StackRadar

CVE-2026-75806

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,961
of 17,985 indexed, latest versions
Container images
2,998
deployed by those charts
Fix available
2 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,961 of 17,985 indexed charts deploy, on 2,998 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+123 more3.0.2-0ubuntu1.30, 3.0.13-0ubuntu3.16, 3.5.5-1ubuntu3.6, 3.5.7-1~deb13u32,700
opensslapk3.3.1-r3, 3.3.2-r4, 3.3.2-r5, 3.3.3-r0+5 more3.3.7-r2298
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+14 moreno fix listed23
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 moreno fix listed22
OSV records
ALPINE-CVE-2026-75806DEBIAN-CVE-2026-75806UBUNTU-CVE-2026-75806ECHO-c4dc-a1f8-f0ae
Also known as
USN-8847-1
Trending
Rank 3 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

2,961 by stars
ChartLatestAffected imagesRadar Score
ceph-exporterygqygq2Verified publisher1.0.01 of 1See more

ceph-exporter ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
digitalocean/ceph_exporter:latest3ba058e9a48d
openssl@1.1.1f-1ubuntu2.24
no fix listed

Open the chart page →

6,136
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
openssl@3.0.11-1~deb12u2
no fix listed

Open the chart page →

2,894
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
no fix listed

Open the chart page →

2,577
jenkinszanise-jenkins-helm-chart0.1.01 of 1See more

jenkins zanise-jenkins-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

2,887
changedetection-iozekker6Verified publisher1.103.01 of 1See more

changedetection-io zekker6 1.103.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

2,901
endlessh-gozekker6Verified publisher0.4.01 of 1See more

endlessh-go zekker6 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
ghcr.io/shizunge/endlessh-go:2026.0730.08826dad32623
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

637
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
openssl@3.5.7-1~deb13u2
3.5.7-1~deb13u3

Open the chart page →

1,836
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
openssl@3.0.20-1~deb12u2
no fix listed

Open the chart page →

5,003
zimagizimagi2.7.171 of 6See more

zimagi zimagi 2.7.17

1 of the 6 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.15.331407c0e8e32
openssl@3.0.17-1~deb12u2
no fix listed

Open the chart page →

2,129
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
no fix listed

Open the chart page →

9,659
zoo-project-druzoo-projectOfficialVerified publisher0.10.81 of 6See more

zoo-project-dru zoo-project 0.10.8

1 of the 6 container images this version deploys carry CVE-2026-75806.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-51e7d55383f24594959b69e58518961c6aa66740da112e8d03f1
openssl@3.0.2-0ubuntu1.30
no fix listed

