StackRadar

CVE-2026-9076

High

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,214
of 17,787 indexed, latest versions
Container images
2,426
deployed by those charts
Fix available
4 of 5
affected packages

CVE-2026-9076 affecting package openssl for versions less than 3.3.7-3

Carried by container images the latest versions of 2,214 of 17,787 indexed charts deploy, on 2,426 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+103 more1.0.1f-1ubuntu2.27+esm14, 1.0.2g-1ubuntu4.20+esm16, 1.1.1-1ubuntu2.1~18.04.23+esm9, 1.1.1f-1ubuntu2.24+esm4+6 more1,788
opensslapk3.2.0-r0, 3.3.1-r4, 3.3.2-r0, 3.3.2-r2+13 more3.5.7-r0, 3.6.3-r0633
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 moreno fix listed16
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm515
opensslrpm3.3.5-1.azl3, 3.3.5-3.azl3, 3.3.5-5.azl33.3.7-35
OSV records
ALPINE-CVE-2026-9076CGA-6mcp-mm5g-jxrjCGA-847w-c3x7-8qp6DEBIAN-CVE-2026-9076UBUNTU-CVE-2026-9076AZL-89934
Also known as
CGA-6p96-39qh-rm77, CGA-f2mp-q84v-4jv2, USN-8414-1, USN-8414-2

Charts affected

2,214 by stars
ChartLatestAffected imagesRadar Score
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

24,930
stornxstornxVerified publisher1.1.13 of 9See more

stornx stornx 1.1.1

3 of the 9 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
alazidis/stornx:1.1.1602d4f7f090c
openssl@3.0.18-1~deb12u2
3.0.20-1~deb12u2
istio/pilot:1.29.1f8b0e412ac4a
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11

Open the chart page →

11,574
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11

Open the chart page →

2,826
supabasesupabse0.8.08 of 11See more

supabase supabse 0.8.0

8 of the 11 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
kong/kong:3.9.16addf50e6bd8
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
supabase/edge-runtime:v1.74.02781daf92394
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
supabase/gotrue:v2.189.0385184459f57
openssl@3.5.6-r0
3.5.7-r0
supabase/postgres:17.6.1.136f371b5f3f2ac
openssl@3.5.6-r0
3.5.7-r0
supabase/postgres-meta:v0.96.6a84cc713585e
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
supabase/realtime:v2.102.3aa1c92c0cf32
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2
supabase/storage-api:v1.60.4c8eb9858eafe
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

18,075
supersonicsupersonicVerified publisher0.3.11 of 2See more

supersonic supersonic 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.30.92956bd9de830
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25

Open the chart page →

2,100
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

3,240
headscaleszpadel-chartsVerified publisher0.30.21 of 3See more

headscale szpadel-charts 0.30.2

1 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/tale/headplane:0.6.39476cc5adb12
openssl@3.0.18-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

1,840
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

9,102
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

9,102
tocktock0.6.37 of 9See more

tock tock 0.6.3

7 of the 9 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
tock/bot_admin:25.10.7df3e38c77a38
openssl@3.5.5-r0
3.5.7-r0
tock/bot_api:25.10.7dd5d5c70e333
openssl@3.5.5-r0
3.5.7-r0
tock/build_worker:25.10.7080cb6b08d5b
openssl@3.5.5-r0
3.5.7-r0
tock/duckling:25.10.7ac1f3f1a1e9c
openssl@3.5.5-r0
3.5.7-r0
tock/gen-ai-orchestrator-server:25.10.7abf7880e0449
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
tock/kotlin_compiler:25.10.7c9c0fb40089a
openssl@3.5.5-r0
3.5.7-r0
tock/nlp_api:25.10.7c04ffe67b977
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

12,907
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
openssl@3.0.13-0ubuntu3.4
3.0.13-0ubuntu3.11

Open the chart page →

4,020
typesensetypesenseVerified publisher1.1.41 of 1See more

typesense typesense 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
typesense/typesense:30.191604dc128e2
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25

