pypi package report

Is openssl-src safe?

6 known vulnerabilities, worst severity MEDIUM.

cvss
5.3

how bad it is if exploited, out of 10

epss
1.2%

chance of exploitation in the next 30 days

xyz score
not scored

CyberXYZ composite, out of 10

fig. 01 — GHSA-mfm6-r9g2-q4r7, the advisory selected below

// advisories

GHSA-mfm6-r9g2-q4r7

MEDIUMCVE-2022-1343

The function OCSPbasicverify verifies the signer certificate on an OCSP response. In the case where the (non-default) flag OCSPNOCHECKS is used then the response will be positive (meaning a successful verification) even in the case where the response signing certificate fails to verify. It is anticipated that most users of OCSPbasicverify will not use the OCSPNOCHECKS flag. In this case the OCSPba

Affected
>=300.0.0, <300.0.6
Fixed in
300.0.6
Published
2022-05-04
Source
github

GHSANVDMITRE


// ai model usage

No published models are known to use this package.


Checked 2026-09-22 at 02:35 UTC. The most recent advisory here was published 2022-11-01. Updated continuously from NVD, GHSA, OSV and CNA feeds.

Think a verdict here is wrong? Tell us — we respond within 2 business days.
Is openssl-src safe? pypi package security report | CyberXYZ