StackRadar

CVE-2020-14343

Critical

Advisory

Published 9 Feb 2021In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.060
93rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
187
of 17,781 indexed, latest versions
Container images
167
deployed by those charts
Fix available
9 of 9
affected packages

Improper Input Validation in PyYAML

Carried by container images the latest versions of 187 of 17,781 indexed charts deploy, on 167 images.

Affected packageAffected versionsFixed inImages
pyyamlpypi3.10, 3.12, 3.13, 5.1+5 more5.4120
python-chardetrpm3.0.4-7.el80:3.0.4-19.module+el8.4.0+8888+89bc7e7944
python-idnarpm2.5-5.el8, 2.5-7.el8_10, 2.5-8.el8_100:2.8-6.module+el8.4.0+8888+89bc7e7944
python-pysocksrpm1.6.8-3.el80:1.7.1-4.module+el8.4.0+8888+89bc7e7944
python-requestsrpm2.20.0-2.1.el8_1, 2.20.0-3.el8_6, 2.20.0-3.el8_8, 2.20.0-6.el8_100:2.22.0-9.module+el8.4.0+8888+89bc7e7944
python-urllib3rpm1.24.2-4.el8, 1.24.2-5.el8, 1.24.2-5.el8_6.1, 1.24.2-5.el8_9.2+3 more0:1.25.7-4.module+el8.4.0+8888+89bc7e7944
python-plyrpm3.9-8.el8, 3.9-9.el80:3.11-10.module+el8.4.0+570+c2eaf144, 0:3.11-10.module+el8.4.0+9579+e9717e1813
py3-yamlapk5.3.1-r05.3.1-r11
python-wheelrpm1:0.31.1-2.module+el8.1.0+3724+3c0970900:0.33.6-5.module+el8.4.0+8888+89bc7e791
OSV records
ALPINE-CVE-2020-14343GHSA-8q59-q68h-6hv4RHSA-2021:2583RLSA-2021:2583
Also known as
PYSEC-2021-142

Charts affected

187 by stars
ChartLatestAffected imagesRadar Score
online-boutiquekubesphere-testVerified publisher0.1.01 of 11See more

online-boutique kubesphere-test 0.1.0

1 of the 11 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
pyyaml@5.3.1
5.4

Open the chart page →

26,018
kyso-nbdimekyso1.0.01 of 1See more

kyso-nbdime kyso 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
kyso/kyso-nbdime:latest4aa9d38ee81d
pyyaml@5.3.1
5.4

Open the chart page →

2,765
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.193170069ff0976
pyyaml@5.3.1
5.4

Open the chart page →

4,423
legendlegend0.1.21 of 1See more

legend legend 0.1.2

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
ghcr.io/grofers/legend:0.1d6e901ad0ebd
pyyaml@5.3.1
5.4

Open the chart page →

4,067
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
lsstsqre/squash-api:0.5.34879415ec6ac
pyyaml@5.3.1
5.4

Open the chart page →

6,611
marge-botmarge-bot1.1.01 of 1See more

marge-bot marge-bot 1.1.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
smarketshq/marge-bot:0.9.2cfc765b27e64
pyyaml@5.1
5.4

Open the chart page →

337
marge-botmarge-bot-helm1.3.51 of 1See more

marge-bot marge-bot-helm 1.3.5

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.16.0b59f01bc0418
pyyaml@5.3.1
5.4

Open the chart page →

3,574
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.3.065095a82d4a1
pyyaml@5.3.1
5.4

Open the chart page →

68,284
fossologymidokura-communityVerified publisher0.2.21 of 2See more

fossology midokura-community 0.2.2

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
fossology/fossology:4.2.18bd1f22ba7bb
pyyaml@3.13
5.4

Open the chart page →

3,294
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-backend:0.11a9ce0b8fbd4
pyyaml@5.3.1
5.4

Open the chart page →

6,438
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
pyyaml@5.3.1
5.4

Open the chart page →

25,933
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
pyyaml@5.3.1
5.4

Open the chart page →

15,675
mozalert-controllermozilla0.4.01 of 1See more

mozalert-controller mozilla 0.4.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
afrank/mozalert-controller:latestd463c37b08d7
pyyaml@5.3.1
5.4

Open the chart page →

2,969
elasticsearch2ncsaVerified publisher0.2.21 of 2See more

elasticsearch2 ncsa 0.2.2

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
elastichq/elasticsearch-hq:latestbb3bd22c2b87
pyyaml@3.13
5.4