Open the chart page →

1,869
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25

Open the chart page →

3,764
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25

Open the chart page →

3,764
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

12,581
universaluniversal4.0.11 of 1See more

universal universal 4.0.1

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
providus/undefined:lateste0b9f03bcd98
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

487
taigaunxwaresVerified publisher2026.3.81 of 6See more

taiga unxwares 2026.3.8

1 of the 6 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
taigaio/taiga-protected:latestfd4568a97a59
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

9,148
varnish-cachevarnishVerified publisher1.1.11 of 1See more

varnish-cache varnish 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
library/varnish:7.5.04d0bb287d87b
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

4,249
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11

Open the chart page →

4,010
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
openssl@3.0.16-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

5,225
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm4
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

26,657
vite-react-app-helm-chartsvite-react-app-helm-charts1.0.01 of 1See more

vite-react-app-helm-charts vite-react-app-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/marcuwynu23/vite-app-sample:latest21247f2b97c4
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,085
phpipamvquieVerified publisher1.0.31 of 3See more

phpipam vquie 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
library/mariadb:10.11.21c33370a599c
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.25

Open the chart page →

7,025
wachdwachdVerified publisher0.4.371 of 1See more

wachd wachd 0.4.37

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/wachd/wachd:0.4.1805b05c56da94
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,269
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

15,970
ingress-nginxwenerme4.15.11 of 2See more

ingress-nginx wenerme 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

1,547
natswenerme2.14.62 of 3See more

nats wenerme 2.14.6

2 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
natsio/nats-box:0.19.7ffce8bd10338
openssl@3.5.6-r0
3.5.7-r0
natsio/nats-server-config-reloader:0.23.064cb6c858e79
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

2,313
wikiwenerme2.2.01 of 2See more

wiki wenerme 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
requarks/wiki:latest68f0d1848261
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

3,833
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
openssl@1.0.1f-1ubuntu2.5
1.0.1f-1ubuntu2.27+esm14

Open the chart page →

41,427
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

7,835
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
library/wordpress:6.8-apache30bff39330d1
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2

Open the chart page →

7,696
wordpress-helmwordpress-helm0.2.92 of 4See more

wordpress-helm wordpress-helm 0.2.9

2 of the 4 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
openssl@3.5.6-1~deb13u1
3.5.6-1~deb13u2
library/varnish:alpinea84e1d4adb58
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

8,217
workflows-informerworkflows-informerVerified publisher0.4.41 of 1See more

workflows-informer workflows-informer 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

1,148
wraftwraft0.1.122 of 9See more

wraft wraft 0.1.12

2 of the 9 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
typesense/typesense:28.0.rc35dea1b62b7b6e
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.25
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

10,090
aeneabotygdrassilOfficialVerified publisher0.2.01 of 2See more

aeneabot ygdrassil 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
elautoestopista/aeneabot:4.2.1125ba620d528
openssl@3.5.4-r0
3.5.7-r0

Open the chart page →

1,697
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
nodejs@16.14.2-deb-1nodesource1
openssl@3.0.2-0ubuntu1.9
no fix listed
3.0.2-0ubuntu1.25

Open the chart page →

9,783
yugawareyugabyteVerified publisher2026.1.11 of 3See more

yugaware yugabyte 2026.1.1

1 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
library/postgres:14.22eba8ddbdd837
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2

Open the chart page →

2,610
plausible-analyticszekker6Verified publisher1.4.01 of 2See more

plausible-analytics zekker6 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v3.2.133e60bfb40f2
openssl@3.5.6-r0
3.5.7-r0

Open the chart page →

1,170
velero-notificationszokeber-velero-notificationsVerified publisher0.1.101 of 2See more

velero-notifications zokeber-velero-notifications 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/zokeber/velero-notifications:0.0.176d84f6c4ce20
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

