StackRadar

CVE-2020-14145

Medium

Advisory

Published 29 Jun 2020In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.021
80th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
192
of 17,781 indexed, latest versions
Container images
190
deployed by those charts
Fix available
2 of 3
affected packages

Red Hat Security Advisory: openssh security update

Carried by container images the latest versions of 192 of 17,781 indexed charts deploy, on 190 images.

Affected packageAffected versionsFixed inImages
opensshdeb1:9.2p1-2, 1:9.2p1-2+deb12u1, 1:9.2p1-2+deb12u2, 1:9.2p1-2+deb12u3+10 moreno fix listed176
opensshapk8.3_p1-r08.3_p1-r18
opensshrpm8.0p1-4.el8_1, 8.0p1-6.el8_4.2, 8.0p1-9.el80:8.0p1-10.el86
OSV records
ALPINE-CVE-2020-14145DEBIAN-CVE-2020-14145RHSA-2021:4368

Charts affected

192 by stars
ChartLatestAffected imagesRadar Score
planectlplanectlVerified publisher0.7.01 of 10See more

planectl planectl 0.7.0

1 of the 10 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/node:208f693eaa7e0a
openssh@1:9.2p1-2+deb12u9
no fix listed

Open the chart page →

25,934
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,912
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssh@1:9.2p1-2+deb12u1
no fix listed

Open the chart page →

6,565
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
openssh@1:9.2p1-2
no fix listed

Open the chart page →

8,169
pyredispyredis-helm0.1.01 of 2See more

pyredis pyredis-helm 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
avinash263/pyredis263:latestaa2b8727f1a6
openssh@1:9.2p1-2
no fix listed

Open the chart page →

14,537
mychartpythonweb0.1.01 of 1See more

mychart pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,566
mypythonpythonweb0.1.01 of 1See more

mypython pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,566
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
apache/airflow:2.10.2-python3.9ce90bdc3d2af
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

21,211
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
openssh@8.0p1-9.el8
0:8.0p1-10.el8

Open the chart page →

29,227
redminerestic-pvc-backupVerified publisher0.2.61 of 1See more

redmine restic-pvc-backup 0.2.6

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

4,240
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

7,431
juicepassproxyretsamedocVerified publisher2026.2.41 of 1See more

juicepassproxy retsamedoc 2026.2.4

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssh@1:9.2p1-2+deb12u5
no fix listed

Open the chart page →

3,938
kresusrm3lVerified publisher0.2.11 of 3See more

kresus rm3l 0.2.1

1 of the 3 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
bnjbvr/kresus:0.22.137e216b182c8
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

15,591
ai-agentromholdings0.0.11 of 1See more

ai-agent romholdings 0.0.1

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

9,607
devtron-enterpriseromholdings48.0.02 of 28See more

devtron-enterprise romholdings 48.0.0

2 of the 28 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssh@1:9.2p1-2+deb12u1
no fix listed
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssh@1:9.2p1-2+deb12u7
no fix listed

Open the chart page →

68,240
devtron-operatorromholdings0.23.31 of 11See more

devtron-operator romholdings 0.23.3

1 of the 11 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssh@1:9.2p1-2+deb12u1
no fix listed

Open the chart page →

32,902
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
openssh@1:10.0p1-7
no fix listed

Open the chart page →

9,534
safe-stacksafe-global0.1.01 of 9See more

safe-stack safe-global 0.1.0

1 of the 9 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssh@1:9.2p1-2
no fix listed

Open the chart page →

19,560
safe-transaction-servicesafe-global0.1.01 of 6See more

safe-transaction-service safe-global 0.1.0

1 of the 6 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssh@1:9.2p1-2
no fix listed

Open the chart page →

16,620
airflowsb-helm-charts0.3.01 of 1See more

airflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
apache/airflow:2.8.1e5560ad0b86e
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

10,209
s3-backupschichtelVerified publisher0.10.01 of 1See more

s3-backup schichtel 0.10.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,343
otterwikischmitzis0.1.01 of 1See more

otterwiki schmitzis 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
redimp/otterwiki:2778bf30da3da
openssh@1:9.2p1-2+deb12u10
no fix listed

Open the chart page →

3,218
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8

Open the chart page →

21,997
infisicalsinextraVerified publisher0.6.01 of 1See more

infisical sinextra 0.6.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
infisical/infisical:v0.165.602082bf13163
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

