StackRadar

CVE-2020-15999

CriticalKEV

Advisory

Published 20 Oct 2020In the index since 6 Sept 2026
Severity
Critical
worst across findings
CVSS
9.6
base score, highest
EPSS
0.443
99th percentile
CISA KEV
Listed
since 3 Nov 2021
Charts affected
417
of 17,781 indexed, latest versions
Container images
208
deployed by those charts
Fix available
4 of 4
affected packages

Red Hat Security Advisory: freetype security update

Carried by container images the latest versions of 417 of 17,781 indexed charts deploy, on 208 images.

Affected packageAffected versionsFixed inImages
freetypedeb2.5.2-1ubuntu2.2, 2.5.2-1ubuntu2.8, 2.6.1-0.1ubuntu2.3, 2.6.1-0.1ubuntu2.4+5 more2.5.2-1ubuntu2.8+esm2, 2.6.1-0.1ubuntu2.5, 2.6.3-3.2+deb9u2, 2.8.1-2ubuntu2.1+1 more135
freetypeapk2.9.1-r2, 2.10.0-r0, 2.10.1-r0, 2.10.2-r02.9.1-r3, 2.10.0-r1, 2.10.1-r1, 2.10.4-r066
chromium-browserdeb63.0.3239.84-0ubuntu0.16.04.186.0.4240.198-0ubuntu0.16.04.11
freetyperpm2.8-12.el7_6.1, 2.8-14.el7, 2.9.1-4.el80:2.8-14.el7_9.1, 0:2.9.1-4.el8_2.17
OSV records
ALPINE-CVE-2020-15999UBUNTU-CVE-2020-15999RHSA-2020:4907RHSA-2020:4951DLA-2415-1DSA-4777-1
Also known as
RHSA-2020:4952, USN-4593-1, USN-4593-2

Charts affected

417 by stars
ChartLatestAffected imagesRadar Score
helmexampletomsuehelmexample0.1.01 of 1See more

helmexample tomsuehelmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
freetype@2.6.3-3.2
2.6.3-3.2+deb9u2

Open the chart page →

702
pagesvictor-pages1.0.01 of 3See more

pages victor-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
freetype@2.8.1-2ubuntu2
2.8.1-2ubuntu2.1

Open the chart page →

20,190
pageswalter1.0.01 of 3See more

pages walter 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
freetype@2.8.1-2ubuntu2
2.8.1-2ubuntu2.1

Open the chart page →

20,190
nginx-file-browserwarjiang0.1.21 of 1See more

nginx-file-browser warjiang 0.1.2

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
freetype@2.6.3-3.2
2.6.3-3.2+deb9u2

Open the chart page →

702
queryservicewbstack0.2.11 of 1See more

queryservice wbstack 0.2.1

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
freetype@2.9.1-r2
2.9.1-r3

Open the chart page →

4,649
queryservice-updaterwbstack0.3.01 of 1See more

queryservice-updater wbstack 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-updater:0.3.84_3.97525a57ac3f1
freetype@2.9.1-r2
2.9.1-r3

Open the chart page →

3,176
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
freetype@2.9.1-3+deb10u1
2.9.1-3+deb10u2

Open the chart page →

5,460
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
freetype@2.6.3-3.2
2.6.3-3.2+deb9u2

Open the chart page →

10,127
temporalwenerme0.15.11 of 13See more

temporal wenerme 0.15.1

1 of the 13 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
freetype@2.6.3-3.2
2.6.3-3.2+deb9u2

Open the chart page →

22,665
nginxwiremindVerified publisher2.1.11 of 1See more

nginx wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/nginx:1.17-alpine763e7f0188e3
freetype@2.10.1-r0
2.10.1-r1

Open the chart page →

966
apicurio-registry-sqlwitcom-gmbh0.1.01 of 1See more

apicurio-registry-sql witcom-gmbh 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
freetype@2.10.1-r0
2.10.1-r1

Open the chart page →

3,424
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
freetype@2.9.1-3+deb10u1
2.9.1-3+deb10u2

Open the chart page →

1,138
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
freetype@2.6.3-3.2
2.6.3-3.2+deb9u2

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
freetype@2.6.3-3.2
2.6.3-3.2+deb9u2

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
freetype@2.6.3-3.2
2.6.3-3.2+deb9u2

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
freetype@2.6.3-3.2
2.6.3-3.2+deb9u2

Open the chart page →

702
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-15999.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
freetype@2.9.1-3+deb10u1
2.9.1-3+deb10u2

Open the chart page →

1,138

Container images carrying it

208 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
freetype@2.9.1-r2
2.9.1-r3
1
ghcr.io/wbstack/queryservice-updater:0.3.84_3.97525a57ac3f1
freetype@2.9.1-r2
2.9.1-r3
1
quay.io/apicurio/apicurio-registry-kube-sync:1.0.170ef31840269
freetype@2.10.1-r0
2.10.1-r1
1
quay.io/fairwinds/yelb-ui:v0.1.05ac114e567ed
freetype@2.9.1-3+deb10u1
2.9.1-3+deb10u2
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
freetype@2.9.1-4.el8
0:2.9.1-4.el8_2.1
1
quay.io/ibmgaragecloud/nodejs:latest01c3b7acb301
freetype@2.6.3-3.2+deb9u1
2.6.3-3.2+deb9u2
1
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
freetype@2.9.1-r2
2.9.1-r3
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
freetype@2.6.1-0.1ubuntu2.3
2.6.1-0.1ubuntu2.5
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.