StackRadar

CVE-2022-4304

Medium

Advisory

Published 7 Feb 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.162
97th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,060
of 17,787 indexed, latest versions
Container images
1,063
deployed by those charts
Fix available
3 of 4
affected packages

Security update for openssl-1_1

Carried by container images the latest versions of 1,060 of 17,787 indexed charts deploy, on 1,063 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1k-r0, 1.1.1l-r0, 1.1.1l-r7, 1.1.1l-r8+9 more1.1.1t-r0, 3.0.8-r0566
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+55 more1.1.1-1ubuntu2.1~18.04.21, 1.1.1-1ubuntu2.fips.2.1~18.04.21, 1.1.1f-1ubuntu2.17, 1.1.1f-1ubuntu2.fips.17+1 more490
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 moreno fix listed15
openssl-1_1rpm1.1.0i-14.6.11.1.0i-150100.14.56.17
OSV records
ALPINE-CVE-2022-4304UBUNTU-CVE-2022-4304SUSE-SU-2023:2622-1
Also known as
USN-5844-1

Charts affected

1,060 by stars
ChartLatestAffected imagesRadar Score
mrtg-backendwitcom-gmbh0.7.01 of 2See more

mrtg-backend witcom-gmbh 0.7.0

1 of the 2 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
openssl@1.1.1l-r7
1.1.1t-r0

Open the chart page →

2,616
workadventureworkadventure1.1.02 of 9See more

workadventure workadventure 1.1.0

2 of the 9 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
openssl@1.1.1n-r0
1.1.1t-r0
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
openssl@1.1.1n-r0
1.1.1t-r0

Open the chart page →

16,083
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
openssl@1.1.1l-r0
1.1.1t-r0

Open the chart page →

2,535
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
openssl@1.1.1n-r0
1.1.1t-r0

Open the chart page →

1,752
pgbounceryasn77-pgbouncer0.0.81 of 1See more

pgbouncer yasn77-pgbouncer 0.0.8

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
openssl@1.1.1q-r0
1.1.1t-r0

Open the chart page →

1,152
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1t-r0

Open the chart page →

7,972
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.21

Open the chart page →

2,464
zahori-serverzahoriVerified publisher1.0.11 of 2See more

zahori-server zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.8-r0

Open the chart page →

5,847
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1t-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.21
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17

Open the chart page →

9,250

Container images carrying it

1,063 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
openssl@1.1.1-1ubuntu2.1~18.04.13
1.1.1-1ubuntu2.1~18.04.21
1
linuxserver/jellyfin:10.7.72427dde159a2
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.17
1
linuxserver/lazylibrarian:version-1152df82f93d2560e233
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.21
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
openssl@1.1.0g-2ubuntu4.3
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.21
no fix listed
1
linuxserver/plex:1.25.24a13ced2326c
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
linuxserver/unifi-controller:8.0.240ae315a3a456
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.fips.17
1
linuxserver/unifi-controller:7.3.83ab105cc50322
openssl@1.1.1f-1ubuntu2.18
1.1.1f-1ubuntu2.fips.17
1
lissy93/dashy:2.0.51991f7be5ed0
openssl@1.1.1l-r7
1.1.1t-r0
1
litmuschaos/curl:2.6.00f3ea466cb9e
openssl@1.1.1k-r0
1.1.1t-r0
1
litmuschaos/mongo:4.2.899961210d467
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.21
1
liukunup/jmeter:5.59c079617a81b
openssl@1.1.1q-r0
1.1.1t-r0
1
livekit/livekit-server:v1.0.08391fd1b834f
openssl@1.1.1n-r0
1.1.1t-r0
1
loftsh/directclusterendpoint:1.14.0310cc7d690f5
openssl@1.1.1k-r0
1.1.1t-r0
1
logiqai/flash-discovery:v2.0.3f5b551bca98e
openssl@1.1.1s-r0
1.1.1t-r0
1
logiqai/tracing:v1.35.2-lq1-c3e149f6781b8
openssl@1.1.1q-r0
1.1.1t-r0
1
logiqai/tracing:v1.35.2-lq1-q4a746ff04d6a
openssl@1.1.1q-r0
1.1.1t-r0
1
longhornio/longhorn-manager:v1.2.3dca34321452c
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
longhornio/longhorn-manager:v1.1.1ede61fe2a472
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.21
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lukasreining/open-api-schema-collector:0.1.050e021c42e33
openssl@3.0.7-r0
3.0.8-r0
1
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-assure-identity:2.0.0147854a3c916
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-audit:2.0.079428add7f38
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-binary-storage:2.0.053decadc102d
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-deployment:2.0.0ea8110886d38
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-management-api:2.0.0b9a23345eabd
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
lumenvox/cloud-voice-verifier:2.0.014170ad34903
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
maksymhencha/educative-helm-bookapp:0.0.27f096a681192
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.17
1
maptiler/server:4.8.07e206140057b
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.17
1
marcinkujawski/flask-app:2.0.1a455017b9d0e
openssl@1.1.1l-r7
1.1.1t-r0
1
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1t-r0
1
mattermost/mattermost-app-chaosengine:c153e436268954edd67
openssl@1.1.1l-r0
1.1.1t-r0
1
mediagis/nominatim:3.7c15e941485ef
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.17
1
metacontrollerio/metacontroller:v2.1.10336993b88e4
openssl@1.1.1l-r7
1.1.1t-r0
1
metacontrollerio/metacontroller:v2.0.4897c9601d2cc
openssl@1.1.1k-r0
1.1.1t-r0
1
micross/hyperapi:0.2.435f59bc3cd64
openssl@1.1.1l-r7
1.1.1t-r0
1
milesmcc/shynet:v0.12.0e821e31140f7
openssl@1.1.1l-r0
1.1.1t-r0
1
milvusdb/milvus:v2.2.13a3a55e1c1497
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.17
1
miniflux/miniflux:2.0.36e2fb990dae74
openssl@1.1.1l-r7
1.1.1t-r0
1
mintproject/data-catalog-db:9be70359feabe03ed55bfdbf92c20a7e43ab928b9bf26fedd848
openssl@1.1.1s-r0
1.1.1t-r0
1
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.17
1
mintproject/mint-ui-lit:246a8771e8c043f8c1840d3c32262d3d6a9a553208c1a13c3397
openssl@1.1.1s-r0
1.1.1t-r0
1
mintproject/model-catalog-explorer:0b2f9f0a9124076aeb492add2f123d0757066f6bdeb80c93b4a9
openssl@1.1.1s-r0
1.1.1t-r0
1
misskey/misskey:12.110.1e08b7c478093
openssl@1.1.1n-r0
1.1.1t-r0
1
moby/buildkit:v0.10.0c2aeafaed434
openssl@1.1.1l-r7
1.1.1t-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.