StackRadar

CVE-2023-50782

High

Advisory

Published 5 Feb 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.011
64th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
323
of 17,787 indexed, latest versions
Container images
309
deployed by those charts
Fix available
3 of 3
affected packages

Python Cryptography package vulnerable to Bleichenbacher timing oracle attack

Carried by container images the latest versions of 323 of 17,787 indexed charts deploy, on 309 images.

Affected packageAffected versionsFixed inImages
cryptographypypi1.7.2, 1.9, 2.1.4, 2.2.2+43 more42.0.0308
python-cryptographydeb2.1.4-1ubuntu1.2, 2.1.4-1ubuntu1.3, 2.1.4-1ubuntu1.4, 2.8-3ubuntu0.1+4 more2.1.4-1ubuntu1.4+esm1, 2.8-3ubuntu0.3, 3.4.8-1ubuntu2.230
openssl-1_1rpm1.1.1d-11.6.11.1.1d-150200.11.97.11
OSV records
DEBIAN-CVE-2023-50782GHSA-3ww4-gg4f-jr7fUBUNTU-CVE-2023-50782SUSE-SU-2024:3904-1
Also known as
PYSEC-2026-1283, USN-6673-1

Charts affected

323 by stars
ChartLatestAffected imagesRadar Score
datapusherstatcan1.0.01 of 1See more

datapusher statcan 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
keitaro/ckan-datapusher:0.0.175bf1a45f45c1
cryptography@3.1.1
42.0.0

Open the chart page →

3,044
freeradiussvtech-public-helm-charts0.1.51 of 4See more

freeradius svtech-public-helm-charts 0.1.5

1 of the 4 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
cryptography@41.0.3
42.0.0

Open the chart page →

12,655
icinga2svtech-public-helm-charts1.0.01 of 4See more

icinga2 svtech-public-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
svtechnmaa/svtech_icinga2:v1.1.667be2aba9436
cryptography@40.0.2
42.0.0

Open the chart page →

5,511
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
library/mysql:8.2.0212fe73edca5
cryptography@41.0.3
42.0.0

Open the chart page →

5,841
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
cryptography@2.5
42.0.0

Open the chart page →

18,756
agentssynapse0.1.301 of 9See more

agents synapse 0.1.30

1 of the 9 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
cryptography@37.0.2
42.0.0

Open the chart page →

7,244
scribesynapse0.2.161 of 7See more

scribe synapse 0.2.16

1 of the 7 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
cryptography@37.0.2
42.0.0

Open the chart page →

2,680
sinnersynapse0.1.01 of 6See more

sinner synapse 0.1.0

1 of the 6 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
mysql/mysql-server:latestd6c8301b7834
cryptography@37.0.2
42.0.0

Open the chart page →

1,955
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
42.0.0

Open the chart page →

17,461
the0the0Verified publisher0.9.81 of 9See more

the0 the0 0.9.8

1 of the 9 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
ghcr.io/alexanderwanyoike/the0/runtime:1.14.7459010a02aff
cryptography@41.0.7
42.0.0

Open the chart page →

7,248
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.78.0def97fd537d8
cryptography@39.0.1
42.0.0

Open the chart page →

3,164
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
cryptography@38.0.1
42.0.0

Open the chart page →

8,607
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
cryptography@41.0.7
42.0.0

Open the chart page →

45,239
phonebook-chartusuladams2Verified publisher0.2.11 of 3See more

phonebook-chart usuladams2 0.2.1

1 of the 3 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
42.0.0

Open the chart page →

3,176
browserlessvictorlane0.2.01 of 1See more

browserless victorlane 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
cryptography@41.0.7
42.0.0

Open the chart page →

4,305
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
cryptography@3.4.8
python-cryptography@3.4.8-1ubuntu2.1
42.0.0
3.4.8-1ubuntu2.2

Open the chart page →

13,459
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
cryptography@3.3.2
42.0.0

Open the chart page →

11,119
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
cryptography@38.0.4
python-cryptography@38.0.4-3+deb12u1
42.0.0
no fix listed

Open the chart page →

9,117
ceph-csi-cephfswikimedia0.1.81 of 5See more

ceph-csi-cephfs wikimedia 0.1.8

1 of the 5 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
cryptography@3.2.1
42.0.0

Open the chart page →

10,285
ceph-csi-rbdwikimedia0.1.131 of 6See more

ceph-csi-rbd wikimedia 0.1.13

1 of the 6 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
cryptography@3.2.1
42.0.0

Open the chart page →

11,784
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
cryptography@35.0.0
42.0.0

Open the chart page →

2,643
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
matrixdotorg/pantalaimon:v0.10.4ba6a587fa508
cryptography@36.0.1
42.0.0

Open the chart page →

3,118
grafana-matrix-forwarderzloi-space1.0.01 of 2See more

grafana-matrix-forwarder zloi-space 1.0.0

1 of the 2 container images this version deploys carry CVE-2023-50782.

