StackRadar

CVE-2022-3996

High

Advisory

Published 13 Dec 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.012
67th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
83
of 17,781 indexed, latest versions
Container images
80
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 83 of 17,781 indexed charts deploy, on 80 images.

Affected packageAffected versionsFixed inImages
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+2 more3.0.2-0ubuntu1.952
opensslapk3.0.7-r03.0.7-r228
OSV records
ALPINE-CVE-2022-3996UBUNTU-CVE-2022-3996
Also known as
USN-6039-1

Charts affected

83 by stars
ChartLatestAffected imagesRadar Score
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9

Open the chart page →

12,076
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
openssl@3.0.2-0ubuntu1.5
3.0.2-0ubuntu1.9

Open the chart page →

19,503
radarrgeek-cookbookVerified publisher16.3.21 of 1See more

radarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9

Open the chart page →

10,379
rtorrent-rutorrentgeek-cookbookVerified publisher1.1.21 of 1See more

rtorrent-rutorrent geek-cookbook 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

4,232
eoloplanthttpd-eoloplant0.1.01 of 7See more

eoloplant httpd-eoloplant 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.9

Open the chart page →

32,205
prometheushuangchengwu-helm-chart0.1.02 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
apache/skywalking-ui:9.2.0295f1dc87d98
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9

Open the chart page →

16,401
mvfi4trustVerified publisher1.1.21 of 1See more

mvf i4trust 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
wistefan/mvf:lateste0887302b2d8
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9

Open the chart page →

7,144
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9

Open the chart page →

7,862
k10appk10app0.2.12 of 11See more

k10app k10app 0.2.1

2 of the 11 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
ghcr.io/k10app/businit:latest94c9a3e799c2
openssl@3.0.7-r0
3.0.7-r2
ghcr.io/k10app/order:lateste1017d0dbd78
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

10,546
kiaekiae0.1.61 of 9See more

kiae kiae 0.1.6

1 of the 9 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
istio/pilot:1.15.2db08d6963975
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9

Open the chart page →

19,168
openebskubeblocksVerified publisher3.10.02 of 3See more

openebs kubeblocks 3.10.0

2 of the 3 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9
openebs/node-disk-operator:2.1.06afe2123c457
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9

Open the chart page →

10,489
iomeshkubesphere-stable1.1.02 of 25See more

iomesh kubesphere-stable 1.1.0

2 of the 25 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
iomesh/blockdevice-monitor:v0.1.0d86dab5611a7
openssl@3.0.7-r0
3.0.7-r2
iomesh/blockdevice-monitor-prober:v0.1.0584dbe19db7e
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

48,665
IOMeshkubesphere-stable1.2.02 of 25See more

IOMesh kubesphere-stable 1.2.0

2 of the 25 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
iomesh/blockdevice-monitor:v0.2.1376577ed98ac
openssl@3.0.7-r0
3.0.7-r2
iomesh/blockdevice-monitor-prober:v0.2.1026a1d87f6e9
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

46,341
chirpstackmosquitto-helm-chart0.5.02 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

2 of the 8 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
chirpstack/chirpstack-application-server:3fb7667fe037f
openssl@3.0.7-r0
3.0.7-r2
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

25,933
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9

Open the chart page →

12,791
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9

Open the chart page →

12,791
db-backupoleds-helm-chartsVerified publisher0.1.01 of 1See more

db-backup oleds-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
oled01/db-backup:0.1.06302fd2b5333
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9

Open the chart page →

8,090
p4p40.1.01 of 7See more

p4 p4 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.9

Open the chart page →

27,537
postgresql-backupphntom0.1.91 of 1See more

postgresql-backup phntom 0.1.9

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
phntom/postgresql-backup-s3:1.0.2249b6488f618b
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

2,556
spring-boot-openshiftpiominVerified publisher0.3.111 of 1See more

spring-boot-openshift piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9

Open the chart page →

7,576
kratos-selfservice-ui-noderadar-baseVerified publisher0.43.11 of 1See more

kratos-selfservice-ui-node radar-base 0.43.1

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
oryd/kratos-selfservice-ui-node:v0.13.0-20d454c21c11bc
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

