StackRadar

CVE-2020-36242

Critical

Advisory

Published 7 Feb 2021In the index since 6 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.067
94th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
34
of 17,781 indexed, latest versions
Container images
18
deployed by those charts
Fix available
1 of 1
affected package

PyCA Cryptography symmetrically encrypting large values can lead to integer overflow

Carried by container images the latest versions of 34 of 17,781 indexed charts deploy, on 18 images.

Affected packageAffected versionsFixed inImages
cryptographypypi3.1, 3.1.1, 3.2, 3.2.1+1 more3.3.218
OSV records
GHSA-rhm9-p9w5-fwm7
Also known as
PYSEC-2021-63

Charts affected

34 by stars
ChartLatestAffected imagesRadar Score
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
cryptography@3.2.1
3.3.2
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
cryptography@3.1.1
3.3.2

Open the chart page →

52,919
deployautoml0.1.01 of 3See more

deploy automl 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
amd64/mysql:5.7e20a653e0f51
cryptography@3.2.1
3.3.2

Open the chart page →

2,947
weblatedeliveryheroVerified publisher0.3.21 of 3See more

weblate deliveryhero 0.3.2

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
cryptography@3.1
3.3.2

Open the chart page →

7,984
powerdnsadminhalkeye0.3.11 of 1See more

powerdnsadmin halkeye 0.3.1

1 of the 1 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:0.2.3099371dd9ba6
cryptography@3.1.1
3.3.2

Open the chart page →

3,345
phonebook-chartphonebook-chart0.1.01 of 3See more

phonebook-chart phonebook-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,034
phonebook-chartusuladamsVerified publisher0.1.51 of 3See more

phonebook-chart usuladams 0.1.5

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,176
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

8,032
smartorchestratorassist-iot-smart-orchestrator4.0.01 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

1 of the 14 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

45,363
phonebook-chartasumankamberoglu0.1.51 of 3See more

phonebook-chart asumankamberoglu 0.1.5

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,176
cp-helm-chartscp-helm-charts0.6.17 of 8See more

cp-helm-charts cp-helm-charts 0.6.1

7 of the 8 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
cryptography@3.3.1
3.3.2
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
cryptography@3.3.1
3.3.2
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
cryptography@3.3.1
3.3.2
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
cryptography@3.3.1
3.3.2
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
cryptography@3.3.1
3.3.2
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
cryptography@3.3.1
3.3.2
confluentinc/cp-zookeeper:6.1.078c190f4472c
cryptography@3.3.1
3.3.2

Open the chart page →

58,857
kube-web-viewdecayofmind0.0.41 of 1See more

kube-web-view decayofmind 0.0.4

1 of the 1 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
hjacobs/kube-web-view:20.10.0b44a9cf81a2f
cryptography@3.1.1
3.3.2

Open the chart page →

2,264
escvmschedulerescvmscheduler1.0.71 of 3See more

escvmscheduler escvmscheduler 1.0.7

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

4,678
flask-appflask-mysqlVerified publisher1.0.11 of 2See more

flask-app flask-mysql 1.0.1

1 of the 2 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

4,073
weblatehelm-charts-nr0.3.21 of 3See more

weblate helm-charts-nr 0.3.2

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
cryptography@3.1
3.3.2

Open the chart page →

7,984
dbapphelmcourseVerified publisher0.3.31 of 2See more

dbapp helmcourse 0.3.3

1 of the 2 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,971
mysqlhelmcourseVerified publisher0.2.41 of 1See more

mysql helmcourse 0.2.4

1 of the 1 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

1,518
kimai-helmchartkimai2tet0.1.01 of 2See more

kimai-helmchart kimai2tet 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

1,518
specter-desktopkronkltdVerified publisher0.1.01 of 1See more

specter-desktop kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
lncm/specter-desktop:v0.10.4bca14d04397d
cryptography@3.2
3.3.2

Open the chart page →

1,850
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

8,698
nightingalelogic3579Verified publisher0.3.11 of 6See more

nightingale logic3579 0.3.1

1 of the 6 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

8,938
novosgamarcusrepo0.1.11 of 2See more

novosga marcusrepo 0.1.1

1 of the 2 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,706
phonebook-chartmy-phonebook-chart0.1.01 of 3See more

phonebook-chart my-phonebook-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,034
open-pdcopen-pdc0.1.01 of 3See more

open-pdc open-pdc 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,423
open-pubopen-pub0.1.01 of 3See more

open-pub open-pub 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,423
open-webconceptopen-webconcept0.1.01 of 3See more

open-webconcept open-webconcept 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,423
practica-helmpractica-helm0.1.01 of 7See more

practica-helm practica-helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

28,484
wp-chartprojet-devops0.1.01 of 2See more

wp-chart projet-devops 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

5,203
cdmswebapppyalive-cdmswebappVerified publisher0.1.01 of 3See more

cdmswebapp pyalive-cdmswebapp 0.1.0

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

6,668
gar-exportersoftonic0.1.11 of 1See more

gar-exporter softonic 0.1.1

1 of the 1 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
softonic/gar-exporter:0.2.1a64d6c0e0ae5
cryptography@3.2.1
3.3.2

Open the chart page →

2,296
datapusherstatcan1.0.01 of 1See more

datapusher statcan 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
keitaro/ckan-datapusher:0.0.175bf1a45f45c1
cryptography@3.1.1
3.3.2

Open the chart page →

3,044
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

17,461
phonebook-chartusuladams2Verified publisher0.2.11 of 3See more

phonebook-chart usuladams2 0.2.1

1 of the 3 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2

Open the chart page →

3,176
ceph-csi-cephfswikimedia0.1.81 of 5See more

ceph-csi-cephfs wikimedia 0.1.8

1 of the 5 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
cryptography@3.2.1
3.3.2

Open the chart page →

10,285
ceph-csi-rbdwikimedia0.1.131 of 6See more

ceph-csi-rbd wikimedia 0.1.13

1 of the 6 container images this version deploys carry CVE-2020-36242.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
cryptography@3.2.1
3.3.2

Open the chart page →

11,784

Container images carrying it

18 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
library/mysql:5.74bc6bc963e6d
cryptography@3.2.1
3.3.2
22
weblate/weblate:4.2.2-169c160d37a3c
cryptography@3.1
3.3.2
2
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
cryptography@3.2.1
3.3.2
2
amd64/mysql:5.7e20a653e0f51
cryptography@3.2.1
3.3.2
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
cryptography@3.3.1
3.3.2
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
cryptography@3.3.1
3.3.2
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
cryptography@3.3.1
3.3.2
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
cryptography@3.3.1
3.3.2
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
cryptography@3.3.1
3.3.2
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
cryptography@3.3.1
3.3.2
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
cryptography@3.3.1
3.3.2
1
hjacobs/kube-web-view:20.10.0b44a9cf81a2f
cryptography@3.1.1
3.3.2
1
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
cryptography@3.2.1
3.3.2
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
cryptography@3.1.1
3.3.2
1
keitaro/ckan-datapusher:0.0.175bf1a45f45c1
cryptography@3.1.1
3.3.2
1
lncm/specter-desktop:v0.10.4bca14d04397d
cryptography@3.2
3.3.2
1
ngoduykhanh/powerdns-admin:0.2.3099371dd9ba6
cryptography@3.1.1
3.3.2
1
softonic/gar-exporter:0.2.1a64d6c0e0ae5
cryptography@3.2.1
3.3.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.