727
backendzymtraceOfficialVerified publisher26.9.14 of 6See more

backend zymtrace 26.9.1

4 of the 6 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.3.14.14b627d7a9bc0e
openssl@3.0.2-0ubuntu1.21
3.0.2-0ubuntu1.25
library/postgres:17.4304ab8135187
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
ghcr.io/zystem-io/zymtrace-pub-gateway:26.9.1da0b5eb7721a
openssl@3.0.2-0ubuntu1.20
3.0.2-0ubuntu1.25
ghcr.io/zystem-io/zymtrace-pub-ui:26.9.1e951adf792cd
openssl@3.5.0-r0
3.5.7-r0

Open the chart page →

10,323
acos-prometheus-exporter-helm-charta10-prometheus-exporter0.1.01 of 1See more

acos-prometheus-exporter-helm-chart a10-prometheus-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
a10networks/acos-prometheus-exporter:latest8dc58d434d71
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm9

Open the chart page →

12,007
aaqaaqVerified publisher0.3.01 of 1See more

aaq aaq 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
quay.io/kubevirt/aaq-operator:v1.7.0d28a2daa5b15
openssl@3.5.1-r0
3.5.7-r0

Open the chart page →

1,015
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2

Open the chart page →

4,554
active-mqactivemq-helm-chartVerified publisher1.8.21 of 3See more

active-mq activemq-helm-chart 1.8.2

1 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.44.00305c26f19ed
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11

Open the chart page →

3,188
open5gsadaptivenetlabVerified publisher1.0.32 of 3See more

open5gs adaptivenetlab 1.0.3

2 of the 3 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
free5gmano/nextepc-mongodb:latest36f806935519
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm16
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.24+esm4

Open the chart page →

25,443
linkstackadnoctemVerified publisher0.4.01 of 1See more

linkstack adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
linkstackorg/linkstack:latest1c8b05399ee4
openssl@3.5.5-r0
3.5.7-r0

Open the chart page →

2,092
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2

Open the chart page →

30,028
bootaerokube1.0.12 of 4See more

boot aerokube 1.0.1

2 of the 4 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
quay.io/aerokube/jumphost:1.0.170fd7c00418d
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
quay.io/aerokube/keygen:1.0.1578934444f04
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25

Open the chart page →

7,834
msockperfaetrius2.0.82 of 2See more

msockperf aetrius 2.0.8

2 of the 2 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.11
ghcr.io/aetrius/msockperf-server/msockperf-server:main46ae4ea003e0
openssl@3.0.13-0ubuntu3
3.0.13-0ubuntu3.11

Open the chart page →

4,159
kourierahhhhVerified publisher0.18.11 of 1See more

kourier ahhhh 0.18.1

1 of the 1 container images this version deploys carry CVE-2026-9076.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.34-latestcfc0678bc03c
openssl@3.0.2-0ubuntu1.23
3.0.2-0ubuntu1.25

