StackRadar

CVE-2020-35525

High

Advisory

Published 1 Sept 2022In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.011
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
353
of 17,781 indexed, latest versions
Container images
267
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 353 of 17,781 indexed charts deploy, on 267 images.

Affected packageAffected versionsFixed inImages
sqlite3deb3.8.2-1ubuntu2, 3.8.2-1ubuntu2.1, 3.8.2-1ubuntu2.2, 3.11.0-1ubuntu1+12 more3.8.2-1ubuntu2.2+esm4, 3.11.0-1ubuntu1.5+esm1, 3.22.0-1ubuntu0.6, 3.31.1-4ubuntu0.4267
OSV records
UBUNTU-CVE-2020-35525
Also known as
USN-5615-1, USN-5615-2, USN-5615-3

Charts affected

353 by stars
ChartLatestAffected imagesRadar Score
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2020-35525.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.6

Open the chart page →

10,843
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2020-35525.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4

Open the chart page →

15,230
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2020-35525.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.6
yandex/clickhouse-server:21.3.204eccfffb01d7
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4

Open the chart page →

9,207

Container images carrying it

267 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.6
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
sqlite3@3.22.0-1ubuntu0.4
3.22.0-1ubuntu0.6
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
sqlite3@3.31.1-4ubuntu0.3
3.31.1-4ubuntu0.4
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
sqlite3@3.22.0-1ubuntu0.5
3.22.0-1ubuntu0.6
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
sqlite3@3.22.0-1ubuntu0.5
3.22.0-1ubuntu0.6
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
sqlite3@3.11.0-1ubuntu1.5
3.11.0-1ubuntu1.5+esm1
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
sqlite3@3.11.0-1ubuntu1.2
3.11.0-1ubuntu1.5+esm1
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
sqlite3@3.31.1-4ubuntu0.2
3.31.1-4ubuntu0.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.