2,969
argocd-certificate-refreshromholdings0.10.81 of 1See more

argocd-certificate-refresh romholdings 0.10.8

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9

Open the chart page →

12,949
fmtok8s-conference-chartsalaboy0.1.41 of 6See more

fmtok8s-conference-chart salaboy 0.1.4

1 of the 6 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
openssl@3.0.2-0ubuntu1.2
3.0.2-0ubuntu1.9

Open the chart page →

16,101
fmtok8s-frontendsalaboy0.1.31 of 1See more

fmtok8s-frontend salaboy 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
openssl@3.0.2-0ubuntu1.2
3.0.2-0ubuntu1.9

Open the chart page →

8,033
service-exampleservice-example-10.1.01 of 7See more

service-example service-example-1 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
natsio/nats-box:0.13.3c507bd7e3831
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

9,022
sealed-secrets-websoftonic3.0.51 of 1See more

sealed-secrets-web softonic 3.0.5

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
ghcr.io/bakito/sealed-secrets-web:v3.0.574aff24d4b97
openssl@3.0.7-r0
3.0.7-r2

Open the chart page →

946
atlassian-confluencesomeblackmagic3.4.11 of 1See more

atlassian-confluence someblackmagic 3.4.1

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
atlassian/confluence-server:7.10.03b9222ab32ef
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9

Open the chart page →

13,605
trinostatcan1.23.41 of 2See more

trino statcan 1.23.4

1 of the 2 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
trinodb/trino:405ee80ab5eeab2
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9

Open the chart page →

13,767
elasticsearchsvtech-public-helm-charts1.0.01 of 1See more

elasticsearch svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
openssl@3.0.2-0ubuntu1.5
3.0.2-0ubuntu1.9

Open the chart page →

12,048
preparationsvtech-public-helm-charts1.0.01 of 1See more

preparation svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
openssl@3.0.2-0ubuntu1.5
3.0.2-0ubuntu1.9

Open the chart page →

12,048
tensor_apptensor-app0.2.22 of 3See more

tensor_app tensor-app 0.2.2

2 of the 3 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
openssl@3.0.2-0ubuntu1
3.0.2-0ubuntu1.9
xeladock/nginx2:latestc259a67b1dff
openssl@3.0.2-0ubuntu1
3.0.2-0ubuntu1.9

Open the chart page →

17,461
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.9

Open the chart page →

6,232
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2022-3996.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9
openebs/node-disk-operator:2.1.06afe2123c457
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9

Open the chart page →

10,489

Container images carrying it

80 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
sysintelligent/hello-app:2.0.177fb30df847d
openssl@3.0.7-r0
3.0.7-r2
1
thesisrobot/bitcoind:v23.016b368e4d52c
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
thmmniii/fbs-core:v1.27.15438517d9fc2
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.9
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
openssl@3.0.2-0ubuntu1.2
3.0.2-0ubuntu1.9
1
trinodb/trino:405ee80ab5eeab2
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9
1
vaultwarden/server:1.27.0-alpine7cd450642c54
openssl@3.0.7-r0
3.0.7-r2
1
wistefan/mvf:lateste0887302b2d8
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9
1
xeladock/mysql_dns:latest4baf531453f1
openssl@3.0.2-0ubuntu1
3.0.2-0ubuntu1.9
1
xeladock/nginx2:latestc259a67b1dff
openssl@3.0.2-0ubuntu1
3.0.2-0ubuntu1.9
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
ghcr.io/bakito/sealed-secrets-web:v3.0.574aff24d4b97
openssl@3.0.7-r0
3.0.7-r2
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.9
1
ghcr.io/k10app/businit:latest94c9a3e799c2
openssl@3.0.7-r0
3.0.7-r2
1
ghcr.io/k10app/order:lateste1017d0dbd78
openssl@3.0.7-r0
3.0.7-r2
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
ghcr.io/liubin/toml-cli:v0.0.734a1da9f0f83
openssl@3.0.7-r0
3.0.7-r2
1
ghcr.io/pascaliske/unbound:0.1.09009fbd2ef16
openssl@3.0.7-r0
3.0.7-r2
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.9
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.9
1
quay.io/groundcover/victoria-metrics:v1.85.380ddeb90d18d
openssl@3.0.7-r0
3.0.7-r2
1
quay.io/wi_stefan/dsba-db-migrations:0.0.125b986cd14a08
openssl@3.0.7-r0
3.0.7-r2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.