StackRadar

CVE-2023-6237

Medium

Advisory

Published 15 Jan 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.023
82nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
839
of 17,787 indexed, latest versions
Container images
870
deployed by those charts
Fix available
2 of 3
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 839 of 17,787 indexed charts deploy, on 870 images.

Affected packageAffected versionsFixed inImages
openssldeb1.1.1f-1ubuntu2.24, 3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5+22 more3.0.2-0ubuntu1.14, 3.0.10-1ubuntu4, 3.0.13-1~deb12u1446
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+16 more3.0.12-r3, 3.1.4-r4, 3.3.0-r5424
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
OSV records
ALPINE-CVE-2023-6237CGA-c775-m9w6-gg4vDEBIAN-CVE-2023-6237UBUNTU-CVE-2023-6237
Also known as
CGA-fcf2-xh9w-8793, USN-6622-1

Charts affected

839 by stars
ChartLatestAffected imagesRadar Score
pacmanpacman-mhVerified publisher0.1.281 of 2See more

pacman pacman-mh 0.1.28

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
library/mongo:7.0.28-jammy88785f6f665a
openssl@3.0.2-0ubuntu1.20
no fix listed

Open the chart page →

3,601
parcaparca4.19.01 of 2See more

parca parca 4.19.0

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
openssl@3.1.2-r0
3.1.4-r4

Open the chart page →

3,350
parcaparca-chart0.1.01 of 1See more

parca parca-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/parca-dev/parca:v0.20.00d1df8f436f7
openssl@3.1.2-r0
3.1.4-r4

Open the chart page →

1,978
hammondpascaliskeVerified publisher2.0.01 of 2See more

hammond pascaliske 2.0.0

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
alfhou/hammond:v0.0.24c85dc0293aa1
openssl@3.1.4-r2
3.1.4-r4

Open the chart page →

1,806
pet-battle-nsffpetbattle0.0.21 of 4See more

pet-battle-nsff petbattle 0.0.2

1 of the 4 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
tensorflow/serving:latest8a208c232297
openssl@3.0.2-0ubuntu1.23
no fix listed

Open the chart page →

3,717
clickhousepetersandor14.3.21 of 1See more

clickhouse petersandor 14.3.2

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:25.3.2.398745843b17f9
openssl@3.0.2-0ubuntu1.19
no fix listed

Open the chart page →

2,220
pgcatpgcatVerified publisher0.2.51 of 1See more

pgcat pgcat 0.2.5

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

3,316
redis-stack-awsphamxuanduong0.1.01 of 1See more

redis-stack-aws phamxuanduong 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.4.0-v0887cf87cc744
openssl@3.0.2-0ubuntu1.16
no fix listed

Open the chart page →

3,277
container-agentphntom100.0.11 of 1See more

container-agent phntom 100.0.1

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
circleci/container-agent:34d8d0ae5efc3
openssl@3.0.8-r3
3.0.12-r3

Open the chart page →

1,974
postgresql-backupphntom0.1.91 of 1See more

postgresql-backup phntom 0.1.9

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
phntom/postgresql-backup-s3:1.0.2249b6488f618b
openssl@3.0.7-r0
3.0.12-r3

Open the chart page →

2,556
phronetisphronetis0.1.271 of 2See more

phronetis phronetis 0.1.27

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
knspar/phronetis-operator:0.1.60c4f0543ee58
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

15,077
piepieVerified publisher0.11.11 of 1See more

pie pie 0.11.1

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/topolvm/pie:0.18.0aa467443e407
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

2,149
blockmeta-servicepinaxVerified publisher0.0.31 of 1See more

blockmeta-service pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/blockmeta-service:2f971e04f0a86e490b6
openssl@3.1.4-r2
3.1.4-r4

Open the chart page →

1,681
firehose-corepinaxVerified publisher0.1.11 of 2See more

firehose-core pinax 0.1.1

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
sigp/lighthouse:latest-amd6450f66cfebb6d
openssl@3.0.2-0ubuntu1.21
no fix listed

Open the chart page →

3,527
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
sigp/lighthouse:latest-amd6450f66cfebb6d
openssl@3.0.2-0ubuntu1.21
no fix listed

Open the chart page →

7,149
spring-boot-openshiftpiominVerified publisher0.3.111 of 1See more

spring-boot-openshift piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.14

Open the chart page →

7,616
pgbouncerpmint930.10.01 of 1See more

pgbouncer pmint93 0.10.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
hyperized/pgbouncer:v1.21.06f64ca124fb5
openssl@3.1.3-r0
3.1.4-r4

Open the chart page →

358
k8s-node-image9-1-21pnnl-miscscripts0.2.382 of 2See more

k8s-node-image9-1-21 pnnl-miscscripts 0.2.38

2 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
openssl@3.0.8-r3
3.0.12-r3
pnnlmiscscripts/k8s-node-image9:1.21.14-nginx-33fa8f5906d36a
openssl@3.0.10-r0
3.0.12-r3

