StackRadar

CVE-2025-9230

High

Advisory

Published 30 Sept 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.016
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,840
of 17,837 indexed, latest versions
Container images
3,331
deployed by those charts
Fix available
6 of 7
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 2,840 of 17,837 indexed charts deploy, on 3,331 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+98 more1.0.1f-1ubuntu2.27+esm11, 1.0.2g-1ubuntu4.20+esm13, 1.1.1-1ubuntu2.1~18.04.23+esm6, 1.1.1f-1ubuntu2.24+esm1+5 more2,023
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r1, 3.3.5-r0, 3.5.4-r01,001
nodejsdeb4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+13 moreno fix listed22
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more1.0.2n-1ubuntu5.13+esm220
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.0.2k-21.el7_9, 1:1.0.2k-22.el7_9+30 more1:1.0.2k-26.el7_9.1, 1:1.1.1k-14.el8_10, 1:3.2.2-7.el9_6.1, 1:3.5.1-4.el9_7304
openssl-3rpm3.2.3-150700.5.18.13.2.3-150700.5.21.13
openssl-1_1rpm1.1.1w-150700.11.3.11.1.1w-150700.11.6.11
OSV records
ALPINE-CVE-2025-9230CGA-c4v2-6rpm-vq95DEBIAN-CVE-2025-9230UBUNTU-CVE-2025-9230RHSA-2025:21174RHSA-2025:21255RHSA-2026:0337RHSA-2026:1720RLSA-2025:21255RLSA-2026:0337DLA-4321-1SUSE-SU-2025:03546-1SUSE-SU-2025:03635-1
Also known as
CGA-qm4c-c7mv-j233, RHSA-2025:21562, RHSA-2026:0602, RHSA-2026:0714, RHSA-2026:0794, RHSA-2026:0887, RHSA-2026:1475, USN-7786-1

Charts affected

2,840 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

3,331 by charts deploying them

A fixed version is listed for 6 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
library/matomo:5.1.2-apache2415789e1602
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
library/memcached:1.6.29-alpine462ae4a35c26
openssl@3.3.1-r3
3.3.5-r0
1
library/memcached:1.6.26-alpine8906e7654a20
openssl@3.1.4-r5
3.1.8-r1
1
library/memcached:1.6.38-alpinee93269864a7d
openssl@3.5.1-r0
3.5.4-r0
1
library/memcached:1.6.24-alpineeff78098089f
openssl@3.1.4-r5
3.1.8-r1
1
library/mongo:7.0.140032d2ca20db
openssl@3.0.2-0ubuntu1.18
3.0.2-0ubuntu1.20
1
library/mongo:4.4.1305678ae4e5e1
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.24+esm1
1
library/mongo:3.6146c1fd999a6
openssl@1.0.2g-1ubuntu4.19
1.0.2g-1ubuntu4.20+esm13
1
library/mongo:5.0.32-focal3b6c281e1c08
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.24+esm1
1
library/mongo:4.4-bionic3d0e6df9fd5b
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm6
1
library/mongo:5.0.14-focal50cae5081ab4
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
library/mongo:6.0.12646902910d6a
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.20
1
library/mongo:4.2699d652ed674
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.1~18.04.23+esm6
1
library/mongo:4.2.16ca49afbcb2b
openssl@1.1.1-1ubuntu2.1~18.04.4
1.1.1-1ubuntu2.1~18.04.23+esm6
1
library/mongo:6.0.271a63fc2438e
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
library/mongo:5.0.217c81758cb295
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.24+esm1
1
library/mongo:7.0.28-jammy88785f6f665a
openssl@3.0.2-0ubuntu1.20
no fix listed
1
library/mongo:4.2.21-bionic9cb28f7291d9
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.1~18.04.23+esm6
1
library/mongo:7.0.12ae1cf99fa7bf
openssl@3.0.2-0ubuntu1.17
3.0.2-0ubuntu1.20
1
library/mongo:4.4.18d23ec07162ca
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.24+esm1
1
library/mongo:8.0.11dca8d11fe467
openssl@3.0.13-0ubuntu3.5
3.0.13-0ubuntu3.6
1
library/mongo-express:1.0.2-20-alpine3.191aae00775251
openssl@3.1.7-r0
3.1.8-r1
1
library/monica:3.7.0-apacheceb1ba4196ab
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
library/nats:2.10.25-alpine3290c829aa05
openssl@3.3.3-r0
3.3.5-r0
1
library/nats:2.11.9-alpine777787bbb4c7
openssl@3.5.1-r0
3.5.4-r0
1
library/nats:2.10.17-alpineb7752304692b
openssl@3.3.1-r0
3.3.5-r0
1
library/nats:2.10.12-alpinebca70839d953
openssl@3.1.4-r5
3.1.8-r1
1
library/nats:2.9.11-alpineccbe811b8575
openssl@3.0.7-r2
3.0.19-r0
1
library/neo4j:4.2.4348e3f56faa2
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
library/neo4j:4.4.43c9fea42bd5a
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
library/neo4j:5.18.18f01f7bb053e
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u4
1
library/nextcloud:31.0.6-apache588609d76b21
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3
1
library/nginx:1.27.409369da6b103
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
library/nginx:1.27.0-alpine3.19208b70eefac1
openssl@3.1.6-r2
3.1.8-r1
1
library/nginx:1.25.5-alpine-slim22414422d1ba
openssl@3.1.4-r6
3.1.8-r1
1
library/nginx:1.23.03536d368b898
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u4
1
library/nginx:1.27-alpine65645c7bb6a0
openssl@3.3.3-r0
3.3.5-r0
1
library/nginx:1.276784fb0834aa
openssl@3.0.16-1~deb12u1
3.0.17-1~deb12u3
1
library/nginx:1.25.167f9a4f10d14
openssl@3.0.9-1
3.0.17-1~deb12u3
1
library/nginx:1.25.49ff236ed47fe
openssl@3.0.11-1~deb12u2
3.0.17-1~deb12u3
1
library/nginx:1.23.2ab589a3c466e
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
library/nginx:1.23.3f4e3b6489888
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4
1
library/nginx:1.23f5747a42e3ad
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u4
1
library/nginx:1.27.3fb197595ebe7
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1
library/node:18-alpine8d6421d663b4
openssl@3.3.3-r0
3.3.5-r0
1
library/php:7.3-apacheb9872cd287ef
openssl@1.1.1k-1+deb11u2
1.1.1w-0+deb11u4
1
library/postgres:13.703652c675ae1
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u4
1
library/postgres:18.0073e7c8b84e2
openssl@3.5.1-1
3.5.1-1+deb13u1
1
library/postgres:14.32d1e636f0778
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u4
1
library/postgres:17.4304ab8135187
openssl@3.0.15-1~deb12u1
3.0.17-1~deb12u3
1

syft 1.42.1 · advisories as of 23 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.