StackRadar

CVE-2023-2650

Medium

Advisory

Published 30 May 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.751
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,109
of 17,790 indexed, latest versions
Container images
1,095
deployed by those charts
Fix available
4 of 4
affected packages

libopenssl-1_1-devel-1.1.1u-1.1 on GA media

Carried by container images the latest versions of 1,109 of 17,790 indexed charts deploy, on 1,095 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1l-r7, 1.1.1l-r8, 1.1.1m-r1, 1.1.1n-r0+16 more1.1.1u-r0, 3.0.9-r0, 3.1.1-r0557
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+58 more1.0.1f-1ubuntu2.27+esm9, 1.0.2g-1ubuntu4.20+esm9, 1.1.1-1ubuntu2.1~18.04.23, 1.1.1-1ubuntu2.fips.2.1~18.04.23+4 more528
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+1 more1.0.2n-1ubuntu5.1312
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-150100.14.51.1, 1.1.1d-150200.11.65.1, 1.1.1u-1.110
OSV records
ALPINE-CVE-2023-2650UBUNTU-CVE-2023-2650openSUSE-SU-2024:12972-1SUSE-SU-2023:2327-1SUSE-SU-2023:2343-1
Also known as
USN-6119-1, USN-6188-1

Charts affected

1,109 by stars
ChartLatestAffected imagesRadar Score
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/tabby:v1.0.48145c3dc83c8
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

7,697
treexdVerified publisher0.1.101 of 1See more

tree xd 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/tree:v0.2.89b2f8be6c7d3
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

1,998
zooxdVerified publisher0.4.01 of 1See more

zoo xd 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/zoo:v0.4.0e0b8d2d8ca28
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

1,955
pgbounceryasn77-pgbouncer0.0.81 of 1See more

pgbouncer yasn77-pgbouncer 0.0.8

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
openssl@1.1.1q-r0
1.1.1u-r0

Open the chart page →

1,152
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1u-r0

Open the chart page →

7,998
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.23

Open the chart page →

2,467
zahori-serverzahoriVerified publisher1.0.12 of 2See more

zahori-server zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.9-r0
zahoriaut/zahori-server:0.1.17b2de13916f3e
openssl@3.0.8-r3
3.0.9-r0

Open the chart page →

5,852
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1u-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.23
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.19

Open the chart page →

9,256

Container images carrying it

1,095 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
chirpstack/chirpstack-application-server:3fb7667fe037f
openssl@3.0.7-r0
3.0.9-r0
1
chirpstack/chirpstack-gateway-bridge:3.13.2ce3f2cdca8a9
openssl@1.1.1l-r7
1.1.1u-r0
1
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
openssl@3.0.7-r0
3.0.9-r0
1
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
openssl@1.1.1l-r7
1.1.1u-r0
1
circleci/container-agent:34d8d0ae5efc3
openssl@3.0.8-r3
3.0.9-r0
1
circleci/runner:launch-agent9bdc62f02162
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.19
1
ciscolabs/msm-nc:0710202336d02faad958
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
citizenstig/httpbin:latestb81c818ccb86
openssl@1.0.2g-1ubuntu4.5
1.0.2g-1ubuntu4.20+esm9
1
clastix/kubectl:v1.2187fabaccb3a6
openssl@1.1.1l-r8
1.1.1u-r0
1
clastix/kubectl:v1.22d0376d87ac6b
openssl@1.1.1l-r8
1.1.1u-r0
1
clickhouse/clickhouse-server:24.81ffa82edee00
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.19
1
clickhouse/clickhouse-server:24.4.12e6587b81a26
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.fips.19
1
clickhouse/clickhouse-server:23.8512bb8a21483
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.fips.19
1
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.10
1
cloudve/janis-terminal:latestaf56e77ca587
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23
1
cloudve/ttyd:latestd79c1c5881c0
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.23
1
cnieg/gantt:1.1.2d4b478d76f2a
openssl@1.1.1q-r0
1.1.1u-r0
1
codecov/self-hosted-api:24.4.10475cb1c3136
openssl@3.1.0-r4
3.1.1-r0
1
coldatom/containers-security-api:latesteae9e82da080
openssl@3.0.8-r3
3.0.9-r0
1
coldatom/containers-security-front:latest7c2fbbb41bcf
openssl@3.0.8-r0
3.0.9-r0
1
cortezaproject/corteza:2024.9.08eb7a26605c9
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.19
1
countly/countly-server:25.05.4e3c238248f99
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.19
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.23
1
crazymax/rrdcached:1.8.0841b10cdae76
openssl@3.1.0-r4
3.1.1-r0
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
openssl@3.0.7-r0
3.0.9-r0
1
cribl/cribl:3.0.2762747cb6796
openssl@1.1.1-1ubuntu2.1~18.04.9
openssl1.0@1.0.2n-1ubuntu5.6
1.1.1-1ubuntu2.1~18.04.23
1.0.2n-1ubuntu5.13
1
csepulvedab/secret-sync:0.5227a6f2b0ff8
openssl@1.1.1s-r0
1.1.1u-r0
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm9
1
curlimages/curl:8.1.15af13420d29b
openssl@3.0.8-r4
3.0.9-r0
1
curlimages/curl:8.00.19e886c104cae
openssl@1.1.1t-r0
1.1.1u-r0
1
curlimages/curl:8.00.0d1658d9c8ef9
openssl@1.1.1t-r0
1.1.1u-r0
1
curlimages/curl:7.83.1e83fef2d5a03
openssl@1.1.1n-r0
1.1.1u-r0
1
danny1dockerhub/nodejswebapp:lateste434683fcc89
openssl@3.0.8-r3
3.0.9-r0
1
daskdev/dask-notebook:1.1.0052630f5ca04
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.23
1
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
openssl@1.1.1-1ubuntu2.1~18.04.21
openssl1.0@1.0.2n-1ubuntu5.11
1.1.1-1ubuntu2.1~18.04.23
1.0.2n-1ubuntu5.13
1
datalust/seq:5.0.832-pre9c731bb207a6
openssl@1.0.2g-1ubuntu4.10
1.0.2g-1ubuntu4.20+esm9
1
datalust/seq-input-gelf:3.0.441-x643de34aed5642
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.19
1
davidvmar/urjc-davidvmar-rabbitmq:1.0.0e9ce2608f799
openssl@1.1.1q-r0
1.1.1u-r0
1
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.10+Fips1
1
ddosify/selfhosted_hammer:2.0.0181965edb12e
openssl@1.1.1n-r0
1.1.1u-r0
1
ddosify/selfhosted_hammer:1.4.2a97a1b8a66af
openssl@1.1.1n-r0
1.1.1u-r0
1
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.19
1
deepflowce/deepflow-agent:v6.2.6.529332fee7fc2
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.10
1
deepflowce/deepflow-server:v6.2.6.534fcc526dd59
openssl@3.1.0-r4
3.1.1-r0
1
dellcloud/category:distributed02fc234353a9
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.19
1
dellcloud/pages:1.04d2eb25b9225
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.19
1
deluan/navidrome:0.49.311a24da08977
openssl@3.0.8-r0
3.0.9-r0
1
devopstales/k8s-logrotate:1.093d8a978af05
openssl@1.1.1q-r0
1.1.1u-r0
1
devopstales/kube-openid-connector:1.042c40a0e9f1b
openssl@1.1.1n-r0
1.1.1u-r0
1
devopstales/trivy-operator:2.575136aa7a26e
openssl@3.0.7-r2
3.0.9-r0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.