Open the chart page →

2,612
k8s-node-image9-1-22pnnl-miscscripts0.2.312 of 2See more

k8s-node-image9-1-22 pnnl-miscscripts 0.2.31

2 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
openssl@3.0.8-r3
3.0.12-r3
pnnlmiscscripts/k8s-node-image9:1.22.17-nginx-34b85e437ae261
openssl@3.0.10-r0
3.0.12-r3

Open the chart page →

2,612
k8s-node-image9-1-23pnnl-miscscripts0.2.272 of 2See more

k8s-node-image9-1-23 pnnl-miscscripts 0.2.27

2 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
openssl@3.0.8-r3
3.0.12-r3
pnnlmiscscripts/k8s-node-image9:1.23.17-nginx-3479ada675515f
openssl@3.0.10-r0
3.0.12-r3

Open the chart page →

2,612
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

11,680
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
library/postgres:16.24aea012537ed
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

11,181
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssl@3.0.11-1~deb12u1
3.0.13-1~deb12u1

Open the chart page →

6,575
quickwitportefaix-hub0.1.11 of 1See more

quickwit portefaix-hub 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.1d29332bdadcc
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

3,185
postgrespostgresVerified publisher0.1.11 of 1See more

postgres postgres 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
library/postgres:13.12ced3ba927f4c
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

4,363
postgres-controllerpostgres-controller1.3.61 of 1See more

postgres-controller postgres-controller 1.3.6

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
evgkrsk/postgres-controller:0.6.237f0e1f435c3
openssl@3.0.7-r2
3.0.12-r3

Open the chart page →

1,782
Practica_4_helmpr04helm0.1.01 of 7See more

Practica_4_helm pr04helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
library/rabbitmq:3.9-management8a279e9396a8
openssl@3.0.2-0ubuntu1.14
no fix listed

Open the chart page →

27,649
flink-kubernetes-operatorpresto-loadbalancer1.10.01 of 1See more

flink-kubernetes-operator presto-loadbalancer 1.10.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
openssl@3.0.2-0ubuntu1.18
no fix listed

Open the chart page →

3,316
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
openssl@3.0.9-1
3.0.13-1~deb12u1

Open the chart page →

6,932
primeprime1.0.01 of 1See more

prime prime 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
udhos/prime:1.0.0e432012dd34a
openssl@3.0.8-r3
3.0.12-r3

Open the chart page →

1,682
seashellpuckpuck1.2.01 of 1See more

seashell puckpuck 1.2.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/puckpuck/seashell:1.2ef5e31333821
openssl@3.1.3-r0
3.1.4-r4

Open the chart page →

4,214
pyredispyredis-helm0.1.01 of 2See more

pyredis pyredis-helm 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
avinash263/pyredis263:latestaa2b8727f1a6
openssl@3.0.9-1
3.0.13-1~deb12u1

Open the chart page →

12,652
mychartpythonweb0.1.01 of 1See more

mychart pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

11,400
mypythonpythonweb0.1.01 of 1See more

mypython pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

11,400
unifiqaoruVerified publisher1.1.21 of 2See more

unifi qaoru 1.1.2

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
library/mongo:7.0-jammy406a4fdca9fc
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

3,719
qualys-caqualys-ca-helm3.1.01 of 1See more

qualys-ca qualys-ca-helm 3.1.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
nelssec/qualys-agent-bootstrapper:v2.1.05e471f0cdeaa
openssl@3.0.2-0ubuntu1.20
no fix listed

Open the chart page →

1,917
rabbitmq-producer-randomizerrabbitmq-producer-randomizer0.0.81 of 1See more

rabbitmq-producer-randomizer rabbitmq-producer-randomizer 0.0.8

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
genseb/rabbitmq-producer-randomizer:0.0.6cb7599641099
openssl@3.1.3-r0
3.1.4-r4

Open the chart page →

878
kratos-selfservice-ui-noderadar-baseVerified publisher0.43.11 of 1See more

kratos-selfservice-ui-node radar-base 0.43.1

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
oryd/kratos-selfservice-ui-node:v0.13.0-20d454c21c11bc
openssl@3.0.7-r0
3.0.12-r3

Open the chart page →

2,969
radar-s3-connectorradar-baseVerified publisher0.7.21 of 2See more

radar-s3-connector radar-base 0.7.2

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
linuxserver/yq:3.2.26f5b9586a93e
openssl@3.1.2-r0
3.1.4-r4

Open the chart page →

1,415
sonarquberedhat-cop0.1.131 of 1See more

sonarqube redhat-cop 0.1.13

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
library/sonarqube:10.7.0-community0842dcd4c8f8
openssl@3.0.2-0ubuntu1.18
no fix listed