3,014
slothsloth0.16.01 of 2See more

sloth sloth 0.16.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssh@1:10.0p1-7
no fix listed

Open the chart page →

3,962
spacecapybara-chartspacecapy1.0.491 of 2See more

spacecapybara-chart spacecapy 1.0.49

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
sashafefler/spacecapybara_app:latestf96d7804c0ca
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,888
servicexssl-hep1.8.510 of 16See more

servicex ssl-hep 1.8.5

10 of the 16 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.1070c9cc675605
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_app:v1.8.51d12f943cec5
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

66,266
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8

Open the chart page →

28,165
jenkinsstakaterVerified publisher0.21.01 of 1See more

jenkins stakater 0.21.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,476
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
openssh@1:9.2p1-2
no fix listed

Open the chart page →

20,223
ssv-nodestakewise2.2.01 of 2See more

ssv-node stakewise 2.2.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
openssh@1:9.2p1-2+deb12u4
no fix listed

Open the chart page →

6,779
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

13,390
cronjobt3n0.1.01 of 1See more

cronjob t3n 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.8d41127070014
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,199
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,648
codegentest-opea1.0.01 of 5See more

codegen test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/codegen-ui:1.02bee4eb66f3e
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,814
codetranstest-opea1.0.01 of 5See more

codetrans test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/codetrans-ui:1.03ef121f34610
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,385
docsumtest-opea1.0.01 of 5See more

docsum test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/docsum-ui:1.07f854e9bffaf
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,858
jenkinstnh2.7.11 of 2See more

jenkins tnh 2.7.1

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

4,423
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

17,323
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssh@1:9.2p1-2
no fix listed

Open the chart page →

14,358
jenkinswebencryptor1.9.181 of 1See more

jenkins webencryptor 1.9.18

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,476
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

5,542

Container images carrying it

190 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/esphome/esphome:2026.4.078a82d810709
openssh@1:9.2p1-2+deb12u5
no fix listed
1
ghcr.io/firecrawl/firecrawl:2.11.33092ee28c20a0d
openssh@1:9.2p1-2+deb12u10
no fix listed
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssh@1:9.2p1-2+deb12u5
no fix listed
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
openssh@1:10.0p1-7+deb13u1
no fix listed
1
ghcr.io/moghtech/komodo-core:2.3.3bca73d0eee14
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
openssh@1:9.2p1-2+deb12u7
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
openssh@1:9.2p1-2+deb12u6
no fix listed
1
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-033e56bdd1b90d
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
openssh@1:9.2p1-2+deb12u4
no fix listed
1
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
openssh@1:9.2p1-2+deb12u10
no fix listed
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
openssh@1:9.2p1-2+deb12u10
no fix listed
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
openssh@1:9.2p1-2+deb12u4
no fix listed
1
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
openssh@1:9.2p1-2+deb12u10
no fix listed
1
ghcr.io/stac-utils/stac-fastapi-pgstac:6.4.0fa35b9519abb
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/wgbh-mla/chowda:main86ab9effd1a5
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
openssh@1:9.2p1-2+deb12u7
no fix listed
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
openssh@1:9.2p1-2+deb12u1
no fix listed
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
openssh@1:9.2p1-2+deb12u4
no fix listed
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
openssh@1:9.2p1-2+deb12u3
no fix listed
1
public.ecr.aws/jtekt-corporation/ecr-pullsecret-renewer:latest442cc3b32935
openssh@8.3_p1-r0
8.3_p1-r1
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
openssh@1:9.2p1-2+deb12u3
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
openssh@1:9.2p1-2+deb12u2
no fix listed
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
openssh@1:9.2p1-2+deb12u1
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
openssh@1:9.2p1-2+deb12u2
no fix listed
1
quay.io/argoprojlabs/gitops-promoter:v0.38.19c8a510dc25e
openssh@1:10.0p1-7+deb13u4
no fix listed
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
openssh@8.0p1-4.el8_1
0:8.0p1-10.el8
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
openssh@8.0p1-9.el8
0:8.0p1-10.el8
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssh@1:9.2p1-2
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
openssh@1:9.2p1-2+deb12u10
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssh@1:10.0p1-7
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssh@1:9.2p1-2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.