StackRadar

CVE-2026-9076

High

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
52nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,215
of 17,790 indexed, latest versions
Container images
2,427
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-9076 affecting package openssl for versions less than 3.3.7-3

Carried by container images the latest versions of 2,215 of 17,790 indexed charts deploy, on 2,427 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+103 more1.0.1f-1ubuntu2.27+esm14, 1.0.2g-1ubuntu4.20+esm16, 1.1.1-1ubuntu2.1~18.04.23+esm9, 1.1.1f-1ubuntu2.24+esm4+6 more1,789
opensslapk3.2.0-r0, 3.3.1-r4, 3.3.2-r0, 3.3.2-r2+13 more3.5.7-r0, 3.6.3-r0633
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm515
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-35
OSV records
ALPINE-CVE-2026-9076CGA-6mcp-mm5g-jxrjCGA-847w-c3x7-8qp6DEBIAN-CVE-2026-9076UBUNTU-CVE-2026-9076AZL-89934
Also known as
CGA-6p96-39qh-rm77, CGA-f2mp-q84v-4jv2, USN-8414-1, USN-8414-2

Charts affected

2,215 by stars
ChartLatestAffected imagesRadar Score
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

2,615
node-redlmatfyVerified publisher0.1.61 of 1See more

node-red lmatfy 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
nodered/node-red:4.1.10-minimald73ae167cb9b
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,809
zigbee2mqttlmatfyVerified publisher0.1.141 of 2See more

zigbee2mqtt lmatfy 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:2.7.260a295b40f4e
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,392
mt-mcp-grafanaloafoe0.10.01 of 2See more

mt-mcp-grafana loafoe 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
grafana/mcp-grafana:0.14.042f541f22063
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

1,845
local-businesslocal-business0.1.01 of 1See more

local-business local-business 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
alakaganaguathoork/local-business:latest7eb27b0f4a5a
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

947
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

7,516
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

32,893
vnode-runtimeloftVerified publisher0.3.31 of 1See more

vnode-runtime loft 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,507
elasticvuelogic3579Verified publisher1.15.01 of 1See more

elasticvue logic3579 1.15.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
cars10/elasticvue:1.15.0efddf4fa0fd8
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,086
nightingalelogic3579Verified publisher0.3.12 of 6See more

nightingale logic3579 0.3.1

2 of the 6 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11
flashcatcloud/nightingale:8.5.1421acb36181b
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

9,021
redisinsightlogic3579Verified publisher3.4.01 of 1See more

redisinsight logic3579 3.4.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
redis/redisinsight:3.485562d67a912
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,491
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.25

Open the chart page →

6,674
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

5,970
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

23,255
logtidelogtideVerified publisher2.1.142 of 4See more

logtide logtide 2.1.14

2 of the 4 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/logtide-dev/logtide-backend:1.0.265463e02f887
openssl@3.5.6-r0
3.5.7-r0
ghcr.io/logtide-dev/logtide-frontend:1.0.22a7da1451f86
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

2,775
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

5,910
loxilbloxilbVerified publisher0.1.02 of 2See more

loxilb loxilb 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
openssl@3.0.2-0ubuntu1.26
no fix listed
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

4,502
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2

Open the chart page →

5,032
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

17,836
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9
elastictranscoder/media-storage:f6d861a026208b8c2359
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9
elastictranscoder/transcoder:627e21dcb4a0327029e6
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

58,225
flaresolverrluiscajl0.0.31 of 1See more

flaresolverr luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:latest139dfee1c6f8
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

27,282
lynxpromptlynxpromptVerified publisher0.1.21 of 3See more

lynxprompt lynxprompt 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
drumsergio/lynxprompt:2.0.75c6afb6679301
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,854
hyperglassm0nsterrr-hyperglassVerified publisher4.2.11 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

4,659
jellyfinm0nsterrr-jellyfinVerified publisher2.3.51 of 1See more

jellyfin m0nsterrr-jellyfin 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

2,615
routinatorm0nsterrr-routinatorVerified publisher2.3.11 of 1See more

routinator m0nsterrr-routinator 2.3.1

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
nlnetlabs/routinator:v0.15.2bc57d6e973c3
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

