OpenSSL

Security Scorecard

Score

25F

Total CVEs

65

Patch Rate

0%

0 patched

Avg Response

-

days to patch

Critical Gaps

3

exploitable, no detection

Severity Breakdown

Critical0
High1
Medium1
Low0

Patch Status

Patched0 (0%)
Partial/Workaround0 (0%)
Unpatched65 (100%)

CVEs (65)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-9230FIPS Module Out-of-Bounds ReadHIGH7.578dUnpatched
CVE-2025-9232OpenSSL HTTP Client API Out-of-Bounds Read VulnerabilityMEDIUM5.978dUnpatched
CVE-2017-3994Uninitialized Pointer Dereference in OpenSSLN/A-2837dUnpatched
CVE-2017-4111CVE-2017-4111 - Uninitialized Pointer Dereference in OpenSSLN/A-2837dUnpatched
CVE-2017-4204Uninitialized Pointer Dereference in OpenSSLN/A-2837dUnpatched
CVE-2017-4222Uninitialized Pointer Dereference in OpenSSLN/A-2837dUnpatched
CVE-2017-4454CVE-2017-4454 - "Uninitialized Pointer" Vulnerability in OpenSSLN/A-2837dUnpatched
CVE-2017-4602Uninitialized Pointer Dereference in OpenSSLN/A-2837dUnpatched
CVE-2017-4663Uninitialized Pointer Dereference in OpenSSLN/A-2837dUnpatched
CVE-2017-4690Uninitialized Pointer Dereference in OpenSSLN/A-2837dUnpatched