StackRadar

CVE-2023-2650

Medium

Advisory

Published 30 May 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.751
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,109
of 17,787 indexed, latest versions
Container images
1,095
deployed by those charts
Fix available
4 of 4
affected packages

libopenssl-1_1-devel-1.1.1u-1.1 on GA media

Carried by container images the latest versions of 1,109 of 17,787 indexed charts deploy, on 1,095 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1l-r7, 1.1.1l-r8, 1.1.1m-r1, 1.1.1n-r0+16 more1.1.1u-r0, 3.0.9-r0, 3.1.1-r0557
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+58 more1.0.1f-1ubuntu2.27+esm9, 1.0.2g-1ubuntu4.20+esm9, 1.1.1-1ubuntu2.1~18.04.23, 1.1.1-1ubuntu2.fips.2.1~18.04.23+4 more528
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+1 more1.0.2n-1ubuntu5.1312
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-150100.14.51.1, 1.1.1d-150200.11.65.1, 1.1.1u-1.110
OSV records
ALPINE-CVE-2023-2650UBUNTU-CVE-2023-2650openSUSE-SU-2024:12972-1SUSE-SU-2023:2327-1SUSE-SU-2023:2343-1
Also known as
USN-6119-1, USN-6188-1

Charts affected

1,109 by stars
ChartLatestAffected imagesRadar Score
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/tabby:v1.0.48145c3dc83c8
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

7,685
treexdVerified publisher0.1.101 of 1See more

tree xd 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/tree:v0.2.89b2f8be6c7d3
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

1,997
zooxdVerified publisher0.4.01 of 1See more

zoo xd 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
lishimeng/zoo:v0.4.0e0b8d2d8ca28
openssl@3.0.8-r0
3.0.9-r0

Open the chart page →

1,955
pgbounceryasn77-pgbouncer0.0.81 of 1See more

pgbouncer yasn77-pgbouncer 0.0.8

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
openssl@1.1.1q-r0
1.1.1u-r0

Open the chart page →

1,152
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1u-r0

Open the chart page →

7,972
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.23

Open the chart page →

2,464
zahori-serverzahoriVerified publisher1.0.12 of 2See more

zahori-server zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.9-r0
zahoriaut/zahori-server:0.1.17b2de13916f3e
openssl@3.0.8-r3
3.0.9-r0

Open the chart page →

5,847
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1u-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-2650.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.23
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.19

Open the chart page →

9,250

Container images carrying it

1,095 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.19
79
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23
79
codeurjc/toposervice:v1.0:v1.239fb4c11e6a49
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23
13
oomk8s/readiness-check:2.0.2875814cc853d
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm9
11
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.19
10
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
openssl@1.1.1t-r0
1.1.1u-r0
10
curlimages/curl:7.85.09fab1b73f45e
openssl@1.1.1q-r0
1.1.1u-r0
6
library/registry:2.8.1dbaa3e69f563
openssl@3.1.0-r4
3.1.1-r0
6
oomk8s/readiness-check:2.0.07daa08b81954
openssl@1.0.2g-1ubuntu4.10
1.0.2g-1ubuntu4.20+esm9
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
openssl@1.1.1l-r7
1.1.1u-r0
6
quay.io/devtron/kubectl:latest2ad610626658
openssl@1.1.1q-r0
1.1.1u-r0
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
openssl@3.1.0-r4
3.1.1-r0
6
library/mongo:4.44be76f674fc4
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.19
5
solsson/kafka:latest41e5d8f6f290
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.19
5
ghcr.io/conductionnl/commonground-gateway-php:latest947882bf2c37
openssl@1.1.1s-r0
1.1.1u-r0
5
curlimages/curl:7.87.0:multiarch-7.87.0f7f265d5c64e
openssl@1.1.1s-r0
1.1.1u-r0
4
grafana/loki:2.6.11ee60f980950
openssl@1.1.1n-r0
1.1.1u-r0
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm9
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm9
4
hyperledger/fabric-orderer:2.46ec3fe59ea55
openssl@1.1.1t-r0
1.1.1u-r0
4
hyperledger/fabric-peer:2.46ff36af21eb1
openssl@1.1.1t-r0
1.1.1u-r0
4
hyperledger/fabric-tools:2.4b1194f509085
openssl@1.1.1s-r0
1.1.1u-r0
4
library/mongo:5.0-focal5e15a3f014ed
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.19
4
library/mongo:4.2.12-bionic628741415fc9
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23
4
library/mongo:4.4.66efa05203990
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23
4
mastercloudapps/planner:v1.2340a950b311b2
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.10
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23
4
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.19
3
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.19
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.19
3
codeurjc/planner:v1.0800cf520c245
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.10
3
dgraph/dgraph:v21.12.03b55ea83fffe
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.19
3
dpage/pgadmin4:6.12781369df9994
openssl@1.1.1q-r0
1.1.1u-r0
3
groundnuty/k8s-wait-for:v2.0c14d7271e401
openssl@1.1.1q-r0
1.1.1u-r0
3
jacobalberty/unifi:v10.0.162896c0ab82d33
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.19
3
lachlanevenson/k8s-kubectl:v1.23.2e4d83478963b
openssl@1.1.1l-r7
1.1.1u-r0
3
library/docker:20.10-dind:20-dindaf96c680a7e1
openssl@3.1.0-r4
3.1.1-r0
3
library/postgres:10-alpine63cfb6eac6b3
openssl@1.1.1s-r0
1.1.1u-r0
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm9
3
paulkellerman/resultserver-app:1.0381eeccb0618
openssl@1.1.1s-r0
1.1.1u-r0
3
paulkellerman/webserver-app:latest5a37b74f61b9
openssl@1.1.1s-r0
1.1.1u-r0
3
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
openssl@3.0.8-r3
3.0.9-r0
3
provectuslabs/kafka-ui:latest8f2ff02d64b0
openssl@1.1.1t-r3
1.1.1u-r0
3
selenium/hub:3.141.5902f251d48d5f
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.19
3
xenondb/percona:5.7.330e26872a2b67
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.19
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.10
3
quay.io/devtron/bats:v1.4.1488cf079f415
openssl@1.1.1n-r0
1.1.1u-r0
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.19
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
openssl@1.0.2g-1ubuntu4.20
1.0.2g-1ubuntu4.20+esm9
3
quay.io/devtron/k8s-utils:tutum-curl38b970c84cce
openssl@1.1.1q-r0
1.1.1u-r0
3

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.