Open the chart page →

4,242
relfinder-reformedrelfinderreformed2.0.01 of 2See more

relfinder-reformed relfinderreformed 2.0.0

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

5,928
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

6,562
istio-helloworldrgnu1.0.12 of 2See more

istio-helloworld rgnu 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
istio/examples-helloworld-v1:latest328b237e4fb1
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1
istio/examples-helloworld-v2:latest0a7f02b2c7c9
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

8,298
mastodonrivals-spaceVerified publisher3.1.21 of 3See more

mastodon rivals-space 3.1.2

1 of the 3 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
ghcr.io/rivals-space/rivals-nginx:1.6.1f376b96b82cc
openssl@3.0.7-r2
3.0.12-r3

Open the chart page →

6,026
kube-web-viewrlex0.5.01 of 1See more

kube-web-view rlex 0.5.0

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
hjacobs/kube-web-view:23.8.0431f1bf013d0
openssl@3.0.9-1
3.0.13-1~deb12u1

Open the chart page →

4,315
mailserverrock8sVerified publisher0.1.21 of 1See more

mailserver rock8s 0.1.2

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
registry.gitlab.com/bitspur/rock8s/images/kube-commands:3.1880ef8ceffc92
openssl@3.1.4-r1
3.1.4-r4

Open the chart page →

1,946
reviewboardrock8sVerified publisher0.0.11 of 3See more

reviewboard rock8s 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
beanbag/reviewboard:latest6b840f546e1c
openssl@3.0.2-0ubuntu1.29
no fix listed

Open the chart page →

6,154
argocd-certificate-refreshromholdings0.10.81 of 1See more

argocd-certificate-refresh romholdings 0.10.8

1 of the 1 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.14

Open the chart page →

12,999
devtron-enterpriseromholdings48.0.03 of 28See more

devtron-enterprise romholdings 48.0.0

3 of the 28 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
openssl@3.1.0-r4
3.1.4-r4
quay.io/devtron/postgres:14.91b594392f7cb
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1

Open the chart page →

66,542
devtron-in-clustercdromholdings0.10.21 of 2See more

devtron-in-clustercd romholdings 0.10.2

1 of the 2 container images this version deploys carry CVE-2023-6237.

Container imageDigestPackageFixed in
quay.io/devtron/kubewatch:49f906a5-419-14814eec0305b594c
openssl@3.1.2-r0
3.1.4-r4

Open the chart page →

5,041

Container images carrying it

870 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/frrouting/frr:9.0.2086acb1278fe
openssl@3.1.4-r1
3.1.4-r4
1
quay.io/gkarthics/apid-helper:v0.2.3d7d93debf1f4
openssl@3.1.1-r1
3.1.4-r4
1
quay.io/groundcover/caretta:v0.0.16ed8f5118e3a4
openssl@3.0.8-r0
3.0.12-r3
1
quay.io/groundcover/victoria-metrics:v1.85.380ddeb90d18d
openssl@3.0.7-r0
3.0.12-r3
1
quay.io/jupyterhub/k8s-network-tools:3.2.1e532a2dc4761
openssl@3.1.3-r0
3.1.4-r4
1
quay.io/kiwigrid/k8s-sidecar:1.25.2cb4c638ffb1f
openssl@3.1.3-r0
3.1.4-r4
1
quay.io/kubermatic/machine-controller:v1.57.0476ae867ae56
openssl@3.0.9-r1
3.0.12-r3
1
quay.io/opsmxpublic/create-secret:v4.0.4defc3263e0e9
openssl@3.0.8-r4
3.0.12-r3
1
quay.io/spotahome/redis-operator:latest8c772955184e
openssl@3.1.2-r0
3.1.4-r4
1
quay.io/wi_stefan/dsba-db-migrations:0.0.125b986cd14a08
openssl@3.0.7-r0
3.0.12-r3
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssl@3.0.9-1
3.0.13-1~deb12u1
1
quay.io/yushiwho/sys-stats:e1f9d778c8d08b95c0b
openssl@3.1.4-r1
3.1.4-r4
1
registry.gitlab.com/bitspur/rock8s/images/kube-commands:3.1880ef8ceffc92
openssl@3.1.4-r1
3.1.4-r4
1
registry.gitlab.com/parrotsec/project/parrot-mirror-docker:mainf91b602ca572
openssl@3.1.3-r0
3.1.4-r4
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
openssl@3.0.11-1~deb12u1
3.0.13-1~deb12u1
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
openssl@3.0.11-1~deb12u2
3.0.13-1~deb12u1
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssl@3.0.11-1~deb12u1
3.0.13-1~deb12u1
1
registry.k8s.io/ingress-nginx/controller:v1.6.415be4666c530
openssl@3.0.8-r0
3.0.12-r3
1
registry.k8s.io/ingress-nginx/controller:v1.8.0744ae2afd433
openssl@3.1.0-r4
3.1.4-r4
1
registry.k8s.io/ingress-nginx/controller:v1.7.07612338342a1
openssl@3.0.8-r1
3.0.12-r3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.