StackRadar

CVE-2020-12762

High

Advisory

Published 9 May 2020In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.019
78th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
86
of 17,781 indexed, latest versions
Container images
85
deployed by those charts
Fix available
6 of 6
affected packages

Red Hat Security Advisory: json-c security and bug fix update

Carried by container images the latest versions of 86 of 17,781 indexed charts deploy, on 85 images.

Affected packageAffected versionsFixed inImages
json-crpm0.13-1.19, 0.13.1-0.2.el8, 0.13.1-0.4.el80:0.13.1-2.el8, 0.13-3.3.151
json-cdeb0.11-3ubuntu1.2, 0.11-4, 0.11-4ubuntu2, 0.12.1-1.1+3 more0.11-3ubuntu1.2+esm3, 0.11-4+deb8u1, 0.11-4ubuntu2.6, 0.12.1-1.1+deb9u1+2 more29
json-capk0.13.1-r00.13.1-r11
libfastjsonapk0.99.9-r01.2304.0-r01
libfastjsonrpm0.99.9-1.el80:0.99.9-2.el81
libfastjsondeb0.99.8-2, 0.99.9-10.99.8-2+deb10u1, 0.99.9-1+deb11u12
OSV records
ALPINE-CVE-2020-12762RHSA-2021:4382RLSA-2023:6976UBUNTU-CVE-2020-12762DLA-2228-1DLA-2301-1DLA-3461-1DLA-4258-1DSA-4741-1SUSE-SU-2022:0184-1
Also known as
DLA-2228-2, USN-4360-1, USN-4360-4

Charts affected

86 by stars
ChartLatestAffected imagesRadar Score
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

12,856
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
json-c@0.12.1-1.3ubuntu0.2
0.12.1-1.3ubuntu0.3

Open the chart page →

26,356
cloud-native-javamcouliba0.1.01 of 1See more

cloud-native-java mcouliba 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

4,979
cockroachdb-operatormmontesVerified publisher0.1.01 of 1See more

cockroachdb-operator mmontes 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
cockroachdb/cockroach-operator:v2.1.0983312754620
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

7,775
zookeeper-helm-chartnotesprojectchart0.1.01 of 1See more

zookeeper-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3

Open the chart page →

41,427
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

18,023
accelleran-cbrs-cuopencord0.1.81 of 2See more

accelleran-cbrs-cu opencord 0.1.8

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/pod-init:1.0.016c14327ce4a
json-c@0.13.1-r0
0.13.1-r1

Open the chart page →

1,001
accelleran-cuopencord0.1.21 of 4See more

accelleran-cu opencord 0.1.2

1 of the 4 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/pod-init:1.0.016c14327ce4a
json-c@0.13.1-r0
0.13.1-r1

Open the chart page →

1,001
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6

Open the chart page →

63,223
comac-cuopencord0.1.11 of 4See more

comac-cu opencord 0.1.1

1 of the 4 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3

Open the chart page →

8,047
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3

Open the chart page →

15,702
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6

Open the chart page →

29,124
mcord-control-planeopencord0.2.21 of 5See more

mcord-control-plane opencord 0.2.2

1 of the 5 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3

Open the chart page →

15,648
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
omecproject/pod-init:1.0.016c14327ce4a
json-c@0.13.1-r0
0.13.1-r1

Open the chart page →

40,715
sebaopencord1.0.01 of 17See more

seba opencord 1.0.0

1 of the 17 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
voltha/voltha-envoy:1.6.059ab2a00f712
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3

Open the chart page →

93,855
voltha-infraopencord2.14.01 of 10See more

voltha-infra opencord 2.14.0

1 of the 10 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3

Open the chart page →

41,044
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

14,727
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3

Open the chart page →

26,339
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

15,466
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

11,151
quarksquarks7.0.1+0.g5396b114 of 5See more

quarks quarks 7.0.1+0.g5396b11

4 of the 5 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
json-c@0.13-1.19
0.13-3.3.1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
json-c@0.13-1.19
0.13-3.3.1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
json-c@0.13-1.19
0.13-3.3.1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
json-c@0.13-1.19
0.13-3.3.1

