StackRadar

CVE-2021-3712

High

Advisory

Published 24 Aug 2021In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.504
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,166
of 17,790 indexed, latest versions
Container images
1,128
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 1,166 of 17,790 indexed charts deploy, on 1,128 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+59 more1.0.1f-1ubuntu2.27+esm4, 1.0.2g-1ubuntu4.20+esm1, 1.1.0l-1~deb9u4, 1.1.1-1ubuntu2.1~18.04.13+2 more614
opensslapk1.1.1d-r3, 1.1.1g-r0, 1.1.1i-r0, 1.1.1j-r0+1 more1.1.1l-r0430
openssl1.0deb1.0.2l-2, 1.0.2l-2+deb9u1, 1.0.2l-2+deb9u2, 1.0.2l-2+deb9u3+11 more1.0.2n-1ubuntu5.7, 1.0.2u-1~deb9u6108
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+10 more1:1.0.2k-23.el7_9, 1:1.1.1k-5.el8_576
openssl-1_1rpm1.1.0i-14.6.1, 1.1.1d-11.6.11.1.0i-14.18.1, 1.1.1d-11.30.18
OSV records
ALPINE-CVE-2021-3712RHSA-2021:5226RHSA-2022:0064UBUNTU-CVE-2021-3712DLA-2766-1DLA-2774-1SUSE-SU-2021:2831-1SUSE-SU-2021:2966-1
Also known as
SUSE-SU-2021:2968-1, USN-5051-1, USN-5051-2, USN-5051-3

Charts affected

1,166 by stars
ChartLatestAffected imagesRadar Score
nats-account-serverwenerme0.8.11 of 1See more

nats-account-server wenerme 0.8.1

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
natsio/nats-account-server:1.0.0a3381560aab6
openssl@1.1.1k-r0
1.1.1l-r0

Open the chart page →

2,634
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
openssl@1.1.1i-r0
1.1.1l-r0

Open the chart page →

2,555
temporalwenerme0.15.12 of 13See more

temporal wenerme 0.15.1

2 of the 13 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
openssl@1.1.0j-1~deb9u1
1.1.0l-1~deb9u4
temporalio/web:1.14.033cfa863d8ce
openssl@1.1.1k-r0
1.1.1l-r0

Open the chart page →

22,665
traefikwenerme9.1.11 of 1See more

traefik wenerme 9.1.1

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
library/traefik:2.2.8f5af5a5ce17f
openssl@1.1.1g-r0
1.1.1l-r0

Open the chart page →

3,369
docker-hub-rate-limit-exporterwiremindVerified publisher0.3.01 of 1See more

docker-hub-rate-limit-exporter wiremind 0.3.0

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
viadee/docker-hub-rate-limit-exporter:version-1.52e27e3b3ee56
openssl@1.1.1i-r0
1.1.1l-r0

Open the chart page →

1,843
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
openssl@1.1.1f-1ubuntu2.24
no fix listed

Open the chart page →

6,323
nginxwiremindVerified publisher2.1.11 of 1See more

nginx wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
library/nginx:1.17-alpine763e7f0188e3
openssl@1.1.1g-r0
1.1.1l-r0

Open the chart page →

966
apicurio-registry-sqlwitcom-gmbh0.1.01 of 1See more

apicurio-registry-sql witcom-gmbh 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
openssl@1.1.1g-r0
1.1.1l-r0

Open the chart page →

3,424
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
openssl@1.1.0k-1~deb9u1
1.1.0l-1~deb9u4

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
openssl@1.1.0k-1~deb9u1
1.1.0l-1~deb9u4

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
openssl@1.1.0k-1~deb9u1
1.1.0l-1~deb9u4

Open the chart page →

702
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
openssl@1.1.1g-r0
1.1.1l-r0

Open the chart page →

1,198
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
openssl@1.1.1g-r0
1.1.1l-r0

Open the chart page →

3,023
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
openssl@1.1.0k-1~deb9u1
1.1.0l-1~deb9u4

Open the chart page →

702
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.13.2

Open the chart page →

2,464
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2021-3712.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.fips.2.1~18.04.13.2
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
no fix listed

