StackRadar

CVE-2020-28052

High

Advisory

Published 30 Apr 2021In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.072
94th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
8
of 17,781 indexed, latest versions
Container images
8
deployed by those charts
Fix available
2 of 2
affected packages

Logic error in Legion of the Bouncy Castle BC Java

Carried by container images the latest versions of 8 of 17,781 indexed charts deploy, on 8 images.

Affected packageAffected versionsFixed inImages
bcprov-jdk15onmaven1.65, 1.661.677
bcprov-jdk15to18maven1.651.671
OSV records
GHSA-73xv-w5gp-frxh

Charts affected

8 by stars
ChartLatestAffected imagesRadar Score
solrpreferred-aiVerified publisher3.2.01 of 3See more

solr preferred-ai 3.2.0

1 of the 3 container images this version deploys carry CVE-2020-28052.

Container imageDigestPackageFixed in
library/solr:8.7.0d124efd81fbb
bcprov-jdk15on@1.65
1.67

Open the chart page →

6,048
cloudflowcloudflow-helm-charts0.0.0-NIGHTLY011220201 of 1See more

cloudflow cloudflow-helm-charts 0.0.0-NIGHTLY01122020

1 of the 1 container images this version deploys carry CVE-2020-28052.

Container imageDigestPackageFixed in
lightbend/cloudflow-operator:0.0.0-NIGHTLY011220202647f396de23
bcprov-jdk15on@1.66
1.67

Open the chart page →

1,886
nifi-registrydysnixVerified publisher1.1.51 of 2See more

nifi-registry dysnix 1.1.5

1 of the 2 container images this version deploys carry CVE-2020-28052.

Container imageDigestPackageFixed in
apache/nifi-registry:0.8.0974efa2f21da
bcprov-jdk15on@1.66
1.67

Open the chart page →

6,531
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2020-28052.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
bcprov-jdk15on@1.66
1.67

Open the chart page →

7,936
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2020-28052.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
bcprov-jdk15on@1.65
1.67

Open the chart page →

8,528
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2020-28052.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
bcprov-jdk15to18@1.65
1.67

Open the chart page →

12,856
tampkubebb5.6.01 of 2See more

tamp kubebb 5.6.0

1 of the 2 container images this version deploys carry CVE-2020-28052.

Container imageDigestPackageFixed in
kubebb/gateway-api:v5.6.04d062f20309c
bcprov-jdk15on@1.66
1.67

Open the chart page →

4,664
voltha-infraopencord2.14.01 of 10See more

voltha-infra opencord 2.14.0

1 of the 10 container images this version deploys carry CVE-2020-28052.

Container imageDigestPackageFixed in
voltha/voltha-onos:5.1.8e038acb950d3
bcprov-jdk15on@1.66
1.67

Open the chart page →

41,044

Container images carrying it

8 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
apache/nifi-registry:0.8.0974efa2f21da
bcprov-jdk15on@1.66
1.67
1
assistiot/sdn_controller:2.4.0ea254b6d8a31
bcprov-jdk15on@1.66
1.67
1
kubebb/gateway-api:v5.6.04d062f20309c
bcprov-jdk15on@1.66
1.67
1
library/solr:8.7.0d124efd81fbb
bcprov-jdk15on@1.65
1.67
1
lightbend/cloudflow-operator:0.0.0-NIGHTLY011220202647f396de23
bcprov-jdk15on@1.66
1.67
1
voltha/voltha-onos:5.1.8e038acb950d3
bcprov-jdk15on@1.66
1.67
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
bcprov-jdk15to18@1.65
1.67
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
bcprov-jdk15on@1.65
1.67
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.