StackRadar

CVE-2026-75803

Critical

Advisory

Published 20 Aug 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.002
13th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,973
of 17,821 indexed, latest versions
Container images
3,338
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-75803 affecting package openssl for versions less than 3.3.7-6

Carried by container images the latest versions of 2,973 of 17,821 indexed charts deploy, on 3,338 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+60 more3.0.2-0ubuntu1.29, 3.0.13-0ubuntu3.15, 3.5.5-1ubuntu3.5, 3.5.7-1~deb13u21,882
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+12 more3.3.7-r1, 3.5.8-r01,425
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed17
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl3, 3.3.7-4.azl33.3.7-614
OSV records
ALPINE-CVE-2026-75803DEBIAN-CVE-2026-75803UBUNTU-CVE-2026-75803AZL-97935ECHO-f836-71cf-434b
Also known as
USN-8678-1, USN-8678-3

Charts affected

2,973 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

3,338 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/zeroclaw-labs/zeroclaw:v0.1.7497893753e16
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u2
1
ghcr.io/zokeber/velero-notifications:0.0.176d84f6c4ce20
openssl@3.5.5-r0
3.5.8-r0
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/zoriya/kyoo_front:4.7.1d7f76c9c65d9
openssl@3.3.2-r4
3.3.7-r1
1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/zystem-io/zymtrace-pub-gateway:26.9.2ae9ae0925ff8
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.29
1
ghcr.io/zystem-io/zymtrace-pub-ui:26.9.29a32b89c0c19
openssl@3.5.0-r0
3.5.8-r0
1
mcr.microsoft.com/acstor/local-csi-driver:v0.3.0f9af53a79fd1
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/acstor/local-csi-manager:v0.3.04f464b52ba85
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/application-lb/images/alb-controller-crds:1.12.14dcf198fcb7c
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/azure-app-configuration/kubernetes-provider:2.6.7da4db80de17e
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/azure-storage/azurite:latest830430c1da1a
openssl@3.5.7-r0
3.5.8-r0
1
mcr.microsoft.com/mssql/server:2022-latest4402d880dd4c
openssl@3.0.2-0ubuntu1.29
no fix listed
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.15
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.15
1
mcr.microsoft.com/oss/v2/kubernetes-csi/blob-csi:v1.27.9f99f5f7ae5fb
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-node-driver-registrar:v2.14.06cb172e3de7e
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-node-driver-registrar:v2.16.0b5ff0d884b68
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v5.2.0afdfa3da79df
openssl@3.3.5-1.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v1.13.2fa8eba9843ff
openssl@3.3.5-3.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-snapshotter:v8.5.08b3ce8339944
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
openssl@3.3.5-3.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/secrets-store/driver:v1.5.65f91243cfd60
openssl@3.3.5-5.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/kubernetes-csi/secrets-store/driver-crds:v1.5.6cb0112636dc4
openssl@3.3.5-5.azl3
3.3.7-6
1
mcr.microsoft.com/oss/v2/nvidia/k8s-device-plugin:v0.18.2-125a4e52c87bb9
openssl@3.3.7-4.azl3
3.3.7-6
1
mcr.microsoft.com/playwright/mcp:v0.0.43e101b832b34d
openssl@3.0.17-1~deb12u3
no fix listed
1
public.ecr.aws/aktosecurity/akto-ai-automated-testing:latest5a5d32281374
openssl@3.0.20-1~deb12u2
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.66.9138c8b82c398
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:latestf669a6eacf8c
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.72.6_local43316f900242
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.5
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
1
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
public.ecr.aws/aktosecurity/akto-puppeteer-replay:1.49.4_latestf1c5763d565e
openssl@3.5.6-r0
3.5.8-r0
1
public.ecr.aws/aktosecurity/akto-threat-detection:1.16.2a47eb6cc17ea
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.5
1
public.ecr.aws/aktosecurity/mirror-api-logging:k8s_ebpf_core_impd94ce715f051
openssl@3.5.5-r0
3.5.8-r0
1
public.ecr.aws/aktosecurity/redis47200b041382
openssl@3.0.17-1~deb12u3
no fix listed
1
public.ecr.aws/aktosecurity/redis:latestV8.6.2832d7785830f
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u2
1
public.ecr.aws/buildkite/agent-metrics:v5.11.016e7f5c7161e
openssl@3.5.1-r0
3.5.8-r0
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.15
1
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.15
1
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u2
1
public.ecr.aws/g4a0y2u8/unifie-store:staging-19925a2057fabc948
openssl@3.0.15-1~deb12u1
no fix listed
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.29
1
public.ecr.aws/groundcovercom/kong:3.9.3-mini-20260804-107dfd0693fc4
openssl@3.5.6-1~deb13u2+e1
3.5.7-1~deb13u2
1
public.ecr.aws/groundcovercom/kong/kubernetes-ingress-controller:3.5.3-20260205bf9db911deed
openssl@3.5.4-1~deb13u2+e1
3.5.7-1~deb13u2
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
openssl@3.5.4-1~deb13u2+e1
3.5.7-1~deb13u2
1
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
openssl@3.5.6-1~deb13u2+e1
3.5.7-1~deb13u2
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
openssl@3.0.14-1~deb12u2
no fix listed
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.