Open the chart page →

4,911
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
ncsapolyglot/converters-ebook-convert:latest438d82cdbdb5
pyyaml@3.12
5.4

Open the chart page →

55,726
nfl-walletnfl-walletVerified publisher0.1.31 of 4See more

nfl-wallet nfl-wallet 0.1.3

1 of the 4 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-6.el8_10
python-urllib3@1.24.2-9.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,041
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
pyyaml@5.3.1
5.4

Open the chart page →

22,658
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

18,023
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
pyyaml@5.1
5.4
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
pyyaml@3.12
5.4
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
pyyaml@3.12
5.4

Open the chart page →

88,546
comac-platformopencord0.0.172 of 11See more

comac-platform opencord 0.0.17

2 of the 11 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
pyyaml@5.1
5.4
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
pyyaml@3.12
5.4

Open the chart page →

26,211
nem-monitoringopencord1.3.221 of 9See more

nem-monitoring opencord 1.3.22

1 of the 9 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.20af151f677a63
pyyaml@5.1.2
5.4

Open the chart page →

4,612
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
pyyaml@3.12
5.4

Open the chart page →

12,609
sebaopencord1.0.04 of 17See more

seba opencord 1.0.0

4 of the 17 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
voltha/voltha-cli:1.6.0c4e41e92f046
pyyaml@3.12
5.4
voltha/voltha-netconf:1.6.037f80524c207
pyyaml@3.12
5.4
voltha/voltha-ofagent:1.6.09ee8c1f4428c
pyyaml@3.12
5.4
voltha/voltha-voltha:1.6.0ff596b62de59
pyyaml@3.12
5.4

Open the chart page →

93,855
openldapopenldap0.1.11 of 2See more

openldap openldap 0.1.1

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
pyyaml@3.13
5.4

Open the chart page →

5,293
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

11,796
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

34,671
canvas-oamportalopenshift4.0.01 of 1See more

canvas-oamportal openshift 4.0.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/oam:4.0.0ed8fd2062548
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

7,519
exporteropenshift1.0.471 of 3See more

exporter openshift 1.0.47

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,000
hamiopenshift2.10.0-r0-openshift.c4e22e881 of 2See more

hami openshift 2.10.0-r0-openshift.c4e22e88

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
ghcr.io/dynamia-ai/hami-enterprise:v2.10.0-r0-openshift.c4e22e88745504757300
python-chardet@3.0.4-7.el8
python-idna@2.5-8.el8_10
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-6.el8_10
python-urllib3@1.24.2-10.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

4,749
kite-agentopenshift1.0.01 of 1See more

kite-agent openshift 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-6.el8_10
python-urllib3@1.24.2-9.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

5,863
orion-ldopenshift1.0.31 of 2See more

orion-ld openshift 1.0.3

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

14,727
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,100
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
pyyaml@5.3.1
5.4

Open the chart page →

36,215
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

15,466
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
pyyaml@5.3
5.4

Open the chart page →

11,151
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

12,754
ibm-mongodb-enterprise-helmredhat0.3.01 of 1See more

ibm-mongodb-enterprise-helm redhat 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-4.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

12,248
ansible-automation-platformredhat-cop0.0.91 of 1See more

ansible-automation-platform redhat-cop 0.0.9

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

15,291
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

15,291
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
python-ply@3.9-8.el8
0:3.11-10.module+el8.4.0+9579+e9717e18

Open the chart page →

11,437
sonatype-nexusredhat-cop1.1.131 of 2See more

sonatype-nexus redhat-cop 1.1.13

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_6
python-urllib3@1.24.2-5.el8_6.1
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

16,047
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

29,227
argocdromholdings1.8.11 of 3See more

argocd romholdings 1.8.1

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
pyyaml@5.3.1
5.4

Open the chart page →

10,466
test-helm-app2saam-helm-test0.1.01 of 1See more

test-helm-app2 saam-helm-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
asdkant/fastapi-hello-world:latesta23d8bf7c885
pyyaml@5.3.1
5.4

Open the chart page →

2,770

Container images carrying it

167 by charts deploying them

A fixed version is listed for 9 of the 9 affected packages.

