StackRadar

CVE-2026-75806

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,971
of 17,966 indexed, latest versions
Container images
3,013
deployed by those charts
Fix available
2 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,971 of 17,966 indexed charts deploy, on 3,013 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+122 more3.0.2-0ubuntu1.30, 3.0.13-0ubuntu3.16, 3.5.5-1ubuntu3.6, 3.5.7-1~deb13u32,713
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2300
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 moreno fix listed22
OSV records
ALPINE-CVE-2026-75806DEBIAN-CVE-2026-75806UBUNTU-CVE-2026-75806ECHO-c4dc-a1f8-f0ae
Also known as
USN-8847-1
Trending
Rank 2 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,971 by stars
ChartLatestAffected imagesRadar Score
xkopsxkops0.1.04 of 5See more

xkops xkops 0.1.0

4 of the 5 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
openssl@3.0.14-1~deb12u2
no fix listed
hamzaarshad10/querypodpy:1.7154f38e8668e
openssl@3.0.14-1~deb12u2
no fix listed
library/mongo:latest5d7043a4ffe0
openssl@3.0.13-0ubuntu3.15
3.0.13-0ubuntu3.16
murtazashah46/helmfile:latest4d11726cf803
openssl@3.0.14-1~deb12u2
no fix listed

Open the chart page →

14,267
xlinexline0.0.11 of 1See more

xline xline 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.16

Open the chart page →

2,339
xray-proxyxray-proxy1.0.31 of 1See more

xray-proxy xray-proxy 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
gvpaleevkz/xray-proxy:v1.0.046eb128d6c61
openssl@3.3.7-r0
3.3.7-r2

Open the chart page →

755
cloudeye-exporterxxl-job-adminVerified publisher0.1.21 of 1See more

cloudeye-exporter xxl-job-admin 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
dellnoantechnp/cloudeye-exporter:v2.0.316873356c882d
openssl@3.0.18-1~deb12u2
no fix listed

Open the chart page →

2,857
dingtalk-botxxl-job-adminVerified publisher0.1.31 of 2See more

dingtalk-bot xxl-job-admin 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
dellnoantechnp/dingtalk-bot:v1.0.1034000bbcad5
openssl@3.5.4-1~deb13u1
3.5.7-1~deb13u3

Open the chart page →

3,565
nightingalexxl-job-adminVerified publisher0.2.113 of 6See more

nightingale xxl-job-admin 0.2.11

3 of the 6 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.16
flashcatcloud/nightingale:8.0.0-beta.11ea1b0aaabe09
openssl@3.0.16-1~deb12u1
no fix listed
library/redis:6.2d2ad7b21cafa
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

10,337
pgcatxxl-job-adminVerified publisher0.3.31 of 1See more

pgcat xxl-job-admin 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
openssl@3.0.13-1~deb12u1
no fix listed

Open the chart page →

3,384
nginx-chartxxoznge-nginx0.1.01 of 1See more

nginx-chart xxoznge-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,822
helm-demoyahoon-helm-demoVerified publisher1.0.01 of 1See more

helm-demo yahoon-helm-demo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/yahoon/helm-demo:1.0.02930290a758c
openssl@3.5.6-1~deb13u1
3.5.7-1~deb13u3

Open the chart page →

1,540
my-nginx-appyasser-nginx-app0.1.01 of 1See more

my-nginx-app yasser-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
library/nginx:stableb972f831f200
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,822
ceph-exporterygqygq2Verified publisher1.0.01 of 1See more

ceph-exporter ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
digitalocean/ceph_exporter:latest3ba058e9a48d
openssl@1.1.1f-1ubuntu2.24
no fix listed

Open the chart page →

6,134
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

2,890
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
no fix listed

Open the chart page →

2,576
jenkinszanise-jenkins-helm-chart0.1.01 of 1See more

jenkins zanise-jenkins-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,846
changedetection-iozekker6Verified publisher1.103.01 of 1See more

changedetection-io zekker6 1.103.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,896
endlessh-gozekker6Verified publisher0.4.01 of 1See more

endlessh-go zekker6 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/shizunge/endlessh-go:2026.0730.08826dad32623
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

623
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,822
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

4,984
zimagizimagi2.7.171 of 6See more

zimagi zimagi 2.7.17

1 of the 6 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.15.331407c0e8e32
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

