StackRadar

CVE-2026-75805

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,459
of 17,985 indexed, latest versions
Container images
2,512
deployed by those charts
Fix available
2 of 3
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,459 of 17,985 indexed charts deploy, on 2,512 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+69 more3.0.2-0ubuntu1.30, 3.0.13-0ubuntu3.16, 3.5.5-1ubuntu3.6, 3.5.7-1~deb13u32,214
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2298
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+2 moreno fix listed6
OSV records
ALPINE-CVE-2026-75805DEBIAN-CVE-2026-75805UBUNTU-CVE-2026-75805ECHO-738e-73da-1b38
Also known as
USN-8847-1
Trending
Rank 13 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,459 by stars
ChartLatestAffected imagesRadar Score
my-nginx-appyasser-nginx-app0.1.01 of 1See more

my-nginx-app yasser-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
library/nginx:stableb972f831f200
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,836
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

2,894
jenkinszanise-jenkins-helm-chart0.1.01 of 1See more

jenkins zanise-jenkins-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,887
changedetection-iozekker6Verified publisher1.103.01 of 1See more

changedetection-io zekker6 1.103.0

1 of the 1 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,901
endlessh-gozekker6Verified publisher0.4.01 of 1See more

endlessh-go zekker6 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
ghcr.io/shizunge/endlessh-go:2026.0730.08826dad32623
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

637
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,836
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

5,003
zimagizimagi2.7.171 of 6See more

zimagi zimagi 2.7.17

1 of the 6 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.15.331407c0e8e32
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

2,129
zoo-project-druzoo-projectOfficialVerified publisher0.10.81 of 6See more

zoo-project-dru zoo-project 0.10.8

1 of the 6 container images this version deploys carry CVE-2026-75805.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-51e7d55383f24594959b69e58518961c6aa66740da112e8d03f1
openssl@3.0.2-0ubuntu1.30
no fix listed

Open the chart page →

6,257

Container images carrying it

2,512 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/hemslo/chat-search:latest39d48995a5bd
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.16
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.42538ea1c9640
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/icegatetech/icegate-ingest:0.1.1bae3c441894a
openssl@3.0.19-1~deb12u2
no fix listed
1
ghcr.io/icegatetech/icegate-maintain:0.1.193e85b2b76ee
openssl@3.0.19-1~deb12u2
no fix listed
1
ghcr.io/icegatetech/icegate-query:0.1.17542b4e7fff2
openssl@3.0.19-1~deb12u2
no fix listed
1
ghcr.io/icoretech/codex-pooler:0.10.59a65b0cea3d8
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/iisas/domino-rest:latest3009350bfc11
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/imcitius/checker-edge:1.1.1174426c1fe00f
openssl@3.3.6-r0
3.3.7-r2
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
openssl@3.0.17-1~deb12u2
no fix listed
1
ghcr.io/immich-app/immich-server:v3.2.4d317916b2809
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u3
1
ghcr.io/imunhatep/kube-node-ready:0.5.07439f6f9f85c
openssl@3.3.6-r0
3.3.7-r2
1
ghcr.io/interlink-hq/interlink/virtual-kubelet-inttw:latest0e05a7b49c33
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30
1
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
openssl@3.0.20-1~deb12u1
no fix listed
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.30
1
ghcr.io/itobey/playlist-mirror:1.0.0601082677a46
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/itzg/minecraft-server:latest0c09bc50031e
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
openssl@3.0.16-1~deb12u1
no fix listed
1
ghcr.io/jaydee94/kubeseal-webgui/ui:4.5.34447636e8102
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/jellyfin/jellyfin:12.1008ec8024bda
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/jensholdgaard/ourios:latest95837b1db71a
openssl@3.0.20-1~deb12u2
no fix listed
1
ghcr.io/jeremylvln/shulker-operator:0.13.027c55706c126
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
1
ghcr.io/jlclx/runtimeclass-controller:latestb3a87f92a963
openssl@3.0.14-1~deb12u2
no fix listed
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/jossware/node-provider-labeler:v0.8.0f80e85291439
openssl@3.0.13-1~deb12u1
no fix listed
1
ghcr.io/juanfont/headscale:0.29.3:v0.29.30e7f1c6e4ce6
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/juanfont/headscale:0.29.4-debug2380cdb4951e
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/juanfont/headscale:0.29.18453e47ea6bf
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/juanfont/headscale:0.29.48833f828b414
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/juanfont/headscale:v0.25.097febecbe6cb
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssl@3.0.15-1~deb12u1
no fix listed
1
ghcr.io/justarchinet/archisteamfarm:6.3.10.107286b8b41a1
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
ghcr.io/justwatchcom/sql_exporter:v0.8c4b1d3d0f052
openssl@3.3.3-r0
3.3.7-r2
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.30
1
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.2.4-thick3c20900b5381
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3
1
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.2.16bebbda31416
openssl@3.0.16-1~deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 2 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.