Open the chart page →

9,250

Container images carrying it

1,128 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/salaboy/fmtok8s-agenda-service:v0.0.1-native6c5efe150958
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.fips.2.1~18.04.13.2
2
ghcr.io/salaboy/fmtok8s-c4p-service:v0.0.1-native3f7cc45fd20b
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.fips.2.1~18.04.13.2
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
openssl@1.1.1f-1ubuntu2.19
no fix listed
2
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
openssl@1.1.1g-r0
1.1.1l-r0
2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-5.el8_5
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
openssl@1:1.1.1g-18.el8_4
1:1.1.1k-5.el8_5
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
openssl@1:1.1.1g-18.el8_4
1:1.1.1k-5.el8_5
2
5200710/hadoop:3.2.3-java8092d3088a5fb
openssl@1.1.1f-1ubuntu2.20
no fix listed
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.13
1
aaionap/haproxy:1.4.089c1078a1b23
openssl@1.1.0j-1~deb9u1
openssl1.0@1.0.2r-1~deb9u1
1.1.0l-1~deb9u4
1.0.2u-1~deb9u6
1
absaoss/terraform-controller:v0.0.20ad538a1285a0
openssl@1.1.1k-r0
1.1.1l-r0
1
acockburn/appdaemon:4.0.83a93281d7e94
openssl@1.1.1k-r0
1.1.1l-r0
1
adferrand/backuppc:4.4.06fea97b02758
openssl@1.1.1g-r0
1.1.1l-r0
1
adgoal/statsd-proxy:latest75ed282ad613
openssl@1.1.1d-r3
1.1.1l-r0
1
adrianberger/fluxcd-webui:latest76848c0d2780
openssl@1.1.1k-r0
1.1.1l-r0
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.8
1
aerospike/aerospike-server:4.5.0.55bec98d46c8a
openssl@1.1.0j-1~deb9u1
1.1.0l-1~deb9u4
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.8
1
ajanvier/polr:2.3.091ac61b88c85
openssl@1.1.1j-r0
1.1.1l-r0
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
openssl@1.1.1-1ubuntu2.1~18.04.19
1.1.1-1ubuntu2.fips.2.1~18.04.13.2
1
almir/webhook:2.8.01698346f6077
openssl@1.1.1g-r0
1.1.1l-r0
1
alphayax/phpmemcachedadmin:latestc284977f027a
openssl@1.1.0f-3+deb9u2
openssl1.0@1.0.2l-2+deb9u3
1.1.0l-1~deb9u4
1.0.2u-1~deb9u6
1
alpine/k8s:1.18.16a41efe02a041
openssl@1.1.1k-r0
1.1.1l-r0
1
altinity/clickhouse-operator:0.16.1db7dde971407
openssl@1:1.0.2k-22.el7_9
1:1.0.2k-23.el7_9
1
altinity/metrics-exporter:0.16.185b4fdbae053
openssl@1:1.0.2k-22.el7_9
1:1.0.2k-23.el7_9
1
amancevice/superset:0.28.1c8c04bfe3d66
openssl@1.1.0j-1~deb9u1
openssl1.0@1.0.2r-1~deb9u1
1.1.0l-1~deb9u4
1.0.2u-1~deb9u6
1
anapsix/get-cloudflare-logs:0.6.07cf7deb20399
openssl@1.1.1g-r0
1.1.1l-r0
1
anchore/anchore-engine:v0.10.0bde9eedf639d
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-5.el8_5
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
openssl@1:1.1.1c-2.el8_1.1
1:1.1.1k-5.el8_5
1
anguda/ant-media:2.5c435285fc241
openssl@1.1.1f-1ubuntu2.17
no fix listed
1
apache/apisix:1.5-alpine228eb0edf44b
openssl@1.1.1g-r0
1.1.1l-r0
1
apache/apisix-ingress-controller:1.3.0412f92cde0b3
openssl@1.1.1k-r0
1.1.1l-r0
1
apache/couchdb:2.39f895c8ae371
openssl@1.1.0l-1~deb9u1
openssl1.0@1.0.2u-1~deb9u1
1.1.0l-1~deb9u4
1.0.2u-1~deb9u6
1
apache/iotdb:0.13.3-nodeafa47bf1692a
openssl@1.1.1f-1ubuntu2.16
no fix listed
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
openssl@1.1.1f-1ubuntu2.10
no fix listed
1
apachepulsar/pulsar:2.9.0d056c89b7131
openssl@1.1.1f-1ubuntu2.8
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
openssl@1.1.1f-1ubuntu2.10
no fix listed
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
openssl@1.1.1f-1ubuntu2.10
no fix listed
1
apache/skywalking-ui:8.9.180530f0308a5
openssl@1.1.1f-1ubuntu2.10
no fix listed
1
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
openssl@1.1.1g-r0
1.1.1l-r0
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
openssl@1:1.1.1g-15.el8_3
1:1.1.1k-5.el8_5
1
apsl/thumbor:6.7.051e2de5c2c70
openssl@1.1.0l-1~deb9u1
1.1.0l-1~deb9u4
1
aquasec/harbor-scanner-trivy:0.20.07ea4aa3d2eb6
openssl@1.1.1k-r0
1.1.1l-r0
1
aquasec/kube-hunter:1950bf607ce9308
openssl@1.1.0f-3+deb9u2
openssl1.0@1.0.2l-2+deb9u3
1.1.0l-1~deb9u4
1.0.2u-1~deb9u6
1
argoproj/argocd:v1.2.1b0230853357d
openssl@1.1.0k-1~deb9u1
openssl1.0@1.0.2s-1~deb9u1
1.1.0l-1~deb9u4
1.0.2u-1~deb9u6
1
arilot/docker-bitcoind:0.17.127a4f7e0f9f1
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm1
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
openssl@1.1.1f-1ubuntu2.20
no fix listed
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
openssl@1.1.1f-1ubuntu2.16
no fix listed
1
assistiot/sdn_controller:2.4.0ea254b6d8a31
openssl@1.1.1f-1ubuntu2.16
no fix listed
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
openssl@1.1.1f-1ubuntu2.17
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.