StackRadar

CVE-2020-1736

Low

Advisory

Published 16 Mar 2020In the index since 8 Sept 2026
Severity
Low
worst across findings
CVSS
3.3
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
10
of 17,781 indexed, latest versions
Container images
9
deployed by those charts
Fix available
1 of 2
affected packages

Incorrect Permission Assignment for Critical Resource in Ansible

Carried by container images the latest versions of 10 of 17,781 indexed charts deploy, on 9 images.

Affected packageAffected versionsFixed inImages
ansiblepypi2.5.0, 2.5.2, 2.5.3, 2.9.6+2 more2.7.179
ansibledeb2.5.3-1ppa~trustyno fix listed2
OSV records
GHSA-x7jh-595q-wq82UBUNTU-CVE-2020-1736PYSEC-2020-8

Charts affected

10 by stars
ChartLatestAffected imagesRadar Score
cloudlaunchcloudve0.6.01 of 5See more

cloudlaunch cloudve 0.6.0

1 of the 5 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
ansible@2.9.27
no fix listed

Open the chart page →

12,457
cloudlaunch-servercloudve0.2.01 of 5See more

cloudlaunch-server cloudve 0.2.0

1 of the 5 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
ansible@2.9.27
no fix listed

Open the chart page →

12,131
cloudlaunchservercloudve0.6.01 of 4See more

cloudlaunchserver cloudve 0.6.0

1 of the 4 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
ansible@2.9.27
no fix listed

Open the chart page →

11,592
galaxykubemancloudve2.10.11 of 7See more

galaxykubeman cloudve 2.10.1

1 of the 7 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
ansible@2.9.27
no fix listed

Open the chart page →

16,069
galaxy-stablecloudve2.0.02 of 5See more

galaxy-stable cloudve 2.0.0

2 of the 5 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
galaxy/galaxy-init:v18.010267bad550e6
ansible@2.5.3
ansible@2.5.3-1ppa~trusty
2.7.17
no fix listed
galaxy/galaxy-stable:v18.018e577a626dfd
ansible@2.5.3
ansible@2.5.3-1ppa~trusty
2.7.17
no fix listed

Open the chart page →

70,895
wallabaggeek-cookbookVerified publisher7.2.01 of 1See more

wallabag geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
wallabag/wallabag:2.4.25e4c26a7fb4a
ansible@2.9.14
no fix listed

Open the chart page →

4,358
comacopencord1.0.02 of 9See more

comac opencord 1.0.0

2 of the 9 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
ansible@2.5.0
2.7.17
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
ansible@2.5.0
2.7.17

Open the chart page →

88,546
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
ansible@2.5.0
2.7.17

Open the chart page →

26,211
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
ansible@2.5.2
2.7.17

Open the chart page →

36,215
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2020-1736.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
ansible@2.9.6
no fix listed

Open the chart page →

11,151

Container images carrying it

9 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
cloudve/cloudlaunch-server:latest4a3d7fae90bb
ansible@2.9.27
no fix listed
3
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
ansible@2.5.0
2.7.17
2
galaxy/cloudman-server:lateste5c265fe9fcd
ansible@2.9.27
no fix listed
1
galaxy/galaxy-init:v18.010267bad550e6
ansible@2.5.3
ansible@2.5.3-1ppa~trusty
2.7.17
no fix listed
1
galaxy/galaxy-stable:v18.018e577a626dfd
ansible@2.5.3
ansible@2.5.3-1ppa~trusty
2.7.17
no fix listed
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
ansible@2.5.0
2.7.17
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
ansible@2.5.2
2.7.17
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
ansible@2.9.6
no fix listed
1
wallabag/wallabag:2.4.25e4c26a7fb4a
ansible@2.9.14
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.