StackRadar

CVE-2026-75806

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,961
of 17,985 indexed, latest versions
Container images
2,998
deployed by those charts
Fix available
2 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,961 of 17,985 indexed charts deploy, on 2,998 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+123 more3.0.2-0ubuntu1.30, 3.0.13-0ubuntu3.16, 3.5.5-1ubuntu3.6, 3.5.7-1~deb13u32,700
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2298
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+14 moreno fix listed23
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 moreno fix listed22
OSV records
ALPINE-CVE-2026-75806DEBIAN-CVE-2026-75806UBUNTU-CVE-2026-75806ECHO-c4dc-a1f8-f0ae
Also known as
USN-8847-1
Trending
Rank 3 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,961 by stars
ChartLatestAffected imagesRadar Score
ceph-exporterygqygq2Verified publisher1.0.01 of 1See more

ceph-exporter ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
digitalocean/ceph_exporter:latest3ba058e9a48d
openssl@1.1.1f-1ubuntu2.24
no fix listed

Open the chart page →

6,136
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

2,894
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
no fix listed

Open the chart page →

2,577
jenkinszanise-jenkins-helm-chart0.1.01 of 1See more

jenkins zanise-jenkins-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,887
changedetection-iozekker6Verified publisher1.103.01 of 1See more

changedetection-io zekker6 1.103.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,901
endlessh-gozekker6Verified publisher0.4.01 of 1See more

endlessh-go zekker6 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/shizunge/endlessh-go:2026.0730.08826dad32623
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

637
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,836
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

5,003
zimagizimagi2.7.171 of 6See more

zimagi zimagi 2.7.17

1 of the 6 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.15.331407c0e8e32
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

2,129
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
no fix listed

Open the chart page →

9,659
zoo-project-druzoo-projectOfficialVerified publisher0.10.81 of 6See more

zoo-project-dru zoo-project 0.10.8

1 of the 6 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-51e7d55383f24594959b69e58518961c6aa66740da112e8d03f1
openssl@3.0.2-0ubuntu1.30
no fix listed

Open the chart page →

6,257

Container images carrying it

2,998 by charts deploying them

A fixed version is listed for 2 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
openssl@3.0.15-1~deb12u1
no fix listed
1
bmeares/meerschaum:2.8.48e9c5bacaa82
openssl@3.0.15-1~deb12u1
no fix listed
1
bnjbvr/kresus:0.22.137e216b182c8
openssl@3.0.15-1~deb12u1
no fix listed
1
boky/postfix:5.1.0:v5.1.0aafc77238423
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u3
1
boky/postfix:4.4.0f3f247fd4252
openssl@3.0.15-1~deb12u1
no fix listed
1
boxcutter/meshcmd:1.1.384e13f01bcab
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.30
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
openssl@1.1.1f-1ubuntu2.8
no fix listed
1
buall/postgres-stack:18.6881a785642cb
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
budibase/database:2.1.0d90f656261c9
openssl@3.0.18-1~deb12u2
no fix listed
1
budibase/proxy:3.41.38d780b6ee602
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
bugsink/bugsink:246fc01ffbd60
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
burakince/mlflow:3.16.0ab4b566644b9
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
calltelemetry/web:0.8.1-rc7205d13269e350
openssl@3.0.14-1~deb12u2
no fix listed
1
camptocamp/geomapfishapp-geoportal:latestae874f70cc16
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
camptocamp/mapserver:master5f9ddd0b9c5b
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6
1
camptocamp/mapserver:latest98e908c81ff8
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
1
camunda/zeebe:8.4.5ab5abc09e407
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.30
1
carbone/carbone-ee:full-5.15.3ed6d19082849
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
openssl@3.0.15-1~deb12u1
no fix listed
1
caronc/apprise:latestcc5ef662ad2a
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
1
castai/hibernate:v0.14da62858c8381
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
castlemock/castlemock:latestb7f3f1527ba9
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16
1
castopod/castopod:1.12.101fd37280cbb2
openssl@3.0.14-1~deb12u2
no fix listed
1
castopod/castopod:1.15.54e4f0440520f
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.16
1
cccs/assemblyline-core:4.7.4.stable2125fdf4aa72ab
openssl@3.0.20-1~deb12u2
no fix listed
1
cccs/assemblyline-rust:4.7.4.stable21871423aa4655
openssl@3.0.20-1~deb12u2
no fix listed
1
cccs/assemblyline-socketio:4.7.4.stable21ba390e87f340
openssl@3.0.20-1~deb12u2
no fix listed
1
cccs/assemblyline-ui:4.7.4.stable210623c3fd039e
openssl@3.0.20-1~deb12u2
no fix listed
1
censedata/floating-server:v1.6.3ebfffb9dd4c0
openssl@3.3.3-r0
3.3.7-r2
1
ceresdb/ceresdb-server:v1.0.053b2d0dbba1f
openssl@1.1.1f-1ubuntu2.17
no fix listed
1
chandanteekinavar/findery-market-frontend:1.06de5bd44a325
openssl@3.3.3-r0
3.3.7-r2
1
chatwoot/chatwoot:v4.18.0b419dded7e9d
openssl@3.3.7-r1
3.3.7-r2
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.30
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
openssl@1.0.1f-1ubuntu2.27
no fix listed
1
chetangautamm/repo:sipp.v3e7f7049e1544
openssl@1.1.1f-1ubuntu2.1
no fix listed
1
cheveo/azp-agent:1.0.282240f890884
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.30
1
cheyang/distributed-tf:1.6.046cc34755493
openssl@1.0.2g-1ubuntu4.10
no fix listed
1
chiefonboarding/chiefonboarding:v2.5.0d0964135ea82
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
chocobozzz/peertube:v8.1.5052712130691
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u3
1
chriseaton/adventureworks:latest54c3384ce701
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.30
1
christianhuth/node-hostname:1.0.1c07f414a3e4b
openssl@3.3.2-r4
3.3.7-r2
1
chromadb/chroma:1.5.7fc8dc8e11fb2
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u3
1
circleci/runner:launch-agent9bdc62f02162
openssl@1.1.1f-1ubuntu2.23
no fix listed
1
ciscolabs/msm-nc:0710202336d02faad958
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.30
1
citizenstig/httpbin:latestb81c818ccb86
openssl@1.0.2g-1ubuntu4.5
no fix listed
1
ciuse99/suggestarr:v1.0.20d72768245ef5
openssl@3.3.3-r0
3.3.7-r2
1
ckan/ckan-base:2.12.087ecf3f27ad6
openssl@3.0.20-1~deb12u2
no fix listed
1
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.30
1
ckulka/baikal:0.10.1-nginx434bdd162247
openssl@3.0.16-1~deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 2 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.