Open the chart page →

18,197
quarks-statefulsetquarks0.0.1304-g4b4f2ac51 of 1See more

quarks-statefulset quarks 0.0.1304-g4b4f2ac5

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
json-c@0.13-1.19
0.13-3.3.1

Open the chart page →

4,010
ibm-mongodb-enterprise-helmredhat0.3.01 of 1See more

ibm-mongodb-enterprise-helm redhat 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

12,248
ansible-automation-platformredhat-cop0.0.91 of 1See more

ansible-automation-platform redhat-cop 0.0.9

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

15,291
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

15,291
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

11,437
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

29,227
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

21,997
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

28,165
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

6,596
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

12,455
openldap-havcnngrVerified publisher1.0.01 of 3See more

openldap-ha vcnngr 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
osixia/phpldapadmin:0.9.0d112b82be133
json-c@0.12.1+ds-2
0.12.1+ds-2+deb10u1

Open the chart page →

5,514
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8

Open the chart page →

28,605
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2020-12762.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8

Open the chart page →

6,915

Container images carrying it

85 by charts deploying them

A fixed version is listed for 6 of the 6 affected packages.

Container imageDigestPackageFixed inUsed by
osixia/phpldapadmin:0.9.0d112b82be133
json-c@0.12.1+ds-2
0.12.1+ds-2+deb10u1
5
bde2020/hive:2.3.2-postgresql-metastore620267768985
json-c@0.11-4
0.11-4+deb8u1
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6
4
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6
3
omecproject/pod-init:1.0.016c14327ce4a
json-c@0.13.1-r0
0.13.1-r1
3
freeradius/freeradius-server:3.0.2121c8bfa904d8
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3
2
gradiant/hive:2.3.2-postgresql-metastoreaae4f8a21f8b
json-c@0.11-4
0.11-4+deb8u1
2
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3
2
osixia/openldap:1.4.0ccd95cc6e61e
json-c@0.12.1+ds-2
0.12.1+ds-2+deb10u1
2
osixia/openldap:1.2.4d212a12aa728
json-c@0.12.1-1.1
0.12.1-1.1+deb9u1
2
wurstmeister/zookeeper:latest7a7fd44a7210
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3
2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
2
anchore/anchore-engine:v0.10.0bde9eedf639d
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
apacherocketmq/rocketmq-dashboard:1.0.024799aff6cf8
json-c@0.11-4
0.11-4+deb8u1
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
bsgrigorov/helm-operator:latest45ab095f09c8
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3
1
cheyang/distributed-tf:1.6.046cc34755493
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6
1
cockroachdb/cockroach-operator:v2.1.0983312754620
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
craftypath/sops-operator:v0.8.0402a0024c732
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
ctron/hawkbit-operator:0.1.48fdea8f76499
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
datawire/ambassador-operator:v1.3.0f95ae710d75c
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
eaudeweb/mailtrap:2.3b8ad9b7e19bb
libfastjson@0.99.8-2
0.99.8-2+deb10u1
1
galaxy/galaxy-init:v18.010267bad550e6
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3
1
galaxy/galaxy-stable:v18.018e577a626dfd
json-c@0.11-3ubuntu1.2
0.11-3ubuntu1.2+esm3
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
json-c@0.11-4ubuntu2
0.11-4ubuntu2.6
1
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
kubeoperator/webkubectl:v2.4.0be8f0d624640
json-c@0.12.1-1.3ubuntu0.2
0.12.1-1.3ubuntu0.3
1
mailserver/docker-mailserver:11.0.0e0809756dc96
libfastjson@0.99.9-1
0.99.9-1+deb11u1
1
mariadb/maxscale:23.02.256c5e0908148
libfastjson@0.99.9-1.el8
0:0.99.9-2.el8
1
minio/mc:RELEASE.2021-02-14T04-28-06Z2a374c124d44
json-c@0.13.1-0.2.el8
0:0.13.1-2.el8
1
minio/operator:v4.1.02adc5be088f5
json-c@0.13.1-0.4.el8
0:0.13.1-2.el8
1
opendatacube/pipelines:wofs-1.225d810e8504b8
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3
1
opendatacube/restcube:latest91870111837c
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3
1
opendatacube/wms:latest1b90cdf68831
json-c@0.12.1-1.3
0.12.1-1.3ubuntu0.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.