StackRadar

CVE-2023-1255

Medium

Advisory

Published 20 Apr 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.010
59th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
222
of 17,781 indexed, latest versions
Container images
218
deployed by those charts
Fix available
2 of 3
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 222 of 17,781 indexed charts deploy, on 218 images.

Affected packageAffected versionsFixed inImages
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+1 more3.0.8-r4136
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+4 more3.0.2-0ubuntu1.10, 3.0.2-0ubuntu1.10+Fips180
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
OSV records
ALPINE-CVE-2023-1255UBUNTU-CVE-2023-1255
Also known as
USN-6119-1

Charts affected

222 by stars
ChartLatestAffected imagesRadar Score
trinostatcan1.23.41 of 2See more

trino statcan 1.23.4

1 of the 2 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
trinodb/trino:405ee80ab5eeab2
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.10

Open the chart page →

13,767
elasticsearchsvtech-public-helm-charts1.0.01 of 1See more

elasticsearch svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
openssl@3.0.2-0ubuntu1.5
3.0.2-0ubuntu1.10

Open the chart page →

12,048
preparationsvtech-public-helm-charts1.0.01 of 1See more

preparation svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
openssl@3.0.2-0ubuntu1.5
3.0.2-0ubuntu1.10

Open the chart page →

12,048
tensor_apptensor-app0.2.22 of 3See more

tensor_app tensor-app 0.2.2

2 of the 3 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
openssl@3.0.2-0ubuntu1
3.0.2-0ubuntu1.10
xeladock/nginx2:latestc259a67b1dff
openssl@3.0.2-0ubuntu1
3.0.2-0ubuntu1.10

Open the chart page →

17,461
vehicle-dashboardtest-vehi-dash0.1.01 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1

Open the chart page →

20,270
thanhvt27-lab-k8sthanh-vtVerified publisher0.1.41 of 5See more

thanhvt27-lab-k8s thanh-vt 0.1.4

1 of the 5 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
pysga1996/python-redis-web:latestfdeec30ad482
openssl@3.0.8-r3
3.0.8-r4

Open the chart page →

4,661
nfs-servertranhailongVerified publisher0.1.21 of 1See more

nfs-server tranhailong 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
tranhailong/nfs-server:4.2-2-gcsfuse028662749be2
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

2,323
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
library/postgres:15.2-alpined9c304353c03
openssl@3.0.8-r3
3.0.8-r4

Open the chart page →

3,164
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
nodejs@20.11.1-1nodesource1
openssl@3.0.2-0ubuntu1.10
no fix listed
3.0.2-0ubuntu1.10+Fips1

Open the chart page →

9,347
websitewaldo-visionVerified publisher0.33.02 of 2See more

website waldo-vision 0.33.0

2 of the 2 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
openssl@3.0.8-r3
3.0.8-r4
ghcr.io/waldo-vision/web:v0.3.65bbc7647df07
openssl@3.0.8-r3
3.0.8-r4

Open the chart page →

3,474
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
wallarm/ingress-tarantool:4.6.0-1ba00516618ea
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

11,405
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.10

Open the chart page →

6,232
generic-webhookwebhooks0.1.11 of 1See more

generic-webhook webhooks 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
ghcr.io/thecatlady/webhook:2.8.0f04718704dab
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

2,030
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.10
openebs/node-disk-operator:2.1.06afe2123c457
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.10

Open the chart page →

10,489
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
nodejs@20.15.0-1nodesource1
no fix listed

Open the chart page →

14,100
oauth2xdVerified publisher1.0.01 of 1See more

oauth2 xd 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
lishimeng/hufu:v1.2.13d5752dac834
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

2,007
owlxdVerified publisher0.5.12 of 2See more

owl xd 0.5.1

2 of the 2 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
lishimeng/owl-console:v0.11.2c79a67657baf
openssl@3.0.8-r0
3.0.8-r4
lishimeng/owl-messager:v0.11.23d00485e64dc
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

3,880
passportxdVerified publisher0.2.162 of 2See more

passport xd 0.2.16

2 of the 2 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
lishimeng/passport:v0.2.163e7d05ded625
openssl@3.0.8-r0
3.0.8-r4
lishimeng/passport-profile:v0.2.160970dfe5dc8f
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

3,974
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
lishimeng/tabby:v1.0.48145c3dc83c8
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

7,673
treexdVerified publisher0.1.101 of 1See more

tree xd 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
lishimeng/tree:v0.2.89b2f8be6c7d3
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

1,997
zooxdVerified publisher0.4.01 of 1See more

zoo xd 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
lishimeng/zoo:v0.4.0e0b8d2d8ca28
openssl@3.0.8-r0
3.0.8-r4

Open the chart page →

1,955
zahori-serverzahoriVerified publisher1.0.12 of 2See more

zahori-server zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-1255.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.8-r4
zahoriaut/zahori-server:0.1.17b2de13916f3e
openssl@3.0.8-r3
3.0.8-r4

