StackRadar

CVE-2023-2650

Medium

Advisory

Published 30 May 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.751
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,109
of 17,792 indexed, latest versions
Container images
1,095
deployed by those charts
Fix available
4 of 4
affected packages

libopenssl-1_1-devel-1.1.1u-1.1 on GA media

Carried by container images the latest versions of 1,109 of 17,792 indexed charts deploy, on 1,095 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1l-r7, 1.1.1l-r8, 1.1.1m-r1, 1.1.1n-r0+16 more1.1.1u-r0, 3.0.9-r0, 3.1.1-r0557
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+58 more1.0.1f-1ubuntu2.27+esm9, 1.0.2g-1ubuntu4.20+esm9, 1.1.1-1ubuntu2.1~18.04.23, 1.1.1-1ubuntu2.fips.2.1~18.04.23+4 more528
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+1 more1.0.2n-1ubuntu5.1312
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-150100.14.51.1, 1.1.1d-150200.11.65.1, 1.1.1u-1.110
OSV records
ALPINE-CVE-2023-2650UBUNTU-CVE-2023-2650openSUSE-SU-2024:12972-1SUSE-SU-2023:2327-1SUSE-SU-2023:2343-1
Also known as
USN-6119-1, USN-6188-1

Charts affected

1,109 by stars
ChartLatestAffected imagesRadar Score
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/tabby:v1.0.48145c3dc83c8
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

7,697
treexdVerified publisher0.1.101 of 1See more

tree xd 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/tree:v0.2.89b2f8be6c7d3
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

1,998
zooxdVerified publisher0.4.01 of 1See more

zoo xd 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/zoo:v0.4.0e0b8d2d8ca28
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

1,955
pgbounceryasn77-pgbouncer0.0.81 of 1See more

pgbouncer yasn77-pgbouncer 0.0.8

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
openssl@1.1.1q-r0
1.1.1u-r0

Open the chart page →

1,152
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1u-r0

Open the chart page →

7,998
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.23

Open the chart page →

2,467
zahori-serverzahoriVerified publisher1.0.12 of 2See more

zahori-server zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.9-r0
zahoriaut/zahori-server:0.1.17b2de13916f3e
openssl@3.0.8-r3
3.0.9-r0

Open the chart page →

5,852
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1u-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.23
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.19

Open the chart page →

9,256

Container images carrying it

1,095 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/arpa-network/node-shell:latest6b359ace1408
openssl@1.1.1s-r0
1.1.1u-r0
1
ghcr.io/autobrr/autobrr:v1.10.0d4022cd32df5
openssl@1.1.1q-r0
1.1.1u-r0
1
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/aws-exporters/prometheus-inspector-exporter:0.0.29c7c11293b3c
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/bakito/sealed-secrets-web:v3.0.574aff24d4b97
openssl@3.0.7-r0
3.0.9-r0
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.19
1
ghcr.io/caarlos0/domain_exporter:v1.18.0-arm64c852606428cf
openssl@1.1.1q-r0
1.1.1u-r0
1
ghcr.io/cfcontainerizationbot/kubecf-kubectl:v1.19.261daa1bba5cb
openssl-1_1@1.1.1d-11.6.1
1.1.1d-150200.11.65.1
1
ghcr.io/ckotzbauer/chekrf299baf467b5
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
openssl-1_1@1.1.0i-14.6.1
1.1.0i-150100.14.51.1
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
openssl-1_1@1.1.0i-14.6.1
1.1.0i-150100.14.51.1
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
openssl-1_1@1.1.0i-14.6.1
1.1.0i-150100.14.51.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
openssl-1_1@1.1.0i-14.6.1
1.1.0i-150100.14.51.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
openssl-1_1@1.1.0i-14.6.1
1.1.0i-150100.14.51.1
1
ghcr.io/clusterpedia-io/clusterpedia/apiserver:v0.6.03d089d9078f8
openssl@1.1.1s-r0
1.1.1u-r0
1
ghcr.io/clusterpedia-io/clusterpedia/clustersynchro-manager:v0.6.082cc9a77f6d6
openssl@1.1.1s-r0
1.1.1u-r0
1
ghcr.io/clusterpedia-io/clusterpedia/controller-manager:v0.6.081669df338e0
openssl@1.1.1s-r0
1.1.1u-r0
1
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
openssl@1.1.1n-r0
1.1.1u-r0
1
ghcr.io/conductionnl/commonground-gateway-frontend:dev3b3fbb57cae8
openssl@1.1.1q-r0
1.1.1u-r0
1
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
openssl@1.1.1n-r0
1.1.1u-r0
1
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
openssl@1.1.1n-r0
1.1.1u-r0
1
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
openssl@1.1.1n-r0
1.1.1u-r0
1
ghcr.io/conductionnl/medewerkercatalogus-php:latest1ea5412bed26
openssl@1.1.1n-r0
1.1.1u-r0
1
ghcr.io/conductionnl/user-component-php:latest198db44fabb5
openssl@1.1.1n-r0
1.1.1u-r0
1
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
openssl@1.1.1n-r0
1.1.1u-r0
1
ghcr.io/cosmo-workspace/cosmo-traefik-plugins:v0.9.1435518f49e23
openssl@3.1.0-r4
3.1.1-r0
1
ghcr.io/crazy-max/samba:4.15.5bed6f4ec2e82
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/curium-rocks/kube-admission-controller-starter:maine9716966f30b
openssl@1.1.1q-r0
1.1.1u-r0
1
ghcr.io/daocloud/dao-2048:v1.4.121275bc02f75
openssl@3.0.8-r0
3.0.9-r0
1
ghcr.io/dask/dask:2024.1.0080150de7d86
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.fips.19
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.19
1
ghcr.io/data-fair/portals:18b621866ceb2
openssl@3.0.8-r3
3.0.9-r0
1
ghcr.io/deepch/rtsptoweb:v2.2.0f9de3a1a5deb
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/dexidp/dex:v2.35.313964b29d63e
openssl@1.1.1q-r0
1.1.1u-r0
1
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.23
1
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
openssl@1.1.1q-r0
1.1.1u-r0
1
ghcr.io/dodevops/scalyr-k8snode-manager:latestfc39fcdd3968
openssl@1.1.1n-r0
1.1.1u-r0
1
ghcr.io/douban/aliyun-exporter:mainb7c694331362
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/douban/qiniu-exporter:maind1da3bcfad7d
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/douban/ucloud-exporter:mainb4bb8a9021a2
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/douban/upyun-exporter:main6810900c9c4a
openssl@1.1.1l-r7
1.1.1u-r0
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
openssl@1.1.1-1ubuntu2.1~18.04.13
1.1.1-1ubuntu2.1~18.04.23
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.19
1
ghcr.io/eugenmayer/nist-data-mirror:0.1.1a2162df94729
openssl@3.0.8-r0
3.0.9-r0
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.19
1
ghcr.io/fernferret/mediawiki-backup:v0.2.2bbef381294ed
openssl@1.1.1t-r0
1.1.1u-r0
1
ghcr.io/formancehq/dex:v1.0.4b803fbe1cdb8
openssl@1.1.1q-r0
1.1.1u-r0
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.10
1
ghcr.io/gotway/gotway:v0.0.137ed73c1979ee
openssl@1.1.1o-r0
1.1.1u-r0
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
openssl@1.1.1f-1ubuntu2.13
1.1.1f-1ubuntu2.19
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.