742
decap-cmsm11sVerified publisher0.3.151 of 1See more

decap-cms m11s 0.3.15

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
m11s/decap-cms:0.2.11-s30cd6810c9885
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,152
m9sweeperm9sweeperVerified publisher1.6.01 of 6See more

m9sweeper m9sweeper 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

9,786
magistralamagistrala-devopsVerified publisher0.16.22 of 42See more

magistrala magistrala-devops 0.16.2

2 of the 42 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31-latestcaa5b411be16
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.25

Open the chart page →

24,488
docker-mailservermailserverVerified publisher0.2.653 of 9See more

docker-mailserver mailserver 0.2.65

3 of the 9 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
jeboehm/mailserver-web:5.0.929da13edf5aa8
openssl@3.5.2-r0
3.5.7-r0
mvance/unbound:1.22.076906da36d18
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

10,908
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
openssl@3.0.9-1
3.0.20-1~deb12u2

Open the chart page →

6,722
novosgamarcusrepo0.1.11 of 2See more

novosga marcusrepo 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
novosga/novosga:latest34b9acbe6e51
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

3,707
eirmargaysVerified publisher1.7.21 of 1See more

eir margays 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
margays/eir:v1.7.22883fdd06fd7
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2

Open the chart page →

801
marge-botmarge-bot-helm1.3.51 of 1See more

marge-bot marge-bot-helm 1.3.5

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.16.0b59f01bc0418
openssl@3.5.1-1+deb13u1
3.5.6-1~deb13u2

Open the chart page →

3,541
circleci-runnermatic-insurance0.1.11 of 1See more

circleci-runner matic-insurance 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
circleci/runner:launch-agent9bdc62f02162
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

4,150
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

4,095
mauticmautic-chartVerified publisher1.0.22 of 3See more

mautic mautic-chart 1.0.2

2 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
mautic/mautic:7-apacheeb8cc73d97e1
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

8,351
mayastormayastorVerified publisher2.12.11 of 31See more

mayastor mayastor 2.12.1

1 of the 31 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11

Open the chart page →

21,178
eoloplantmca-eoloplaner0.1.03 of 7See more

eoloplant mca-eoloplaner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
hugohg34/toposervice:0.0.2812a03b3f274
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm4
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm4
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
3.0.2-0ubuntu1.25

Open the chart page →

29,712
mcroutermcrouterVerified publisher0.2.01 of 2See more

mcrouter mcrouter 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
library/memcached:1.6.4226983a43c918
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

2,277
backstagemcwarmanVerified publisher0.10.102 of 2See more

backstage mcwarman 0.10.10

2 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2

Open the chart page →

9,707
mdai-hubmdai-hubVerified publisher0.10.11 of 14See more

mdai-hub mdai-hub 0.10.1

1 of the 14 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

4,746
applicationmediamarktsaturn1.37.01 of 1See more

application mediamarktsaturn 1.37.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
quay.io/heubeck/examiner:1.14.61154472ff8c4
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2

Open the chart page →

801
dependency-trackmediamarktsaturn1.9.22 of 2See more

dependency-track mediamarktsaturn 1.9.2

2 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
dependencytrack/apiserver:4.14.21ba4f004e1ec
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2
dependencytrack/frontend:4.14.200560b57a6cf
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

3,797
tinymediamanagermedia-servarrVerified publisher1.6.21 of 2See more

tinymediamanager media-servarr 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
openssl@3.5.5-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

7,760
cameramedia-streaming-meshVerified publisher0.2.52 of 3See more

camera media-streaming-mesh 0.2.5

2 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

18,712
crdsmedia-streaming-meshVerified publisher0.0.11 of 2See more

crds media-streaming-mesh 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ciscolabs/msm-nc:0710202336d02faad958
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25

Open the chart page →

3,707
msmmedia-streaming-meshVerified publisher0.1.175 of 6See more

msm media-streaming-mesh 0.1.17

5 of the 6 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.11
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
openssl@3.0.13-0ubuntu3.2
3.0.13-0ubuntu3.11
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
openssl@3.0.13-0ubuntu3.1
3.0.13-0ubuntu3.11

Open the chart page →

11,478
msm-rtspmedia-streaming-meshVerified publisher0.0.22 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

2 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

18,712
rtspmedia-streaming-meshVerified publisher0.0.142 of 2See more

rtsp media-streaming-mesh 0.0.14

2 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

18,712
meerschaummeerschaumVerified publisher0.2.01 of 1See more

meerschaum meerschaum 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
bmeares/meerschaum:2.8.48e9c5bacaa82
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

