v8.5.08b3ce8339944
openssl@3.3.7-4.azl3
3.3.7-6
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.19.0bd19535678a8
openssl@3.3.7-4.azl3
3.3.7-6

Open the chart page →

1,112
azure-voteazure-sample0.1.11 of 2See more

azure-vote azure-sample 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/redis:latest298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2

Open the chart page →

5,238
ragflowbaboulinet0.1.11 of 5See more

ragflow baboulinet 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
infiniflow/infinity:v0.7.0992c87a68612
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.29

Open the chart page →

5,860
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

2,750
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

6,310
audiobookshelfbdclark-helm-chartsVerified publisher0.1.41 of 1See more

audiobookshelf bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
openssl@3.5.6-r0
3.5.8-r0

Open the chart page →

1,722
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u2

Open the chart page →

4,042
mosquittobdclark-helm-chartsVerified publisher0.6.11 of 1See more

mosquitto bdclark-helm-charts 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
library/eclipse-mosquitto:2.0.22212f89e1eaeb
openssl@3.5.7-r0
3.5.8-r0

Open the chart page →

149
qbittorrent-vpnbdclark-helm-chartsVerified publisher0.7.61 of 2See more

qbittorrent-vpn bdclark-helm-charts 0.7.6

1 of the 2 container images this version deploys carry CVE-2026-63074.

Container imageDigestPackageFixed in
qmcgaw/gluetun:v3.41.11a5bf4b4820a
openssl@3.5.5-r0
3.5.8-r0

Open the chart page →

1,010

Container images carrying it

3,109 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
library/postgres:18:18.6:18.6-trixie:latest4ef4dbc939d6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
69
library/alpine:3:3.24.1:latest28bd5fe8b56d
openssl@3.5.7-r0
3.5.8-r0
60
library/redis:8.10.1:latest298e5b3bc566
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
40
library/postgres:18.6-alpine:18-alpine:alpined3e1620b530c
openssl@3.5.7-r0
3.5.8-r0
17
library/redis:8.10.1-alpine:8-alpine:alpinebecdda6c7f4b
openssl@3.5.7-r0
3.5.8-r0
17
library/postgres:16-alpinecf78e76683b9
openssl@3.5.7-r0
3.5.8-r0
16
library/postgres:17-alpine18cfe3ef5e68
openssl@3.5.7-r0
3.5.8-r0
13
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
openssl@3.5.4-r0
3.5.8-r0
13
grafana/grafana:latestf772d434e8fa
openssl@3.5.7-r0
3.5.8-r0
12
library/mariadb:12.3.3:latest:ltsdd9b303aed4f
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
12
library/mongo:8:8.3.8:latest5211c51171f5
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
12
library/postgres:16f1c3376c26f2
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
12
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
openssl@3.0.17-1~deb12u2
no fix listed
11
library/postgres:15-alpinefe0737ba566a
openssl@3.5.7-r0
3.5.8-r0
11
ethpandaops/xatu:latest74d4cf2c436c
openssl@3.0.20-1~deb12u2
no fix listed
10
library/postgres:1767f41722b7a8
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
10
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.29
10
library/eclipse-mosquitto:2.0:2.0.22212f89e1eaeb
openssl@3.5.7-r0
3.5.8-r0
8
library/rabbitmq:3.13-management:3-managemente582c0bc7766
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
8
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u2
7
library/kong:3.6a42d2b4503e7
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
7
library/phpmyadmin:5.2.3-apache:latest3a8a8d6b5289
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
7
library/postgres:14156f0b253fd6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
7
vaultwarden/server:1.37.2:latest094b5689ed81
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openssl@3.0.20-1~deb12u2
no fix listed
7
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
openssl@3.0.16-1~deb12u1
no fix listed
6
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
openssl@3.0.17-1~deb12u1
no fix listed
6
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
openssl@3.0.17-1~deb12u2
no fix listed
6
curlimages/curl:8.17.0935d9100e9ba
openssl@3.5.4-r0
3.5.8-r0
6
library/mariadb:10:10.11ce66c7be32a0
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.29
6
library/postgres:159b1d34adbce1
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
6
library/postgres:18.4a02db8cac496
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
6
library/redis:6:6.2143f7bfc2358
openssl@3.0.20-1~deb12u2
no fix listed
6
library/ubuntu:latest2260313b31c8
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.4
6
library/wordpress:7.1.0-apache:latest5a93c470ae82
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
6
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
openssl@3.5.6-r0
3.5.8-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
no fix listed
6
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
no fix listed
6
alpine/kubectl:1.34.18413f8890d19
openssl@3.5.4-r0
3.5.8-r0
5
bitnamilegacy/kubectl:1.29.2c74b703deed2
openssl@3.0.11-1~deb12u2
no fix listed
5
dpage/pgadmin4:9.17:latest2f4ce946ddf8
openssl@3.5.7-r0
3.5.8-r0
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
openssl@3.0.20-1~deb12u1
no fix listed
5
koenkk/zigbee2mqtt:2.14.1fef0de769dcd
openssl@3.5.7-r0
3.5.8-r0
5
library/httpd:2.4:2.4.68:latest979c38c2228d
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
5
library/kong:3.9:latest2a8cf3b110cd
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
5
library/memcached:1.6:1.6.4575c93cc91e76
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u2
5
library/memcached:1.6.39-alpinec8503d4491ed
openssl@3.5.4-r0
3.5.8-r0
5
library/postgres:122f2a8c2a7d10
openssl@3.0.15-1~deb12u1
no fix listed
5
library/redis:7.2:7.2-bookworm74566c6910d1
openssl@3.0.20-1~deb12u2
no fix listed
5
quay.io/kiwigrid/k8s-sidecar:2.8.1abb55b2165c6
openssl@3.5.6-r0
3.5.8-r0
5

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.