StackRadar

CVE-2020-14145

Medium

Advisory

Published 29 Jun 2020In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.021
80th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
192
of 17,781 indexed, latest versions
Container images
190
deployed by those charts
Fix available
2 of 3
affected packages

Red Hat Security Advisory: openssh security update

Carried by container images the latest versions of 192 of 17,781 indexed charts deploy, on 190 images.

Affected packageAffected versionsFixed inImages
opensshdeb1:9.2p1-2, 1:9.2p1-2+deb12u1, 1:9.2p1-2+deb12u2, 1:9.2p1-2+deb12u3+10 moreno fix listed176
opensshapk8.3_p1-r08.3_p1-r18
opensshrpm8.0p1-4.el8_1, 8.0p1-6.el8_4.2, 8.0p1-9.el80:8.0p1-10.el86
OSV records
ALPINE-CVE-2020-14145DEBIAN-CVE-2020-14145RHSA-2021:4368

Charts affected

192 by stars
ChartLatestAffected imagesRadar Score
planectlplanectlVerified publisher0.7.01 of 10See more

planectl planectl 0.7.0

1 of the 10 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/node:208f693eaa7e0a
openssh@1:9.2p1-2+deb12u9
no fix listed

Open the chart page →

25,934
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,912
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssh@1:9.2p1-2+deb12u1
no fix listed

Open the chart page →

6,565
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
openssh@1:9.2p1-2
no fix listed

Open the chart page →

8,169
pyredispyredis-helm0.1.01 of 2See more

pyredis pyredis-helm 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
avinash263/pyredis263:latestaa2b8727f1a6
openssh@1:9.2p1-2
no fix listed

Open the chart page →

14,537
mychartpythonweb0.1.01 of 1See more

mychart pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,566
mypythonpythonweb0.1.01 of 1See more

mypython pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,566
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
apache/airflow:2.10.2-python3.9ce90bdc3d2af
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

21,211
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
openssh@8.0p1-9.el8
0:8.0p1-10.el8

Open the chart page →

29,227
redminerestic-pvc-backupVerified publisher0.2.61 of 1See more

redmine restic-pvc-backup 0.2.6

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

4,240
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

7,431
juicepassproxyretsamedocVerified publisher2026.2.41 of 1See more

juicepassproxy retsamedoc 2026.2.4

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssh@1:9.2p1-2+deb12u5
no fix listed

Open the chart page →

3,938
kresusrm3lVerified publisher0.2.11 of 3See more

kresus rm3l 0.2.1

1 of the 3 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
bnjbvr/kresus:0.22.137e216b182c8
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

15,591
ai-agentromholdings0.0.11 of 1See more

ai-agent romholdings 0.0.1

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

9,607
devtron-enterpriseromholdings48.0.02 of 28See more

devtron-enterprise romholdings 48.0.0

2 of the 28 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssh@1:9.2p1-2+deb12u1
no fix listed
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssh@1:9.2p1-2+deb12u7
no fix listed

Open the chart page →

68,240
devtron-operatorromholdings0.23.31 of 11See more

devtron-operator romholdings 0.23.3

1 of the 11 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssh@1:9.2p1-2+deb12u1
no fix listed

Open the chart page →

32,902
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
openssh@1:10.0p1-7
no fix listed

Open the chart page →

9,534
safe-stacksafe-global0.1.01 of 9See more

safe-stack safe-global 0.1.0

1 of the 9 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssh@1:9.2p1-2
no fix listed

Open the chart page →

19,560
safe-transaction-servicesafe-global0.1.01 of 6See more

safe-transaction-service safe-global 0.1.0

1 of the 6 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssh@1:9.2p1-2
no fix listed

Open the chart page →

16,620
airflowsb-helm-charts0.3.01 of 1See more

airflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
apache/airflow:2.8.1e5560ad0b86e
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

10,209
s3-backupschichtelVerified publisher0.10.01 of 1See more

s3-backup schichtel 0.10.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,343
otterwikischmitzis0.1.01 of 1See more

otterwiki schmitzis 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
redimp/otterwiki:2778bf30da3da
openssh@1:9.2p1-2+deb12u10
no fix listed

Open the chart page →

3,218
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8

Open the chart page →

21,997
infisicalsinextraVerified publisher0.6.01 of 1See more

infisical sinextra 0.6.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
infisical/infisical:v0.165.602082bf13163
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

3,014
slothsloth0.16.01 of 2See more

sloth sloth 0.16.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssh@1:10.0p1-7
no fix listed

Open the chart page →

3,962
spacecapybara-chartspacecapy1.0.491 of 2See more

spacecapybara-chart spacecapy 1.0.49

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
sashafefler/spacecapybara_app:latestf96d7804c0ca
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,888
servicexssl-hep1.8.510 of 16See more

servicex ssl-hep 1.8.5

10 of the 16 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.1070c9cc675605
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_app:v1.8.51d12f943cec5
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

66,266
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8

Open the chart page →

28,165
jenkinsstakaterVerified publisher0.21.01 of 1See more

jenkins stakater 0.21.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,476
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
openssh@1:9.2p1-2
no fix listed

Open the chart page →

20,223
ssv-nodestakewise2.2.01 of 2See more

ssv-node stakewise 2.2.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
openssh@1:9.2p1-2+deb12u4
no fix listed

Open the chart page →

6,779
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

13,390
cronjobt3n0.1.01 of 1See more

cronjob t3n 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.8d41127070014
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,199
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,648
codegentest-opea1.0.01 of 5See more

codegen test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/codegen-ui:1.02bee4eb66f3e
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,814
codetranstest-opea1.0.01 of 5See more

codetrans test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/codetrans-ui:1.03ef121f34610
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,385
docsumtest-opea1.0.01 of 5See more

docsum test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/docsum-ui:1.07f854e9bffaf
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,858
jenkinstnh2.7.11 of 2See more

jenkins tnh 2.7.1

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

4,423
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

17,323
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssh@1:9.2p1-2
no fix listed