Container imageDigestPackageFixed in
matrixdotorg/pantalaimon:v0.10.4ba6a587fa508
cryptography@36.0.1
42.0.0

Open the chart page →

1,636

Container images carrying it

309 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
cryptography@3.4.8
42.0.0
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
cryptography@3.4.8
python-cryptography@3.4.8-1ubuntu2
42.0.0
3.4.8-1ubuntu2.2
1
trueosiris/vrising:latest9356f98ad561
cryptography@3.4.8
42.0.0
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
cryptography@3.4.8
python-cryptography@3.4.8-1ubuntu2.1
42.0.0
3.4.8-1ubuntu2.2
1
vabene1111/recipes:1.0.5.2ec4e9e2905b0
cryptography@2.9.2
42.0.0
1
voltha/voltha-cli:1.6.0c4e41e92f046
cryptography@2.4.1
42.0.0
1
voltha/voltha-netconf:1.6.037f80524c207
cryptography@2.4.1
42.0.0
1
voltha/voltha-ofagent:1.6.09ee8c1f4428c
cryptography@2.4.1
42.0.0
1
voltha/voltha-tester:1.7.0655c3048a602
cryptography@2.7
42.0.0
1
voltha/voltha-voltha:1.6.0ff596b62de59
cryptography@2.4.1
42.0.0
1
wallabag/wallabag:2.4.25e4c26a7fb4a
cryptography@2.9.2
42.0.0
1
wazuh/wazuh-manager:4.4.121994f40e0da
cryptography@3.3.2
42.0.0
1
weblate/weblate:3.11.3-182848df56ecd
cryptography@2.8
42.0.0
1
wiremind/pghoard:12-2019-11-264dea42c8166c
cryptography@2.8
42.0.0
1
ygqygq2/mysql-exec-sql:latest54f30def1558
cryptography@41.0.3
42.0.0
1
zurdi15/romm:2.3.12db88fe44c89
cryptography@41.0.6
42.0.0
1
ghcr.io/alexanderwanyoike/the0/runtime:1.14.7459010a02aff
cryptography@41.0.7
42.0.0
1
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
cryptography@41.0.7
42.0.0
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
cryptography@41.0.7
42.0.0
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
cryptography@41.0.7
42.0.0
1
ghcr.io/cfcontainerizationbot/kubecf-kubectl:v1.19.261daa1bba5cb
openssl-1_1@1.1.1d-11.6.1
1.1.1d-150200.11.97.1
1
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
cryptography@38.0.3
42.0.0
1
ghcr.io/dask/dask:2024.1.0080150de7d86
cryptography@41.0.3
42.0.0
1
ghcr.io/dask/dask-gateway-server:2024.1.0881e7acfc5a0
cryptography@41.0.7
42.0.0
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
cryptography@3.4.8
42.0.0
1
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
cryptography@3.3.2
42.0.0
1
ghcr.io/ducksify/pgdump-to-s3:latestc42c0946bd0f
cryptography@37.0.2
42.0.0
1
ghcr.io/gamosoft/notediscovery:0.31.5c06aa0fa9a85
cryptography@41.0.7
42.0.0
1
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
cryptography@36.0.2
42.0.0
1
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
cryptography@41.0.4
42.0.0
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
cryptography@41.0.7
42.0.0
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
cryptography@41.0.7
42.0.0
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
cryptography@3.4.7
42.0.0
1
ghcr.io/linuxserver/pyload:version-5de90278d3c87933a5fd
cryptography@3.3.2
42.0.0
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
cryptography@41.0.7
42.0.0
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
cryptography@41.0.7
42.0.0
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
cryptography@41.0.7
42.0.0
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
cryptography@41.0.7
42.0.0
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
cryptography@41.0.7
42.0.0
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
cryptography@41.0.7
42.0.0
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
cryptography@41.0.7
42.0.0
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
cryptography@41.0.7
42.0.0
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
cryptography@41.0.7
42.0.0
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
cryptography@41.0.7
42.0.0
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
cryptography@41.0.7
42.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
cryptography@37.0.4
42.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
cryptography@41.0.7
42.0.0
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
cryptography@39.0.1
42.0.0
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
cryptography@38.0.4
python-cryptography@38.0.4-3
42.0.0
no fix listed
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
cryptography@41.0.7
42.0.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.