StackRadar

CVE-2022-2097

Medium

Advisory

Published 5 Jul 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.047
91st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
862
of 17,787 indexed, latest versions
Container images
849
deployed by those charts
Fix available
3 of 3
affected packages

libopenssl-1_1-devel-1.1.1q-1.1 on GA media

Carried by container images the latest versions of 862 of 17,787 indexed charts deploy, on 849 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1i-r0, 1.1.1j-r0, 1.1.1k-r0, 1.1.1l-r0+6 more1.1.1q-r0457
openssldeb1.1.0g-2ubuntu4.1, 1.1.0g-2ubuntu4.3, 1.1.1-1ubuntu2.1~18.04.4, 1.1.1-1ubuntu2.1~18.04.5+36 more1.1.1-1ubuntu2.1~18.04.20, 1.1.1-1ubuntu2.fips.2.1~18.04.20, 1.1.1f-1ubuntu2.16, 1.1.1f-1ubuntu2.fips.16+1 more382
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-150100.14.36.1, 1.1.1d-150200.11.51.1, 1.1.1q-1.110
OSV records
ALPINE-CVE-2022-2097UBUNTU-CVE-2022-2097openSUSE-SU-2024:12179-1SUSE-SU-2022:2311-1SUSE-SU-2022:2328-1
Also known as
USN-5502-1

Charts affected

862 by stars
ChartLatestAffected imagesRadar Score
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.16

Open the chart page →

6,323
kafka-connect-uiwitcom-gmbh0.5.01 of 2See more

kafka-connect-ui witcom-gmbh 0.5.0

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.3.08c21390be87d
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

2,506
mrtg-backendwitcom-gmbh0.7.01 of 2See more

mrtg-backend witcom-gmbh 0.7.0

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
openssl@1.1.1l-r7
1.1.1q-r0

Open the chart page →

2,616
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

2,643
workadventureworkadventure1.1.02 of 9See more

workadventure workadventure 1.1.0

2 of the 9 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
openssl@1.1.1n-r0
1.1.1q-r0
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

16,083
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

2,535
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

1,752
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

7,972
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.20

Open the chart page →

2,464
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
edoburu/pgbouncer:1.12.0abc0a4123a81
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

3,697
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1q-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.20
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.16

Open the chart page →

9,250

Container images carrying it

849 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
wazuh/wazuh-manager:4.4.121994f40e0da
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.fips.16
1
weetmuts/wmbusmeters:release-1.4.1-amd64a79967400c61
openssl@1.1.1k-r0
1.1.1q-r0
1
wener/frpc:v0.37.0cc9fd4da44c0
openssl@1.1.1l-r0
1.1.1q-r0
1
wener/frps:v0.37.05c92cc9e8597
openssl@1.1.1l-r0
1.1.1q-r0
1
wener/samba:4.13.39a42bae466d4
openssl@1.1.1i-r0
1.1.1q-r0
1
wistefan/vcbackend:0.0.13bd436164b51
openssl@1.1.1o-r0
1.1.1q-r0
1
woojoong/wowza:latestec230db19652
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.20
1
xeladock/mysql_dns:latest4baf531453f1
openssl@3.0.2-0ubuntu1
3.0.2-0ubuntu1.6
1
xeladock/nginx2:latestc259a67b1dff
openssl@3.0.2-0ubuntu1
3.0.2-0ubuntu1.6
1
xeotek/kadeck:4.2.94c6b04d9ce55
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.fips.16
1
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.20
1
yandex/clickhouse-server:latest1cbf75aabe1e
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.16
1
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.16
1
yandex/clickhouse-server:19.17ab1738a64b70
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.20
1
yandex/clickhouse-server:19.14ccf9c2b5e3f2
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.20
1
yandex/clickhouse-server:19.16d210dc69321e
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.20
1
ymuski/skooner:latest67819ca511b5
openssl@1.1.1n-r0
1.1.1q-r0
1
yuzutech/kroki:0.17.0192b7b27c857
openssl@1.1.1l-r7
1.1.1q-r0
1
yuzutech/kroki-blockdiag:0.16.07c1917c66d96
openssl@1.1.1l-r0
1.1.1q-r0
1
yuzutech/kroki-bpmn:0.16.0bd629239a64e
openssl@1.1.1l-r0
1.1.1q-r0
1
yuzutech/kroki-excalidraw:0.16.015c9eef47a62
openssl@1.1.1l-r0
1.1.1q-r0
1
yuzutech/kroki-mermaid:0.16.07acc8fe7caba
openssl@1.1.1l-r0
1.1.1q-r0
1
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.16
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.16
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.16
1
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.20
1
zeetdev/tailscale-relay:v1.24.21967aa2840b6
openssl@1.1.1n-r0
1.1.1q-r0
1
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1q-r0
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.20
1
gcr.io/google-samples/microservices-demo/checkoutservice:v0.2.30fad1066de77
openssl@1.1.1j-r0
1.1.1q-r0
1
gcr.io/google-samples/microservices-demo/frontend:v0.2.3ca5c0f0771c8
openssl@1.1.1j-r0
1.1.1q-r0
1
gcr.io/google-samples/microservices-demo/productcatalogservice:v0.2.35a4a0e54c6d0
openssl@1.1.1j-r0
1.1.1q-r0
1
gcr.io/google-samples/microservices-demo/shippingservice:v0.2.30cb1707fc503
openssl@1.1.1j-r0
1.1.1q-r0
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.16
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
openssl@1.1.1f-1ubuntu2.4
1.1.1f-1ubuntu2.16
1
gcr.io/kubecost1/cost-model:prod-1.81.067f4f162da8d
openssl@1.1.1k-r0
1.1.1q-r0
1
gcr.io/kubecost1/cost-model:prod-1.82.2989a60847416
openssl@1.1.1k-r0
1.1.1q-r0
1
gcr.io/kubecost1/frontend:prod-1.81.096dfb19838b8
openssl@1.1.1j-r0
1.1.1q-r0
1
gcr.io/kubecost1/frontend:prod-1.82.2ba66607c947c
openssl@1.1.1k-r0
1.1.1q-r0
1
gcr.io/kubecost1/server:prod-1.82.22b1a3d08caac
openssl@1.1.1k-r0
1.1.1q-r0
1
gcr.io/kubecost1/server:prod-1.81.0a348db3e4d74
openssl@1.1.1k-r0
1.1.1q-r0
1
gcr.io/ml-pipeline/metadata-envoy:2.3.0e8e263a919ff
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.16
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
openssl@1.1.1l-r7
1.1.1q-r0
1
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.20
1
ghcr.io/advplyr/audiobookshelf:2.0.3140aed2752c3
openssl@1.1.1n-r0
1.1.1q-r0
1
ghcr.io/alekc/kpubber:v0.0.2a462d5797e14
openssl@1.1.1l-r0
1.1.1q-r0
1
ghcr.io/alexanderbabel/database-s3-backup:1.3.33191b771a6f2
openssl@1.1.1l-r0
1.1.1q-r0
1
ghcr.io/andylibrian/terjang:latest20a46b199247
openssl@1.1.1l-r0
1.1.1q-r0
1
ghcr.io/angelnu/chirpstack-packet-multiplexer:latest0c84c2d71006
openssl@1.1.1i-r0
1.1.1q-r0
1
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
openssl@1.1.1l-r7
1.1.1q-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.