Open the chart page →

14,358
jenkinswebencryptor1.9.181 of 1See more

jenkins webencryptor 1.9.18

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,476
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

5,542

Container images carrying it

190 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
openssh@1:9.2p1-2+deb12u6
no fix listed
1
gitea/gitea:1.13.0d5ab14cd29af
openssh@8.3_p1-r0
8.3_p1-r1
1
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
openssh@8.3_p1-r0
8.3_p1-r1
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
openssh@1:9.2p1-2
no fix listed
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
openssh@1:10.0p1-7
no fix listed
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
openssh@1:9.2p1-2+deb12u2
no fix listed
1
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
openssh@1:9.2p1-2+deb12u7
no fix listed
1
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
openssh@8.0p1-4.el8_1
0:8.0p1-10.el8
1
ildarmukhametzyanov/priceapp:0.115d23720a3ee
openssh@1:9.2p1-2
no fix listed
1
instill/artifact-backend:b28766ac4a393e601ed
openssh@1:10.0p1-7
no fix listed
1
instill/mgmt-backend:d0933d4ebe12f77a3f9
openssh@1:10.0p1-7
no fix listed
1
instill/model-backend:611f0f2e980125e5ba5
openssh@1:10.0p1-7
no fix listed
1
intelowlproject/intelowl:v6.6.10b22e547ea6b
openssh@1:9.2p1-2+deb12u2
no fix listed
1
inventree/inventree:1.5.4a946ec09da3e
openssh@1:10.0p1-7+deb13u4
no fix listed
1
jenkins/jenkins:2.462.2-jdk1795313257a8cd
openssh@1:9.2p1-2+deb12u3
no fix listed
1
jenkins/jenkins:2.440.3-jdk17de4fea113221
openssh@1:9.2p1-2+deb12u2
no fix listed
1
jordan/icinga2:latestf75025fe8ea8
openssh@1:9.2p1-2+deb12u10
no fix listed
1
keyporttech/csi-driver-nfs:2.0.05bd7955ea2f1
openssh@8.3_p1-r0
8.3_p1-r1
1
kitware/cdash:v5.3.0d7767d9b9da4
openssh@1:10.0p1-7+deb13u4
no fix listed
1
kixote/typemill4e9dff179519
openssh@1:10.0p1-7+deb13u4
no fix listed
1
kixote/typemill628f79a08cc7
openssh@1:10.0p1-7+deb13u4
no fix listed
1
knspar/phronetis-operator:0.1.60c4f0543ee58
openssh@1:9.2p1-2+deb12u2
no fix listed
1
laly9999/node-app:1dd0e503913e1
openssh@1:9.2p1-2+deb12u6
no fix listed
1
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
openssh@1:9.2p1-2+deb12u10
no fix listed
1
library/buildpack-deps:scmac978b783657
openssh@1:10.0p1-7+deb13u4
no fix listed
1
library/golang:latest512690a56605
openssh@1:10.0p1-7+deb13u4
no fix listed
1
library/node:208f693eaa7e0a
openssh@1:9.2p1-2+deb12u9
no fix listed
1
library/node:latestf5d1cc40abc1
openssh@1:10.0p1-7+deb13u4
no fix listed
1
library/python:3.1070c9cc675605
openssh@1:10.0p1-7+deb13u4
no fix listed
1
library/python:3.8d41127070014
openssh@1:9.2p1-2+deb12u3
no fix listed
1
library/python:3.9da5aee29682d
openssh@1:10.0p1-7
no fix listed
1
library/redmine:6.1.204ac44a2595b
openssh@1:10.0p1-7+deb13u4
no fix listed
1
mathesar/mathesar:0.12.0091757cb01fe
openssh@1:9.2p1-2+deb12u10
no fix listed
1
mindsdb/mindsdb:latest163011c09299
openssh@1:10.0p1-7+deb13u2
no fix listed
1
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
openssh@1:9.2p1-2+deb12u5
no fix listed
1
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
openssh@1:9.2p1-2+deb12u10
no fix listed
1
moreillon/api-proxy:latestd7d4a5463525
openssh@1:9.2p1-2+deb12u6
no fix listed
1
moreillon/food-manager:lateste8fd856e593d
openssh@1:9.2p1-2+deb12u6
no fix listed
1
moreillon/group-manager:latest3caa8f710ee0
openssh@1:9.2p1-2+deb12u7
no fix listed
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
openssh@1:9.2p1-2+deb12u1
no fix listed
1
muhammedgamal/fp23:latest74b4cd69b6fa
openssh@1:9.2p1-2+deb12u2
no fix listed
1
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
openssh@1:10.0p1-7+deb13u4
no fix listed
1
oneuptime/runner:release4accc516d800
openssh@1:10.0p1-7+deb13u4
no fix listed
1
opea/codegen-ui:1.02bee4eb66f3e
openssh@1:9.2p1-2+deb12u2
no fix listed
1
opea/codetrans-ui:1.03ef121f34610
openssh@1:9.2p1-2+deb12u2
no fix listed
1
opea/docsum-ui:1.07f854e9bffaf
openssh@1:9.2p1-2+deb12u2
no fix listed
1
openbas/caldera-server:5.1.0a277796d9724
openssh@1:9.2p1-2+deb12u5
no fix listed
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
openssh@1:9.2p1-2+deb12u3
no fix listed
1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
openssh@1:9.2p1-2+deb12u3
no fix listed
1
opencsghq/kubectl:latestb6d87e1048c2
openssh@1:9.2p1-2+deb12u7
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.