StackRadar

CVE-2022-4304

Medium

Advisory

Published 7 Feb 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.162
97th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,058
of 17,787 indexed, latest versions
Container images
1,060
deployed by those charts
Fix available
3 of 4
affected packages

Security update for openssl-1_1

Carried by container images the latest versions of 1,058 of 17,787 indexed charts deploy, on 1,060 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1k-r0, 1.1.1l-r0, 1.1.1l-r7, 1.1.1l-r8+9 more1.1.1t-r0, 3.0.8-r0563
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+55 more1.1.1-1ubuntu2.1~18.04.21, 1.1.1-1ubuntu2.fips.2.1~18.04.21, 1.1.1f-1ubuntu2.17, 1.1.1f-1ubuntu2.fips.17+1 more490
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 moreno fix listed15
openssl-1_1rpm1.1.0i-14.6.11.1.0i-150100.14.56.17
OSV records
ALPINE-CVE-2022-4304UBUNTU-CVE-2022-4304SUSE-SU-2023:2622-1
Also known as
USN-5844-1

Charts affected

1,058 by stars
ChartLatestAffected imagesRadar Score
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
openssl@1.1.1l-r0
1.1.1t-r0

Open the chart page →

2,534
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
openssl@1.1.1n-r0
1.1.1t-r0

Open the chart page →

1,752
pgbounceryasn77-pgbouncer0.0.81 of 1See more

pgbouncer yasn77-pgbouncer 0.0.8

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
openssl@1.1.1q-r0
1.1.1t-r0

Open the chart page →

1,152
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1t-r0

Open the chart page →

7,972
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.21

Open the chart page →

2,458
zahori-serverzahoriVerified publisher1.0.11 of 2See more

zahori-server zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.8-r0

Open the chart page →

5,846
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1t-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.21
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17

Open the chart page →

9,207

Container images carrying it

1,060 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
openssl@1.0.2g-1ubuntu4.15
no fix listed
2
listmonk/listmonk:v2.1.0d2eac77ddfad
openssl@1.1.1l-r7
1.1.1t-r0
2
mbentley/omada-controller:4.3f4e682274bed
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.21
2
mesosphere/kommander:6.100.13917e82333a9
openssl@1.1.1l-r0
1.1.1t-r0
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
openssl@1.1.1f-1ubuntu2
1.1.1f-1ubuntu2.17
2
metabase/metabase:v0.45.21fb334ce4820
openssl@3.0.7-r2
3.0.8-r0
2
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
openssl@1.1.1n-r0
1.1.1t-r0
2
natsio/nats-account-server:1.0.0a3381560aab6
openssl@1.1.1k-r0
1.1.1t-r0
2
natsio/nats-box:0.11.09fbf7bf684e4
openssl@1.1.1n-r0
1.1.1t-r0
2
natsio/nats-server-config-reloader:0.7.2911ce7ed2f55
openssl@1.1.1q-r0
1.1.1t-r0
2
natsio/nats-server-config-reloader:0.10.1e414cc7e6f59
openssl@3.0.7-r2
3.0.8-r0
2
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.21
2
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.17
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
openssl@1.0.2g-1ubuntu4.14
no fix listed
2
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.8
2
openebs/node-disk-operator:2.1.06afe2123c457
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.8
2
openebs/provisioner-localpv:3.5.0aea39e49bb97
openssl@1.1.1q-r0
1.1.1t-r0
2
pecan/db:latest9a1cdc3a9ccb
openssl@1.1.1l-r7
1.1.1t-r0
2
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.8
2
privatebin/pdo:1.3.500466418121c
openssl@1.1.1n-r0
1.1.1t-r0
2
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
openssl@1.1.1l-r7
1.1.1t-r0
2
shahanafarooqui/rtl:0.13.3e2195188a451
openssl@3.0.7-r0
3.0.8-r0
2
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.17
2
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.fips.17
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
openssl@3.0.2-0ubuntu1.5
3.0.2-0ubuntu1.8
2
wurstmeister/zookeeper:latest7a7fd44a7210
openssl@1.0.1f-1ubuntu2.5
no fix listed
2
xelalex/dregsy:0.4.3574054e1c417
openssl@1.1.1o-r0
1.1.1t-r0
2
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
openssl@1.0.2g-1ubuntu4.8
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.8
2
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
openssl@3.0.7-r0
3.0.8-r0
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.8
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.17
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.17
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.17
2
ghcr.io/kvaps/kubernetes-tools:v0.13.4920867eb0bf8
openssl@1.1.1l-r0
1.1.1t-r0
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.21
2
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
openssl@1.1.1l-r7
1.1.1t-r0
2
ghcr.io/miguelndecarvalho/speedtest-exporter:v3.5.4f1064d49124c
openssl@1.1.1q-r0
1.1.1t-r0
2
ghcr.io/salaboy/fmtok8s-agenda-service:v0.0.1-native6c5efe150958
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.fips.2.1~18.04.21
2
ghcr.io/salaboy/fmtok8s-c4p-service:v0.0.1-native3f7cc45fd20b
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.fips.2.1~18.04.21
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
openssl@3.0.2-0ubuntu1.2
3.0.2-0ubuntu1.8
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.fips.17
2
quay.io/frrouting/frr:8.4.254f9a7b9e543
openssl@1.1.1q-r0
1.1.1t-r0
2
quay.io/groundcover/grafana:9.3.18c65b333a3d3
openssl@1.1.1q-r0
1.1.1t-r0
2
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
openssl@1.1.1n-r0
1.1.1t-r0
2
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
openssl@1.1.1n-r0
1.1.1t-r0
2
quay.io/iver-wharf/wharf-provider-azuredevops:v3.0.12fe7e4dcffdf
openssl@1.1.1n-r0
1.1.1t-r0
2
quay.io/iver-wharf/wharf-provider-github:v3.0.177a22cb45c2a
openssl@1.1.1n-r0
1.1.1t-r0
2
quay.io/iver-wharf/wharf-provider-gitlab:v2.0.1d7079e0890da
openssl@1.1.1n-r0
1.1.1t-r0
2
quay.io/iver-wharf/wharf-web:v1.6.2dc5d1ed91c26
openssl@1.1.1n-r0
1.1.1t-r0
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.