Open the chart page →

6,257

Container images carrying it

2,998 by charts deploying them

A fixed version is listed for 2 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
hassroutyyoussef/accountservice:latest1f01edf1ee0c
openssl@3.0.15-1~deb12u1
no fix listed
1
hassroutyyoussef/orderservice:latest2fc3d1617928
openssl@3.0.15-1~deb12u1
no fix listed
1
hassroutyyoussef/userservice:lateste0392e2b4a90
openssl@3.0.15-1~deb12u1
no fix listed
1
hasura/graphql-engine:v2.34.0-ce0111b0204136
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.30
1
hasura/graphql-engine:v2.48.10f6c1c4b957d2
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.30
1
haugene/transmission-openvpn:4.0059216cfae4b
openssl@1.1.1f-1ubuntu2.8
no fix listed
1
haveagitgat/tdarr:2.00.181256348872ce
openssl@1.1.1f-1ubuntu2.12
no fix listed
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
openssl@1.1.1f-1ubuntu2.1
no fix listed
1
haveagitgat/tdarr_node:2.17.013ff0913202dd
openssl@1.1.1f-1ubuntu2.19
no fix listed
1
hazegoodlife/haaze:veggiesite50f02d2d5d4d
openssl@3.0.15-1~deb12u1
no fix listed
1
hazegoodlife/haaze:milksite8d4c63169e14
openssl@3.0.15-1~deb12u1
no fix listed
1
headscale/headscale:0.25.1a7a8ae9616bb
openssl@3.0.15-1~deb12u1
no fix listed
1
headscale/headscale:0.27.1cd37b3001857
openssl@3.0.17-1~deb12u3
no fix listed
1
headwindmdm/hmdm:0.1.93550b4840840
openssl@3.0.2-0ubuntu1.26
3.0.2-0ubuntu1.30
1
healthchecks/healthchecks:latestaa08a61b0dcf
openssl@3.5.6-1~deb13u2
3.5.7-1~deb13u3
1
hecrom/myweatherangularclient:1.3.11bb0372939c19
openssl@3.0.13-1~deb12u1
no fix listed
1
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
openssl@1.1.1f-1ubuntu2.23
no fix listed
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
openssl@3.0.9-1
no fix listed
1
helmforge/fastmcp-server:0.2.061f759a1421f
openssl@3.5.5-1~deb13u1
3.5.7-1~deb13u3
1
helmforge/fastmcp-server:0.11.2fcb7017327d6
openssl@3.5.5-1~deb13u2
3.5.7-1~deb13u3
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
openssl@3.5.1-1+deb13u1
3.5.7-1~deb13u3
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
openssl@3.0.11-1~deb12u2
no fix listed
1
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
openssl@3.0.17-1~deb12u3
no fix listed
1
hivemq/hivemq-edge:2026.14d8250a233cea
openssl@3.0.13-0ubuntu3.11
3.0.13-0ubuntu3.16
1
hivemq/hivemq-operator:4.7.10241d6a8e1963
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.30
1
hivemq/hivemq-platform-operator:2.2.2a919f990141b
openssl@3.5.5-1ubuntu3.3
3.5.5-1ubuntu3.6
1
hivemq/hivemq-swarm:4.56.08d5f6a6f48b0
openssl@3.5.5-1ubuntu3.5
3.5.5-1ubuntu3.6
1
hiversh/antigravity:0.1.45-microvm0e36d98402bc
openssl@3.0.20-1~deb12u2
no fix listed
1
hiversh/browser:0.1.45-microvmb5048c6342ce
openssl@3.0.20-1~deb12u2
no fix listed
1
hiversh/claude:0.1.45-microvm2fbf9f264498
openssl@3.0.20-1~deb12u2
no fix listed
1
hiversh/codex:0.1.45-microvm4f43130f51e5
openssl@3.0.20-1~deb12u2
no fix listed
1
hiversh/controller:0.1.45b0b85f8942c7
openssl@3.0.20-1~deb12u2
no fix listed
1
hiversh/copilot:0.1.45-microvm50c07b84f298
openssl@3.0.20-1~deb12u2
no fix listed
1
hiversh/gateway:0.1.45839226cc6e41
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.30
1
hiversh/node:0.1.45-alpine-microvm836a37641941
openssl@3.0.20-1~deb12u2
no fix listed
1
hiversh/openclaw:0.1.45-microvm958b7ebb4eb4
openssl@3.0.20-1~deb12u2
no fix listed
1
hiversh/python:0.1.45-3.13-alpine-microvm63a5ae179a9f
openssl@3.0.20-1~deb12u2
no fix listed
1
hjacobs/kube-janitor:23.7.0fbb303ed463c
openssl@3.0.9-1
no fix listed
1
hjacobs/kube-web-view:23.8.0431f1bf013d0
openssl@3.0.9-1
no fix listed
1
hmediade/printserver:latest481a552c8e1c
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.30
1
hmediade/printserver-init:latest7f005eb6c718
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.30
1
honglab/slack-emoji-maker:v0.0.1ca075a926fe1
openssl@3.3.3-r0
3.3.7-r2
1
housewrecker/gaps:latestf417dd0a7547
openssl@1.1.1f-1ubuntu2.12
no fix listed
1
huginn/huginn:4df1217d3055db980a04f293e28016b77826e3caeab0db98264e
openssl@1.1.1-1ubuntu2.1~18.04.20
no fix listed
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
openssl@1.1.1-1ubuntu2.1~18.04.8
no fix listed
1
hugohg34/toposervice:0.0.2812a03b3f274
openssl@1.1.1f-1ubuntu2.12
no fix listed
1
hyperglance/init:wildfly467ad8491bc3
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.30
1
hyperglance/init:postgres9fd5faf1fe80
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.30
1
hyperglance/init:apacheb2f8c6d52623
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.30
1
hyperglance/postgresql-v2:10.0.10daffcb1b122a
openssl@3.0.2-0ubuntu1.30
no fix listed
1

syft 1.42.1 · advisories as of 2 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.