Open the chart page →

1,770

Container images carrying it

2,426 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
istio/proxyv2:1.18.0757d28c24100
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25
2
istio/proxyv2:1.10.3a78b7a165744
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm9
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
2
jenkins/jenkins:2.541.3-jdk21c4098086090c
openssl@3.5.5-1~deb13u1
3.5.6-1~deb13u2
2
kiwigrid/k8s-sidecar:1.30.98c06e1ba643a
openssl@3.5.1-r0
3.5.7-r0
2
kurento/kurento-media-server:latest03c0d34d0828
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
2
langgenius/dify-sandbox:0.2.009b7e8705673
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
2
library/cassandra:3.11.65aa8400b4b3b
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23+esm9
2
library/cassandra:4.1.37cbcec0086ac
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.25
2
library/elasticsearch:7.17.35e6ac15bf6a5
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm4
2
library/elasticsearch:8.19.1289729a95066a
openssl@3.0.13-0ubuntu3.7
3.0.13-0ubuntu3.11
2
library/influxdb:2.7b8d940ca9376
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
2
library/mariadb:10.8.30abf60f81588
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.25
2
library/mariadb:10.10334b315c10e5
openssl@3.0.2-0ubuntu1.13
3.0.2-0ubuntu1.25
2
library/mariadb:12.0.2:12.0-noble607835cd628b
openssl@3.0.13-0ubuntu3.6
3.0.13-0ubuntu3.11
2
library/mariadb:10.692e50059ea0a
openssl@3.0.2-0ubuntu1.26
no fix listed
2
library/mariadb:11.3.2e101f9db3191
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.25
2
library/mongo:8.0.20098862b1339f
openssl@3.0.13-0ubuntu3.9
3.0.13-0ubuntu3.11
2
library/mongo:7.0-jammy:7-jammy406a4fdca9fc
openssl@3.0.2-0ubuntu1.26
no fix listed
2
library/mongo:5.041108d183e97
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm4
2
library/mongo:4.2.358b25d51baa1
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm9
2
library/mongo:7b096b4cb9269
openssl@3.0.2-0ubuntu1.29
no fix listed
2
library/mongo:7.0b6421fd6d1c5
openssl@3.0.2-0ubuntu1.26
no fix listed
2
library/nginx:latest6e23479198b9
openssl@3.5.5-1~deb13u2
3.5.6-1~deb13u2
2
library/nginx:1.27.098f8ec75657d
openssl@3.0.13-1~deb12u1
3.0.20-1~deb12u2
2
library/nginx:1.29.49dd288848f44
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
2
library/phpmyadmin:5.2.16e75aa8f767c
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
2
library/postgres:16.109f23e02d766
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
2
library/postgres:18.11090bc3a8ccf
openssl@3.5.4-1~deb13u2
3.5.6-1~deb13u2
2
library/postgres:16.24aea012537ed
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
2
library/postgres:18.06f3e42ad37de
openssl@3.5.1-1+deb13u1
3.5.6-1~deb13u2
2
library/postgres:16.4e62fbf9d3e2b
openssl@3.0.15-1~deb12u1
3.0.20-1~deb12u2
2
library/postgres:13-alpinefb9065b6e3e2
openssl@3.5.4-r0
3.5.7-r0
2
library/python:3.7eedf63967cdb
openssl@3.0.9-1
3.0.20-1~deb12u2
2
library/rabbitmq:4.1.0-management935b3f84c1e4
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.11
2
library/rabbitmq:3.12.1-managementf020c06da226
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.25
2
library/redis:7.2.3a7cee7c8178f
openssl@3.0.11-1~deb12u2
3.0.20-1~deb12u2
2
library/redis:8.2.2f0957bcaa75f
openssl@3.0.17-1~deb12u3
3.0.20-1~deb12u2
2
library/traefik:v3.7.16b9cbca6fac4
openssl@3.5.6-r0
3.5.7-r0
2
library/wordpress:6.8.3-apache:6.8-apache30bff39330d1
openssl@3.5.4-1~deb13u1
3.5.6-1~deb13u2
2
library/zookeeper:3.9.5f258365d4882
openssl@3.0.2-0ubuntu1.26
no fix listed
2
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm16
2
locustio/locust:2.32.2a0d4b88e42c1
openssl@3.0.14-1~deb12u2
3.0.20-1~deb12u2
2
louislam/uptime-kuma:2.5.4917318f9d7be
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2
2
louislam/uptime-kuma:2.3.29aeb4e51d038
openssl@3.0.19-1~deb12u2
3.0.20-1~deb12u2
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
openssl@3.0.20-1~deb12u1
3.0.20-1~deb12u2
2
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
openssl@3.0.17-1~deb12u2
3.0.20-1~deb12u2
2
mbentley/omada-controller:4.3f4e682274bed
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm9
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
openssl@1.1.1f-1ubuntu2
1.1.1f-1ubuntu2.24+esm4
2
mesosphere/kubectl:v1.35.0-alpineea01a9387771
openssl@3.5.4-r0
3.5.7-r0
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.