StackRadar

CVE-2020-12762

High

Advisory

Published 9 May 2020In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.019
78th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
86
of 17,781 indexed, latest versions
Container images
85
deployed by those charts
Fix available
6 of 6
affected packages

Red Hat Security Advisory: json-c security and bug fix update

Carried by container images the latest versions of 86 of 17,781 indexed charts deploy, on 85 images.

Affected packageAffected versionsFixed inImages
json-crpm0.13-1.19, 0.13.1-0.2.el8, 0.13.1-0.4.el80:0.13.1-2.el8, 0.13-3.3.151
json-cdeb0.11-3ubuntu1.2, 0.11-4, 0.11-4ubuntu2, 0.12.1-1.1+3 more0.11-3ubuntu1.2+esm3, 0.11-4+deb8u1, 0.11-4ubuntu2.6, 0.12.1-1.1+deb9u1+2 more29
json-capk0.13.1-r00.13.1-r11
libfastjsonapk0.99.9-r01.2304.0-r01
libfastjsonrpm0.99.9-1.el80:0.99.9-2.el81
libfastjsondeb0.99.8-2, 0.99.9-10.99.8-2+deb10u1, 0.99.9-1+deb11u12
OSV records
ALPINE-CVE-2020-12762RHSA-2021:4382RLSA-2023:6976UBUNTU-CVE-2020-12762DLA-2228-1DLA-2301-1DLA-3461-1DLA-4258-1DSA-4741-1SUSE-SU-2022:0184-1
Also known as
DLA-2228-2, USN-4360-1, USN-4360-4

Charts affected

86 by stars
ChartLatestAffected imagesRadar Score
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

12,856
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
json-c@0.12.1-1.3ubuntu0.2
0.12.1-1.3ubuntu0.3

Open the chart page →

26,356
cloud-native-javamcouliba0.1.01 of 1See more

cloud-native-java mcouliba 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

4,979
cockroachdb-operatormmontesVerified publisher0.1.01 of 1See more

cockroachdb-operator mmontes 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
cockroachdb/cockroach-operator:v2.1.0983312754620
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

7,775
zookeeper-helm-chartnotesprojectchart0.1.01 of 1See more

zookeeper-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3

Open the chart page →

41,427
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

18,023
accelleran-cbrs-cuopencord0.1.81 of 2See more

accelleran-cbrs-cu opencord 0.1.8

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/pod-init:1.0.016c14327ce4a
json-c@0.13.1-r0
0.13.1-r1

Open the chart page →

1,001
accelleran-cuopencord0.1.21 of 4See more

accelleran-cu opencord 0.1.2

1 of the 4 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/pod-init:1.0.016c14327ce4a
json-c@0.13.1-r0
0.13.1-r1

Open the chart page →

1,001
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6

Open the chart page →

63,223
comac-cuopencord0.1.11 of 4See more

comac-cu opencord 0.1.1

1 of the 4 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3

Open the chart page →

8,047
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3

Open the chart page →

15,702
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6

Open the chart page →

29,124
mcord-control-planeopencord0.2.21 of 5See more

mcord-control-plane opencord 0.2.2

1 of the 5 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3

Open the chart page →

15,648
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/pod-init:1.0.016c14327ce4a
json-c@0.13.1-r0
0.13.1-r1

Open the chart page →

40,715
sebaopencord1.0.01 of 17See more

seba opencord 1.0.0

1 of the 17 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
voltha/voltha-envoy:1.6.059ab2a00f712
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3

Open the chart page →

93,855
voltha-infraopencord2.14.01 of 10See more

voltha-infra opencord 2.14.0

1 of the 10 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3

Open the chart page →

41,044
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

14,727
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3

Open the chart page →

26,339
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

15,466
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

11,151
quarksquarks7.0.1+0.g5396b114 of 5See more

quarks quarks 7.0.1+0.g5396b11

4 of the 5 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
json-c@0.13-1.19
0.13-3.3.1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
json-c@0.13-1.19
0.13-3.3.1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
json-c@0.13-1.19
0.13-3.3.1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
json-c@0.13-1.19
0.13-3.3.1

Open the chart page →

18,197
quarks-statefulsetquarks0.0.1304-g4b4f2ac51 of 1See more

quarks-statefulset quarks 0.0.1304-g4b4f2ac5

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
json-c@0.13-1.19
0.13-3.3.1

Open the chart page →

4,010
ibm-mongodb-enterprise-helmredhat0.3.01 of 1See more

ibm-mongodb-enterprise-helm redhat 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

12,248
ansible-automation-platformredhat-cop0.0.91 of 1See more

ansible-automation-platform redhat-cop 0.0.9

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

15,291
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

15,291
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

11,437
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

29,227
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

21,997
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

28,165
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

6,596
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

12,455
openldap-havcnngrVerified publisher1.0.01 of 3See more

openldap-ha vcnngr 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
osixia/phpldapadmin:0.9.0d112b82be133
json-c@0.12.1+ds-2
0.12.1+ds-2+deb10u1

Open the chart page →

5,514
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

28,605
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

6,915

Container images carrying it

85 by charts deploying them

A fixed version is listed for 6 of the 6 affected packages.

Container imageDigestPackageFixed inUsed by
opsmx11/issuegen:v2.1.05c50ca123d88
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
polyakov/hapi-fhir-jpaserver-example:latestdbcef69146b8
json-c@0.11-4
0.11-4+deb8u1
1
resouer/redis-slave:v2e2f198b49ba7
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6
1
timothyclarke/wptserver:2018-03-0840a80ced8031
json-c@0.11-4
0.11-4+deb8u1
1
voltha/voltha-envoy:1.6.059ab2a00f712
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
json-c@0.13-1.19
0.13-3.3.1
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
json-c@0.13-1.19
0.13-3.3.1
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
json-c@0.13-1.19
0.13-3.3.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
json-c@0.13-1.19
0.13-3.3.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
json-c@0.13-1.19
0.13-3.3.1
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
ghcr.io/mailu/clamav:1.9.5001d30483e4a8
libfastjson@0.99.9-r0
1.2304.0-r0
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
quay.io/openshift/origin-cli:4.66722d5041b47
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.