StackRadar

CVE-2020-14343

Critical

Advisory

Published 9 Feb 2021In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.060
93rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
187
of 17,781 indexed, latest versions
Container images
167
deployed by those charts
Fix available
9 of 9
affected packages

Improper Input Validation in PyYAML

Carried by container images the latest versions of 187 of 17,781 indexed charts deploy, on 167 images.

Affected packageAffected versionsFixed inImages
pyyamlpypi3.10, 3.12, 3.13, 5.1+5 more5.4120
python-chardetrpm3.0.4-7.el80:3.0.4-19.module+el8.4.0+8888+89bc7e7944
python-idnarpm2.5-5.el8, 2.5-7.el8_10, 2.5-8.el8_100:2.8-6.module+el8.4.0+8888+89bc7e7944
python-pysocksrpm1.6.8-3.el80:1.7.1-4.module+el8.4.0+8888+89bc7e7944
python-requestsrpm2.20.0-2.1.el8_1, 2.20.0-3.el8_6, 2.20.0-3.el8_8, 2.20.0-6.el8_100:2.22.0-9.module+el8.4.0+8888+89bc7e7944
python-urllib3rpm1.24.2-4.el8, 1.24.2-5.el8, 1.24.2-5.el8_6.1, 1.24.2-5.el8_9.2+3 more0:1.25.7-4.module+el8.4.0+8888+89bc7e7944
python-plyrpm3.9-8.el8, 3.9-9.el80:3.11-10.module+el8.4.0+570+c2eaf144, 0:3.11-10.module+el8.4.0+9579+e9717e1813
py3-yamlapk5.3.1-r05.3.1-r11
python-wheelrpm1:0.31.1-2.module+el8.1.0+3724+3c0970900:0.33.6-5.module+el8.4.0+8888+89bc7e791
OSV records
ALPINE-CVE-2020-14343GHSA-8q59-q68h-6hv4RHSA-2021:2583RLSA-2021:2583
Also known as
PYSEC-2021-142

Charts affected

187 by stars
ChartLatestAffected imagesRadar Score
online-boutiquekubesphere-testVerified publisher0.1.01 of 11See more

online-boutique kubesphere-test 0.1.0

1 of the 11 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
pyyaml@5.3.1
5.4

Open the chart page →

26,018
kyso-nbdimekyso1.0.01 of 1See more

kyso-nbdime kyso 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
kyso/kyso-nbdime:latest4aa9d38ee81d
pyyaml@5.3.1
5.4

Open the chart page →

2,765
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.193170069ff0976
pyyaml@5.3.1
5.4

Open the chart page →

4,423
legendlegend0.1.21 of 1See more

legend legend 0.1.2

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
ghcr.io/grofers/legend:0.1d6e901ad0ebd
pyyaml@5.3.1
5.4

Open the chart page →

4,067
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
lsstsqre/squash-api:0.5.34879415ec6ac
pyyaml@5.3.1
5.4

Open the chart page →

6,611
marge-botmarge-bot1.1.01 of 1See more

marge-bot marge-bot 1.1.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
smarketshq/marge-bot:0.9.2cfc765b27e64
pyyaml@5.1
5.4

Open the chart page →

337
marge-botmarge-bot-helm1.3.51 of 1See more

marge-bot marge-bot-helm 1.3.5

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.16.0b59f01bc0418
pyyaml@5.3.1
5.4

Open the chart page →

3,574
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.3.065095a82d4a1
pyyaml@5.3.1
5.4

Open the chart page →

68,284
fossologymidokura-communityVerified publisher0.2.21 of 2See more

fossology midokura-community 0.2.2

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
fossology/fossology:4.2.18bd1f22ba7bb
pyyaml@3.13
5.4

Open the chart page →

3,294
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-backend:0.11a9ce0b8fbd4
pyyaml@5.3.1
5.4

Open the chart page →

6,438
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
pyyaml@5.3.1
5.4

Open the chart page →

25,933
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
pyyaml@5.3.1
5.4

Open the chart page →

15,675
mozalert-controllermozilla0.4.01 of 1See more

mozalert-controller mozilla 0.4.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
afrank/mozalert-controller:latestd463c37b08d7
pyyaml@5.3.1
5.4

Open the chart page →

2,969
elasticsearch2ncsaVerified publisher0.2.21 of 2See more

elasticsearch2 ncsa 0.2.2

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
elastichq/elasticsearch-hq:latestbb3bd22c2b87
pyyaml@3.13
5.4

Open the chart page →

4,911
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
ncsapolyglot/converters-ebook-convert:latest438d82cdbdb5
pyyaml@3.12
5.4