Container imageDigestPackageFixed inUsed by
deepflowce/deepflow-app:v6.2.6.5a1888d35e787
pyyaml@3.13
5.4
1
douz/helpdesk:latest4384103d0219
pyyaml@5.1.2
5.4
1
elastichq/elasticsearch-hq:latestbb3bd22c2b87
pyyaml@3.13
5.4
1
esailors/aws-ecr-http-proxy:1.5.15608ae045fa7
pyyaml@3.12
5.4
1
fiware/bae-activation-service:v0.0.33e3ec88d59ed
pyyaml@5.3.1
5.4
1
fiware/orion-ld:1.10.03c490a746f65
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-6.el8_10
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
fossology/fossology:4.2.18bd1f22ba7bb
pyyaml@3.13
5.4
1
galaxy/galaxy-init:v18.010267bad550e6
pyyaml@3.10
5.4
1
galaxy/galaxy-stable:v18.018e577a626dfd
pyyaml@3.10
5.4
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
pyyaml@5.3.1
5.4
1
getsentry/sentry-kubernetes:latest6ac37974fd2a
pyyaml@3.13
5.4
1
gurolakman/oam:4.0.0ed8fd2062548
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
gurolakman/smsf-configuration:1.0.49abb3882bcbd
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
gurolakman/smsf-momt:1.0.4ce23b20a8a17
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
gurolakman/ussigw-core:1.0.48739565c3ea2
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
hiboxsystems/marge-bot:0.12.1a96c10b61a59
pyyaml@5.3.1
5.4
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
pyyaml@5.3.1
5.4
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
pyyaml@5.3.1
5.4
1
hjacobs/kube-web-view:20.10.0b44a9cf81a2f
pyyaml@5.3.1
5.4
1
hmdmph/mongo-pod-labeler:1.0.1-alpine79e4a170f3dc
pyyaml@5.3.1
5.4
1
hmdmph/redis-pod-labeler:1.0.0-alpine7f1381fe0f3b
pyyaml@5.3.1
5.4
1
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-4.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
jmferrer/azure-devops-agent:latest030f68ec6998
pyyaml@5.3
5.4
1
julb/kubernetes-configmap-sync:1.1.0d7d8836366ad
pyyaml@5.3.1
5.4
1
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
pyyaml@5.3.1
5.4
1
kennethreitz/httpbin:latest599fe5e50731
pyyaml@3.13
5.4
1
kfserving/models-web-app:v0.6.1f322d6ffdfa3
pyyaml@3.13
5.4
1
kiwigrid/k8s-sidecar:1.1.03e86186656d3
pyyaml@5.3.1
5.4
1
kiwigrid/k8s-sidecar:1.3.065095a82d4a1
pyyaml@5.3.1
5.4
1
kiwigrid/k8s-sidecar:0.0.186eb52513d59e
pyyaml@5.1.1
5.4
1
kiwigrid/k8s-sidecar:0.0.16899ccd0b1f54
pyyaml@3.13
5.4
1
kiwigrid/k8s-sidecar:0.1.20af151f677a63
pyyaml@5.1.2
5.4
1
kubeaws/kube-spot-termination-notice-handler:1.13.0-1c9cd2ba4373a
pyyaml@3.13
5.4
1
kyso/kyso-nbdime:latest4aa9d38ee81d
pyyaml@5.3.1
5.4
1
louislam/uptime-kuma:1.22.10b55bcb83a1c
pyyaml@3.13
5.4
1
louislam/uptime-kuma:13d632903e6af
pyyaml@3.13
5.4
1
louislam/uptime-kuma:1.23.1396510915e6be
pyyaml@3.13
5.4
1
louislam/uptime-kuma:1.17.1a4eab252e5a2
pyyaml@3.13
5.4
1
louislam/uptime-kuma:1.18.5a84767d7934f
pyyaml@3.13
5.4
1
louislam/uptime-kuma:1.23.12bc6f244ecf27
pyyaml@3.13
5.4
1
lsstsqre/squash-api:0.5.34879415ec6ac
pyyaml@5.3.1
5.4
1
mariadb/maxscale:23.02.256c5e0908148
python-ply@3.9-9.el8
0:3.11-10.module+el8.4.0+570+c2eaf144
1
mediagis/nominatim:3.7c15e941485ef
pyyaml@5.3.1
5.4
1
ncsapolyglot/converters-ebook-convert:latest438d82cdbdb5
pyyaml@3.12
5.4
1
ngoduykhanh/powerdns-admin:0.2.3099371dd9ba6
pyyaml@5.3.1
5.4
1
nlmacamp/check_mk:latest5dbb8589f824
pyyaml@3.13
5.4
1
octoprint/octoprint:1.4.0106c26efcd8a
pyyaml@5.3.1
5.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.