Open the chart page →

5,846

Container images carrying it

218 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ciscolabs/msm-nc:0710202336d02faad958
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.10
1
coldatom/containers-security-api:latesteae9e82da080
openssl@3.0.8-r3
3.0.8-r4
1
coldatom/containers-security-front:latest7c2fbbb41bcf
openssl@3.0.8-r0
3.0.8-r4
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
openssl@3.0.7-r0
3.0.8-r4
1
danny1dockerhub/nodejswebapp:lateste434683fcc89
openssl@3.0.8-r3
3.0.8-r4
1
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
deepflowce/deepflow-agent:v6.2.6.529332fee7fc2
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.10
1
deluan/navidrome:0.49.311a24da08977
openssl@3.0.8-r0
3.0.8-r4
1
devopstales/trivy-operator:2.575136aa7a26e
openssl@3.0.7-r2
3.0.8-r4
1
dnsforge/xteve:latest4d9a685c8c28
openssl@3.0.7-r2
3.0.8-r4
1
dongjiang1989/ns-node-affinity:latest451f7823723c
openssl@3.0.8-r3
3.0.8-r4
1
dremio/dremio-oss:24.1.080ed2e3b7c43
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
drpcorg/dshackle:0.54.08858fae1859d
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
dtzar/helm-kubectl:3.11.2a1041bb0f1d1
openssl@3.0.8-r0
3.0.8-r4
1
duck1123/cert-downloader:latest0e29f19fa67c
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
duck1123/lnd-fileserver:latest9d6fb247b714
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
ethpandaops/blobscan-indexer:latestc58eb9ffe446
openssl@3.0.7-r2
3.0.8-r4
1
evgkrsk/postgres-controller:0.6.237f0e1f435c3
openssl@3.0.7-r2
3.0.8-r4
1
fedodo/fedodo.be.activitypub:14728dada8e3216
openssl@3.0.8-r3
3.0.8-r4
1
fedodo/fedodo.be.auth:208f8eb7a1207e
openssl@3.0.8-r3
3.0.8-r4
1
felipecs8/app-movies-series:v14e51693fcdf5
openssl@3.0.8-r3
3.0.8-r4
1
felipecs8/qrcode-generator:v1d5f4f17cb066
openssl@3.0.8-r0
3.0.8-r4
1
flanksource/apm-hub:v0.0.471dacc3195bf9
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.8-r4
1
folioci/mod-data-import-converter-storage:latest3028f333778f
openssl@3.0.7-r2
3.0.8-r4
1
gethue/hue:latest7d5c1b9f8a79
nodejs@24.13.1-1nodesource1
no fix listed
1
glasskube/operator:0.12.2be5133100d63
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
grafana/grafana:9.4.71a359d92f40e
openssl@3.0.8-r0
3.0.8-r4
1
grafana/grafana:9.5.239c849cebccc
openssl@3.0.8-r3
3.0.8-r4
1
hashicorp/vault-k8s:1.2.14500e988b7ce
openssl@3.0.8-r3
3.0.8-r4
1
hashicorp/waypoint:0.11.397d521a27498
openssl@3.0.7-r0
3.0.8-r4
1
hasura/graphql-engine:v2.34.0-ce0111b0204136
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
hivemq/hivemq-operator:4.7.10241d6a8e1963
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.10
1
iomesh/blockdevice-monitor:v0.2.1376577ed98ac
openssl@3.0.7-r0
3.0.8-r4
1
iomesh/blockdevice-monitor:v0.1.0d86dab5611a7
openssl@3.0.7-r0
3.0.8-r4
1
iomesh/blockdevice-monitor-prober:v0.2.1026a1d87f6e9
openssl@3.0.7-r0
3.0.8-r4
1
iomesh/blockdevice-monitor-prober:v0.1.0584dbe19db7e
openssl@3.0.7-r0
3.0.8-r4
1
istio/operator:1.18.270f9d1fe5fff
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
istio/pilot:1.16.0ac0284d75ec9
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.10
1
istio/pilot:1.17.1ce9d87606701
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.10
1
istio/pilot:1.15.2db08d6963975
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.10
1
josh5/unmanic:0.2.64d49c4816260
nodejs@20.11.1-1nodesource1
openssl@3.0.2-0ubuntu1.10
no fix listed
3.0.2-0ubuntu1.10+Fips1
1
kubesec/kubesec:v2.13.0c0f3b0673578
openssl@3.0.8-r0
3.0.8-r4
1
kubevious/guard:1.2.19bf567704de2
openssl@3.0.8-r3
3.0.8-r4
1
kubevious/workload-operator:1.0.20b0f4c507eb6
openssl@3.0.8-r3
3.0.8-r4
1
kusionstack/karpor:v0.6.4b707d3bf0abd
openssl@3.0.8-r3
3.0.8-r4
1
kvalitetsit/metadoc-app:maine89e351733ad
openssl@3.0.7-r2
3.0.8-r4
1
kyleslugg/klusterview:latestba8c36dfdfbd
openssl@3.0.7-r2
3.0.8-r4
1
kyso/imagebox:latest68091eace89c
openssl@3.0.7-r2
3.0.8-r4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.