Open the chart page →

55,726
nfl-walletnfl-walletVerified publisher0.1.31 of 4See more

nfl-wallet nfl-wallet 0.1.3

1 of the 4 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-6.el8_10
python-urllib3@1.24.2-9.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,041
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
pyyaml@5.3.1
5.4

Open the chart page →

22,658
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

18,023
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
pyyaml@5.1
5.4
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
pyyaml@3.12
5.4
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
pyyaml@3.12
5.4

Open the chart page →

88,546
comac-platformopencord0.0.172 of 11See more

comac-platform opencord 0.0.17

2 of the 11 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
pyyaml@5.1
5.4
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
pyyaml@3.12
5.4

Open the chart page →

26,211
nem-monitoringopencord1.3.221 of 9See more

nem-monitoring opencord 1.3.22

1 of the 9 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.20af151f677a63
pyyaml@5.1.2
5.4

Open the chart page →

4,612
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
pyyaml@3.12
5.4

Open the chart page →

12,609
sebaopencord1.0.04 of 17See more

seba opencord 1.0.0

4 of the 17 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
voltha/voltha-cli:1.6.0c4e41e92f046
pyyaml@3.12
5.4
voltha/voltha-netconf:1.6.037f80524c207
pyyaml@3.12
5.4
voltha/voltha-ofagent:1.6.09ee8c1f4428c
pyyaml@3.12
5.4
voltha/voltha-voltha:1.6.0ff596b62de59
pyyaml@3.12
5.4

Open the chart page →

93,855
openldapopenldap0.1.11 of 2See more

openldap openldap 0.1.1

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
pyyaml@3.13
5.4

Open the chart page →

5,293
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

11,796
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

34,671
canvas-oamportalopenshift4.0.01 of 1See more

canvas-oamportal openshift 4.0.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/oam:4.0.0ed8fd2062548
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

7,519
exporteropenshift1.0.471 of 3See more

exporter openshift 1.0.47

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,000
hamiopenshift2.10.0-r0-openshift.c4e22e881 of 2See more

hami openshift 2.10.0-r0-openshift.c4e22e88

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
ghcr.io/dynamia-ai/hami-enterprise:v2.10.0-r0-openshift.c4e22e88745504757300
python-chardet@3.0.4-7.el8
python-idna@2.5-8.el8_10
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-6.el8_10
python-urllib3@1.24.2-10.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

4,749
kite-agentopenshift1.0.01 of 1See more

kite-agent openshift 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-6.el8_10
python-urllib3@1.24.2-9.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

5,863
orion-ldopenshift1.0.31 of 2See more

orion-ld openshift 1.0.3

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

14,727
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

13,100
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
pyyaml@5.3.1
5.4

Open the chart page →

36,215
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

15,466
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
pyyaml@5.3
5.4

Open the chart page →

11,151
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

12,754
ibm-mongodb-enterprise-helmredhat0.3.01 of 1See more

ibm-mongodb-enterprise-helm redhat 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-4.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

12,248
ansible-automation-platformredhat-cop0.0.91 of 1See more

ansible-automation-platform redhat-cop 0.0.9

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

15,291
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

15,291
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
python-ply@3.9-8.el8
0:3.11-10.module+el8.4.0+9579+e9717e18

Open the chart page →

11,437
sonatype-nexusredhat-cop1.1.131 of 2See more

sonatype-nexus redhat-cop 1.1.13

1 of the 2 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_6
python-urllib3@1.24.2-5.el8_6.1
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

16,047
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79

Open the chart page →

29,227
argocdromholdings1.8.11 of 3See more

argocd romholdings 1.8.1

1 of the 3 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
pyyaml@5.3.1
5.4

Open the chart page →

10,466
test-helm-app2saam-helm-test0.1.01 of 1See more

test-helm-app2 saam-helm-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14343.

Container imageDigestPackageFixed in
asdkant/fastapi-hello-world:latesta23d8bf7c885
pyyaml@5.3.1
5.4

Open the chart page →

2,770

Container images carrying it

167 by charts deploying them

A fixed version is listed for 9 of the 9 affected packages.

