StackRadar

CVE-2020-10531

High

Advisory

Published 12 Mar 2020In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.027
85th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
256
of 17,781 indexed, latest versions
Container images
138
deployed by those charts
Fix available
4 of 4
affected packages

Red Hat Security Advisory: nodejs:10 security update

Carried by container images the latest versions of 256 of 17,781 indexed charts deploy, on 138 images.

Affected packageAffected versionsFixed inImages
icudeb52.1-8+deb8u3, 52.1-8+deb8u4, 52.1-8+deb8u5, 52.1-8+deb8u6+10 more52.1-8+deb8u8, 55.1-7ubuntu0.5, 57.1-6+deb9u4, 60.2-3ubuntu3.1+1 more135
icuapk62.1-r0, 64.2-r062.1-r1, 64.2-r12
chromium-browserdeb63.0.3239.84-0ubuntu0.16.04.180.0.3987.149-0ubuntu0.16.04.11
nodejs-nodemonrpm1.18.3-1.module+el8.1.0+3369+37ae6a450:1.18.3-1.module+el8+2632+6c5111ed1
OSV records
ALPINE-CVE-2020-10531RHSA-2020:1317UBUNTU-CVE-2020-10531DLA-2151-1DSA-4646-1
Also known as
USN-4305-1

Charts affected

256 by stars
ChartLatestAffected imagesRadar Score
nginx-file-browserwarjiang0.1.21 of 1See more

nginx-file-browser warjiang 0.1.2

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702
webencryptorwebencryptor1.1.01 of 1See more

webencryptor webencryptor 1.1.0

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
beubi/webencryptor:latesta02c2e200920
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

1,968
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702

Container images carrying it

138 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
conduction/checkin-component-nginx:dev583d2cd8476c
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
conduction/conduction-ui-nginx:devd9b38e234de9
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
conduction/contactmoment-component-nginx:dev353dc46303ac
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
conduction/docparser-nginx:dev08524d8327b8
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
conduction/kvk-nginx:devcf163d2b95b5
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
conduction/pan-nginx:devaf3e9f551ad1
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
confluentinc/cp-kafka:5.4.01bbda887bc53
icu@52.1-8+deb8u7
52.1-8+deb8u8
1
confluentinc/cp-kafka:5.0.1c87b1c07fb53
icu@52.1-8+deb8u7
52.1-8+deb8u8
1
confluentinc/cp-kafkacat:4.1.25f990b0f43c9
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
datalust/seq:5.0.832-pre9c731bb207a6
icu@55.1-7ubuntu0.3
55.1-7ubuntu0.5
1
douz/helpdesk-frontend:latestfa6a57de2b72
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
eaudeweb/mailtrap:2.3b8ad9b7e19bb
icu@63.1-6
63.1-6+deb10u1
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
icu@55.1-7ubuntu0.3
55.1-7ubuntu0.5
1
fiware/bae-activation-service:v0.0.33e3ec88d59ed
icu@52.1-8+deb8u7
52.1-8+deb8u8
1
graylog2/server:2.4.3-38ff28c66e6c1
icu@52.1-8+deb8u7
52.1-8+deb8u8
1
guacamole/guacamole:1.1.0333a7f40c145
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
guacamole/guacd:1.1.02288530a4d1c
icu@63.1-6
63.1-6+deb10u1
1
halkeye/gitter-slack-bridge:v2.0.153eb2b3cd4cb
icu@57.1-6+deb9u3
57.1-6+deb9u4
1
halkeye/slack-resurrect:v0.1.477b05e95fdb5
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
hickey/puppet_forge:1.10.0c1148a09ef20
icu@52.1-8+deb8u5
52.1-8+deb8u8
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
icu@55.1-7ubuntu0.4
55.1-7ubuntu0.5
1
ibmcom/ibm-storage-enabler-for-containers-db:2.1.09a766604a73b
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
icu@62.1-r0
62.1-r1
1
ibmcom/icp-swift-sample:latestb5d8c6714dbc
icu@55.1-7ubuntu0.4
55.1-7ubuntu0.5
1
ibmcom/microclimate-theia:lateste17bdccc5030
icu@55.1-7ubuntu0.3
55.1-7ubuntu0.5
1
ibmcom/skydive:0.22.0395e60cc6e3d
icu@60.2-3ubuntu3
60.2-3ubuntu3.1
1
jenkinsci/jenkins:2.67a1f33f004659
icu@57.1-6
57.1-6+deb9u4
1
kennethreitz/httpbin:latest599fe5e50731
icu@60.2-3ubuntu3
60.2-3ubuntu3.1
1
koumoul/capture:17108d47be3b2
icu@57.1-6+deb9u3
57.1-6+deb9u4
1
library/cassandra:2.1.20cb079c0d7a57
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
library/couchdb:2.3.0ee75c9a737e7
icu@57.1-6+deb9u3
57.1-6+deb9u4
1
library/elasticsearch:2.4.641ed3a1a16b6
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
library/nextcloud:17.0.0-apache96104cb965fc
icu@63.1-6
63.1-6+deb10u1
1
library/nginx:1.17.6b2d89d0a2103
icu@63.1-6
63.1-6+deb10u1
1
library/nginx:1.14.2f7988fb6c02e
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
library/postgres:10.49625c2fb3498
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
library/redis:2.8.23e507029ca6a1
icu@52.1-8+deb8u3
52.1-8+deb8u8
1
library/sonarqube:6.7.6-community0ae5169e3d0f
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
icu@60.2-3ubuntu3
60.2-3ubuntu3.1
1
muluder/prograncontrollermcord:0.1.843b597a93da7
icu@55.1-7ubuntu0.3
55.1-7ubuntu0.5
1
mvitale1989/docker-taiga:20191031-4.2.141504ccda06df
icu@57.1-6+deb9u3
57.1-6+deb9u4
1
ncsapolyglot/converters-avconv:latestc44b22eb58bb
icu@57.1-6+deb9u1
57.1-6+deb9u4
1
ncsapolyglot/converters-openjpeg:latest2ba4af461d51
icu@52.1-8+deb8u5
52.1-8+deb8u8
1
neilpeterson/aks-helloworld:v1fb47732ef36b
icu@57.1-6+deb9u1
57.1-6+deb9u4
1
neilpeterson/chart-tweet:latest64fd8dab075f
icu@57.1-6+deb9u1
57.1-6+deb9u4
1
neilpeterson/get-tweet:v28b645ac1a23e
icu@52.1-8+deb8u7
52.1-8+deb8u8
1
neilpeterson/osba-container-instances-demo:latest6527b05d5d03
icu@52.1-8+deb8u6
52.1-8+deb8u8
1
neilpeterson/osba-cosmos-mongodb-demo:latestf4940e84ed05
icu@52.1-8+deb8u6
52.1-8+deb8u8
1
neilpeterson/osba-mysql-demo:latest5859d68a6c9f
icu@52.1-8+deb8u6
52.1-8+deb8u8
1
neilpeterson/osba-storage-demo:latest29d229ab446e
icu@52.1-8+deb8u6
52.1-8+deb8u8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.