OpenSSL Software Foundation
Self-Reporting Analysis
Of all the CVEs published by OpenSSL Software Foundation as a CNA, 100.0% affect products that OpenSSL Software Foundation develops as a vendor.
Of all the CVEs published that affect products developed by OpenSSL Software Foundation, 38.9% are self-published by OpenSSL Software Foundation as a CNA.
Trends Over Time
The number and severity of CVEs published by OpenSSL Software Foundation over time
Top CVEs
All CVEs published by OpenSSL Software Foundation as a CNA, regardless of affected vendor or product.
119 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-3711CRITICAL In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an application will call this function twice. The first tim | Aug 24, 2021 | 9.8 | 79 | NO | NO |
CVE-2022-3786HIGH A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification | Nov 1, 2022 | 7.5 | 76 | NO | NO |
CVE-2022-2068HIGH In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to | Jun 21, 2022 | 7.3 | 76 | NO | NO |
CVE-2022-3602HIGH A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification | Nov 1, 2022 | 7.5 | 75 | NO | NO |
CVE-2022-1292HIGH The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by some operating systems in a manner where it is autom | May 3, 2022 | 7.3 | 68 | NO | NO |
CVE-2025-15467CRITICAL Issue summary: Parsing CMS AuthEnvelopedData or EnvelopedData message with
maliciously crafted AEAD parameters can trigger a stack buffer overflow.
Impact summary: A stack buffer | Jan 27, 2026 | 9.8 | 67 | NO | NO |
CVE-2017-3730HIGH In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL po | May 4, 2017 | 7.5 | 67 | NO | YES |
CVE-2022-0778HIGH The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when parsi | Mar 15, 2022 | 7.5 | 65 | NO | NO |
CVE-2017-3737MEDIUM OpenSSL 1.0.2 (starting from version 1.0.2b) introduced an "error state" mechanism. The intent was that if a fatal error occurred during a handshake then OpenSSL would move into th | Dec 7, 2017 | 5.9 | 65 | NO | NO |
CVE-2023-2650MEDIUM Issue summary: Processing some specially crafted ASN.1 object identifiers or
data containing them may be very slow.
Impact summary: Applications that use OBJ_obj2txt() directly, o | May 30, 2023 | 6.5 | 64 | NO | NO |
CVE Severity & Scoring
Exploit Exposure
Signals from CVEs in this cna scope (119 CVEs).
Social Chatter
An overview of all social media posts that mention a CVE ID published by OpenSSL Software Foundation as a CNA.
Media Mentions
Media articles that mention a CVE ID published by OpenSSL Software Foundation as a CNA — matched by CVE ID, not by organization name.