5,849

Container images carrying it

2,427 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25
1
clickhouse/clickhouse-server:26.8.2:latestfa394da808cc
openssl@3.0.2-0ubuntu1.29
no fix listed
1
cloudflare/cloudflared:2025.8.0eb5c9324efe3
openssl@3.0.17-1~deb12u1
3.0.20-1~deb12u2
1
cloudve/janis-terminal:latestaf56e77ca587
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9
1
cloudve/ttyd:latestd79c1c5881c0
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9
1
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2
1
clowder/clowder2-frontend:2.0.0-beta.4fe97882672ca
openssl@3.5.4-r0
3.5.7-r0
1
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2
1
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2
1
cm2network/squad:latest8cba47f53df5
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
1
collabora/code:24.04.13.2.101dc4ab83977
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
1
collabora/code:23.05.10.1.105299b452f7f
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
consensys/teku:25.4.1bf6ecd2ea716
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
contentsquareplatform/chproxy:v1.26.524555f22d4be
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
1
copyparty/ac:1.19.200a0a8605062c
openssl@3.5.4-r0
3.5.7-r0
1
cortezaproject/corteza:2024.9.60bcdcbcd3c63
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25
1
cortezaproject/corteza:2024.9.08eb7a26605c9
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.24+esm4
1
cortezaproject/corteza:2024.9.4cb9f200de5d2
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
openssl@3.0.17-1~deb12u1
3.0.20-1~deb12u2
1
coturn/coturn:4.10.0-r1f4c2af06c3c5
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2
1
countly/countly-server:25.05.4e3c238248f99
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm4
1
cr0hn/ja-shortener:v0.1.414482d0bc4a1
openssl@3.5.1-r0
3.5.7-r0
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.23+esm9
1
cribl/cribl:3.0.2762747cb6796
openssl@1.1.1-1ubuntu2.1~18.04.9
openssl1.0@1.0.2n-1ubuntu5.6
1.1.1-1ubuntu2.1~18.04.23+esm9
1.0.2n-1ubuntu5.13+esm5
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm16
1
cspconsole/config-provider:1.0.365524a26a6c23
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
1
cspconsole/report-collector:1.0.15839750248193b
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
1
cspconsole/report-processor:1.0.279a2d8840bfdf
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
1
cubejs/cubestore:v1.5.334ac523a9bab
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
1
cyverse/irods-csi-driver:v0.12.0aa69d105b292
openssl@3.0.2-0ubuntu1.29
no fix listed
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
dalibo/explain.dalibo.com:2.20.12a0b749c2f7f
openssl@3.5.5-r0
3.5.7-r0
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2
1
dannielkil/book-frontend:latest937993927694
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
1
dariomader/twampy:v0.0.2d2f4a8c5e690
openssl@3.2.0-r0
3.6.3-r0
1
darthsim/imgproxy:v3.30.13b709e4a0e5e
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
1
darthsim/imgproxy:v3.26476cb08c816a
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11
1
darthsim/imgproxy:v3.29.17d12c7c8fc66
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
1
dashops/dash-ops:latest23537693ff05
openssl@3.5.6-r0
3.5.7-r0
1
daskdev/dask-notebook:1.1.0052630f5ca04
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23+esm9
1
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
openssl@1.1.1-1ubuntu2.1~18.04.21
openssl1.0@1.0.2n-1ubuntu5.11
1.1.1-1ubuntu2.1~18.04.23+esm9
1.0.2n-1ubuntu5.13+esm5
1
datadog/agent:6aad9994de6a7
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11
1
datafuselabs/databend-meta:v1.2.279ba877ee6cb4d
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
datafuselabs/databend-query:v1.2.279a936843b85b4
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
1
datalayers/datalayers:v2.2.1017b292079239
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25
1
datalust/seq:5.0.832-pre9c731bb207a6
openssl@1.0.2g-1ubuntu4.10
1.0.2g-1ubuntu4.20+esm16
1
datalust/seq-input-gelf:3.0.441-x643de34aed5642
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm4
1
datamate/seafile-professional:11.0.202dd66b722464
openssl@3.0.2-0ubuntu1.19
3.0.2-0ubuntu1.25
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.