StackRadar

CVE-2020-1753

Medium

Advisory

Published 16 Mar 2020In the index since 8 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
5
of 17,781 indexed, latest versions
Container images
6
deployed by those charts
Fix available
1 of 2
affected packages

Insertion of Sensitive Information into Log File, Invocation of Process Using Visible Sensitive Information, and Exposure of Sensitive Information to an Unauthorized Actor in Ansible

Carried by container images the latest versions of 5 of 17,781 indexed charts deploy, on 6 images.

Affected packageAffected versionsFixed inImages
ansiblepypi2.5.0, 2.5.2, 2.5.3, 2.9.62.7.18, 2.9.76
ansibledeb2.5.3-1ppa~trustyno fix listed2
OSV records
GHSA-86hp-cj9j-33vvUBUNTU-CVE-2020-1753PYSEC-2020-210

Charts affected

5 by stars
ChartLatestAffected imagesRadar Score
galaxy-stablecloudve2.0.02 of 5See more

galaxy-stable cloudve 2.0.0

2 of the 5 container images this version deploys carry CVE-2020-1753.

Container imageDigestPackageFixed in
galaxy/galaxy-init:v18.010267bad550e6
ansible@2.5.3-1ppa~trusty
ansible@2.5.3
no fix listed
2.7.18
galaxy/galaxy-stable:v18.018e577a626dfd
ansible@2.5.3-1ppa~trusty
ansible@2.5.3
no fix listed
2.7.18

Open the chart page →

70,895
comacopencord1.0.02 of 9See more

comac opencord 1.0.0

2 of the 9 container images this version deploys carry CVE-2020-1753.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
ansible@2.5.0
2.7.18
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
ansible@2.5.0
2.7.18

Open the chart page →

88,546
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2020-1753.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
ansible@2.5.0
2.7.18

Open the chart page →

26,211
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2020-1753.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
ansible@2.5.2
2.7.18

Open the chart page →

36,215
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2020-1753.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
ansible@2.9.6
2.9.7

Open the chart page →

11,151

Container images carrying it

6 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
ansible@2.5.0
2.7.18
2
galaxy/galaxy-init:v18.010267bad550e6
ansible@2.5.3-1ppa~trusty
ansible@2.5.3
no fix listed
2.7.18
1
galaxy/galaxy-stable:v18.018e577a626dfd
ansible@2.5.3-1ppa~trusty
ansible@2.5.3
no fix listed
2.7.18
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
ansible@2.5.0
2.7.18
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
ansible@2.5.2
2.7.18
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
ansible@2.9.6
2.9.7
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.