StackRadar

CVE-2020-10531

High

Advisory

Published 12 Mar 2020In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.027
85th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
256
of 17,781 indexed, latest versions
Container images
138
deployed by those charts
Fix available
4 of 4
affected packages

Red Hat Security Advisory: nodejs:10 security update

Carried by container images the latest versions of 256 of 17,781 indexed charts deploy, on 138 images.

Affected packageAffected versionsFixed inImages
icudeb52.1-8+deb8u3, 52.1-8+deb8u4, 52.1-8+deb8u5, 52.1-8+deb8u6+10 more52.1-8+deb8u8, 55.1-7ubuntu0.5, 57.1-6+deb9u4, 60.2-3ubuntu3.1+1 more135
icuapk62.1-r0, 64.2-r062.1-r1, 64.2-r12
chromium-browserdeb63.0.3239.84-0ubuntu0.16.04.180.0.3987.149-0ubuntu0.16.04.11
nodejs-nodemonrpm1.18.3-1.module+el8.1.0+3369+37ae6a450:1.18.3-1.module+el8+2632+6c5111ed1
OSV records
ALPINE-CVE-2020-10531RHSA-2020:1317UBUNTU-CVE-2020-10531DLA-2151-1DSA-4646-1
Also known as
USN-4305-1

Charts affected

256 by stars
ChartLatestAffected imagesRadar Score
nginx-file-browserwarjiang0.1.21 of 1See more

nginx-file-browser warjiang 0.1.2

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702
webencryptorwebencryptor1.1.01 of 1See more

webencryptor webencryptor 1.1.0

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
beubi/webencryptor:latesta02c2e200920
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

1,968
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-10531.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4

Open the chart page →

702

Container images carrying it

138 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.16.03e373fd5b8d4
icu@57.1-6+deb9u2
57.1-6+deb9u4
86
oomk8s/readiness-check:2.0.2875814cc853d
icu@55.1-7ubuntu0.4
55.1-7ubuntu0.5
11
oomk8s/readiness-check:2.0.07daa08b81954
icu@55.1-7ubuntu0.3
55.1-7ubuntu0.5
6
osixia/phpldapadmin:0.9.0d112b82be133
icu@63.1-6
63.1-6+deb10u1
5
bde2020/hive:2.3.2-postgresql-metastore620267768985
icu@52.1-8+deb8u6
52.1-8+deb8u8
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
icu@55.1-7ubuntu0.4
55.1-7ubuntu0.5
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
icu@55.1-7ubuntu0.4
55.1-7ubuntu0.5
4
kodekloud/examplevotingapp_worker:v1741e3aaaa812
icu@57.1-6
57.1-6+deb9u4
4
osixia/phpldapadmin:0.7.11ab629698ae0
icu@57.1-6+deb9u1
57.1-6+deb9u4
4
mautic/mautic:2.13-apachea954c5868d76
icu@52.1-8+deb8u7
52.1-8+deb8u8
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
icu@55.1-7ubuntu0.4
55.1-7ubuntu0.5
3
quay.io/devtron/postgres:11.3ef035ac10498
icu@57.1-6+deb9u2
57.1-6+deb9u4
3
amancevice/superset:0.35.212a0a9e66550
icu@63.1-6
63.1-6+deb10u1
2
danisla/hadoop:2.9.0255ba2dd739b
icu@52.1-8+deb8u4
52.1-8+deb8u8
2
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
icu@57.1-6+deb9u3
57.1-6+deb9u4
2
fjvela/urjc-fjvela-server:1.0.53c840aebce22
icu@57.1-6+deb9u3
57.1-6+deb9u4
2
gradiant/hive:2.3.2-postgresql-metastoreaae4f8a21f8b
icu@52.1-8+deb8u6
52.1-8+deb8u8
2
gradiant/spark:2.4.4-python-alpine97657d56e927
icu@64.2-r0
64.2-r1
2
library/nginx:1.13.12b1d09e971889
icu@57.1-6+deb9u2
57.1-6+deb9u4
2
library/postgres:11.5b3770d9c4ef1
icu@57.1-6+deb9u3
57.1-6+deb9u4
2
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
icu@55.1-7ubuntu0.4
55.1-7ubuntu0.5
2
nachomillangarcia/prometheus_aws_cost_exporter:lateste4ce056f2d6d
icu@57.1-6+deb9u2
57.1-6+deb9u4
2
neilpeterson/azure-vote-front:v384062718347c
icu@57.1-6+deb9u1
57.1-6+deb9u4
2
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
icu@60.2-3ubuntu3
60.2-3ubuntu3.1
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
icu@55.1-7ubuntu0.4
55.1-7ubuntu0.5
2
osixia/openldap:1.2.4d212a12aa728
icu@57.1-6+deb9u2
57.1-6+deb9u4
2
statsd/statsd:v0.8.6dab129e74c25
icu@57.1-6+deb9u2
57.1-6+deb9u4
2
ujamii/prometheus-sentry-exporter:0.5.06243197349e1
icu@63.1-6
63.1-6+deb10u1
2
a5huynh/oauth2_proxy:2.20c7307d31ca8
icu@52.1-8+deb8u5
52.1-8+deb8u8
1
alphayax/phpmemcachedadmin:latestc284977f027a
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
amancevice/superset:0.28.1c8c04bfe3d66
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
apache/couchdb:2.39f895c8ae371
icu@57.1-6+deb9u3
57.1-6+deb9u4
1
apacherocketmq/rocketmq-dashboard:1.0.024799aff6cf8
icu@52.1-8+deb8u4
52.1-8+deb8u8
1
beubi/webencryptor:latesta02c2e200920
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
billimek/comcastusage-for-influxdb:latest801bba1228ac
icu@52.1-8+deb8u6
52.1-8+deb8u8
1
bryanalves/honeywell_exporter:0.0.1195f73dce8b21
icu@57.1-6+deb9u1
57.1-6+deb9u4
1
bryanalves/smart_exporter:0.2af47dfbb9413
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
buoyantio/linkerd:1.1.2f4048edaca6f
icu@52.1-8+deb8u5
52.1-8+deb8u8
1
camptocamp/ekorre:0.1.035c91d5fda04
icu@63.1-6
63.1-6+deb10u1
1
camptocamp/imap-mailbox-exporter:latest9dec019e4c62
icu@52.1-8+deb8u5
52.1-8+deb8u8
1
camptocamp/ldap-search-exporter:latest5e55370dd292
icu@52.1-8+deb8u5
52.1-8+deb8u8
1
camptocamp/pghoard:10bff736b15623
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
cdignam/kodiak:v0.54.05a6a55b39cee
icu@63.1-6
63.1-6+deb10u1
1
ceticasbl/pg-ldap-sync:latest6c0aa7567145
icu@63.1-6
63.1-6+deb10u1
1
cheyang/distributed-tf:1.6.046cc34755493
icu@55.1-7ubuntu0.3
55.1-7ubuntu0.5
1
codaprotocol/coda-user-agent:0.1.54ba4dd3a041f
icu@57.1-6+deb9u3
57.1-6+deb9u4
1
conduction/agendaservice-nginx:lateste1c176458aaf
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
conduction/balance-registration-nginx:dev9e24264ea8f3
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
conduction/betaalservice-nginx:latestd3577ddd5c67
icu@57.1-6+deb9u2
57.1-6+deb9u4
1
conduction/cgrc-nginx:devd8e23f10e882
icu@57.1-6+deb9u2
57.1-6+deb9u4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.