2,125
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
no fix listed

Open the chart page →

9,656
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30

Open the chart page →

8,734

Container images carrying it

3,013 by charts deploying them

A fixed version is listed for 2 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
library/redis:7.2:7.2-bookworm0637954999d0
openssl@3.0.20-1~deb12u2
no fix listed
5
solsson/kafka:latest41e5d8f6f290
openssl@1.1.1f-1ubuntu2.16
no fix listed
5
valkey/valkey:9.1.1:9.1.1-trixie64e361b630ec
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
5
artifacthub/postgres:latest4fd34fa635cc
openssl@3.5.1-1
3.5.7-1~deb13u3
4
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
openssl@3.0.17-1~deb12u2
no fix listed
4
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
openssl@3.0.17-1~deb12u1
no fix listed
4
bitnamilegacy/postgresql:16233f361c5819
openssl@3.0.15-1~deb12u1
no fix listed
4
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
openssl@3.0.16-1~deb12u1
no fix listed
4
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
openssl@3.0.17-1~deb12u1
no fix listed
4
cloudflare/cloudflared:2026.3.06b599ca3e974
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3
4
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
openssl@3.0.20-1~deb12u1
no fix listed
4
fluent/fluent-bit:5.1.2:latestd792375ca8e5
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
4
gradiant/srsran-4g:23_1117e9386c9ab3
openssl@1.1.1f-1ubuntu2.22
no fix listed
4
guacamole/guacamole:1.6.0f344085e618b
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.16
4
hyperledger/fabric-ca:latesta70b6ba64a08
openssl@3.0.2-0ubuntu1.25
3.0.2-0ubuntu1.30
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openssl@1.0.2g-1ubuntu4.13
no fix listed
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openssl@1.0.2g-1ubuntu4.15
no fix listed
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.30
4
library/memcached:1.6.45d956c0a57fd7
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
4
library/mongo:5.0-focal5e15a3f014ed
openssl@1.1.1f-1ubuntu2.24
no fix listed
4
library/mongo:4.2.12-bionic628741415fc9
openssl@1.1.1-1ubuntu2.1~18.04.8
no fix listed
4
library/mongo:4.4.66efa05203990
openssl@1.1.1-1ubuntu2.1~18.04.9
no fix listed
4
library/nginx:1.27.1287ff321f9e3
openssl@3.0.14-1~deb12u2
no fix listed
4
library/postgres:134689940c6838
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u3
4
library/rabbitmq:3.11-managementc3f70098e01d
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.30
4
library/redis:7.4-alpine:7-alpine520775a41a63
openssl@3.3.7-r1
3.3.7-r2
4
library/redis:7:7.4:7.4.11c6eabf748fc7
openssl@3.0.20-1~deb12u2
no fix listed
4
mastercloudapps/planner:v1.2340a950b311b2
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.30
4
opea/llm-tgi:1.00c25aab3f106
openssl@3.0.14-1~deb12u2
no fix listed
4
openquantumsafe/openssl3:latest543fb00ce31d
openssl@3.3.2-r4
3.3.7-r2
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
openssl@1.1.1-1ubuntu2.1~18.04.8
no fix listed
4
shashkist/flask-contacts-app:latest581de1fd6084
openssl@3.0.15-1~deb12u1
no fix listed
4
valkey/valkey:9.0.2930b41430fb7
openssl@3.5.4-1~deb13u2
3.5.7-1~deb13u3
4
vaultwarden/server:1.37.2:latest094b5689ed81
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
4
ghcr.io/akash-network/provider:0.6.88c780ae8d1bb
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.16
4
ghcr.io/flaresolverr/flaresolverr:latest:v3.5.2c80ae007ce2c
openssl@3.0.20-1~deb12u2
no fix listed
4
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
openssl@3.0.2-0ubuntu1.29
3.0.2-0ubuntu1.30
4
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
openssl@3.0.20-1~deb12u2
no fix listed
4
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
openssl@3.0.20-1~deb12u2
no fix listed
4
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
openssl@3.0.20-1~deb12u2
no fix listed
4
ghcr.io/kubedb/kubedb-provisioner:v0.66.0e7041c3b41e7
openssl@3.0.20-1~deb12u2
no fix listed
4
ghcr.io/kubevault/vault-operator:v0.25.0c8e042b5cee8
openssl@3.0.20-1~deb12u2
no fix listed
4
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3
4
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6
4
apache/apisix:3.18.0-ubuntu9ee5df1611f9
openssl@3.0.13-0ubuntu3.12
3.0.13-0ubuntu3.16
3
apache/apisix-ingress-controller:2.2.05c5efa4c7f2a
openssl@3.0.20-1~deb12u2
no fix listed
3
apache/superset:6.1.0:latest16b50bbef664
openssl@3.0.20-1~deb12u2
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
openssl@3.0.16-1~deb12u1
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
openssl@3.0.17-1~deb12u2
no fix listed
3
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
openssl@3.0.17-1~deb12u2
no fix listed
3

syft 1.42.1 · advisories as of 1 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.