Container imageDigestPackageFixed inUsed by
oomk8s/readiness-check:2.0.2875814cc853d
pyyaml@3.13
5.4
11
osixia/openldap:1.5.018742e9c449c
pyyaml@3.13
5.4
7
oomk8s/readiness-check:2.0.07daa08b81954
pyyaml@3.12
5.4
6
osixia/phpldapadmin:0.9.0d112b82be133
pyyaml@3.13
5.4
5
osixia/phpldapadmin:0.7.11ab629698ae0
pyyaml@3.12
5.4
4
argoproj/argocd:v1.8.1830e86cacefd
pyyaml@5.3.1
5.4
3
kiwigrid/k8s-sidecar:0.1.193170069ff0976
pyyaml@5.3.1
5.4
3
kiwigrid/k8s-sidecar:0.1.1517b98eecdf6d1
pyyaml@5.3.1
5.4
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
3
amancevice/superset:0.35.212a0a9e66550
pyyaml@5.1.2
5.4
2
architectminds/aws-kubectl:1.19735e59a1085
pyyaml@5.1
5.4
2
hjacobs/kube-ops-view:20.4.058221b57d4d2
pyyaml@5.3.1
5.4
2
larribas/mlflow:1.9.105ccb0b46bfb
pyyaml@5.3.1
5.4
2
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
pyyaml@5.1
5.4
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
pyyaml@3.12
5.4
2
osixia/openldap:1.4.0ccd95cc6e61e
pyyaml@3.13
5.4
2
osixia/openldap:1.2.4d212a12aa728
pyyaml@3.12
5.4
2
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
pyyaml@3.12
5.4
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
2
a10networks/acos-prometheus-exporter:latest8dc58d434d71
pyyaml@5.3.1
5.4
1
afrank/mozalert-controller:latestd463c37b08d7
pyyaml@5.3.1
5.4
1
akeyless/base-rhel:0.0.14ba8900a0061
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8_9.2
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
amancevice/superset:0.28.1c8c04bfe3d66
pyyaml@3.12
5.4
1
amundsendev/amundsen-metadata:2.5.44d98eb21f5f9
pyyaml@5.3.1
5.4
1
amundsendev/amundsen-search:2.4.099dda9502c3e
pyyaml@5.3.1
5.4
1
anchore/anchore-engine:v0.10.0bde9eedf639d
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-2.1.el8_1
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
python-wheel@1:0.31.1-2.module+el8.1.0+3724+3c097090
pyyaml@5.3
0:0.33.6-5.module+el8.4.0+8888+89bc7e79
5.4
1
andrianrf/backoffice:latest047a7837651e
python-chardet@3.0.4-7.el8
python-idna@2.5-7.el8_10
python-ply@3.9-9.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-8.el8_10
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:3.11-10.module+el8.4.0+9579+e9717e18
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
ansiblesemaphore/semaphore:v2.8.5303d1f8684027
pyyaml@5.3.1
5.4
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
pyyaml@5.3.1
5.4
1
apachepulsar/pulsar:2.6.14db6ff0b4045
pyyaml@3.13
5.4
1
apachepulsar/pulsar:2.9.0d056c89b7131
pyyaml@5.3.1
5.4
1
apachepulsar/pulsar:2.8.2d538416d5afe
pyyaml@5.3.1
5.4
1
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
python-chardet@3.0.4-7.el8
python-idna@2.5-5.el8
python-pysocks@1.6.8-3.el8
python-requests@2.20.0-3.el8_8
python-urllib3@1.24.2-5.el8
0:3.0.4-19.module+el8.4.0+8888+89bc7e79
0:2.8-6.module+el8.4.0+8888+89bc7e79
0:1.7.1-4.module+el8.4.0+8888+89bc7e79
0:2.22.0-9.module+el8.4.0+8888+89bc7e79
0:1.25.7-4.module+el8.4.0+8888+89bc7e79
1
asdkant/fastapi-hello-world:latesta23d8bf7c885
pyyaml@5.3.1
5.4
1
buildkite/agent:3.25.0aec38cfaae0e
pyyaml@3.13
5.4
1
camptocamp/ekorre:0.1.035c91d5fda04
pyyaml@5.2
5.4
1
camptocamp/pghoard:10bff736b15623
pyyaml@3.13
5.4
1
camptocamp/snow-webhook:latest2924b43dbf40
pyyaml@3.13
5.4
1
ceph/daemon:latest-nautilus90f30824a96e
pyyaml@3.10
5.4
1
ceticasbl/pg-ldap-sync:latest6c0aa7567145
pyyaml@3.13
5.4
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
pyyaml@3.10
5.4
1
codekoala/pypi:1.2.14a999b2cfff2
pyyaml@3.12
5.4
1
confluentinc/cp-kafka:5.4.01bbda887bc53
pyyaml@3.13
5.4
1
confluentinc/cp-kafka:5.0.1c87b1c07fb53
pyyaml@3.13
5.4
1
daskdev/dask:1.1.04ecd7bc35500
pyyaml@3.13
5.4
1
daskdev/dask-notebook:1.1.0052630f5ca04
pyyaml@3.13
5.4
1
datadog/agent:7.22.08f20e56b5311
pyyaml@5.3.1
5.4
1
deconzcommunity/deconz:2.12.066541bbb78952
pyyaml@3.13
5.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.